From e53c370e4d0b42e28ab8fcdf3d7be75e759ee5a4 Mon Sep 17 00:00:00 2001 From: Stephen Gallagher Date: Mon, 12 Mar 2012 16:22:50 -0400 Subject: i18n: Remove empty translations Update translation files to the latest from Transifex --- po/LINGUAS | 27 - po/as.po | 1463 ----------- po/bg.po | 1462 ----------- po/bn.po | 1462 ----------- po/bn_IN.po | 1462 ----------- po/ca.po | 1463 ----------- po/cs.po | 1462 ----------- po/de.po | 48 +- po/el.po | 1462 ----------- po/en_GB.po | 1463 ----------- po/es.po | 116 +- po/et.po | 1463 ----------- po/fa.po | 1463 ----------- po/fi.po | 1463 ----------- po/fr.po | 21 +- po/he.po | 1462 ----------- po/hi.po | 1462 ----------- po/hu.po | 18 +- po/id.po | 87 +- po/it.po | 93 +- po/ja.po | 52 +- po/ja_JP.po | 1462 ----------- po/ko.po | 1462 ----------- po/lt.po | 1464 ----------- po/mr.po | 1463 ----------- po/nb.po | 1462 ----------- po/nl.po | 20 +- po/nn.po | 1462 ----------- po/pl.po | 50 +- po/pt.po | 93 +- po/pt_BR.po | 1462 ----------- po/ru.po | 93 +- po/sk.po | 1462 ----------- po/sq.po | 1463 ----------- po/sr.po | 1463 ----------- po/sssd.pot | 4 +- po/sv.po | 95 +- po/ta.po | 1462 ----------- po/tg.po | 9 +- po/tr.po | 1463 ----------- po/uk.po | 153 +- po/vi.po | 1463 ----------- po/zh_CN.po | 1463 ----------- po/zh_TW.po | 30 +- src/man/po/as.po | 6748 -------------------------------------------------- src/man/po/bg.po | 6747 -------------------------------------------------- src/man/po/bn.po | 6747 -------------------------------------------------- src/man/po/bn_IN.po | 6747 -------------------------------------------------- src/man/po/bs.po | 6749 -------------------------------------------------- src/man/po/ca.po | 6747 -------------------------------------------------- src/man/po/cs.po | 117 +- src/man/po/de.po | 6747 -------------------------------------------------- src/man/po/el.po | 6747 -------------------------------------------------- src/man/po/en_GB.po | 6748 -------------------------------------------------- src/man/po/es.po | 1261 +++++----- src/man/po/et.po | 6748 -------------------------------------------------- src/man/po/fa.po | 6748 -------------------------------------------------- src/man/po/fi.po | 6748 -------------------------------------------------- src/man/po/fr.po | 237 +- src/man/po/he.po | 6747 -------------------------------------------------- src/man/po/hi.po | 6747 -------------------------------------------------- src/man/po/hu.po | 6747 -------------------------------------------------- src/man/po/id.po | 6747 -------------------------------------------------- src/man/po/it.po | 6747 -------------------------------------------------- src/man/po/ja.po | 611 +++-- src/man/po/ja_JP.po | 6747 -------------------------------------------------- src/man/po/ko.po | 6747 -------------------------------------------------- src/man/po/lt.po | 6749 -------------------------------------------------- src/man/po/mr.po | 6748 -------------------------------------------------- src/man/po/nb.po | 6747 -------------------------------------------------- src/man/po/nl.po | 332 +-- src/man/po/nn.po | 6747 -------------------------------------------------- src/man/po/pl.po | 6750 --------------------------------------------------- src/man/po/po4a.cfg | 2 +- src/man/po/pt.po | 487 +--- src/man/po/pt_BR.po | 6747 -------------------------------------------------- src/man/po/ru.po | 91 +- src/man/po/sk.po | 6747 -------------------------------------------------- src/man/po/sq.po | 6748 -------------------------------------------------- src/man/po/sr.po | 6748 -------------------------------------------------- src/man/po/sv.po | 6748 -------------------------------------------------- src/man/po/ta.po | 6747 -------------------------------------------------- src/man/po/tg.po | 2 +- src/man/po/tr.po | 6748 -------------------------------------------------- src/man/po/uk.po | 1040 +++----- src/man/po/ur.po | 6747 -------------------------------------------------- src/man/po/vi.po | 6748 -------------------------------------------------- src/man/po/zh_CN.po | 6748 -------------------------------------------------- src/man/po/zh_TW.po | 6747 -------------------------------------------------- 89 files changed, 2066 insertions(+), 278775 deletions(-) delete mode 100644 po/as.po delete mode 100644 po/bg.po delete mode 100644 po/bn.po delete mode 100644 po/bn_IN.po delete mode 100644 po/ca.po delete mode 100644 po/cs.po delete mode 100644 po/el.po delete mode 100644 po/en_GB.po delete mode 100644 po/et.po delete mode 100644 po/fa.po delete mode 100644 po/fi.po delete mode 100644 po/he.po delete mode 100644 po/hi.po delete mode 100644 po/ja_JP.po delete mode 100644 po/ko.po delete mode 100644 po/lt.po delete mode 100644 po/mr.po delete mode 100644 po/nb.po delete mode 100644 po/nn.po delete mode 100644 po/pt_BR.po delete mode 100644 po/sk.po delete mode 100644 po/sq.po delete mode 100644 po/sr.po delete mode 100644 po/ta.po delete mode 100644 po/tr.po delete mode 100644 po/vi.po delete mode 100644 po/zh_CN.po delete mode 100644 src/man/po/as.po delete mode 100644 src/man/po/bg.po delete mode 100644 src/man/po/bn.po delete mode 100644 src/man/po/bn_IN.po delete mode 100644 src/man/po/bs.po delete mode 100644 src/man/po/ca.po delete mode 100644 src/man/po/de.po delete mode 100644 src/man/po/el.po delete mode 100644 src/man/po/en_GB.po delete mode 100644 src/man/po/et.po delete mode 100644 src/man/po/fa.po delete mode 100644 src/man/po/fi.po delete mode 100644 src/man/po/he.po delete mode 100644 src/man/po/hi.po delete mode 100644 src/man/po/hu.po delete mode 100644 src/man/po/id.po delete mode 100644 src/man/po/it.po delete mode 100644 src/man/po/ja_JP.po delete mode 100644 src/man/po/ko.po delete mode 100644 src/man/po/lt.po delete mode 100644 src/man/po/mr.po delete mode 100644 src/man/po/nb.po delete mode 100644 src/man/po/nn.po delete mode 100644 src/man/po/pl.po delete mode 100644 src/man/po/pt_BR.po delete mode 100644 src/man/po/sk.po delete mode 100644 src/man/po/sq.po delete mode 100644 src/man/po/sr.po delete mode 100644 src/man/po/sv.po delete mode 100644 src/man/po/ta.po delete mode 100644 src/man/po/tr.po delete mode 100644 src/man/po/ur.po delete mode 100644 src/man/po/vi.po delete mode 100644 src/man/po/zh_CN.po delete mode 100644 src/man/po/zh_TW.po diff --git a/po/LINGUAS b/po/LINGUAS index c7e6049d3..ed4e165a3 100644 --- a/po/LINGUAS +++ b/po/LINGUAS @@ -1,43 +1,16 @@ -as -bg -bn -bn_IN -ca -cs de -el -en_GB es -et -fa -fi fr -he -hi hu id it -ja_JP ja -ko -lt -mr -nb nl -nn pl -pt_BR pt ru -sk -sq -sr sv -ta tg -tr uk -vi -zh_CN zh_TW diff --git a/po/as.po b/po/as.po deleted file mode 100644 index ae1446058..000000000 --- a/po/as.po +++ /dev/null @@ -1,1463 +0,0 @@ -# SOME DESCRIPTIVE TITLE. -# Copyright (C) YEAR Red Hat, Inc. -# This file is distributed under the same license as the PACKAGE package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@lists.fedorahosted.org\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-11-30 04:10+0000\n" -"Last-Translator: FULL NAME \n" -"Language-Team: Assamese (http://www.transifex.net/projects/p/fedora/team/" -"as/)\n" -"Language: as\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=2; plural=(n != 1)\n" - -#: src/config/SSSDConfig.py:39 -msgid "Set the verbosity of the debug logging" -msgstr "" - -#: src/config/SSSDConfig.py:40 -msgid "Include timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:41 -msgid "Include microseconds in timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:42 -msgid "Write debug messages to logfiles" -msgstr "" - -#: src/config/SSSDConfig.py:43 -msgid "Ping timeout before restarting service" -msgstr "" - -#: src/config/SSSDConfig.py:44 -msgid "Command to start service" -msgstr "" - -#: src/config/SSSDConfig.py:45 -msgid "Number of times to attempt connection to Data Providers" -msgstr "" - -#: src/config/SSSDConfig.py:48 -msgid "SSSD Services to start" -msgstr "" - -#: src/config/SSSDConfig.py:49 -msgid "SSSD Domains to start" -msgstr "" - -#: src/config/SSSDConfig.py:50 -msgid "Timeout for messages sent over the SBUS" -msgstr "" - -#: src/config/SSSDConfig.py:51 -msgid "Regex to parse username and domain" -msgstr "" - -#: src/config/SSSDConfig.py:52 -msgid "Printf-compatible format for displaying fully-qualified names" -msgstr "" - -#: src/config/SSSDConfig.py:53 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#: src/config/SSSDConfig.py:56 -msgid "Enumeration cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:57 -msgid "Entry cache background update timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:58 src/config/SSSDConfig.py:81 -msgid "Negative cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:59 -msgid "Users that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:60 -msgid "Groups that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:61 -msgid "Should filtered users appear in groups" -msgstr "" - -#: src/config/SSSDConfig.py:62 -msgid "The value of the password field the NSS provider should return" -msgstr "" - -#: src/config/SSSDConfig.py:63 -msgid "Override homedir value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:64 -msgid "The list of shells users are allowed to log in with" -msgstr "" - -#: src/config/SSSDConfig.py:65 -msgid "" -"The list of shells that will be vetoed, and replaced with the fallback shell" -msgstr "" - -#: src/config/SSSDConfig.py:66 -msgid "" -"If a shell stored in central directory is allowed but not available, use " -"this fallback" -msgstr "" - -#: src/config/SSSDConfig.py:69 -msgid "How long to allow cached logins between online logins (days)" -msgstr "" - -#: src/config/SSSDConfig.py:70 -msgid "How many failed logins attempts are allowed when offline" -msgstr "" - -#: src/config/SSSDConfig.py:71 -msgid "" -"How long (minutes) to deny login after offline_failed_login_attempts has " -"been reached" -msgstr "" - -#: src/config/SSSDConfig.py:72 -msgid "What kind of messages are displayed to the user during authentication" -msgstr "" - -#: src/config/SSSDConfig.py:73 -msgid "How many seconds to keep identity information cached for PAM requests" -msgstr "" - -#: src/config/SSSDConfig.py:74 -msgid "How many days before password expiration a warning should be displayed" -msgstr "" - -#: src/config/SSSDConfig.py:77 -msgid "Whether to evaluate the time-based attributes in sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:78 -msgid "" -"How many seconds to keep sudorules cached before asking the provider again" -msgstr "" - -#: src/config/SSSDConfig.py:84 -msgid "Identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:85 -msgid "Authentication provider" -msgstr "" - -#: src/config/SSSDConfig.py:86 -msgid "Access control provider" -msgstr "" - -#: src/config/SSSDConfig.py:87 -msgid "Password change provider" -msgstr "" - -#: src/config/SSSDConfig.py:88 -msgid "SUDO provider" -msgstr "" - -#: src/config/SSSDConfig.py:89 -msgid "Autofs provider" -msgstr "" - -#: src/config/SSSDConfig.py:90 -msgid "Session-loading provider" -msgstr "" - -#: src/config/SSSDConfig.py:91 -msgid "Host identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:94 -msgid "Minimum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:95 -msgid "Maximum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:96 -msgid "Enable enumerating all users/groups" -msgstr "" - -#: src/config/SSSDConfig.py:97 -msgid "Cache credentials for offline login" -msgstr "" - -#: src/config/SSSDConfig.py:98 -msgid "Store password hashes" -msgstr "" - -#: src/config/SSSDConfig.py:99 -msgid "Display users/groups in fully-qualified form" -msgstr "" - -#: src/config/SSSDConfig.py:100 src/config/SSSDConfig.py:107 -#: src/config/SSSDConfig.py:108 src/config/SSSDConfig.py:109 -#: src/config/SSSDConfig.py:110 src/config/SSSDConfig.py:111 -msgid "Entry cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:101 -msgid "" -"Restrict or prefer a specific address family when performing DNS lookups" -msgstr "" - -#: src/config/SSSDConfig.py:102 -msgid "How long to keep cached entries after last successful login (days)" -msgstr "" - -#: src/config/SSSDConfig.py:103 -msgid "How long to wait for replies from DNS when resolving servers (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:104 -msgid "The domain part of service discovery DNS query" -msgstr "" - -#: src/config/SSSDConfig.py:105 -msgid "Override GID value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:106 -msgid "Treat usernames as case sensitive" -msgstr "" - -#: src/config/SSSDConfig.py:114 -msgid "IPA domain" -msgstr "" - -#: src/config/SSSDConfig.py:115 -msgid "IPA server address" -msgstr "" - -#: src/config/SSSDConfig.py:116 -msgid "IPA client hostname" -msgstr "" - -#: src/config/SSSDConfig.py:117 -msgid "Whether to automatically update the client's DNS entry in FreeIPA" -msgstr "" - -#: src/config/SSSDConfig.py:118 -msgid "The interface whose IP should be used for dynamic DNS updates" -msgstr "" - -#: src/config/SSSDConfig.py:119 -msgid "Search base for HBAC related objects" -msgstr "" - -#: src/config/SSSDConfig.py:120 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server" -msgstr "" - -#: src/config/SSSDConfig.py:121 -msgid "If DENY rules are present, either DENY_ALL or IGNORE" -msgstr "" - -#: src/config/SSSDConfig.py:122 -msgid "If set to false, host argument given by PAM will be ignored" -msgstr "" - -#: src/config/SSSDConfig.py:123 -msgid "The automounter location this IPA client is using" -msgstr "" - -#: src/config/SSSDConfig.py:126 src/config/SSSDConfig.py:127 -msgid "Kerberos server address" -msgstr "" - -#: src/config/SSSDConfig.py:128 -msgid "Kerberos realm" -msgstr "" - -#: src/config/SSSDConfig.py:129 -msgid "Authentication timeout" -msgstr "" - -#: src/config/SSSDConfig.py:132 -msgid "Directory to store credential caches" -msgstr "" - -#: src/config/SSSDConfig.py:133 -msgid "Location of the user's credential cache" -msgstr "" - -#: src/config/SSSDConfig.py:134 -msgid "Location of the keytab to validate credentials" -msgstr "" - -#: src/config/SSSDConfig.py:135 -msgid "Enable credential validation" -msgstr "" - -#: src/config/SSSDConfig.py:136 -msgid "Store password if offline for later online authentication" -msgstr "" - -#: src/config/SSSDConfig.py:137 -msgid "Renewable lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:138 -msgid "Lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:139 -msgid "Time between two checks for renewal" -msgstr "" - -#: src/config/SSSDConfig.py:140 -msgid "Enables FAST" -msgstr "" - -#: src/config/SSSDConfig.py:141 -msgid "Selects the principal to use for FAST" -msgstr "" - -#: src/config/SSSDConfig.py:142 -msgid "Enables principal canonicalization" -msgstr "" - -#: src/config/SSSDConfig.py:145 -msgid "Server where the change password service is running if not on the KDC" -msgstr "" - -#: src/config/SSSDConfig.py:148 -msgid "ldap_uri, The URI of the LDAP server" -msgstr "" - -#: src/config/SSSDConfig.py:149 -msgid "The default base DN" -msgstr "" - -#: src/config/SSSDConfig.py:150 -msgid "The Schema Type in use on the LDAP server, rfc2307" -msgstr "" - -#: src/config/SSSDConfig.py:151 -msgid "The default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:152 -msgid "The type of the authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:153 -msgid "The authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:154 -msgid "Length of time to attempt connection" -msgstr "" - -#: src/config/SSSDConfig.py:155 -msgid "Length of time to attempt synchronous LDAP operations" -msgstr "" - -#: src/config/SSSDConfig.py:156 -msgid "Length of time between attempts to reconnect while offline" -msgstr "" - -#: src/config/SSSDConfig.py:157 -msgid "Use only the upper case for realm names" -msgstr "" - -#: src/config/SSSDConfig.py:158 -msgid "File that contains CA certificates" -msgstr "" - -#: src/config/SSSDConfig.py:159 -msgid "Path to CA certificate directory" -msgstr "" - -#: src/config/SSSDConfig.py:160 -msgid "File that contains the client certificate" -msgstr "" - -#: src/config/SSSDConfig.py:161 -msgid "File that contains the client key" -msgstr "" - -#: src/config/SSSDConfig.py:162 -msgid "List of possible ciphers suites" -msgstr "" - -#: src/config/SSSDConfig.py:163 -msgid "Require TLS certificate verification" -msgstr "" - -#: src/config/SSSDConfig.py:164 -msgid "Specify the sasl mechanism to use" -msgstr "" - -#: src/config/SSSDConfig.py:165 -msgid "Specify the sasl authorization id to use" -msgstr "" - -#: src/config/SSSDConfig.py:166 -msgid "Specify the sasl authorization realm to use" -msgstr "" - -#: src/config/SSSDConfig.py:167 -msgid "Specify the minimal SSF for LDAP sasl authorization" -msgstr "" - -#: src/config/SSSDConfig.py:168 -msgid "Kerberos service keytab" -msgstr "" - -#: src/config/SSSDConfig.py:169 -msgid "Use Kerberos auth for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:170 -msgid "Follow LDAP referrals" -msgstr "" - -#: src/config/SSSDConfig.py:171 -msgid "Lifetime of TGT for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:172 -msgid "How to dereference aliases" -msgstr "" - -#: src/config/SSSDConfig.py:173 -msgid "Service name for DNS service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:174 -msgid "The number of records to retrieve in a single LDAP query" -msgstr "" - -#: src/config/SSSDConfig.py:175 -msgid "The number of members that must be missing to trigger a full deref" -msgstr "" - -#: src/config/SSSDConfig.py:176 -msgid "" -"Whether the LDAP library should perform a reverse lookup to canonicalize the " -"host name during a SASL bind" -msgstr "" - -#: src/config/SSSDConfig.py:178 -msgid "entryUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:179 -msgid "lastUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:181 -msgid "How long to retain a connection to the LDAP server before disconnecting" -msgstr "" - -#: src/config/SSSDConfig.py:183 -msgid "Disable the LDAP paging control" -msgstr "" - -#: src/config/SSSDConfig.py:186 -msgid "Length of time to wait for a search request" -msgstr "" - -#: src/config/SSSDConfig.py:187 -msgid "Length of time to wait for a enumeration request" -msgstr "" - -#: src/config/SSSDConfig.py:188 -msgid "Length of time between enumeration updates" -msgstr "" - -#: src/config/SSSDConfig.py:189 -msgid "Length of time between cache cleanups" -msgstr "" - -#: src/config/SSSDConfig.py:190 -msgid "Require TLS for ID lookups" -msgstr "" - -#: src/config/SSSDConfig.py:191 -msgid "Base DN for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:192 -msgid "Scope of user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:193 -msgid "Filter for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:194 -msgid "Objectclass for users" -msgstr "" - -#: src/config/SSSDConfig.py:195 -msgid "Username attribute" -msgstr "" - -#: src/config/SSSDConfig.py:197 -msgid "UID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:198 -msgid "Primary GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:199 -msgid "GECOS attribute" -msgstr "" - -#: src/config/SSSDConfig.py:200 -msgid "Home directory attribute" -msgstr "" - -#: src/config/SSSDConfig.py:201 -msgid "Shell attribute" -msgstr "" - -#: src/config/SSSDConfig.py:202 -msgid "UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:203 -msgid "User principal attribute (for Kerberos)" -msgstr "" - -#: src/config/SSSDConfig.py:204 -msgid "Full Name" -msgstr "" - -#: src/config/SSSDConfig.py:205 -msgid "memberOf attribute" -msgstr "" - -#: src/config/SSSDConfig.py:206 -msgid "Modification time attribute" -msgstr "" - -#: src/config/SSSDConfig.py:208 -msgid "shadowLastChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:209 -msgid "shadowMin attribute" -msgstr "" - -#: src/config/SSSDConfig.py:210 -msgid "shadowMax attribute" -msgstr "" - -#: src/config/SSSDConfig.py:211 -msgid "shadowWarning attribute" -msgstr "" - -#: src/config/SSSDConfig.py:212 -msgid "shadowInactive attribute" -msgstr "" - -#: src/config/SSSDConfig.py:213 -msgid "shadowExpire attribute" -msgstr "" - -#: src/config/SSSDConfig.py:214 -msgid "shadowFlag attribute" -msgstr "" - -#: src/config/SSSDConfig.py:215 -msgid "Attribute listing authorized PAM services" -msgstr "" - -#: src/config/SSSDConfig.py:216 -msgid "Attribute listing authorized server hosts" -msgstr "" - -#: src/config/SSSDConfig.py:217 -msgid "krbLastPwdChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:218 -msgid "krbPasswordExpiration attribute" -msgstr "" - -#: src/config/SSSDConfig.py:219 -msgid "Attribute indicating that server side password policies are active" -msgstr "" - -#: src/config/SSSDConfig.py:220 -msgid "accountExpires attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:221 -msgid "userAccountControl attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:222 -msgid "nsAccountLock attribute" -msgstr "" - -#: src/config/SSSDConfig.py:223 -msgid "loginDisabled attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:224 -msgid "loginExpirationTime attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:225 -msgid "loginAllowedTimeMap attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:226 -msgid "SSH public key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:228 -msgid "Base DN for group lookups" -msgstr "" - -#: src/config/SSSDConfig.py:231 -msgid "Objectclass for groups" -msgstr "" - -#: src/config/SSSDConfig.py:232 -msgid "Group name" -msgstr "" - -#: src/config/SSSDConfig.py:233 -msgid "Group password" -msgstr "" - -#: src/config/SSSDConfig.py:234 -msgid "GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:235 -msgid "Group member attribute" -msgstr "" - -#: src/config/SSSDConfig.py:236 -msgid "Group UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:237 -msgid "Modification time attribute for groups" -msgstr "" - -#: src/config/SSSDConfig.py:239 -msgid "Maximum nesting level SSSd will follow" -msgstr "" - -#: src/config/SSSDConfig.py:241 -msgid "Base DN for netgroup lookups" -msgstr "" - -#: src/config/SSSDConfig.py:242 -msgid "Objectclass for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:243 -msgid "Netgroup name" -msgstr "" - -#: src/config/SSSDConfig.py:244 -msgid "Netgroups members attribute" -msgstr "" - -#: src/config/SSSDConfig.py:245 -msgid "Netgroup triple attribute" -msgstr "" - -#: src/config/SSSDConfig.py:246 -msgid "Netgroup UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:247 -msgid "Modification time attribute for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:249 -msgid "Base DN for service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:250 -msgid "Objectclass for services" -msgstr "" - -#: src/config/SSSDConfig.py:251 -msgid "Service name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:252 -msgid "Service port attribute" -msgstr "" - -#: src/config/SSSDConfig.py:253 -msgid "Service protocol attribute" -msgstr "" - -#: src/config/SSSDConfig.py:257 -msgid "Policy to evaluate the password expiration" -msgstr "" - -#: src/config/SSSDConfig.py:260 -msgid "LDAP filter to determine access privileges" -msgstr "" - -#: src/config/SSSDConfig.py:261 -msgid "Which attributes shall be used to evaluate if an account is expired" -msgstr "" - -#: src/config/SSSDConfig.py:262 -msgid "Which rules should be used to evaluate access control" -msgstr "" - -#: src/config/SSSDConfig.py:265 -msgid "URI of an LDAP server where password changes are allowed" -msgstr "" - -#: src/config/SSSDConfig.py:266 -msgid "DNS service name for LDAP password change server" -msgstr "" - -#: src/config/SSSDConfig.py:269 -msgid "Base DN for sudo rules lookups" -msgstr "" - -#: src/config/SSSDConfig.py:270 -msgid "Enable periodical update of all sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:271 -msgid "Length of time between rules updates" -msgstr "" - -#: src/config/SSSDConfig.py:272 -msgid "Object class for sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:273 -msgid "Sudo rule name" -msgstr "" - -#: src/config/SSSDConfig.py:274 -msgid "Sudo rule command attribute" -msgstr "" - -#: src/config/SSSDConfig.py:275 -msgid "Sudo rule host attribute" -msgstr "" - -#: src/config/SSSDConfig.py:276 -msgid "Sudo rule user attribute" -msgstr "" - -#: src/config/SSSDConfig.py:277 -msgid "Sudo rule option attribute" -msgstr "" - -#: src/config/SSSDConfig.py:278 -msgid "Sudo rule runasuser attribute" -msgstr "" - -#: src/config/SSSDConfig.py:279 -msgid "Sudo rule runasgroup attribute" -msgstr "" - -#: src/config/SSSDConfig.py:280 -msgid "Sudo rule notbefore attribute" -msgstr "" - -#: src/config/SSSDConfig.py:281 -msgid "Sudo rule notafter attribute" -msgstr "" - -#: src/config/SSSDConfig.py:282 -msgid "Sudo rule order attribute" -msgstr "" - -#: src/config/SSSDConfig.py:285 -msgid "Object class for automounter maps" -msgstr "" - -#: src/config/SSSDConfig.py:286 -msgid "Automounter map name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:287 -msgid "Object class for automounter map entries" -msgstr "" - -#: src/config/SSSDConfig.py:288 -msgid "Automounter map entry key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:289 -msgid "Automounter map entry value attribute" -msgstr "" - -#: src/config/SSSDConfig.py:290 -msgid "Base DN for automounter map lookups" -msgstr "" - -#: src/config/SSSDConfig.py:293 -msgid "Comma separated list of allowed users" -msgstr "" - -#: src/config/SSSDConfig.py:294 -msgid "Comma separated list of prohibited users" -msgstr "" - -#: src/config/SSSDConfig.py:297 -msgid "Default shell, /bin/bash" -msgstr "" - -#: src/config/SSSDConfig.py:298 -msgid "Base for home directories" -msgstr "" - -#: src/config/SSSDConfig.py:301 -msgid "The name of the NSS library to use" -msgstr "" - -#: src/config/SSSDConfig.py:304 -msgid "PAM stack to use" -msgstr "" - -#: src/monitor/monitor.c:2379 -msgid "Become a daemon (default)" -msgstr "" - -#: src/monitor/monitor.c:2381 -msgid "Run interactive (not a daemon)" -msgstr "" - -#: src/monitor/monitor.c:2383 src/tools/sss_debuglevel.c:77 -msgid "Specify a non-default config file" -msgstr "" - -#: src/monitor/monitor.c:2385 -msgid "Print version number and exit" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1575 src/providers/ldap/ldap_child.c:381 -#: src/util/util.h:89 -msgid "Debug level" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1577 src/providers/ldap/ldap_child.c:383 -#: src/util/util.h:93 -msgid "Add debug timestamps" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1579 src/providers/ldap/ldap_child.c:385 -#: src/util/util.h:95 -msgid "Show timestamps with microseconds" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1581 src/providers/ldap/ldap_child.c:387 -msgid "An open file descriptor for the debug logs" -msgstr "" - -#: src/providers/data_provider_be.c:1938 -msgid "Domain of the information provider (mandatory)" -msgstr "" - -#: src/sss_client/common.c:878 -msgid "Privileged socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:881 -msgid "Public socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:884 -msgid "Unexpected format of the server credential message." -msgstr "" - -#: src/sss_client/common.c:887 -msgid "SSSD is not run by root." -msgstr "" - -#: src/sss_client/common.c:892 -msgid "An error occurred, but no description can be found." -msgstr "" - -#: src/sss_client/common.c:898 -msgid "Unexpected error while looking for an error description" -msgstr "" - -#: src/sss_client/pam_sss.c:378 -msgid "Passwords do not match" -msgstr "" - -#: src/sss_client/pam_sss.c:571 -msgid "Password reset by root is not supported." -msgstr "" - -#: src/sss_client/pam_sss.c:612 -msgid "Authenticated with cached credentials" -msgstr "" - -#: src/sss_client/pam_sss.c:613 -msgid ", your cached password will expire at: " -msgstr "" - -#: src/sss_client/pam_sss.c:643 -#, c-format -msgid "Your password has expired. You have %d grace login(s) remaining." -msgstr "" - -#: src/sss_client/pam_sss.c:689 -#, c-format -msgid "Your password will expire in %d %s." -msgstr "" - -#: src/sss_client/pam_sss.c:738 -msgid "Authentication is denied until: " -msgstr "" - -#: src/sss_client/pam_sss.c:759 -msgid "System is offline, password change not possible" -msgstr "" - -#: src/sss_client/pam_sss.c:789 src/sss_client/pam_sss.c:802 -msgid "Password change failed. " -msgstr "" - -#: src/sss_client/pam_sss.c:792 src/sss_client/pam_sss.c:803 -msgid "Server message: " -msgstr "" - -#: src/sss_client/pam_sss.c:1286 -msgid "New Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1287 -msgid "Reenter new Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1373 -msgid "Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1405 -msgid "Current Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1552 -msgid "Password expired. Change your password now." -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:40 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:211 src/tools/sss_useradd.c:48 -#: src/tools/sss_groupadd.c:41 src/tools/sss_groupdel.c:43 -#: src/tools/sss_groupmod.c:42 src/tools/sss_groupshow.c:615 -#: src/tools/sss_userdel.c:131 src/tools/sss_usermod.c:47 -#: src/tools/sss_cache.c:260 src/tools/sss_debuglevel.c:75 -msgid "The debug level to run with" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:42 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:215 -msgid "The SSSD domain to use" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:58 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:229 src/tools/sss_useradd.c:71 -#: src/tools/sss_groupadd.c:56 src/tools/sss_groupdel.c:52 -#: src/tools/sss_groupmod.c:63 src/tools/sss_groupshow.c:626 -#: src/tools/sss_userdel.c:148 src/tools/sss_usermod.c:72 -#: src/tools/sss_cache.c:281 -msgid "Error setting the locale\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:65 -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:91 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:236 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:269 -msgid "Not enough memory\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:84 -msgid "User not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:104 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:282 -msgid "Error looking up public keys\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:94 -msgid "Failed to open a socket\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:104 -msgid "Failed to connect to the server\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:195 -msgid "Failed to execute proxy command\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:213 -msgid "The port to use to connect to the host" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:255 -msgid "Host not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:261 -msgid "The path to the proxy command must be absolute\n" -msgstr "" - -#: src/tools/sss_useradd.c:49 src/tools/sss_usermod.c:48 -msgid "The UID of the user" -msgstr "" - -#: src/tools/sss_useradd.c:50 src/tools/sss_usermod.c:50 -msgid "The comment string" -msgstr "" - -#: src/tools/sss_useradd.c:51 src/tools/sss_usermod.c:51 -msgid "Home directory" -msgstr "" - -#: src/tools/sss_useradd.c:52 src/tools/sss_usermod.c:52 -msgid "Login shell" -msgstr "" - -#: src/tools/sss_useradd.c:53 -msgid "Groups" -msgstr "" - -#: src/tools/sss_useradd.c:54 -msgid "Create user's directory if it does not exist" -msgstr "" - -#: src/tools/sss_useradd.c:55 -msgid "Never create user's directory, overrides config" -msgstr "" - -#: src/tools/sss_useradd.c:56 -msgid "Specify an alternative skeleton directory" -msgstr "" - -#: src/tools/sss_useradd.c:57 src/tools/sss_usermod.c:57 -msgid "The SELinux user for user's login" -msgstr "" - -#: src/tools/sss_useradd.c:84 src/tools/sss_groupmod.c:76 -#: src/tools/sss_usermod.c:85 -msgid "Specify group to add to\n" -msgstr "" - -#: src/tools/sss_useradd.c:108 -msgid "Specify user to add\n" -msgstr "" - -#: src/tools/sss_useradd.c:117 src/tools/sss_groupadd.c:82 -#: src/tools/sss_groupdel.c:77 src/tools/sss_groupmod.c:109 -#: src/tools/sss_groupshow.c:659 src/tools/sss_userdel.c:193 -#: src/tools/sss_usermod.c:126 -msgid "Error initializing the tools - no local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:119 src/tools/sss_groupadd.c:84 -#: src/tools/sss_groupdel.c:79 src/tools/sss_groupmod.c:111 -#: src/tools/sss_groupshow.c:661 src/tools/sss_userdel.c:195 -#: src/tools/sss_usermod.c:128 -msgid "Error initializing the tools\n" -msgstr "" - -#: src/tools/sss_useradd.c:128 src/tools/sss_groupadd.c:93 -#: src/tools/sss_groupdel.c:88 src/tools/sss_groupmod.c:119 -#: src/tools/sss_groupshow.c:670 src/tools/sss_userdel.c:204 -#: src/tools/sss_usermod.c:137 -msgid "Invalid domain specified in FQDN\n" -msgstr "" - -#: src/tools/sss_useradd.c:137 src/tools/sss_groupmod.c:139 -#: src/tools/sss_groupmod.c:166 src/tools/sss_usermod.c:160 -#: src/tools/sss_usermod.c:187 -msgid "Internal error while parsing parameters\n" -msgstr "" - -#: src/tools/sss_useradd.c:145 src/tools/sss_usermod.c:168 -#: src/tools/sss_usermod.c:195 -msgid "Groups must be in the same domain as user\n" -msgstr "" - -#: src/tools/sss_useradd.c:153 -#, c-format -msgid "Cannot find group %s in local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:168 src/tools/sss_userdel.c:214 -msgid "Cannot set default values\n" -msgstr "" - -#: src/tools/sss_useradd.c:175 src/tools/sss_usermod.c:151 -msgid "The selected UID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_useradd.c:202 src/tools/sss_usermod.c:236 -msgid "Cannot set SELinux login context\n" -msgstr "" - -#: src/tools/sss_useradd.c:217 -msgid "Cannot get info about the user\n" -msgstr "" - -#: src/tools/sss_useradd.c:229 -msgid "User's home directory already exists, not copying data from skeldir\n" -msgstr "" - -#: src/tools/sss_useradd.c:232 -#, c-format -msgid "Cannot create user's home directory: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:243 -#, c-format -msgid "Cannot create user's mail spool: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:255 -msgid "Could not allocate ID for the user - domain full?\n" -msgstr "" - -#: src/tools/sss_useradd.c:259 -msgid "A user or group with the same name or ID already exists\n" -msgstr "" - -#: src/tools/sss_useradd.c:265 -msgid "Transaction error. Could not add user.\n" -msgstr "" - -#: src/tools/sss_groupadd.c:43 src/tools/sss_groupmod.c:48 -msgid "The GID of the group" -msgstr "" - -#: src/tools/sss_groupadd.c:73 -msgid "Specify group to add\n" -msgstr "" - -#: src/tools/sss_groupadd.c:102 src/tools/sss_groupmod.c:190 -msgid "The selected GID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_groupadd.c:127 -msgid "Could not allocate ID for the group - domain full?\n" -msgstr "" - -#: src/tools/sss_groupadd.c:131 -msgid "A group with the same name or GID already exists\n" -msgstr "" - -#: src/tools/sss_groupadd.c:136 -msgid "Transaction error. Could not add group.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:68 -msgid "Specify group to delete\n" -msgstr "" - -#: src/tools/sss_groupdel.c:101 -#, c-format -msgid "Group %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_groupdel.c:115 -msgid "" -"No such group in local domain. Removing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:120 -msgid "Internal error. Could not remove group.\n" -msgstr "" - -#: src/tools/sss_groupmod.c:44 -msgid "Groups to add this group to" -msgstr "" - -#: src/tools/sss_groupmod.c:46 -msgid "Groups to remove this group from" -msgstr "" - -#: src/tools/sss_groupmod.c:84 src/tools/sss_usermod.c:93 -msgid "Specify group to remove from\n" -msgstr "" - -#: src/tools/sss_groupmod.c:98 -msgid "Specify group to modify\n" -msgstr "" - -#: src/tools/sss_groupmod.c:126 -msgid "" -"Cannot find group in local domain, modifying groups is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_groupmod.c:147 src/tools/sss_groupmod.c:174 -msgid "Member groups must be in the same domain as parent group\n" -msgstr "" - -#: src/tools/sss_groupmod.c:155 src/tools/sss_groupmod.c:182 -#: src/tools/sss_usermod.c:176 src/tools/sss_usermod.c:203 -#, c-format -msgid "" -"Cannot find group %s in local domain, only groups in local domain are " -"allowed\n" -msgstr "" - -#: src/tools/sss_groupmod.c:216 -msgid "Could not modify group - check if member group names are correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:220 -msgid "Could not modify group - check if groupname is correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:224 -msgid "Transaction error. Could not modify group.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:562 -#, c-format -msgid "%s%sGroup: %s\n" -msgstr "" - -#: src/tools/sss_groupshow.c:563 -msgid "Magic Private " -msgstr "" - -#: src/tools/sss_groupshow.c:565 -#, c-format -msgid "%sGID number: %d\n" -msgstr "" - -#: src/tools/sss_groupshow.c:567 -#, c-format -msgid "%sMember users: " -msgstr "" - -#: src/tools/sss_groupshow.c:574 -#, c-format -msgid "" -"\n" -"%sIs a member of: " -msgstr "" - -#: src/tools/sss_groupshow.c:581 -#, c-format -msgid "" -"\n" -"%sMember groups: " -msgstr "" - -#: src/tools/sss_groupshow.c:617 -msgid "Print indirect group members recursively" -msgstr "" - -#: src/tools/sss_groupshow.c:650 -msgid "Specify group to show\n" -msgstr "" - -#: src/tools/sss_groupshow.c:689 -msgid "" -"No such group in local domain. Printing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:694 -msgid "Internal error. Could not print group.\n" -msgstr "" - -#: src/tools/sss_userdel.c:133 -msgid "Remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:135 -msgid "Do not remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:137 -msgid "Force removal of files not owned by the user" -msgstr "" - -#: src/tools/sss_userdel.c:139 -msgid "Kill users' processes before removing him" -msgstr "" - -#: src/tools/sss_userdel.c:184 -msgid "Specify user to delete\n" -msgstr "" - -#: src/tools/sss_userdel.c:230 -#, c-format -msgid "User %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_userdel.c:255 -msgid "Cannot reset SELinux login context\n" -msgstr "" - -#: src/tools/sss_userdel.c:267 -#, c-format -msgid "WARNING: The user (uid %lu) was still logged in when deleted.\n" -msgstr "" - -#: src/tools/sss_userdel.c:272 -msgid "Cannot determine if the user was logged in on this platform" -msgstr "" - -#: src/tools/sss_userdel.c:277 -msgid "Error while checking if the user was logged in\n" -msgstr "" - -#: src/tools/sss_userdel.c:284 -#, c-format -msgid "The post-delete command failed: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:296 -msgid "Not removing home dir - not owned by user\n" -msgstr "" - -#: src/tools/sss_userdel.c:298 -#, c-format -msgid "Cannot remove homedir: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:309 -msgid "" -"No such user in local domain. Removing users only allowed in local domain.\n" -msgstr "" - -#: src/tools/sss_userdel.c:314 -msgid "Internal error. Could not remove user.\n" -msgstr "" - -#: src/tools/sss_usermod.c:49 -msgid "The GID of the user" -msgstr "" - -#: src/tools/sss_usermod.c:53 -msgid "Groups to add this user to" -msgstr "" - -#: src/tools/sss_usermod.c:54 -msgid "Groups to remove this user from" -msgstr "" - -#: src/tools/sss_usermod.c:55 -msgid "Lock the account" -msgstr "" - -#: src/tools/sss_usermod.c:56 -msgid "Unlock the account" -msgstr "" - -#: src/tools/sss_usermod.c:117 -msgid "Specify user to modify\n" -msgstr "" - -#: src/tools/sss_usermod.c:144 -msgid "" -"Cannot find user in local domain, modifying users is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_usermod.c:246 -msgid "Could not modify user - check if group names are correct\n" -msgstr "" - -#: src/tools/sss_usermod.c:250 -msgid "Could not modify user - user already member of groups?\n" -msgstr "" - -#: src/tools/sss_usermod.c:254 -msgid "Transaction error. Could not modify user.\n" -msgstr "" - -#: src/tools/sss_cache.c:132 -#, c-format -msgid "Couldn't invalidate %s" -msgstr "" - -#: src/tools/sss_cache.c:138 -#, c-format -msgid "Couldn't invalidate %s %s" -msgstr "" - -#: src/tools/sss_cache.c:262 -msgid "Invalidate particular user" -msgstr "" - -#: src/tools/sss_cache.c:264 -msgid "Invalidate all users" -msgstr "" - -#: src/tools/sss_cache.c:266 -msgid "Invalidate particular group" -msgstr "" - -#: src/tools/sss_cache.c:268 -msgid "Invalidate all groups" -msgstr "" - -#: src/tools/sss_cache.c:270 -msgid "Invalidate particular netgroup" -msgstr "" - -#: src/tools/sss_cache.c:272 -msgid "Invalidate all netgroups" -msgstr "" - -#: src/tools/sss_cache.c:274 -msgid "Only invalidate entries from a particular domain" -msgstr "" - -#: src/tools/sss_debuglevel.c:43 -msgid "\n" -msgstr "" - -#: src/tools/sss_debuglevel.c:102 -msgid "Specify debug level you want to set\n" -msgstr "" - -#: src/tools/tools_util.c:286 -msgid "Out of memory\n" -msgstr "" - -#: src/tools/tools_util.h:40 -#, c-format -msgid "%s must be run as root\n" -msgstr "" - -#: src/util/util.h:91 -msgid "Send the debug output to files instead of stderr" -msgstr "" diff --git a/po/bg.po b/po/bg.po deleted file mode 100644 index c1c0dda67..000000000 --- a/po/bg.po +++ /dev/null @@ -1,1462 +0,0 @@ -# SOME DESCRIPTIVE TITLE. -# Copyright (C) YEAR Red Hat, Inc. -# This file is distributed under the same license as the PACKAGE package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@lists.fedorahosted.org\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2012-02-14 12:55+0000\n" -"Last-Translator: sgallagh \n" -"Language-Team: Bulgarian \n" -"Language: bg\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=2; plural=(n != 1)\n" - -#: src/config/SSSDConfig.py:39 -msgid "Set the verbosity of the debug logging" -msgstr "" - -#: src/config/SSSDConfig.py:40 -msgid "Include timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:41 -msgid "Include microseconds in timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:42 -msgid "Write debug messages to logfiles" -msgstr "" - -#: src/config/SSSDConfig.py:43 -msgid "Ping timeout before restarting service" -msgstr "" - -#: src/config/SSSDConfig.py:44 -msgid "Command to start service" -msgstr "" - -#: src/config/SSSDConfig.py:45 -msgid "Number of times to attempt connection to Data Providers" -msgstr "" - -#: src/config/SSSDConfig.py:48 -msgid "SSSD Services to start" -msgstr "" - -#: src/config/SSSDConfig.py:49 -msgid "SSSD Domains to start" -msgstr "" - -#: src/config/SSSDConfig.py:50 -msgid "Timeout for messages sent over the SBUS" -msgstr "" - -#: src/config/SSSDConfig.py:51 -msgid "Regex to parse username and domain" -msgstr "" - -#: src/config/SSSDConfig.py:52 -msgid "Printf-compatible format for displaying fully-qualified names" -msgstr "" - -#: src/config/SSSDConfig.py:53 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#: src/config/SSSDConfig.py:56 -msgid "Enumeration cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:57 -msgid "Entry cache background update timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:58 src/config/SSSDConfig.py:81 -msgid "Negative cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:59 -msgid "Users that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:60 -msgid "Groups that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:61 -msgid "Should filtered users appear in groups" -msgstr "" - -#: src/config/SSSDConfig.py:62 -msgid "The value of the password field the NSS provider should return" -msgstr "" - -#: src/config/SSSDConfig.py:63 -msgid "Override homedir value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:64 -msgid "The list of shells users are allowed to log in with" -msgstr "" - -#: src/config/SSSDConfig.py:65 -msgid "" -"The list of shells that will be vetoed, and replaced with the fallback shell" -msgstr "" - -#: src/config/SSSDConfig.py:66 -msgid "" -"If a shell stored in central directory is allowed but not available, use " -"this fallback" -msgstr "" - -#: src/config/SSSDConfig.py:69 -msgid "How long to allow cached logins between online logins (days)" -msgstr "" - -#: src/config/SSSDConfig.py:70 -msgid "How many failed logins attempts are allowed when offline" -msgstr "" - -#: src/config/SSSDConfig.py:71 -msgid "" -"How long (minutes) to deny login after offline_failed_login_attempts has " -"been reached" -msgstr "" - -#: src/config/SSSDConfig.py:72 -msgid "What kind of messages are displayed to the user during authentication" -msgstr "" - -#: src/config/SSSDConfig.py:73 -msgid "How many seconds to keep identity information cached for PAM requests" -msgstr "" - -#: src/config/SSSDConfig.py:74 -msgid "How many days before password expiration a warning should be displayed" -msgstr "" - -#: src/config/SSSDConfig.py:77 -msgid "Whether to evaluate the time-based attributes in sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:78 -msgid "" -"How many seconds to keep sudorules cached before asking the provider again" -msgstr "" - -#: src/config/SSSDConfig.py:84 -msgid "Identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:85 -msgid "Authentication provider" -msgstr "" - -#: src/config/SSSDConfig.py:86 -msgid "Access control provider" -msgstr "" - -#: src/config/SSSDConfig.py:87 -msgid "Password change provider" -msgstr "" - -#: src/config/SSSDConfig.py:88 -msgid "SUDO provider" -msgstr "" - -#: src/config/SSSDConfig.py:89 -msgid "Autofs provider" -msgstr "" - -#: src/config/SSSDConfig.py:90 -msgid "Session-loading provider" -msgstr "" - -#: src/config/SSSDConfig.py:91 -msgid "Host identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:94 -msgid "Minimum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:95 -msgid "Maximum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:96 -msgid "Enable enumerating all users/groups" -msgstr "" - -#: src/config/SSSDConfig.py:97 -msgid "Cache credentials for offline login" -msgstr "" - -#: src/config/SSSDConfig.py:98 -msgid "Store password hashes" -msgstr "" - -#: src/config/SSSDConfig.py:99 -msgid "Display users/groups in fully-qualified form" -msgstr "" - -#: src/config/SSSDConfig.py:100 src/config/SSSDConfig.py:107 -#: src/config/SSSDConfig.py:108 src/config/SSSDConfig.py:109 -#: src/config/SSSDConfig.py:110 src/config/SSSDConfig.py:111 -msgid "Entry cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:101 -msgid "" -"Restrict or prefer a specific address family when performing DNS lookups" -msgstr "" - -#: src/config/SSSDConfig.py:102 -msgid "How long to keep cached entries after last successful login (days)" -msgstr "" - -#: src/config/SSSDConfig.py:103 -msgid "How long to wait for replies from DNS when resolving servers (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:104 -msgid "The domain part of service discovery DNS query" -msgstr "" - -#: src/config/SSSDConfig.py:105 -msgid "Override GID value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:106 -msgid "Treat usernames as case sensitive" -msgstr "" - -#: src/config/SSSDConfig.py:114 -msgid "IPA domain" -msgstr "" - -#: src/config/SSSDConfig.py:115 -msgid "IPA server address" -msgstr "" - -#: src/config/SSSDConfig.py:116 -msgid "IPA client hostname" -msgstr "" - -#: src/config/SSSDConfig.py:117 -msgid "Whether to automatically update the client's DNS entry in FreeIPA" -msgstr "" - -#: src/config/SSSDConfig.py:118 -msgid "The interface whose IP should be used for dynamic DNS updates" -msgstr "" - -#: src/config/SSSDConfig.py:119 -msgid "Search base for HBAC related objects" -msgstr "" - -#: src/config/SSSDConfig.py:120 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server" -msgstr "" - -#: src/config/SSSDConfig.py:121 -msgid "If DENY rules are present, either DENY_ALL or IGNORE" -msgstr "" - -#: src/config/SSSDConfig.py:122 -msgid "If set to false, host argument given by PAM will be ignored" -msgstr "" - -#: src/config/SSSDConfig.py:123 -msgid "The automounter location this IPA client is using" -msgstr "" - -#: src/config/SSSDConfig.py:126 src/config/SSSDConfig.py:127 -msgid "Kerberos server address" -msgstr "" - -#: src/config/SSSDConfig.py:128 -msgid "Kerberos realm" -msgstr "" - -#: src/config/SSSDConfig.py:129 -msgid "Authentication timeout" -msgstr "" - -#: src/config/SSSDConfig.py:132 -msgid "Directory to store credential caches" -msgstr "" - -#: src/config/SSSDConfig.py:133 -msgid "Location of the user's credential cache" -msgstr "" - -#: src/config/SSSDConfig.py:134 -msgid "Location of the keytab to validate credentials" -msgstr "" - -#: src/config/SSSDConfig.py:135 -msgid "Enable credential validation" -msgstr "" - -#: src/config/SSSDConfig.py:136 -msgid "Store password if offline for later online authentication" -msgstr "" - -#: src/config/SSSDConfig.py:137 -msgid "Renewable lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:138 -msgid "Lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:139 -msgid "Time between two checks for renewal" -msgstr "" - -#: src/config/SSSDConfig.py:140 -msgid "Enables FAST" -msgstr "" - -#: src/config/SSSDConfig.py:141 -msgid "Selects the principal to use for FAST" -msgstr "" - -#: src/config/SSSDConfig.py:142 -msgid "Enables principal canonicalization" -msgstr "" - -#: src/config/SSSDConfig.py:145 -msgid "Server where the change password service is running if not on the KDC" -msgstr "" - -#: src/config/SSSDConfig.py:148 -msgid "ldap_uri, The URI of the LDAP server" -msgstr "" - -#: src/config/SSSDConfig.py:149 -msgid "The default base DN" -msgstr "" - -#: src/config/SSSDConfig.py:150 -msgid "The Schema Type in use on the LDAP server, rfc2307" -msgstr "" - -#: src/config/SSSDConfig.py:151 -msgid "The default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:152 -msgid "The type of the authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:153 -msgid "The authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:154 -msgid "Length of time to attempt connection" -msgstr "" - -#: src/config/SSSDConfig.py:155 -msgid "Length of time to attempt synchronous LDAP operations" -msgstr "" - -#: src/config/SSSDConfig.py:156 -msgid "Length of time between attempts to reconnect while offline" -msgstr "" - -#: src/config/SSSDConfig.py:157 -msgid "Use only the upper case for realm names" -msgstr "" - -#: src/config/SSSDConfig.py:158 -msgid "File that contains CA certificates" -msgstr "" - -#: src/config/SSSDConfig.py:159 -msgid "Path to CA certificate directory" -msgstr "" - -#: src/config/SSSDConfig.py:160 -msgid "File that contains the client certificate" -msgstr "" - -#: src/config/SSSDConfig.py:161 -msgid "File that contains the client key" -msgstr "" - -#: src/config/SSSDConfig.py:162 -msgid "List of possible ciphers suites" -msgstr "" - -#: src/config/SSSDConfig.py:163 -msgid "Require TLS certificate verification" -msgstr "" - -#: src/config/SSSDConfig.py:164 -msgid "Specify the sasl mechanism to use" -msgstr "" - -#: src/config/SSSDConfig.py:165 -msgid "Specify the sasl authorization id to use" -msgstr "" - -#: src/config/SSSDConfig.py:166 -msgid "Specify the sasl authorization realm to use" -msgstr "" - -#: src/config/SSSDConfig.py:167 -msgid "Specify the minimal SSF for LDAP sasl authorization" -msgstr "" - -#: src/config/SSSDConfig.py:168 -msgid "Kerberos service keytab" -msgstr "" - -#: src/config/SSSDConfig.py:169 -msgid "Use Kerberos auth for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:170 -msgid "Follow LDAP referrals" -msgstr "" - -#: src/config/SSSDConfig.py:171 -msgid "Lifetime of TGT for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:172 -msgid "How to dereference aliases" -msgstr "" - -#: src/config/SSSDConfig.py:173 -msgid "Service name for DNS service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:174 -msgid "The number of records to retrieve in a single LDAP query" -msgstr "" - -#: src/config/SSSDConfig.py:175 -msgid "The number of members that must be missing to trigger a full deref" -msgstr "" - -#: src/config/SSSDConfig.py:176 -msgid "" -"Whether the LDAP library should perform a reverse lookup to canonicalize the " -"host name during a SASL bind" -msgstr "" - -#: src/config/SSSDConfig.py:178 -msgid "entryUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:179 -msgid "lastUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:181 -msgid "How long to retain a connection to the LDAP server before disconnecting" -msgstr "" - -#: src/config/SSSDConfig.py:183 -msgid "Disable the LDAP paging control" -msgstr "" - -#: src/config/SSSDConfig.py:186 -msgid "Length of time to wait for a search request" -msgstr "" - -#: src/config/SSSDConfig.py:187 -msgid "Length of time to wait for a enumeration request" -msgstr "" - -#: src/config/SSSDConfig.py:188 -msgid "Length of time between enumeration updates" -msgstr "" - -#: src/config/SSSDConfig.py:189 -msgid "Length of time between cache cleanups" -msgstr "" - -#: src/config/SSSDConfig.py:190 -msgid "Require TLS for ID lookups" -msgstr "" - -#: src/config/SSSDConfig.py:191 -msgid "Base DN for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:192 -msgid "Scope of user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:193 -msgid "Filter for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:194 -msgid "Objectclass for users" -msgstr "" - -#: src/config/SSSDConfig.py:195 -msgid "Username attribute" -msgstr "" - -#: src/config/SSSDConfig.py:197 -msgid "UID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:198 -msgid "Primary GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:199 -msgid "GECOS attribute" -msgstr "" - -#: src/config/SSSDConfig.py:200 -msgid "Home directory attribute" -msgstr "" - -#: src/config/SSSDConfig.py:201 -msgid "Shell attribute" -msgstr "" - -#: src/config/SSSDConfig.py:202 -msgid "UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:203 -msgid "User principal attribute (for Kerberos)" -msgstr "" - -#: src/config/SSSDConfig.py:204 -msgid "Full Name" -msgstr "" - -#: src/config/SSSDConfig.py:205 -msgid "memberOf attribute" -msgstr "" - -#: src/config/SSSDConfig.py:206 -msgid "Modification time attribute" -msgstr "" - -#: src/config/SSSDConfig.py:208 -msgid "shadowLastChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:209 -msgid "shadowMin attribute" -msgstr "" - -#: src/config/SSSDConfig.py:210 -msgid "shadowMax attribute" -msgstr "" - -#: src/config/SSSDConfig.py:211 -msgid "shadowWarning attribute" -msgstr "" - -#: src/config/SSSDConfig.py:212 -msgid "shadowInactive attribute" -msgstr "" - -#: src/config/SSSDConfig.py:213 -msgid "shadowExpire attribute" -msgstr "" - -#: src/config/SSSDConfig.py:214 -msgid "shadowFlag attribute" -msgstr "" - -#: src/config/SSSDConfig.py:215 -msgid "Attribute listing authorized PAM services" -msgstr "" - -#: src/config/SSSDConfig.py:216 -msgid "Attribute listing authorized server hosts" -msgstr "" - -#: src/config/SSSDConfig.py:217 -msgid "krbLastPwdChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:218 -msgid "krbPasswordExpiration attribute" -msgstr "" - -#: src/config/SSSDConfig.py:219 -msgid "Attribute indicating that server side password policies are active" -msgstr "" - -#: src/config/SSSDConfig.py:220 -msgid "accountExpires attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:221 -msgid "userAccountControl attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:222 -msgid "nsAccountLock attribute" -msgstr "" - -#: src/config/SSSDConfig.py:223 -msgid "loginDisabled attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:224 -msgid "loginExpirationTime attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:225 -msgid "loginAllowedTimeMap attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:226 -msgid "SSH public key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:228 -msgid "Base DN for group lookups" -msgstr "" - -#: src/config/SSSDConfig.py:231 -msgid "Objectclass for groups" -msgstr "" - -#: src/config/SSSDConfig.py:232 -msgid "Group name" -msgstr "" - -#: src/config/SSSDConfig.py:233 -msgid "Group password" -msgstr "" - -#: src/config/SSSDConfig.py:234 -msgid "GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:235 -msgid "Group member attribute" -msgstr "" - -#: src/config/SSSDConfig.py:236 -msgid "Group UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:237 -msgid "Modification time attribute for groups" -msgstr "" - -#: src/config/SSSDConfig.py:239 -msgid "Maximum nesting level SSSd will follow" -msgstr "" - -#: src/config/SSSDConfig.py:241 -msgid "Base DN for netgroup lookups" -msgstr "" - -#: src/config/SSSDConfig.py:242 -msgid "Objectclass for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:243 -msgid "Netgroup name" -msgstr "" - -#: src/config/SSSDConfig.py:244 -msgid "Netgroups members attribute" -msgstr "" - -#: src/config/SSSDConfig.py:245 -msgid "Netgroup triple attribute" -msgstr "" - -#: src/config/SSSDConfig.py:246 -msgid "Netgroup UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:247 -msgid "Modification time attribute for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:249 -msgid "Base DN for service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:250 -msgid "Objectclass for services" -msgstr "" - -#: src/config/SSSDConfig.py:251 -msgid "Service name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:252 -msgid "Service port attribute" -msgstr "" - -#: src/config/SSSDConfig.py:253 -msgid "Service protocol attribute" -msgstr "" - -#: src/config/SSSDConfig.py:257 -msgid "Policy to evaluate the password expiration" -msgstr "" - -#: src/config/SSSDConfig.py:260 -msgid "LDAP filter to determine access privileges" -msgstr "" - -#: src/config/SSSDConfig.py:261 -msgid "Which attributes shall be used to evaluate if an account is expired" -msgstr "" - -#: src/config/SSSDConfig.py:262 -msgid "Which rules should be used to evaluate access control" -msgstr "" - -#: src/config/SSSDConfig.py:265 -msgid "URI of an LDAP server where password changes are allowed" -msgstr "" - -#: src/config/SSSDConfig.py:266 -msgid "DNS service name for LDAP password change server" -msgstr "" - -#: src/config/SSSDConfig.py:269 -msgid "Base DN for sudo rules lookups" -msgstr "" - -#: src/config/SSSDConfig.py:270 -msgid "Enable periodical update of all sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:271 -msgid "Length of time between rules updates" -msgstr "" - -#: src/config/SSSDConfig.py:272 -msgid "Object class for sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:273 -msgid "Sudo rule name" -msgstr "" - -#: src/config/SSSDConfig.py:274 -msgid "Sudo rule command attribute" -msgstr "" - -#: src/config/SSSDConfig.py:275 -msgid "Sudo rule host attribute" -msgstr "" - -#: src/config/SSSDConfig.py:276 -msgid "Sudo rule user attribute" -msgstr "" - -#: src/config/SSSDConfig.py:277 -msgid "Sudo rule option attribute" -msgstr "" - -#: src/config/SSSDConfig.py:278 -msgid "Sudo rule runasuser attribute" -msgstr "" - -#: src/config/SSSDConfig.py:279 -msgid "Sudo rule runasgroup attribute" -msgstr "" - -#: src/config/SSSDConfig.py:280 -msgid "Sudo rule notbefore attribute" -msgstr "" - -#: src/config/SSSDConfig.py:281 -msgid "Sudo rule notafter attribute" -msgstr "" - -#: src/config/SSSDConfig.py:282 -msgid "Sudo rule order attribute" -msgstr "" - -#: src/config/SSSDConfig.py:285 -msgid "Object class for automounter maps" -msgstr "" - -#: src/config/SSSDConfig.py:286 -msgid "Automounter map name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:287 -msgid "Object class for automounter map entries" -msgstr "" - -#: src/config/SSSDConfig.py:288 -msgid "Automounter map entry key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:289 -msgid "Automounter map entry value attribute" -msgstr "" - -#: src/config/SSSDConfig.py:290 -msgid "Base DN for automounter map lookups" -msgstr "" - -#: src/config/SSSDConfig.py:293 -msgid "Comma separated list of allowed users" -msgstr "" - -#: src/config/SSSDConfig.py:294 -msgid "Comma separated list of prohibited users" -msgstr "" - -#: src/config/SSSDConfig.py:297 -msgid "Default shell, /bin/bash" -msgstr "" - -#: src/config/SSSDConfig.py:298 -msgid "Base for home directories" -msgstr "" - -#: src/config/SSSDConfig.py:301 -msgid "The name of the NSS library to use" -msgstr "" - -#: src/config/SSSDConfig.py:304 -msgid "PAM stack to use" -msgstr "" - -#: src/monitor/monitor.c:2379 -msgid "Become a daemon (default)" -msgstr "" - -#: src/monitor/monitor.c:2381 -msgid "Run interactive (not a daemon)" -msgstr "" - -#: src/monitor/monitor.c:2383 src/tools/sss_debuglevel.c:77 -msgid "Specify a non-default config file" -msgstr "" - -#: src/monitor/monitor.c:2385 -msgid "Print version number and exit" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1575 src/providers/ldap/ldap_child.c:381 -#: src/util/util.h:89 -msgid "Debug level" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1577 src/providers/ldap/ldap_child.c:383 -#: src/util/util.h:93 -msgid "Add debug timestamps" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1579 src/providers/ldap/ldap_child.c:385 -#: src/util/util.h:95 -msgid "Show timestamps with microseconds" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1581 src/providers/ldap/ldap_child.c:387 -msgid "An open file descriptor for the debug logs" -msgstr "" - -#: src/providers/data_provider_be.c:1938 -msgid "Domain of the information provider (mandatory)" -msgstr "" - -#: src/sss_client/common.c:878 -msgid "Privileged socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:881 -msgid "Public socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:884 -msgid "Unexpected format of the server credential message." -msgstr "" - -#: src/sss_client/common.c:887 -msgid "SSSD is not run by root." -msgstr "" - -#: src/sss_client/common.c:892 -msgid "An error occurred, but no description can be found." -msgstr "" - -#: src/sss_client/common.c:898 -msgid "Unexpected error while looking for an error description" -msgstr "" - -#: src/sss_client/pam_sss.c:378 -msgid "Passwords do not match" -msgstr "" - -#: src/sss_client/pam_sss.c:571 -msgid "Password reset by root is not supported." -msgstr "" - -#: src/sss_client/pam_sss.c:612 -msgid "Authenticated with cached credentials" -msgstr "" - -#: src/sss_client/pam_sss.c:613 -msgid ", your cached password will expire at: " -msgstr "" - -#: src/sss_client/pam_sss.c:643 -#, c-format -msgid "Your password has expired. You have %d grace login(s) remaining." -msgstr "" - -#: src/sss_client/pam_sss.c:689 -#, c-format -msgid "Your password will expire in %d %s." -msgstr "" - -#: src/sss_client/pam_sss.c:738 -msgid "Authentication is denied until: " -msgstr "" - -#: src/sss_client/pam_sss.c:759 -msgid "System is offline, password change not possible" -msgstr "" - -#: src/sss_client/pam_sss.c:789 src/sss_client/pam_sss.c:802 -msgid "Password change failed. " -msgstr "" - -#: src/sss_client/pam_sss.c:792 src/sss_client/pam_sss.c:803 -msgid "Server message: " -msgstr "" - -#: src/sss_client/pam_sss.c:1286 -msgid "New Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1287 -msgid "Reenter new Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1373 -msgid "Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1405 -msgid "Current Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1552 -msgid "Password expired. Change your password now." -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:40 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:211 src/tools/sss_useradd.c:48 -#: src/tools/sss_groupadd.c:41 src/tools/sss_groupdel.c:43 -#: src/tools/sss_groupmod.c:42 src/tools/sss_groupshow.c:615 -#: src/tools/sss_userdel.c:131 src/tools/sss_usermod.c:47 -#: src/tools/sss_cache.c:260 src/tools/sss_debuglevel.c:75 -msgid "The debug level to run with" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:42 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:215 -msgid "The SSSD domain to use" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:58 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:229 src/tools/sss_useradd.c:71 -#: src/tools/sss_groupadd.c:56 src/tools/sss_groupdel.c:52 -#: src/tools/sss_groupmod.c:63 src/tools/sss_groupshow.c:626 -#: src/tools/sss_userdel.c:148 src/tools/sss_usermod.c:72 -#: src/tools/sss_cache.c:281 -msgid "Error setting the locale\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:65 -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:91 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:236 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:269 -msgid "Not enough memory\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:84 -msgid "User not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:104 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:282 -msgid "Error looking up public keys\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:94 -msgid "Failed to open a socket\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:104 -msgid "Failed to connect to the server\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:195 -msgid "Failed to execute proxy command\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:213 -msgid "The port to use to connect to the host" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:255 -msgid "Host not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:261 -msgid "The path to the proxy command must be absolute\n" -msgstr "" - -#: src/tools/sss_useradd.c:49 src/tools/sss_usermod.c:48 -msgid "The UID of the user" -msgstr "" - -#: src/tools/sss_useradd.c:50 src/tools/sss_usermod.c:50 -msgid "The comment string" -msgstr "" - -#: src/tools/sss_useradd.c:51 src/tools/sss_usermod.c:51 -msgid "Home directory" -msgstr "" - -#: src/tools/sss_useradd.c:52 src/tools/sss_usermod.c:52 -msgid "Login shell" -msgstr "" - -#: src/tools/sss_useradd.c:53 -msgid "Groups" -msgstr "" - -#: src/tools/sss_useradd.c:54 -msgid "Create user's directory if it does not exist" -msgstr "" - -#: src/tools/sss_useradd.c:55 -msgid "Never create user's directory, overrides config" -msgstr "" - -#: src/tools/sss_useradd.c:56 -msgid "Specify an alternative skeleton directory" -msgstr "" - -#: src/tools/sss_useradd.c:57 src/tools/sss_usermod.c:57 -msgid "The SELinux user for user's login" -msgstr "" - -#: src/tools/sss_useradd.c:84 src/tools/sss_groupmod.c:76 -#: src/tools/sss_usermod.c:85 -msgid "Specify group to add to\n" -msgstr "" - -#: src/tools/sss_useradd.c:108 -msgid "Specify user to add\n" -msgstr "" - -#: src/tools/sss_useradd.c:117 src/tools/sss_groupadd.c:82 -#: src/tools/sss_groupdel.c:77 src/tools/sss_groupmod.c:109 -#: src/tools/sss_groupshow.c:659 src/tools/sss_userdel.c:193 -#: src/tools/sss_usermod.c:126 -msgid "Error initializing the tools - no local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:119 src/tools/sss_groupadd.c:84 -#: src/tools/sss_groupdel.c:79 src/tools/sss_groupmod.c:111 -#: src/tools/sss_groupshow.c:661 src/tools/sss_userdel.c:195 -#: src/tools/sss_usermod.c:128 -msgid "Error initializing the tools\n" -msgstr "" - -#: src/tools/sss_useradd.c:128 src/tools/sss_groupadd.c:93 -#: src/tools/sss_groupdel.c:88 src/tools/sss_groupmod.c:119 -#: src/tools/sss_groupshow.c:670 src/tools/sss_userdel.c:204 -#: src/tools/sss_usermod.c:137 -msgid "Invalid domain specified in FQDN\n" -msgstr "" - -#: src/tools/sss_useradd.c:137 src/tools/sss_groupmod.c:139 -#: src/tools/sss_groupmod.c:166 src/tools/sss_usermod.c:160 -#: src/tools/sss_usermod.c:187 -msgid "Internal error while parsing parameters\n" -msgstr "" - -#: src/tools/sss_useradd.c:145 src/tools/sss_usermod.c:168 -#: src/tools/sss_usermod.c:195 -msgid "Groups must be in the same domain as user\n" -msgstr "" - -#: src/tools/sss_useradd.c:153 -#, c-format -msgid "Cannot find group %s in local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:168 src/tools/sss_userdel.c:214 -msgid "Cannot set default values\n" -msgstr "" - -#: src/tools/sss_useradd.c:175 src/tools/sss_usermod.c:151 -msgid "The selected UID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_useradd.c:202 src/tools/sss_usermod.c:236 -msgid "Cannot set SELinux login context\n" -msgstr "" - -#: src/tools/sss_useradd.c:217 -msgid "Cannot get info about the user\n" -msgstr "" - -#: src/tools/sss_useradd.c:229 -msgid "User's home directory already exists, not copying data from skeldir\n" -msgstr "" - -#: src/tools/sss_useradd.c:232 -#, c-format -msgid "Cannot create user's home directory: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:243 -#, c-format -msgid "Cannot create user's mail spool: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:255 -msgid "Could not allocate ID for the user - domain full?\n" -msgstr "" - -#: src/tools/sss_useradd.c:259 -msgid "A user or group with the same name or ID already exists\n" -msgstr "" - -#: src/tools/sss_useradd.c:265 -msgid "Transaction error. Could not add user.\n" -msgstr "" - -#: src/tools/sss_groupadd.c:43 src/tools/sss_groupmod.c:48 -msgid "The GID of the group" -msgstr "" - -#: src/tools/sss_groupadd.c:73 -msgid "Specify group to add\n" -msgstr "" - -#: src/tools/sss_groupadd.c:102 src/tools/sss_groupmod.c:190 -msgid "The selected GID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_groupadd.c:127 -msgid "Could not allocate ID for the group - domain full?\n" -msgstr "" - -#: src/tools/sss_groupadd.c:131 -msgid "A group with the same name or GID already exists\n" -msgstr "" - -#: src/tools/sss_groupadd.c:136 -msgid "Transaction error. Could not add group.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:68 -msgid "Specify group to delete\n" -msgstr "" - -#: src/tools/sss_groupdel.c:101 -#, c-format -msgid "Group %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_groupdel.c:115 -msgid "" -"No such group in local domain. Removing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:120 -msgid "Internal error. Could not remove group.\n" -msgstr "" - -#: src/tools/sss_groupmod.c:44 -msgid "Groups to add this group to" -msgstr "" - -#: src/tools/sss_groupmod.c:46 -msgid "Groups to remove this group from" -msgstr "" - -#: src/tools/sss_groupmod.c:84 src/tools/sss_usermod.c:93 -msgid "Specify group to remove from\n" -msgstr "" - -#: src/tools/sss_groupmod.c:98 -msgid "Specify group to modify\n" -msgstr "" - -#: src/tools/sss_groupmod.c:126 -msgid "" -"Cannot find group in local domain, modifying groups is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_groupmod.c:147 src/tools/sss_groupmod.c:174 -msgid "Member groups must be in the same domain as parent group\n" -msgstr "" - -#: src/tools/sss_groupmod.c:155 src/tools/sss_groupmod.c:182 -#: src/tools/sss_usermod.c:176 src/tools/sss_usermod.c:203 -#, c-format -msgid "" -"Cannot find group %s in local domain, only groups in local domain are " -"allowed\n" -msgstr "" - -#: src/tools/sss_groupmod.c:216 -msgid "Could not modify group - check if member group names are correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:220 -msgid "Could not modify group - check if groupname is correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:224 -msgid "Transaction error. Could not modify group.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:562 -#, c-format -msgid "%s%sGroup: %s\n" -msgstr "" - -#: src/tools/sss_groupshow.c:563 -msgid "Magic Private " -msgstr "" - -#: src/tools/sss_groupshow.c:565 -#, c-format -msgid "%sGID number: %d\n" -msgstr "" - -#: src/tools/sss_groupshow.c:567 -#, c-format -msgid "%sMember users: " -msgstr "" - -#: src/tools/sss_groupshow.c:574 -#, c-format -msgid "" -"\n" -"%sIs a member of: " -msgstr "" - -#: src/tools/sss_groupshow.c:581 -#, c-format -msgid "" -"\n" -"%sMember groups: " -msgstr "" - -#: src/tools/sss_groupshow.c:617 -msgid "Print indirect group members recursively" -msgstr "" - -#: src/tools/sss_groupshow.c:650 -msgid "Specify group to show\n" -msgstr "" - -#: src/tools/sss_groupshow.c:689 -msgid "" -"No such group in local domain. Printing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:694 -msgid "Internal error. Could not print group.\n" -msgstr "" - -#: src/tools/sss_userdel.c:133 -msgid "Remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:135 -msgid "Do not remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:137 -msgid "Force removal of files not owned by the user" -msgstr "" - -#: src/tools/sss_userdel.c:139 -msgid "Kill users' processes before removing him" -msgstr "" - -#: src/tools/sss_userdel.c:184 -msgid "Specify user to delete\n" -msgstr "" - -#: src/tools/sss_userdel.c:230 -#, c-format -msgid "User %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_userdel.c:255 -msgid "Cannot reset SELinux login context\n" -msgstr "" - -#: src/tools/sss_userdel.c:267 -#, c-format -msgid "WARNING: The user (uid %lu) was still logged in when deleted.\n" -msgstr "" - -#: src/tools/sss_userdel.c:272 -msgid "Cannot determine if the user was logged in on this platform" -msgstr "" - -#: src/tools/sss_userdel.c:277 -msgid "Error while checking if the user was logged in\n" -msgstr "" - -#: src/tools/sss_userdel.c:284 -#, c-format -msgid "The post-delete command failed: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:296 -msgid "Not removing home dir - not owned by user\n" -msgstr "" - -#: src/tools/sss_userdel.c:298 -#, c-format -msgid "Cannot remove homedir: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:309 -msgid "" -"No such user in local domain. Removing users only allowed in local domain.\n" -msgstr "" - -#: src/tools/sss_userdel.c:314 -msgid "Internal error. Could not remove user.\n" -msgstr "" - -#: src/tools/sss_usermod.c:49 -msgid "The GID of the user" -msgstr "" - -#: src/tools/sss_usermod.c:53 -msgid "Groups to add this user to" -msgstr "" - -#: src/tools/sss_usermod.c:54 -msgid "Groups to remove this user from" -msgstr "" - -#: src/tools/sss_usermod.c:55 -msgid "Lock the account" -msgstr "" - -#: src/tools/sss_usermod.c:56 -msgid "Unlock the account" -msgstr "" - -#: src/tools/sss_usermod.c:117 -msgid "Specify user to modify\n" -msgstr "" - -#: src/tools/sss_usermod.c:144 -msgid "" -"Cannot find user in local domain, modifying users is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_usermod.c:246 -msgid "Could not modify user - check if group names are correct\n" -msgstr "" - -#: src/tools/sss_usermod.c:250 -msgid "Could not modify user - user already member of groups?\n" -msgstr "" - -#: src/tools/sss_usermod.c:254 -msgid "Transaction error. Could not modify user.\n" -msgstr "" - -#: src/tools/sss_cache.c:132 -#, c-format -msgid "Couldn't invalidate %s" -msgstr "" - -#: src/tools/sss_cache.c:138 -#, c-format -msgid "Couldn't invalidate %s %s" -msgstr "" - -#: src/tools/sss_cache.c:262 -msgid "Invalidate particular user" -msgstr "" - -#: src/tools/sss_cache.c:264 -msgid "Invalidate all users" -msgstr "" - -#: src/tools/sss_cache.c:266 -msgid "Invalidate particular group" -msgstr "" - -#: src/tools/sss_cache.c:268 -msgid "Invalidate all groups" -msgstr "" - -#: src/tools/sss_cache.c:270 -msgid "Invalidate particular netgroup" -msgstr "" - -#: src/tools/sss_cache.c:272 -msgid "Invalidate all netgroups" -msgstr "" - -#: src/tools/sss_cache.c:274 -msgid "Only invalidate entries from a particular domain" -msgstr "" - -#: src/tools/sss_debuglevel.c:43 -msgid "\n" -msgstr "" - -#: src/tools/sss_debuglevel.c:102 -msgid "Specify debug level you want to set\n" -msgstr "" - -#: src/tools/tools_util.c:286 -msgid "Out of memory\n" -msgstr "" - -#: src/tools/tools_util.h:40 -#, c-format -msgid "%s must be run as root\n" -msgstr "" - -#: src/util/util.h:91 -msgid "Send the debug output to files instead of stderr" -msgstr "" diff --git a/po/bn.po b/po/bn.po deleted file mode 100644 index f2cd3a8f5..000000000 --- a/po/bn.po +++ /dev/null @@ -1,1462 +0,0 @@ -# SOME DESCRIPTIVE TITLE. -# Copyright (C) YEAR Red Hat, Inc. -# This file is distributed under the same license as the PACKAGE package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@lists.fedorahosted.org\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-11-30 04:10+0000\n" -"Last-Translator: FULL NAME \n" -"Language-Team: Bengali \n" -"Language: bn\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=2; plural=(n != 1)\n" - -#: src/config/SSSDConfig.py:39 -msgid "Set the verbosity of the debug logging" -msgstr "" - -#: src/config/SSSDConfig.py:40 -msgid "Include timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:41 -msgid "Include microseconds in timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:42 -msgid "Write debug messages to logfiles" -msgstr "" - -#: src/config/SSSDConfig.py:43 -msgid "Ping timeout before restarting service" -msgstr "" - -#: src/config/SSSDConfig.py:44 -msgid "Command to start service" -msgstr "" - -#: src/config/SSSDConfig.py:45 -msgid "Number of times to attempt connection to Data Providers" -msgstr "" - -#: src/config/SSSDConfig.py:48 -msgid "SSSD Services to start" -msgstr "" - -#: src/config/SSSDConfig.py:49 -msgid "SSSD Domains to start" -msgstr "" - -#: src/config/SSSDConfig.py:50 -msgid "Timeout for messages sent over the SBUS" -msgstr "" - -#: src/config/SSSDConfig.py:51 -msgid "Regex to parse username and domain" -msgstr "" - -#: src/config/SSSDConfig.py:52 -msgid "Printf-compatible format for displaying fully-qualified names" -msgstr "" - -#: src/config/SSSDConfig.py:53 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#: src/config/SSSDConfig.py:56 -msgid "Enumeration cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:57 -msgid "Entry cache background update timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:58 src/config/SSSDConfig.py:81 -msgid "Negative cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:59 -msgid "Users that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:60 -msgid "Groups that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:61 -msgid "Should filtered users appear in groups" -msgstr "" - -#: src/config/SSSDConfig.py:62 -msgid "The value of the password field the NSS provider should return" -msgstr "" - -#: src/config/SSSDConfig.py:63 -msgid "Override homedir value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:64 -msgid "The list of shells users are allowed to log in with" -msgstr "" - -#: src/config/SSSDConfig.py:65 -msgid "" -"The list of shells that will be vetoed, and replaced with the fallback shell" -msgstr "" - -#: src/config/SSSDConfig.py:66 -msgid "" -"If a shell stored in central directory is allowed but not available, use " -"this fallback" -msgstr "" - -#: src/config/SSSDConfig.py:69 -msgid "How long to allow cached logins between online logins (days)" -msgstr "" - -#: src/config/SSSDConfig.py:70 -msgid "How many failed logins attempts are allowed when offline" -msgstr "" - -#: src/config/SSSDConfig.py:71 -msgid "" -"How long (minutes) to deny login after offline_failed_login_attempts has " -"been reached" -msgstr "" - -#: src/config/SSSDConfig.py:72 -msgid "What kind of messages are displayed to the user during authentication" -msgstr "" - -#: src/config/SSSDConfig.py:73 -msgid "How many seconds to keep identity information cached for PAM requests" -msgstr "" - -#: src/config/SSSDConfig.py:74 -msgid "How many days before password expiration a warning should be displayed" -msgstr "" - -#: src/config/SSSDConfig.py:77 -msgid "Whether to evaluate the time-based attributes in sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:78 -msgid "" -"How many seconds to keep sudorules cached before asking the provider again" -msgstr "" - -#: src/config/SSSDConfig.py:84 -msgid "Identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:85 -msgid "Authentication provider" -msgstr "" - -#: src/config/SSSDConfig.py:86 -msgid "Access control provider" -msgstr "" - -#: src/config/SSSDConfig.py:87 -msgid "Password change provider" -msgstr "" - -#: src/config/SSSDConfig.py:88 -msgid "SUDO provider" -msgstr "" - -#: src/config/SSSDConfig.py:89 -msgid "Autofs provider" -msgstr "" - -#: src/config/SSSDConfig.py:90 -msgid "Session-loading provider" -msgstr "" - -#: src/config/SSSDConfig.py:91 -msgid "Host identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:94 -msgid "Minimum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:95 -msgid "Maximum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:96 -msgid "Enable enumerating all users/groups" -msgstr "" - -#: src/config/SSSDConfig.py:97 -msgid "Cache credentials for offline login" -msgstr "" - -#: src/config/SSSDConfig.py:98 -msgid "Store password hashes" -msgstr "" - -#: src/config/SSSDConfig.py:99 -msgid "Display users/groups in fully-qualified form" -msgstr "" - -#: src/config/SSSDConfig.py:100 src/config/SSSDConfig.py:107 -#: src/config/SSSDConfig.py:108 src/config/SSSDConfig.py:109 -#: src/config/SSSDConfig.py:110 src/config/SSSDConfig.py:111 -msgid "Entry cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:101 -msgid "" -"Restrict or prefer a specific address family when performing DNS lookups" -msgstr "" - -#: src/config/SSSDConfig.py:102 -msgid "How long to keep cached entries after last successful login (days)" -msgstr "" - -#: src/config/SSSDConfig.py:103 -msgid "How long to wait for replies from DNS when resolving servers (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:104 -msgid "The domain part of service discovery DNS query" -msgstr "" - -#: src/config/SSSDConfig.py:105 -msgid "Override GID value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:106 -msgid "Treat usernames as case sensitive" -msgstr "" - -#: src/config/SSSDConfig.py:114 -msgid "IPA domain" -msgstr "" - -#: src/config/SSSDConfig.py:115 -msgid "IPA server address" -msgstr "" - -#: src/config/SSSDConfig.py:116 -msgid "IPA client hostname" -msgstr "" - -#: src/config/SSSDConfig.py:117 -msgid "Whether to automatically update the client's DNS entry in FreeIPA" -msgstr "" - -#: src/config/SSSDConfig.py:118 -msgid "The interface whose IP should be used for dynamic DNS updates" -msgstr "" - -#: src/config/SSSDConfig.py:119 -msgid "Search base for HBAC related objects" -msgstr "" - -#: src/config/SSSDConfig.py:120 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server" -msgstr "" - -#: src/config/SSSDConfig.py:121 -msgid "If DENY rules are present, either DENY_ALL or IGNORE" -msgstr "" - -#: src/config/SSSDConfig.py:122 -msgid "If set to false, host argument given by PAM will be ignored" -msgstr "" - -#: src/config/SSSDConfig.py:123 -msgid "The automounter location this IPA client is using" -msgstr "" - -#: src/config/SSSDConfig.py:126 src/config/SSSDConfig.py:127 -msgid "Kerberos server address" -msgstr "" - -#: src/config/SSSDConfig.py:128 -msgid "Kerberos realm" -msgstr "" - -#: src/config/SSSDConfig.py:129 -msgid "Authentication timeout" -msgstr "" - -#: src/config/SSSDConfig.py:132 -msgid "Directory to store credential caches" -msgstr "" - -#: src/config/SSSDConfig.py:133 -msgid "Location of the user's credential cache" -msgstr "" - -#: src/config/SSSDConfig.py:134 -msgid "Location of the keytab to validate credentials" -msgstr "" - -#: src/config/SSSDConfig.py:135 -msgid "Enable credential validation" -msgstr "" - -#: src/config/SSSDConfig.py:136 -msgid "Store password if offline for later online authentication" -msgstr "" - -#: src/config/SSSDConfig.py:137 -msgid "Renewable lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:138 -msgid "Lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:139 -msgid "Time between two checks for renewal" -msgstr "" - -#: src/config/SSSDConfig.py:140 -msgid "Enables FAST" -msgstr "" - -#: src/config/SSSDConfig.py:141 -msgid "Selects the principal to use for FAST" -msgstr "" - -#: src/config/SSSDConfig.py:142 -msgid "Enables principal canonicalization" -msgstr "" - -#: src/config/SSSDConfig.py:145 -msgid "Server where the change password service is running if not on the KDC" -msgstr "" - -#: src/config/SSSDConfig.py:148 -msgid "ldap_uri, The URI of the LDAP server" -msgstr "" - -#: src/config/SSSDConfig.py:149 -msgid "The default base DN" -msgstr "" - -#: src/config/SSSDConfig.py:150 -msgid "The Schema Type in use on the LDAP server, rfc2307" -msgstr "" - -#: src/config/SSSDConfig.py:151 -msgid "The default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:152 -msgid "The type of the authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:153 -msgid "The authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:154 -msgid "Length of time to attempt connection" -msgstr "" - -#: src/config/SSSDConfig.py:155 -msgid "Length of time to attempt synchronous LDAP operations" -msgstr "" - -#: src/config/SSSDConfig.py:156 -msgid "Length of time between attempts to reconnect while offline" -msgstr "" - -#: src/config/SSSDConfig.py:157 -msgid "Use only the upper case for realm names" -msgstr "" - -#: src/config/SSSDConfig.py:158 -msgid "File that contains CA certificates" -msgstr "" - -#: src/config/SSSDConfig.py:159 -msgid "Path to CA certificate directory" -msgstr "" - -#: src/config/SSSDConfig.py:160 -msgid "File that contains the client certificate" -msgstr "" - -#: src/config/SSSDConfig.py:161 -msgid "File that contains the client key" -msgstr "" - -#: src/config/SSSDConfig.py:162 -msgid "List of possible ciphers suites" -msgstr "" - -#: src/config/SSSDConfig.py:163 -msgid "Require TLS certificate verification" -msgstr "" - -#: src/config/SSSDConfig.py:164 -msgid "Specify the sasl mechanism to use" -msgstr "" - -#: src/config/SSSDConfig.py:165 -msgid "Specify the sasl authorization id to use" -msgstr "" - -#: src/config/SSSDConfig.py:166 -msgid "Specify the sasl authorization realm to use" -msgstr "" - -#: src/config/SSSDConfig.py:167 -msgid "Specify the minimal SSF for LDAP sasl authorization" -msgstr "" - -#: src/config/SSSDConfig.py:168 -msgid "Kerberos service keytab" -msgstr "" - -#: src/config/SSSDConfig.py:169 -msgid "Use Kerberos auth for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:170 -msgid "Follow LDAP referrals" -msgstr "" - -#: src/config/SSSDConfig.py:171 -msgid "Lifetime of TGT for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:172 -msgid "How to dereference aliases" -msgstr "" - -#: src/config/SSSDConfig.py:173 -msgid "Service name for DNS service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:174 -msgid "The number of records to retrieve in a single LDAP query" -msgstr "" - -#: src/config/SSSDConfig.py:175 -msgid "The number of members that must be missing to trigger a full deref" -msgstr "" - -#: src/config/SSSDConfig.py:176 -msgid "" -"Whether the LDAP library should perform a reverse lookup to canonicalize the " -"host name during a SASL bind" -msgstr "" - -#: src/config/SSSDConfig.py:178 -msgid "entryUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:179 -msgid "lastUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:181 -msgid "How long to retain a connection to the LDAP server before disconnecting" -msgstr "" - -#: src/config/SSSDConfig.py:183 -msgid "Disable the LDAP paging control" -msgstr "" - -#: src/config/SSSDConfig.py:186 -msgid "Length of time to wait for a search request" -msgstr "" - -#: src/config/SSSDConfig.py:187 -msgid "Length of time to wait for a enumeration request" -msgstr "" - -#: src/config/SSSDConfig.py:188 -msgid "Length of time between enumeration updates" -msgstr "" - -#: src/config/SSSDConfig.py:189 -msgid "Length of time between cache cleanups" -msgstr "" - -#: src/config/SSSDConfig.py:190 -msgid "Require TLS for ID lookups" -msgstr "" - -#: src/config/SSSDConfig.py:191 -msgid "Base DN for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:192 -msgid "Scope of user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:193 -msgid "Filter for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:194 -msgid "Objectclass for users" -msgstr "" - -#: src/config/SSSDConfig.py:195 -msgid "Username attribute" -msgstr "" - -#: src/config/SSSDConfig.py:197 -msgid "UID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:198 -msgid "Primary GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:199 -msgid "GECOS attribute" -msgstr "" - -#: src/config/SSSDConfig.py:200 -msgid "Home directory attribute" -msgstr "" - -#: src/config/SSSDConfig.py:201 -msgid "Shell attribute" -msgstr "" - -#: src/config/SSSDConfig.py:202 -msgid "UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:203 -msgid "User principal attribute (for Kerberos)" -msgstr "" - -#: src/config/SSSDConfig.py:204 -msgid "Full Name" -msgstr "" - -#: src/config/SSSDConfig.py:205 -msgid "memberOf attribute" -msgstr "" - -#: src/config/SSSDConfig.py:206 -msgid "Modification time attribute" -msgstr "" - -#: src/config/SSSDConfig.py:208 -msgid "shadowLastChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:209 -msgid "shadowMin attribute" -msgstr "" - -#: src/config/SSSDConfig.py:210 -msgid "shadowMax attribute" -msgstr "" - -#: src/config/SSSDConfig.py:211 -msgid "shadowWarning attribute" -msgstr "" - -#: src/config/SSSDConfig.py:212 -msgid "shadowInactive attribute" -msgstr "" - -#: src/config/SSSDConfig.py:213 -msgid "shadowExpire attribute" -msgstr "" - -#: src/config/SSSDConfig.py:214 -msgid "shadowFlag attribute" -msgstr "" - -#: src/config/SSSDConfig.py:215 -msgid "Attribute listing authorized PAM services" -msgstr "" - -#: src/config/SSSDConfig.py:216 -msgid "Attribute listing authorized server hosts" -msgstr "" - -#: src/config/SSSDConfig.py:217 -msgid "krbLastPwdChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:218 -msgid "krbPasswordExpiration attribute" -msgstr "" - -#: src/config/SSSDConfig.py:219 -msgid "Attribute indicating that server side password policies are active" -msgstr "" - -#: src/config/SSSDConfig.py:220 -msgid "accountExpires attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:221 -msgid "userAccountControl attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:222 -msgid "nsAccountLock attribute" -msgstr "" - -#: src/config/SSSDConfig.py:223 -msgid "loginDisabled attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:224 -msgid "loginExpirationTime attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:225 -msgid "loginAllowedTimeMap attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:226 -msgid "SSH public key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:228 -msgid "Base DN for group lookups" -msgstr "" - -#: src/config/SSSDConfig.py:231 -msgid "Objectclass for groups" -msgstr "" - -#: src/config/SSSDConfig.py:232 -msgid "Group name" -msgstr "" - -#: src/config/SSSDConfig.py:233 -msgid "Group password" -msgstr "" - -#: src/config/SSSDConfig.py:234 -msgid "GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:235 -msgid "Group member attribute" -msgstr "" - -#: src/config/SSSDConfig.py:236 -msgid "Group UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:237 -msgid "Modification time attribute for groups" -msgstr "" - -#: src/config/SSSDConfig.py:239 -msgid "Maximum nesting level SSSd will follow" -msgstr "" - -#: src/config/SSSDConfig.py:241 -msgid "Base DN for netgroup lookups" -msgstr "" - -#: src/config/SSSDConfig.py:242 -msgid "Objectclass for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:243 -msgid "Netgroup name" -msgstr "" - -#: src/config/SSSDConfig.py:244 -msgid "Netgroups members attribute" -msgstr "" - -#: src/config/SSSDConfig.py:245 -msgid "Netgroup triple attribute" -msgstr "" - -#: src/config/SSSDConfig.py:246 -msgid "Netgroup UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:247 -msgid "Modification time attribute for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:249 -msgid "Base DN for service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:250 -msgid "Objectclass for services" -msgstr "" - -#: src/config/SSSDConfig.py:251 -msgid "Service name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:252 -msgid "Service port attribute" -msgstr "" - -#: src/config/SSSDConfig.py:253 -msgid "Service protocol attribute" -msgstr "" - -#: src/config/SSSDConfig.py:257 -msgid "Policy to evaluate the password expiration" -msgstr "" - -#: src/config/SSSDConfig.py:260 -msgid "LDAP filter to determine access privileges" -msgstr "" - -#: src/config/SSSDConfig.py:261 -msgid "Which attributes shall be used to evaluate if an account is expired" -msgstr "" - -#: src/config/SSSDConfig.py:262 -msgid "Which rules should be used to evaluate access control" -msgstr "" - -#: src/config/SSSDConfig.py:265 -msgid "URI of an LDAP server where password changes are allowed" -msgstr "" - -#: src/config/SSSDConfig.py:266 -msgid "DNS service name for LDAP password change server" -msgstr "" - -#: src/config/SSSDConfig.py:269 -msgid "Base DN for sudo rules lookups" -msgstr "" - -#: src/config/SSSDConfig.py:270 -msgid "Enable periodical update of all sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:271 -msgid "Length of time between rules updates" -msgstr "" - -#: src/config/SSSDConfig.py:272 -msgid "Object class for sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:273 -msgid "Sudo rule name" -msgstr "" - -#: src/config/SSSDConfig.py:274 -msgid "Sudo rule command attribute" -msgstr "" - -#: src/config/SSSDConfig.py:275 -msgid "Sudo rule host attribute" -msgstr "" - -#: src/config/SSSDConfig.py:276 -msgid "Sudo rule user attribute" -msgstr "" - -#: src/config/SSSDConfig.py:277 -msgid "Sudo rule option attribute" -msgstr "" - -#: src/config/SSSDConfig.py:278 -msgid "Sudo rule runasuser attribute" -msgstr "" - -#: src/config/SSSDConfig.py:279 -msgid "Sudo rule runasgroup attribute" -msgstr "" - -#: src/config/SSSDConfig.py:280 -msgid "Sudo rule notbefore attribute" -msgstr "" - -#: src/config/SSSDConfig.py:281 -msgid "Sudo rule notafter attribute" -msgstr "" - -#: src/config/SSSDConfig.py:282 -msgid "Sudo rule order attribute" -msgstr "" - -#: src/config/SSSDConfig.py:285 -msgid "Object class for automounter maps" -msgstr "" - -#: src/config/SSSDConfig.py:286 -msgid "Automounter map name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:287 -msgid "Object class for automounter map entries" -msgstr "" - -#: src/config/SSSDConfig.py:288 -msgid "Automounter map entry key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:289 -msgid "Automounter map entry value attribute" -msgstr "" - -#: src/config/SSSDConfig.py:290 -msgid "Base DN for automounter map lookups" -msgstr "" - -#: src/config/SSSDConfig.py:293 -msgid "Comma separated list of allowed users" -msgstr "" - -#: src/config/SSSDConfig.py:294 -msgid "Comma separated list of prohibited users" -msgstr "" - -#: src/config/SSSDConfig.py:297 -msgid "Default shell, /bin/bash" -msgstr "" - -#: src/config/SSSDConfig.py:298 -msgid "Base for home directories" -msgstr "" - -#: src/config/SSSDConfig.py:301 -msgid "The name of the NSS library to use" -msgstr "" - -#: src/config/SSSDConfig.py:304 -msgid "PAM stack to use" -msgstr "" - -#: src/monitor/monitor.c:2379 -msgid "Become a daemon (default)" -msgstr "" - -#: src/monitor/monitor.c:2381 -msgid "Run interactive (not a daemon)" -msgstr "" - -#: src/monitor/monitor.c:2383 src/tools/sss_debuglevel.c:77 -msgid "Specify a non-default config file" -msgstr "" - -#: src/monitor/monitor.c:2385 -msgid "Print version number and exit" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1575 src/providers/ldap/ldap_child.c:381 -#: src/util/util.h:89 -msgid "Debug level" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1577 src/providers/ldap/ldap_child.c:383 -#: src/util/util.h:93 -msgid "Add debug timestamps" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1579 src/providers/ldap/ldap_child.c:385 -#: src/util/util.h:95 -msgid "Show timestamps with microseconds" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1581 src/providers/ldap/ldap_child.c:387 -msgid "An open file descriptor for the debug logs" -msgstr "" - -#: src/providers/data_provider_be.c:1938 -msgid "Domain of the information provider (mandatory)" -msgstr "" - -#: src/sss_client/common.c:878 -msgid "Privileged socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:881 -msgid "Public socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:884 -msgid "Unexpected format of the server credential message." -msgstr "" - -#: src/sss_client/common.c:887 -msgid "SSSD is not run by root." -msgstr "" - -#: src/sss_client/common.c:892 -msgid "An error occurred, but no description can be found." -msgstr "" - -#: src/sss_client/common.c:898 -msgid "Unexpected error while looking for an error description" -msgstr "" - -#: src/sss_client/pam_sss.c:378 -msgid "Passwords do not match" -msgstr "" - -#: src/sss_client/pam_sss.c:571 -msgid "Password reset by root is not supported." -msgstr "" - -#: src/sss_client/pam_sss.c:612 -msgid "Authenticated with cached credentials" -msgstr "" - -#: src/sss_client/pam_sss.c:613 -msgid ", your cached password will expire at: " -msgstr "" - -#: src/sss_client/pam_sss.c:643 -#, c-format -msgid "Your password has expired. You have %d grace login(s) remaining." -msgstr "" - -#: src/sss_client/pam_sss.c:689 -#, c-format -msgid "Your password will expire in %d %s." -msgstr "" - -#: src/sss_client/pam_sss.c:738 -msgid "Authentication is denied until: " -msgstr "" - -#: src/sss_client/pam_sss.c:759 -msgid "System is offline, password change not possible" -msgstr "" - -#: src/sss_client/pam_sss.c:789 src/sss_client/pam_sss.c:802 -msgid "Password change failed. " -msgstr "" - -#: src/sss_client/pam_sss.c:792 src/sss_client/pam_sss.c:803 -msgid "Server message: " -msgstr "" - -#: src/sss_client/pam_sss.c:1286 -msgid "New Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1287 -msgid "Reenter new Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1373 -msgid "Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1405 -msgid "Current Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1552 -msgid "Password expired. Change your password now." -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:40 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:211 src/tools/sss_useradd.c:48 -#: src/tools/sss_groupadd.c:41 src/tools/sss_groupdel.c:43 -#: src/tools/sss_groupmod.c:42 src/tools/sss_groupshow.c:615 -#: src/tools/sss_userdel.c:131 src/tools/sss_usermod.c:47 -#: src/tools/sss_cache.c:260 src/tools/sss_debuglevel.c:75 -msgid "The debug level to run with" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:42 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:215 -msgid "The SSSD domain to use" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:58 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:229 src/tools/sss_useradd.c:71 -#: src/tools/sss_groupadd.c:56 src/tools/sss_groupdel.c:52 -#: src/tools/sss_groupmod.c:63 src/tools/sss_groupshow.c:626 -#: src/tools/sss_userdel.c:148 src/tools/sss_usermod.c:72 -#: src/tools/sss_cache.c:281 -msgid "Error setting the locale\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:65 -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:91 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:236 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:269 -msgid "Not enough memory\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:84 -msgid "User not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:104 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:282 -msgid "Error looking up public keys\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:94 -msgid "Failed to open a socket\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:104 -msgid "Failed to connect to the server\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:195 -msgid "Failed to execute proxy command\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:213 -msgid "The port to use to connect to the host" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:255 -msgid "Host not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:261 -msgid "The path to the proxy command must be absolute\n" -msgstr "" - -#: src/tools/sss_useradd.c:49 src/tools/sss_usermod.c:48 -msgid "The UID of the user" -msgstr "" - -#: src/tools/sss_useradd.c:50 src/tools/sss_usermod.c:50 -msgid "The comment string" -msgstr "" - -#: src/tools/sss_useradd.c:51 src/tools/sss_usermod.c:51 -msgid "Home directory" -msgstr "" - -#: src/tools/sss_useradd.c:52 src/tools/sss_usermod.c:52 -msgid "Login shell" -msgstr "" - -#: src/tools/sss_useradd.c:53 -msgid "Groups" -msgstr "" - -#: src/tools/sss_useradd.c:54 -msgid "Create user's directory if it does not exist" -msgstr "" - -#: src/tools/sss_useradd.c:55 -msgid "Never create user's directory, overrides config" -msgstr "" - -#: src/tools/sss_useradd.c:56 -msgid "Specify an alternative skeleton directory" -msgstr "" - -#: src/tools/sss_useradd.c:57 src/tools/sss_usermod.c:57 -msgid "The SELinux user for user's login" -msgstr "" - -#: src/tools/sss_useradd.c:84 src/tools/sss_groupmod.c:76 -#: src/tools/sss_usermod.c:85 -msgid "Specify group to add to\n" -msgstr "" - -#: src/tools/sss_useradd.c:108 -msgid "Specify user to add\n" -msgstr "" - -#: src/tools/sss_useradd.c:117 src/tools/sss_groupadd.c:82 -#: src/tools/sss_groupdel.c:77 src/tools/sss_groupmod.c:109 -#: src/tools/sss_groupshow.c:659 src/tools/sss_userdel.c:193 -#: src/tools/sss_usermod.c:126 -msgid "Error initializing the tools - no local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:119 src/tools/sss_groupadd.c:84 -#: src/tools/sss_groupdel.c:79 src/tools/sss_groupmod.c:111 -#: src/tools/sss_groupshow.c:661 src/tools/sss_userdel.c:195 -#: src/tools/sss_usermod.c:128 -msgid "Error initializing the tools\n" -msgstr "" - -#: src/tools/sss_useradd.c:128 src/tools/sss_groupadd.c:93 -#: src/tools/sss_groupdel.c:88 src/tools/sss_groupmod.c:119 -#: src/tools/sss_groupshow.c:670 src/tools/sss_userdel.c:204 -#: src/tools/sss_usermod.c:137 -msgid "Invalid domain specified in FQDN\n" -msgstr "" - -#: src/tools/sss_useradd.c:137 src/tools/sss_groupmod.c:139 -#: src/tools/sss_groupmod.c:166 src/tools/sss_usermod.c:160 -#: src/tools/sss_usermod.c:187 -msgid "Internal error while parsing parameters\n" -msgstr "" - -#: src/tools/sss_useradd.c:145 src/tools/sss_usermod.c:168 -#: src/tools/sss_usermod.c:195 -msgid "Groups must be in the same domain as user\n" -msgstr "" - -#: src/tools/sss_useradd.c:153 -#, c-format -msgid "Cannot find group %s in local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:168 src/tools/sss_userdel.c:214 -msgid "Cannot set default values\n" -msgstr "" - -#: src/tools/sss_useradd.c:175 src/tools/sss_usermod.c:151 -msgid "The selected UID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_useradd.c:202 src/tools/sss_usermod.c:236 -msgid "Cannot set SELinux login context\n" -msgstr "" - -#: src/tools/sss_useradd.c:217 -msgid "Cannot get info about the user\n" -msgstr "" - -#: src/tools/sss_useradd.c:229 -msgid "User's home directory already exists, not copying data from skeldir\n" -msgstr "" - -#: src/tools/sss_useradd.c:232 -#, c-format -msgid "Cannot create user's home directory: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:243 -#, c-format -msgid "Cannot create user's mail spool: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:255 -msgid "Could not allocate ID for the user - domain full?\n" -msgstr "" - -#: src/tools/sss_useradd.c:259 -msgid "A user or group with the same name or ID already exists\n" -msgstr "" - -#: src/tools/sss_useradd.c:265 -msgid "Transaction error. Could not add user.\n" -msgstr "" - -#: src/tools/sss_groupadd.c:43 src/tools/sss_groupmod.c:48 -msgid "The GID of the group" -msgstr "" - -#: src/tools/sss_groupadd.c:73 -msgid "Specify group to add\n" -msgstr "" - -#: src/tools/sss_groupadd.c:102 src/tools/sss_groupmod.c:190 -msgid "The selected GID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_groupadd.c:127 -msgid "Could not allocate ID for the group - domain full?\n" -msgstr "" - -#: src/tools/sss_groupadd.c:131 -msgid "A group with the same name or GID already exists\n" -msgstr "" - -#: src/tools/sss_groupadd.c:136 -msgid "Transaction error. Could not add group.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:68 -msgid "Specify group to delete\n" -msgstr "" - -#: src/tools/sss_groupdel.c:101 -#, c-format -msgid "Group %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_groupdel.c:115 -msgid "" -"No such group in local domain. Removing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:120 -msgid "Internal error. Could not remove group.\n" -msgstr "" - -#: src/tools/sss_groupmod.c:44 -msgid "Groups to add this group to" -msgstr "" - -#: src/tools/sss_groupmod.c:46 -msgid "Groups to remove this group from" -msgstr "" - -#: src/tools/sss_groupmod.c:84 src/tools/sss_usermod.c:93 -msgid "Specify group to remove from\n" -msgstr "" - -#: src/tools/sss_groupmod.c:98 -msgid "Specify group to modify\n" -msgstr "" - -#: src/tools/sss_groupmod.c:126 -msgid "" -"Cannot find group in local domain, modifying groups is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_groupmod.c:147 src/tools/sss_groupmod.c:174 -msgid "Member groups must be in the same domain as parent group\n" -msgstr "" - -#: src/tools/sss_groupmod.c:155 src/tools/sss_groupmod.c:182 -#: src/tools/sss_usermod.c:176 src/tools/sss_usermod.c:203 -#, c-format -msgid "" -"Cannot find group %s in local domain, only groups in local domain are " -"allowed\n" -msgstr "" - -#: src/tools/sss_groupmod.c:216 -msgid "Could not modify group - check if member group names are correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:220 -msgid "Could not modify group - check if groupname is correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:224 -msgid "Transaction error. Could not modify group.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:562 -#, c-format -msgid "%s%sGroup: %s\n" -msgstr "" - -#: src/tools/sss_groupshow.c:563 -msgid "Magic Private " -msgstr "" - -#: src/tools/sss_groupshow.c:565 -#, c-format -msgid "%sGID number: %d\n" -msgstr "" - -#: src/tools/sss_groupshow.c:567 -#, c-format -msgid "%sMember users: " -msgstr "" - -#: src/tools/sss_groupshow.c:574 -#, c-format -msgid "" -"\n" -"%sIs a member of: " -msgstr "" - -#: src/tools/sss_groupshow.c:581 -#, c-format -msgid "" -"\n" -"%sMember groups: " -msgstr "" - -#: src/tools/sss_groupshow.c:617 -msgid "Print indirect group members recursively" -msgstr "" - -#: src/tools/sss_groupshow.c:650 -msgid "Specify group to show\n" -msgstr "" - -#: src/tools/sss_groupshow.c:689 -msgid "" -"No such group in local domain. Printing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:694 -msgid "Internal error. Could not print group.\n" -msgstr "" - -#: src/tools/sss_userdel.c:133 -msgid "Remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:135 -msgid "Do not remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:137 -msgid "Force removal of files not owned by the user" -msgstr "" - -#: src/tools/sss_userdel.c:139 -msgid "Kill users' processes before removing him" -msgstr "" - -#: src/tools/sss_userdel.c:184 -msgid "Specify user to delete\n" -msgstr "" - -#: src/tools/sss_userdel.c:230 -#, c-format -msgid "User %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_userdel.c:255 -msgid "Cannot reset SELinux login context\n" -msgstr "" - -#: src/tools/sss_userdel.c:267 -#, c-format -msgid "WARNING: The user (uid %lu) was still logged in when deleted.\n" -msgstr "" - -#: src/tools/sss_userdel.c:272 -msgid "Cannot determine if the user was logged in on this platform" -msgstr "" - -#: src/tools/sss_userdel.c:277 -msgid "Error while checking if the user was logged in\n" -msgstr "" - -#: src/tools/sss_userdel.c:284 -#, c-format -msgid "The post-delete command failed: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:296 -msgid "Not removing home dir - not owned by user\n" -msgstr "" - -#: src/tools/sss_userdel.c:298 -#, c-format -msgid "Cannot remove homedir: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:309 -msgid "" -"No such user in local domain. Removing users only allowed in local domain.\n" -msgstr "" - -#: src/tools/sss_userdel.c:314 -msgid "Internal error. Could not remove user.\n" -msgstr "" - -#: src/tools/sss_usermod.c:49 -msgid "The GID of the user" -msgstr "" - -#: src/tools/sss_usermod.c:53 -msgid "Groups to add this user to" -msgstr "" - -#: src/tools/sss_usermod.c:54 -msgid "Groups to remove this user from" -msgstr "" - -#: src/tools/sss_usermod.c:55 -msgid "Lock the account" -msgstr "" - -#: src/tools/sss_usermod.c:56 -msgid "Unlock the account" -msgstr "" - -#: src/tools/sss_usermod.c:117 -msgid "Specify user to modify\n" -msgstr "" - -#: src/tools/sss_usermod.c:144 -msgid "" -"Cannot find user in local domain, modifying users is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_usermod.c:246 -msgid "Could not modify user - check if group names are correct\n" -msgstr "" - -#: src/tools/sss_usermod.c:250 -msgid "Could not modify user - user already member of groups?\n" -msgstr "" - -#: src/tools/sss_usermod.c:254 -msgid "Transaction error. Could not modify user.\n" -msgstr "" - -#: src/tools/sss_cache.c:132 -#, c-format -msgid "Couldn't invalidate %s" -msgstr "" - -#: src/tools/sss_cache.c:138 -#, c-format -msgid "Couldn't invalidate %s %s" -msgstr "" - -#: src/tools/sss_cache.c:262 -msgid "Invalidate particular user" -msgstr "" - -#: src/tools/sss_cache.c:264 -msgid "Invalidate all users" -msgstr "" - -#: src/tools/sss_cache.c:266 -msgid "Invalidate particular group" -msgstr "" - -#: src/tools/sss_cache.c:268 -msgid "Invalidate all groups" -msgstr "" - -#: src/tools/sss_cache.c:270 -msgid "Invalidate particular netgroup" -msgstr "" - -#: src/tools/sss_cache.c:272 -msgid "Invalidate all netgroups" -msgstr "" - -#: src/tools/sss_cache.c:274 -msgid "Only invalidate entries from a particular domain" -msgstr "" - -#: src/tools/sss_debuglevel.c:43 -msgid "\n" -msgstr "" - -#: src/tools/sss_debuglevel.c:102 -msgid "Specify debug level you want to set\n" -msgstr "" - -#: src/tools/tools_util.c:286 -msgid "Out of memory\n" -msgstr "" - -#: src/tools/tools_util.h:40 -#, c-format -msgid "%s must be run as root\n" -msgstr "" - -#: src/util/util.h:91 -msgid "Send the debug output to files instead of stderr" -msgstr "" diff --git a/po/bn_IN.po b/po/bn_IN.po deleted file mode 100644 index b27756c04..000000000 --- a/po/bn_IN.po +++ /dev/null @@ -1,1462 +0,0 @@ -# SOME DESCRIPTIVE TITLE. -# Copyright (C) YEAR Red Hat, Inc. -# This file is distributed under the same license as the PACKAGE package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@lists.fedorahosted.org\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2012-02-14 12:55+0000\n" -"Last-Translator: sgallagh \n" -"Language-Team: Bengali (India) \n" -"Language: bn_IN\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=2; plural=(n != 1)\n" - -#: src/config/SSSDConfig.py:39 -msgid "Set the verbosity of the debug logging" -msgstr "" - -#: src/config/SSSDConfig.py:40 -msgid "Include timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:41 -msgid "Include microseconds in timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:42 -msgid "Write debug messages to logfiles" -msgstr "" - -#: src/config/SSSDConfig.py:43 -msgid "Ping timeout before restarting service" -msgstr "" - -#: src/config/SSSDConfig.py:44 -msgid "Command to start service" -msgstr "" - -#: src/config/SSSDConfig.py:45 -msgid "Number of times to attempt connection to Data Providers" -msgstr "" - -#: src/config/SSSDConfig.py:48 -msgid "SSSD Services to start" -msgstr "" - -#: src/config/SSSDConfig.py:49 -msgid "SSSD Domains to start" -msgstr "" - -#: src/config/SSSDConfig.py:50 -msgid "Timeout for messages sent over the SBUS" -msgstr "" - -#: src/config/SSSDConfig.py:51 -msgid "Regex to parse username and domain" -msgstr "" - -#: src/config/SSSDConfig.py:52 -msgid "Printf-compatible format for displaying fully-qualified names" -msgstr "" - -#: src/config/SSSDConfig.py:53 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#: src/config/SSSDConfig.py:56 -msgid "Enumeration cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:57 -msgid "Entry cache background update timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:58 src/config/SSSDConfig.py:81 -msgid "Negative cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:59 -msgid "Users that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:60 -msgid "Groups that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:61 -msgid "Should filtered users appear in groups" -msgstr "" - -#: src/config/SSSDConfig.py:62 -msgid "The value of the password field the NSS provider should return" -msgstr "" - -#: src/config/SSSDConfig.py:63 -msgid "Override homedir value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:64 -msgid "The list of shells users are allowed to log in with" -msgstr "" - -#: src/config/SSSDConfig.py:65 -msgid "" -"The list of shells that will be vetoed, and replaced with the fallback shell" -msgstr "" - -#: src/config/SSSDConfig.py:66 -msgid "" -"If a shell stored in central directory is allowed but not available, use " -"this fallback" -msgstr "" - -#: src/config/SSSDConfig.py:69 -msgid "How long to allow cached logins between online logins (days)" -msgstr "" - -#: src/config/SSSDConfig.py:70 -msgid "How many failed logins attempts are allowed when offline" -msgstr "" - -#: src/config/SSSDConfig.py:71 -msgid "" -"How long (minutes) to deny login after offline_failed_login_attempts has " -"been reached" -msgstr "" - -#: src/config/SSSDConfig.py:72 -msgid "What kind of messages are displayed to the user during authentication" -msgstr "" - -#: src/config/SSSDConfig.py:73 -msgid "How many seconds to keep identity information cached for PAM requests" -msgstr "" - -#: src/config/SSSDConfig.py:74 -msgid "How many days before password expiration a warning should be displayed" -msgstr "" - -#: src/config/SSSDConfig.py:77 -msgid "Whether to evaluate the time-based attributes in sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:78 -msgid "" -"How many seconds to keep sudorules cached before asking the provider again" -msgstr "" - -#: src/config/SSSDConfig.py:84 -msgid "Identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:85 -msgid "Authentication provider" -msgstr "" - -#: src/config/SSSDConfig.py:86 -msgid "Access control provider" -msgstr "" - -#: src/config/SSSDConfig.py:87 -msgid "Password change provider" -msgstr "" - -#: src/config/SSSDConfig.py:88 -msgid "SUDO provider" -msgstr "" - -#: src/config/SSSDConfig.py:89 -msgid "Autofs provider" -msgstr "" - -#: src/config/SSSDConfig.py:90 -msgid "Session-loading provider" -msgstr "" - -#: src/config/SSSDConfig.py:91 -msgid "Host identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:94 -msgid "Minimum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:95 -msgid "Maximum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:96 -msgid "Enable enumerating all users/groups" -msgstr "" - -#: src/config/SSSDConfig.py:97 -msgid "Cache credentials for offline login" -msgstr "" - -#: src/config/SSSDConfig.py:98 -msgid "Store password hashes" -msgstr "" - -#: src/config/SSSDConfig.py:99 -msgid "Display users/groups in fully-qualified form" -msgstr "" - -#: src/config/SSSDConfig.py:100 src/config/SSSDConfig.py:107 -#: src/config/SSSDConfig.py:108 src/config/SSSDConfig.py:109 -#: src/config/SSSDConfig.py:110 src/config/SSSDConfig.py:111 -msgid "Entry cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:101 -msgid "" -"Restrict or prefer a specific address family when performing DNS lookups" -msgstr "" - -#: src/config/SSSDConfig.py:102 -msgid "How long to keep cached entries after last successful login (days)" -msgstr "" - -#: src/config/SSSDConfig.py:103 -msgid "How long to wait for replies from DNS when resolving servers (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:104 -msgid "The domain part of service discovery DNS query" -msgstr "" - -#: src/config/SSSDConfig.py:105 -msgid "Override GID value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:106 -msgid "Treat usernames as case sensitive" -msgstr "" - -#: src/config/SSSDConfig.py:114 -msgid "IPA domain" -msgstr "" - -#: src/config/SSSDConfig.py:115 -msgid "IPA server address" -msgstr "" - -#: src/config/SSSDConfig.py:116 -msgid "IPA client hostname" -msgstr "" - -#: src/config/SSSDConfig.py:117 -msgid "Whether to automatically update the client's DNS entry in FreeIPA" -msgstr "" - -#: src/config/SSSDConfig.py:118 -msgid "The interface whose IP should be used for dynamic DNS updates" -msgstr "" - -#: src/config/SSSDConfig.py:119 -msgid "Search base for HBAC related objects" -msgstr "" - -#: src/config/SSSDConfig.py:120 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server" -msgstr "" - -#: src/config/SSSDConfig.py:121 -msgid "If DENY rules are present, either DENY_ALL or IGNORE" -msgstr "" - -#: src/config/SSSDConfig.py:122 -msgid "If set to false, host argument given by PAM will be ignored" -msgstr "" - -#: src/config/SSSDConfig.py:123 -msgid "The automounter location this IPA client is using" -msgstr "" - -#: src/config/SSSDConfig.py:126 src/config/SSSDConfig.py:127 -msgid "Kerberos server address" -msgstr "" - -#: src/config/SSSDConfig.py:128 -msgid "Kerberos realm" -msgstr "" - -#: src/config/SSSDConfig.py:129 -msgid "Authentication timeout" -msgstr "" - -#: src/config/SSSDConfig.py:132 -msgid "Directory to store credential caches" -msgstr "" - -#: src/config/SSSDConfig.py:133 -msgid "Location of the user's credential cache" -msgstr "" - -#: src/config/SSSDConfig.py:134 -msgid "Location of the keytab to validate credentials" -msgstr "" - -#: src/config/SSSDConfig.py:135 -msgid "Enable credential validation" -msgstr "" - -#: src/config/SSSDConfig.py:136 -msgid "Store password if offline for later online authentication" -msgstr "" - -#: src/config/SSSDConfig.py:137 -msgid "Renewable lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:138 -msgid "Lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:139 -msgid "Time between two checks for renewal" -msgstr "" - -#: src/config/SSSDConfig.py:140 -msgid "Enables FAST" -msgstr "" - -#: src/config/SSSDConfig.py:141 -msgid "Selects the principal to use for FAST" -msgstr "" - -#: src/config/SSSDConfig.py:142 -msgid "Enables principal canonicalization" -msgstr "" - -#: src/config/SSSDConfig.py:145 -msgid "Server where the change password service is running if not on the KDC" -msgstr "" - -#: src/config/SSSDConfig.py:148 -msgid "ldap_uri, The URI of the LDAP server" -msgstr "" - -#: src/config/SSSDConfig.py:149 -msgid "The default base DN" -msgstr "" - -#: src/config/SSSDConfig.py:150 -msgid "The Schema Type in use on the LDAP server, rfc2307" -msgstr "" - -#: src/config/SSSDConfig.py:151 -msgid "The default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:152 -msgid "The type of the authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:153 -msgid "The authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:154 -msgid "Length of time to attempt connection" -msgstr "" - -#: src/config/SSSDConfig.py:155 -msgid "Length of time to attempt synchronous LDAP operations" -msgstr "" - -#: src/config/SSSDConfig.py:156 -msgid "Length of time between attempts to reconnect while offline" -msgstr "" - -#: src/config/SSSDConfig.py:157 -msgid "Use only the upper case for realm names" -msgstr "" - -#: src/config/SSSDConfig.py:158 -msgid "File that contains CA certificates" -msgstr "" - -#: src/config/SSSDConfig.py:159 -msgid "Path to CA certificate directory" -msgstr "" - -#: src/config/SSSDConfig.py:160 -msgid "File that contains the client certificate" -msgstr "" - -#: src/config/SSSDConfig.py:161 -msgid "File that contains the client key" -msgstr "" - -#: src/config/SSSDConfig.py:162 -msgid "List of possible ciphers suites" -msgstr "" - -#: src/config/SSSDConfig.py:163 -msgid "Require TLS certificate verification" -msgstr "" - -#: src/config/SSSDConfig.py:164 -msgid "Specify the sasl mechanism to use" -msgstr "" - -#: src/config/SSSDConfig.py:165 -msgid "Specify the sasl authorization id to use" -msgstr "" - -#: src/config/SSSDConfig.py:166 -msgid "Specify the sasl authorization realm to use" -msgstr "" - -#: src/config/SSSDConfig.py:167 -msgid "Specify the minimal SSF for LDAP sasl authorization" -msgstr "" - -#: src/config/SSSDConfig.py:168 -msgid "Kerberos service keytab" -msgstr "" - -#: src/config/SSSDConfig.py:169 -msgid "Use Kerberos auth for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:170 -msgid "Follow LDAP referrals" -msgstr "" - -#: src/config/SSSDConfig.py:171 -msgid "Lifetime of TGT for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:172 -msgid "How to dereference aliases" -msgstr "" - -#: src/config/SSSDConfig.py:173 -msgid "Service name for DNS service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:174 -msgid "The number of records to retrieve in a single LDAP query" -msgstr "" - -#: src/config/SSSDConfig.py:175 -msgid "The number of members that must be missing to trigger a full deref" -msgstr "" - -#: src/config/SSSDConfig.py:176 -msgid "" -"Whether the LDAP library should perform a reverse lookup to canonicalize the " -"host name during a SASL bind" -msgstr "" - -#: src/config/SSSDConfig.py:178 -msgid "entryUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:179 -msgid "lastUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:181 -msgid "How long to retain a connection to the LDAP server before disconnecting" -msgstr "" - -#: src/config/SSSDConfig.py:183 -msgid "Disable the LDAP paging control" -msgstr "" - -#: src/config/SSSDConfig.py:186 -msgid "Length of time to wait for a search request" -msgstr "" - -#: src/config/SSSDConfig.py:187 -msgid "Length of time to wait for a enumeration request" -msgstr "" - -#: src/config/SSSDConfig.py:188 -msgid "Length of time between enumeration updates" -msgstr "" - -#: src/config/SSSDConfig.py:189 -msgid "Length of time between cache cleanups" -msgstr "" - -#: src/config/SSSDConfig.py:190 -msgid "Require TLS for ID lookups" -msgstr "" - -#: src/config/SSSDConfig.py:191 -msgid "Base DN for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:192 -msgid "Scope of user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:193 -msgid "Filter for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:194 -msgid "Objectclass for users" -msgstr "" - -#: src/config/SSSDConfig.py:195 -msgid "Username attribute" -msgstr "" - -#: src/config/SSSDConfig.py:197 -msgid "UID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:198 -msgid "Primary GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:199 -msgid "GECOS attribute" -msgstr "" - -#: src/config/SSSDConfig.py:200 -msgid "Home directory attribute" -msgstr "" - -#: src/config/SSSDConfig.py:201 -msgid "Shell attribute" -msgstr "" - -#: src/config/SSSDConfig.py:202 -msgid "UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:203 -msgid "User principal attribute (for Kerberos)" -msgstr "" - -#: src/config/SSSDConfig.py:204 -msgid "Full Name" -msgstr "" - -#: src/config/SSSDConfig.py:205 -msgid "memberOf attribute" -msgstr "" - -#: src/config/SSSDConfig.py:206 -msgid "Modification time attribute" -msgstr "" - -#: src/config/SSSDConfig.py:208 -msgid "shadowLastChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:209 -msgid "shadowMin attribute" -msgstr "" - -#: src/config/SSSDConfig.py:210 -msgid "shadowMax attribute" -msgstr "" - -#: src/config/SSSDConfig.py:211 -msgid "shadowWarning attribute" -msgstr "" - -#: src/config/SSSDConfig.py:212 -msgid "shadowInactive attribute" -msgstr "" - -#: src/config/SSSDConfig.py:213 -msgid "shadowExpire attribute" -msgstr "" - -#: src/config/SSSDConfig.py:214 -msgid "shadowFlag attribute" -msgstr "" - -#: src/config/SSSDConfig.py:215 -msgid "Attribute listing authorized PAM services" -msgstr "" - -#: src/config/SSSDConfig.py:216 -msgid "Attribute listing authorized server hosts" -msgstr "" - -#: src/config/SSSDConfig.py:217 -msgid "krbLastPwdChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:218 -msgid "krbPasswordExpiration attribute" -msgstr "" - -#: src/config/SSSDConfig.py:219 -msgid "Attribute indicating that server side password policies are active" -msgstr "" - -#: src/config/SSSDConfig.py:220 -msgid "accountExpires attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:221 -msgid "userAccountControl attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:222 -msgid "nsAccountLock attribute" -msgstr "" - -#: src/config/SSSDConfig.py:223 -msgid "loginDisabled attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:224 -msgid "loginExpirationTime attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:225 -msgid "loginAllowedTimeMap attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:226 -msgid "SSH public key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:228 -msgid "Base DN for group lookups" -msgstr "" - -#: src/config/SSSDConfig.py:231 -msgid "Objectclass for groups" -msgstr "" - -#: src/config/SSSDConfig.py:232 -msgid "Group name" -msgstr "" - -#: src/config/SSSDConfig.py:233 -msgid "Group password" -msgstr "" - -#: src/config/SSSDConfig.py:234 -msgid "GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:235 -msgid "Group member attribute" -msgstr "" - -#: src/config/SSSDConfig.py:236 -msgid "Group UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:237 -msgid "Modification time attribute for groups" -msgstr "" - -#: src/config/SSSDConfig.py:239 -msgid "Maximum nesting level SSSd will follow" -msgstr "" - -#: src/config/SSSDConfig.py:241 -msgid "Base DN for netgroup lookups" -msgstr "" - -#: src/config/SSSDConfig.py:242 -msgid "Objectclass for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:243 -msgid "Netgroup name" -msgstr "" - -#: src/config/SSSDConfig.py:244 -msgid "Netgroups members attribute" -msgstr "" - -#: src/config/SSSDConfig.py:245 -msgid "Netgroup triple attribute" -msgstr "" - -#: src/config/SSSDConfig.py:246 -msgid "Netgroup UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:247 -msgid "Modification time attribute for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:249 -msgid "Base DN for service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:250 -msgid "Objectclass for services" -msgstr "" - -#: src/config/SSSDConfig.py:251 -msgid "Service name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:252 -msgid "Service port attribute" -msgstr "" - -#: src/config/SSSDConfig.py:253 -msgid "Service protocol attribute" -msgstr "" - -#: src/config/SSSDConfig.py:257 -msgid "Policy to evaluate the password expiration" -msgstr "" - -#: src/config/SSSDConfig.py:260 -msgid "LDAP filter to determine access privileges" -msgstr "" - -#: src/config/SSSDConfig.py:261 -msgid "Which attributes shall be used to evaluate if an account is expired" -msgstr "" - -#: src/config/SSSDConfig.py:262 -msgid "Which rules should be used to evaluate access control" -msgstr "" - -#: src/config/SSSDConfig.py:265 -msgid "URI of an LDAP server where password changes are allowed" -msgstr "" - -#: src/config/SSSDConfig.py:266 -msgid "DNS service name for LDAP password change server" -msgstr "" - -#: src/config/SSSDConfig.py:269 -msgid "Base DN for sudo rules lookups" -msgstr "" - -#: src/config/SSSDConfig.py:270 -msgid "Enable periodical update of all sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:271 -msgid "Length of time between rules updates" -msgstr "" - -#: src/config/SSSDConfig.py:272 -msgid "Object class for sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:273 -msgid "Sudo rule name" -msgstr "" - -#: src/config/SSSDConfig.py:274 -msgid "Sudo rule command attribute" -msgstr "" - -#: src/config/SSSDConfig.py:275 -msgid "Sudo rule host attribute" -msgstr "" - -#: src/config/SSSDConfig.py:276 -msgid "Sudo rule user attribute" -msgstr "" - -#: src/config/SSSDConfig.py:277 -msgid "Sudo rule option attribute" -msgstr "" - -#: src/config/SSSDConfig.py:278 -msgid "Sudo rule runasuser attribute" -msgstr "" - -#: src/config/SSSDConfig.py:279 -msgid "Sudo rule runasgroup attribute" -msgstr "" - -#: src/config/SSSDConfig.py:280 -msgid "Sudo rule notbefore attribute" -msgstr "" - -#: src/config/SSSDConfig.py:281 -msgid "Sudo rule notafter attribute" -msgstr "" - -#: src/config/SSSDConfig.py:282 -msgid "Sudo rule order attribute" -msgstr "" - -#: src/config/SSSDConfig.py:285 -msgid "Object class for automounter maps" -msgstr "" - -#: src/config/SSSDConfig.py:286 -msgid "Automounter map name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:287 -msgid "Object class for automounter map entries" -msgstr "" - -#: src/config/SSSDConfig.py:288 -msgid "Automounter map entry key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:289 -msgid "Automounter map entry value attribute" -msgstr "" - -#: src/config/SSSDConfig.py:290 -msgid "Base DN for automounter map lookups" -msgstr "" - -#: src/config/SSSDConfig.py:293 -msgid "Comma separated list of allowed users" -msgstr "" - -#: src/config/SSSDConfig.py:294 -msgid "Comma separated list of prohibited users" -msgstr "" - -#: src/config/SSSDConfig.py:297 -msgid "Default shell, /bin/bash" -msgstr "" - -#: src/config/SSSDConfig.py:298 -msgid "Base for home directories" -msgstr "" - -#: src/config/SSSDConfig.py:301 -msgid "The name of the NSS library to use" -msgstr "" - -#: src/config/SSSDConfig.py:304 -msgid "PAM stack to use" -msgstr "" - -#: src/monitor/monitor.c:2379 -msgid "Become a daemon (default)" -msgstr "" - -#: src/monitor/monitor.c:2381 -msgid "Run interactive (not a daemon)" -msgstr "" - -#: src/monitor/monitor.c:2383 src/tools/sss_debuglevel.c:77 -msgid "Specify a non-default config file" -msgstr "" - -#: src/monitor/monitor.c:2385 -msgid "Print version number and exit" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1575 src/providers/ldap/ldap_child.c:381 -#: src/util/util.h:89 -msgid "Debug level" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1577 src/providers/ldap/ldap_child.c:383 -#: src/util/util.h:93 -msgid "Add debug timestamps" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1579 src/providers/ldap/ldap_child.c:385 -#: src/util/util.h:95 -msgid "Show timestamps with microseconds" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1581 src/providers/ldap/ldap_child.c:387 -msgid "An open file descriptor for the debug logs" -msgstr "" - -#: src/providers/data_provider_be.c:1938 -msgid "Domain of the information provider (mandatory)" -msgstr "" - -#: src/sss_client/common.c:878 -msgid "Privileged socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:881 -msgid "Public socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:884 -msgid "Unexpected format of the server credential message." -msgstr "" - -#: src/sss_client/common.c:887 -msgid "SSSD is not run by root." -msgstr "" - -#: src/sss_client/common.c:892 -msgid "An error occurred, but no description can be found." -msgstr "" - -#: src/sss_client/common.c:898 -msgid "Unexpected error while looking for an error description" -msgstr "" - -#: src/sss_client/pam_sss.c:378 -msgid "Passwords do not match" -msgstr "" - -#: src/sss_client/pam_sss.c:571 -msgid "Password reset by root is not supported." -msgstr "" - -#: src/sss_client/pam_sss.c:612 -msgid "Authenticated with cached credentials" -msgstr "" - -#: src/sss_client/pam_sss.c:613 -msgid ", your cached password will expire at: " -msgstr "" - -#: src/sss_client/pam_sss.c:643 -#, c-format -msgid "Your password has expired. You have %d grace login(s) remaining." -msgstr "" - -#: src/sss_client/pam_sss.c:689 -#, c-format -msgid "Your password will expire in %d %s." -msgstr "" - -#: src/sss_client/pam_sss.c:738 -msgid "Authentication is denied until: " -msgstr "" - -#: src/sss_client/pam_sss.c:759 -msgid "System is offline, password change not possible" -msgstr "" - -#: src/sss_client/pam_sss.c:789 src/sss_client/pam_sss.c:802 -msgid "Password change failed. " -msgstr "" - -#: src/sss_client/pam_sss.c:792 src/sss_client/pam_sss.c:803 -msgid "Server message: " -msgstr "" - -#: src/sss_client/pam_sss.c:1286 -msgid "New Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1287 -msgid "Reenter new Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1373 -msgid "Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1405 -msgid "Current Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1552 -msgid "Password expired. Change your password now." -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:40 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:211 src/tools/sss_useradd.c:48 -#: src/tools/sss_groupadd.c:41 src/tools/sss_groupdel.c:43 -#: src/tools/sss_groupmod.c:42 src/tools/sss_groupshow.c:615 -#: src/tools/sss_userdel.c:131 src/tools/sss_usermod.c:47 -#: src/tools/sss_cache.c:260 src/tools/sss_debuglevel.c:75 -msgid "The debug level to run with" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:42 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:215 -msgid "The SSSD domain to use" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:58 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:229 src/tools/sss_useradd.c:71 -#: src/tools/sss_groupadd.c:56 src/tools/sss_groupdel.c:52 -#: src/tools/sss_groupmod.c:63 src/tools/sss_groupshow.c:626 -#: src/tools/sss_userdel.c:148 src/tools/sss_usermod.c:72 -#: src/tools/sss_cache.c:281 -msgid "Error setting the locale\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:65 -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:91 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:236 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:269 -msgid "Not enough memory\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:84 -msgid "User not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:104 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:282 -msgid "Error looking up public keys\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:94 -msgid "Failed to open a socket\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:104 -msgid "Failed to connect to the server\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:195 -msgid "Failed to execute proxy command\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:213 -msgid "The port to use to connect to the host" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:255 -msgid "Host not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:261 -msgid "The path to the proxy command must be absolute\n" -msgstr "" - -#: src/tools/sss_useradd.c:49 src/tools/sss_usermod.c:48 -msgid "The UID of the user" -msgstr "" - -#: src/tools/sss_useradd.c:50 src/tools/sss_usermod.c:50 -msgid "The comment string" -msgstr "" - -#: src/tools/sss_useradd.c:51 src/tools/sss_usermod.c:51 -msgid "Home directory" -msgstr "" - -#: src/tools/sss_useradd.c:52 src/tools/sss_usermod.c:52 -msgid "Login shell" -msgstr "" - -#: src/tools/sss_useradd.c:53 -msgid "Groups" -msgstr "" - -#: src/tools/sss_useradd.c:54 -msgid "Create user's directory if it does not exist" -msgstr "" - -#: src/tools/sss_useradd.c:55 -msgid "Never create user's directory, overrides config" -msgstr "" - -#: src/tools/sss_useradd.c:56 -msgid "Specify an alternative skeleton directory" -msgstr "" - -#: src/tools/sss_useradd.c:57 src/tools/sss_usermod.c:57 -msgid "The SELinux user for user's login" -msgstr "" - -#: src/tools/sss_useradd.c:84 src/tools/sss_groupmod.c:76 -#: src/tools/sss_usermod.c:85 -msgid "Specify group to add to\n" -msgstr "" - -#: src/tools/sss_useradd.c:108 -msgid "Specify user to add\n" -msgstr "" - -#: src/tools/sss_useradd.c:117 src/tools/sss_groupadd.c:82 -#: src/tools/sss_groupdel.c:77 src/tools/sss_groupmod.c:109 -#: src/tools/sss_groupshow.c:659 src/tools/sss_userdel.c:193 -#: src/tools/sss_usermod.c:126 -msgid "Error initializing the tools - no local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:119 src/tools/sss_groupadd.c:84 -#: src/tools/sss_groupdel.c:79 src/tools/sss_groupmod.c:111 -#: src/tools/sss_groupshow.c:661 src/tools/sss_userdel.c:195 -#: src/tools/sss_usermod.c:128 -msgid "Error initializing the tools\n" -msgstr "" - -#: src/tools/sss_useradd.c:128 src/tools/sss_groupadd.c:93 -#: src/tools/sss_groupdel.c:88 src/tools/sss_groupmod.c:119 -#: src/tools/sss_groupshow.c:670 src/tools/sss_userdel.c:204 -#: src/tools/sss_usermod.c:137 -msgid "Invalid domain specified in FQDN\n" -msgstr "" - -#: src/tools/sss_useradd.c:137 src/tools/sss_groupmod.c:139 -#: src/tools/sss_groupmod.c:166 src/tools/sss_usermod.c:160 -#: src/tools/sss_usermod.c:187 -msgid "Internal error while parsing parameters\n" -msgstr "" - -#: src/tools/sss_useradd.c:145 src/tools/sss_usermod.c:168 -#: src/tools/sss_usermod.c:195 -msgid "Groups must be in the same domain as user\n" -msgstr "" - -#: src/tools/sss_useradd.c:153 -#, c-format -msgid "Cannot find group %s in local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:168 src/tools/sss_userdel.c:214 -msgid "Cannot set default values\n" -msgstr "" - -#: src/tools/sss_useradd.c:175 src/tools/sss_usermod.c:151 -msgid "The selected UID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_useradd.c:202 src/tools/sss_usermod.c:236 -msgid "Cannot set SELinux login context\n" -msgstr "" - -#: src/tools/sss_useradd.c:217 -msgid "Cannot get info about the user\n" -msgstr "" - -#: src/tools/sss_useradd.c:229 -msgid "User's home directory already exists, not copying data from skeldir\n" -msgstr "" - -#: src/tools/sss_useradd.c:232 -#, c-format -msgid "Cannot create user's home directory: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:243 -#, c-format -msgid "Cannot create user's mail spool: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:255 -msgid "Could not allocate ID for the user - domain full?\n" -msgstr "" - -#: src/tools/sss_useradd.c:259 -msgid "A user or group with the same name or ID already exists\n" -msgstr "" - -#: src/tools/sss_useradd.c:265 -msgid "Transaction error. Could not add user.\n" -msgstr "" - -#: src/tools/sss_groupadd.c:43 src/tools/sss_groupmod.c:48 -msgid "The GID of the group" -msgstr "" - -#: src/tools/sss_groupadd.c:73 -msgid "Specify group to add\n" -msgstr "" - -#: src/tools/sss_groupadd.c:102 src/tools/sss_groupmod.c:190 -msgid "The selected GID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_groupadd.c:127 -msgid "Could not allocate ID for the group - domain full?\n" -msgstr "" - -#: src/tools/sss_groupadd.c:131 -msgid "A group with the same name or GID already exists\n" -msgstr "" - -#: src/tools/sss_groupadd.c:136 -msgid "Transaction error. Could not add group.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:68 -msgid "Specify group to delete\n" -msgstr "" - -#: src/tools/sss_groupdel.c:101 -#, c-format -msgid "Group %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_groupdel.c:115 -msgid "" -"No such group in local domain. Removing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:120 -msgid "Internal error. Could not remove group.\n" -msgstr "" - -#: src/tools/sss_groupmod.c:44 -msgid "Groups to add this group to" -msgstr "" - -#: src/tools/sss_groupmod.c:46 -msgid "Groups to remove this group from" -msgstr "" - -#: src/tools/sss_groupmod.c:84 src/tools/sss_usermod.c:93 -msgid "Specify group to remove from\n" -msgstr "" - -#: src/tools/sss_groupmod.c:98 -msgid "Specify group to modify\n" -msgstr "" - -#: src/tools/sss_groupmod.c:126 -msgid "" -"Cannot find group in local domain, modifying groups is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_groupmod.c:147 src/tools/sss_groupmod.c:174 -msgid "Member groups must be in the same domain as parent group\n" -msgstr "" - -#: src/tools/sss_groupmod.c:155 src/tools/sss_groupmod.c:182 -#: src/tools/sss_usermod.c:176 src/tools/sss_usermod.c:203 -#, c-format -msgid "" -"Cannot find group %s in local domain, only groups in local domain are " -"allowed\n" -msgstr "" - -#: src/tools/sss_groupmod.c:216 -msgid "Could not modify group - check if member group names are correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:220 -msgid "Could not modify group - check if groupname is correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:224 -msgid "Transaction error. Could not modify group.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:562 -#, c-format -msgid "%s%sGroup: %s\n" -msgstr "" - -#: src/tools/sss_groupshow.c:563 -msgid "Magic Private " -msgstr "" - -#: src/tools/sss_groupshow.c:565 -#, c-format -msgid "%sGID number: %d\n" -msgstr "" - -#: src/tools/sss_groupshow.c:567 -#, c-format -msgid "%sMember users: " -msgstr "" - -#: src/tools/sss_groupshow.c:574 -#, c-format -msgid "" -"\n" -"%sIs a member of: " -msgstr "" - -#: src/tools/sss_groupshow.c:581 -#, c-format -msgid "" -"\n" -"%sMember groups: " -msgstr "" - -#: src/tools/sss_groupshow.c:617 -msgid "Print indirect group members recursively" -msgstr "" - -#: src/tools/sss_groupshow.c:650 -msgid "Specify group to show\n" -msgstr "" - -#: src/tools/sss_groupshow.c:689 -msgid "" -"No such group in local domain. Printing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:694 -msgid "Internal error. Could not print group.\n" -msgstr "" - -#: src/tools/sss_userdel.c:133 -msgid "Remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:135 -msgid "Do not remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:137 -msgid "Force removal of files not owned by the user" -msgstr "" - -#: src/tools/sss_userdel.c:139 -msgid "Kill users' processes before removing him" -msgstr "" - -#: src/tools/sss_userdel.c:184 -msgid "Specify user to delete\n" -msgstr "" - -#: src/tools/sss_userdel.c:230 -#, c-format -msgid "User %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_userdel.c:255 -msgid "Cannot reset SELinux login context\n" -msgstr "" - -#: src/tools/sss_userdel.c:267 -#, c-format -msgid "WARNING: The user (uid %lu) was still logged in when deleted.\n" -msgstr "" - -#: src/tools/sss_userdel.c:272 -msgid "Cannot determine if the user was logged in on this platform" -msgstr "" - -#: src/tools/sss_userdel.c:277 -msgid "Error while checking if the user was logged in\n" -msgstr "" - -#: src/tools/sss_userdel.c:284 -#, c-format -msgid "The post-delete command failed: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:296 -msgid "Not removing home dir - not owned by user\n" -msgstr "" - -#: src/tools/sss_userdel.c:298 -#, c-format -msgid "Cannot remove homedir: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:309 -msgid "" -"No such user in local domain. Removing users only allowed in local domain.\n" -msgstr "" - -#: src/tools/sss_userdel.c:314 -msgid "Internal error. Could not remove user.\n" -msgstr "" - -#: src/tools/sss_usermod.c:49 -msgid "The GID of the user" -msgstr "" - -#: src/tools/sss_usermod.c:53 -msgid "Groups to add this user to" -msgstr "" - -#: src/tools/sss_usermod.c:54 -msgid "Groups to remove this user from" -msgstr "" - -#: src/tools/sss_usermod.c:55 -msgid "Lock the account" -msgstr "" - -#: src/tools/sss_usermod.c:56 -msgid "Unlock the account" -msgstr "" - -#: src/tools/sss_usermod.c:117 -msgid "Specify user to modify\n" -msgstr "" - -#: src/tools/sss_usermod.c:144 -msgid "" -"Cannot find user in local domain, modifying users is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_usermod.c:246 -msgid "Could not modify user - check if group names are correct\n" -msgstr "" - -#: src/tools/sss_usermod.c:250 -msgid "Could not modify user - user already member of groups?\n" -msgstr "" - -#: src/tools/sss_usermod.c:254 -msgid "Transaction error. Could not modify user.\n" -msgstr "" - -#: src/tools/sss_cache.c:132 -#, c-format -msgid "Couldn't invalidate %s" -msgstr "" - -#: src/tools/sss_cache.c:138 -#, c-format -msgid "Couldn't invalidate %s %s" -msgstr "" - -#: src/tools/sss_cache.c:262 -msgid "Invalidate particular user" -msgstr "" - -#: src/tools/sss_cache.c:264 -msgid "Invalidate all users" -msgstr "" - -#: src/tools/sss_cache.c:266 -msgid "Invalidate particular group" -msgstr "" - -#: src/tools/sss_cache.c:268 -msgid "Invalidate all groups" -msgstr "" - -#: src/tools/sss_cache.c:270 -msgid "Invalidate particular netgroup" -msgstr "" - -#: src/tools/sss_cache.c:272 -msgid "Invalidate all netgroups" -msgstr "" - -#: src/tools/sss_cache.c:274 -msgid "Only invalidate entries from a particular domain" -msgstr "" - -#: src/tools/sss_debuglevel.c:43 -msgid "\n" -msgstr "" - -#: src/tools/sss_debuglevel.c:102 -msgid "Specify debug level you want to set\n" -msgstr "" - -#: src/tools/tools_util.c:286 -msgid "Out of memory\n" -msgstr "" - -#: src/tools/tools_util.h:40 -#, c-format -msgid "%s must be run as root\n" -msgstr "" - -#: src/util/util.h:91 -msgid "Send the debug output to files instead of stderr" -msgstr "" diff --git a/po/ca.po b/po/ca.po deleted file mode 100644 index 2c915591b..000000000 --- a/po/ca.po +++ /dev/null @@ -1,1463 +0,0 @@ -# SOME DESCRIPTIVE TITLE. -# Copyright (C) YEAR Red Hat, Inc. -# This file is distributed under the same license as the PACKAGE package. -# -# Translators: -# , 2011. -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@lists.fedorahosted.org\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2011-12-21 10:11+0000\n" -"Last-Translator: sgallagh \n" -"Language-Team: Catalan \n" -"Language: ca\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=2; plural=(n != 1)\n" - -#: src/config/SSSDConfig.py:39 -msgid "Set the verbosity of the debug logging" -msgstr "Establir la verbositat de la tala de depuració" - -#: src/config/SSSDConfig.py:40 -msgid "Include timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:41 -msgid "Include microseconds in timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:42 -msgid "Write debug messages to logfiles" -msgstr "" - -#: src/config/SSSDConfig.py:43 -msgid "Ping timeout before restarting service" -msgstr "" - -#: src/config/SSSDConfig.py:44 -msgid "Command to start service" -msgstr "" - -#: src/config/SSSDConfig.py:45 -msgid "Number of times to attempt connection to Data Providers" -msgstr "" - -#: src/config/SSSDConfig.py:48 -msgid "SSSD Services to start" -msgstr "" - -#: src/config/SSSDConfig.py:49 -msgid "SSSD Domains to start" -msgstr "" - -#: src/config/SSSDConfig.py:50 -msgid "Timeout for messages sent over the SBUS" -msgstr "" - -#: src/config/SSSDConfig.py:51 -msgid "Regex to parse username and domain" -msgstr "" - -#: src/config/SSSDConfig.py:52 -msgid "Printf-compatible format for displaying fully-qualified names" -msgstr "" - -#: src/config/SSSDConfig.py:53 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#: src/config/SSSDConfig.py:56 -msgid "Enumeration cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:57 -msgid "Entry cache background update timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:58 src/config/SSSDConfig.py:81 -msgid "Negative cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:59 -msgid "Users that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:60 -msgid "Groups that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:61 -msgid "Should filtered users appear in groups" -msgstr "" - -#: src/config/SSSDConfig.py:62 -msgid "The value of the password field the NSS provider should return" -msgstr "" - -#: src/config/SSSDConfig.py:63 -msgid "Override homedir value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:64 -msgid "The list of shells users are allowed to log in with" -msgstr "" - -#: src/config/SSSDConfig.py:65 -msgid "" -"The list of shells that will be vetoed, and replaced with the fallback shell" -msgstr "" - -#: src/config/SSSDConfig.py:66 -msgid "" -"If a shell stored in central directory is allowed but not available, use " -"this fallback" -msgstr "" - -#: src/config/SSSDConfig.py:69 -msgid "How long to allow cached logins between online logins (days)" -msgstr "" - -#: src/config/SSSDConfig.py:70 -msgid "How many failed logins attempts are allowed when offline" -msgstr "" - -#: src/config/SSSDConfig.py:71 -msgid "" -"How long (minutes) to deny login after offline_failed_login_attempts has " -"been reached" -msgstr "" - -#: src/config/SSSDConfig.py:72 -msgid "What kind of messages are displayed to the user during authentication" -msgstr "" - -#: src/config/SSSDConfig.py:73 -msgid "How many seconds to keep identity information cached for PAM requests" -msgstr "" - -#: src/config/SSSDConfig.py:74 -msgid "How many days before password expiration a warning should be displayed" -msgstr "" - -#: src/config/SSSDConfig.py:77 -msgid "Whether to evaluate the time-based attributes in sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:78 -msgid "" -"How many seconds to keep sudorules cached before asking the provider again" -msgstr "" - -#: src/config/SSSDConfig.py:84 -msgid "Identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:85 -msgid "Authentication provider" -msgstr "" - -#: src/config/SSSDConfig.py:86 -msgid "Access control provider" -msgstr "" - -#: src/config/SSSDConfig.py:87 -msgid "Password change provider" -msgstr "" - -#: src/config/SSSDConfig.py:88 -msgid "SUDO provider" -msgstr "" - -#: src/config/SSSDConfig.py:89 -msgid "Autofs provider" -msgstr "" - -#: src/config/SSSDConfig.py:90 -msgid "Session-loading provider" -msgstr "" - -#: src/config/SSSDConfig.py:91 -msgid "Host identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:94 -msgid "Minimum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:95 -msgid "Maximum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:96 -msgid "Enable enumerating all users/groups" -msgstr "" - -#: src/config/SSSDConfig.py:97 -msgid "Cache credentials for offline login" -msgstr "" - -#: src/config/SSSDConfig.py:98 -msgid "Store password hashes" -msgstr "" - -#: src/config/SSSDConfig.py:99 -msgid "Display users/groups in fully-qualified form" -msgstr "" - -#: src/config/SSSDConfig.py:100 src/config/SSSDConfig.py:107 -#: src/config/SSSDConfig.py:108 src/config/SSSDConfig.py:109 -#: src/config/SSSDConfig.py:110 src/config/SSSDConfig.py:111 -msgid "Entry cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:101 -msgid "" -"Restrict or prefer a specific address family when performing DNS lookups" -msgstr "" - -#: src/config/SSSDConfig.py:102 -msgid "How long to keep cached entries after last successful login (days)" -msgstr "" - -#: src/config/SSSDConfig.py:103 -msgid "How long to wait for replies from DNS when resolving servers (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:104 -msgid "The domain part of service discovery DNS query" -msgstr "" - -#: src/config/SSSDConfig.py:105 -msgid "Override GID value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:106 -msgid "Treat usernames as case sensitive" -msgstr "" - -#: src/config/SSSDConfig.py:114 -msgid "IPA domain" -msgstr "" - -#: src/config/SSSDConfig.py:115 -msgid "IPA server address" -msgstr "" - -#: src/config/SSSDConfig.py:116 -msgid "IPA client hostname" -msgstr "" - -#: src/config/SSSDConfig.py:117 -msgid "Whether to automatically update the client's DNS entry in FreeIPA" -msgstr "" - -#: src/config/SSSDConfig.py:118 -msgid "The interface whose IP should be used for dynamic DNS updates" -msgstr "" - -#: src/config/SSSDConfig.py:119 -msgid "Search base for HBAC related objects" -msgstr "" - -#: src/config/SSSDConfig.py:120 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server" -msgstr "" - -#: src/config/SSSDConfig.py:121 -msgid "If DENY rules are present, either DENY_ALL or IGNORE" -msgstr "" - -#: src/config/SSSDConfig.py:122 -msgid "If set to false, host argument given by PAM will be ignored" -msgstr "" - -#: src/config/SSSDConfig.py:123 -msgid "The automounter location this IPA client is using" -msgstr "" - -#: src/config/SSSDConfig.py:126 src/config/SSSDConfig.py:127 -msgid "Kerberos server address" -msgstr "" - -#: src/config/SSSDConfig.py:128 -msgid "Kerberos realm" -msgstr "" - -#: src/config/SSSDConfig.py:129 -msgid "Authentication timeout" -msgstr "" - -#: src/config/SSSDConfig.py:132 -msgid "Directory to store credential caches" -msgstr "" - -#: src/config/SSSDConfig.py:133 -msgid "Location of the user's credential cache" -msgstr "" - -#: src/config/SSSDConfig.py:134 -msgid "Location of the keytab to validate credentials" -msgstr "" - -#: src/config/SSSDConfig.py:135 -msgid "Enable credential validation" -msgstr "" - -#: src/config/SSSDConfig.py:136 -msgid "Store password if offline for later online authentication" -msgstr "" - -#: src/config/SSSDConfig.py:137 -msgid "Renewable lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:138 -msgid "Lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:139 -msgid "Time between two checks for renewal" -msgstr "" - -#: src/config/SSSDConfig.py:140 -msgid "Enables FAST" -msgstr "" - -#: src/config/SSSDConfig.py:141 -msgid "Selects the principal to use for FAST" -msgstr "" - -#: src/config/SSSDConfig.py:142 -msgid "Enables principal canonicalization" -msgstr "" - -#: src/config/SSSDConfig.py:145 -msgid "Server where the change password service is running if not on the KDC" -msgstr "" - -#: src/config/SSSDConfig.py:148 -msgid "ldap_uri, The URI of the LDAP server" -msgstr "" - -#: src/config/SSSDConfig.py:149 -msgid "The default base DN" -msgstr "" - -#: src/config/SSSDConfig.py:150 -msgid "The Schema Type in use on the LDAP server, rfc2307" -msgstr "" - -#: src/config/SSSDConfig.py:151 -msgid "The default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:152 -msgid "The type of the authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:153 -msgid "The authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:154 -msgid "Length of time to attempt connection" -msgstr "" - -#: src/config/SSSDConfig.py:155 -msgid "Length of time to attempt synchronous LDAP operations" -msgstr "" - -#: src/config/SSSDConfig.py:156 -msgid "Length of time between attempts to reconnect while offline" -msgstr "" - -#: src/config/SSSDConfig.py:157 -msgid "Use only the upper case for realm names" -msgstr "" - -#: src/config/SSSDConfig.py:158 -msgid "File that contains CA certificates" -msgstr "" - -#: src/config/SSSDConfig.py:159 -msgid "Path to CA certificate directory" -msgstr "" - -#: src/config/SSSDConfig.py:160 -msgid "File that contains the client certificate" -msgstr "" - -#: src/config/SSSDConfig.py:161 -msgid "File that contains the client key" -msgstr "" - -#: src/config/SSSDConfig.py:162 -msgid "List of possible ciphers suites" -msgstr "" - -#: src/config/SSSDConfig.py:163 -msgid "Require TLS certificate verification" -msgstr "" - -#: src/config/SSSDConfig.py:164 -msgid "Specify the sasl mechanism to use" -msgstr "" - -#: src/config/SSSDConfig.py:165 -msgid "Specify the sasl authorization id to use" -msgstr "" - -#: src/config/SSSDConfig.py:166 -msgid "Specify the sasl authorization realm to use" -msgstr "" - -#: src/config/SSSDConfig.py:167 -msgid "Specify the minimal SSF for LDAP sasl authorization" -msgstr "" - -#: src/config/SSSDConfig.py:168 -msgid "Kerberos service keytab" -msgstr "" - -#: src/config/SSSDConfig.py:169 -msgid "Use Kerberos auth for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:170 -msgid "Follow LDAP referrals" -msgstr "" - -#: src/config/SSSDConfig.py:171 -msgid "Lifetime of TGT for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:172 -msgid "How to dereference aliases" -msgstr "" - -#: src/config/SSSDConfig.py:173 -msgid "Service name for DNS service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:174 -msgid "The number of records to retrieve in a single LDAP query" -msgstr "" - -#: src/config/SSSDConfig.py:175 -msgid "The number of members that must be missing to trigger a full deref" -msgstr "" - -#: src/config/SSSDConfig.py:176 -msgid "" -"Whether the LDAP library should perform a reverse lookup to canonicalize the " -"host name during a SASL bind" -msgstr "" - -#: src/config/SSSDConfig.py:178 -msgid "entryUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:179 -msgid "lastUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:181 -msgid "How long to retain a connection to the LDAP server before disconnecting" -msgstr "" - -#: src/config/SSSDConfig.py:183 -msgid "Disable the LDAP paging control" -msgstr "" - -#: src/config/SSSDConfig.py:186 -msgid "Length of time to wait for a search request" -msgstr "" - -#: src/config/SSSDConfig.py:187 -msgid "Length of time to wait for a enumeration request" -msgstr "" - -#: src/config/SSSDConfig.py:188 -msgid "Length of time between enumeration updates" -msgstr "" - -#: src/config/SSSDConfig.py:189 -msgid "Length of time between cache cleanups" -msgstr "" - -#: src/config/SSSDConfig.py:190 -msgid "Require TLS for ID lookups" -msgstr "" - -#: src/config/SSSDConfig.py:191 -msgid "Base DN for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:192 -msgid "Scope of user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:193 -msgid "Filter for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:194 -msgid "Objectclass for users" -msgstr "" - -#: src/config/SSSDConfig.py:195 -msgid "Username attribute" -msgstr "" - -#: src/config/SSSDConfig.py:197 -msgid "UID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:198 -msgid "Primary GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:199 -msgid "GECOS attribute" -msgstr "" - -#: src/config/SSSDConfig.py:200 -msgid "Home directory attribute" -msgstr "" - -#: src/config/SSSDConfig.py:201 -msgid "Shell attribute" -msgstr "" - -#: src/config/SSSDConfig.py:202 -msgid "UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:203 -msgid "User principal attribute (for Kerberos)" -msgstr "" - -#: src/config/SSSDConfig.py:204 -msgid "Full Name" -msgstr "" - -#: src/config/SSSDConfig.py:205 -msgid "memberOf attribute" -msgstr "" - -#: src/config/SSSDConfig.py:206 -msgid "Modification time attribute" -msgstr "" - -#: src/config/SSSDConfig.py:208 -msgid "shadowLastChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:209 -msgid "shadowMin attribute" -msgstr "" - -#: src/config/SSSDConfig.py:210 -msgid "shadowMax attribute" -msgstr "" - -#: src/config/SSSDConfig.py:211 -msgid "shadowWarning attribute" -msgstr "" - -#: src/config/SSSDConfig.py:212 -msgid "shadowInactive attribute" -msgstr "" - -#: src/config/SSSDConfig.py:213 -msgid "shadowExpire attribute" -msgstr "" - -#: src/config/SSSDConfig.py:214 -msgid "shadowFlag attribute" -msgstr "" - -#: src/config/SSSDConfig.py:215 -msgid "Attribute listing authorized PAM services" -msgstr "" - -#: src/config/SSSDConfig.py:216 -msgid "Attribute listing authorized server hosts" -msgstr "" - -#: src/config/SSSDConfig.py:217 -msgid "krbLastPwdChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:218 -msgid "krbPasswordExpiration attribute" -msgstr "" - -#: src/config/SSSDConfig.py:219 -msgid "Attribute indicating that server side password policies are active" -msgstr "" - -#: src/config/SSSDConfig.py:220 -msgid "accountExpires attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:221 -msgid "userAccountControl attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:222 -msgid "nsAccountLock attribute" -msgstr "" - -#: src/config/SSSDConfig.py:223 -msgid "loginDisabled attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:224 -msgid "loginExpirationTime attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:225 -msgid "loginAllowedTimeMap attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:226 -msgid "SSH public key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:228 -msgid "Base DN for group lookups" -msgstr "" - -#: src/config/SSSDConfig.py:231 -msgid "Objectclass for groups" -msgstr "" - -#: src/config/SSSDConfig.py:232 -msgid "Group name" -msgstr "" - -#: src/config/SSSDConfig.py:233 -msgid "Group password" -msgstr "" - -#: src/config/SSSDConfig.py:234 -msgid "GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:235 -msgid "Group member attribute" -msgstr "" - -#: src/config/SSSDConfig.py:236 -msgid "Group UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:237 -msgid "Modification time attribute for groups" -msgstr "" - -#: src/config/SSSDConfig.py:239 -msgid "Maximum nesting level SSSd will follow" -msgstr "" - -#: src/config/SSSDConfig.py:241 -msgid "Base DN for netgroup lookups" -msgstr "" - -#: src/config/SSSDConfig.py:242 -msgid "Objectclass for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:243 -msgid "Netgroup name" -msgstr "" - -#: src/config/SSSDConfig.py:244 -msgid "Netgroups members attribute" -msgstr "" - -#: src/config/SSSDConfig.py:245 -msgid "Netgroup triple attribute" -msgstr "" - -#: src/config/SSSDConfig.py:246 -msgid "Netgroup UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:247 -msgid "Modification time attribute for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:249 -msgid "Base DN for service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:250 -msgid "Objectclass for services" -msgstr "" - -#: src/config/SSSDConfig.py:251 -msgid "Service name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:252 -msgid "Service port attribute" -msgstr "" - -#: src/config/SSSDConfig.py:253 -msgid "Service protocol attribute" -msgstr "" - -#: src/config/SSSDConfig.py:257 -msgid "Policy to evaluate the password expiration" -msgstr "" - -#: src/config/SSSDConfig.py:260 -msgid "LDAP filter to determine access privileges" -msgstr "" - -#: src/config/SSSDConfig.py:261 -msgid "Which attributes shall be used to evaluate if an account is expired" -msgstr "" - -#: src/config/SSSDConfig.py:262 -msgid "Which rules should be used to evaluate access control" -msgstr "" - -#: src/config/SSSDConfig.py:265 -msgid "URI of an LDAP server where password changes are allowed" -msgstr "" - -#: src/config/SSSDConfig.py:266 -msgid "DNS service name for LDAP password change server" -msgstr "" - -#: src/config/SSSDConfig.py:269 -msgid "Base DN for sudo rules lookups" -msgstr "" - -#: src/config/SSSDConfig.py:270 -msgid "Enable periodical update of all sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:271 -msgid "Length of time between rules updates" -msgstr "" - -#: src/config/SSSDConfig.py:272 -msgid "Object class for sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:273 -msgid "Sudo rule name" -msgstr "" - -#: src/config/SSSDConfig.py:274 -msgid "Sudo rule command attribute" -msgstr "" - -#: src/config/SSSDConfig.py:275 -msgid "Sudo rule host attribute" -msgstr "" - -#: src/config/SSSDConfig.py:276 -msgid "Sudo rule user attribute" -msgstr "" - -#: src/config/SSSDConfig.py:277 -msgid "Sudo rule option attribute" -msgstr "" - -#: src/config/SSSDConfig.py:278 -msgid "Sudo rule runasuser attribute" -msgstr "" - -#: src/config/SSSDConfig.py:279 -msgid "Sudo rule runasgroup attribute" -msgstr "" - -#: src/config/SSSDConfig.py:280 -msgid "Sudo rule notbefore attribute" -msgstr "" - -#: src/config/SSSDConfig.py:281 -msgid "Sudo rule notafter attribute" -msgstr "" - -#: src/config/SSSDConfig.py:282 -msgid "Sudo rule order attribute" -msgstr "" - -#: src/config/SSSDConfig.py:285 -msgid "Object class for automounter maps" -msgstr "" - -#: src/config/SSSDConfig.py:286 -msgid "Automounter map name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:287 -msgid "Object class for automounter map entries" -msgstr "" - -#: src/config/SSSDConfig.py:288 -msgid "Automounter map entry key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:289 -msgid "Automounter map entry value attribute" -msgstr "" - -#: src/config/SSSDConfig.py:290 -msgid "Base DN for automounter map lookups" -msgstr "" - -#: src/config/SSSDConfig.py:293 -msgid "Comma separated list of allowed users" -msgstr "" - -#: src/config/SSSDConfig.py:294 -msgid "Comma separated list of prohibited users" -msgstr "" - -#: src/config/SSSDConfig.py:297 -msgid "Default shell, /bin/bash" -msgstr "" - -#: src/config/SSSDConfig.py:298 -msgid "Base for home directories" -msgstr "" - -#: src/config/SSSDConfig.py:301 -msgid "The name of the NSS library to use" -msgstr "" - -#: src/config/SSSDConfig.py:304 -msgid "PAM stack to use" -msgstr "" - -#: src/monitor/monitor.c:2379 -msgid "Become a daemon (default)" -msgstr "" - -#: src/monitor/monitor.c:2381 -msgid "Run interactive (not a daemon)" -msgstr "" - -#: src/monitor/monitor.c:2383 src/tools/sss_debuglevel.c:77 -msgid "Specify a non-default config file" -msgstr "" - -#: src/monitor/monitor.c:2385 -msgid "Print version number and exit" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1575 src/providers/ldap/ldap_child.c:381 -#: src/util/util.h:89 -msgid "Debug level" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1577 src/providers/ldap/ldap_child.c:383 -#: src/util/util.h:93 -msgid "Add debug timestamps" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1579 src/providers/ldap/ldap_child.c:385 -#: src/util/util.h:95 -msgid "Show timestamps with microseconds" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1581 src/providers/ldap/ldap_child.c:387 -msgid "An open file descriptor for the debug logs" -msgstr "" - -#: src/providers/data_provider_be.c:1938 -msgid "Domain of the information provider (mandatory)" -msgstr "" - -#: src/sss_client/common.c:878 -msgid "Privileged socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:881 -msgid "Public socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:884 -msgid "Unexpected format of the server credential message." -msgstr "" - -#: src/sss_client/common.c:887 -msgid "SSSD is not run by root." -msgstr "" - -#: src/sss_client/common.c:892 -msgid "An error occurred, but no description can be found." -msgstr "" - -#: src/sss_client/common.c:898 -msgid "Unexpected error while looking for an error description" -msgstr "" - -#: src/sss_client/pam_sss.c:378 -msgid "Passwords do not match" -msgstr "" - -#: src/sss_client/pam_sss.c:571 -msgid "Password reset by root is not supported." -msgstr "" - -#: src/sss_client/pam_sss.c:612 -msgid "Authenticated with cached credentials" -msgstr "" - -#: src/sss_client/pam_sss.c:613 -msgid ", your cached password will expire at: " -msgstr "" - -#: src/sss_client/pam_sss.c:643 -#, c-format -msgid "Your password has expired. You have %d grace login(s) remaining." -msgstr "" - -#: src/sss_client/pam_sss.c:689 -#, c-format -msgid "Your password will expire in %d %s." -msgstr "" - -#: src/sss_client/pam_sss.c:738 -msgid "Authentication is denied until: " -msgstr "" - -#: src/sss_client/pam_sss.c:759 -msgid "System is offline, password change not possible" -msgstr "" - -#: src/sss_client/pam_sss.c:789 src/sss_client/pam_sss.c:802 -msgid "Password change failed. " -msgstr "" - -#: src/sss_client/pam_sss.c:792 src/sss_client/pam_sss.c:803 -msgid "Server message: " -msgstr "" - -#: src/sss_client/pam_sss.c:1286 -msgid "New Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1287 -msgid "Reenter new Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1373 -msgid "Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1405 -msgid "Current Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1552 -msgid "Password expired. Change your password now." -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:40 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:211 src/tools/sss_useradd.c:48 -#: src/tools/sss_groupadd.c:41 src/tools/sss_groupdel.c:43 -#: src/tools/sss_groupmod.c:42 src/tools/sss_groupshow.c:615 -#: src/tools/sss_userdel.c:131 src/tools/sss_usermod.c:47 -#: src/tools/sss_cache.c:260 src/tools/sss_debuglevel.c:75 -msgid "The debug level to run with" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:42 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:215 -msgid "The SSSD domain to use" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:58 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:229 src/tools/sss_useradd.c:71 -#: src/tools/sss_groupadd.c:56 src/tools/sss_groupdel.c:52 -#: src/tools/sss_groupmod.c:63 src/tools/sss_groupshow.c:626 -#: src/tools/sss_userdel.c:148 src/tools/sss_usermod.c:72 -#: src/tools/sss_cache.c:281 -msgid "Error setting the locale\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:65 -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:91 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:236 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:269 -msgid "Not enough memory\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:84 -msgid "User not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:104 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:282 -msgid "Error looking up public keys\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:94 -msgid "Failed to open a socket\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:104 -msgid "Failed to connect to the server\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:195 -msgid "Failed to execute proxy command\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:213 -msgid "The port to use to connect to the host" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:255 -msgid "Host not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:261 -msgid "The path to the proxy command must be absolute\n" -msgstr "" - -#: src/tools/sss_useradd.c:49 src/tools/sss_usermod.c:48 -msgid "The UID of the user" -msgstr "" - -#: src/tools/sss_useradd.c:50 src/tools/sss_usermod.c:50 -msgid "The comment string" -msgstr "" - -#: src/tools/sss_useradd.c:51 src/tools/sss_usermod.c:51 -msgid "Home directory" -msgstr "" - -#: src/tools/sss_useradd.c:52 src/tools/sss_usermod.c:52 -msgid "Login shell" -msgstr "" - -#: src/tools/sss_useradd.c:53 -msgid "Groups" -msgstr "" - -#: src/tools/sss_useradd.c:54 -msgid "Create user's directory if it does not exist" -msgstr "" - -#: src/tools/sss_useradd.c:55 -msgid "Never create user's directory, overrides config" -msgstr "" - -#: src/tools/sss_useradd.c:56 -msgid "Specify an alternative skeleton directory" -msgstr "" - -#: src/tools/sss_useradd.c:57 src/tools/sss_usermod.c:57 -msgid "The SELinux user for user's login" -msgstr "" - -#: src/tools/sss_useradd.c:84 src/tools/sss_groupmod.c:76 -#: src/tools/sss_usermod.c:85 -msgid "Specify group to add to\n" -msgstr "" - -#: src/tools/sss_useradd.c:108 -msgid "Specify user to add\n" -msgstr "" - -#: src/tools/sss_useradd.c:117 src/tools/sss_groupadd.c:82 -#: src/tools/sss_groupdel.c:77 src/tools/sss_groupmod.c:109 -#: src/tools/sss_groupshow.c:659 src/tools/sss_userdel.c:193 -#: src/tools/sss_usermod.c:126 -msgid "Error initializing the tools - no local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:119 src/tools/sss_groupadd.c:84 -#: src/tools/sss_groupdel.c:79 src/tools/sss_groupmod.c:111 -#: src/tools/sss_groupshow.c:661 src/tools/sss_userdel.c:195 -#: src/tools/sss_usermod.c:128 -msgid "Error initializing the tools\n" -msgstr "" - -#: src/tools/sss_useradd.c:128 src/tools/sss_groupadd.c:93 -#: src/tools/sss_groupdel.c:88 src/tools/sss_groupmod.c:119 -#: src/tools/sss_groupshow.c:670 src/tools/sss_userdel.c:204 -#: src/tools/sss_usermod.c:137 -msgid "Invalid domain specified in FQDN\n" -msgstr "" - -#: src/tools/sss_useradd.c:137 src/tools/sss_groupmod.c:139 -#: src/tools/sss_groupmod.c:166 src/tools/sss_usermod.c:160 -#: src/tools/sss_usermod.c:187 -msgid "Internal error while parsing parameters\n" -msgstr "" - -#: src/tools/sss_useradd.c:145 src/tools/sss_usermod.c:168 -#: src/tools/sss_usermod.c:195 -msgid "Groups must be in the same domain as user\n" -msgstr "" - -#: src/tools/sss_useradd.c:153 -#, c-format -msgid "Cannot find group %s in local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:168 src/tools/sss_userdel.c:214 -msgid "Cannot set default values\n" -msgstr "" - -#: src/tools/sss_useradd.c:175 src/tools/sss_usermod.c:151 -msgid "The selected UID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_useradd.c:202 src/tools/sss_usermod.c:236 -msgid "Cannot set SELinux login context\n" -msgstr "" - -#: src/tools/sss_useradd.c:217 -msgid "Cannot get info about the user\n" -msgstr "" - -#: src/tools/sss_useradd.c:229 -msgid "User's home directory already exists, not copying data from skeldir\n" -msgstr "" - -#: src/tools/sss_useradd.c:232 -#, c-format -msgid "Cannot create user's home directory: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:243 -#, c-format -msgid "Cannot create user's mail spool: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:255 -msgid "Could not allocate ID for the user - domain full?\n" -msgstr "" - -#: src/tools/sss_useradd.c:259 -msgid "A user or group with the same name or ID already exists\n" -msgstr "" - -#: src/tools/sss_useradd.c:265 -msgid "Transaction error. Could not add user.\n" -msgstr "" - -#: src/tools/sss_groupadd.c:43 src/tools/sss_groupmod.c:48 -msgid "The GID of the group" -msgstr "" - -#: src/tools/sss_groupadd.c:73 -msgid "Specify group to add\n" -msgstr "" - -#: src/tools/sss_groupadd.c:102 src/tools/sss_groupmod.c:190 -msgid "The selected GID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_groupadd.c:127 -msgid "Could not allocate ID for the group - domain full?\n" -msgstr "" - -#: src/tools/sss_groupadd.c:131 -msgid "A group with the same name or GID already exists\n" -msgstr "" - -#: src/tools/sss_groupadd.c:136 -msgid "Transaction error. Could not add group.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:68 -msgid "Specify group to delete\n" -msgstr "" - -#: src/tools/sss_groupdel.c:101 -#, c-format -msgid "Group %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_groupdel.c:115 -msgid "" -"No such group in local domain. Removing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:120 -msgid "Internal error. Could not remove group.\n" -msgstr "" - -#: src/tools/sss_groupmod.c:44 -msgid "Groups to add this group to" -msgstr "" - -#: src/tools/sss_groupmod.c:46 -msgid "Groups to remove this group from" -msgstr "" - -#: src/tools/sss_groupmod.c:84 src/tools/sss_usermod.c:93 -msgid "Specify group to remove from\n" -msgstr "" - -#: src/tools/sss_groupmod.c:98 -msgid "Specify group to modify\n" -msgstr "" - -#: src/tools/sss_groupmod.c:126 -msgid "" -"Cannot find group in local domain, modifying groups is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_groupmod.c:147 src/tools/sss_groupmod.c:174 -msgid "Member groups must be in the same domain as parent group\n" -msgstr "" - -#: src/tools/sss_groupmod.c:155 src/tools/sss_groupmod.c:182 -#: src/tools/sss_usermod.c:176 src/tools/sss_usermod.c:203 -#, c-format -msgid "" -"Cannot find group %s in local domain, only groups in local domain are " -"allowed\n" -msgstr "" - -#: src/tools/sss_groupmod.c:216 -msgid "Could not modify group - check if member group names are correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:220 -msgid "Could not modify group - check if groupname is correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:224 -msgid "Transaction error. Could not modify group.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:562 -#, c-format -msgid "%s%sGroup: %s\n" -msgstr "" - -#: src/tools/sss_groupshow.c:563 -msgid "Magic Private " -msgstr "" - -#: src/tools/sss_groupshow.c:565 -#, c-format -msgid "%sGID number: %d\n" -msgstr "" - -#: src/tools/sss_groupshow.c:567 -#, c-format -msgid "%sMember users: " -msgstr "" - -#: src/tools/sss_groupshow.c:574 -#, c-format -msgid "" -"\n" -"%sIs a member of: " -msgstr "" - -#: src/tools/sss_groupshow.c:581 -#, c-format -msgid "" -"\n" -"%sMember groups: " -msgstr "" - -#: src/tools/sss_groupshow.c:617 -msgid "Print indirect group members recursively" -msgstr "" - -#: src/tools/sss_groupshow.c:650 -msgid "Specify group to show\n" -msgstr "" - -#: src/tools/sss_groupshow.c:689 -msgid "" -"No such group in local domain. Printing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:694 -msgid "Internal error. Could not print group.\n" -msgstr "" - -#: src/tools/sss_userdel.c:133 -msgid "Remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:135 -msgid "Do not remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:137 -msgid "Force removal of files not owned by the user" -msgstr "" - -#: src/tools/sss_userdel.c:139 -msgid "Kill users' processes before removing him" -msgstr "" - -#: src/tools/sss_userdel.c:184 -msgid "Specify user to delete\n" -msgstr "" - -#: src/tools/sss_userdel.c:230 -#, c-format -msgid "User %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_userdel.c:255 -msgid "Cannot reset SELinux login context\n" -msgstr "" - -#: src/tools/sss_userdel.c:267 -#, c-format -msgid "WARNING: The user (uid %lu) was still logged in when deleted.\n" -msgstr "" - -#: src/tools/sss_userdel.c:272 -msgid "Cannot determine if the user was logged in on this platform" -msgstr "" - -#: src/tools/sss_userdel.c:277 -msgid "Error while checking if the user was logged in\n" -msgstr "" - -#: src/tools/sss_userdel.c:284 -#, c-format -msgid "The post-delete command failed: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:296 -msgid "Not removing home dir - not owned by user\n" -msgstr "" - -#: src/tools/sss_userdel.c:298 -#, c-format -msgid "Cannot remove homedir: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:309 -msgid "" -"No such user in local domain. Removing users only allowed in local domain.\n" -msgstr "" - -#: src/tools/sss_userdel.c:314 -msgid "Internal error. Could not remove user.\n" -msgstr "" - -#: src/tools/sss_usermod.c:49 -msgid "The GID of the user" -msgstr "" - -#: src/tools/sss_usermod.c:53 -msgid "Groups to add this user to" -msgstr "" - -#: src/tools/sss_usermod.c:54 -msgid "Groups to remove this user from" -msgstr "" - -#: src/tools/sss_usermod.c:55 -msgid "Lock the account" -msgstr "" - -#: src/tools/sss_usermod.c:56 -msgid "Unlock the account" -msgstr "" - -#: src/tools/sss_usermod.c:117 -msgid "Specify user to modify\n" -msgstr "" - -#: src/tools/sss_usermod.c:144 -msgid "" -"Cannot find user in local domain, modifying users is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_usermod.c:246 -msgid "Could not modify user - check if group names are correct\n" -msgstr "" - -#: src/tools/sss_usermod.c:250 -msgid "Could not modify user - user already member of groups?\n" -msgstr "" - -#: src/tools/sss_usermod.c:254 -msgid "Transaction error. Could not modify user.\n" -msgstr "" - -#: src/tools/sss_cache.c:132 -#, c-format -msgid "Couldn't invalidate %s" -msgstr "" - -#: src/tools/sss_cache.c:138 -#, c-format -msgid "Couldn't invalidate %s %s" -msgstr "" - -#: src/tools/sss_cache.c:262 -msgid "Invalidate particular user" -msgstr "" - -#: src/tools/sss_cache.c:264 -msgid "Invalidate all users" -msgstr "" - -#: src/tools/sss_cache.c:266 -msgid "Invalidate particular group" -msgstr "" - -#: src/tools/sss_cache.c:268 -msgid "Invalidate all groups" -msgstr "" - -#: src/tools/sss_cache.c:270 -msgid "Invalidate particular netgroup" -msgstr "" - -#: src/tools/sss_cache.c:272 -msgid "Invalidate all netgroups" -msgstr "" - -#: src/tools/sss_cache.c:274 -msgid "Only invalidate entries from a particular domain" -msgstr "" - -#: src/tools/sss_debuglevel.c:43 -msgid "\n" -msgstr "" - -#: src/tools/sss_debuglevel.c:102 -msgid "Specify debug level you want to set\n" -msgstr "" - -#: src/tools/tools_util.c:286 -msgid "Out of memory\n" -msgstr "" - -#: src/tools/tools_util.h:40 -#, c-format -msgid "%s must be run as root\n" -msgstr "" - -#: src/util/util.h:91 -msgid "Send the debug output to files instead of stderr" -msgstr "" diff --git a/po/cs.po b/po/cs.po deleted file mode 100644 index a9e62898d..000000000 --- a/po/cs.po +++ /dev/null @@ -1,1462 +0,0 @@ -# SOME DESCRIPTIVE TITLE. -# Copyright (C) YEAR Red Hat, Inc. -# This file is distributed under the same license as the PACKAGE package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@lists.fedorahosted.org\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-11-30 04:10+0000\n" -"Last-Translator: FULL NAME \n" -"Language-Team: Czech (http://www.transifex.net/projects/p/fedora/team/cs/)\n" -"Language: cs\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=3; plural=(n==1) ? 0 : (n>=2 && n<=4) ? 1 : 2\n" - -#: src/config/SSSDConfig.py:39 -msgid "Set the verbosity of the debug logging" -msgstr "" - -#: src/config/SSSDConfig.py:40 -msgid "Include timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:41 -msgid "Include microseconds in timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:42 -msgid "Write debug messages to logfiles" -msgstr "" - -#: src/config/SSSDConfig.py:43 -msgid "Ping timeout before restarting service" -msgstr "" - -#: src/config/SSSDConfig.py:44 -msgid "Command to start service" -msgstr "" - -#: src/config/SSSDConfig.py:45 -msgid "Number of times to attempt connection to Data Providers" -msgstr "" - -#: src/config/SSSDConfig.py:48 -msgid "SSSD Services to start" -msgstr "" - -#: src/config/SSSDConfig.py:49 -msgid "SSSD Domains to start" -msgstr "" - -#: src/config/SSSDConfig.py:50 -msgid "Timeout for messages sent over the SBUS" -msgstr "" - -#: src/config/SSSDConfig.py:51 -msgid "Regex to parse username and domain" -msgstr "" - -#: src/config/SSSDConfig.py:52 -msgid "Printf-compatible format for displaying fully-qualified names" -msgstr "" - -#: src/config/SSSDConfig.py:53 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#: src/config/SSSDConfig.py:56 -msgid "Enumeration cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:57 -msgid "Entry cache background update timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:58 src/config/SSSDConfig.py:81 -msgid "Negative cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:59 -msgid "Users that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:60 -msgid "Groups that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:61 -msgid "Should filtered users appear in groups" -msgstr "" - -#: src/config/SSSDConfig.py:62 -msgid "The value of the password field the NSS provider should return" -msgstr "" - -#: src/config/SSSDConfig.py:63 -msgid "Override homedir value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:64 -msgid "The list of shells users are allowed to log in with" -msgstr "" - -#: src/config/SSSDConfig.py:65 -msgid "" -"The list of shells that will be vetoed, and replaced with the fallback shell" -msgstr "" - -#: src/config/SSSDConfig.py:66 -msgid "" -"If a shell stored in central directory is allowed but not available, use " -"this fallback" -msgstr "" - -#: src/config/SSSDConfig.py:69 -msgid "How long to allow cached logins between online logins (days)" -msgstr "" - -#: src/config/SSSDConfig.py:70 -msgid "How many failed logins attempts are allowed when offline" -msgstr "" - -#: src/config/SSSDConfig.py:71 -msgid "" -"How long (minutes) to deny login after offline_failed_login_attempts has " -"been reached" -msgstr "" - -#: src/config/SSSDConfig.py:72 -msgid "What kind of messages are displayed to the user during authentication" -msgstr "" - -#: src/config/SSSDConfig.py:73 -msgid "How many seconds to keep identity information cached for PAM requests" -msgstr "" - -#: src/config/SSSDConfig.py:74 -msgid "How many days before password expiration a warning should be displayed" -msgstr "" - -#: src/config/SSSDConfig.py:77 -msgid "Whether to evaluate the time-based attributes in sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:78 -msgid "" -"How many seconds to keep sudorules cached before asking the provider again" -msgstr "" - -#: src/config/SSSDConfig.py:84 -msgid "Identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:85 -msgid "Authentication provider" -msgstr "" - -#: src/config/SSSDConfig.py:86 -msgid "Access control provider" -msgstr "" - -#: src/config/SSSDConfig.py:87 -msgid "Password change provider" -msgstr "" - -#: src/config/SSSDConfig.py:88 -msgid "SUDO provider" -msgstr "" - -#: src/config/SSSDConfig.py:89 -msgid "Autofs provider" -msgstr "" - -#: src/config/SSSDConfig.py:90 -msgid "Session-loading provider" -msgstr "" - -#: src/config/SSSDConfig.py:91 -msgid "Host identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:94 -msgid "Minimum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:95 -msgid "Maximum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:96 -msgid "Enable enumerating all users/groups" -msgstr "" - -#: src/config/SSSDConfig.py:97 -msgid "Cache credentials for offline login" -msgstr "" - -#: src/config/SSSDConfig.py:98 -msgid "Store password hashes" -msgstr "" - -#: src/config/SSSDConfig.py:99 -msgid "Display users/groups in fully-qualified form" -msgstr "" - -#: src/config/SSSDConfig.py:100 src/config/SSSDConfig.py:107 -#: src/config/SSSDConfig.py:108 src/config/SSSDConfig.py:109 -#: src/config/SSSDConfig.py:110 src/config/SSSDConfig.py:111 -msgid "Entry cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:101 -msgid "" -"Restrict or prefer a specific address family when performing DNS lookups" -msgstr "" - -#: src/config/SSSDConfig.py:102 -msgid "How long to keep cached entries after last successful login (days)" -msgstr "" - -#: src/config/SSSDConfig.py:103 -msgid "How long to wait for replies from DNS when resolving servers (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:104 -msgid "The domain part of service discovery DNS query" -msgstr "" - -#: src/config/SSSDConfig.py:105 -msgid "Override GID value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:106 -msgid "Treat usernames as case sensitive" -msgstr "" - -#: src/config/SSSDConfig.py:114 -msgid "IPA domain" -msgstr "" - -#: src/config/SSSDConfig.py:115 -msgid "IPA server address" -msgstr "" - -#: src/config/SSSDConfig.py:116 -msgid "IPA client hostname" -msgstr "" - -#: src/config/SSSDConfig.py:117 -msgid "Whether to automatically update the client's DNS entry in FreeIPA" -msgstr "" - -#: src/config/SSSDConfig.py:118 -msgid "The interface whose IP should be used for dynamic DNS updates" -msgstr "" - -#: src/config/SSSDConfig.py:119 -msgid "Search base for HBAC related objects" -msgstr "" - -#: src/config/SSSDConfig.py:120 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server" -msgstr "" - -#: src/config/SSSDConfig.py:121 -msgid "If DENY rules are present, either DENY_ALL or IGNORE" -msgstr "" - -#: src/config/SSSDConfig.py:122 -msgid "If set to false, host argument given by PAM will be ignored" -msgstr "" - -#: src/config/SSSDConfig.py:123 -msgid "The automounter location this IPA client is using" -msgstr "" - -#: src/config/SSSDConfig.py:126 src/config/SSSDConfig.py:127 -msgid "Kerberos server address" -msgstr "" - -#: src/config/SSSDConfig.py:128 -msgid "Kerberos realm" -msgstr "" - -#: src/config/SSSDConfig.py:129 -msgid "Authentication timeout" -msgstr "" - -#: src/config/SSSDConfig.py:132 -msgid "Directory to store credential caches" -msgstr "" - -#: src/config/SSSDConfig.py:133 -msgid "Location of the user's credential cache" -msgstr "" - -#: src/config/SSSDConfig.py:134 -msgid "Location of the keytab to validate credentials" -msgstr "" - -#: src/config/SSSDConfig.py:135 -msgid "Enable credential validation" -msgstr "" - -#: src/config/SSSDConfig.py:136 -msgid "Store password if offline for later online authentication" -msgstr "" - -#: src/config/SSSDConfig.py:137 -msgid "Renewable lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:138 -msgid "Lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:139 -msgid "Time between two checks for renewal" -msgstr "" - -#: src/config/SSSDConfig.py:140 -msgid "Enables FAST" -msgstr "" - -#: src/config/SSSDConfig.py:141 -msgid "Selects the principal to use for FAST" -msgstr "" - -#: src/config/SSSDConfig.py:142 -msgid "Enables principal canonicalization" -msgstr "" - -#: src/config/SSSDConfig.py:145 -msgid "Server where the change password service is running if not on the KDC" -msgstr "" - -#: src/config/SSSDConfig.py:148 -msgid "ldap_uri, The URI of the LDAP server" -msgstr "" - -#: src/config/SSSDConfig.py:149 -msgid "The default base DN" -msgstr "" - -#: src/config/SSSDConfig.py:150 -msgid "The Schema Type in use on the LDAP server, rfc2307" -msgstr "" - -#: src/config/SSSDConfig.py:151 -msgid "The default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:152 -msgid "The type of the authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:153 -msgid "The authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:154 -msgid "Length of time to attempt connection" -msgstr "" - -#: src/config/SSSDConfig.py:155 -msgid "Length of time to attempt synchronous LDAP operations" -msgstr "" - -#: src/config/SSSDConfig.py:156 -msgid "Length of time between attempts to reconnect while offline" -msgstr "" - -#: src/config/SSSDConfig.py:157 -msgid "Use only the upper case for realm names" -msgstr "" - -#: src/config/SSSDConfig.py:158 -msgid "File that contains CA certificates" -msgstr "" - -#: src/config/SSSDConfig.py:159 -msgid "Path to CA certificate directory" -msgstr "" - -#: src/config/SSSDConfig.py:160 -msgid "File that contains the client certificate" -msgstr "" - -#: src/config/SSSDConfig.py:161 -msgid "File that contains the client key" -msgstr "" - -#: src/config/SSSDConfig.py:162 -msgid "List of possible ciphers suites" -msgstr "" - -#: src/config/SSSDConfig.py:163 -msgid "Require TLS certificate verification" -msgstr "" - -#: src/config/SSSDConfig.py:164 -msgid "Specify the sasl mechanism to use" -msgstr "" - -#: src/config/SSSDConfig.py:165 -msgid "Specify the sasl authorization id to use" -msgstr "" - -#: src/config/SSSDConfig.py:166 -msgid "Specify the sasl authorization realm to use" -msgstr "" - -#: src/config/SSSDConfig.py:167 -msgid "Specify the minimal SSF for LDAP sasl authorization" -msgstr "" - -#: src/config/SSSDConfig.py:168 -msgid "Kerberos service keytab" -msgstr "" - -#: src/config/SSSDConfig.py:169 -msgid "Use Kerberos auth for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:170 -msgid "Follow LDAP referrals" -msgstr "" - -#: src/config/SSSDConfig.py:171 -msgid "Lifetime of TGT for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:172 -msgid "How to dereference aliases" -msgstr "" - -#: src/config/SSSDConfig.py:173 -msgid "Service name for DNS service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:174 -msgid "The number of records to retrieve in a single LDAP query" -msgstr "" - -#: src/config/SSSDConfig.py:175 -msgid "The number of members that must be missing to trigger a full deref" -msgstr "" - -#: src/config/SSSDConfig.py:176 -msgid "" -"Whether the LDAP library should perform a reverse lookup to canonicalize the " -"host name during a SASL bind" -msgstr "" - -#: src/config/SSSDConfig.py:178 -msgid "entryUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:179 -msgid "lastUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:181 -msgid "How long to retain a connection to the LDAP server before disconnecting" -msgstr "" - -#: src/config/SSSDConfig.py:183 -msgid "Disable the LDAP paging control" -msgstr "" - -#: src/config/SSSDConfig.py:186 -msgid "Length of time to wait for a search request" -msgstr "" - -#: src/config/SSSDConfig.py:187 -msgid "Length of time to wait for a enumeration request" -msgstr "" - -#: src/config/SSSDConfig.py:188 -msgid "Length of time between enumeration updates" -msgstr "" - -#: src/config/SSSDConfig.py:189 -msgid "Length of time between cache cleanups" -msgstr "" - -#: src/config/SSSDConfig.py:190 -msgid "Require TLS for ID lookups" -msgstr "" - -#: src/config/SSSDConfig.py:191 -msgid "Base DN for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:192 -msgid "Scope of user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:193 -msgid "Filter for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:194 -msgid "Objectclass for users" -msgstr "" - -#: src/config/SSSDConfig.py:195 -msgid "Username attribute" -msgstr "" - -#: src/config/SSSDConfig.py:197 -msgid "UID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:198 -msgid "Primary GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:199 -msgid "GECOS attribute" -msgstr "" - -#: src/config/SSSDConfig.py:200 -msgid "Home directory attribute" -msgstr "" - -#: src/config/SSSDConfig.py:201 -msgid "Shell attribute" -msgstr "" - -#: src/config/SSSDConfig.py:202 -msgid "UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:203 -msgid "User principal attribute (for Kerberos)" -msgstr "" - -#: src/config/SSSDConfig.py:204 -msgid "Full Name" -msgstr "" - -#: src/config/SSSDConfig.py:205 -msgid "memberOf attribute" -msgstr "" - -#: src/config/SSSDConfig.py:206 -msgid "Modification time attribute" -msgstr "" - -#: src/config/SSSDConfig.py:208 -msgid "shadowLastChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:209 -msgid "shadowMin attribute" -msgstr "" - -#: src/config/SSSDConfig.py:210 -msgid "shadowMax attribute" -msgstr "" - -#: src/config/SSSDConfig.py:211 -msgid "shadowWarning attribute" -msgstr "" - -#: src/config/SSSDConfig.py:212 -msgid "shadowInactive attribute" -msgstr "" - -#: src/config/SSSDConfig.py:213 -msgid "shadowExpire attribute" -msgstr "" - -#: src/config/SSSDConfig.py:214 -msgid "shadowFlag attribute" -msgstr "" - -#: src/config/SSSDConfig.py:215 -msgid "Attribute listing authorized PAM services" -msgstr "" - -#: src/config/SSSDConfig.py:216 -msgid "Attribute listing authorized server hosts" -msgstr "" - -#: src/config/SSSDConfig.py:217 -msgid "krbLastPwdChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:218 -msgid "krbPasswordExpiration attribute" -msgstr "" - -#: src/config/SSSDConfig.py:219 -msgid "Attribute indicating that server side password policies are active" -msgstr "" - -#: src/config/SSSDConfig.py:220 -msgid "accountExpires attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:221 -msgid "userAccountControl attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:222 -msgid "nsAccountLock attribute" -msgstr "" - -#: src/config/SSSDConfig.py:223 -msgid "loginDisabled attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:224 -msgid "loginExpirationTime attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:225 -msgid "loginAllowedTimeMap attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:226 -msgid "SSH public key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:228 -msgid "Base DN for group lookups" -msgstr "" - -#: src/config/SSSDConfig.py:231 -msgid "Objectclass for groups" -msgstr "" - -#: src/config/SSSDConfig.py:232 -msgid "Group name" -msgstr "" - -#: src/config/SSSDConfig.py:233 -msgid "Group password" -msgstr "" - -#: src/config/SSSDConfig.py:234 -msgid "GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:235 -msgid "Group member attribute" -msgstr "" - -#: src/config/SSSDConfig.py:236 -msgid "Group UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:237 -msgid "Modification time attribute for groups" -msgstr "" - -#: src/config/SSSDConfig.py:239 -msgid "Maximum nesting level SSSd will follow" -msgstr "" - -#: src/config/SSSDConfig.py:241 -msgid "Base DN for netgroup lookups" -msgstr "" - -#: src/config/SSSDConfig.py:242 -msgid "Objectclass for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:243 -msgid "Netgroup name" -msgstr "" - -#: src/config/SSSDConfig.py:244 -msgid "Netgroups members attribute" -msgstr "" - -#: src/config/SSSDConfig.py:245 -msgid "Netgroup triple attribute" -msgstr "" - -#: src/config/SSSDConfig.py:246 -msgid "Netgroup UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:247 -msgid "Modification time attribute for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:249 -msgid "Base DN for service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:250 -msgid "Objectclass for services" -msgstr "" - -#: src/config/SSSDConfig.py:251 -msgid "Service name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:252 -msgid "Service port attribute" -msgstr "" - -#: src/config/SSSDConfig.py:253 -msgid "Service protocol attribute" -msgstr "" - -#: src/config/SSSDConfig.py:257 -msgid "Policy to evaluate the password expiration" -msgstr "" - -#: src/config/SSSDConfig.py:260 -msgid "LDAP filter to determine access privileges" -msgstr "" - -#: src/config/SSSDConfig.py:261 -msgid "Which attributes shall be used to evaluate if an account is expired" -msgstr "" - -#: src/config/SSSDConfig.py:262 -msgid "Which rules should be used to evaluate access control" -msgstr "" - -#: src/config/SSSDConfig.py:265 -msgid "URI of an LDAP server where password changes are allowed" -msgstr "" - -#: src/config/SSSDConfig.py:266 -msgid "DNS service name for LDAP password change server" -msgstr "" - -#: src/config/SSSDConfig.py:269 -msgid "Base DN for sudo rules lookups" -msgstr "" - -#: src/config/SSSDConfig.py:270 -msgid "Enable periodical update of all sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:271 -msgid "Length of time between rules updates" -msgstr "" - -#: src/config/SSSDConfig.py:272 -msgid "Object class for sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:273 -msgid "Sudo rule name" -msgstr "" - -#: src/config/SSSDConfig.py:274 -msgid "Sudo rule command attribute" -msgstr "" - -#: src/config/SSSDConfig.py:275 -msgid "Sudo rule host attribute" -msgstr "" - -#: src/config/SSSDConfig.py:276 -msgid "Sudo rule user attribute" -msgstr "" - -#: src/config/SSSDConfig.py:277 -msgid "Sudo rule option attribute" -msgstr "" - -#: src/config/SSSDConfig.py:278 -msgid "Sudo rule runasuser attribute" -msgstr "" - -#: src/config/SSSDConfig.py:279 -msgid "Sudo rule runasgroup attribute" -msgstr "" - -#: src/config/SSSDConfig.py:280 -msgid "Sudo rule notbefore attribute" -msgstr "" - -#: src/config/SSSDConfig.py:281 -msgid "Sudo rule notafter attribute" -msgstr "" - -#: src/config/SSSDConfig.py:282 -msgid "Sudo rule order attribute" -msgstr "" - -#: src/config/SSSDConfig.py:285 -msgid "Object class for automounter maps" -msgstr "" - -#: src/config/SSSDConfig.py:286 -msgid "Automounter map name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:287 -msgid "Object class for automounter map entries" -msgstr "" - -#: src/config/SSSDConfig.py:288 -msgid "Automounter map entry key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:289 -msgid "Automounter map entry value attribute" -msgstr "" - -#: src/config/SSSDConfig.py:290 -msgid "Base DN for automounter map lookups" -msgstr "" - -#: src/config/SSSDConfig.py:293 -msgid "Comma separated list of allowed users" -msgstr "" - -#: src/config/SSSDConfig.py:294 -msgid "Comma separated list of prohibited users" -msgstr "" - -#: src/config/SSSDConfig.py:297 -msgid "Default shell, /bin/bash" -msgstr "" - -#: src/config/SSSDConfig.py:298 -msgid "Base for home directories" -msgstr "" - -#: src/config/SSSDConfig.py:301 -msgid "The name of the NSS library to use" -msgstr "" - -#: src/config/SSSDConfig.py:304 -msgid "PAM stack to use" -msgstr "" - -#: src/monitor/monitor.c:2379 -msgid "Become a daemon (default)" -msgstr "" - -#: src/monitor/monitor.c:2381 -msgid "Run interactive (not a daemon)" -msgstr "" - -#: src/monitor/monitor.c:2383 src/tools/sss_debuglevel.c:77 -msgid "Specify a non-default config file" -msgstr "" - -#: src/monitor/monitor.c:2385 -msgid "Print version number and exit" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1575 src/providers/ldap/ldap_child.c:381 -#: src/util/util.h:89 -msgid "Debug level" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1577 src/providers/ldap/ldap_child.c:383 -#: src/util/util.h:93 -msgid "Add debug timestamps" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1579 src/providers/ldap/ldap_child.c:385 -#: src/util/util.h:95 -msgid "Show timestamps with microseconds" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1581 src/providers/ldap/ldap_child.c:387 -msgid "An open file descriptor for the debug logs" -msgstr "" - -#: src/providers/data_provider_be.c:1938 -msgid "Domain of the information provider (mandatory)" -msgstr "" - -#: src/sss_client/common.c:878 -msgid "Privileged socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:881 -msgid "Public socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:884 -msgid "Unexpected format of the server credential message." -msgstr "" - -#: src/sss_client/common.c:887 -msgid "SSSD is not run by root." -msgstr "" - -#: src/sss_client/common.c:892 -msgid "An error occurred, but no description can be found." -msgstr "" - -#: src/sss_client/common.c:898 -msgid "Unexpected error while looking for an error description" -msgstr "" - -#: src/sss_client/pam_sss.c:378 -msgid "Passwords do not match" -msgstr "" - -#: src/sss_client/pam_sss.c:571 -msgid "Password reset by root is not supported." -msgstr "" - -#: src/sss_client/pam_sss.c:612 -msgid "Authenticated with cached credentials" -msgstr "" - -#: src/sss_client/pam_sss.c:613 -msgid ", your cached password will expire at: " -msgstr "" - -#: src/sss_client/pam_sss.c:643 -#, c-format -msgid "Your password has expired. You have %d grace login(s) remaining." -msgstr "" - -#: src/sss_client/pam_sss.c:689 -#, c-format -msgid "Your password will expire in %d %s." -msgstr "" - -#: src/sss_client/pam_sss.c:738 -msgid "Authentication is denied until: " -msgstr "" - -#: src/sss_client/pam_sss.c:759 -msgid "System is offline, password change not possible" -msgstr "" - -#: src/sss_client/pam_sss.c:789 src/sss_client/pam_sss.c:802 -msgid "Password change failed. " -msgstr "" - -#: src/sss_client/pam_sss.c:792 src/sss_client/pam_sss.c:803 -msgid "Server message: " -msgstr "" - -#: src/sss_client/pam_sss.c:1286 -msgid "New Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1287 -msgid "Reenter new Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1373 -msgid "Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1405 -msgid "Current Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1552 -msgid "Password expired. Change your password now." -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:40 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:211 src/tools/sss_useradd.c:48 -#: src/tools/sss_groupadd.c:41 src/tools/sss_groupdel.c:43 -#: src/tools/sss_groupmod.c:42 src/tools/sss_groupshow.c:615 -#: src/tools/sss_userdel.c:131 src/tools/sss_usermod.c:47 -#: src/tools/sss_cache.c:260 src/tools/sss_debuglevel.c:75 -msgid "The debug level to run with" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:42 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:215 -msgid "The SSSD domain to use" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:58 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:229 src/tools/sss_useradd.c:71 -#: src/tools/sss_groupadd.c:56 src/tools/sss_groupdel.c:52 -#: src/tools/sss_groupmod.c:63 src/tools/sss_groupshow.c:626 -#: src/tools/sss_userdel.c:148 src/tools/sss_usermod.c:72 -#: src/tools/sss_cache.c:281 -msgid "Error setting the locale\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:65 -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:91 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:236 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:269 -msgid "Not enough memory\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:84 -msgid "User not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:104 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:282 -msgid "Error looking up public keys\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:94 -msgid "Failed to open a socket\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:104 -msgid "Failed to connect to the server\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:195 -msgid "Failed to execute proxy command\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:213 -msgid "The port to use to connect to the host" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:255 -msgid "Host not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:261 -msgid "The path to the proxy command must be absolute\n" -msgstr "" - -#: src/tools/sss_useradd.c:49 src/tools/sss_usermod.c:48 -msgid "The UID of the user" -msgstr "" - -#: src/tools/sss_useradd.c:50 src/tools/sss_usermod.c:50 -msgid "The comment string" -msgstr "" - -#: src/tools/sss_useradd.c:51 src/tools/sss_usermod.c:51 -msgid "Home directory" -msgstr "" - -#: src/tools/sss_useradd.c:52 src/tools/sss_usermod.c:52 -msgid "Login shell" -msgstr "" - -#: src/tools/sss_useradd.c:53 -msgid "Groups" -msgstr "" - -#: src/tools/sss_useradd.c:54 -msgid "Create user's directory if it does not exist" -msgstr "" - -#: src/tools/sss_useradd.c:55 -msgid "Never create user's directory, overrides config" -msgstr "" - -#: src/tools/sss_useradd.c:56 -msgid "Specify an alternative skeleton directory" -msgstr "" - -#: src/tools/sss_useradd.c:57 src/tools/sss_usermod.c:57 -msgid "The SELinux user for user's login" -msgstr "" - -#: src/tools/sss_useradd.c:84 src/tools/sss_groupmod.c:76 -#: src/tools/sss_usermod.c:85 -msgid "Specify group to add to\n" -msgstr "" - -#: src/tools/sss_useradd.c:108 -msgid "Specify user to add\n" -msgstr "" - -#: src/tools/sss_useradd.c:117 src/tools/sss_groupadd.c:82 -#: src/tools/sss_groupdel.c:77 src/tools/sss_groupmod.c:109 -#: src/tools/sss_groupshow.c:659 src/tools/sss_userdel.c:193 -#: src/tools/sss_usermod.c:126 -msgid "Error initializing the tools - no local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:119 src/tools/sss_groupadd.c:84 -#: src/tools/sss_groupdel.c:79 src/tools/sss_groupmod.c:111 -#: src/tools/sss_groupshow.c:661 src/tools/sss_userdel.c:195 -#: src/tools/sss_usermod.c:128 -msgid "Error initializing the tools\n" -msgstr "" - -#: src/tools/sss_useradd.c:128 src/tools/sss_groupadd.c:93 -#: src/tools/sss_groupdel.c:88 src/tools/sss_groupmod.c:119 -#: src/tools/sss_groupshow.c:670 src/tools/sss_userdel.c:204 -#: src/tools/sss_usermod.c:137 -msgid "Invalid domain specified in FQDN\n" -msgstr "" - -#: src/tools/sss_useradd.c:137 src/tools/sss_groupmod.c:139 -#: src/tools/sss_groupmod.c:166 src/tools/sss_usermod.c:160 -#: src/tools/sss_usermod.c:187 -msgid "Internal error while parsing parameters\n" -msgstr "" - -#: src/tools/sss_useradd.c:145 src/tools/sss_usermod.c:168 -#: src/tools/sss_usermod.c:195 -msgid "Groups must be in the same domain as user\n" -msgstr "" - -#: src/tools/sss_useradd.c:153 -#, c-format -msgid "Cannot find group %s in local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:168 src/tools/sss_userdel.c:214 -msgid "Cannot set default values\n" -msgstr "" - -#: src/tools/sss_useradd.c:175 src/tools/sss_usermod.c:151 -msgid "The selected UID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_useradd.c:202 src/tools/sss_usermod.c:236 -msgid "Cannot set SELinux login context\n" -msgstr "" - -#: src/tools/sss_useradd.c:217 -msgid "Cannot get info about the user\n" -msgstr "" - -#: src/tools/sss_useradd.c:229 -msgid "User's home directory already exists, not copying data from skeldir\n" -msgstr "" - -#: src/tools/sss_useradd.c:232 -#, c-format -msgid "Cannot create user's home directory: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:243 -#, c-format -msgid "Cannot create user's mail spool: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:255 -msgid "Could not allocate ID for the user - domain full?\n" -msgstr "" - -#: src/tools/sss_useradd.c:259 -msgid "A user or group with the same name or ID already exists\n" -msgstr "" - -#: src/tools/sss_useradd.c:265 -msgid "Transaction error. Could not add user.\n" -msgstr "" - -#: src/tools/sss_groupadd.c:43 src/tools/sss_groupmod.c:48 -msgid "The GID of the group" -msgstr "" - -#: src/tools/sss_groupadd.c:73 -msgid "Specify group to add\n" -msgstr "" - -#: src/tools/sss_groupadd.c:102 src/tools/sss_groupmod.c:190 -msgid "The selected GID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_groupadd.c:127 -msgid "Could not allocate ID for the group - domain full?\n" -msgstr "" - -#: src/tools/sss_groupadd.c:131 -msgid "A group with the same name or GID already exists\n" -msgstr "" - -#: src/tools/sss_groupadd.c:136 -msgid "Transaction error. Could not add group.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:68 -msgid "Specify group to delete\n" -msgstr "" - -#: src/tools/sss_groupdel.c:101 -#, c-format -msgid "Group %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_groupdel.c:115 -msgid "" -"No such group in local domain. Removing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:120 -msgid "Internal error. Could not remove group.\n" -msgstr "" - -#: src/tools/sss_groupmod.c:44 -msgid "Groups to add this group to" -msgstr "" - -#: src/tools/sss_groupmod.c:46 -msgid "Groups to remove this group from" -msgstr "" - -#: src/tools/sss_groupmod.c:84 src/tools/sss_usermod.c:93 -msgid "Specify group to remove from\n" -msgstr "" - -#: src/tools/sss_groupmod.c:98 -msgid "Specify group to modify\n" -msgstr "" - -#: src/tools/sss_groupmod.c:126 -msgid "" -"Cannot find group in local domain, modifying groups is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_groupmod.c:147 src/tools/sss_groupmod.c:174 -msgid "Member groups must be in the same domain as parent group\n" -msgstr "" - -#: src/tools/sss_groupmod.c:155 src/tools/sss_groupmod.c:182 -#: src/tools/sss_usermod.c:176 src/tools/sss_usermod.c:203 -#, c-format -msgid "" -"Cannot find group %s in local domain, only groups in local domain are " -"allowed\n" -msgstr "" - -#: src/tools/sss_groupmod.c:216 -msgid "Could not modify group - check if member group names are correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:220 -msgid "Could not modify group - check if groupname is correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:224 -msgid "Transaction error. Could not modify group.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:562 -#, c-format -msgid "%s%sGroup: %s\n" -msgstr "" - -#: src/tools/sss_groupshow.c:563 -msgid "Magic Private " -msgstr "" - -#: src/tools/sss_groupshow.c:565 -#, c-format -msgid "%sGID number: %d\n" -msgstr "" - -#: src/tools/sss_groupshow.c:567 -#, c-format -msgid "%sMember users: " -msgstr "" - -#: src/tools/sss_groupshow.c:574 -#, c-format -msgid "" -"\n" -"%sIs a member of: " -msgstr "" - -#: src/tools/sss_groupshow.c:581 -#, c-format -msgid "" -"\n" -"%sMember groups: " -msgstr "" - -#: src/tools/sss_groupshow.c:617 -msgid "Print indirect group members recursively" -msgstr "" - -#: src/tools/sss_groupshow.c:650 -msgid "Specify group to show\n" -msgstr "" - -#: src/tools/sss_groupshow.c:689 -msgid "" -"No such group in local domain. Printing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:694 -msgid "Internal error. Could not print group.\n" -msgstr "" - -#: src/tools/sss_userdel.c:133 -msgid "Remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:135 -msgid "Do not remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:137 -msgid "Force removal of files not owned by the user" -msgstr "" - -#: src/tools/sss_userdel.c:139 -msgid "Kill users' processes before removing him" -msgstr "" - -#: src/tools/sss_userdel.c:184 -msgid "Specify user to delete\n" -msgstr "" - -#: src/tools/sss_userdel.c:230 -#, c-format -msgid "User %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_userdel.c:255 -msgid "Cannot reset SELinux login context\n" -msgstr "" - -#: src/tools/sss_userdel.c:267 -#, c-format -msgid "WARNING: The user (uid %lu) was still logged in when deleted.\n" -msgstr "" - -#: src/tools/sss_userdel.c:272 -msgid "Cannot determine if the user was logged in on this platform" -msgstr "" - -#: src/tools/sss_userdel.c:277 -msgid "Error while checking if the user was logged in\n" -msgstr "" - -#: src/tools/sss_userdel.c:284 -#, c-format -msgid "The post-delete command failed: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:296 -msgid "Not removing home dir - not owned by user\n" -msgstr "" - -#: src/tools/sss_userdel.c:298 -#, c-format -msgid "Cannot remove homedir: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:309 -msgid "" -"No such user in local domain. Removing users only allowed in local domain.\n" -msgstr "" - -#: src/tools/sss_userdel.c:314 -msgid "Internal error. Could not remove user.\n" -msgstr "" - -#: src/tools/sss_usermod.c:49 -msgid "The GID of the user" -msgstr "" - -#: src/tools/sss_usermod.c:53 -msgid "Groups to add this user to" -msgstr "" - -#: src/tools/sss_usermod.c:54 -msgid "Groups to remove this user from" -msgstr "" - -#: src/tools/sss_usermod.c:55 -msgid "Lock the account" -msgstr "" - -#: src/tools/sss_usermod.c:56 -msgid "Unlock the account" -msgstr "" - -#: src/tools/sss_usermod.c:117 -msgid "Specify user to modify\n" -msgstr "" - -#: src/tools/sss_usermod.c:144 -msgid "" -"Cannot find user in local domain, modifying users is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_usermod.c:246 -msgid "Could not modify user - check if group names are correct\n" -msgstr "" - -#: src/tools/sss_usermod.c:250 -msgid "Could not modify user - user already member of groups?\n" -msgstr "" - -#: src/tools/sss_usermod.c:254 -msgid "Transaction error. Could not modify user.\n" -msgstr "" - -#: src/tools/sss_cache.c:132 -#, c-format -msgid "Couldn't invalidate %s" -msgstr "" - -#: src/tools/sss_cache.c:138 -#, c-format -msgid "Couldn't invalidate %s %s" -msgstr "" - -#: src/tools/sss_cache.c:262 -msgid "Invalidate particular user" -msgstr "" - -#: src/tools/sss_cache.c:264 -msgid "Invalidate all users" -msgstr "" - -#: src/tools/sss_cache.c:266 -msgid "Invalidate particular group" -msgstr "" - -#: src/tools/sss_cache.c:268 -msgid "Invalidate all groups" -msgstr "" - -#: src/tools/sss_cache.c:270 -msgid "Invalidate particular netgroup" -msgstr "" - -#: src/tools/sss_cache.c:272 -msgid "Invalidate all netgroups" -msgstr "" - -#: src/tools/sss_cache.c:274 -msgid "Only invalidate entries from a particular domain" -msgstr "" - -#: src/tools/sss_debuglevel.c:43 -msgid "\n" -msgstr "" - -#: src/tools/sss_debuglevel.c:102 -msgid "Specify debug level you want to set\n" -msgstr "" - -#: src/tools/tools_util.c:286 -msgid "Out of memory\n" -msgstr "" - -#: src/tools/tools_util.h:40 -#, c-format -msgid "%s must be run as root\n" -msgstr "" - -#: src/util/util.h:91 -msgid "Send the debug output to files instead of stderr" -msgstr "" diff --git a/po/de.po b/po/de.po index 0c3e12fb4..a32061f55 100644 --- a/po/de.po +++ b/po/de.po @@ -9,8 +9,8 @@ msgid "" msgstr "" "Project-Id-Version: SSSD\n" "Report-Msgid-Bugs-To: sssd-devel@lists.fedorahosted.org\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2011-12-21 10:11+0000\n" +"POT-Creation-Date: 2012-03-12 16:26-0400\n" +"PO-Revision-Date: 2012-03-08 11:41+0000\n" "Last-Translator: sgallagh \n" "Language-Team: German \n" "Language: de\n" @@ -172,23 +172,20 @@ msgid "Password change provider" msgstr "" #: src/config/SSSDConfig.py:88 -#, fuzzy msgid "SUDO provider" -msgstr "Identity Provider" +msgstr "" #: src/config/SSSDConfig.py:89 -#, fuzzy msgid "Autofs provider" -msgstr "Identity Provider" +msgstr "" #: src/config/SSSDConfig.py:90 msgid "Session-loading provider" msgstr "" #: src/config/SSSDConfig.py:91 -#, fuzzy msgid "Host identity provider" -msgstr "Identity Provider" +msgstr "" #: src/config/SSSDConfig.py:94 msgid "Minimum user ID" @@ -633,9 +630,8 @@ msgid "loginAllowedTimeMap attribute of NDS" msgstr "" #: src/config/SSSDConfig.py:226 -#, fuzzy msgid "SSH public key attribute" -msgstr "Shell-Attribut" +msgstr "" #: src/config/SSSDConfig.py:228 msgid "Base DN for group lookups" @@ -710,19 +706,16 @@ msgid "Objectclass for services" msgstr "" #: src/config/SSSDConfig.py:251 -#, fuzzy msgid "Service name attribute" -msgstr "Benutzername-Attribut" +msgstr "" #: src/config/SSSDConfig.py:252 -#, fuzzy msgid "Service port attribute" -msgstr "Benutzername-Attribut" +msgstr "" #: src/config/SSSDConfig.py:253 -#, fuzzy msgid "Service protocol attribute" -msgstr "Shell-Attribut" +msgstr "" #: src/config/SSSDConfig.py:257 msgid "Policy to evaluate the password expiration" @@ -773,23 +766,20 @@ msgid "Sudo rule command attribute" msgstr "" #: src/config/SSSDConfig.py:275 -#, fuzzy msgid "Sudo rule host attribute" -msgstr "Shell-Attribut" +msgstr "" #: src/config/SSSDConfig.py:276 -#, fuzzy msgid "Sudo rule user attribute" -msgstr "Benutzername-Attribut" +msgstr "" #: src/config/SSSDConfig.py:277 msgid "Sudo rule option attribute" msgstr "" #: src/config/SSSDConfig.py:278 -#, fuzzy msgid "Sudo rule runasuser attribute" -msgstr "Benutzername-Attribut" +msgstr "" #: src/config/SSSDConfig.py:279 msgid "Sudo rule runasgroup attribute" @@ -800,23 +790,20 @@ msgid "Sudo rule notbefore attribute" msgstr "" #: src/config/SSSDConfig.py:281 -#, fuzzy msgid "Sudo rule notafter attribute" -msgstr "Benutzername-Attribut" +msgstr "" #: src/config/SSSDConfig.py:282 -#, fuzzy msgid "Sudo rule order attribute" -msgstr "Benutzername-Attribut" +msgstr "" #: src/config/SSSDConfig.py:285 msgid "Object class for automounter maps" msgstr "" #: src/config/SSSDConfig.py:286 -#, fuzzy msgid "Automounter map name attribute" -msgstr "Benutzername-Attribut" +msgstr "" #: src/config/SSSDConfig.py:287 msgid "Object class for automounter map entries" @@ -893,7 +880,7 @@ msgstr "" msgid "An open file descriptor for the debug logs" msgstr "" -#: src/providers/data_provider_be.c:1938 +#: src/providers/data_provider_be.c:2022 msgid "Domain of the information provider (mandatory)" msgstr "" @@ -994,9 +981,8 @@ msgstr "" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:42 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:215 -#, fuzzy msgid "The SSSD domain to use" -msgstr "SSSD-Domains zum Starten" +msgstr "" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:58 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:229 src/tools/sss_useradd.c:71 diff --git a/po/el.po b/po/el.po deleted file mode 100644 index ae1408c3c..000000000 --- a/po/el.po +++ /dev/null @@ -1,1462 +0,0 @@ -# SOME DESCRIPTIVE TITLE. -# Copyright (C) YEAR Red Hat, Inc. -# This file is distributed under the same license as the PACKAGE package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@lists.fedorahosted.org\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-11-30 04:10+0000\n" -"Last-Translator: FULL NAME \n" -"Language-Team: Greek \n" -"Language: el\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=2; plural=(n != 1)\n" - -#: src/config/SSSDConfig.py:39 -msgid "Set the verbosity of the debug logging" -msgstr "" - -#: src/config/SSSDConfig.py:40 -msgid "Include timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:41 -msgid "Include microseconds in timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:42 -msgid "Write debug messages to logfiles" -msgstr "" - -#: src/config/SSSDConfig.py:43 -msgid "Ping timeout before restarting service" -msgstr "" - -#: src/config/SSSDConfig.py:44 -msgid "Command to start service" -msgstr "" - -#: src/config/SSSDConfig.py:45 -msgid "Number of times to attempt connection to Data Providers" -msgstr "" - -#: src/config/SSSDConfig.py:48 -msgid "SSSD Services to start" -msgstr "" - -#: src/config/SSSDConfig.py:49 -msgid "SSSD Domains to start" -msgstr "" - -#: src/config/SSSDConfig.py:50 -msgid "Timeout for messages sent over the SBUS" -msgstr "" - -#: src/config/SSSDConfig.py:51 -msgid "Regex to parse username and domain" -msgstr "" - -#: src/config/SSSDConfig.py:52 -msgid "Printf-compatible format for displaying fully-qualified names" -msgstr "" - -#: src/config/SSSDConfig.py:53 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#: src/config/SSSDConfig.py:56 -msgid "Enumeration cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:57 -msgid "Entry cache background update timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:58 src/config/SSSDConfig.py:81 -msgid "Negative cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:59 -msgid "Users that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:60 -msgid "Groups that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:61 -msgid "Should filtered users appear in groups" -msgstr "" - -#: src/config/SSSDConfig.py:62 -msgid "The value of the password field the NSS provider should return" -msgstr "" - -#: src/config/SSSDConfig.py:63 -msgid "Override homedir value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:64 -msgid "The list of shells users are allowed to log in with" -msgstr "" - -#: src/config/SSSDConfig.py:65 -msgid "" -"The list of shells that will be vetoed, and replaced with the fallback shell" -msgstr "" - -#: src/config/SSSDConfig.py:66 -msgid "" -"If a shell stored in central directory is allowed but not available, use " -"this fallback" -msgstr "" - -#: src/config/SSSDConfig.py:69 -msgid "How long to allow cached logins between online logins (days)" -msgstr "" - -#: src/config/SSSDConfig.py:70 -msgid "How many failed logins attempts are allowed when offline" -msgstr "" - -#: src/config/SSSDConfig.py:71 -msgid "" -"How long (minutes) to deny login after offline_failed_login_attempts has " -"been reached" -msgstr "" - -#: src/config/SSSDConfig.py:72 -msgid "What kind of messages are displayed to the user during authentication" -msgstr "" - -#: src/config/SSSDConfig.py:73 -msgid "How many seconds to keep identity information cached for PAM requests" -msgstr "" - -#: src/config/SSSDConfig.py:74 -msgid "How many days before password expiration a warning should be displayed" -msgstr "" - -#: src/config/SSSDConfig.py:77 -msgid "Whether to evaluate the time-based attributes in sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:78 -msgid "" -"How many seconds to keep sudorules cached before asking the provider again" -msgstr "" - -#: src/config/SSSDConfig.py:84 -msgid "Identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:85 -msgid "Authentication provider" -msgstr "" - -#: src/config/SSSDConfig.py:86 -msgid "Access control provider" -msgstr "" - -#: src/config/SSSDConfig.py:87 -msgid "Password change provider" -msgstr "" - -#: src/config/SSSDConfig.py:88 -msgid "SUDO provider" -msgstr "" - -#: src/config/SSSDConfig.py:89 -msgid "Autofs provider" -msgstr "" - -#: src/config/SSSDConfig.py:90 -msgid "Session-loading provider" -msgstr "" - -#: src/config/SSSDConfig.py:91 -msgid "Host identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:94 -msgid "Minimum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:95 -msgid "Maximum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:96 -msgid "Enable enumerating all users/groups" -msgstr "" - -#: src/config/SSSDConfig.py:97 -msgid "Cache credentials for offline login" -msgstr "" - -#: src/config/SSSDConfig.py:98 -msgid "Store password hashes" -msgstr "" - -#: src/config/SSSDConfig.py:99 -msgid "Display users/groups in fully-qualified form" -msgstr "" - -#: src/config/SSSDConfig.py:100 src/config/SSSDConfig.py:107 -#: src/config/SSSDConfig.py:108 src/config/SSSDConfig.py:109 -#: src/config/SSSDConfig.py:110 src/config/SSSDConfig.py:111 -msgid "Entry cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:101 -msgid "" -"Restrict or prefer a specific address family when performing DNS lookups" -msgstr "" - -#: src/config/SSSDConfig.py:102 -msgid "How long to keep cached entries after last successful login (days)" -msgstr "" - -#: src/config/SSSDConfig.py:103 -msgid "How long to wait for replies from DNS when resolving servers (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:104 -msgid "The domain part of service discovery DNS query" -msgstr "" - -#: src/config/SSSDConfig.py:105 -msgid "Override GID value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:106 -msgid "Treat usernames as case sensitive" -msgstr "" - -#: src/config/SSSDConfig.py:114 -msgid "IPA domain" -msgstr "" - -#: src/config/SSSDConfig.py:115 -msgid "IPA server address" -msgstr "" - -#: src/config/SSSDConfig.py:116 -msgid "IPA client hostname" -msgstr "" - -#: src/config/SSSDConfig.py:117 -msgid "Whether to automatically update the client's DNS entry in FreeIPA" -msgstr "" - -#: src/config/SSSDConfig.py:118 -msgid "The interface whose IP should be used for dynamic DNS updates" -msgstr "" - -#: src/config/SSSDConfig.py:119 -msgid "Search base for HBAC related objects" -msgstr "" - -#: src/config/SSSDConfig.py:120 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server" -msgstr "" - -#: src/config/SSSDConfig.py:121 -msgid "If DENY rules are present, either DENY_ALL or IGNORE" -msgstr "" - -#: src/config/SSSDConfig.py:122 -msgid "If set to false, host argument given by PAM will be ignored" -msgstr "" - -#: src/config/SSSDConfig.py:123 -msgid "The automounter location this IPA client is using" -msgstr "" - -#: src/config/SSSDConfig.py:126 src/config/SSSDConfig.py:127 -msgid "Kerberos server address" -msgstr "" - -#: src/config/SSSDConfig.py:128 -msgid "Kerberos realm" -msgstr "" - -#: src/config/SSSDConfig.py:129 -msgid "Authentication timeout" -msgstr "" - -#: src/config/SSSDConfig.py:132 -msgid "Directory to store credential caches" -msgstr "" - -#: src/config/SSSDConfig.py:133 -msgid "Location of the user's credential cache" -msgstr "" - -#: src/config/SSSDConfig.py:134 -msgid "Location of the keytab to validate credentials" -msgstr "" - -#: src/config/SSSDConfig.py:135 -msgid "Enable credential validation" -msgstr "" - -#: src/config/SSSDConfig.py:136 -msgid "Store password if offline for later online authentication" -msgstr "" - -#: src/config/SSSDConfig.py:137 -msgid "Renewable lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:138 -msgid "Lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:139 -msgid "Time between two checks for renewal" -msgstr "" - -#: src/config/SSSDConfig.py:140 -msgid "Enables FAST" -msgstr "" - -#: src/config/SSSDConfig.py:141 -msgid "Selects the principal to use for FAST" -msgstr "" - -#: src/config/SSSDConfig.py:142 -msgid "Enables principal canonicalization" -msgstr "" - -#: src/config/SSSDConfig.py:145 -msgid "Server where the change password service is running if not on the KDC" -msgstr "" - -#: src/config/SSSDConfig.py:148 -msgid "ldap_uri, The URI of the LDAP server" -msgstr "" - -#: src/config/SSSDConfig.py:149 -msgid "The default base DN" -msgstr "" - -#: src/config/SSSDConfig.py:150 -msgid "The Schema Type in use on the LDAP server, rfc2307" -msgstr "" - -#: src/config/SSSDConfig.py:151 -msgid "The default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:152 -msgid "The type of the authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:153 -msgid "The authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:154 -msgid "Length of time to attempt connection" -msgstr "" - -#: src/config/SSSDConfig.py:155 -msgid "Length of time to attempt synchronous LDAP operations" -msgstr "" - -#: src/config/SSSDConfig.py:156 -msgid "Length of time between attempts to reconnect while offline" -msgstr "" - -#: src/config/SSSDConfig.py:157 -msgid "Use only the upper case for realm names" -msgstr "" - -#: src/config/SSSDConfig.py:158 -msgid "File that contains CA certificates" -msgstr "" - -#: src/config/SSSDConfig.py:159 -msgid "Path to CA certificate directory" -msgstr "" - -#: src/config/SSSDConfig.py:160 -msgid "File that contains the client certificate" -msgstr "" - -#: src/config/SSSDConfig.py:161 -msgid "File that contains the client key" -msgstr "" - -#: src/config/SSSDConfig.py:162 -msgid "List of possible ciphers suites" -msgstr "" - -#: src/config/SSSDConfig.py:163 -msgid "Require TLS certificate verification" -msgstr "" - -#: src/config/SSSDConfig.py:164 -msgid "Specify the sasl mechanism to use" -msgstr "" - -#: src/config/SSSDConfig.py:165 -msgid "Specify the sasl authorization id to use" -msgstr "" - -#: src/config/SSSDConfig.py:166 -msgid "Specify the sasl authorization realm to use" -msgstr "" - -#: src/config/SSSDConfig.py:167 -msgid "Specify the minimal SSF for LDAP sasl authorization" -msgstr "" - -#: src/config/SSSDConfig.py:168 -msgid "Kerberos service keytab" -msgstr "" - -#: src/config/SSSDConfig.py:169 -msgid "Use Kerberos auth for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:170 -msgid "Follow LDAP referrals" -msgstr "" - -#: src/config/SSSDConfig.py:171 -msgid "Lifetime of TGT for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:172 -msgid "How to dereference aliases" -msgstr "" - -#: src/config/SSSDConfig.py:173 -msgid "Service name for DNS service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:174 -msgid "The number of records to retrieve in a single LDAP query" -msgstr "" - -#: src/config/SSSDConfig.py:175 -msgid "The number of members that must be missing to trigger a full deref" -msgstr "" - -#: src/config/SSSDConfig.py:176 -msgid "" -"Whether the LDAP library should perform a reverse lookup to canonicalize the " -"host name during a SASL bind" -msgstr "" - -#: src/config/SSSDConfig.py:178 -msgid "entryUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:179 -msgid "lastUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:181 -msgid "How long to retain a connection to the LDAP server before disconnecting" -msgstr "" - -#: src/config/SSSDConfig.py:183 -msgid "Disable the LDAP paging control" -msgstr "" - -#: src/config/SSSDConfig.py:186 -msgid "Length of time to wait for a search request" -msgstr "" - -#: src/config/SSSDConfig.py:187 -msgid "Length of time to wait for a enumeration request" -msgstr "" - -#: src/config/SSSDConfig.py:188 -msgid "Length of time between enumeration updates" -msgstr "" - -#: src/config/SSSDConfig.py:189 -msgid "Length of time between cache cleanups" -msgstr "" - -#: src/config/SSSDConfig.py:190 -msgid "Require TLS for ID lookups" -msgstr "" - -#: src/config/SSSDConfig.py:191 -msgid "Base DN for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:192 -msgid "Scope of user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:193 -msgid "Filter for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:194 -msgid "Objectclass for users" -msgstr "" - -#: src/config/SSSDConfig.py:195 -msgid "Username attribute" -msgstr "" - -#: src/config/SSSDConfig.py:197 -msgid "UID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:198 -msgid "Primary GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:199 -msgid "GECOS attribute" -msgstr "" - -#: src/config/SSSDConfig.py:200 -msgid "Home directory attribute" -msgstr "" - -#: src/config/SSSDConfig.py:201 -msgid "Shell attribute" -msgstr "" - -#: src/config/SSSDConfig.py:202 -msgid "UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:203 -msgid "User principal attribute (for Kerberos)" -msgstr "" - -#: src/config/SSSDConfig.py:204 -msgid "Full Name" -msgstr "" - -#: src/config/SSSDConfig.py:205 -msgid "memberOf attribute" -msgstr "" - -#: src/config/SSSDConfig.py:206 -msgid "Modification time attribute" -msgstr "" - -#: src/config/SSSDConfig.py:208 -msgid "shadowLastChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:209 -msgid "shadowMin attribute" -msgstr "" - -#: src/config/SSSDConfig.py:210 -msgid "shadowMax attribute" -msgstr "" - -#: src/config/SSSDConfig.py:211 -msgid "shadowWarning attribute" -msgstr "" - -#: src/config/SSSDConfig.py:212 -msgid "shadowInactive attribute" -msgstr "" - -#: src/config/SSSDConfig.py:213 -msgid "shadowExpire attribute" -msgstr "" - -#: src/config/SSSDConfig.py:214 -msgid "shadowFlag attribute" -msgstr "" - -#: src/config/SSSDConfig.py:215 -msgid "Attribute listing authorized PAM services" -msgstr "" - -#: src/config/SSSDConfig.py:216 -msgid "Attribute listing authorized server hosts" -msgstr "" - -#: src/config/SSSDConfig.py:217 -msgid "krbLastPwdChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:218 -msgid "krbPasswordExpiration attribute" -msgstr "" - -#: src/config/SSSDConfig.py:219 -msgid "Attribute indicating that server side password policies are active" -msgstr "" - -#: src/config/SSSDConfig.py:220 -msgid "accountExpires attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:221 -msgid "userAccountControl attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:222 -msgid "nsAccountLock attribute" -msgstr "" - -#: src/config/SSSDConfig.py:223 -msgid "loginDisabled attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:224 -msgid "loginExpirationTime attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:225 -msgid "loginAllowedTimeMap attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:226 -msgid "SSH public key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:228 -msgid "Base DN for group lookups" -msgstr "" - -#: src/config/SSSDConfig.py:231 -msgid "Objectclass for groups" -msgstr "" - -#: src/config/SSSDConfig.py:232 -msgid "Group name" -msgstr "" - -#: src/config/SSSDConfig.py:233 -msgid "Group password" -msgstr "" - -#: src/config/SSSDConfig.py:234 -msgid "GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:235 -msgid "Group member attribute" -msgstr "" - -#: src/config/SSSDConfig.py:236 -msgid "Group UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:237 -msgid "Modification time attribute for groups" -msgstr "" - -#: src/config/SSSDConfig.py:239 -msgid "Maximum nesting level SSSd will follow" -msgstr "" - -#: src/config/SSSDConfig.py:241 -msgid "Base DN for netgroup lookups" -msgstr "" - -#: src/config/SSSDConfig.py:242 -msgid "Objectclass for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:243 -msgid "Netgroup name" -msgstr "" - -#: src/config/SSSDConfig.py:244 -msgid "Netgroups members attribute" -msgstr "" - -#: src/config/SSSDConfig.py:245 -msgid "Netgroup triple attribute" -msgstr "" - -#: src/config/SSSDConfig.py:246 -msgid "Netgroup UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:247 -msgid "Modification time attribute for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:249 -msgid "Base DN for service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:250 -msgid "Objectclass for services" -msgstr "" - -#: src/config/SSSDConfig.py:251 -msgid "Service name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:252 -msgid "Service port attribute" -msgstr "" - -#: src/config/SSSDConfig.py:253 -msgid "Service protocol attribute" -msgstr "" - -#: src/config/SSSDConfig.py:257 -msgid "Policy to evaluate the password expiration" -msgstr "" - -#: src/config/SSSDConfig.py:260 -msgid "LDAP filter to determine access privileges" -msgstr "" - -#: src/config/SSSDConfig.py:261 -msgid "Which attributes shall be used to evaluate if an account is expired" -msgstr "" - -#: src/config/SSSDConfig.py:262 -msgid "Which rules should be used to evaluate access control" -msgstr "" - -#: src/config/SSSDConfig.py:265 -msgid "URI of an LDAP server where password changes are allowed" -msgstr "" - -#: src/config/SSSDConfig.py:266 -msgid "DNS service name for LDAP password change server" -msgstr "" - -#: src/config/SSSDConfig.py:269 -msgid "Base DN for sudo rules lookups" -msgstr "" - -#: src/config/SSSDConfig.py:270 -msgid "Enable periodical update of all sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:271 -msgid "Length of time between rules updates" -msgstr "" - -#: src/config/SSSDConfig.py:272 -msgid "Object class for sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:273 -msgid "Sudo rule name" -msgstr "" - -#: src/config/SSSDConfig.py:274 -msgid "Sudo rule command attribute" -msgstr "" - -#: src/config/SSSDConfig.py:275 -msgid "Sudo rule host attribute" -msgstr "" - -#: src/config/SSSDConfig.py:276 -msgid "Sudo rule user attribute" -msgstr "" - -#: src/config/SSSDConfig.py:277 -msgid "Sudo rule option attribute" -msgstr "" - -#: src/config/SSSDConfig.py:278 -msgid "Sudo rule runasuser attribute" -msgstr "" - -#: src/config/SSSDConfig.py:279 -msgid "Sudo rule runasgroup attribute" -msgstr "" - -#: src/config/SSSDConfig.py:280 -msgid "Sudo rule notbefore attribute" -msgstr "" - -#: src/config/SSSDConfig.py:281 -msgid "Sudo rule notafter attribute" -msgstr "" - -#: src/config/SSSDConfig.py:282 -msgid "Sudo rule order attribute" -msgstr "" - -#: src/config/SSSDConfig.py:285 -msgid "Object class for automounter maps" -msgstr "" - -#: src/config/SSSDConfig.py:286 -msgid "Automounter map name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:287 -msgid "Object class for automounter map entries" -msgstr "" - -#: src/config/SSSDConfig.py:288 -msgid "Automounter map entry key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:289 -msgid "Automounter map entry value attribute" -msgstr "" - -#: src/config/SSSDConfig.py:290 -msgid "Base DN for automounter map lookups" -msgstr "" - -#: src/config/SSSDConfig.py:293 -msgid "Comma separated list of allowed users" -msgstr "" - -#: src/config/SSSDConfig.py:294 -msgid "Comma separated list of prohibited users" -msgstr "" - -#: src/config/SSSDConfig.py:297 -msgid "Default shell, /bin/bash" -msgstr "" - -#: src/config/SSSDConfig.py:298 -msgid "Base for home directories" -msgstr "" - -#: src/config/SSSDConfig.py:301 -msgid "The name of the NSS library to use" -msgstr "" - -#: src/config/SSSDConfig.py:304 -msgid "PAM stack to use" -msgstr "" - -#: src/monitor/monitor.c:2379 -msgid "Become a daemon (default)" -msgstr "" - -#: src/monitor/monitor.c:2381 -msgid "Run interactive (not a daemon)" -msgstr "" - -#: src/monitor/monitor.c:2383 src/tools/sss_debuglevel.c:77 -msgid "Specify a non-default config file" -msgstr "" - -#: src/monitor/monitor.c:2385 -msgid "Print version number and exit" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1575 src/providers/ldap/ldap_child.c:381 -#: src/util/util.h:89 -msgid "Debug level" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1577 src/providers/ldap/ldap_child.c:383 -#: src/util/util.h:93 -msgid "Add debug timestamps" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1579 src/providers/ldap/ldap_child.c:385 -#: src/util/util.h:95 -msgid "Show timestamps with microseconds" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1581 src/providers/ldap/ldap_child.c:387 -msgid "An open file descriptor for the debug logs" -msgstr "" - -#: src/providers/data_provider_be.c:1938 -msgid "Domain of the information provider (mandatory)" -msgstr "" - -#: src/sss_client/common.c:878 -msgid "Privileged socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:881 -msgid "Public socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:884 -msgid "Unexpected format of the server credential message." -msgstr "" - -#: src/sss_client/common.c:887 -msgid "SSSD is not run by root." -msgstr "" - -#: src/sss_client/common.c:892 -msgid "An error occurred, but no description can be found." -msgstr "" - -#: src/sss_client/common.c:898 -msgid "Unexpected error while looking for an error description" -msgstr "" - -#: src/sss_client/pam_sss.c:378 -msgid "Passwords do not match" -msgstr "" - -#: src/sss_client/pam_sss.c:571 -msgid "Password reset by root is not supported." -msgstr "" - -#: src/sss_client/pam_sss.c:612 -msgid "Authenticated with cached credentials" -msgstr "" - -#: src/sss_client/pam_sss.c:613 -msgid ", your cached password will expire at: " -msgstr "" - -#: src/sss_client/pam_sss.c:643 -#, c-format -msgid "Your password has expired. You have %d grace login(s) remaining." -msgstr "" - -#: src/sss_client/pam_sss.c:689 -#, c-format -msgid "Your password will expire in %d %s." -msgstr "" - -#: src/sss_client/pam_sss.c:738 -msgid "Authentication is denied until: " -msgstr "" - -#: src/sss_client/pam_sss.c:759 -msgid "System is offline, password change not possible" -msgstr "" - -#: src/sss_client/pam_sss.c:789 src/sss_client/pam_sss.c:802 -msgid "Password change failed. " -msgstr "" - -#: src/sss_client/pam_sss.c:792 src/sss_client/pam_sss.c:803 -msgid "Server message: " -msgstr "" - -#: src/sss_client/pam_sss.c:1286 -msgid "New Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1287 -msgid "Reenter new Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1373 -msgid "Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1405 -msgid "Current Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1552 -msgid "Password expired. Change your password now." -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:40 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:211 src/tools/sss_useradd.c:48 -#: src/tools/sss_groupadd.c:41 src/tools/sss_groupdel.c:43 -#: src/tools/sss_groupmod.c:42 src/tools/sss_groupshow.c:615 -#: src/tools/sss_userdel.c:131 src/tools/sss_usermod.c:47 -#: src/tools/sss_cache.c:260 src/tools/sss_debuglevel.c:75 -msgid "The debug level to run with" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:42 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:215 -msgid "The SSSD domain to use" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:58 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:229 src/tools/sss_useradd.c:71 -#: src/tools/sss_groupadd.c:56 src/tools/sss_groupdel.c:52 -#: src/tools/sss_groupmod.c:63 src/tools/sss_groupshow.c:626 -#: src/tools/sss_userdel.c:148 src/tools/sss_usermod.c:72 -#: src/tools/sss_cache.c:281 -msgid "Error setting the locale\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:65 -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:91 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:236 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:269 -msgid "Not enough memory\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:84 -msgid "User not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:104 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:282 -msgid "Error looking up public keys\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:94 -msgid "Failed to open a socket\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:104 -msgid "Failed to connect to the server\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:195 -msgid "Failed to execute proxy command\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:213 -msgid "The port to use to connect to the host" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:255 -msgid "Host not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:261 -msgid "The path to the proxy command must be absolute\n" -msgstr "" - -#: src/tools/sss_useradd.c:49 src/tools/sss_usermod.c:48 -msgid "The UID of the user" -msgstr "" - -#: src/tools/sss_useradd.c:50 src/tools/sss_usermod.c:50 -msgid "The comment string" -msgstr "" - -#: src/tools/sss_useradd.c:51 src/tools/sss_usermod.c:51 -msgid "Home directory" -msgstr "" - -#: src/tools/sss_useradd.c:52 src/tools/sss_usermod.c:52 -msgid "Login shell" -msgstr "" - -#: src/tools/sss_useradd.c:53 -msgid "Groups" -msgstr "" - -#: src/tools/sss_useradd.c:54 -msgid "Create user's directory if it does not exist" -msgstr "" - -#: src/tools/sss_useradd.c:55 -msgid "Never create user's directory, overrides config" -msgstr "" - -#: src/tools/sss_useradd.c:56 -msgid "Specify an alternative skeleton directory" -msgstr "" - -#: src/tools/sss_useradd.c:57 src/tools/sss_usermod.c:57 -msgid "The SELinux user for user's login" -msgstr "" - -#: src/tools/sss_useradd.c:84 src/tools/sss_groupmod.c:76 -#: src/tools/sss_usermod.c:85 -msgid "Specify group to add to\n" -msgstr "" - -#: src/tools/sss_useradd.c:108 -msgid "Specify user to add\n" -msgstr "" - -#: src/tools/sss_useradd.c:117 src/tools/sss_groupadd.c:82 -#: src/tools/sss_groupdel.c:77 src/tools/sss_groupmod.c:109 -#: src/tools/sss_groupshow.c:659 src/tools/sss_userdel.c:193 -#: src/tools/sss_usermod.c:126 -msgid "Error initializing the tools - no local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:119 src/tools/sss_groupadd.c:84 -#: src/tools/sss_groupdel.c:79 src/tools/sss_groupmod.c:111 -#: src/tools/sss_groupshow.c:661 src/tools/sss_userdel.c:195 -#: src/tools/sss_usermod.c:128 -msgid "Error initializing the tools\n" -msgstr "" - -#: src/tools/sss_useradd.c:128 src/tools/sss_groupadd.c:93 -#: src/tools/sss_groupdel.c:88 src/tools/sss_groupmod.c:119 -#: src/tools/sss_groupshow.c:670 src/tools/sss_userdel.c:204 -#: src/tools/sss_usermod.c:137 -msgid "Invalid domain specified in FQDN\n" -msgstr "" - -#: src/tools/sss_useradd.c:137 src/tools/sss_groupmod.c:139 -#: src/tools/sss_groupmod.c:166 src/tools/sss_usermod.c:160 -#: src/tools/sss_usermod.c:187 -msgid "Internal error while parsing parameters\n" -msgstr "" - -#: src/tools/sss_useradd.c:145 src/tools/sss_usermod.c:168 -#: src/tools/sss_usermod.c:195 -msgid "Groups must be in the same domain as user\n" -msgstr "" - -#: src/tools/sss_useradd.c:153 -#, c-format -msgid "Cannot find group %s in local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:168 src/tools/sss_userdel.c:214 -msgid "Cannot set default values\n" -msgstr "" - -#: src/tools/sss_useradd.c:175 src/tools/sss_usermod.c:151 -msgid "The selected UID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_useradd.c:202 src/tools/sss_usermod.c:236 -msgid "Cannot set SELinux login context\n" -msgstr "" - -#: src/tools/sss_useradd.c:217 -msgid "Cannot get info about the user\n" -msgstr "" - -#: src/tools/sss_useradd.c:229 -msgid "User's home directory already exists, not copying data from skeldir\n" -msgstr "" - -#: src/tools/sss_useradd.c:232 -#, c-format -msgid "Cannot create user's home directory: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:243 -#, c-format -msgid "Cannot create user's mail spool: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:255 -msgid "Could not allocate ID for the user - domain full?\n" -msgstr "" - -#: src/tools/sss_useradd.c:259 -msgid "A user or group with the same name or ID already exists\n" -msgstr "" - -#: src/tools/sss_useradd.c:265 -msgid "Transaction error. Could not add user.\n" -msgstr "" - -#: src/tools/sss_groupadd.c:43 src/tools/sss_groupmod.c:48 -msgid "The GID of the group" -msgstr "" - -#: src/tools/sss_groupadd.c:73 -msgid "Specify group to add\n" -msgstr "" - -#: src/tools/sss_groupadd.c:102 src/tools/sss_groupmod.c:190 -msgid "The selected GID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_groupadd.c:127 -msgid "Could not allocate ID for the group - domain full?\n" -msgstr "" - -#: src/tools/sss_groupadd.c:131 -msgid "A group with the same name or GID already exists\n" -msgstr "" - -#: src/tools/sss_groupadd.c:136 -msgid "Transaction error. Could not add group.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:68 -msgid "Specify group to delete\n" -msgstr "" - -#: src/tools/sss_groupdel.c:101 -#, c-format -msgid "Group %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_groupdel.c:115 -msgid "" -"No such group in local domain. Removing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:120 -msgid "Internal error. Could not remove group.\n" -msgstr "" - -#: src/tools/sss_groupmod.c:44 -msgid "Groups to add this group to" -msgstr "" - -#: src/tools/sss_groupmod.c:46 -msgid "Groups to remove this group from" -msgstr "" - -#: src/tools/sss_groupmod.c:84 src/tools/sss_usermod.c:93 -msgid "Specify group to remove from\n" -msgstr "" - -#: src/tools/sss_groupmod.c:98 -msgid "Specify group to modify\n" -msgstr "" - -#: src/tools/sss_groupmod.c:126 -msgid "" -"Cannot find group in local domain, modifying groups is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_groupmod.c:147 src/tools/sss_groupmod.c:174 -msgid "Member groups must be in the same domain as parent group\n" -msgstr "" - -#: src/tools/sss_groupmod.c:155 src/tools/sss_groupmod.c:182 -#: src/tools/sss_usermod.c:176 src/tools/sss_usermod.c:203 -#, c-format -msgid "" -"Cannot find group %s in local domain, only groups in local domain are " -"allowed\n" -msgstr "" - -#: src/tools/sss_groupmod.c:216 -msgid "Could not modify group - check if member group names are correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:220 -msgid "Could not modify group - check if groupname is correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:224 -msgid "Transaction error. Could not modify group.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:562 -#, c-format -msgid "%s%sGroup: %s\n" -msgstr "" - -#: src/tools/sss_groupshow.c:563 -msgid "Magic Private " -msgstr "" - -#: src/tools/sss_groupshow.c:565 -#, c-format -msgid "%sGID number: %d\n" -msgstr "" - -#: src/tools/sss_groupshow.c:567 -#, c-format -msgid "%sMember users: " -msgstr "" - -#: src/tools/sss_groupshow.c:574 -#, c-format -msgid "" -"\n" -"%sIs a member of: " -msgstr "" - -#: src/tools/sss_groupshow.c:581 -#, c-format -msgid "" -"\n" -"%sMember groups: " -msgstr "" - -#: src/tools/sss_groupshow.c:617 -msgid "Print indirect group members recursively" -msgstr "" - -#: src/tools/sss_groupshow.c:650 -msgid "Specify group to show\n" -msgstr "" - -#: src/tools/sss_groupshow.c:689 -msgid "" -"No such group in local domain. Printing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:694 -msgid "Internal error. Could not print group.\n" -msgstr "" - -#: src/tools/sss_userdel.c:133 -msgid "Remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:135 -msgid "Do not remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:137 -msgid "Force removal of files not owned by the user" -msgstr "" - -#: src/tools/sss_userdel.c:139 -msgid "Kill users' processes before removing him" -msgstr "" - -#: src/tools/sss_userdel.c:184 -msgid "Specify user to delete\n" -msgstr "" - -#: src/tools/sss_userdel.c:230 -#, c-format -msgid "User %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_userdel.c:255 -msgid "Cannot reset SELinux login context\n" -msgstr "" - -#: src/tools/sss_userdel.c:267 -#, c-format -msgid "WARNING: The user (uid %lu) was still logged in when deleted.\n" -msgstr "" - -#: src/tools/sss_userdel.c:272 -msgid "Cannot determine if the user was logged in on this platform" -msgstr "" - -#: src/tools/sss_userdel.c:277 -msgid "Error while checking if the user was logged in\n" -msgstr "" - -#: src/tools/sss_userdel.c:284 -#, c-format -msgid "The post-delete command failed: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:296 -msgid "Not removing home dir - not owned by user\n" -msgstr "" - -#: src/tools/sss_userdel.c:298 -#, c-format -msgid "Cannot remove homedir: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:309 -msgid "" -"No such user in local domain. Removing users only allowed in local domain.\n" -msgstr "" - -#: src/tools/sss_userdel.c:314 -msgid "Internal error. Could not remove user.\n" -msgstr "" - -#: src/tools/sss_usermod.c:49 -msgid "The GID of the user" -msgstr "" - -#: src/tools/sss_usermod.c:53 -msgid "Groups to add this user to" -msgstr "" - -#: src/tools/sss_usermod.c:54 -msgid "Groups to remove this user from" -msgstr "" - -#: src/tools/sss_usermod.c:55 -msgid "Lock the account" -msgstr "" - -#: src/tools/sss_usermod.c:56 -msgid "Unlock the account" -msgstr "" - -#: src/tools/sss_usermod.c:117 -msgid "Specify user to modify\n" -msgstr "" - -#: src/tools/sss_usermod.c:144 -msgid "" -"Cannot find user in local domain, modifying users is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_usermod.c:246 -msgid "Could not modify user - check if group names are correct\n" -msgstr "" - -#: src/tools/sss_usermod.c:250 -msgid "Could not modify user - user already member of groups?\n" -msgstr "" - -#: src/tools/sss_usermod.c:254 -msgid "Transaction error. Could not modify user.\n" -msgstr "" - -#: src/tools/sss_cache.c:132 -#, c-format -msgid "Couldn't invalidate %s" -msgstr "" - -#: src/tools/sss_cache.c:138 -#, c-format -msgid "Couldn't invalidate %s %s" -msgstr "" - -#: src/tools/sss_cache.c:262 -msgid "Invalidate particular user" -msgstr "" - -#: src/tools/sss_cache.c:264 -msgid "Invalidate all users" -msgstr "" - -#: src/tools/sss_cache.c:266 -msgid "Invalidate particular group" -msgstr "" - -#: src/tools/sss_cache.c:268 -msgid "Invalidate all groups" -msgstr "" - -#: src/tools/sss_cache.c:270 -msgid "Invalidate particular netgroup" -msgstr "" - -#: src/tools/sss_cache.c:272 -msgid "Invalidate all netgroups" -msgstr "" - -#: src/tools/sss_cache.c:274 -msgid "Only invalidate entries from a particular domain" -msgstr "" - -#: src/tools/sss_debuglevel.c:43 -msgid "\n" -msgstr "" - -#: src/tools/sss_debuglevel.c:102 -msgid "Specify debug level you want to set\n" -msgstr "" - -#: src/tools/tools_util.c:286 -msgid "Out of memory\n" -msgstr "" - -#: src/tools/tools_util.h:40 -#, c-format -msgid "%s must be run as root\n" -msgstr "" - -#: src/util/util.h:91 -msgid "Send the debug output to files instead of stderr" -msgstr "" diff --git a/po/en_GB.po b/po/en_GB.po deleted file mode 100644 index 5d52db556..000000000 --- a/po/en_GB.po +++ /dev/null @@ -1,1463 +0,0 @@ -# SOME DESCRIPTIVE TITLE. -# Copyright (C) YEAR Red Hat, Inc. -# This file is distributed under the same license as the PACKAGE package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@lists.fedorahosted.org\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2012-02-14 12:55+0000\n" -"Last-Translator: sgallagh \n" -"Language-Team: English (United Kingdom) (http://www.transifex.net/projects/p/" -"fedora/language/en_GB/)\n" -"Language: en_GB\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=2; plural=(n != 1)\n" - -#: src/config/SSSDConfig.py:39 -msgid "Set the verbosity of the debug logging" -msgstr "" - -#: src/config/SSSDConfig.py:40 -msgid "Include timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:41 -msgid "Include microseconds in timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:42 -msgid "Write debug messages to logfiles" -msgstr "" - -#: src/config/SSSDConfig.py:43 -msgid "Ping timeout before restarting service" -msgstr "" - -#: src/config/SSSDConfig.py:44 -msgid "Command to start service" -msgstr "" - -#: src/config/SSSDConfig.py:45 -msgid "Number of times to attempt connection to Data Providers" -msgstr "" - -#: src/config/SSSDConfig.py:48 -msgid "SSSD Services to start" -msgstr "" - -#: src/config/SSSDConfig.py:49 -msgid "SSSD Domains to start" -msgstr "" - -#: src/config/SSSDConfig.py:50 -msgid "Timeout for messages sent over the SBUS" -msgstr "" - -#: src/config/SSSDConfig.py:51 -msgid "Regex to parse username and domain" -msgstr "" - -#: src/config/SSSDConfig.py:52 -msgid "Printf-compatible format for displaying fully-qualified names" -msgstr "" - -#: src/config/SSSDConfig.py:53 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#: src/config/SSSDConfig.py:56 -msgid "Enumeration cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:57 -msgid "Entry cache background update timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:58 src/config/SSSDConfig.py:81 -msgid "Negative cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:59 -msgid "Users that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:60 -msgid "Groups that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:61 -msgid "Should filtered users appear in groups" -msgstr "" - -#: src/config/SSSDConfig.py:62 -msgid "The value of the password field the NSS provider should return" -msgstr "" - -#: src/config/SSSDConfig.py:63 -msgid "Override homedir value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:64 -msgid "The list of shells users are allowed to log in with" -msgstr "" - -#: src/config/SSSDConfig.py:65 -msgid "" -"The list of shells that will be vetoed, and replaced with the fallback shell" -msgstr "" - -#: src/config/SSSDConfig.py:66 -msgid "" -"If a shell stored in central directory is allowed but not available, use " -"this fallback" -msgstr "" - -#: src/config/SSSDConfig.py:69 -msgid "How long to allow cached logins between online logins (days)" -msgstr "" - -#: src/config/SSSDConfig.py:70 -msgid "How many failed logins attempts are allowed when offline" -msgstr "" - -#: src/config/SSSDConfig.py:71 -msgid "" -"How long (minutes) to deny login after offline_failed_login_attempts has " -"been reached" -msgstr "" - -#: src/config/SSSDConfig.py:72 -msgid "What kind of messages are displayed to the user during authentication" -msgstr "" - -#: src/config/SSSDConfig.py:73 -msgid "How many seconds to keep identity information cached for PAM requests" -msgstr "" - -#: src/config/SSSDConfig.py:74 -msgid "How many days before password expiration a warning should be displayed" -msgstr "" - -#: src/config/SSSDConfig.py:77 -msgid "Whether to evaluate the time-based attributes in sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:78 -msgid "" -"How many seconds to keep sudorules cached before asking the provider again" -msgstr "" - -#: src/config/SSSDConfig.py:84 -msgid "Identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:85 -msgid "Authentication provider" -msgstr "" - -#: src/config/SSSDConfig.py:86 -msgid "Access control provider" -msgstr "" - -#: src/config/SSSDConfig.py:87 -msgid "Password change provider" -msgstr "" - -#: src/config/SSSDConfig.py:88 -msgid "SUDO provider" -msgstr "" - -#: src/config/SSSDConfig.py:89 -msgid "Autofs provider" -msgstr "" - -#: src/config/SSSDConfig.py:90 -msgid "Session-loading provider" -msgstr "" - -#: src/config/SSSDConfig.py:91 -msgid "Host identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:94 -msgid "Minimum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:95 -msgid "Maximum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:96 -msgid "Enable enumerating all users/groups" -msgstr "" - -#: src/config/SSSDConfig.py:97 -msgid "Cache credentials for offline login" -msgstr "" - -#: src/config/SSSDConfig.py:98 -msgid "Store password hashes" -msgstr "" - -#: src/config/SSSDConfig.py:99 -msgid "Display users/groups in fully-qualified form" -msgstr "" - -#: src/config/SSSDConfig.py:100 src/config/SSSDConfig.py:107 -#: src/config/SSSDConfig.py:108 src/config/SSSDConfig.py:109 -#: src/config/SSSDConfig.py:110 src/config/SSSDConfig.py:111 -msgid "Entry cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:101 -msgid "" -"Restrict or prefer a specific address family when performing DNS lookups" -msgstr "" - -#: src/config/SSSDConfig.py:102 -msgid "How long to keep cached entries after last successful login (days)" -msgstr "" - -#: src/config/SSSDConfig.py:103 -msgid "How long to wait for replies from DNS when resolving servers (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:104 -msgid "The domain part of service discovery DNS query" -msgstr "" - -#: src/config/SSSDConfig.py:105 -msgid "Override GID value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:106 -msgid "Treat usernames as case sensitive" -msgstr "" - -#: src/config/SSSDConfig.py:114 -msgid "IPA domain" -msgstr "" - -#: src/config/SSSDConfig.py:115 -msgid "IPA server address" -msgstr "" - -#: src/config/SSSDConfig.py:116 -msgid "IPA client hostname" -msgstr "" - -#: src/config/SSSDConfig.py:117 -msgid "Whether to automatically update the client's DNS entry in FreeIPA" -msgstr "" - -#: src/config/SSSDConfig.py:118 -msgid "The interface whose IP should be used for dynamic DNS updates" -msgstr "" - -#: src/config/SSSDConfig.py:119 -msgid "Search base for HBAC related objects" -msgstr "" - -#: src/config/SSSDConfig.py:120 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server" -msgstr "" - -#: src/config/SSSDConfig.py:121 -msgid "If DENY rules are present, either DENY_ALL or IGNORE" -msgstr "" - -#: src/config/SSSDConfig.py:122 -msgid "If set to false, host argument given by PAM will be ignored" -msgstr "" - -#: src/config/SSSDConfig.py:123 -msgid "The automounter location this IPA client is using" -msgstr "" - -#: src/config/SSSDConfig.py:126 src/config/SSSDConfig.py:127 -msgid "Kerberos server address" -msgstr "" - -#: src/config/SSSDConfig.py:128 -msgid "Kerberos realm" -msgstr "" - -#: src/config/SSSDConfig.py:129 -msgid "Authentication timeout" -msgstr "" - -#: src/config/SSSDConfig.py:132 -msgid "Directory to store credential caches" -msgstr "" - -#: src/config/SSSDConfig.py:133 -msgid "Location of the user's credential cache" -msgstr "" - -#: src/config/SSSDConfig.py:134 -msgid "Location of the keytab to validate credentials" -msgstr "" - -#: src/config/SSSDConfig.py:135 -msgid "Enable credential validation" -msgstr "" - -#: src/config/SSSDConfig.py:136 -msgid "Store password if offline for later online authentication" -msgstr "" - -#: src/config/SSSDConfig.py:137 -msgid "Renewable lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:138 -msgid "Lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:139 -msgid "Time between two checks for renewal" -msgstr "" - -#: src/config/SSSDConfig.py:140 -msgid "Enables FAST" -msgstr "" - -#: src/config/SSSDConfig.py:141 -msgid "Selects the principal to use for FAST" -msgstr "" - -#: src/config/SSSDConfig.py:142 -msgid "Enables principal canonicalization" -msgstr "" - -#: src/config/SSSDConfig.py:145 -msgid "Server where the change password service is running if not on the KDC" -msgstr "" - -#: src/config/SSSDConfig.py:148 -msgid "ldap_uri, The URI of the LDAP server" -msgstr "" - -#: src/config/SSSDConfig.py:149 -msgid "The default base DN" -msgstr "" - -#: src/config/SSSDConfig.py:150 -msgid "The Schema Type in use on the LDAP server, rfc2307" -msgstr "" - -#: src/config/SSSDConfig.py:151 -msgid "The default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:152 -msgid "The type of the authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:153 -msgid "The authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:154 -msgid "Length of time to attempt connection" -msgstr "" - -#: src/config/SSSDConfig.py:155 -msgid "Length of time to attempt synchronous LDAP operations" -msgstr "" - -#: src/config/SSSDConfig.py:156 -msgid "Length of time between attempts to reconnect while offline" -msgstr "" - -#: src/config/SSSDConfig.py:157 -msgid "Use only the upper case for realm names" -msgstr "" - -#: src/config/SSSDConfig.py:158 -msgid "File that contains CA certificates" -msgstr "" - -#: src/config/SSSDConfig.py:159 -msgid "Path to CA certificate directory" -msgstr "" - -#: src/config/SSSDConfig.py:160 -msgid "File that contains the client certificate" -msgstr "" - -#: src/config/SSSDConfig.py:161 -msgid "File that contains the client key" -msgstr "" - -#: src/config/SSSDConfig.py:162 -msgid "List of possible ciphers suites" -msgstr "" - -#: src/config/SSSDConfig.py:163 -msgid "Require TLS certificate verification" -msgstr "" - -#: src/config/SSSDConfig.py:164 -msgid "Specify the sasl mechanism to use" -msgstr "" - -#: src/config/SSSDConfig.py:165 -msgid "Specify the sasl authorization id to use" -msgstr "" - -#: src/config/SSSDConfig.py:166 -msgid "Specify the sasl authorization realm to use" -msgstr "" - -#: src/config/SSSDConfig.py:167 -msgid "Specify the minimal SSF for LDAP sasl authorization" -msgstr "" - -#: src/config/SSSDConfig.py:168 -msgid "Kerberos service keytab" -msgstr "" - -#: src/config/SSSDConfig.py:169 -msgid "Use Kerberos auth for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:170 -msgid "Follow LDAP referrals" -msgstr "" - -#: src/config/SSSDConfig.py:171 -msgid "Lifetime of TGT for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:172 -msgid "How to dereference aliases" -msgstr "" - -#: src/config/SSSDConfig.py:173 -msgid "Service name for DNS service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:174 -msgid "The number of records to retrieve in a single LDAP query" -msgstr "" - -#: src/config/SSSDConfig.py:175 -msgid "The number of members that must be missing to trigger a full deref" -msgstr "" - -#: src/config/SSSDConfig.py:176 -msgid "" -"Whether the LDAP library should perform a reverse lookup to canonicalize the " -"host name during a SASL bind" -msgstr "" - -#: src/config/SSSDConfig.py:178 -msgid "entryUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:179 -msgid "lastUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:181 -msgid "How long to retain a connection to the LDAP server before disconnecting" -msgstr "" - -#: src/config/SSSDConfig.py:183 -msgid "Disable the LDAP paging control" -msgstr "" - -#: src/config/SSSDConfig.py:186 -msgid "Length of time to wait for a search request" -msgstr "" - -#: src/config/SSSDConfig.py:187 -msgid "Length of time to wait for a enumeration request" -msgstr "" - -#: src/config/SSSDConfig.py:188 -msgid "Length of time between enumeration updates" -msgstr "" - -#: src/config/SSSDConfig.py:189 -msgid "Length of time between cache cleanups" -msgstr "" - -#: src/config/SSSDConfig.py:190 -msgid "Require TLS for ID lookups" -msgstr "" - -#: src/config/SSSDConfig.py:191 -msgid "Base DN for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:192 -msgid "Scope of user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:193 -msgid "Filter for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:194 -msgid "Objectclass for users" -msgstr "" - -#: src/config/SSSDConfig.py:195 -msgid "Username attribute" -msgstr "" - -#: src/config/SSSDConfig.py:197 -msgid "UID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:198 -msgid "Primary GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:199 -msgid "GECOS attribute" -msgstr "" - -#: src/config/SSSDConfig.py:200 -msgid "Home directory attribute" -msgstr "" - -#: src/config/SSSDConfig.py:201 -msgid "Shell attribute" -msgstr "" - -#: src/config/SSSDConfig.py:202 -msgid "UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:203 -msgid "User principal attribute (for Kerberos)" -msgstr "" - -#: src/config/SSSDConfig.py:204 -msgid "Full Name" -msgstr "" - -#: src/config/SSSDConfig.py:205 -msgid "memberOf attribute" -msgstr "" - -#: src/config/SSSDConfig.py:206 -msgid "Modification time attribute" -msgstr "" - -#: src/config/SSSDConfig.py:208 -msgid "shadowLastChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:209 -msgid "shadowMin attribute" -msgstr "" - -#: src/config/SSSDConfig.py:210 -msgid "shadowMax attribute" -msgstr "" - -#: src/config/SSSDConfig.py:211 -msgid "shadowWarning attribute" -msgstr "" - -#: src/config/SSSDConfig.py:212 -msgid "shadowInactive attribute" -msgstr "" - -#: src/config/SSSDConfig.py:213 -msgid "shadowExpire attribute" -msgstr "" - -#: src/config/SSSDConfig.py:214 -msgid "shadowFlag attribute" -msgstr "" - -#: src/config/SSSDConfig.py:215 -msgid "Attribute listing authorized PAM services" -msgstr "" - -#: src/config/SSSDConfig.py:216 -msgid "Attribute listing authorized server hosts" -msgstr "" - -#: src/config/SSSDConfig.py:217 -msgid "krbLastPwdChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:218 -msgid "krbPasswordExpiration attribute" -msgstr "" - -#: src/config/SSSDConfig.py:219 -msgid "Attribute indicating that server side password policies are active" -msgstr "" - -#: src/config/SSSDConfig.py:220 -msgid "accountExpires attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:221 -msgid "userAccountControl attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:222 -msgid "nsAccountLock attribute" -msgstr "" - -#: src/config/SSSDConfig.py:223 -msgid "loginDisabled attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:224 -msgid "loginExpirationTime attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:225 -msgid "loginAllowedTimeMap attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:226 -msgid "SSH public key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:228 -msgid "Base DN for group lookups" -msgstr "" - -#: src/config/SSSDConfig.py:231 -msgid "Objectclass for groups" -msgstr "" - -#: src/config/SSSDConfig.py:232 -msgid "Group name" -msgstr "" - -#: src/config/SSSDConfig.py:233 -msgid "Group password" -msgstr "" - -#: src/config/SSSDConfig.py:234 -msgid "GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:235 -msgid "Group member attribute" -msgstr "" - -#: src/config/SSSDConfig.py:236 -msgid "Group UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:237 -msgid "Modification time attribute for groups" -msgstr "" - -#: src/config/SSSDConfig.py:239 -msgid "Maximum nesting level SSSd will follow" -msgstr "" - -#: src/config/SSSDConfig.py:241 -msgid "Base DN for netgroup lookups" -msgstr "" - -#: src/config/SSSDConfig.py:242 -msgid "Objectclass for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:243 -msgid "Netgroup name" -msgstr "" - -#: src/config/SSSDConfig.py:244 -msgid "Netgroups members attribute" -msgstr "" - -#: src/config/SSSDConfig.py:245 -msgid "Netgroup triple attribute" -msgstr "" - -#: src/config/SSSDConfig.py:246 -msgid "Netgroup UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:247 -msgid "Modification time attribute for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:249 -msgid "Base DN for service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:250 -msgid "Objectclass for services" -msgstr "" - -#: src/config/SSSDConfig.py:251 -msgid "Service name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:252 -msgid "Service port attribute" -msgstr "" - -#: src/config/SSSDConfig.py:253 -msgid "Service protocol attribute" -msgstr "" - -#: src/config/SSSDConfig.py:257 -msgid "Policy to evaluate the password expiration" -msgstr "" - -#: src/config/SSSDConfig.py:260 -msgid "LDAP filter to determine access privileges" -msgstr "" - -#: src/config/SSSDConfig.py:261 -msgid "Which attributes shall be used to evaluate if an account is expired" -msgstr "" - -#: src/config/SSSDConfig.py:262 -msgid "Which rules should be used to evaluate access control" -msgstr "" - -#: src/config/SSSDConfig.py:265 -msgid "URI of an LDAP server where password changes are allowed" -msgstr "" - -#: src/config/SSSDConfig.py:266 -msgid "DNS service name for LDAP password change server" -msgstr "" - -#: src/config/SSSDConfig.py:269 -msgid "Base DN for sudo rules lookups" -msgstr "" - -#: src/config/SSSDConfig.py:270 -msgid "Enable periodical update of all sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:271 -msgid "Length of time between rules updates" -msgstr "" - -#: src/config/SSSDConfig.py:272 -msgid "Object class for sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:273 -msgid "Sudo rule name" -msgstr "" - -#: src/config/SSSDConfig.py:274 -msgid "Sudo rule command attribute" -msgstr "" - -#: src/config/SSSDConfig.py:275 -msgid "Sudo rule host attribute" -msgstr "" - -#: src/config/SSSDConfig.py:276 -msgid "Sudo rule user attribute" -msgstr "" - -#: src/config/SSSDConfig.py:277 -msgid "Sudo rule option attribute" -msgstr "" - -#: src/config/SSSDConfig.py:278 -msgid "Sudo rule runasuser attribute" -msgstr "" - -#: src/config/SSSDConfig.py:279 -msgid "Sudo rule runasgroup attribute" -msgstr "" - -#: src/config/SSSDConfig.py:280 -msgid "Sudo rule notbefore attribute" -msgstr "" - -#: src/config/SSSDConfig.py:281 -msgid "Sudo rule notafter attribute" -msgstr "" - -#: src/config/SSSDConfig.py:282 -msgid "Sudo rule order attribute" -msgstr "" - -#: src/config/SSSDConfig.py:285 -msgid "Object class for automounter maps" -msgstr "" - -#: src/config/SSSDConfig.py:286 -msgid "Automounter map name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:287 -msgid "Object class for automounter map entries" -msgstr "" - -#: src/config/SSSDConfig.py:288 -msgid "Automounter map entry key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:289 -msgid "Automounter map entry value attribute" -msgstr "" - -#: src/config/SSSDConfig.py:290 -msgid "Base DN for automounter map lookups" -msgstr "" - -#: src/config/SSSDConfig.py:293 -msgid "Comma separated list of allowed users" -msgstr "" - -#: src/config/SSSDConfig.py:294 -msgid "Comma separated list of prohibited users" -msgstr "" - -#: src/config/SSSDConfig.py:297 -msgid "Default shell, /bin/bash" -msgstr "" - -#: src/config/SSSDConfig.py:298 -msgid "Base for home directories" -msgstr "" - -#: src/config/SSSDConfig.py:301 -msgid "The name of the NSS library to use" -msgstr "" - -#: src/config/SSSDConfig.py:304 -msgid "PAM stack to use" -msgstr "" - -#: src/monitor/monitor.c:2379 -msgid "Become a daemon (default)" -msgstr "" - -#: src/monitor/monitor.c:2381 -msgid "Run interactive (not a daemon)" -msgstr "" - -#: src/monitor/monitor.c:2383 src/tools/sss_debuglevel.c:77 -msgid "Specify a non-default config file" -msgstr "" - -#: src/monitor/monitor.c:2385 -msgid "Print version number and exit" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1575 src/providers/ldap/ldap_child.c:381 -#: src/util/util.h:89 -msgid "Debug level" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1577 src/providers/ldap/ldap_child.c:383 -#: src/util/util.h:93 -msgid "Add debug timestamps" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1579 src/providers/ldap/ldap_child.c:385 -#: src/util/util.h:95 -msgid "Show timestamps with microseconds" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1581 src/providers/ldap/ldap_child.c:387 -msgid "An open file descriptor for the debug logs" -msgstr "" - -#: src/providers/data_provider_be.c:1938 -msgid "Domain of the information provider (mandatory)" -msgstr "" - -#: src/sss_client/common.c:878 -msgid "Privileged socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:881 -msgid "Public socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:884 -msgid "Unexpected format of the server credential message." -msgstr "" - -#: src/sss_client/common.c:887 -msgid "SSSD is not run by root." -msgstr "" - -#: src/sss_client/common.c:892 -msgid "An error occurred, but no description can be found." -msgstr "" - -#: src/sss_client/common.c:898 -msgid "Unexpected error while looking for an error description" -msgstr "" - -#: src/sss_client/pam_sss.c:378 -msgid "Passwords do not match" -msgstr "" - -#: src/sss_client/pam_sss.c:571 -msgid "Password reset by root is not supported." -msgstr "" - -#: src/sss_client/pam_sss.c:612 -msgid "Authenticated with cached credentials" -msgstr "" - -#: src/sss_client/pam_sss.c:613 -msgid ", your cached password will expire at: " -msgstr "" - -#: src/sss_client/pam_sss.c:643 -#, c-format -msgid "Your password has expired. You have %d grace login(s) remaining." -msgstr "" - -#: src/sss_client/pam_sss.c:689 -#, c-format -msgid "Your password will expire in %d %s." -msgstr "" - -#: src/sss_client/pam_sss.c:738 -msgid "Authentication is denied until: " -msgstr "" - -#: src/sss_client/pam_sss.c:759 -msgid "System is offline, password change not possible" -msgstr "" - -#: src/sss_client/pam_sss.c:789 src/sss_client/pam_sss.c:802 -msgid "Password change failed. " -msgstr "" - -#: src/sss_client/pam_sss.c:792 src/sss_client/pam_sss.c:803 -msgid "Server message: " -msgstr "" - -#: src/sss_client/pam_sss.c:1286 -msgid "New Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1287 -msgid "Reenter new Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1373 -msgid "Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1405 -msgid "Current Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1552 -msgid "Password expired. Change your password now." -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:40 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:211 src/tools/sss_useradd.c:48 -#: src/tools/sss_groupadd.c:41 src/tools/sss_groupdel.c:43 -#: src/tools/sss_groupmod.c:42 src/tools/sss_groupshow.c:615 -#: src/tools/sss_userdel.c:131 src/tools/sss_usermod.c:47 -#: src/tools/sss_cache.c:260 src/tools/sss_debuglevel.c:75 -msgid "The debug level to run with" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:42 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:215 -msgid "The SSSD domain to use" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:58 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:229 src/tools/sss_useradd.c:71 -#: src/tools/sss_groupadd.c:56 src/tools/sss_groupdel.c:52 -#: src/tools/sss_groupmod.c:63 src/tools/sss_groupshow.c:626 -#: src/tools/sss_userdel.c:148 src/tools/sss_usermod.c:72 -#: src/tools/sss_cache.c:281 -msgid "Error setting the locale\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:65 -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:91 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:236 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:269 -msgid "Not enough memory\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:84 -msgid "User not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:104 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:282 -msgid "Error looking up public keys\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:94 -msgid "Failed to open a socket\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:104 -msgid "Failed to connect to the server\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:195 -msgid "Failed to execute proxy command\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:213 -msgid "The port to use to connect to the host" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:255 -msgid "Host not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:261 -msgid "The path to the proxy command must be absolute\n" -msgstr "" - -#: src/tools/sss_useradd.c:49 src/tools/sss_usermod.c:48 -msgid "The UID of the user" -msgstr "" - -#: src/tools/sss_useradd.c:50 src/tools/sss_usermod.c:50 -msgid "The comment string" -msgstr "" - -#: src/tools/sss_useradd.c:51 src/tools/sss_usermod.c:51 -msgid "Home directory" -msgstr "" - -#: src/tools/sss_useradd.c:52 src/tools/sss_usermod.c:52 -msgid "Login shell" -msgstr "" - -#: src/tools/sss_useradd.c:53 -msgid "Groups" -msgstr "" - -#: src/tools/sss_useradd.c:54 -msgid "Create user's directory if it does not exist" -msgstr "" - -#: src/tools/sss_useradd.c:55 -msgid "Never create user's directory, overrides config" -msgstr "" - -#: src/tools/sss_useradd.c:56 -msgid "Specify an alternative skeleton directory" -msgstr "" - -#: src/tools/sss_useradd.c:57 src/tools/sss_usermod.c:57 -msgid "The SELinux user for user's login" -msgstr "" - -#: src/tools/sss_useradd.c:84 src/tools/sss_groupmod.c:76 -#: src/tools/sss_usermod.c:85 -msgid "Specify group to add to\n" -msgstr "" - -#: src/tools/sss_useradd.c:108 -msgid "Specify user to add\n" -msgstr "" - -#: src/tools/sss_useradd.c:117 src/tools/sss_groupadd.c:82 -#: src/tools/sss_groupdel.c:77 src/tools/sss_groupmod.c:109 -#: src/tools/sss_groupshow.c:659 src/tools/sss_userdel.c:193 -#: src/tools/sss_usermod.c:126 -msgid "Error initializing the tools - no local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:119 src/tools/sss_groupadd.c:84 -#: src/tools/sss_groupdel.c:79 src/tools/sss_groupmod.c:111 -#: src/tools/sss_groupshow.c:661 src/tools/sss_userdel.c:195 -#: src/tools/sss_usermod.c:128 -msgid "Error initializing the tools\n" -msgstr "" - -#: src/tools/sss_useradd.c:128 src/tools/sss_groupadd.c:93 -#: src/tools/sss_groupdel.c:88 src/tools/sss_groupmod.c:119 -#: src/tools/sss_groupshow.c:670 src/tools/sss_userdel.c:204 -#: src/tools/sss_usermod.c:137 -msgid "Invalid domain specified in FQDN\n" -msgstr "" - -#: src/tools/sss_useradd.c:137 src/tools/sss_groupmod.c:139 -#: src/tools/sss_groupmod.c:166 src/tools/sss_usermod.c:160 -#: src/tools/sss_usermod.c:187 -msgid "Internal error while parsing parameters\n" -msgstr "" - -#: src/tools/sss_useradd.c:145 src/tools/sss_usermod.c:168 -#: src/tools/sss_usermod.c:195 -msgid "Groups must be in the same domain as user\n" -msgstr "" - -#: src/tools/sss_useradd.c:153 -#, c-format -msgid "Cannot find group %s in local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:168 src/tools/sss_userdel.c:214 -msgid "Cannot set default values\n" -msgstr "" - -#: src/tools/sss_useradd.c:175 src/tools/sss_usermod.c:151 -msgid "The selected UID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_useradd.c:202 src/tools/sss_usermod.c:236 -msgid "Cannot set SELinux login context\n" -msgstr "" - -#: src/tools/sss_useradd.c:217 -msgid "Cannot get info about the user\n" -msgstr "" - -#: src/tools/sss_useradd.c:229 -msgid "User's home directory already exists, not copying data from skeldir\n" -msgstr "" - -#: src/tools/sss_useradd.c:232 -#, c-format -msgid "Cannot create user's home directory: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:243 -#, c-format -msgid "Cannot create user's mail spool: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:255 -msgid "Could not allocate ID for the user - domain full?\n" -msgstr "" - -#: src/tools/sss_useradd.c:259 -msgid "A user or group with the same name or ID already exists\n" -msgstr "" - -#: src/tools/sss_useradd.c:265 -msgid "Transaction error. Could not add user.\n" -msgstr "" - -#: src/tools/sss_groupadd.c:43 src/tools/sss_groupmod.c:48 -msgid "The GID of the group" -msgstr "" - -#: src/tools/sss_groupadd.c:73 -msgid "Specify group to add\n" -msgstr "" - -#: src/tools/sss_groupadd.c:102 src/tools/sss_groupmod.c:190 -msgid "The selected GID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_groupadd.c:127 -msgid "Could not allocate ID for the group - domain full?\n" -msgstr "" - -#: src/tools/sss_groupadd.c:131 -msgid "A group with the same name or GID already exists\n" -msgstr "" - -#: src/tools/sss_groupadd.c:136 -msgid "Transaction error. Could not add group.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:68 -msgid "Specify group to delete\n" -msgstr "" - -#: src/tools/sss_groupdel.c:101 -#, c-format -msgid "Group %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_groupdel.c:115 -msgid "" -"No such group in local domain. Removing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:120 -msgid "Internal error. Could not remove group.\n" -msgstr "" - -#: src/tools/sss_groupmod.c:44 -msgid "Groups to add this group to" -msgstr "" - -#: src/tools/sss_groupmod.c:46 -msgid "Groups to remove this group from" -msgstr "" - -#: src/tools/sss_groupmod.c:84 src/tools/sss_usermod.c:93 -msgid "Specify group to remove from\n" -msgstr "" - -#: src/tools/sss_groupmod.c:98 -msgid "Specify group to modify\n" -msgstr "" - -#: src/tools/sss_groupmod.c:126 -msgid "" -"Cannot find group in local domain, modifying groups is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_groupmod.c:147 src/tools/sss_groupmod.c:174 -msgid "Member groups must be in the same domain as parent group\n" -msgstr "" - -#: src/tools/sss_groupmod.c:155 src/tools/sss_groupmod.c:182 -#: src/tools/sss_usermod.c:176 src/tools/sss_usermod.c:203 -#, c-format -msgid "" -"Cannot find group %s in local domain, only groups in local domain are " -"allowed\n" -msgstr "" - -#: src/tools/sss_groupmod.c:216 -msgid "Could not modify group - check if member group names are correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:220 -msgid "Could not modify group - check if groupname is correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:224 -msgid "Transaction error. Could not modify group.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:562 -#, c-format -msgid "%s%sGroup: %s\n" -msgstr "" - -#: src/tools/sss_groupshow.c:563 -msgid "Magic Private " -msgstr "" - -#: src/tools/sss_groupshow.c:565 -#, c-format -msgid "%sGID number: %d\n" -msgstr "" - -#: src/tools/sss_groupshow.c:567 -#, c-format -msgid "%sMember users: " -msgstr "" - -#: src/tools/sss_groupshow.c:574 -#, c-format -msgid "" -"\n" -"%sIs a member of: " -msgstr "" - -#: src/tools/sss_groupshow.c:581 -#, c-format -msgid "" -"\n" -"%sMember groups: " -msgstr "" - -#: src/tools/sss_groupshow.c:617 -msgid "Print indirect group members recursively" -msgstr "" - -#: src/tools/sss_groupshow.c:650 -msgid "Specify group to show\n" -msgstr "" - -#: src/tools/sss_groupshow.c:689 -msgid "" -"No such group in local domain. Printing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:694 -msgid "Internal error. Could not print group.\n" -msgstr "" - -#: src/tools/sss_userdel.c:133 -msgid "Remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:135 -msgid "Do not remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:137 -msgid "Force removal of files not owned by the user" -msgstr "" - -#: src/tools/sss_userdel.c:139 -msgid "Kill users' processes before removing him" -msgstr "" - -#: src/tools/sss_userdel.c:184 -msgid "Specify user to delete\n" -msgstr "" - -#: src/tools/sss_userdel.c:230 -#, c-format -msgid "User %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_userdel.c:255 -msgid "Cannot reset SELinux login context\n" -msgstr "" - -#: src/tools/sss_userdel.c:267 -#, c-format -msgid "WARNING: The user (uid %lu) was still logged in when deleted.\n" -msgstr "" - -#: src/tools/sss_userdel.c:272 -msgid "Cannot determine if the user was logged in on this platform" -msgstr "" - -#: src/tools/sss_userdel.c:277 -msgid "Error while checking if the user was logged in\n" -msgstr "" - -#: src/tools/sss_userdel.c:284 -#, c-format -msgid "The post-delete command failed: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:296 -msgid "Not removing home dir - not owned by user\n" -msgstr "" - -#: src/tools/sss_userdel.c:298 -#, c-format -msgid "Cannot remove homedir: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:309 -msgid "" -"No such user in local domain. Removing users only allowed in local domain.\n" -msgstr "" - -#: src/tools/sss_userdel.c:314 -msgid "Internal error. Could not remove user.\n" -msgstr "" - -#: src/tools/sss_usermod.c:49 -msgid "The GID of the user" -msgstr "" - -#: src/tools/sss_usermod.c:53 -msgid "Groups to add this user to" -msgstr "" - -#: src/tools/sss_usermod.c:54 -msgid "Groups to remove this user from" -msgstr "" - -#: src/tools/sss_usermod.c:55 -msgid "Lock the account" -msgstr "" - -#: src/tools/sss_usermod.c:56 -msgid "Unlock the account" -msgstr "" - -#: src/tools/sss_usermod.c:117 -msgid "Specify user to modify\n" -msgstr "" - -#: src/tools/sss_usermod.c:144 -msgid "" -"Cannot find user in local domain, modifying users is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_usermod.c:246 -msgid "Could not modify user - check if group names are correct\n" -msgstr "" - -#: src/tools/sss_usermod.c:250 -msgid "Could not modify user - user already member of groups?\n" -msgstr "" - -#: src/tools/sss_usermod.c:254 -msgid "Transaction error. Could not modify user.\n" -msgstr "" - -#: src/tools/sss_cache.c:132 -#, c-format -msgid "Couldn't invalidate %s" -msgstr "" - -#: src/tools/sss_cache.c:138 -#, c-format -msgid "Couldn't invalidate %s %s" -msgstr "" - -#: src/tools/sss_cache.c:262 -msgid "Invalidate particular user" -msgstr "" - -#: src/tools/sss_cache.c:264 -msgid "Invalidate all users" -msgstr "" - -#: src/tools/sss_cache.c:266 -msgid "Invalidate particular group" -msgstr "" - -#: src/tools/sss_cache.c:268 -msgid "Invalidate all groups" -msgstr "" - -#: src/tools/sss_cache.c:270 -msgid "Invalidate particular netgroup" -msgstr "" - -#: src/tools/sss_cache.c:272 -msgid "Invalidate all netgroups" -msgstr "" - -#: src/tools/sss_cache.c:274 -msgid "Only invalidate entries from a particular domain" -msgstr "" - -#: src/tools/sss_debuglevel.c:43 -msgid "\n" -msgstr "" - -#: src/tools/sss_debuglevel.c:102 -msgid "Specify debug level you want to set\n" -msgstr "" - -#: src/tools/tools_util.c:286 -msgid "Out of memory\n" -msgstr "" - -#: src/tools/tools_util.h:40 -#, c-format -msgid "%s must be run as root\n" -msgstr "" - -#: src/util/util.h:91 -msgid "Send the debug output to files instead of stderr" -msgstr "" diff --git a/po/es.po b/po/es.po index 004572e23..1b7ffce9f 100644 --- a/po/es.po +++ b/po/es.po @@ -3,6 +3,8 @@ # This file is distributed under the same license as the PACKAGE package. # # Translators: +# Adolfo Jayme Barrientos , 2012. +# Daniel Cabrera , 2011. # Héctor Daniel Cabrera , 2011. # Hugo Jiménez Hernández , 2011. # , 2011. @@ -10,8 +12,8 @@ msgid "" msgstr "" "Project-Id-Version: SSSD\n" "Report-Msgid-Bugs-To: sssd-devel@lists.fedorahosted.org\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2011-12-21 10:11+0000\n" +"POT-Creation-Date: 2012-03-12 16:26-0400\n" +"PO-Revision-Date: 2012-03-08 11:41+0000\n" "Last-Translator: sgallagh \n" "Language-Team: Spanish (Castilian) \n" "Language: es\n" @@ -171,12 +173,9 @@ msgid "Whether to evaluate the time-based attributes in sudo rules" msgstr "" #: src/config/SSSDConfig.py:78 -#, fuzzy msgid "" "How many seconds to keep sudorules cached before asking the provider again" msgstr "" -"Cuanto segundos se mantendrá la información de identidad almacenada para " -"solicitudes de PAM" #: src/config/SSSDConfig.py:84 msgid "Identity provider" @@ -195,24 +194,20 @@ msgid "Password change provider" msgstr "Proveedor de cambio de contraseña" #: src/config/SSSDConfig.py:88 -#, fuzzy msgid "SUDO provider" -msgstr "Proveedor de identidad" +msgstr "Proveedor de SUDO" #: src/config/SSSDConfig.py:89 -#, fuzzy msgid "Autofs provider" -msgstr "Proveedor de Autenticación" +msgstr "Proveedor de Autofs" #: src/config/SSSDConfig.py:90 -#, fuzzy msgid "Session-loading provider" -msgstr "Proveedor de control de acceso" +msgstr "" #: src/config/SSSDConfig.py:91 -#, fuzzy msgid "Host identity provider" -msgstr "Proveedor de identidad" +msgstr "" #: src/config/SSSDConfig.py:94 msgid "Minimum user ID" @@ -271,7 +266,7 @@ msgstr "Sustituye valor GID del proveedor de la identidad con este valor" #: src/config/SSSDConfig.py:106 msgid "Treat usernames as case sensitive" -msgstr "" +msgstr "Trate al nombre de usuario con mayúsculas y minúsculas" #: src/config/SSSDConfig.py:114 msgid "IPA domain" @@ -315,10 +310,12 @@ msgstr "" #: src/config/SSSDConfig.py:122 msgid "If set to false, host argument given by PAM will be ignored" msgstr "" +"Si se lo define en 'false', será ignorado el argumento de equipo ofrecido " +"por PAM" #: src/config/SSSDConfig.py:123 msgid "The automounter location this IPA client is using" -msgstr "" +msgstr "La ubicación de montaje automático que este cliente de IPA está usando" #: src/config/SSSDConfig.py:126 src/config/SSSDConfig.py:127 msgid "Kerberos server address" @@ -462,7 +459,7 @@ msgstr "Especifica el reinado de autorización sasl a ser utilizado" #: src/config/SSSDConfig.py:167 msgid "Specify the minimal SSF for LDAP sasl authorization" -msgstr "" +msgstr "Especificar los SSF mínimos para autorizaciones sasl de LDAP" #: src/config/SSSDConfig.py:168 msgid "Kerberos service keytab" @@ -516,6 +513,8 @@ msgstr "atributo lastUSN" #: src/config/SSSDConfig.py:181 msgid "How long to retain a connection to the LDAP server before disconnecting" msgstr "" +"El período de tiempo máximo para retener una conexión con el servidor LDAP " +"antes de desconectar" #: src/config/SSSDConfig.py:183 msgid "Disable the LDAP paging control" @@ -676,9 +675,8 @@ msgid "loginAllowedTimeMap attribute of NDS" msgstr "loginAllowedTimeMap atributo de NDS" #: src/config/SSSDConfig.py:226 -#, fuzzy msgid "SSH public key attribute" -msgstr "Atributo Directorio de inicio" +msgstr "Atributo de clave pública SSH" #: src/config/SSSDConfig.py:228 msgid "Base DN for group lookups" @@ -745,29 +743,24 @@ msgid "Modification time attribute for netgroups" msgstr "Atributo de modificación de tiempo para grupos de red" #: src/config/SSSDConfig.py:249 -#, fuzzy msgid "Base DN for service lookups" -msgstr "DN base para búsquedas de usuario" +msgstr "" #: src/config/SSSDConfig.py:250 -#, fuzzy msgid "Objectclass for services" -msgstr "Objectclass para los usuarios" +msgstr "" #: src/config/SSSDConfig.py:251 -#, fuzzy msgid "Service name attribute" -msgstr "Atributo Username" +msgstr "" #: src/config/SSSDConfig.py:252 -#, fuzzy msgid "Service port attribute" -msgstr "Atributo Directorio de inicio" +msgstr "" #: src/config/SSSDConfig.py:253 -#, fuzzy msgid "Service protocol attribute" -msgstr "Atributo shell" +msgstr "" #: src/config/SSSDConfig.py:257 msgid "Policy to evaluate the password expiration" @@ -798,102 +791,84 @@ msgstr "" "Nombre del servicio DNS para el servidor de modificación de contraseñas LDAP" #: src/config/SSSDConfig.py:269 -#, fuzzy msgid "Base DN for sudo rules lookups" -msgstr "DN base para búsquedas de usuario" +msgstr "" #: src/config/SSSDConfig.py:270 msgid "Enable periodical update of all sudo rules" msgstr "" #: src/config/SSSDConfig.py:271 -#, fuzzy msgid "Length of time between rules updates" -msgstr "Tiempo en segundos entre las actualizaciones de enumeración" +msgstr "" #: src/config/SSSDConfig.py:272 -#, fuzzy msgid "Object class for sudo rules" -msgstr "Objectclass para los usuarios" +msgstr "" #: src/config/SSSDConfig.py:273 msgid "Sudo rule name" msgstr "" #: src/config/SSSDConfig.py:274 -#, fuzzy msgid "Sudo rule command attribute" -msgstr "Atributo Directorio de inicio" +msgstr "" #: src/config/SSSDConfig.py:275 -#, fuzzy msgid "Sudo rule host attribute" -msgstr "atributo lastUSN" +msgstr "" #: src/config/SSSDConfig.py:276 -#, fuzzy msgid "Sudo rule user attribute" -msgstr "Atributo de miembro del grupo" +msgstr "" #: src/config/SSSDConfig.py:277 -#, fuzzy msgid "Sudo rule option attribute" -msgstr "Atributo Directorio de inicio" +msgstr "" #: src/config/SSSDConfig.py:278 -#, fuzzy msgid "Sudo rule runasuser attribute" -msgstr "Atributo Username" +msgstr "" #: src/config/SSSDConfig.py:279 -#, fuzzy msgid "Sudo rule runasgroup attribute" -msgstr "Atributo UUID de miembro de red" +msgstr "" #: src/config/SSSDConfig.py:280 -#, fuzzy msgid "Sudo rule notbefore attribute" -msgstr "Atributo Directorio de inicio" +msgstr "" #: src/config/SSSDConfig.py:281 -#, fuzzy msgid "Sudo rule notafter attribute" -msgstr "Atributo Directorio de inicio" +msgstr "" #: src/config/SSSDConfig.py:282 -#, fuzzy msgid "Sudo rule order attribute" -msgstr "Atributo Directorio de inicio" +msgstr "" #: src/config/SSSDConfig.py:285 -#, fuzzy msgid "Object class for automounter maps" -msgstr "Objectclass para los usuarios" +msgstr "" #: src/config/SSSDConfig.py:286 -#, fuzzy msgid "Automounter map name attribute" -msgstr "Atributo Username" +msgstr "" #: src/config/SSSDConfig.py:287 -#, fuzzy msgid "Object class for automounter map entries" -msgstr "Objectclass para los usuarios" +msgstr "" #: src/config/SSSDConfig.py:288 -#, fuzzy msgid "Automounter map entry key attribute" -msgstr "Atributo Directorio de inicio" +msgstr "" #: src/config/SSSDConfig.py:289 -#, fuzzy msgid "Automounter map entry value attribute" -msgstr "Atributo triple de grupo de red" +msgstr "" #: src/config/SSSDConfig.py:290 -#, fuzzy msgid "Base DN for automounter map lookups" -msgstr "DN base para búsquedas de usuario" +msgstr "" #: src/config/SSSDConfig.py:293 msgid "Comma separated list of allowed users" @@ -933,7 +908,7 @@ msgstr "Indicar un archivo de configuración diferente al predeterminado" #: src/monitor/monitor.c:2385 msgid "Print version number and exit" -msgstr "" +msgstr "Muestra el número de versión y finaliza" #: src/providers/krb5/krb5_child.c:1575 src/providers/ldap/ldap_child.c:381 #: src/util/util.h:89 @@ -954,7 +929,7 @@ msgstr "Mostrar marcas de tiempo con microsegundos" msgid "An open file descriptor for the debug logs" msgstr "Un arhivo abierto de descriptor para los registros de depuración" -#: src/providers/data_provider_be.c:1938 +#: src/providers/data_provider_be.c:2022 msgid "Domain of the information provider (mandatory)" msgstr "Dominio del proveedor de información (obligatorio)" @@ -1056,9 +1031,8 @@ msgstr "Nivel de depuración en que se debe ejecutar" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:42 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:215 -#, fuzzy msgid "The SSSD domain to use" -msgstr "Dominios SSSD a iniciar" +msgstr "" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:58 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:229 src/tools/sss_useradd.c:71 @@ -1073,9 +1047,8 @@ msgstr "Error al poner la región\n" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:91 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:236 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:269 -#, fuzzy msgid "Not enough memory\n" -msgstr "Falta memoria\n" +msgstr "" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:84 msgid "User not specified\n" @@ -1553,9 +1526,8 @@ msgid "\n" msgstr "" #: src/tools/sss_debuglevel.c:102 -#, fuzzy msgid "Specify debug level you want to set\n" -msgstr "Nivel de depuración en que se debe ejecutar" +msgstr "" #: src/tools/tools_util.c:286 msgid "Out of memory\n" diff --git a/po/et.po b/po/et.po deleted file mode 100644 index adff7c945..000000000 --- a/po/et.po +++ /dev/null @@ -1,1463 +0,0 @@ -# SOME DESCRIPTIVE TITLE. -# Copyright (C) YEAR Red Hat, Inc. -# This file is distributed under the same license as the PACKAGE package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@lists.fedorahosted.org\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-11-30 04:10+0000\n" -"Last-Translator: FULL NAME \n" -"Language-Team: Estonian (http://www.transifex.net/projects/p/fedora/team/" -"et/)\n" -"Language: et\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=2; plural=(n != 1)\n" - -#: src/config/SSSDConfig.py:39 -msgid "Set the verbosity of the debug logging" -msgstr "" - -#: src/config/SSSDConfig.py:40 -msgid "Include timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:41 -msgid "Include microseconds in timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:42 -msgid "Write debug messages to logfiles" -msgstr "" - -#: src/config/SSSDConfig.py:43 -msgid "Ping timeout before restarting service" -msgstr "" - -#: src/config/SSSDConfig.py:44 -msgid "Command to start service" -msgstr "" - -#: src/config/SSSDConfig.py:45 -msgid "Number of times to attempt connection to Data Providers" -msgstr "" - -#: src/config/SSSDConfig.py:48 -msgid "SSSD Services to start" -msgstr "" - -#: src/config/SSSDConfig.py:49 -msgid "SSSD Domains to start" -msgstr "" - -#: src/config/SSSDConfig.py:50 -msgid "Timeout for messages sent over the SBUS" -msgstr "" - -#: src/config/SSSDConfig.py:51 -msgid "Regex to parse username and domain" -msgstr "" - -#: src/config/SSSDConfig.py:52 -msgid "Printf-compatible format for displaying fully-qualified names" -msgstr "" - -#: src/config/SSSDConfig.py:53 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#: src/config/SSSDConfig.py:56 -msgid "Enumeration cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:57 -msgid "Entry cache background update timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:58 src/config/SSSDConfig.py:81 -msgid "Negative cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:59 -msgid "Users that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:60 -msgid "Groups that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:61 -msgid "Should filtered users appear in groups" -msgstr "" - -#: src/config/SSSDConfig.py:62 -msgid "The value of the password field the NSS provider should return" -msgstr "" - -#: src/config/SSSDConfig.py:63 -msgid "Override homedir value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:64 -msgid "The list of shells users are allowed to log in with" -msgstr "" - -#: src/config/SSSDConfig.py:65 -msgid "" -"The list of shells that will be vetoed, and replaced with the fallback shell" -msgstr "" - -#: src/config/SSSDConfig.py:66 -msgid "" -"If a shell stored in central directory is allowed but not available, use " -"this fallback" -msgstr "" - -#: src/config/SSSDConfig.py:69 -msgid "How long to allow cached logins between online logins (days)" -msgstr "" - -#: src/config/SSSDConfig.py:70 -msgid "How many failed logins attempts are allowed when offline" -msgstr "" - -#: src/config/SSSDConfig.py:71 -msgid "" -"How long (minutes) to deny login after offline_failed_login_attempts has " -"been reached" -msgstr "" - -#: src/config/SSSDConfig.py:72 -msgid "What kind of messages are displayed to the user during authentication" -msgstr "" - -#: src/config/SSSDConfig.py:73 -msgid "How many seconds to keep identity information cached for PAM requests" -msgstr "" - -#: src/config/SSSDConfig.py:74 -msgid "How many days before password expiration a warning should be displayed" -msgstr "" - -#: src/config/SSSDConfig.py:77 -msgid "Whether to evaluate the time-based attributes in sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:78 -msgid "" -"How many seconds to keep sudorules cached before asking the provider again" -msgstr "" - -#: src/config/SSSDConfig.py:84 -msgid "Identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:85 -msgid "Authentication provider" -msgstr "" - -#: src/config/SSSDConfig.py:86 -msgid "Access control provider" -msgstr "" - -#: src/config/SSSDConfig.py:87 -msgid "Password change provider" -msgstr "" - -#: src/config/SSSDConfig.py:88 -msgid "SUDO provider" -msgstr "" - -#: src/config/SSSDConfig.py:89 -msgid "Autofs provider" -msgstr "" - -#: src/config/SSSDConfig.py:90 -msgid "Session-loading provider" -msgstr "" - -#: src/config/SSSDConfig.py:91 -msgid "Host identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:94 -msgid "Minimum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:95 -msgid "Maximum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:96 -msgid "Enable enumerating all users/groups" -msgstr "" - -#: src/config/SSSDConfig.py:97 -msgid "Cache credentials for offline login" -msgstr "" - -#: src/config/SSSDConfig.py:98 -msgid "Store password hashes" -msgstr "" - -#: src/config/SSSDConfig.py:99 -msgid "Display users/groups in fully-qualified form" -msgstr "" - -#: src/config/SSSDConfig.py:100 src/config/SSSDConfig.py:107 -#: src/config/SSSDConfig.py:108 src/config/SSSDConfig.py:109 -#: src/config/SSSDConfig.py:110 src/config/SSSDConfig.py:111 -msgid "Entry cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:101 -msgid "" -"Restrict or prefer a specific address family when performing DNS lookups" -msgstr "" - -#: src/config/SSSDConfig.py:102 -msgid "How long to keep cached entries after last successful login (days)" -msgstr "" - -#: src/config/SSSDConfig.py:103 -msgid "How long to wait for replies from DNS when resolving servers (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:104 -msgid "The domain part of service discovery DNS query" -msgstr "" - -#: src/config/SSSDConfig.py:105 -msgid "Override GID value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:106 -msgid "Treat usernames as case sensitive" -msgstr "" - -#: src/config/SSSDConfig.py:114 -msgid "IPA domain" -msgstr "" - -#: src/config/SSSDConfig.py:115 -msgid "IPA server address" -msgstr "" - -#: src/config/SSSDConfig.py:116 -msgid "IPA client hostname" -msgstr "" - -#: src/config/SSSDConfig.py:117 -msgid "Whether to automatically update the client's DNS entry in FreeIPA" -msgstr "" - -#: src/config/SSSDConfig.py:118 -msgid "The interface whose IP should be used for dynamic DNS updates" -msgstr "" - -#: src/config/SSSDConfig.py:119 -msgid "Search base for HBAC related objects" -msgstr "" - -#: src/config/SSSDConfig.py:120 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server" -msgstr "" - -#: src/config/SSSDConfig.py:121 -msgid "If DENY rules are present, either DENY_ALL or IGNORE" -msgstr "" - -#: src/config/SSSDConfig.py:122 -msgid "If set to false, host argument given by PAM will be ignored" -msgstr "" - -#: src/config/SSSDConfig.py:123 -msgid "The automounter location this IPA client is using" -msgstr "" - -#: src/config/SSSDConfig.py:126 src/config/SSSDConfig.py:127 -msgid "Kerberos server address" -msgstr "" - -#: src/config/SSSDConfig.py:128 -msgid "Kerberos realm" -msgstr "" - -#: src/config/SSSDConfig.py:129 -msgid "Authentication timeout" -msgstr "" - -#: src/config/SSSDConfig.py:132 -msgid "Directory to store credential caches" -msgstr "" - -#: src/config/SSSDConfig.py:133 -msgid "Location of the user's credential cache" -msgstr "" - -#: src/config/SSSDConfig.py:134 -msgid "Location of the keytab to validate credentials" -msgstr "" - -#: src/config/SSSDConfig.py:135 -msgid "Enable credential validation" -msgstr "" - -#: src/config/SSSDConfig.py:136 -msgid "Store password if offline for later online authentication" -msgstr "" - -#: src/config/SSSDConfig.py:137 -msgid "Renewable lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:138 -msgid "Lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:139 -msgid "Time between two checks for renewal" -msgstr "" - -#: src/config/SSSDConfig.py:140 -msgid "Enables FAST" -msgstr "" - -#: src/config/SSSDConfig.py:141 -msgid "Selects the principal to use for FAST" -msgstr "" - -#: src/config/SSSDConfig.py:142 -msgid "Enables principal canonicalization" -msgstr "" - -#: src/config/SSSDConfig.py:145 -msgid "Server where the change password service is running if not on the KDC" -msgstr "" - -#: src/config/SSSDConfig.py:148 -msgid "ldap_uri, The URI of the LDAP server" -msgstr "" - -#: src/config/SSSDConfig.py:149 -msgid "The default base DN" -msgstr "" - -#: src/config/SSSDConfig.py:150 -msgid "The Schema Type in use on the LDAP server, rfc2307" -msgstr "" - -#: src/config/SSSDConfig.py:151 -msgid "The default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:152 -msgid "The type of the authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:153 -msgid "The authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:154 -msgid "Length of time to attempt connection" -msgstr "" - -#: src/config/SSSDConfig.py:155 -msgid "Length of time to attempt synchronous LDAP operations" -msgstr "" - -#: src/config/SSSDConfig.py:156 -msgid "Length of time between attempts to reconnect while offline" -msgstr "" - -#: src/config/SSSDConfig.py:157 -msgid "Use only the upper case for realm names" -msgstr "" - -#: src/config/SSSDConfig.py:158 -msgid "File that contains CA certificates" -msgstr "" - -#: src/config/SSSDConfig.py:159 -msgid "Path to CA certificate directory" -msgstr "" - -#: src/config/SSSDConfig.py:160 -msgid "File that contains the client certificate" -msgstr "" - -#: src/config/SSSDConfig.py:161 -msgid "File that contains the client key" -msgstr "" - -#: src/config/SSSDConfig.py:162 -msgid "List of possible ciphers suites" -msgstr "" - -#: src/config/SSSDConfig.py:163 -msgid "Require TLS certificate verification" -msgstr "" - -#: src/config/SSSDConfig.py:164 -msgid "Specify the sasl mechanism to use" -msgstr "" - -#: src/config/SSSDConfig.py:165 -msgid "Specify the sasl authorization id to use" -msgstr "" - -#: src/config/SSSDConfig.py:166 -msgid "Specify the sasl authorization realm to use" -msgstr "" - -#: src/config/SSSDConfig.py:167 -msgid "Specify the minimal SSF for LDAP sasl authorization" -msgstr "" - -#: src/config/SSSDConfig.py:168 -msgid "Kerberos service keytab" -msgstr "" - -#: src/config/SSSDConfig.py:169 -msgid "Use Kerberos auth for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:170 -msgid "Follow LDAP referrals" -msgstr "" - -#: src/config/SSSDConfig.py:171 -msgid "Lifetime of TGT for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:172 -msgid "How to dereference aliases" -msgstr "" - -#: src/config/SSSDConfig.py:173 -msgid "Service name for DNS service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:174 -msgid "The number of records to retrieve in a single LDAP query" -msgstr "" - -#: src/config/SSSDConfig.py:175 -msgid "The number of members that must be missing to trigger a full deref" -msgstr "" - -#: src/config/SSSDConfig.py:176 -msgid "" -"Whether the LDAP library should perform a reverse lookup to canonicalize the " -"host name during a SASL bind" -msgstr "" - -#: src/config/SSSDConfig.py:178 -msgid "entryUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:179 -msgid "lastUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:181 -msgid "How long to retain a connection to the LDAP server before disconnecting" -msgstr "" - -#: src/config/SSSDConfig.py:183 -msgid "Disable the LDAP paging control" -msgstr "" - -#: src/config/SSSDConfig.py:186 -msgid "Length of time to wait for a search request" -msgstr "" - -#: src/config/SSSDConfig.py:187 -msgid "Length of time to wait for a enumeration request" -msgstr "" - -#: src/config/SSSDConfig.py:188 -msgid "Length of time between enumeration updates" -msgstr "" - -#: src/config/SSSDConfig.py:189 -msgid "Length of time between cache cleanups" -msgstr "" - -#: src/config/SSSDConfig.py:190 -msgid "Require TLS for ID lookups" -msgstr "" - -#: src/config/SSSDConfig.py:191 -msgid "Base DN for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:192 -msgid "Scope of user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:193 -msgid "Filter for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:194 -msgid "Objectclass for users" -msgstr "" - -#: src/config/SSSDConfig.py:195 -msgid "Username attribute" -msgstr "" - -#: src/config/SSSDConfig.py:197 -msgid "UID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:198 -msgid "Primary GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:199 -msgid "GECOS attribute" -msgstr "" - -#: src/config/SSSDConfig.py:200 -msgid "Home directory attribute" -msgstr "" - -#: src/config/SSSDConfig.py:201 -msgid "Shell attribute" -msgstr "" - -#: src/config/SSSDConfig.py:202 -msgid "UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:203 -msgid "User principal attribute (for Kerberos)" -msgstr "" - -#: src/config/SSSDConfig.py:204 -msgid "Full Name" -msgstr "" - -#: src/config/SSSDConfig.py:205 -msgid "memberOf attribute" -msgstr "" - -#: src/config/SSSDConfig.py:206 -msgid "Modification time attribute" -msgstr "" - -#: src/config/SSSDConfig.py:208 -msgid "shadowLastChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:209 -msgid "shadowMin attribute" -msgstr "" - -#: src/config/SSSDConfig.py:210 -msgid "shadowMax attribute" -msgstr "" - -#: src/config/SSSDConfig.py:211 -msgid "shadowWarning attribute" -msgstr "" - -#: src/config/SSSDConfig.py:212 -msgid "shadowInactive attribute" -msgstr "" - -#: src/config/SSSDConfig.py:213 -msgid "shadowExpire attribute" -msgstr "" - -#: src/config/SSSDConfig.py:214 -msgid "shadowFlag attribute" -msgstr "" - -#: src/config/SSSDConfig.py:215 -msgid "Attribute listing authorized PAM services" -msgstr "" - -#: src/config/SSSDConfig.py:216 -msgid "Attribute listing authorized server hosts" -msgstr "" - -#: src/config/SSSDConfig.py:217 -msgid "krbLastPwdChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:218 -msgid "krbPasswordExpiration attribute" -msgstr "" - -#: src/config/SSSDConfig.py:219 -msgid "Attribute indicating that server side password policies are active" -msgstr "" - -#: src/config/SSSDConfig.py:220 -msgid "accountExpires attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:221 -msgid "userAccountControl attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:222 -msgid "nsAccountLock attribute" -msgstr "" - -#: src/config/SSSDConfig.py:223 -msgid "loginDisabled attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:224 -msgid "loginExpirationTime attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:225 -msgid "loginAllowedTimeMap attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:226 -msgid "SSH public key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:228 -msgid "Base DN for group lookups" -msgstr "" - -#: src/config/SSSDConfig.py:231 -msgid "Objectclass for groups" -msgstr "" - -#: src/config/SSSDConfig.py:232 -msgid "Group name" -msgstr "" - -#: src/config/SSSDConfig.py:233 -msgid "Group password" -msgstr "" - -#: src/config/SSSDConfig.py:234 -msgid "GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:235 -msgid "Group member attribute" -msgstr "" - -#: src/config/SSSDConfig.py:236 -msgid "Group UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:237 -msgid "Modification time attribute for groups" -msgstr "" - -#: src/config/SSSDConfig.py:239 -msgid "Maximum nesting level SSSd will follow" -msgstr "" - -#: src/config/SSSDConfig.py:241 -msgid "Base DN for netgroup lookups" -msgstr "" - -#: src/config/SSSDConfig.py:242 -msgid "Objectclass for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:243 -msgid "Netgroup name" -msgstr "" - -#: src/config/SSSDConfig.py:244 -msgid "Netgroups members attribute" -msgstr "" - -#: src/config/SSSDConfig.py:245 -msgid "Netgroup triple attribute" -msgstr "" - -#: src/config/SSSDConfig.py:246 -msgid "Netgroup UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:247 -msgid "Modification time attribute for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:249 -msgid "Base DN for service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:250 -msgid "Objectclass for services" -msgstr "" - -#: src/config/SSSDConfig.py:251 -msgid "Service name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:252 -msgid "Service port attribute" -msgstr "" - -#: src/config/SSSDConfig.py:253 -msgid "Service protocol attribute" -msgstr "" - -#: src/config/SSSDConfig.py:257 -msgid "Policy to evaluate the password expiration" -msgstr "" - -#: src/config/SSSDConfig.py:260 -msgid "LDAP filter to determine access privileges" -msgstr "" - -#: src/config/SSSDConfig.py:261 -msgid "Which attributes shall be used to evaluate if an account is expired" -msgstr "" - -#: src/config/SSSDConfig.py:262 -msgid "Which rules should be used to evaluate access control" -msgstr "" - -#: src/config/SSSDConfig.py:265 -msgid "URI of an LDAP server where password changes are allowed" -msgstr "" - -#: src/config/SSSDConfig.py:266 -msgid "DNS service name for LDAP password change server" -msgstr "" - -#: src/config/SSSDConfig.py:269 -msgid "Base DN for sudo rules lookups" -msgstr "" - -#: src/config/SSSDConfig.py:270 -msgid "Enable periodical update of all sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:271 -msgid "Length of time between rules updates" -msgstr "" - -#: src/config/SSSDConfig.py:272 -msgid "Object class for sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:273 -msgid "Sudo rule name" -msgstr "" - -#: src/config/SSSDConfig.py:274 -msgid "Sudo rule command attribute" -msgstr "" - -#: src/config/SSSDConfig.py:275 -msgid "Sudo rule host attribute" -msgstr "" - -#: src/config/SSSDConfig.py:276 -msgid "Sudo rule user attribute" -msgstr "" - -#: src/config/SSSDConfig.py:277 -msgid "Sudo rule option attribute" -msgstr "" - -#: src/config/SSSDConfig.py:278 -msgid "Sudo rule runasuser attribute" -msgstr "" - -#: src/config/SSSDConfig.py:279 -msgid "Sudo rule runasgroup attribute" -msgstr "" - -#: src/config/SSSDConfig.py:280 -msgid "Sudo rule notbefore attribute" -msgstr "" - -#: src/config/SSSDConfig.py:281 -msgid "Sudo rule notafter attribute" -msgstr "" - -#: src/config/SSSDConfig.py:282 -msgid "Sudo rule order attribute" -msgstr "" - -#: src/config/SSSDConfig.py:285 -msgid "Object class for automounter maps" -msgstr "" - -#: src/config/SSSDConfig.py:286 -msgid "Automounter map name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:287 -msgid "Object class for automounter map entries" -msgstr "" - -#: src/config/SSSDConfig.py:288 -msgid "Automounter map entry key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:289 -msgid "Automounter map entry value attribute" -msgstr "" - -#: src/config/SSSDConfig.py:290 -msgid "Base DN for automounter map lookups" -msgstr "" - -#: src/config/SSSDConfig.py:293 -msgid "Comma separated list of allowed users" -msgstr "" - -#: src/config/SSSDConfig.py:294 -msgid "Comma separated list of prohibited users" -msgstr "" - -#: src/config/SSSDConfig.py:297 -msgid "Default shell, /bin/bash" -msgstr "" - -#: src/config/SSSDConfig.py:298 -msgid "Base for home directories" -msgstr "" - -#: src/config/SSSDConfig.py:301 -msgid "The name of the NSS library to use" -msgstr "" - -#: src/config/SSSDConfig.py:304 -msgid "PAM stack to use" -msgstr "" - -#: src/monitor/monitor.c:2379 -msgid "Become a daemon (default)" -msgstr "" - -#: src/monitor/monitor.c:2381 -msgid "Run interactive (not a daemon)" -msgstr "" - -#: src/monitor/monitor.c:2383 src/tools/sss_debuglevel.c:77 -msgid "Specify a non-default config file" -msgstr "" - -#: src/monitor/monitor.c:2385 -msgid "Print version number and exit" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1575 src/providers/ldap/ldap_child.c:381 -#: src/util/util.h:89 -msgid "Debug level" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1577 src/providers/ldap/ldap_child.c:383 -#: src/util/util.h:93 -msgid "Add debug timestamps" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1579 src/providers/ldap/ldap_child.c:385 -#: src/util/util.h:95 -msgid "Show timestamps with microseconds" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1581 src/providers/ldap/ldap_child.c:387 -msgid "An open file descriptor for the debug logs" -msgstr "" - -#: src/providers/data_provider_be.c:1938 -msgid "Domain of the information provider (mandatory)" -msgstr "" - -#: src/sss_client/common.c:878 -msgid "Privileged socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:881 -msgid "Public socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:884 -msgid "Unexpected format of the server credential message." -msgstr "" - -#: src/sss_client/common.c:887 -msgid "SSSD is not run by root." -msgstr "" - -#: src/sss_client/common.c:892 -msgid "An error occurred, but no description can be found." -msgstr "" - -#: src/sss_client/common.c:898 -msgid "Unexpected error while looking for an error description" -msgstr "" - -#: src/sss_client/pam_sss.c:378 -msgid "Passwords do not match" -msgstr "" - -#: src/sss_client/pam_sss.c:571 -msgid "Password reset by root is not supported." -msgstr "" - -#: src/sss_client/pam_sss.c:612 -msgid "Authenticated with cached credentials" -msgstr "" - -#: src/sss_client/pam_sss.c:613 -msgid ", your cached password will expire at: " -msgstr "" - -#: src/sss_client/pam_sss.c:643 -#, c-format -msgid "Your password has expired. You have %d grace login(s) remaining." -msgstr "" - -#: src/sss_client/pam_sss.c:689 -#, c-format -msgid "Your password will expire in %d %s." -msgstr "" - -#: src/sss_client/pam_sss.c:738 -msgid "Authentication is denied until: " -msgstr "" - -#: src/sss_client/pam_sss.c:759 -msgid "System is offline, password change not possible" -msgstr "" - -#: src/sss_client/pam_sss.c:789 src/sss_client/pam_sss.c:802 -msgid "Password change failed. " -msgstr "" - -#: src/sss_client/pam_sss.c:792 src/sss_client/pam_sss.c:803 -msgid "Server message: " -msgstr "" - -#: src/sss_client/pam_sss.c:1286 -msgid "New Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1287 -msgid "Reenter new Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1373 -msgid "Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1405 -msgid "Current Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1552 -msgid "Password expired. Change your password now." -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:40 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:211 src/tools/sss_useradd.c:48 -#: src/tools/sss_groupadd.c:41 src/tools/sss_groupdel.c:43 -#: src/tools/sss_groupmod.c:42 src/tools/sss_groupshow.c:615 -#: src/tools/sss_userdel.c:131 src/tools/sss_usermod.c:47 -#: src/tools/sss_cache.c:260 src/tools/sss_debuglevel.c:75 -msgid "The debug level to run with" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:42 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:215 -msgid "The SSSD domain to use" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:58 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:229 src/tools/sss_useradd.c:71 -#: src/tools/sss_groupadd.c:56 src/tools/sss_groupdel.c:52 -#: src/tools/sss_groupmod.c:63 src/tools/sss_groupshow.c:626 -#: src/tools/sss_userdel.c:148 src/tools/sss_usermod.c:72 -#: src/tools/sss_cache.c:281 -msgid "Error setting the locale\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:65 -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:91 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:236 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:269 -msgid "Not enough memory\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:84 -msgid "User not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:104 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:282 -msgid "Error looking up public keys\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:94 -msgid "Failed to open a socket\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:104 -msgid "Failed to connect to the server\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:195 -msgid "Failed to execute proxy command\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:213 -msgid "The port to use to connect to the host" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:255 -msgid "Host not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:261 -msgid "The path to the proxy command must be absolute\n" -msgstr "" - -#: src/tools/sss_useradd.c:49 src/tools/sss_usermod.c:48 -msgid "The UID of the user" -msgstr "" - -#: src/tools/sss_useradd.c:50 src/tools/sss_usermod.c:50 -msgid "The comment string" -msgstr "" - -#: src/tools/sss_useradd.c:51 src/tools/sss_usermod.c:51 -msgid "Home directory" -msgstr "" - -#: src/tools/sss_useradd.c:52 src/tools/sss_usermod.c:52 -msgid "Login shell" -msgstr "" - -#: src/tools/sss_useradd.c:53 -msgid "Groups" -msgstr "" - -#: src/tools/sss_useradd.c:54 -msgid "Create user's directory if it does not exist" -msgstr "" - -#: src/tools/sss_useradd.c:55 -msgid "Never create user's directory, overrides config" -msgstr "" - -#: src/tools/sss_useradd.c:56 -msgid "Specify an alternative skeleton directory" -msgstr "" - -#: src/tools/sss_useradd.c:57 src/tools/sss_usermod.c:57 -msgid "The SELinux user for user's login" -msgstr "" - -#: src/tools/sss_useradd.c:84 src/tools/sss_groupmod.c:76 -#: src/tools/sss_usermod.c:85 -msgid "Specify group to add to\n" -msgstr "" - -#: src/tools/sss_useradd.c:108 -msgid "Specify user to add\n" -msgstr "" - -#: src/tools/sss_useradd.c:117 src/tools/sss_groupadd.c:82 -#: src/tools/sss_groupdel.c:77 src/tools/sss_groupmod.c:109 -#: src/tools/sss_groupshow.c:659 src/tools/sss_userdel.c:193 -#: src/tools/sss_usermod.c:126 -msgid "Error initializing the tools - no local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:119 src/tools/sss_groupadd.c:84 -#: src/tools/sss_groupdel.c:79 src/tools/sss_groupmod.c:111 -#: src/tools/sss_groupshow.c:661 src/tools/sss_userdel.c:195 -#: src/tools/sss_usermod.c:128 -msgid "Error initializing the tools\n" -msgstr "" - -#: src/tools/sss_useradd.c:128 src/tools/sss_groupadd.c:93 -#: src/tools/sss_groupdel.c:88 src/tools/sss_groupmod.c:119 -#: src/tools/sss_groupshow.c:670 src/tools/sss_userdel.c:204 -#: src/tools/sss_usermod.c:137 -msgid "Invalid domain specified in FQDN\n" -msgstr "" - -#: src/tools/sss_useradd.c:137 src/tools/sss_groupmod.c:139 -#: src/tools/sss_groupmod.c:166 src/tools/sss_usermod.c:160 -#: src/tools/sss_usermod.c:187 -msgid "Internal error while parsing parameters\n" -msgstr "" - -#: src/tools/sss_useradd.c:145 src/tools/sss_usermod.c:168 -#: src/tools/sss_usermod.c:195 -msgid "Groups must be in the same domain as user\n" -msgstr "" - -#: src/tools/sss_useradd.c:153 -#, c-format -msgid "Cannot find group %s in local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:168 src/tools/sss_userdel.c:214 -msgid "Cannot set default values\n" -msgstr "" - -#: src/tools/sss_useradd.c:175 src/tools/sss_usermod.c:151 -msgid "The selected UID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_useradd.c:202 src/tools/sss_usermod.c:236 -msgid "Cannot set SELinux login context\n" -msgstr "" - -#: src/tools/sss_useradd.c:217 -msgid "Cannot get info about the user\n" -msgstr "" - -#: src/tools/sss_useradd.c:229 -msgid "User's home directory already exists, not copying data from skeldir\n" -msgstr "" - -#: src/tools/sss_useradd.c:232 -#, c-format -msgid "Cannot create user's home directory: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:243 -#, c-format -msgid "Cannot create user's mail spool: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:255 -msgid "Could not allocate ID for the user - domain full?\n" -msgstr "" - -#: src/tools/sss_useradd.c:259 -msgid "A user or group with the same name or ID already exists\n" -msgstr "" - -#: src/tools/sss_useradd.c:265 -msgid "Transaction error. Could not add user.\n" -msgstr "" - -#: src/tools/sss_groupadd.c:43 src/tools/sss_groupmod.c:48 -msgid "The GID of the group" -msgstr "" - -#: src/tools/sss_groupadd.c:73 -msgid "Specify group to add\n" -msgstr "" - -#: src/tools/sss_groupadd.c:102 src/tools/sss_groupmod.c:190 -msgid "The selected GID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_groupadd.c:127 -msgid "Could not allocate ID for the group - domain full?\n" -msgstr "" - -#: src/tools/sss_groupadd.c:131 -msgid "A group with the same name or GID already exists\n" -msgstr "" - -#: src/tools/sss_groupadd.c:136 -msgid "Transaction error. Could not add group.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:68 -msgid "Specify group to delete\n" -msgstr "" - -#: src/tools/sss_groupdel.c:101 -#, c-format -msgid "Group %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_groupdel.c:115 -msgid "" -"No such group in local domain. Removing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:120 -msgid "Internal error. Could not remove group.\n" -msgstr "" - -#: src/tools/sss_groupmod.c:44 -msgid "Groups to add this group to" -msgstr "" - -#: src/tools/sss_groupmod.c:46 -msgid "Groups to remove this group from" -msgstr "" - -#: src/tools/sss_groupmod.c:84 src/tools/sss_usermod.c:93 -msgid "Specify group to remove from\n" -msgstr "" - -#: src/tools/sss_groupmod.c:98 -msgid "Specify group to modify\n" -msgstr "" - -#: src/tools/sss_groupmod.c:126 -msgid "" -"Cannot find group in local domain, modifying groups is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_groupmod.c:147 src/tools/sss_groupmod.c:174 -msgid "Member groups must be in the same domain as parent group\n" -msgstr "" - -#: src/tools/sss_groupmod.c:155 src/tools/sss_groupmod.c:182 -#: src/tools/sss_usermod.c:176 src/tools/sss_usermod.c:203 -#, c-format -msgid "" -"Cannot find group %s in local domain, only groups in local domain are " -"allowed\n" -msgstr "" - -#: src/tools/sss_groupmod.c:216 -msgid "Could not modify group - check if member group names are correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:220 -msgid "Could not modify group - check if groupname is correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:224 -msgid "Transaction error. Could not modify group.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:562 -#, c-format -msgid "%s%sGroup: %s\n" -msgstr "" - -#: src/tools/sss_groupshow.c:563 -msgid "Magic Private " -msgstr "" - -#: src/tools/sss_groupshow.c:565 -#, c-format -msgid "%sGID number: %d\n" -msgstr "" - -#: src/tools/sss_groupshow.c:567 -#, c-format -msgid "%sMember users: " -msgstr "" - -#: src/tools/sss_groupshow.c:574 -#, c-format -msgid "" -"\n" -"%sIs a member of: " -msgstr "" - -#: src/tools/sss_groupshow.c:581 -#, c-format -msgid "" -"\n" -"%sMember groups: " -msgstr "" - -#: src/tools/sss_groupshow.c:617 -msgid "Print indirect group members recursively" -msgstr "" - -#: src/tools/sss_groupshow.c:650 -msgid "Specify group to show\n" -msgstr "" - -#: src/tools/sss_groupshow.c:689 -msgid "" -"No such group in local domain. Printing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:694 -msgid "Internal error. Could not print group.\n" -msgstr "" - -#: src/tools/sss_userdel.c:133 -msgid "Remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:135 -msgid "Do not remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:137 -msgid "Force removal of files not owned by the user" -msgstr "" - -#: src/tools/sss_userdel.c:139 -msgid "Kill users' processes before removing him" -msgstr "" - -#: src/tools/sss_userdel.c:184 -msgid "Specify user to delete\n" -msgstr "" - -#: src/tools/sss_userdel.c:230 -#, c-format -msgid "User %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_userdel.c:255 -msgid "Cannot reset SELinux login context\n" -msgstr "" - -#: src/tools/sss_userdel.c:267 -#, c-format -msgid "WARNING: The user (uid %lu) was still logged in when deleted.\n" -msgstr "" - -#: src/tools/sss_userdel.c:272 -msgid "Cannot determine if the user was logged in on this platform" -msgstr "" - -#: src/tools/sss_userdel.c:277 -msgid "Error while checking if the user was logged in\n" -msgstr "" - -#: src/tools/sss_userdel.c:284 -#, c-format -msgid "The post-delete command failed: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:296 -msgid "Not removing home dir - not owned by user\n" -msgstr "" - -#: src/tools/sss_userdel.c:298 -#, c-format -msgid "Cannot remove homedir: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:309 -msgid "" -"No such user in local domain. Removing users only allowed in local domain.\n" -msgstr "" - -#: src/tools/sss_userdel.c:314 -msgid "Internal error. Could not remove user.\n" -msgstr "" - -#: src/tools/sss_usermod.c:49 -msgid "The GID of the user" -msgstr "" - -#: src/tools/sss_usermod.c:53 -msgid "Groups to add this user to" -msgstr "" - -#: src/tools/sss_usermod.c:54 -msgid "Groups to remove this user from" -msgstr "" - -#: src/tools/sss_usermod.c:55 -msgid "Lock the account" -msgstr "" - -#: src/tools/sss_usermod.c:56 -msgid "Unlock the account" -msgstr "" - -#: src/tools/sss_usermod.c:117 -msgid "Specify user to modify\n" -msgstr "" - -#: src/tools/sss_usermod.c:144 -msgid "" -"Cannot find user in local domain, modifying users is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_usermod.c:246 -msgid "Could not modify user - check if group names are correct\n" -msgstr "" - -#: src/tools/sss_usermod.c:250 -msgid "Could not modify user - user already member of groups?\n" -msgstr "" - -#: src/tools/sss_usermod.c:254 -msgid "Transaction error. Could not modify user.\n" -msgstr "" - -#: src/tools/sss_cache.c:132 -#, c-format -msgid "Couldn't invalidate %s" -msgstr "" - -#: src/tools/sss_cache.c:138 -#, c-format -msgid "Couldn't invalidate %s %s" -msgstr "" - -#: src/tools/sss_cache.c:262 -msgid "Invalidate particular user" -msgstr "" - -#: src/tools/sss_cache.c:264 -msgid "Invalidate all users" -msgstr "" - -#: src/tools/sss_cache.c:266 -msgid "Invalidate particular group" -msgstr "" - -#: src/tools/sss_cache.c:268 -msgid "Invalidate all groups" -msgstr "" - -#: src/tools/sss_cache.c:270 -msgid "Invalidate particular netgroup" -msgstr "" - -#: src/tools/sss_cache.c:272 -msgid "Invalidate all netgroups" -msgstr "" - -#: src/tools/sss_cache.c:274 -msgid "Only invalidate entries from a particular domain" -msgstr "" - -#: src/tools/sss_debuglevel.c:43 -msgid "\n" -msgstr "" - -#: src/tools/sss_debuglevel.c:102 -msgid "Specify debug level you want to set\n" -msgstr "" - -#: src/tools/tools_util.c:286 -msgid "Out of memory\n" -msgstr "" - -#: src/tools/tools_util.h:40 -#, c-format -msgid "%s must be run as root\n" -msgstr "" - -#: src/util/util.h:91 -msgid "Send the debug output to files instead of stderr" -msgstr "" diff --git a/po/fa.po b/po/fa.po deleted file mode 100644 index 5b081beb1..000000000 --- a/po/fa.po +++ /dev/null @@ -1,1463 +0,0 @@ -# SOME DESCRIPTIVE TITLE. -# Copyright (C) YEAR Red Hat, Inc. -# This file is distributed under the same license as the PACKAGE package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@lists.fedorahosted.org\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-11-30 04:10+0000\n" -"Last-Translator: FULL NAME \n" -"Language-Team: Persian (http://www.transifex.net/projects/p/fedora/team/" -"fa/)\n" -"Language: fa\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=1; plural=0\n" - -#: src/config/SSSDConfig.py:39 -msgid "Set the verbosity of the debug logging" -msgstr "" - -#: src/config/SSSDConfig.py:40 -msgid "Include timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:41 -msgid "Include microseconds in timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:42 -msgid "Write debug messages to logfiles" -msgstr "" - -#: src/config/SSSDConfig.py:43 -msgid "Ping timeout before restarting service" -msgstr "" - -#: src/config/SSSDConfig.py:44 -msgid "Command to start service" -msgstr "" - -#: src/config/SSSDConfig.py:45 -msgid "Number of times to attempt connection to Data Providers" -msgstr "" - -#: src/config/SSSDConfig.py:48 -msgid "SSSD Services to start" -msgstr "" - -#: src/config/SSSDConfig.py:49 -msgid "SSSD Domains to start" -msgstr "" - -#: src/config/SSSDConfig.py:50 -msgid "Timeout for messages sent over the SBUS" -msgstr "" - -#: src/config/SSSDConfig.py:51 -msgid "Regex to parse username and domain" -msgstr "" - -#: src/config/SSSDConfig.py:52 -msgid "Printf-compatible format for displaying fully-qualified names" -msgstr "" - -#: src/config/SSSDConfig.py:53 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#: src/config/SSSDConfig.py:56 -msgid "Enumeration cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:57 -msgid "Entry cache background update timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:58 src/config/SSSDConfig.py:81 -msgid "Negative cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:59 -msgid "Users that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:60 -msgid "Groups that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:61 -msgid "Should filtered users appear in groups" -msgstr "" - -#: src/config/SSSDConfig.py:62 -msgid "The value of the password field the NSS provider should return" -msgstr "" - -#: src/config/SSSDConfig.py:63 -msgid "Override homedir value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:64 -msgid "The list of shells users are allowed to log in with" -msgstr "" - -#: src/config/SSSDConfig.py:65 -msgid "" -"The list of shells that will be vetoed, and replaced with the fallback shell" -msgstr "" - -#: src/config/SSSDConfig.py:66 -msgid "" -"If a shell stored in central directory is allowed but not available, use " -"this fallback" -msgstr "" - -#: src/config/SSSDConfig.py:69 -msgid "How long to allow cached logins between online logins (days)" -msgstr "" - -#: src/config/SSSDConfig.py:70 -msgid "How many failed logins attempts are allowed when offline" -msgstr "" - -#: src/config/SSSDConfig.py:71 -msgid "" -"How long (minutes) to deny login after offline_failed_login_attempts has " -"been reached" -msgstr "" - -#: src/config/SSSDConfig.py:72 -msgid "What kind of messages are displayed to the user during authentication" -msgstr "" - -#: src/config/SSSDConfig.py:73 -msgid "How many seconds to keep identity information cached for PAM requests" -msgstr "" - -#: src/config/SSSDConfig.py:74 -msgid "How many days before password expiration a warning should be displayed" -msgstr "" - -#: src/config/SSSDConfig.py:77 -msgid "Whether to evaluate the time-based attributes in sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:78 -msgid "" -"How many seconds to keep sudorules cached before asking the provider again" -msgstr "" - -#: src/config/SSSDConfig.py:84 -msgid "Identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:85 -msgid "Authentication provider" -msgstr "" - -#: src/config/SSSDConfig.py:86 -msgid "Access control provider" -msgstr "" - -#: src/config/SSSDConfig.py:87 -msgid "Password change provider" -msgstr "" - -#: src/config/SSSDConfig.py:88 -msgid "SUDO provider" -msgstr "" - -#: src/config/SSSDConfig.py:89 -msgid "Autofs provider" -msgstr "" - -#: src/config/SSSDConfig.py:90 -msgid "Session-loading provider" -msgstr "" - -#: src/config/SSSDConfig.py:91 -msgid "Host identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:94 -msgid "Minimum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:95 -msgid "Maximum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:96 -msgid "Enable enumerating all users/groups" -msgstr "" - -#: src/config/SSSDConfig.py:97 -msgid "Cache credentials for offline login" -msgstr "" - -#: src/config/SSSDConfig.py:98 -msgid "Store password hashes" -msgstr "" - -#: src/config/SSSDConfig.py:99 -msgid "Display users/groups in fully-qualified form" -msgstr "" - -#: src/config/SSSDConfig.py:100 src/config/SSSDConfig.py:107 -#: src/config/SSSDConfig.py:108 src/config/SSSDConfig.py:109 -#: src/config/SSSDConfig.py:110 src/config/SSSDConfig.py:111 -msgid "Entry cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:101 -msgid "" -"Restrict or prefer a specific address family when performing DNS lookups" -msgstr "" - -#: src/config/SSSDConfig.py:102 -msgid "How long to keep cached entries after last successful login (days)" -msgstr "" - -#: src/config/SSSDConfig.py:103 -msgid "How long to wait for replies from DNS when resolving servers (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:104 -msgid "The domain part of service discovery DNS query" -msgstr "" - -#: src/config/SSSDConfig.py:105 -msgid "Override GID value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:106 -msgid "Treat usernames as case sensitive" -msgstr "" - -#: src/config/SSSDConfig.py:114 -msgid "IPA domain" -msgstr "" - -#: src/config/SSSDConfig.py:115 -msgid "IPA server address" -msgstr "" - -#: src/config/SSSDConfig.py:116 -msgid "IPA client hostname" -msgstr "" - -#: src/config/SSSDConfig.py:117 -msgid "Whether to automatically update the client's DNS entry in FreeIPA" -msgstr "" - -#: src/config/SSSDConfig.py:118 -msgid "The interface whose IP should be used for dynamic DNS updates" -msgstr "" - -#: src/config/SSSDConfig.py:119 -msgid "Search base for HBAC related objects" -msgstr "" - -#: src/config/SSSDConfig.py:120 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server" -msgstr "" - -#: src/config/SSSDConfig.py:121 -msgid "If DENY rules are present, either DENY_ALL or IGNORE" -msgstr "" - -#: src/config/SSSDConfig.py:122 -msgid "If set to false, host argument given by PAM will be ignored" -msgstr "" - -#: src/config/SSSDConfig.py:123 -msgid "The automounter location this IPA client is using" -msgstr "" - -#: src/config/SSSDConfig.py:126 src/config/SSSDConfig.py:127 -msgid "Kerberos server address" -msgstr "" - -#: src/config/SSSDConfig.py:128 -msgid "Kerberos realm" -msgstr "" - -#: src/config/SSSDConfig.py:129 -msgid "Authentication timeout" -msgstr "" - -#: src/config/SSSDConfig.py:132 -msgid "Directory to store credential caches" -msgstr "" - -#: src/config/SSSDConfig.py:133 -msgid "Location of the user's credential cache" -msgstr "" - -#: src/config/SSSDConfig.py:134 -msgid "Location of the keytab to validate credentials" -msgstr "" - -#: src/config/SSSDConfig.py:135 -msgid "Enable credential validation" -msgstr "" - -#: src/config/SSSDConfig.py:136 -msgid "Store password if offline for later online authentication" -msgstr "" - -#: src/config/SSSDConfig.py:137 -msgid "Renewable lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:138 -msgid "Lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:139 -msgid "Time between two checks for renewal" -msgstr "" - -#: src/config/SSSDConfig.py:140 -msgid "Enables FAST" -msgstr "" - -#: src/config/SSSDConfig.py:141 -msgid "Selects the principal to use for FAST" -msgstr "" - -#: src/config/SSSDConfig.py:142 -msgid "Enables principal canonicalization" -msgstr "" - -#: src/config/SSSDConfig.py:145 -msgid "Server where the change password service is running if not on the KDC" -msgstr "" - -#: src/config/SSSDConfig.py:148 -msgid "ldap_uri, The URI of the LDAP server" -msgstr "" - -#: src/config/SSSDConfig.py:149 -msgid "The default base DN" -msgstr "" - -#: src/config/SSSDConfig.py:150 -msgid "The Schema Type in use on the LDAP server, rfc2307" -msgstr "" - -#: src/config/SSSDConfig.py:151 -msgid "The default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:152 -msgid "The type of the authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:153 -msgid "The authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:154 -msgid "Length of time to attempt connection" -msgstr "" - -#: src/config/SSSDConfig.py:155 -msgid "Length of time to attempt synchronous LDAP operations" -msgstr "" - -#: src/config/SSSDConfig.py:156 -msgid "Length of time between attempts to reconnect while offline" -msgstr "" - -#: src/config/SSSDConfig.py:157 -msgid "Use only the upper case for realm names" -msgstr "" - -#: src/config/SSSDConfig.py:158 -msgid "File that contains CA certificates" -msgstr "" - -#: src/config/SSSDConfig.py:159 -msgid "Path to CA certificate directory" -msgstr "" - -#: src/config/SSSDConfig.py:160 -msgid "File that contains the client certificate" -msgstr "" - -#: src/config/SSSDConfig.py:161 -msgid "File that contains the client key" -msgstr "" - -#: src/config/SSSDConfig.py:162 -msgid "List of possible ciphers suites" -msgstr "" - -#: src/config/SSSDConfig.py:163 -msgid "Require TLS certificate verification" -msgstr "" - -#: src/config/SSSDConfig.py:164 -msgid "Specify the sasl mechanism to use" -msgstr "" - -#: src/config/SSSDConfig.py:165 -msgid "Specify the sasl authorization id to use" -msgstr "" - -#: src/config/SSSDConfig.py:166 -msgid "Specify the sasl authorization realm to use" -msgstr "" - -#: src/config/SSSDConfig.py:167 -msgid "Specify the minimal SSF for LDAP sasl authorization" -msgstr "" - -#: src/config/SSSDConfig.py:168 -msgid "Kerberos service keytab" -msgstr "" - -#: src/config/SSSDConfig.py:169 -msgid "Use Kerberos auth for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:170 -msgid "Follow LDAP referrals" -msgstr "" - -#: src/config/SSSDConfig.py:171 -msgid "Lifetime of TGT for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:172 -msgid "How to dereference aliases" -msgstr "" - -#: src/config/SSSDConfig.py:173 -msgid "Service name for DNS service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:174 -msgid "The number of records to retrieve in a single LDAP query" -msgstr "" - -#: src/config/SSSDConfig.py:175 -msgid "The number of members that must be missing to trigger a full deref" -msgstr "" - -#: src/config/SSSDConfig.py:176 -msgid "" -"Whether the LDAP library should perform a reverse lookup to canonicalize the " -"host name during a SASL bind" -msgstr "" - -#: src/config/SSSDConfig.py:178 -msgid "entryUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:179 -msgid "lastUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:181 -msgid "How long to retain a connection to the LDAP server before disconnecting" -msgstr "" - -#: src/config/SSSDConfig.py:183 -msgid "Disable the LDAP paging control" -msgstr "" - -#: src/config/SSSDConfig.py:186 -msgid "Length of time to wait for a search request" -msgstr "" - -#: src/config/SSSDConfig.py:187 -msgid "Length of time to wait for a enumeration request" -msgstr "" - -#: src/config/SSSDConfig.py:188 -msgid "Length of time between enumeration updates" -msgstr "" - -#: src/config/SSSDConfig.py:189 -msgid "Length of time between cache cleanups" -msgstr "" - -#: src/config/SSSDConfig.py:190 -msgid "Require TLS for ID lookups" -msgstr "" - -#: src/config/SSSDConfig.py:191 -msgid "Base DN for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:192 -msgid "Scope of user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:193 -msgid "Filter for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:194 -msgid "Objectclass for users" -msgstr "" - -#: src/config/SSSDConfig.py:195 -msgid "Username attribute" -msgstr "" - -#: src/config/SSSDConfig.py:197 -msgid "UID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:198 -msgid "Primary GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:199 -msgid "GECOS attribute" -msgstr "" - -#: src/config/SSSDConfig.py:200 -msgid "Home directory attribute" -msgstr "" - -#: src/config/SSSDConfig.py:201 -msgid "Shell attribute" -msgstr "" - -#: src/config/SSSDConfig.py:202 -msgid "UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:203 -msgid "User principal attribute (for Kerberos)" -msgstr "" - -#: src/config/SSSDConfig.py:204 -msgid "Full Name" -msgstr "" - -#: src/config/SSSDConfig.py:205 -msgid "memberOf attribute" -msgstr "" - -#: src/config/SSSDConfig.py:206 -msgid "Modification time attribute" -msgstr "" - -#: src/config/SSSDConfig.py:208 -msgid "shadowLastChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:209 -msgid "shadowMin attribute" -msgstr "" - -#: src/config/SSSDConfig.py:210 -msgid "shadowMax attribute" -msgstr "" - -#: src/config/SSSDConfig.py:211 -msgid "shadowWarning attribute" -msgstr "" - -#: src/config/SSSDConfig.py:212 -msgid "shadowInactive attribute" -msgstr "" - -#: src/config/SSSDConfig.py:213 -msgid "shadowExpire attribute" -msgstr "" - -#: src/config/SSSDConfig.py:214 -msgid "shadowFlag attribute" -msgstr "" - -#: src/config/SSSDConfig.py:215 -msgid "Attribute listing authorized PAM services" -msgstr "" - -#: src/config/SSSDConfig.py:216 -msgid "Attribute listing authorized server hosts" -msgstr "" - -#: src/config/SSSDConfig.py:217 -msgid "krbLastPwdChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:218 -msgid "krbPasswordExpiration attribute" -msgstr "" - -#: src/config/SSSDConfig.py:219 -msgid "Attribute indicating that server side password policies are active" -msgstr "" - -#: src/config/SSSDConfig.py:220 -msgid "accountExpires attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:221 -msgid "userAccountControl attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:222 -msgid "nsAccountLock attribute" -msgstr "" - -#: src/config/SSSDConfig.py:223 -msgid "loginDisabled attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:224 -msgid "loginExpirationTime attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:225 -msgid "loginAllowedTimeMap attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:226 -msgid "SSH public key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:228 -msgid "Base DN for group lookups" -msgstr "" - -#: src/config/SSSDConfig.py:231 -msgid "Objectclass for groups" -msgstr "" - -#: src/config/SSSDConfig.py:232 -msgid "Group name" -msgstr "" - -#: src/config/SSSDConfig.py:233 -msgid "Group password" -msgstr "" - -#: src/config/SSSDConfig.py:234 -msgid "GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:235 -msgid "Group member attribute" -msgstr "" - -#: src/config/SSSDConfig.py:236 -msgid "Group UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:237 -msgid "Modification time attribute for groups" -msgstr "" - -#: src/config/SSSDConfig.py:239 -msgid "Maximum nesting level SSSd will follow" -msgstr "" - -#: src/config/SSSDConfig.py:241 -msgid "Base DN for netgroup lookups" -msgstr "" - -#: src/config/SSSDConfig.py:242 -msgid "Objectclass for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:243 -msgid "Netgroup name" -msgstr "" - -#: src/config/SSSDConfig.py:244 -msgid "Netgroups members attribute" -msgstr "" - -#: src/config/SSSDConfig.py:245 -msgid "Netgroup triple attribute" -msgstr "" - -#: src/config/SSSDConfig.py:246 -msgid "Netgroup UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:247 -msgid "Modification time attribute for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:249 -msgid "Base DN for service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:250 -msgid "Objectclass for services" -msgstr "" - -#: src/config/SSSDConfig.py:251 -msgid "Service name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:252 -msgid "Service port attribute" -msgstr "" - -#: src/config/SSSDConfig.py:253 -msgid "Service protocol attribute" -msgstr "" - -#: src/config/SSSDConfig.py:257 -msgid "Policy to evaluate the password expiration" -msgstr "" - -#: src/config/SSSDConfig.py:260 -msgid "LDAP filter to determine access privileges" -msgstr "" - -#: src/config/SSSDConfig.py:261 -msgid "Which attributes shall be used to evaluate if an account is expired" -msgstr "" - -#: src/config/SSSDConfig.py:262 -msgid "Which rules should be used to evaluate access control" -msgstr "" - -#: src/config/SSSDConfig.py:265 -msgid "URI of an LDAP server where password changes are allowed" -msgstr "" - -#: src/config/SSSDConfig.py:266 -msgid "DNS service name for LDAP password change server" -msgstr "" - -#: src/config/SSSDConfig.py:269 -msgid "Base DN for sudo rules lookups" -msgstr "" - -#: src/config/SSSDConfig.py:270 -msgid "Enable periodical update of all sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:271 -msgid "Length of time between rules updates" -msgstr "" - -#: src/config/SSSDConfig.py:272 -msgid "Object class for sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:273 -msgid "Sudo rule name" -msgstr "" - -#: src/config/SSSDConfig.py:274 -msgid "Sudo rule command attribute" -msgstr "" - -#: src/config/SSSDConfig.py:275 -msgid "Sudo rule host attribute" -msgstr "" - -#: src/config/SSSDConfig.py:276 -msgid "Sudo rule user attribute" -msgstr "" - -#: src/config/SSSDConfig.py:277 -msgid "Sudo rule option attribute" -msgstr "" - -#: src/config/SSSDConfig.py:278 -msgid "Sudo rule runasuser attribute" -msgstr "" - -#: src/config/SSSDConfig.py:279 -msgid "Sudo rule runasgroup attribute" -msgstr "" - -#: src/config/SSSDConfig.py:280 -msgid "Sudo rule notbefore attribute" -msgstr "" - -#: src/config/SSSDConfig.py:281 -msgid "Sudo rule notafter attribute" -msgstr "" - -#: src/config/SSSDConfig.py:282 -msgid "Sudo rule order attribute" -msgstr "" - -#: src/config/SSSDConfig.py:285 -msgid "Object class for automounter maps" -msgstr "" - -#: src/config/SSSDConfig.py:286 -msgid "Automounter map name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:287 -msgid "Object class for automounter map entries" -msgstr "" - -#: src/config/SSSDConfig.py:288 -msgid "Automounter map entry key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:289 -msgid "Automounter map entry value attribute" -msgstr "" - -#: src/config/SSSDConfig.py:290 -msgid "Base DN for automounter map lookups" -msgstr "" - -#: src/config/SSSDConfig.py:293 -msgid "Comma separated list of allowed users" -msgstr "" - -#: src/config/SSSDConfig.py:294 -msgid "Comma separated list of prohibited users" -msgstr "" - -#: src/config/SSSDConfig.py:297 -msgid "Default shell, /bin/bash" -msgstr "" - -#: src/config/SSSDConfig.py:298 -msgid "Base for home directories" -msgstr "" - -#: src/config/SSSDConfig.py:301 -msgid "The name of the NSS library to use" -msgstr "" - -#: src/config/SSSDConfig.py:304 -msgid "PAM stack to use" -msgstr "" - -#: src/monitor/monitor.c:2379 -msgid "Become a daemon (default)" -msgstr "" - -#: src/monitor/monitor.c:2381 -msgid "Run interactive (not a daemon)" -msgstr "" - -#: src/monitor/monitor.c:2383 src/tools/sss_debuglevel.c:77 -msgid "Specify a non-default config file" -msgstr "" - -#: src/monitor/monitor.c:2385 -msgid "Print version number and exit" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1575 src/providers/ldap/ldap_child.c:381 -#: src/util/util.h:89 -msgid "Debug level" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1577 src/providers/ldap/ldap_child.c:383 -#: src/util/util.h:93 -msgid "Add debug timestamps" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1579 src/providers/ldap/ldap_child.c:385 -#: src/util/util.h:95 -msgid "Show timestamps with microseconds" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1581 src/providers/ldap/ldap_child.c:387 -msgid "An open file descriptor for the debug logs" -msgstr "" - -#: src/providers/data_provider_be.c:1938 -msgid "Domain of the information provider (mandatory)" -msgstr "" - -#: src/sss_client/common.c:878 -msgid "Privileged socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:881 -msgid "Public socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:884 -msgid "Unexpected format of the server credential message." -msgstr "" - -#: src/sss_client/common.c:887 -msgid "SSSD is not run by root." -msgstr "" - -#: src/sss_client/common.c:892 -msgid "An error occurred, but no description can be found." -msgstr "" - -#: src/sss_client/common.c:898 -msgid "Unexpected error while looking for an error description" -msgstr "" - -#: src/sss_client/pam_sss.c:378 -msgid "Passwords do not match" -msgstr "" - -#: src/sss_client/pam_sss.c:571 -msgid "Password reset by root is not supported." -msgstr "" - -#: src/sss_client/pam_sss.c:612 -msgid "Authenticated with cached credentials" -msgstr "" - -#: src/sss_client/pam_sss.c:613 -msgid ", your cached password will expire at: " -msgstr "" - -#: src/sss_client/pam_sss.c:643 -#, c-format -msgid "Your password has expired. You have %d grace login(s) remaining." -msgstr "" - -#: src/sss_client/pam_sss.c:689 -#, c-format -msgid "Your password will expire in %d %s." -msgstr "" - -#: src/sss_client/pam_sss.c:738 -msgid "Authentication is denied until: " -msgstr "" - -#: src/sss_client/pam_sss.c:759 -msgid "System is offline, password change not possible" -msgstr "" - -#: src/sss_client/pam_sss.c:789 src/sss_client/pam_sss.c:802 -msgid "Password change failed. " -msgstr "" - -#: src/sss_client/pam_sss.c:792 src/sss_client/pam_sss.c:803 -msgid "Server message: " -msgstr "" - -#: src/sss_client/pam_sss.c:1286 -msgid "New Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1287 -msgid "Reenter new Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1373 -msgid "Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1405 -msgid "Current Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1552 -msgid "Password expired. Change your password now." -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:40 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:211 src/tools/sss_useradd.c:48 -#: src/tools/sss_groupadd.c:41 src/tools/sss_groupdel.c:43 -#: src/tools/sss_groupmod.c:42 src/tools/sss_groupshow.c:615 -#: src/tools/sss_userdel.c:131 src/tools/sss_usermod.c:47 -#: src/tools/sss_cache.c:260 src/tools/sss_debuglevel.c:75 -msgid "The debug level to run with" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:42 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:215 -msgid "The SSSD domain to use" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:58 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:229 src/tools/sss_useradd.c:71 -#: src/tools/sss_groupadd.c:56 src/tools/sss_groupdel.c:52 -#: src/tools/sss_groupmod.c:63 src/tools/sss_groupshow.c:626 -#: src/tools/sss_userdel.c:148 src/tools/sss_usermod.c:72 -#: src/tools/sss_cache.c:281 -msgid "Error setting the locale\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:65 -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:91 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:236 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:269 -msgid "Not enough memory\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:84 -msgid "User not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:104 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:282 -msgid "Error looking up public keys\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:94 -msgid "Failed to open a socket\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:104 -msgid "Failed to connect to the server\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:195 -msgid "Failed to execute proxy command\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:213 -msgid "The port to use to connect to the host" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:255 -msgid "Host not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:261 -msgid "The path to the proxy command must be absolute\n" -msgstr "" - -#: src/tools/sss_useradd.c:49 src/tools/sss_usermod.c:48 -msgid "The UID of the user" -msgstr "" - -#: src/tools/sss_useradd.c:50 src/tools/sss_usermod.c:50 -msgid "The comment string" -msgstr "" - -#: src/tools/sss_useradd.c:51 src/tools/sss_usermod.c:51 -msgid "Home directory" -msgstr "" - -#: src/tools/sss_useradd.c:52 src/tools/sss_usermod.c:52 -msgid "Login shell" -msgstr "" - -#: src/tools/sss_useradd.c:53 -msgid "Groups" -msgstr "" - -#: src/tools/sss_useradd.c:54 -msgid "Create user's directory if it does not exist" -msgstr "" - -#: src/tools/sss_useradd.c:55 -msgid "Never create user's directory, overrides config" -msgstr "" - -#: src/tools/sss_useradd.c:56 -msgid "Specify an alternative skeleton directory" -msgstr "" - -#: src/tools/sss_useradd.c:57 src/tools/sss_usermod.c:57 -msgid "The SELinux user for user's login" -msgstr "" - -#: src/tools/sss_useradd.c:84 src/tools/sss_groupmod.c:76 -#: src/tools/sss_usermod.c:85 -msgid "Specify group to add to\n" -msgstr "" - -#: src/tools/sss_useradd.c:108 -msgid "Specify user to add\n" -msgstr "" - -#: src/tools/sss_useradd.c:117 src/tools/sss_groupadd.c:82 -#: src/tools/sss_groupdel.c:77 src/tools/sss_groupmod.c:109 -#: src/tools/sss_groupshow.c:659 src/tools/sss_userdel.c:193 -#: src/tools/sss_usermod.c:126 -msgid "Error initializing the tools - no local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:119 src/tools/sss_groupadd.c:84 -#: src/tools/sss_groupdel.c:79 src/tools/sss_groupmod.c:111 -#: src/tools/sss_groupshow.c:661 src/tools/sss_userdel.c:195 -#: src/tools/sss_usermod.c:128 -msgid "Error initializing the tools\n" -msgstr "" - -#: src/tools/sss_useradd.c:128 src/tools/sss_groupadd.c:93 -#: src/tools/sss_groupdel.c:88 src/tools/sss_groupmod.c:119 -#: src/tools/sss_groupshow.c:670 src/tools/sss_userdel.c:204 -#: src/tools/sss_usermod.c:137 -msgid "Invalid domain specified in FQDN\n" -msgstr "" - -#: src/tools/sss_useradd.c:137 src/tools/sss_groupmod.c:139 -#: src/tools/sss_groupmod.c:166 src/tools/sss_usermod.c:160 -#: src/tools/sss_usermod.c:187 -msgid "Internal error while parsing parameters\n" -msgstr "" - -#: src/tools/sss_useradd.c:145 src/tools/sss_usermod.c:168 -#: src/tools/sss_usermod.c:195 -msgid "Groups must be in the same domain as user\n" -msgstr "" - -#: src/tools/sss_useradd.c:153 -#, c-format -msgid "Cannot find group %s in local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:168 src/tools/sss_userdel.c:214 -msgid "Cannot set default values\n" -msgstr "" - -#: src/tools/sss_useradd.c:175 src/tools/sss_usermod.c:151 -msgid "The selected UID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_useradd.c:202 src/tools/sss_usermod.c:236 -msgid "Cannot set SELinux login context\n" -msgstr "" - -#: src/tools/sss_useradd.c:217 -msgid "Cannot get info about the user\n" -msgstr "" - -#: src/tools/sss_useradd.c:229 -msgid "User's home directory already exists, not copying data from skeldir\n" -msgstr "" - -#: src/tools/sss_useradd.c:232 -#, c-format -msgid "Cannot create user's home directory: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:243 -#, c-format -msgid "Cannot create user's mail spool: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:255 -msgid "Could not allocate ID for the user - domain full?\n" -msgstr "" - -#: src/tools/sss_useradd.c:259 -msgid "A user or group with the same name or ID already exists\n" -msgstr "" - -#: src/tools/sss_useradd.c:265 -msgid "Transaction error. Could not add user.\n" -msgstr "" - -#: src/tools/sss_groupadd.c:43 src/tools/sss_groupmod.c:48 -msgid "The GID of the group" -msgstr "" - -#: src/tools/sss_groupadd.c:73 -msgid "Specify group to add\n" -msgstr "" - -#: src/tools/sss_groupadd.c:102 src/tools/sss_groupmod.c:190 -msgid "The selected GID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_groupadd.c:127 -msgid "Could not allocate ID for the group - domain full?\n" -msgstr "" - -#: src/tools/sss_groupadd.c:131 -msgid "A group with the same name or GID already exists\n" -msgstr "" - -#: src/tools/sss_groupadd.c:136 -msgid "Transaction error. Could not add group.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:68 -msgid "Specify group to delete\n" -msgstr "" - -#: src/tools/sss_groupdel.c:101 -#, c-format -msgid "Group %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_groupdel.c:115 -msgid "" -"No such group in local domain. Removing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:120 -msgid "Internal error. Could not remove group.\n" -msgstr "" - -#: src/tools/sss_groupmod.c:44 -msgid "Groups to add this group to" -msgstr "" - -#: src/tools/sss_groupmod.c:46 -msgid "Groups to remove this group from" -msgstr "" - -#: src/tools/sss_groupmod.c:84 src/tools/sss_usermod.c:93 -msgid "Specify group to remove from\n" -msgstr "" - -#: src/tools/sss_groupmod.c:98 -msgid "Specify group to modify\n" -msgstr "" - -#: src/tools/sss_groupmod.c:126 -msgid "" -"Cannot find group in local domain, modifying groups is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_groupmod.c:147 src/tools/sss_groupmod.c:174 -msgid "Member groups must be in the same domain as parent group\n" -msgstr "" - -#: src/tools/sss_groupmod.c:155 src/tools/sss_groupmod.c:182 -#: src/tools/sss_usermod.c:176 src/tools/sss_usermod.c:203 -#, c-format -msgid "" -"Cannot find group %s in local domain, only groups in local domain are " -"allowed\n" -msgstr "" - -#: src/tools/sss_groupmod.c:216 -msgid "Could not modify group - check if member group names are correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:220 -msgid "Could not modify group - check if groupname is correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:224 -msgid "Transaction error. Could not modify group.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:562 -#, c-format -msgid "%s%sGroup: %s\n" -msgstr "" - -#: src/tools/sss_groupshow.c:563 -msgid "Magic Private " -msgstr "" - -#: src/tools/sss_groupshow.c:565 -#, c-format -msgid "%sGID number: %d\n" -msgstr "" - -#: src/tools/sss_groupshow.c:567 -#, c-format -msgid "%sMember users: " -msgstr "" - -#: src/tools/sss_groupshow.c:574 -#, c-format -msgid "" -"\n" -"%sIs a member of: " -msgstr "" - -#: src/tools/sss_groupshow.c:581 -#, c-format -msgid "" -"\n" -"%sMember groups: " -msgstr "" - -#: src/tools/sss_groupshow.c:617 -msgid "Print indirect group members recursively" -msgstr "" - -#: src/tools/sss_groupshow.c:650 -msgid "Specify group to show\n" -msgstr "" - -#: src/tools/sss_groupshow.c:689 -msgid "" -"No such group in local domain. Printing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:694 -msgid "Internal error. Could not print group.\n" -msgstr "" - -#: src/tools/sss_userdel.c:133 -msgid "Remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:135 -msgid "Do not remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:137 -msgid "Force removal of files not owned by the user" -msgstr "" - -#: src/tools/sss_userdel.c:139 -msgid "Kill users' processes before removing him" -msgstr "" - -#: src/tools/sss_userdel.c:184 -msgid "Specify user to delete\n" -msgstr "" - -#: src/tools/sss_userdel.c:230 -#, c-format -msgid "User %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_userdel.c:255 -msgid "Cannot reset SELinux login context\n" -msgstr "" - -#: src/tools/sss_userdel.c:267 -#, c-format -msgid "WARNING: The user (uid %lu) was still logged in when deleted.\n" -msgstr "" - -#: src/tools/sss_userdel.c:272 -msgid "Cannot determine if the user was logged in on this platform" -msgstr "" - -#: src/tools/sss_userdel.c:277 -msgid "Error while checking if the user was logged in\n" -msgstr "" - -#: src/tools/sss_userdel.c:284 -#, c-format -msgid "The post-delete command failed: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:296 -msgid "Not removing home dir - not owned by user\n" -msgstr "" - -#: src/tools/sss_userdel.c:298 -#, c-format -msgid "Cannot remove homedir: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:309 -msgid "" -"No such user in local domain. Removing users only allowed in local domain.\n" -msgstr "" - -#: src/tools/sss_userdel.c:314 -msgid "Internal error. Could not remove user.\n" -msgstr "" - -#: src/tools/sss_usermod.c:49 -msgid "The GID of the user" -msgstr "" - -#: src/tools/sss_usermod.c:53 -msgid "Groups to add this user to" -msgstr "" - -#: src/tools/sss_usermod.c:54 -msgid "Groups to remove this user from" -msgstr "" - -#: src/tools/sss_usermod.c:55 -msgid "Lock the account" -msgstr "" - -#: src/tools/sss_usermod.c:56 -msgid "Unlock the account" -msgstr "" - -#: src/tools/sss_usermod.c:117 -msgid "Specify user to modify\n" -msgstr "" - -#: src/tools/sss_usermod.c:144 -msgid "" -"Cannot find user in local domain, modifying users is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_usermod.c:246 -msgid "Could not modify user - check if group names are correct\n" -msgstr "" - -#: src/tools/sss_usermod.c:250 -msgid "Could not modify user - user already member of groups?\n" -msgstr "" - -#: src/tools/sss_usermod.c:254 -msgid "Transaction error. Could not modify user.\n" -msgstr "" - -#: src/tools/sss_cache.c:132 -#, c-format -msgid "Couldn't invalidate %s" -msgstr "" - -#: src/tools/sss_cache.c:138 -#, c-format -msgid "Couldn't invalidate %s %s" -msgstr "" - -#: src/tools/sss_cache.c:262 -msgid "Invalidate particular user" -msgstr "" - -#: src/tools/sss_cache.c:264 -msgid "Invalidate all users" -msgstr "" - -#: src/tools/sss_cache.c:266 -msgid "Invalidate particular group" -msgstr "" - -#: src/tools/sss_cache.c:268 -msgid "Invalidate all groups" -msgstr "" - -#: src/tools/sss_cache.c:270 -msgid "Invalidate particular netgroup" -msgstr "" - -#: src/tools/sss_cache.c:272 -msgid "Invalidate all netgroups" -msgstr "" - -#: src/tools/sss_cache.c:274 -msgid "Only invalidate entries from a particular domain" -msgstr "" - -#: src/tools/sss_debuglevel.c:43 -msgid "\n" -msgstr "" - -#: src/tools/sss_debuglevel.c:102 -msgid "Specify debug level you want to set\n" -msgstr "" - -#: src/tools/tools_util.c:286 -msgid "Out of memory\n" -msgstr "" - -#: src/tools/tools_util.h:40 -#, c-format -msgid "%s must be run as root\n" -msgstr "" - -#: src/util/util.h:91 -msgid "Send the debug output to files instead of stderr" -msgstr "" diff --git a/po/fi.po b/po/fi.po deleted file mode 100644 index 64932ba10..000000000 --- a/po/fi.po +++ /dev/null @@ -1,1463 +0,0 @@ -# SOME DESCRIPTIVE TITLE. -# Copyright (C) YEAR Red Hat, Inc. -# This file is distributed under the same license as the PACKAGE package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@lists.fedorahosted.org\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-11-30 04:10+0000\n" -"Last-Translator: FULL NAME \n" -"Language-Team: Finnish (http://www.transifex.net/projects/p/fedora/team/" -"fi/)\n" -"Language: fi\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=2; plural=(n != 1)\n" - -#: src/config/SSSDConfig.py:39 -msgid "Set the verbosity of the debug logging" -msgstr "" - -#: src/config/SSSDConfig.py:40 -msgid "Include timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:41 -msgid "Include microseconds in timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:42 -msgid "Write debug messages to logfiles" -msgstr "" - -#: src/config/SSSDConfig.py:43 -msgid "Ping timeout before restarting service" -msgstr "" - -#: src/config/SSSDConfig.py:44 -msgid "Command to start service" -msgstr "" - -#: src/config/SSSDConfig.py:45 -msgid "Number of times to attempt connection to Data Providers" -msgstr "" - -#: src/config/SSSDConfig.py:48 -msgid "SSSD Services to start" -msgstr "" - -#: src/config/SSSDConfig.py:49 -msgid "SSSD Domains to start" -msgstr "" - -#: src/config/SSSDConfig.py:50 -msgid "Timeout for messages sent over the SBUS" -msgstr "" - -#: src/config/SSSDConfig.py:51 -msgid "Regex to parse username and domain" -msgstr "" - -#: src/config/SSSDConfig.py:52 -msgid "Printf-compatible format for displaying fully-qualified names" -msgstr "" - -#: src/config/SSSDConfig.py:53 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#: src/config/SSSDConfig.py:56 -msgid "Enumeration cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:57 -msgid "Entry cache background update timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:58 src/config/SSSDConfig.py:81 -msgid "Negative cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:59 -msgid "Users that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:60 -msgid "Groups that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:61 -msgid "Should filtered users appear in groups" -msgstr "" - -#: src/config/SSSDConfig.py:62 -msgid "The value of the password field the NSS provider should return" -msgstr "" - -#: src/config/SSSDConfig.py:63 -msgid "Override homedir value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:64 -msgid "The list of shells users are allowed to log in with" -msgstr "" - -#: src/config/SSSDConfig.py:65 -msgid "" -"The list of shells that will be vetoed, and replaced with the fallback shell" -msgstr "" - -#: src/config/SSSDConfig.py:66 -msgid "" -"If a shell stored in central directory is allowed but not available, use " -"this fallback" -msgstr "" - -#: src/config/SSSDConfig.py:69 -msgid "How long to allow cached logins between online logins (days)" -msgstr "" - -#: src/config/SSSDConfig.py:70 -msgid "How many failed logins attempts are allowed when offline" -msgstr "" - -#: src/config/SSSDConfig.py:71 -msgid "" -"How long (minutes) to deny login after offline_failed_login_attempts has " -"been reached" -msgstr "" - -#: src/config/SSSDConfig.py:72 -msgid "What kind of messages are displayed to the user during authentication" -msgstr "" - -#: src/config/SSSDConfig.py:73 -msgid "How many seconds to keep identity information cached for PAM requests" -msgstr "" - -#: src/config/SSSDConfig.py:74 -msgid "How many days before password expiration a warning should be displayed" -msgstr "" - -#: src/config/SSSDConfig.py:77 -msgid "Whether to evaluate the time-based attributes in sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:78 -msgid "" -"How many seconds to keep sudorules cached before asking the provider again" -msgstr "" - -#: src/config/SSSDConfig.py:84 -msgid "Identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:85 -msgid "Authentication provider" -msgstr "" - -#: src/config/SSSDConfig.py:86 -msgid "Access control provider" -msgstr "" - -#: src/config/SSSDConfig.py:87 -msgid "Password change provider" -msgstr "" - -#: src/config/SSSDConfig.py:88 -msgid "SUDO provider" -msgstr "" - -#: src/config/SSSDConfig.py:89 -msgid "Autofs provider" -msgstr "" - -#: src/config/SSSDConfig.py:90 -msgid "Session-loading provider" -msgstr "" - -#: src/config/SSSDConfig.py:91 -msgid "Host identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:94 -msgid "Minimum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:95 -msgid "Maximum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:96 -msgid "Enable enumerating all users/groups" -msgstr "" - -#: src/config/SSSDConfig.py:97 -msgid "Cache credentials for offline login" -msgstr "" - -#: src/config/SSSDConfig.py:98 -msgid "Store password hashes" -msgstr "" - -#: src/config/SSSDConfig.py:99 -msgid "Display users/groups in fully-qualified form" -msgstr "" - -#: src/config/SSSDConfig.py:100 src/config/SSSDConfig.py:107 -#: src/config/SSSDConfig.py:108 src/config/SSSDConfig.py:109 -#: src/config/SSSDConfig.py:110 src/config/SSSDConfig.py:111 -msgid "Entry cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:101 -msgid "" -"Restrict or prefer a specific address family when performing DNS lookups" -msgstr "" - -#: src/config/SSSDConfig.py:102 -msgid "How long to keep cached entries after last successful login (days)" -msgstr "" - -#: src/config/SSSDConfig.py:103 -msgid "How long to wait for replies from DNS when resolving servers (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:104 -msgid "The domain part of service discovery DNS query" -msgstr "" - -#: src/config/SSSDConfig.py:105 -msgid "Override GID value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:106 -msgid "Treat usernames as case sensitive" -msgstr "" - -#: src/config/SSSDConfig.py:114 -msgid "IPA domain" -msgstr "" - -#: src/config/SSSDConfig.py:115 -msgid "IPA server address" -msgstr "" - -#: src/config/SSSDConfig.py:116 -msgid "IPA client hostname" -msgstr "" - -#: src/config/SSSDConfig.py:117 -msgid "Whether to automatically update the client's DNS entry in FreeIPA" -msgstr "" - -#: src/config/SSSDConfig.py:118 -msgid "The interface whose IP should be used for dynamic DNS updates" -msgstr "" - -#: src/config/SSSDConfig.py:119 -msgid "Search base for HBAC related objects" -msgstr "" - -#: src/config/SSSDConfig.py:120 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server" -msgstr "" - -#: src/config/SSSDConfig.py:121 -msgid "If DENY rules are present, either DENY_ALL or IGNORE" -msgstr "" - -#: src/config/SSSDConfig.py:122 -msgid "If set to false, host argument given by PAM will be ignored" -msgstr "" - -#: src/config/SSSDConfig.py:123 -msgid "The automounter location this IPA client is using" -msgstr "" - -#: src/config/SSSDConfig.py:126 src/config/SSSDConfig.py:127 -msgid "Kerberos server address" -msgstr "" - -#: src/config/SSSDConfig.py:128 -msgid "Kerberos realm" -msgstr "" - -#: src/config/SSSDConfig.py:129 -msgid "Authentication timeout" -msgstr "" - -#: src/config/SSSDConfig.py:132 -msgid "Directory to store credential caches" -msgstr "" - -#: src/config/SSSDConfig.py:133 -msgid "Location of the user's credential cache" -msgstr "" - -#: src/config/SSSDConfig.py:134 -msgid "Location of the keytab to validate credentials" -msgstr "" - -#: src/config/SSSDConfig.py:135 -msgid "Enable credential validation" -msgstr "" - -#: src/config/SSSDConfig.py:136 -msgid "Store password if offline for later online authentication" -msgstr "" - -#: src/config/SSSDConfig.py:137 -msgid "Renewable lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:138 -msgid "Lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:139 -msgid "Time between two checks for renewal" -msgstr "" - -#: src/config/SSSDConfig.py:140 -msgid "Enables FAST" -msgstr "" - -#: src/config/SSSDConfig.py:141 -msgid "Selects the principal to use for FAST" -msgstr "" - -#: src/config/SSSDConfig.py:142 -msgid "Enables principal canonicalization" -msgstr "" - -#: src/config/SSSDConfig.py:145 -msgid "Server where the change password service is running if not on the KDC" -msgstr "" - -#: src/config/SSSDConfig.py:148 -msgid "ldap_uri, The URI of the LDAP server" -msgstr "" - -#: src/config/SSSDConfig.py:149 -msgid "The default base DN" -msgstr "" - -#: src/config/SSSDConfig.py:150 -msgid "The Schema Type in use on the LDAP server, rfc2307" -msgstr "" - -#: src/config/SSSDConfig.py:151 -msgid "The default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:152 -msgid "The type of the authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:153 -msgid "The authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:154 -msgid "Length of time to attempt connection" -msgstr "" - -#: src/config/SSSDConfig.py:155 -msgid "Length of time to attempt synchronous LDAP operations" -msgstr "" - -#: src/config/SSSDConfig.py:156 -msgid "Length of time between attempts to reconnect while offline" -msgstr "" - -#: src/config/SSSDConfig.py:157 -msgid "Use only the upper case for realm names" -msgstr "" - -#: src/config/SSSDConfig.py:158 -msgid "File that contains CA certificates" -msgstr "" - -#: src/config/SSSDConfig.py:159 -msgid "Path to CA certificate directory" -msgstr "" - -#: src/config/SSSDConfig.py:160 -msgid "File that contains the client certificate" -msgstr "" - -#: src/config/SSSDConfig.py:161 -msgid "File that contains the client key" -msgstr "" - -#: src/config/SSSDConfig.py:162 -msgid "List of possible ciphers suites" -msgstr "" - -#: src/config/SSSDConfig.py:163 -msgid "Require TLS certificate verification" -msgstr "" - -#: src/config/SSSDConfig.py:164 -msgid "Specify the sasl mechanism to use" -msgstr "" - -#: src/config/SSSDConfig.py:165 -msgid "Specify the sasl authorization id to use" -msgstr "" - -#: src/config/SSSDConfig.py:166 -msgid "Specify the sasl authorization realm to use" -msgstr "" - -#: src/config/SSSDConfig.py:167 -msgid "Specify the minimal SSF for LDAP sasl authorization" -msgstr "" - -#: src/config/SSSDConfig.py:168 -msgid "Kerberos service keytab" -msgstr "" - -#: src/config/SSSDConfig.py:169 -msgid "Use Kerberos auth for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:170 -msgid "Follow LDAP referrals" -msgstr "" - -#: src/config/SSSDConfig.py:171 -msgid "Lifetime of TGT for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:172 -msgid "How to dereference aliases" -msgstr "" - -#: src/config/SSSDConfig.py:173 -msgid "Service name for DNS service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:174 -msgid "The number of records to retrieve in a single LDAP query" -msgstr "" - -#: src/config/SSSDConfig.py:175 -msgid "The number of members that must be missing to trigger a full deref" -msgstr "" - -#: src/config/SSSDConfig.py:176 -msgid "" -"Whether the LDAP library should perform a reverse lookup to canonicalize the " -"host name during a SASL bind" -msgstr "" - -#: src/config/SSSDConfig.py:178 -msgid "entryUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:179 -msgid "lastUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:181 -msgid "How long to retain a connection to the LDAP server before disconnecting" -msgstr "" - -#: src/config/SSSDConfig.py:183 -msgid "Disable the LDAP paging control" -msgstr "" - -#: src/config/SSSDConfig.py:186 -msgid "Length of time to wait for a search request" -msgstr "" - -#: src/config/SSSDConfig.py:187 -msgid "Length of time to wait for a enumeration request" -msgstr "" - -#: src/config/SSSDConfig.py:188 -msgid "Length of time between enumeration updates" -msgstr "" - -#: src/config/SSSDConfig.py:189 -msgid "Length of time between cache cleanups" -msgstr "" - -#: src/config/SSSDConfig.py:190 -msgid "Require TLS for ID lookups" -msgstr "" - -#: src/config/SSSDConfig.py:191 -msgid "Base DN for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:192 -msgid "Scope of user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:193 -msgid "Filter for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:194 -msgid "Objectclass for users" -msgstr "" - -#: src/config/SSSDConfig.py:195 -msgid "Username attribute" -msgstr "" - -#: src/config/SSSDConfig.py:197 -msgid "UID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:198 -msgid "Primary GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:199 -msgid "GECOS attribute" -msgstr "" - -#: src/config/SSSDConfig.py:200 -msgid "Home directory attribute" -msgstr "" - -#: src/config/SSSDConfig.py:201 -msgid "Shell attribute" -msgstr "" - -#: src/config/SSSDConfig.py:202 -msgid "UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:203 -msgid "User principal attribute (for Kerberos)" -msgstr "" - -#: src/config/SSSDConfig.py:204 -msgid "Full Name" -msgstr "" - -#: src/config/SSSDConfig.py:205 -msgid "memberOf attribute" -msgstr "" - -#: src/config/SSSDConfig.py:206 -msgid "Modification time attribute" -msgstr "" - -#: src/config/SSSDConfig.py:208 -msgid "shadowLastChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:209 -msgid "shadowMin attribute" -msgstr "" - -#: src/config/SSSDConfig.py:210 -msgid "shadowMax attribute" -msgstr "" - -#: src/config/SSSDConfig.py:211 -msgid "shadowWarning attribute" -msgstr "" - -#: src/config/SSSDConfig.py:212 -msgid "shadowInactive attribute" -msgstr "" - -#: src/config/SSSDConfig.py:213 -msgid "shadowExpire attribute" -msgstr "" - -#: src/config/SSSDConfig.py:214 -msgid "shadowFlag attribute" -msgstr "" - -#: src/config/SSSDConfig.py:215 -msgid "Attribute listing authorized PAM services" -msgstr "" - -#: src/config/SSSDConfig.py:216 -msgid "Attribute listing authorized server hosts" -msgstr "" - -#: src/config/SSSDConfig.py:217 -msgid "krbLastPwdChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:218 -msgid "krbPasswordExpiration attribute" -msgstr "" - -#: src/config/SSSDConfig.py:219 -msgid "Attribute indicating that server side password policies are active" -msgstr "" - -#: src/config/SSSDConfig.py:220 -msgid "accountExpires attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:221 -msgid "userAccountControl attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:222 -msgid "nsAccountLock attribute" -msgstr "" - -#: src/config/SSSDConfig.py:223 -msgid "loginDisabled attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:224 -msgid "loginExpirationTime attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:225 -msgid "loginAllowedTimeMap attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:226 -msgid "SSH public key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:228 -msgid "Base DN for group lookups" -msgstr "" - -#: src/config/SSSDConfig.py:231 -msgid "Objectclass for groups" -msgstr "" - -#: src/config/SSSDConfig.py:232 -msgid "Group name" -msgstr "" - -#: src/config/SSSDConfig.py:233 -msgid "Group password" -msgstr "" - -#: src/config/SSSDConfig.py:234 -msgid "GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:235 -msgid "Group member attribute" -msgstr "" - -#: src/config/SSSDConfig.py:236 -msgid "Group UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:237 -msgid "Modification time attribute for groups" -msgstr "" - -#: src/config/SSSDConfig.py:239 -msgid "Maximum nesting level SSSd will follow" -msgstr "" - -#: src/config/SSSDConfig.py:241 -msgid "Base DN for netgroup lookups" -msgstr "" - -#: src/config/SSSDConfig.py:242 -msgid "Objectclass for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:243 -msgid "Netgroup name" -msgstr "" - -#: src/config/SSSDConfig.py:244 -msgid "Netgroups members attribute" -msgstr "" - -#: src/config/SSSDConfig.py:245 -msgid "Netgroup triple attribute" -msgstr "" - -#: src/config/SSSDConfig.py:246 -msgid "Netgroup UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:247 -msgid "Modification time attribute for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:249 -msgid "Base DN for service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:250 -msgid "Objectclass for services" -msgstr "" - -#: src/config/SSSDConfig.py:251 -msgid "Service name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:252 -msgid "Service port attribute" -msgstr "" - -#: src/config/SSSDConfig.py:253 -msgid "Service protocol attribute" -msgstr "" - -#: src/config/SSSDConfig.py:257 -msgid "Policy to evaluate the password expiration" -msgstr "" - -#: src/config/SSSDConfig.py:260 -msgid "LDAP filter to determine access privileges" -msgstr "" - -#: src/config/SSSDConfig.py:261 -msgid "Which attributes shall be used to evaluate if an account is expired" -msgstr "" - -#: src/config/SSSDConfig.py:262 -msgid "Which rules should be used to evaluate access control" -msgstr "" - -#: src/config/SSSDConfig.py:265 -msgid "URI of an LDAP server where password changes are allowed" -msgstr "" - -#: src/config/SSSDConfig.py:266 -msgid "DNS service name for LDAP password change server" -msgstr "" - -#: src/config/SSSDConfig.py:269 -msgid "Base DN for sudo rules lookups" -msgstr "" - -#: src/config/SSSDConfig.py:270 -msgid "Enable periodical update of all sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:271 -msgid "Length of time between rules updates" -msgstr "" - -#: src/config/SSSDConfig.py:272 -msgid "Object class for sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:273 -msgid "Sudo rule name" -msgstr "" - -#: src/config/SSSDConfig.py:274 -msgid "Sudo rule command attribute" -msgstr "" - -#: src/config/SSSDConfig.py:275 -msgid "Sudo rule host attribute" -msgstr "" - -#: src/config/SSSDConfig.py:276 -msgid "Sudo rule user attribute" -msgstr "" - -#: src/config/SSSDConfig.py:277 -msgid "Sudo rule option attribute" -msgstr "" - -#: src/config/SSSDConfig.py:278 -msgid "Sudo rule runasuser attribute" -msgstr "" - -#: src/config/SSSDConfig.py:279 -msgid "Sudo rule runasgroup attribute" -msgstr "" - -#: src/config/SSSDConfig.py:280 -msgid "Sudo rule notbefore attribute" -msgstr "" - -#: src/config/SSSDConfig.py:281 -msgid "Sudo rule notafter attribute" -msgstr "" - -#: src/config/SSSDConfig.py:282 -msgid "Sudo rule order attribute" -msgstr "" - -#: src/config/SSSDConfig.py:285 -msgid "Object class for automounter maps" -msgstr "" - -#: src/config/SSSDConfig.py:286 -msgid "Automounter map name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:287 -msgid "Object class for automounter map entries" -msgstr "" - -#: src/config/SSSDConfig.py:288 -msgid "Automounter map entry key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:289 -msgid "Automounter map entry value attribute" -msgstr "" - -#: src/config/SSSDConfig.py:290 -msgid "Base DN for automounter map lookups" -msgstr "" - -#: src/config/SSSDConfig.py:293 -msgid "Comma separated list of allowed users" -msgstr "" - -#: src/config/SSSDConfig.py:294 -msgid "Comma separated list of prohibited users" -msgstr "" - -#: src/config/SSSDConfig.py:297 -msgid "Default shell, /bin/bash" -msgstr "" - -#: src/config/SSSDConfig.py:298 -msgid "Base for home directories" -msgstr "" - -#: src/config/SSSDConfig.py:301 -msgid "The name of the NSS library to use" -msgstr "" - -#: src/config/SSSDConfig.py:304 -msgid "PAM stack to use" -msgstr "" - -#: src/monitor/monitor.c:2379 -msgid "Become a daemon (default)" -msgstr "" - -#: src/monitor/monitor.c:2381 -msgid "Run interactive (not a daemon)" -msgstr "" - -#: src/monitor/monitor.c:2383 src/tools/sss_debuglevel.c:77 -msgid "Specify a non-default config file" -msgstr "" - -#: src/monitor/monitor.c:2385 -msgid "Print version number and exit" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1575 src/providers/ldap/ldap_child.c:381 -#: src/util/util.h:89 -msgid "Debug level" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1577 src/providers/ldap/ldap_child.c:383 -#: src/util/util.h:93 -msgid "Add debug timestamps" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1579 src/providers/ldap/ldap_child.c:385 -#: src/util/util.h:95 -msgid "Show timestamps with microseconds" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1581 src/providers/ldap/ldap_child.c:387 -msgid "An open file descriptor for the debug logs" -msgstr "" - -#: src/providers/data_provider_be.c:1938 -msgid "Domain of the information provider (mandatory)" -msgstr "" - -#: src/sss_client/common.c:878 -msgid "Privileged socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:881 -msgid "Public socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:884 -msgid "Unexpected format of the server credential message." -msgstr "" - -#: src/sss_client/common.c:887 -msgid "SSSD is not run by root." -msgstr "" - -#: src/sss_client/common.c:892 -msgid "An error occurred, but no description can be found." -msgstr "" - -#: src/sss_client/common.c:898 -msgid "Unexpected error while looking for an error description" -msgstr "" - -#: src/sss_client/pam_sss.c:378 -msgid "Passwords do not match" -msgstr "" - -#: src/sss_client/pam_sss.c:571 -msgid "Password reset by root is not supported." -msgstr "" - -#: src/sss_client/pam_sss.c:612 -msgid "Authenticated with cached credentials" -msgstr "" - -#: src/sss_client/pam_sss.c:613 -msgid ", your cached password will expire at: " -msgstr "" - -#: src/sss_client/pam_sss.c:643 -#, c-format -msgid "Your password has expired. You have %d grace login(s) remaining." -msgstr "" - -#: src/sss_client/pam_sss.c:689 -#, c-format -msgid "Your password will expire in %d %s." -msgstr "" - -#: src/sss_client/pam_sss.c:738 -msgid "Authentication is denied until: " -msgstr "" - -#: src/sss_client/pam_sss.c:759 -msgid "System is offline, password change not possible" -msgstr "" - -#: src/sss_client/pam_sss.c:789 src/sss_client/pam_sss.c:802 -msgid "Password change failed. " -msgstr "" - -#: src/sss_client/pam_sss.c:792 src/sss_client/pam_sss.c:803 -msgid "Server message: " -msgstr "" - -#: src/sss_client/pam_sss.c:1286 -msgid "New Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1287 -msgid "Reenter new Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1373 -msgid "Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1405 -msgid "Current Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1552 -msgid "Password expired. Change your password now." -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:40 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:211 src/tools/sss_useradd.c:48 -#: src/tools/sss_groupadd.c:41 src/tools/sss_groupdel.c:43 -#: src/tools/sss_groupmod.c:42 src/tools/sss_groupshow.c:615 -#: src/tools/sss_userdel.c:131 src/tools/sss_usermod.c:47 -#: src/tools/sss_cache.c:260 src/tools/sss_debuglevel.c:75 -msgid "The debug level to run with" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:42 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:215 -msgid "The SSSD domain to use" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:58 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:229 src/tools/sss_useradd.c:71 -#: src/tools/sss_groupadd.c:56 src/tools/sss_groupdel.c:52 -#: src/tools/sss_groupmod.c:63 src/tools/sss_groupshow.c:626 -#: src/tools/sss_userdel.c:148 src/tools/sss_usermod.c:72 -#: src/tools/sss_cache.c:281 -msgid "Error setting the locale\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:65 -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:91 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:236 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:269 -msgid "Not enough memory\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:84 -msgid "User not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:104 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:282 -msgid "Error looking up public keys\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:94 -msgid "Failed to open a socket\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:104 -msgid "Failed to connect to the server\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:195 -msgid "Failed to execute proxy command\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:213 -msgid "The port to use to connect to the host" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:255 -msgid "Host not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:261 -msgid "The path to the proxy command must be absolute\n" -msgstr "" - -#: src/tools/sss_useradd.c:49 src/tools/sss_usermod.c:48 -msgid "The UID of the user" -msgstr "" - -#: src/tools/sss_useradd.c:50 src/tools/sss_usermod.c:50 -msgid "The comment string" -msgstr "" - -#: src/tools/sss_useradd.c:51 src/tools/sss_usermod.c:51 -msgid "Home directory" -msgstr "" - -#: src/tools/sss_useradd.c:52 src/tools/sss_usermod.c:52 -msgid "Login shell" -msgstr "" - -#: src/tools/sss_useradd.c:53 -msgid "Groups" -msgstr "" - -#: src/tools/sss_useradd.c:54 -msgid "Create user's directory if it does not exist" -msgstr "" - -#: src/tools/sss_useradd.c:55 -msgid "Never create user's directory, overrides config" -msgstr "" - -#: src/tools/sss_useradd.c:56 -msgid "Specify an alternative skeleton directory" -msgstr "" - -#: src/tools/sss_useradd.c:57 src/tools/sss_usermod.c:57 -msgid "The SELinux user for user's login" -msgstr "" - -#: src/tools/sss_useradd.c:84 src/tools/sss_groupmod.c:76 -#: src/tools/sss_usermod.c:85 -msgid "Specify group to add to\n" -msgstr "" - -#: src/tools/sss_useradd.c:108 -msgid "Specify user to add\n" -msgstr "" - -#: src/tools/sss_useradd.c:117 src/tools/sss_groupadd.c:82 -#: src/tools/sss_groupdel.c:77 src/tools/sss_groupmod.c:109 -#: src/tools/sss_groupshow.c:659 src/tools/sss_userdel.c:193 -#: src/tools/sss_usermod.c:126 -msgid "Error initializing the tools - no local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:119 src/tools/sss_groupadd.c:84 -#: src/tools/sss_groupdel.c:79 src/tools/sss_groupmod.c:111 -#: src/tools/sss_groupshow.c:661 src/tools/sss_userdel.c:195 -#: src/tools/sss_usermod.c:128 -msgid "Error initializing the tools\n" -msgstr "" - -#: src/tools/sss_useradd.c:128 src/tools/sss_groupadd.c:93 -#: src/tools/sss_groupdel.c:88 src/tools/sss_groupmod.c:119 -#: src/tools/sss_groupshow.c:670 src/tools/sss_userdel.c:204 -#: src/tools/sss_usermod.c:137 -msgid "Invalid domain specified in FQDN\n" -msgstr "" - -#: src/tools/sss_useradd.c:137 src/tools/sss_groupmod.c:139 -#: src/tools/sss_groupmod.c:166 src/tools/sss_usermod.c:160 -#: src/tools/sss_usermod.c:187 -msgid "Internal error while parsing parameters\n" -msgstr "" - -#: src/tools/sss_useradd.c:145 src/tools/sss_usermod.c:168 -#: src/tools/sss_usermod.c:195 -msgid "Groups must be in the same domain as user\n" -msgstr "" - -#: src/tools/sss_useradd.c:153 -#, c-format -msgid "Cannot find group %s in local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:168 src/tools/sss_userdel.c:214 -msgid "Cannot set default values\n" -msgstr "" - -#: src/tools/sss_useradd.c:175 src/tools/sss_usermod.c:151 -msgid "The selected UID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_useradd.c:202 src/tools/sss_usermod.c:236 -msgid "Cannot set SELinux login context\n" -msgstr "" - -#: src/tools/sss_useradd.c:217 -msgid "Cannot get info about the user\n" -msgstr "" - -#: src/tools/sss_useradd.c:229 -msgid "User's home directory already exists, not copying data from skeldir\n" -msgstr "" - -#: src/tools/sss_useradd.c:232 -#, c-format -msgid "Cannot create user's home directory: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:243 -#, c-format -msgid "Cannot create user's mail spool: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:255 -msgid "Could not allocate ID for the user - domain full?\n" -msgstr "" - -#: src/tools/sss_useradd.c:259 -msgid "A user or group with the same name or ID already exists\n" -msgstr "" - -#: src/tools/sss_useradd.c:265 -msgid "Transaction error. Could not add user.\n" -msgstr "" - -#: src/tools/sss_groupadd.c:43 src/tools/sss_groupmod.c:48 -msgid "The GID of the group" -msgstr "" - -#: src/tools/sss_groupadd.c:73 -msgid "Specify group to add\n" -msgstr "" - -#: src/tools/sss_groupadd.c:102 src/tools/sss_groupmod.c:190 -msgid "The selected GID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_groupadd.c:127 -msgid "Could not allocate ID for the group - domain full?\n" -msgstr "" - -#: src/tools/sss_groupadd.c:131 -msgid "A group with the same name or GID already exists\n" -msgstr "" - -#: src/tools/sss_groupadd.c:136 -msgid "Transaction error. Could not add group.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:68 -msgid "Specify group to delete\n" -msgstr "" - -#: src/tools/sss_groupdel.c:101 -#, c-format -msgid "Group %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_groupdel.c:115 -msgid "" -"No such group in local domain. Removing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:120 -msgid "Internal error. Could not remove group.\n" -msgstr "" - -#: src/tools/sss_groupmod.c:44 -msgid "Groups to add this group to" -msgstr "" - -#: src/tools/sss_groupmod.c:46 -msgid "Groups to remove this group from" -msgstr "" - -#: src/tools/sss_groupmod.c:84 src/tools/sss_usermod.c:93 -msgid "Specify group to remove from\n" -msgstr "" - -#: src/tools/sss_groupmod.c:98 -msgid "Specify group to modify\n" -msgstr "" - -#: src/tools/sss_groupmod.c:126 -msgid "" -"Cannot find group in local domain, modifying groups is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_groupmod.c:147 src/tools/sss_groupmod.c:174 -msgid "Member groups must be in the same domain as parent group\n" -msgstr "" - -#: src/tools/sss_groupmod.c:155 src/tools/sss_groupmod.c:182 -#: src/tools/sss_usermod.c:176 src/tools/sss_usermod.c:203 -#, c-format -msgid "" -"Cannot find group %s in local domain, only groups in local domain are " -"allowed\n" -msgstr "" - -#: src/tools/sss_groupmod.c:216 -msgid "Could not modify group - check if member group names are correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:220 -msgid "Could not modify group - check if groupname is correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:224 -msgid "Transaction error. Could not modify group.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:562 -#, c-format -msgid "%s%sGroup: %s\n" -msgstr "" - -#: src/tools/sss_groupshow.c:563 -msgid "Magic Private " -msgstr "" - -#: src/tools/sss_groupshow.c:565 -#, c-format -msgid "%sGID number: %d\n" -msgstr "" - -#: src/tools/sss_groupshow.c:567 -#, c-format -msgid "%sMember users: " -msgstr "" - -#: src/tools/sss_groupshow.c:574 -#, c-format -msgid "" -"\n" -"%sIs a member of: " -msgstr "" - -#: src/tools/sss_groupshow.c:581 -#, c-format -msgid "" -"\n" -"%sMember groups: " -msgstr "" - -#: src/tools/sss_groupshow.c:617 -msgid "Print indirect group members recursively" -msgstr "" - -#: src/tools/sss_groupshow.c:650 -msgid "Specify group to show\n" -msgstr "" - -#: src/tools/sss_groupshow.c:689 -msgid "" -"No such group in local domain. Printing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:694 -msgid "Internal error. Could not print group.\n" -msgstr "" - -#: src/tools/sss_userdel.c:133 -msgid "Remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:135 -msgid "Do not remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:137 -msgid "Force removal of files not owned by the user" -msgstr "" - -#: src/tools/sss_userdel.c:139 -msgid "Kill users' processes before removing him" -msgstr "" - -#: src/tools/sss_userdel.c:184 -msgid "Specify user to delete\n" -msgstr "" - -#: src/tools/sss_userdel.c:230 -#, c-format -msgid "User %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_userdel.c:255 -msgid "Cannot reset SELinux login context\n" -msgstr "" - -#: src/tools/sss_userdel.c:267 -#, c-format -msgid "WARNING: The user (uid %lu) was still logged in when deleted.\n" -msgstr "" - -#: src/tools/sss_userdel.c:272 -msgid "Cannot determine if the user was logged in on this platform" -msgstr "" - -#: src/tools/sss_userdel.c:277 -msgid "Error while checking if the user was logged in\n" -msgstr "" - -#: src/tools/sss_userdel.c:284 -#, c-format -msgid "The post-delete command failed: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:296 -msgid "Not removing home dir - not owned by user\n" -msgstr "" - -#: src/tools/sss_userdel.c:298 -#, c-format -msgid "Cannot remove homedir: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:309 -msgid "" -"No such user in local domain. Removing users only allowed in local domain.\n" -msgstr "" - -#: src/tools/sss_userdel.c:314 -msgid "Internal error. Could not remove user.\n" -msgstr "" - -#: src/tools/sss_usermod.c:49 -msgid "The GID of the user" -msgstr "" - -#: src/tools/sss_usermod.c:53 -msgid "Groups to add this user to" -msgstr "" - -#: src/tools/sss_usermod.c:54 -msgid "Groups to remove this user from" -msgstr "" - -#: src/tools/sss_usermod.c:55 -msgid "Lock the account" -msgstr "" - -#: src/tools/sss_usermod.c:56 -msgid "Unlock the account" -msgstr "" - -#: src/tools/sss_usermod.c:117 -msgid "Specify user to modify\n" -msgstr "" - -#: src/tools/sss_usermod.c:144 -msgid "" -"Cannot find user in local domain, modifying users is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_usermod.c:246 -msgid "Could not modify user - check if group names are correct\n" -msgstr "" - -#: src/tools/sss_usermod.c:250 -msgid "Could not modify user - user already member of groups?\n" -msgstr "" - -#: src/tools/sss_usermod.c:254 -msgid "Transaction error. Could not modify user.\n" -msgstr "" - -#: src/tools/sss_cache.c:132 -#, c-format -msgid "Couldn't invalidate %s" -msgstr "" - -#: src/tools/sss_cache.c:138 -#, c-format -msgid "Couldn't invalidate %s %s" -msgstr "" - -#: src/tools/sss_cache.c:262 -msgid "Invalidate particular user" -msgstr "" - -#: src/tools/sss_cache.c:264 -msgid "Invalidate all users" -msgstr "" - -#: src/tools/sss_cache.c:266 -msgid "Invalidate particular group" -msgstr "" - -#: src/tools/sss_cache.c:268 -msgid "Invalidate all groups" -msgstr "" - -#: src/tools/sss_cache.c:270 -msgid "Invalidate particular netgroup" -msgstr "" - -#: src/tools/sss_cache.c:272 -msgid "Invalidate all netgroups" -msgstr "" - -#: src/tools/sss_cache.c:274 -msgid "Only invalidate entries from a particular domain" -msgstr "" - -#: src/tools/sss_debuglevel.c:43 -msgid "\n" -msgstr "" - -#: src/tools/sss_debuglevel.c:102 -msgid "Specify debug level you want to set\n" -msgstr "" - -#: src/tools/tools_util.c:286 -msgid "Out of memory\n" -msgstr "" - -#: src/tools/tools_util.h:40 -#, c-format -msgid "%s must be run as root\n" -msgstr "" - -#: src/util/util.h:91 -msgid "Send the debug output to files instead of stderr" -msgstr "" diff --git a/po/fr.po b/po/fr.po index 6edfc548c..135956dab 100644 --- a/po/fr.po +++ b/po/fr.po @@ -3,12 +3,13 @@ # This file is distributed under the same license as the PACKAGE package. # # Translators: +# Fabien Archambault , 2012. msgid "" msgstr "" "Project-Id-Version: SSSD\n" "Report-Msgid-Bugs-To: sssd-devel@lists.fedorahosted.org\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2012-02-23 12:39+0000\n" +"POT-Creation-Date: 2012-03-12 16:26-0400\n" +"PO-Revision-Date: 2012-03-08 11:41+0000\n" "Last-Translator: Fabien Archambault \n" "Language-Team: French \n" "Language: fr\n" @@ -848,9 +849,8 @@ msgid "Automounter map entry value attribute" msgstr "" #: src/config/SSSDConfig.py:290 -#, fuzzy msgid "Base DN for automounter map lookups" -msgstr "Base DN pour les recherches d'utilisateurs" +msgstr "" #: src/config/SSSDConfig.py:293 msgid "Comma separated list of allowed users" @@ -911,7 +911,7 @@ msgstr "" msgid "An open file descriptor for the debug logs" msgstr "Un descripteur de fichier ouvert pour les journaux de débogage" -#: src/providers/data_provider_be.c:1938 +#: src/providers/data_provider_be.c:2022 msgid "Domain of the information provider (mandatory)" msgstr "Domaine du fournisseur d'informations (obligatoire)" @@ -1015,9 +1015,8 @@ msgstr "Le niveau de débogage utilisé avec" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:42 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:215 -#, fuzzy msgid "The SSSD domain to use" -msgstr "Domaines SSSD à démarrer" +msgstr "" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:58 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:229 src/tools/sss_useradd.c:71 @@ -1032,9 +1031,8 @@ msgstr "Erreur lors du paramétrage de la locale\n" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:91 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:236 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:269 -#, fuzzy msgid "Not enough memory\n" -msgstr "Mémoire saturée\n" +msgstr "" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:84 msgid "User not specified\n" @@ -1518,12 +1516,11 @@ msgstr "" #: src/tools/sss_debuglevel.c:43 msgid "\n" -msgstr "" +msgstr "\n" #: src/tools/sss_debuglevel.c:102 -#, fuzzy msgid "Specify debug level you want to set\n" -msgstr "Le niveau de débogage utilisé avec" +msgstr "" #: src/tools/tools_util.c:286 msgid "Out of memory\n" diff --git a/po/he.po b/po/he.po deleted file mode 100644 index 3246d2943..000000000 --- a/po/he.po +++ /dev/null @@ -1,1462 +0,0 @@ -# SOME DESCRIPTIVE TITLE. -# Copyright (C) YEAR Red Hat, Inc. -# This file is distributed under the same license as the PACKAGE package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@lists.fedorahosted.org\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-11-30 04:10+0000\n" -"Last-Translator: FULL NAME \n" -"Language-Team: Hebrew \n" -"Language: he\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=2; plural=(n != 1)\n" - -#: src/config/SSSDConfig.py:39 -msgid "Set the verbosity of the debug logging" -msgstr "" - -#: src/config/SSSDConfig.py:40 -msgid "Include timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:41 -msgid "Include microseconds in timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:42 -msgid "Write debug messages to logfiles" -msgstr "" - -#: src/config/SSSDConfig.py:43 -msgid "Ping timeout before restarting service" -msgstr "" - -#: src/config/SSSDConfig.py:44 -msgid "Command to start service" -msgstr "" - -#: src/config/SSSDConfig.py:45 -msgid "Number of times to attempt connection to Data Providers" -msgstr "" - -#: src/config/SSSDConfig.py:48 -msgid "SSSD Services to start" -msgstr "" - -#: src/config/SSSDConfig.py:49 -msgid "SSSD Domains to start" -msgstr "" - -#: src/config/SSSDConfig.py:50 -msgid "Timeout for messages sent over the SBUS" -msgstr "" - -#: src/config/SSSDConfig.py:51 -msgid "Regex to parse username and domain" -msgstr "" - -#: src/config/SSSDConfig.py:52 -msgid "Printf-compatible format for displaying fully-qualified names" -msgstr "" - -#: src/config/SSSDConfig.py:53 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#: src/config/SSSDConfig.py:56 -msgid "Enumeration cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:57 -msgid "Entry cache background update timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:58 src/config/SSSDConfig.py:81 -msgid "Negative cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:59 -msgid "Users that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:60 -msgid "Groups that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:61 -msgid "Should filtered users appear in groups" -msgstr "" - -#: src/config/SSSDConfig.py:62 -msgid "The value of the password field the NSS provider should return" -msgstr "" - -#: src/config/SSSDConfig.py:63 -msgid "Override homedir value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:64 -msgid "The list of shells users are allowed to log in with" -msgstr "" - -#: src/config/SSSDConfig.py:65 -msgid "" -"The list of shells that will be vetoed, and replaced with the fallback shell" -msgstr "" - -#: src/config/SSSDConfig.py:66 -msgid "" -"If a shell stored in central directory is allowed but not available, use " -"this fallback" -msgstr "" - -#: src/config/SSSDConfig.py:69 -msgid "How long to allow cached logins between online logins (days)" -msgstr "" - -#: src/config/SSSDConfig.py:70 -msgid "How many failed logins attempts are allowed when offline" -msgstr "" - -#: src/config/SSSDConfig.py:71 -msgid "" -"How long (minutes) to deny login after offline_failed_login_attempts has " -"been reached" -msgstr "" - -#: src/config/SSSDConfig.py:72 -msgid "What kind of messages are displayed to the user during authentication" -msgstr "" - -#: src/config/SSSDConfig.py:73 -msgid "How many seconds to keep identity information cached for PAM requests" -msgstr "" - -#: src/config/SSSDConfig.py:74 -msgid "How many days before password expiration a warning should be displayed" -msgstr "" - -#: src/config/SSSDConfig.py:77 -msgid "Whether to evaluate the time-based attributes in sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:78 -msgid "" -"How many seconds to keep sudorules cached before asking the provider again" -msgstr "" - -#: src/config/SSSDConfig.py:84 -msgid "Identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:85 -msgid "Authentication provider" -msgstr "" - -#: src/config/SSSDConfig.py:86 -msgid "Access control provider" -msgstr "" - -#: src/config/SSSDConfig.py:87 -msgid "Password change provider" -msgstr "" - -#: src/config/SSSDConfig.py:88 -msgid "SUDO provider" -msgstr "" - -#: src/config/SSSDConfig.py:89 -msgid "Autofs provider" -msgstr "" - -#: src/config/SSSDConfig.py:90 -msgid "Session-loading provider" -msgstr "" - -#: src/config/SSSDConfig.py:91 -msgid "Host identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:94 -msgid "Minimum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:95 -msgid "Maximum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:96 -msgid "Enable enumerating all users/groups" -msgstr "" - -#: src/config/SSSDConfig.py:97 -msgid "Cache credentials for offline login" -msgstr "" - -#: src/config/SSSDConfig.py:98 -msgid "Store password hashes" -msgstr "" - -#: src/config/SSSDConfig.py:99 -msgid "Display users/groups in fully-qualified form" -msgstr "" - -#: src/config/SSSDConfig.py:100 src/config/SSSDConfig.py:107 -#: src/config/SSSDConfig.py:108 src/config/SSSDConfig.py:109 -#: src/config/SSSDConfig.py:110 src/config/SSSDConfig.py:111 -msgid "Entry cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:101 -msgid "" -"Restrict or prefer a specific address family when performing DNS lookups" -msgstr "" - -#: src/config/SSSDConfig.py:102 -msgid "How long to keep cached entries after last successful login (days)" -msgstr "" - -#: src/config/SSSDConfig.py:103 -msgid "How long to wait for replies from DNS when resolving servers (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:104 -msgid "The domain part of service discovery DNS query" -msgstr "" - -#: src/config/SSSDConfig.py:105 -msgid "Override GID value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:106 -msgid "Treat usernames as case sensitive" -msgstr "" - -#: src/config/SSSDConfig.py:114 -msgid "IPA domain" -msgstr "" - -#: src/config/SSSDConfig.py:115 -msgid "IPA server address" -msgstr "" - -#: src/config/SSSDConfig.py:116 -msgid "IPA client hostname" -msgstr "" - -#: src/config/SSSDConfig.py:117 -msgid "Whether to automatically update the client's DNS entry in FreeIPA" -msgstr "" - -#: src/config/SSSDConfig.py:118 -msgid "The interface whose IP should be used for dynamic DNS updates" -msgstr "" - -#: src/config/SSSDConfig.py:119 -msgid "Search base for HBAC related objects" -msgstr "" - -#: src/config/SSSDConfig.py:120 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server" -msgstr "" - -#: src/config/SSSDConfig.py:121 -msgid "If DENY rules are present, either DENY_ALL or IGNORE" -msgstr "" - -#: src/config/SSSDConfig.py:122 -msgid "If set to false, host argument given by PAM will be ignored" -msgstr "" - -#: src/config/SSSDConfig.py:123 -msgid "The automounter location this IPA client is using" -msgstr "" - -#: src/config/SSSDConfig.py:126 src/config/SSSDConfig.py:127 -msgid "Kerberos server address" -msgstr "" - -#: src/config/SSSDConfig.py:128 -msgid "Kerberos realm" -msgstr "" - -#: src/config/SSSDConfig.py:129 -msgid "Authentication timeout" -msgstr "" - -#: src/config/SSSDConfig.py:132 -msgid "Directory to store credential caches" -msgstr "" - -#: src/config/SSSDConfig.py:133 -msgid "Location of the user's credential cache" -msgstr "" - -#: src/config/SSSDConfig.py:134 -msgid "Location of the keytab to validate credentials" -msgstr "" - -#: src/config/SSSDConfig.py:135 -msgid "Enable credential validation" -msgstr "" - -#: src/config/SSSDConfig.py:136 -msgid "Store password if offline for later online authentication" -msgstr "" - -#: src/config/SSSDConfig.py:137 -msgid "Renewable lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:138 -msgid "Lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:139 -msgid "Time between two checks for renewal" -msgstr "" - -#: src/config/SSSDConfig.py:140 -msgid "Enables FAST" -msgstr "" - -#: src/config/SSSDConfig.py:141 -msgid "Selects the principal to use for FAST" -msgstr "" - -#: src/config/SSSDConfig.py:142 -msgid "Enables principal canonicalization" -msgstr "" - -#: src/config/SSSDConfig.py:145 -msgid "Server where the change password service is running if not on the KDC" -msgstr "" - -#: src/config/SSSDConfig.py:148 -msgid "ldap_uri, The URI of the LDAP server" -msgstr "" - -#: src/config/SSSDConfig.py:149 -msgid "The default base DN" -msgstr "" - -#: src/config/SSSDConfig.py:150 -msgid "The Schema Type in use on the LDAP server, rfc2307" -msgstr "" - -#: src/config/SSSDConfig.py:151 -msgid "The default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:152 -msgid "The type of the authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:153 -msgid "The authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:154 -msgid "Length of time to attempt connection" -msgstr "" - -#: src/config/SSSDConfig.py:155 -msgid "Length of time to attempt synchronous LDAP operations" -msgstr "" - -#: src/config/SSSDConfig.py:156 -msgid "Length of time between attempts to reconnect while offline" -msgstr "" - -#: src/config/SSSDConfig.py:157 -msgid "Use only the upper case for realm names" -msgstr "" - -#: src/config/SSSDConfig.py:158 -msgid "File that contains CA certificates" -msgstr "" - -#: src/config/SSSDConfig.py:159 -msgid "Path to CA certificate directory" -msgstr "" - -#: src/config/SSSDConfig.py:160 -msgid "File that contains the client certificate" -msgstr "" - -#: src/config/SSSDConfig.py:161 -msgid "File that contains the client key" -msgstr "" - -#: src/config/SSSDConfig.py:162 -msgid "List of possible ciphers suites" -msgstr "" - -#: src/config/SSSDConfig.py:163 -msgid "Require TLS certificate verification" -msgstr "" - -#: src/config/SSSDConfig.py:164 -msgid "Specify the sasl mechanism to use" -msgstr "" - -#: src/config/SSSDConfig.py:165 -msgid "Specify the sasl authorization id to use" -msgstr "" - -#: src/config/SSSDConfig.py:166 -msgid "Specify the sasl authorization realm to use" -msgstr "" - -#: src/config/SSSDConfig.py:167 -msgid "Specify the minimal SSF for LDAP sasl authorization" -msgstr "" - -#: src/config/SSSDConfig.py:168 -msgid "Kerberos service keytab" -msgstr "" - -#: src/config/SSSDConfig.py:169 -msgid "Use Kerberos auth for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:170 -msgid "Follow LDAP referrals" -msgstr "" - -#: src/config/SSSDConfig.py:171 -msgid "Lifetime of TGT for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:172 -msgid "How to dereference aliases" -msgstr "" - -#: src/config/SSSDConfig.py:173 -msgid "Service name for DNS service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:174 -msgid "The number of records to retrieve in a single LDAP query" -msgstr "" - -#: src/config/SSSDConfig.py:175 -msgid "The number of members that must be missing to trigger a full deref" -msgstr "" - -#: src/config/SSSDConfig.py:176 -msgid "" -"Whether the LDAP library should perform a reverse lookup to canonicalize the " -"host name during a SASL bind" -msgstr "" - -#: src/config/SSSDConfig.py:178 -msgid "entryUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:179 -msgid "lastUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:181 -msgid "How long to retain a connection to the LDAP server before disconnecting" -msgstr "" - -#: src/config/SSSDConfig.py:183 -msgid "Disable the LDAP paging control" -msgstr "" - -#: src/config/SSSDConfig.py:186 -msgid "Length of time to wait for a search request" -msgstr "" - -#: src/config/SSSDConfig.py:187 -msgid "Length of time to wait for a enumeration request" -msgstr "" - -#: src/config/SSSDConfig.py:188 -msgid "Length of time between enumeration updates" -msgstr "" - -#: src/config/SSSDConfig.py:189 -msgid "Length of time between cache cleanups" -msgstr "" - -#: src/config/SSSDConfig.py:190 -msgid "Require TLS for ID lookups" -msgstr "" - -#: src/config/SSSDConfig.py:191 -msgid "Base DN for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:192 -msgid "Scope of user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:193 -msgid "Filter for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:194 -msgid "Objectclass for users" -msgstr "" - -#: src/config/SSSDConfig.py:195 -msgid "Username attribute" -msgstr "" - -#: src/config/SSSDConfig.py:197 -msgid "UID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:198 -msgid "Primary GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:199 -msgid "GECOS attribute" -msgstr "" - -#: src/config/SSSDConfig.py:200 -msgid "Home directory attribute" -msgstr "" - -#: src/config/SSSDConfig.py:201 -msgid "Shell attribute" -msgstr "" - -#: src/config/SSSDConfig.py:202 -msgid "UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:203 -msgid "User principal attribute (for Kerberos)" -msgstr "" - -#: src/config/SSSDConfig.py:204 -msgid "Full Name" -msgstr "" - -#: src/config/SSSDConfig.py:205 -msgid "memberOf attribute" -msgstr "" - -#: src/config/SSSDConfig.py:206 -msgid "Modification time attribute" -msgstr "" - -#: src/config/SSSDConfig.py:208 -msgid "shadowLastChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:209 -msgid "shadowMin attribute" -msgstr "" - -#: src/config/SSSDConfig.py:210 -msgid "shadowMax attribute" -msgstr "" - -#: src/config/SSSDConfig.py:211 -msgid "shadowWarning attribute" -msgstr "" - -#: src/config/SSSDConfig.py:212 -msgid "shadowInactive attribute" -msgstr "" - -#: src/config/SSSDConfig.py:213 -msgid "shadowExpire attribute" -msgstr "" - -#: src/config/SSSDConfig.py:214 -msgid "shadowFlag attribute" -msgstr "" - -#: src/config/SSSDConfig.py:215 -msgid "Attribute listing authorized PAM services" -msgstr "" - -#: src/config/SSSDConfig.py:216 -msgid "Attribute listing authorized server hosts" -msgstr "" - -#: src/config/SSSDConfig.py:217 -msgid "krbLastPwdChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:218 -msgid "krbPasswordExpiration attribute" -msgstr "" - -#: src/config/SSSDConfig.py:219 -msgid "Attribute indicating that server side password policies are active" -msgstr "" - -#: src/config/SSSDConfig.py:220 -msgid "accountExpires attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:221 -msgid "userAccountControl attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:222 -msgid "nsAccountLock attribute" -msgstr "" - -#: src/config/SSSDConfig.py:223 -msgid "loginDisabled attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:224 -msgid "loginExpirationTime attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:225 -msgid "loginAllowedTimeMap attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:226 -msgid "SSH public key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:228 -msgid "Base DN for group lookups" -msgstr "" - -#: src/config/SSSDConfig.py:231 -msgid "Objectclass for groups" -msgstr "" - -#: src/config/SSSDConfig.py:232 -msgid "Group name" -msgstr "" - -#: src/config/SSSDConfig.py:233 -msgid "Group password" -msgstr "" - -#: src/config/SSSDConfig.py:234 -msgid "GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:235 -msgid "Group member attribute" -msgstr "" - -#: src/config/SSSDConfig.py:236 -msgid "Group UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:237 -msgid "Modification time attribute for groups" -msgstr "" - -#: src/config/SSSDConfig.py:239 -msgid "Maximum nesting level SSSd will follow" -msgstr "" - -#: src/config/SSSDConfig.py:241 -msgid "Base DN for netgroup lookups" -msgstr "" - -#: src/config/SSSDConfig.py:242 -msgid "Objectclass for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:243 -msgid "Netgroup name" -msgstr "" - -#: src/config/SSSDConfig.py:244 -msgid "Netgroups members attribute" -msgstr "" - -#: src/config/SSSDConfig.py:245 -msgid "Netgroup triple attribute" -msgstr "" - -#: src/config/SSSDConfig.py:246 -msgid "Netgroup UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:247 -msgid "Modification time attribute for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:249 -msgid "Base DN for service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:250 -msgid "Objectclass for services" -msgstr "" - -#: src/config/SSSDConfig.py:251 -msgid "Service name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:252 -msgid "Service port attribute" -msgstr "" - -#: src/config/SSSDConfig.py:253 -msgid "Service protocol attribute" -msgstr "" - -#: src/config/SSSDConfig.py:257 -msgid "Policy to evaluate the password expiration" -msgstr "" - -#: src/config/SSSDConfig.py:260 -msgid "LDAP filter to determine access privileges" -msgstr "" - -#: src/config/SSSDConfig.py:261 -msgid "Which attributes shall be used to evaluate if an account is expired" -msgstr "" - -#: src/config/SSSDConfig.py:262 -msgid "Which rules should be used to evaluate access control" -msgstr "" - -#: src/config/SSSDConfig.py:265 -msgid "URI of an LDAP server where password changes are allowed" -msgstr "" - -#: src/config/SSSDConfig.py:266 -msgid "DNS service name for LDAP password change server" -msgstr "" - -#: src/config/SSSDConfig.py:269 -msgid "Base DN for sudo rules lookups" -msgstr "" - -#: src/config/SSSDConfig.py:270 -msgid "Enable periodical update of all sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:271 -msgid "Length of time between rules updates" -msgstr "" - -#: src/config/SSSDConfig.py:272 -msgid "Object class for sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:273 -msgid "Sudo rule name" -msgstr "" - -#: src/config/SSSDConfig.py:274 -msgid "Sudo rule command attribute" -msgstr "" - -#: src/config/SSSDConfig.py:275 -msgid "Sudo rule host attribute" -msgstr "" - -#: src/config/SSSDConfig.py:276 -msgid "Sudo rule user attribute" -msgstr "" - -#: src/config/SSSDConfig.py:277 -msgid "Sudo rule option attribute" -msgstr "" - -#: src/config/SSSDConfig.py:278 -msgid "Sudo rule runasuser attribute" -msgstr "" - -#: src/config/SSSDConfig.py:279 -msgid "Sudo rule runasgroup attribute" -msgstr "" - -#: src/config/SSSDConfig.py:280 -msgid "Sudo rule notbefore attribute" -msgstr "" - -#: src/config/SSSDConfig.py:281 -msgid "Sudo rule notafter attribute" -msgstr "" - -#: src/config/SSSDConfig.py:282 -msgid "Sudo rule order attribute" -msgstr "" - -#: src/config/SSSDConfig.py:285 -msgid "Object class for automounter maps" -msgstr "" - -#: src/config/SSSDConfig.py:286 -msgid "Automounter map name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:287 -msgid "Object class for automounter map entries" -msgstr "" - -#: src/config/SSSDConfig.py:288 -msgid "Automounter map entry key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:289 -msgid "Automounter map entry value attribute" -msgstr "" - -#: src/config/SSSDConfig.py:290 -msgid "Base DN for automounter map lookups" -msgstr "" - -#: src/config/SSSDConfig.py:293 -msgid "Comma separated list of allowed users" -msgstr "" - -#: src/config/SSSDConfig.py:294 -msgid "Comma separated list of prohibited users" -msgstr "" - -#: src/config/SSSDConfig.py:297 -msgid "Default shell, /bin/bash" -msgstr "" - -#: src/config/SSSDConfig.py:298 -msgid "Base for home directories" -msgstr "" - -#: src/config/SSSDConfig.py:301 -msgid "The name of the NSS library to use" -msgstr "" - -#: src/config/SSSDConfig.py:304 -msgid "PAM stack to use" -msgstr "" - -#: src/monitor/monitor.c:2379 -msgid "Become a daemon (default)" -msgstr "" - -#: src/monitor/monitor.c:2381 -msgid "Run interactive (not a daemon)" -msgstr "" - -#: src/monitor/monitor.c:2383 src/tools/sss_debuglevel.c:77 -msgid "Specify a non-default config file" -msgstr "" - -#: src/monitor/monitor.c:2385 -msgid "Print version number and exit" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1575 src/providers/ldap/ldap_child.c:381 -#: src/util/util.h:89 -msgid "Debug level" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1577 src/providers/ldap/ldap_child.c:383 -#: src/util/util.h:93 -msgid "Add debug timestamps" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1579 src/providers/ldap/ldap_child.c:385 -#: src/util/util.h:95 -msgid "Show timestamps with microseconds" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1581 src/providers/ldap/ldap_child.c:387 -msgid "An open file descriptor for the debug logs" -msgstr "" - -#: src/providers/data_provider_be.c:1938 -msgid "Domain of the information provider (mandatory)" -msgstr "" - -#: src/sss_client/common.c:878 -msgid "Privileged socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:881 -msgid "Public socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:884 -msgid "Unexpected format of the server credential message." -msgstr "" - -#: src/sss_client/common.c:887 -msgid "SSSD is not run by root." -msgstr "" - -#: src/sss_client/common.c:892 -msgid "An error occurred, but no description can be found." -msgstr "" - -#: src/sss_client/common.c:898 -msgid "Unexpected error while looking for an error description" -msgstr "" - -#: src/sss_client/pam_sss.c:378 -msgid "Passwords do not match" -msgstr "" - -#: src/sss_client/pam_sss.c:571 -msgid "Password reset by root is not supported." -msgstr "" - -#: src/sss_client/pam_sss.c:612 -msgid "Authenticated with cached credentials" -msgstr "" - -#: src/sss_client/pam_sss.c:613 -msgid ", your cached password will expire at: " -msgstr "" - -#: src/sss_client/pam_sss.c:643 -#, c-format -msgid "Your password has expired. You have %d grace login(s) remaining." -msgstr "" - -#: src/sss_client/pam_sss.c:689 -#, c-format -msgid "Your password will expire in %d %s." -msgstr "" - -#: src/sss_client/pam_sss.c:738 -msgid "Authentication is denied until: " -msgstr "" - -#: src/sss_client/pam_sss.c:759 -msgid "System is offline, password change not possible" -msgstr "" - -#: src/sss_client/pam_sss.c:789 src/sss_client/pam_sss.c:802 -msgid "Password change failed. " -msgstr "" - -#: src/sss_client/pam_sss.c:792 src/sss_client/pam_sss.c:803 -msgid "Server message: " -msgstr "" - -#: src/sss_client/pam_sss.c:1286 -msgid "New Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1287 -msgid "Reenter new Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1373 -msgid "Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1405 -msgid "Current Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1552 -msgid "Password expired. Change your password now." -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:40 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:211 src/tools/sss_useradd.c:48 -#: src/tools/sss_groupadd.c:41 src/tools/sss_groupdel.c:43 -#: src/tools/sss_groupmod.c:42 src/tools/sss_groupshow.c:615 -#: src/tools/sss_userdel.c:131 src/tools/sss_usermod.c:47 -#: src/tools/sss_cache.c:260 src/tools/sss_debuglevel.c:75 -msgid "The debug level to run with" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:42 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:215 -msgid "The SSSD domain to use" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:58 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:229 src/tools/sss_useradd.c:71 -#: src/tools/sss_groupadd.c:56 src/tools/sss_groupdel.c:52 -#: src/tools/sss_groupmod.c:63 src/tools/sss_groupshow.c:626 -#: src/tools/sss_userdel.c:148 src/tools/sss_usermod.c:72 -#: src/tools/sss_cache.c:281 -msgid "Error setting the locale\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:65 -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:91 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:236 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:269 -msgid "Not enough memory\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:84 -msgid "User not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:104 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:282 -msgid "Error looking up public keys\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:94 -msgid "Failed to open a socket\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:104 -msgid "Failed to connect to the server\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:195 -msgid "Failed to execute proxy command\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:213 -msgid "The port to use to connect to the host" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:255 -msgid "Host not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:261 -msgid "The path to the proxy command must be absolute\n" -msgstr "" - -#: src/tools/sss_useradd.c:49 src/tools/sss_usermod.c:48 -msgid "The UID of the user" -msgstr "" - -#: src/tools/sss_useradd.c:50 src/tools/sss_usermod.c:50 -msgid "The comment string" -msgstr "" - -#: src/tools/sss_useradd.c:51 src/tools/sss_usermod.c:51 -msgid "Home directory" -msgstr "" - -#: src/tools/sss_useradd.c:52 src/tools/sss_usermod.c:52 -msgid "Login shell" -msgstr "" - -#: src/tools/sss_useradd.c:53 -msgid "Groups" -msgstr "" - -#: src/tools/sss_useradd.c:54 -msgid "Create user's directory if it does not exist" -msgstr "" - -#: src/tools/sss_useradd.c:55 -msgid "Never create user's directory, overrides config" -msgstr "" - -#: src/tools/sss_useradd.c:56 -msgid "Specify an alternative skeleton directory" -msgstr "" - -#: src/tools/sss_useradd.c:57 src/tools/sss_usermod.c:57 -msgid "The SELinux user for user's login" -msgstr "" - -#: src/tools/sss_useradd.c:84 src/tools/sss_groupmod.c:76 -#: src/tools/sss_usermod.c:85 -msgid "Specify group to add to\n" -msgstr "" - -#: src/tools/sss_useradd.c:108 -msgid "Specify user to add\n" -msgstr "" - -#: src/tools/sss_useradd.c:117 src/tools/sss_groupadd.c:82 -#: src/tools/sss_groupdel.c:77 src/tools/sss_groupmod.c:109 -#: src/tools/sss_groupshow.c:659 src/tools/sss_userdel.c:193 -#: src/tools/sss_usermod.c:126 -msgid "Error initializing the tools - no local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:119 src/tools/sss_groupadd.c:84 -#: src/tools/sss_groupdel.c:79 src/tools/sss_groupmod.c:111 -#: src/tools/sss_groupshow.c:661 src/tools/sss_userdel.c:195 -#: src/tools/sss_usermod.c:128 -msgid "Error initializing the tools\n" -msgstr "" - -#: src/tools/sss_useradd.c:128 src/tools/sss_groupadd.c:93 -#: src/tools/sss_groupdel.c:88 src/tools/sss_groupmod.c:119 -#: src/tools/sss_groupshow.c:670 src/tools/sss_userdel.c:204 -#: src/tools/sss_usermod.c:137 -msgid "Invalid domain specified in FQDN\n" -msgstr "" - -#: src/tools/sss_useradd.c:137 src/tools/sss_groupmod.c:139 -#: src/tools/sss_groupmod.c:166 src/tools/sss_usermod.c:160 -#: src/tools/sss_usermod.c:187 -msgid "Internal error while parsing parameters\n" -msgstr "" - -#: src/tools/sss_useradd.c:145 src/tools/sss_usermod.c:168 -#: src/tools/sss_usermod.c:195 -msgid "Groups must be in the same domain as user\n" -msgstr "" - -#: src/tools/sss_useradd.c:153 -#, c-format -msgid "Cannot find group %s in local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:168 src/tools/sss_userdel.c:214 -msgid "Cannot set default values\n" -msgstr "" - -#: src/tools/sss_useradd.c:175 src/tools/sss_usermod.c:151 -msgid "The selected UID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_useradd.c:202 src/tools/sss_usermod.c:236 -msgid "Cannot set SELinux login context\n" -msgstr "" - -#: src/tools/sss_useradd.c:217 -msgid "Cannot get info about the user\n" -msgstr "" - -#: src/tools/sss_useradd.c:229 -msgid "User's home directory already exists, not copying data from skeldir\n" -msgstr "" - -#: src/tools/sss_useradd.c:232 -#, c-format -msgid "Cannot create user's home directory: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:243 -#, c-format -msgid "Cannot create user's mail spool: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:255 -msgid "Could not allocate ID for the user - domain full?\n" -msgstr "" - -#: src/tools/sss_useradd.c:259 -msgid "A user or group with the same name or ID already exists\n" -msgstr "" - -#: src/tools/sss_useradd.c:265 -msgid "Transaction error. Could not add user.\n" -msgstr "" - -#: src/tools/sss_groupadd.c:43 src/tools/sss_groupmod.c:48 -msgid "The GID of the group" -msgstr "" - -#: src/tools/sss_groupadd.c:73 -msgid "Specify group to add\n" -msgstr "" - -#: src/tools/sss_groupadd.c:102 src/tools/sss_groupmod.c:190 -msgid "The selected GID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_groupadd.c:127 -msgid "Could not allocate ID for the group - domain full?\n" -msgstr "" - -#: src/tools/sss_groupadd.c:131 -msgid "A group with the same name or GID already exists\n" -msgstr "" - -#: src/tools/sss_groupadd.c:136 -msgid "Transaction error. Could not add group.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:68 -msgid "Specify group to delete\n" -msgstr "" - -#: src/tools/sss_groupdel.c:101 -#, c-format -msgid "Group %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_groupdel.c:115 -msgid "" -"No such group in local domain. Removing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:120 -msgid "Internal error. Could not remove group.\n" -msgstr "" - -#: src/tools/sss_groupmod.c:44 -msgid "Groups to add this group to" -msgstr "" - -#: src/tools/sss_groupmod.c:46 -msgid "Groups to remove this group from" -msgstr "" - -#: src/tools/sss_groupmod.c:84 src/tools/sss_usermod.c:93 -msgid "Specify group to remove from\n" -msgstr "" - -#: src/tools/sss_groupmod.c:98 -msgid "Specify group to modify\n" -msgstr "" - -#: src/tools/sss_groupmod.c:126 -msgid "" -"Cannot find group in local domain, modifying groups is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_groupmod.c:147 src/tools/sss_groupmod.c:174 -msgid "Member groups must be in the same domain as parent group\n" -msgstr "" - -#: src/tools/sss_groupmod.c:155 src/tools/sss_groupmod.c:182 -#: src/tools/sss_usermod.c:176 src/tools/sss_usermod.c:203 -#, c-format -msgid "" -"Cannot find group %s in local domain, only groups in local domain are " -"allowed\n" -msgstr "" - -#: src/tools/sss_groupmod.c:216 -msgid "Could not modify group - check if member group names are correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:220 -msgid "Could not modify group - check if groupname is correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:224 -msgid "Transaction error. Could not modify group.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:562 -#, c-format -msgid "%s%sGroup: %s\n" -msgstr "" - -#: src/tools/sss_groupshow.c:563 -msgid "Magic Private " -msgstr "" - -#: src/tools/sss_groupshow.c:565 -#, c-format -msgid "%sGID number: %d\n" -msgstr "" - -#: src/tools/sss_groupshow.c:567 -#, c-format -msgid "%sMember users: " -msgstr "" - -#: src/tools/sss_groupshow.c:574 -#, c-format -msgid "" -"\n" -"%sIs a member of: " -msgstr "" - -#: src/tools/sss_groupshow.c:581 -#, c-format -msgid "" -"\n" -"%sMember groups: " -msgstr "" - -#: src/tools/sss_groupshow.c:617 -msgid "Print indirect group members recursively" -msgstr "" - -#: src/tools/sss_groupshow.c:650 -msgid "Specify group to show\n" -msgstr "" - -#: src/tools/sss_groupshow.c:689 -msgid "" -"No such group in local domain. Printing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:694 -msgid "Internal error. Could not print group.\n" -msgstr "" - -#: src/tools/sss_userdel.c:133 -msgid "Remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:135 -msgid "Do not remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:137 -msgid "Force removal of files not owned by the user" -msgstr "" - -#: src/tools/sss_userdel.c:139 -msgid "Kill users' processes before removing him" -msgstr "" - -#: src/tools/sss_userdel.c:184 -msgid "Specify user to delete\n" -msgstr "" - -#: src/tools/sss_userdel.c:230 -#, c-format -msgid "User %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_userdel.c:255 -msgid "Cannot reset SELinux login context\n" -msgstr "" - -#: src/tools/sss_userdel.c:267 -#, c-format -msgid "WARNING: The user (uid %lu) was still logged in when deleted.\n" -msgstr "" - -#: src/tools/sss_userdel.c:272 -msgid "Cannot determine if the user was logged in on this platform" -msgstr "" - -#: src/tools/sss_userdel.c:277 -msgid "Error while checking if the user was logged in\n" -msgstr "" - -#: src/tools/sss_userdel.c:284 -#, c-format -msgid "The post-delete command failed: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:296 -msgid "Not removing home dir - not owned by user\n" -msgstr "" - -#: src/tools/sss_userdel.c:298 -#, c-format -msgid "Cannot remove homedir: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:309 -msgid "" -"No such user in local domain. Removing users only allowed in local domain.\n" -msgstr "" - -#: src/tools/sss_userdel.c:314 -msgid "Internal error. Could not remove user.\n" -msgstr "" - -#: src/tools/sss_usermod.c:49 -msgid "The GID of the user" -msgstr "" - -#: src/tools/sss_usermod.c:53 -msgid "Groups to add this user to" -msgstr "" - -#: src/tools/sss_usermod.c:54 -msgid "Groups to remove this user from" -msgstr "" - -#: src/tools/sss_usermod.c:55 -msgid "Lock the account" -msgstr "" - -#: src/tools/sss_usermod.c:56 -msgid "Unlock the account" -msgstr "" - -#: src/tools/sss_usermod.c:117 -msgid "Specify user to modify\n" -msgstr "" - -#: src/tools/sss_usermod.c:144 -msgid "" -"Cannot find user in local domain, modifying users is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_usermod.c:246 -msgid "Could not modify user - check if group names are correct\n" -msgstr "" - -#: src/tools/sss_usermod.c:250 -msgid "Could not modify user - user already member of groups?\n" -msgstr "" - -#: src/tools/sss_usermod.c:254 -msgid "Transaction error. Could not modify user.\n" -msgstr "" - -#: src/tools/sss_cache.c:132 -#, c-format -msgid "Couldn't invalidate %s" -msgstr "" - -#: src/tools/sss_cache.c:138 -#, c-format -msgid "Couldn't invalidate %s %s" -msgstr "" - -#: src/tools/sss_cache.c:262 -msgid "Invalidate particular user" -msgstr "" - -#: src/tools/sss_cache.c:264 -msgid "Invalidate all users" -msgstr "" - -#: src/tools/sss_cache.c:266 -msgid "Invalidate particular group" -msgstr "" - -#: src/tools/sss_cache.c:268 -msgid "Invalidate all groups" -msgstr "" - -#: src/tools/sss_cache.c:270 -msgid "Invalidate particular netgroup" -msgstr "" - -#: src/tools/sss_cache.c:272 -msgid "Invalidate all netgroups" -msgstr "" - -#: src/tools/sss_cache.c:274 -msgid "Only invalidate entries from a particular domain" -msgstr "" - -#: src/tools/sss_debuglevel.c:43 -msgid "\n" -msgstr "" - -#: src/tools/sss_debuglevel.c:102 -msgid "Specify debug level you want to set\n" -msgstr "" - -#: src/tools/tools_util.c:286 -msgid "Out of memory\n" -msgstr "" - -#: src/tools/tools_util.h:40 -#, c-format -msgid "%s must be run as root\n" -msgstr "" - -#: src/util/util.h:91 -msgid "Send the debug output to files instead of stderr" -msgstr "" diff --git a/po/hi.po b/po/hi.po deleted file mode 100644 index eaa35de5f..000000000 --- a/po/hi.po +++ /dev/null @@ -1,1462 +0,0 @@ -# SOME DESCRIPTIVE TITLE. -# Copyright (C) YEAR Red Hat, Inc. -# This file is distributed under the same license as the PACKAGE package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@lists.fedorahosted.org\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2012-02-14 12:55+0000\n" -"Last-Translator: sgallagh \n" -"Language-Team: Hindi \n" -"Language: hi\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=2; plural=(n != 1)\n" - -#: src/config/SSSDConfig.py:39 -msgid "Set the verbosity of the debug logging" -msgstr "" - -#: src/config/SSSDConfig.py:40 -msgid "Include timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:41 -msgid "Include microseconds in timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:42 -msgid "Write debug messages to logfiles" -msgstr "" - -#: src/config/SSSDConfig.py:43 -msgid "Ping timeout before restarting service" -msgstr "" - -#: src/config/SSSDConfig.py:44 -msgid "Command to start service" -msgstr "" - -#: src/config/SSSDConfig.py:45 -msgid "Number of times to attempt connection to Data Providers" -msgstr "" - -#: src/config/SSSDConfig.py:48 -msgid "SSSD Services to start" -msgstr "" - -#: src/config/SSSDConfig.py:49 -msgid "SSSD Domains to start" -msgstr "" - -#: src/config/SSSDConfig.py:50 -msgid "Timeout for messages sent over the SBUS" -msgstr "" - -#: src/config/SSSDConfig.py:51 -msgid "Regex to parse username and domain" -msgstr "" - -#: src/config/SSSDConfig.py:52 -msgid "Printf-compatible format for displaying fully-qualified names" -msgstr "" - -#: src/config/SSSDConfig.py:53 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#: src/config/SSSDConfig.py:56 -msgid "Enumeration cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:57 -msgid "Entry cache background update timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:58 src/config/SSSDConfig.py:81 -msgid "Negative cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:59 -msgid "Users that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:60 -msgid "Groups that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:61 -msgid "Should filtered users appear in groups" -msgstr "" - -#: src/config/SSSDConfig.py:62 -msgid "The value of the password field the NSS provider should return" -msgstr "" - -#: src/config/SSSDConfig.py:63 -msgid "Override homedir value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:64 -msgid "The list of shells users are allowed to log in with" -msgstr "" - -#: src/config/SSSDConfig.py:65 -msgid "" -"The list of shells that will be vetoed, and replaced with the fallback shell" -msgstr "" - -#: src/config/SSSDConfig.py:66 -msgid "" -"If a shell stored in central directory is allowed but not available, use " -"this fallback" -msgstr "" - -#: src/config/SSSDConfig.py:69 -msgid "How long to allow cached logins between online logins (days)" -msgstr "" - -#: src/config/SSSDConfig.py:70 -msgid "How many failed logins attempts are allowed when offline" -msgstr "" - -#: src/config/SSSDConfig.py:71 -msgid "" -"How long (minutes) to deny login after offline_failed_login_attempts has " -"been reached" -msgstr "" - -#: src/config/SSSDConfig.py:72 -msgid "What kind of messages are displayed to the user during authentication" -msgstr "" - -#: src/config/SSSDConfig.py:73 -msgid "How many seconds to keep identity information cached for PAM requests" -msgstr "" - -#: src/config/SSSDConfig.py:74 -msgid "How many days before password expiration a warning should be displayed" -msgstr "" - -#: src/config/SSSDConfig.py:77 -msgid "Whether to evaluate the time-based attributes in sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:78 -msgid "" -"How many seconds to keep sudorules cached before asking the provider again" -msgstr "" - -#: src/config/SSSDConfig.py:84 -msgid "Identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:85 -msgid "Authentication provider" -msgstr "" - -#: src/config/SSSDConfig.py:86 -msgid "Access control provider" -msgstr "" - -#: src/config/SSSDConfig.py:87 -msgid "Password change provider" -msgstr "" - -#: src/config/SSSDConfig.py:88 -msgid "SUDO provider" -msgstr "" - -#: src/config/SSSDConfig.py:89 -msgid "Autofs provider" -msgstr "" - -#: src/config/SSSDConfig.py:90 -msgid "Session-loading provider" -msgstr "" - -#: src/config/SSSDConfig.py:91 -msgid "Host identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:94 -msgid "Minimum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:95 -msgid "Maximum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:96 -msgid "Enable enumerating all users/groups" -msgstr "" - -#: src/config/SSSDConfig.py:97 -msgid "Cache credentials for offline login" -msgstr "" - -#: src/config/SSSDConfig.py:98 -msgid "Store password hashes" -msgstr "" - -#: src/config/SSSDConfig.py:99 -msgid "Display users/groups in fully-qualified form" -msgstr "" - -#: src/config/SSSDConfig.py:100 src/config/SSSDConfig.py:107 -#: src/config/SSSDConfig.py:108 src/config/SSSDConfig.py:109 -#: src/config/SSSDConfig.py:110 src/config/SSSDConfig.py:111 -msgid "Entry cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:101 -msgid "" -"Restrict or prefer a specific address family when performing DNS lookups" -msgstr "" - -#: src/config/SSSDConfig.py:102 -msgid "How long to keep cached entries after last successful login (days)" -msgstr "" - -#: src/config/SSSDConfig.py:103 -msgid "How long to wait for replies from DNS when resolving servers (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:104 -msgid "The domain part of service discovery DNS query" -msgstr "" - -#: src/config/SSSDConfig.py:105 -msgid "Override GID value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:106 -msgid "Treat usernames as case sensitive" -msgstr "" - -#: src/config/SSSDConfig.py:114 -msgid "IPA domain" -msgstr "" - -#: src/config/SSSDConfig.py:115 -msgid "IPA server address" -msgstr "" - -#: src/config/SSSDConfig.py:116 -msgid "IPA client hostname" -msgstr "" - -#: src/config/SSSDConfig.py:117 -msgid "Whether to automatically update the client's DNS entry in FreeIPA" -msgstr "" - -#: src/config/SSSDConfig.py:118 -msgid "The interface whose IP should be used for dynamic DNS updates" -msgstr "" - -#: src/config/SSSDConfig.py:119 -msgid "Search base for HBAC related objects" -msgstr "" - -#: src/config/SSSDConfig.py:120 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server" -msgstr "" - -#: src/config/SSSDConfig.py:121 -msgid "If DENY rules are present, either DENY_ALL or IGNORE" -msgstr "" - -#: src/config/SSSDConfig.py:122 -msgid "If set to false, host argument given by PAM will be ignored" -msgstr "" - -#: src/config/SSSDConfig.py:123 -msgid "The automounter location this IPA client is using" -msgstr "" - -#: src/config/SSSDConfig.py:126 src/config/SSSDConfig.py:127 -msgid "Kerberos server address" -msgstr "" - -#: src/config/SSSDConfig.py:128 -msgid "Kerberos realm" -msgstr "" - -#: src/config/SSSDConfig.py:129 -msgid "Authentication timeout" -msgstr "" - -#: src/config/SSSDConfig.py:132 -msgid "Directory to store credential caches" -msgstr "" - -#: src/config/SSSDConfig.py:133 -msgid "Location of the user's credential cache" -msgstr "" - -#: src/config/SSSDConfig.py:134 -msgid "Location of the keytab to validate credentials" -msgstr "" - -#: src/config/SSSDConfig.py:135 -msgid "Enable credential validation" -msgstr "" - -#: src/config/SSSDConfig.py:136 -msgid "Store password if offline for later online authentication" -msgstr "" - -#: src/config/SSSDConfig.py:137 -msgid "Renewable lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:138 -msgid "Lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:139 -msgid "Time between two checks for renewal" -msgstr "" - -#: src/config/SSSDConfig.py:140 -msgid "Enables FAST" -msgstr "" - -#: src/config/SSSDConfig.py:141 -msgid "Selects the principal to use for FAST" -msgstr "" - -#: src/config/SSSDConfig.py:142 -msgid "Enables principal canonicalization" -msgstr "" - -#: src/config/SSSDConfig.py:145 -msgid "Server where the change password service is running if not on the KDC" -msgstr "" - -#: src/config/SSSDConfig.py:148 -msgid "ldap_uri, The URI of the LDAP server" -msgstr "" - -#: src/config/SSSDConfig.py:149 -msgid "The default base DN" -msgstr "" - -#: src/config/SSSDConfig.py:150 -msgid "The Schema Type in use on the LDAP server, rfc2307" -msgstr "" - -#: src/config/SSSDConfig.py:151 -msgid "The default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:152 -msgid "The type of the authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:153 -msgid "The authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:154 -msgid "Length of time to attempt connection" -msgstr "" - -#: src/config/SSSDConfig.py:155 -msgid "Length of time to attempt synchronous LDAP operations" -msgstr "" - -#: src/config/SSSDConfig.py:156 -msgid "Length of time between attempts to reconnect while offline" -msgstr "" - -#: src/config/SSSDConfig.py:157 -msgid "Use only the upper case for realm names" -msgstr "" - -#: src/config/SSSDConfig.py:158 -msgid "File that contains CA certificates" -msgstr "" - -#: src/config/SSSDConfig.py:159 -msgid "Path to CA certificate directory" -msgstr "" - -#: src/config/SSSDConfig.py:160 -msgid "File that contains the client certificate" -msgstr "" - -#: src/config/SSSDConfig.py:161 -msgid "File that contains the client key" -msgstr "" - -#: src/config/SSSDConfig.py:162 -msgid "List of possible ciphers suites" -msgstr "" - -#: src/config/SSSDConfig.py:163 -msgid "Require TLS certificate verification" -msgstr "" - -#: src/config/SSSDConfig.py:164 -msgid "Specify the sasl mechanism to use" -msgstr "" - -#: src/config/SSSDConfig.py:165 -msgid "Specify the sasl authorization id to use" -msgstr "" - -#: src/config/SSSDConfig.py:166 -msgid "Specify the sasl authorization realm to use" -msgstr "" - -#: src/config/SSSDConfig.py:167 -msgid "Specify the minimal SSF for LDAP sasl authorization" -msgstr "" - -#: src/config/SSSDConfig.py:168 -msgid "Kerberos service keytab" -msgstr "" - -#: src/config/SSSDConfig.py:169 -msgid "Use Kerberos auth for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:170 -msgid "Follow LDAP referrals" -msgstr "" - -#: src/config/SSSDConfig.py:171 -msgid "Lifetime of TGT for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:172 -msgid "How to dereference aliases" -msgstr "" - -#: src/config/SSSDConfig.py:173 -msgid "Service name for DNS service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:174 -msgid "The number of records to retrieve in a single LDAP query" -msgstr "" - -#: src/config/SSSDConfig.py:175 -msgid "The number of members that must be missing to trigger a full deref" -msgstr "" - -#: src/config/SSSDConfig.py:176 -msgid "" -"Whether the LDAP library should perform a reverse lookup to canonicalize the " -"host name during a SASL bind" -msgstr "" - -#: src/config/SSSDConfig.py:178 -msgid "entryUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:179 -msgid "lastUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:181 -msgid "How long to retain a connection to the LDAP server before disconnecting" -msgstr "" - -#: src/config/SSSDConfig.py:183 -msgid "Disable the LDAP paging control" -msgstr "" - -#: src/config/SSSDConfig.py:186 -msgid "Length of time to wait for a search request" -msgstr "" - -#: src/config/SSSDConfig.py:187 -msgid "Length of time to wait for a enumeration request" -msgstr "" - -#: src/config/SSSDConfig.py:188 -msgid "Length of time between enumeration updates" -msgstr "" - -#: src/config/SSSDConfig.py:189 -msgid "Length of time between cache cleanups" -msgstr "" - -#: src/config/SSSDConfig.py:190 -msgid "Require TLS for ID lookups" -msgstr "" - -#: src/config/SSSDConfig.py:191 -msgid "Base DN for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:192 -msgid "Scope of user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:193 -msgid "Filter for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:194 -msgid "Objectclass for users" -msgstr "" - -#: src/config/SSSDConfig.py:195 -msgid "Username attribute" -msgstr "" - -#: src/config/SSSDConfig.py:197 -msgid "UID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:198 -msgid "Primary GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:199 -msgid "GECOS attribute" -msgstr "" - -#: src/config/SSSDConfig.py:200 -msgid "Home directory attribute" -msgstr "" - -#: src/config/SSSDConfig.py:201 -msgid "Shell attribute" -msgstr "" - -#: src/config/SSSDConfig.py:202 -msgid "UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:203 -msgid "User principal attribute (for Kerberos)" -msgstr "" - -#: src/config/SSSDConfig.py:204 -msgid "Full Name" -msgstr "" - -#: src/config/SSSDConfig.py:205 -msgid "memberOf attribute" -msgstr "" - -#: src/config/SSSDConfig.py:206 -msgid "Modification time attribute" -msgstr "" - -#: src/config/SSSDConfig.py:208 -msgid "shadowLastChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:209 -msgid "shadowMin attribute" -msgstr "" - -#: src/config/SSSDConfig.py:210 -msgid "shadowMax attribute" -msgstr "" - -#: src/config/SSSDConfig.py:211 -msgid "shadowWarning attribute" -msgstr "" - -#: src/config/SSSDConfig.py:212 -msgid "shadowInactive attribute" -msgstr "" - -#: src/config/SSSDConfig.py:213 -msgid "shadowExpire attribute" -msgstr "" - -#: src/config/SSSDConfig.py:214 -msgid "shadowFlag attribute" -msgstr "" - -#: src/config/SSSDConfig.py:215 -msgid "Attribute listing authorized PAM services" -msgstr "" - -#: src/config/SSSDConfig.py:216 -msgid "Attribute listing authorized server hosts" -msgstr "" - -#: src/config/SSSDConfig.py:217 -msgid "krbLastPwdChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:218 -msgid "krbPasswordExpiration attribute" -msgstr "" - -#: src/config/SSSDConfig.py:219 -msgid "Attribute indicating that server side password policies are active" -msgstr "" - -#: src/config/SSSDConfig.py:220 -msgid "accountExpires attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:221 -msgid "userAccountControl attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:222 -msgid "nsAccountLock attribute" -msgstr "" - -#: src/config/SSSDConfig.py:223 -msgid "loginDisabled attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:224 -msgid "loginExpirationTime attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:225 -msgid "loginAllowedTimeMap attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:226 -msgid "SSH public key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:228 -msgid "Base DN for group lookups" -msgstr "" - -#: src/config/SSSDConfig.py:231 -msgid "Objectclass for groups" -msgstr "" - -#: src/config/SSSDConfig.py:232 -msgid "Group name" -msgstr "" - -#: src/config/SSSDConfig.py:233 -msgid "Group password" -msgstr "" - -#: src/config/SSSDConfig.py:234 -msgid "GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:235 -msgid "Group member attribute" -msgstr "" - -#: src/config/SSSDConfig.py:236 -msgid "Group UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:237 -msgid "Modification time attribute for groups" -msgstr "" - -#: src/config/SSSDConfig.py:239 -msgid "Maximum nesting level SSSd will follow" -msgstr "" - -#: src/config/SSSDConfig.py:241 -msgid "Base DN for netgroup lookups" -msgstr "" - -#: src/config/SSSDConfig.py:242 -msgid "Objectclass for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:243 -msgid "Netgroup name" -msgstr "" - -#: src/config/SSSDConfig.py:244 -msgid "Netgroups members attribute" -msgstr "" - -#: src/config/SSSDConfig.py:245 -msgid "Netgroup triple attribute" -msgstr "" - -#: src/config/SSSDConfig.py:246 -msgid "Netgroup UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:247 -msgid "Modification time attribute for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:249 -msgid "Base DN for service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:250 -msgid "Objectclass for services" -msgstr "" - -#: src/config/SSSDConfig.py:251 -msgid "Service name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:252 -msgid "Service port attribute" -msgstr "" - -#: src/config/SSSDConfig.py:253 -msgid "Service protocol attribute" -msgstr "" - -#: src/config/SSSDConfig.py:257 -msgid "Policy to evaluate the password expiration" -msgstr "" - -#: src/config/SSSDConfig.py:260 -msgid "LDAP filter to determine access privileges" -msgstr "" - -#: src/config/SSSDConfig.py:261 -msgid "Which attributes shall be used to evaluate if an account is expired" -msgstr "" - -#: src/config/SSSDConfig.py:262 -msgid "Which rules should be used to evaluate access control" -msgstr "" - -#: src/config/SSSDConfig.py:265 -msgid "URI of an LDAP server where password changes are allowed" -msgstr "" - -#: src/config/SSSDConfig.py:266 -msgid "DNS service name for LDAP password change server" -msgstr "" - -#: src/config/SSSDConfig.py:269 -msgid "Base DN for sudo rules lookups" -msgstr "" - -#: src/config/SSSDConfig.py:270 -msgid "Enable periodical update of all sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:271 -msgid "Length of time between rules updates" -msgstr "" - -#: src/config/SSSDConfig.py:272 -msgid "Object class for sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:273 -msgid "Sudo rule name" -msgstr "" - -#: src/config/SSSDConfig.py:274 -msgid "Sudo rule command attribute" -msgstr "" - -#: src/config/SSSDConfig.py:275 -msgid "Sudo rule host attribute" -msgstr "" - -#: src/config/SSSDConfig.py:276 -msgid "Sudo rule user attribute" -msgstr "" - -#: src/config/SSSDConfig.py:277 -msgid "Sudo rule option attribute" -msgstr "" - -#: src/config/SSSDConfig.py:278 -msgid "Sudo rule runasuser attribute" -msgstr "" - -#: src/config/SSSDConfig.py:279 -msgid "Sudo rule runasgroup attribute" -msgstr "" - -#: src/config/SSSDConfig.py:280 -msgid "Sudo rule notbefore attribute" -msgstr "" - -#: src/config/SSSDConfig.py:281 -msgid "Sudo rule notafter attribute" -msgstr "" - -#: src/config/SSSDConfig.py:282 -msgid "Sudo rule order attribute" -msgstr "" - -#: src/config/SSSDConfig.py:285 -msgid "Object class for automounter maps" -msgstr "" - -#: src/config/SSSDConfig.py:286 -msgid "Automounter map name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:287 -msgid "Object class for automounter map entries" -msgstr "" - -#: src/config/SSSDConfig.py:288 -msgid "Automounter map entry key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:289 -msgid "Automounter map entry value attribute" -msgstr "" - -#: src/config/SSSDConfig.py:290 -msgid "Base DN for automounter map lookups" -msgstr "" - -#: src/config/SSSDConfig.py:293 -msgid "Comma separated list of allowed users" -msgstr "" - -#: src/config/SSSDConfig.py:294 -msgid "Comma separated list of prohibited users" -msgstr "" - -#: src/config/SSSDConfig.py:297 -msgid "Default shell, /bin/bash" -msgstr "" - -#: src/config/SSSDConfig.py:298 -msgid "Base for home directories" -msgstr "" - -#: src/config/SSSDConfig.py:301 -msgid "The name of the NSS library to use" -msgstr "" - -#: src/config/SSSDConfig.py:304 -msgid "PAM stack to use" -msgstr "" - -#: src/monitor/monitor.c:2379 -msgid "Become a daemon (default)" -msgstr "" - -#: src/monitor/monitor.c:2381 -msgid "Run interactive (not a daemon)" -msgstr "" - -#: src/monitor/monitor.c:2383 src/tools/sss_debuglevel.c:77 -msgid "Specify a non-default config file" -msgstr "" - -#: src/monitor/monitor.c:2385 -msgid "Print version number and exit" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1575 src/providers/ldap/ldap_child.c:381 -#: src/util/util.h:89 -msgid "Debug level" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1577 src/providers/ldap/ldap_child.c:383 -#: src/util/util.h:93 -msgid "Add debug timestamps" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1579 src/providers/ldap/ldap_child.c:385 -#: src/util/util.h:95 -msgid "Show timestamps with microseconds" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1581 src/providers/ldap/ldap_child.c:387 -msgid "An open file descriptor for the debug logs" -msgstr "" - -#: src/providers/data_provider_be.c:1938 -msgid "Domain of the information provider (mandatory)" -msgstr "" - -#: src/sss_client/common.c:878 -msgid "Privileged socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:881 -msgid "Public socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:884 -msgid "Unexpected format of the server credential message." -msgstr "" - -#: src/sss_client/common.c:887 -msgid "SSSD is not run by root." -msgstr "" - -#: src/sss_client/common.c:892 -msgid "An error occurred, but no description can be found." -msgstr "" - -#: src/sss_client/common.c:898 -msgid "Unexpected error while looking for an error description" -msgstr "" - -#: src/sss_client/pam_sss.c:378 -msgid "Passwords do not match" -msgstr "" - -#: src/sss_client/pam_sss.c:571 -msgid "Password reset by root is not supported." -msgstr "" - -#: src/sss_client/pam_sss.c:612 -msgid "Authenticated with cached credentials" -msgstr "" - -#: src/sss_client/pam_sss.c:613 -msgid ", your cached password will expire at: " -msgstr "" - -#: src/sss_client/pam_sss.c:643 -#, c-format -msgid "Your password has expired. You have %d grace login(s) remaining." -msgstr "" - -#: src/sss_client/pam_sss.c:689 -#, c-format -msgid "Your password will expire in %d %s." -msgstr "" - -#: src/sss_client/pam_sss.c:738 -msgid "Authentication is denied until: " -msgstr "" - -#: src/sss_client/pam_sss.c:759 -msgid "System is offline, password change not possible" -msgstr "" - -#: src/sss_client/pam_sss.c:789 src/sss_client/pam_sss.c:802 -msgid "Password change failed. " -msgstr "" - -#: src/sss_client/pam_sss.c:792 src/sss_client/pam_sss.c:803 -msgid "Server message: " -msgstr "" - -#: src/sss_client/pam_sss.c:1286 -msgid "New Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1287 -msgid "Reenter new Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1373 -msgid "Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1405 -msgid "Current Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1552 -msgid "Password expired. Change your password now." -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:40 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:211 src/tools/sss_useradd.c:48 -#: src/tools/sss_groupadd.c:41 src/tools/sss_groupdel.c:43 -#: src/tools/sss_groupmod.c:42 src/tools/sss_groupshow.c:615 -#: src/tools/sss_userdel.c:131 src/tools/sss_usermod.c:47 -#: src/tools/sss_cache.c:260 src/tools/sss_debuglevel.c:75 -msgid "The debug level to run with" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:42 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:215 -msgid "The SSSD domain to use" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:58 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:229 src/tools/sss_useradd.c:71 -#: src/tools/sss_groupadd.c:56 src/tools/sss_groupdel.c:52 -#: src/tools/sss_groupmod.c:63 src/tools/sss_groupshow.c:626 -#: src/tools/sss_userdel.c:148 src/tools/sss_usermod.c:72 -#: src/tools/sss_cache.c:281 -msgid "Error setting the locale\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:65 -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:91 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:236 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:269 -msgid "Not enough memory\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:84 -msgid "User not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:104 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:282 -msgid "Error looking up public keys\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:94 -msgid "Failed to open a socket\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:104 -msgid "Failed to connect to the server\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:195 -msgid "Failed to execute proxy command\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:213 -msgid "The port to use to connect to the host" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:255 -msgid "Host not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:261 -msgid "The path to the proxy command must be absolute\n" -msgstr "" - -#: src/tools/sss_useradd.c:49 src/tools/sss_usermod.c:48 -msgid "The UID of the user" -msgstr "" - -#: src/tools/sss_useradd.c:50 src/tools/sss_usermod.c:50 -msgid "The comment string" -msgstr "" - -#: src/tools/sss_useradd.c:51 src/tools/sss_usermod.c:51 -msgid "Home directory" -msgstr "" - -#: src/tools/sss_useradd.c:52 src/tools/sss_usermod.c:52 -msgid "Login shell" -msgstr "" - -#: src/tools/sss_useradd.c:53 -msgid "Groups" -msgstr "" - -#: src/tools/sss_useradd.c:54 -msgid "Create user's directory if it does not exist" -msgstr "" - -#: src/tools/sss_useradd.c:55 -msgid "Never create user's directory, overrides config" -msgstr "" - -#: src/tools/sss_useradd.c:56 -msgid "Specify an alternative skeleton directory" -msgstr "" - -#: src/tools/sss_useradd.c:57 src/tools/sss_usermod.c:57 -msgid "The SELinux user for user's login" -msgstr "" - -#: src/tools/sss_useradd.c:84 src/tools/sss_groupmod.c:76 -#: src/tools/sss_usermod.c:85 -msgid "Specify group to add to\n" -msgstr "" - -#: src/tools/sss_useradd.c:108 -msgid "Specify user to add\n" -msgstr "" - -#: src/tools/sss_useradd.c:117 src/tools/sss_groupadd.c:82 -#: src/tools/sss_groupdel.c:77 src/tools/sss_groupmod.c:109 -#: src/tools/sss_groupshow.c:659 src/tools/sss_userdel.c:193 -#: src/tools/sss_usermod.c:126 -msgid "Error initializing the tools - no local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:119 src/tools/sss_groupadd.c:84 -#: src/tools/sss_groupdel.c:79 src/tools/sss_groupmod.c:111 -#: src/tools/sss_groupshow.c:661 src/tools/sss_userdel.c:195 -#: src/tools/sss_usermod.c:128 -msgid "Error initializing the tools\n" -msgstr "" - -#: src/tools/sss_useradd.c:128 src/tools/sss_groupadd.c:93 -#: src/tools/sss_groupdel.c:88 src/tools/sss_groupmod.c:119 -#: src/tools/sss_groupshow.c:670 src/tools/sss_userdel.c:204 -#: src/tools/sss_usermod.c:137 -msgid "Invalid domain specified in FQDN\n" -msgstr "" - -#: src/tools/sss_useradd.c:137 src/tools/sss_groupmod.c:139 -#: src/tools/sss_groupmod.c:166 src/tools/sss_usermod.c:160 -#: src/tools/sss_usermod.c:187 -msgid "Internal error while parsing parameters\n" -msgstr "" - -#: src/tools/sss_useradd.c:145 src/tools/sss_usermod.c:168 -#: src/tools/sss_usermod.c:195 -msgid "Groups must be in the same domain as user\n" -msgstr "" - -#: src/tools/sss_useradd.c:153 -#, c-format -msgid "Cannot find group %s in local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:168 src/tools/sss_userdel.c:214 -msgid "Cannot set default values\n" -msgstr "" - -#: src/tools/sss_useradd.c:175 src/tools/sss_usermod.c:151 -msgid "The selected UID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_useradd.c:202 src/tools/sss_usermod.c:236 -msgid "Cannot set SELinux login context\n" -msgstr "" - -#: src/tools/sss_useradd.c:217 -msgid "Cannot get info about the user\n" -msgstr "" - -#: src/tools/sss_useradd.c:229 -msgid "User's home directory already exists, not copying data from skeldir\n" -msgstr "" - -#: src/tools/sss_useradd.c:232 -#, c-format -msgid "Cannot create user's home directory: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:243 -#, c-format -msgid "Cannot create user's mail spool: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:255 -msgid "Could not allocate ID for the user - domain full?\n" -msgstr "" - -#: src/tools/sss_useradd.c:259 -msgid "A user or group with the same name or ID already exists\n" -msgstr "" - -#: src/tools/sss_useradd.c:265 -msgid "Transaction error. Could not add user.\n" -msgstr "" - -#: src/tools/sss_groupadd.c:43 src/tools/sss_groupmod.c:48 -msgid "The GID of the group" -msgstr "" - -#: src/tools/sss_groupadd.c:73 -msgid "Specify group to add\n" -msgstr "" - -#: src/tools/sss_groupadd.c:102 src/tools/sss_groupmod.c:190 -msgid "The selected GID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_groupadd.c:127 -msgid "Could not allocate ID for the group - domain full?\n" -msgstr "" - -#: src/tools/sss_groupadd.c:131 -msgid "A group with the same name or GID already exists\n" -msgstr "" - -#: src/tools/sss_groupadd.c:136 -msgid "Transaction error. Could not add group.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:68 -msgid "Specify group to delete\n" -msgstr "" - -#: src/tools/sss_groupdel.c:101 -#, c-format -msgid "Group %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_groupdel.c:115 -msgid "" -"No such group in local domain. Removing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:120 -msgid "Internal error. Could not remove group.\n" -msgstr "" - -#: src/tools/sss_groupmod.c:44 -msgid "Groups to add this group to" -msgstr "" - -#: src/tools/sss_groupmod.c:46 -msgid "Groups to remove this group from" -msgstr "" - -#: src/tools/sss_groupmod.c:84 src/tools/sss_usermod.c:93 -msgid "Specify group to remove from\n" -msgstr "" - -#: src/tools/sss_groupmod.c:98 -msgid "Specify group to modify\n" -msgstr "" - -#: src/tools/sss_groupmod.c:126 -msgid "" -"Cannot find group in local domain, modifying groups is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_groupmod.c:147 src/tools/sss_groupmod.c:174 -msgid "Member groups must be in the same domain as parent group\n" -msgstr "" - -#: src/tools/sss_groupmod.c:155 src/tools/sss_groupmod.c:182 -#: src/tools/sss_usermod.c:176 src/tools/sss_usermod.c:203 -#, c-format -msgid "" -"Cannot find group %s in local domain, only groups in local domain are " -"allowed\n" -msgstr "" - -#: src/tools/sss_groupmod.c:216 -msgid "Could not modify group - check if member group names are correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:220 -msgid "Could not modify group - check if groupname is correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:224 -msgid "Transaction error. Could not modify group.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:562 -#, c-format -msgid "%s%sGroup: %s\n" -msgstr "" - -#: src/tools/sss_groupshow.c:563 -msgid "Magic Private " -msgstr "" - -#: src/tools/sss_groupshow.c:565 -#, c-format -msgid "%sGID number: %d\n" -msgstr "" - -#: src/tools/sss_groupshow.c:567 -#, c-format -msgid "%sMember users: " -msgstr "" - -#: src/tools/sss_groupshow.c:574 -#, c-format -msgid "" -"\n" -"%sIs a member of: " -msgstr "" - -#: src/tools/sss_groupshow.c:581 -#, c-format -msgid "" -"\n" -"%sMember groups: " -msgstr "" - -#: src/tools/sss_groupshow.c:617 -msgid "Print indirect group members recursively" -msgstr "" - -#: src/tools/sss_groupshow.c:650 -msgid "Specify group to show\n" -msgstr "" - -#: src/tools/sss_groupshow.c:689 -msgid "" -"No such group in local domain. Printing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:694 -msgid "Internal error. Could not print group.\n" -msgstr "" - -#: src/tools/sss_userdel.c:133 -msgid "Remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:135 -msgid "Do not remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:137 -msgid "Force removal of files not owned by the user" -msgstr "" - -#: src/tools/sss_userdel.c:139 -msgid "Kill users' processes before removing him" -msgstr "" - -#: src/tools/sss_userdel.c:184 -msgid "Specify user to delete\n" -msgstr "" - -#: src/tools/sss_userdel.c:230 -#, c-format -msgid "User %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_userdel.c:255 -msgid "Cannot reset SELinux login context\n" -msgstr "" - -#: src/tools/sss_userdel.c:267 -#, c-format -msgid "WARNING: The user (uid %lu) was still logged in when deleted.\n" -msgstr "" - -#: src/tools/sss_userdel.c:272 -msgid "Cannot determine if the user was logged in on this platform" -msgstr "" - -#: src/tools/sss_userdel.c:277 -msgid "Error while checking if the user was logged in\n" -msgstr "" - -#: src/tools/sss_userdel.c:284 -#, c-format -msgid "The post-delete command failed: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:296 -msgid "Not removing home dir - not owned by user\n" -msgstr "" - -#: src/tools/sss_userdel.c:298 -#, c-format -msgid "Cannot remove homedir: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:309 -msgid "" -"No such user in local domain. Removing users only allowed in local domain.\n" -msgstr "" - -#: src/tools/sss_userdel.c:314 -msgid "Internal error. Could not remove user.\n" -msgstr "" - -#: src/tools/sss_usermod.c:49 -msgid "The GID of the user" -msgstr "" - -#: src/tools/sss_usermod.c:53 -msgid "Groups to add this user to" -msgstr "" - -#: src/tools/sss_usermod.c:54 -msgid "Groups to remove this user from" -msgstr "" - -#: src/tools/sss_usermod.c:55 -msgid "Lock the account" -msgstr "" - -#: src/tools/sss_usermod.c:56 -msgid "Unlock the account" -msgstr "" - -#: src/tools/sss_usermod.c:117 -msgid "Specify user to modify\n" -msgstr "" - -#: src/tools/sss_usermod.c:144 -msgid "" -"Cannot find user in local domain, modifying users is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_usermod.c:246 -msgid "Could not modify user - check if group names are correct\n" -msgstr "" - -#: src/tools/sss_usermod.c:250 -msgid "Could not modify user - user already member of groups?\n" -msgstr "" - -#: src/tools/sss_usermod.c:254 -msgid "Transaction error. Could not modify user.\n" -msgstr "" - -#: src/tools/sss_cache.c:132 -#, c-format -msgid "Couldn't invalidate %s" -msgstr "" - -#: src/tools/sss_cache.c:138 -#, c-format -msgid "Couldn't invalidate %s %s" -msgstr "" - -#: src/tools/sss_cache.c:262 -msgid "Invalidate particular user" -msgstr "" - -#: src/tools/sss_cache.c:264 -msgid "Invalidate all users" -msgstr "" - -#: src/tools/sss_cache.c:266 -msgid "Invalidate particular group" -msgstr "" - -#: src/tools/sss_cache.c:268 -msgid "Invalidate all groups" -msgstr "" - -#: src/tools/sss_cache.c:270 -msgid "Invalidate particular netgroup" -msgstr "" - -#: src/tools/sss_cache.c:272 -msgid "Invalidate all netgroups" -msgstr "" - -#: src/tools/sss_cache.c:274 -msgid "Only invalidate entries from a particular domain" -msgstr "" - -#: src/tools/sss_debuglevel.c:43 -msgid "\n" -msgstr "" - -#: src/tools/sss_debuglevel.c:102 -msgid "Specify debug level you want to set\n" -msgstr "" - -#: src/tools/tools_util.c:286 -msgid "Out of memory\n" -msgstr "" - -#: src/tools/tools_util.h:40 -#, c-format -msgid "%s must be run as root\n" -msgstr "" - -#: src/util/util.h:91 -msgid "Send the debug output to files instead of stderr" -msgstr "" diff --git a/po/hu.po b/po/hu.po index dfce64ca8..06b87efc7 100644 --- a/po/hu.po +++ b/po/hu.po @@ -8,8 +8,8 @@ msgid "" msgstr "" "Project-Id-Version: SSSD\n" "Report-Msgid-Bugs-To: sssd-devel@lists.fedorahosted.org\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2011-12-21 10:11+0000\n" +"POT-Creation-Date: 2012-03-12 16:26-0400\n" +"PO-Revision-Date: 2012-03-08 11:42+0000\n" "Last-Translator: sgallagh \n" "Language-Team: Hungarian \n" "Language: hu\n" @@ -175,18 +175,16 @@ msgid "SUDO provider" msgstr "" #: src/config/SSSDConfig.py:89 -#, fuzzy msgid "Autofs provider" -msgstr "Azonosító-kiszolgáló" +msgstr "" #: src/config/SSSDConfig.py:90 msgid "Session-loading provider" msgstr "" #: src/config/SSSDConfig.py:91 -#, fuzzy msgid "Host identity provider" -msgstr "Azonosító-kiszolgáló" +msgstr "" #: src/config/SSSDConfig.py:94 msgid "Minimum user ID" @@ -881,7 +879,7 @@ msgstr "Mikroszekundum pontosságú időbélyegek" msgid "An open file descriptor for the debug logs" msgstr "" -#: src/providers/data_provider_be.c:1938 +#: src/providers/data_provider_be.c:2022 msgid "Domain of the information provider (mandatory)" msgstr "" @@ -982,9 +980,8 @@ msgstr "" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:42 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:215 -#, fuzzy msgid "The SSSD domain to use" -msgstr "A felhasználó UID-je" +msgstr "" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:58 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:229 src/tools/sss_useradd.c:71 @@ -999,9 +996,8 @@ msgstr "" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:91 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:236 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:269 -#, fuzzy msgid "Not enough memory\n" -msgstr "Elfogyott a memória\n" +msgstr "" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:84 msgid "User not specified\n" diff --git a/po/id.po b/po/id.po index b95624f9a..ce4d22d0c 100644 --- a/po/id.po +++ b/po/id.po @@ -7,8 +7,8 @@ msgid "" msgstr "" "Project-Id-Version: SSSD\n" "Report-Msgid-Bugs-To: sssd-devel@lists.fedorahosted.org\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2011-12-21 10:11+0000\n" +"POT-Creation-Date: 2012-03-12 16:26-0400\n" +"PO-Revision-Date: 2012-03-08 11:41+0000\n" "Last-Translator: sgallagh \n" "Language-Team: Indonesian \n" "Language: id\n" @@ -170,24 +170,20 @@ msgid "Password change provider" msgstr "Penyedia pengubah kata sandi" #: src/config/SSSDConfig.py:88 -#, fuzzy msgid "SUDO provider" -msgstr "Penyedia identitas" +msgstr "" #: src/config/SSSDConfig.py:89 -#, fuzzy msgid "Autofs provider" -msgstr "Penyedia otentikasi" +msgstr "" #: src/config/SSSDConfig.py:90 -#, fuzzy msgid "Session-loading provider" -msgstr "Penyedia kontrol akses" +msgstr "" #: src/config/SSSDConfig.py:91 -#, fuzzy msgid "Host identity provider" -msgstr "Penyedia identitas" +msgstr "" #: src/config/SSSDConfig.py:94 msgid "Minimum user ID" @@ -632,9 +628,8 @@ msgid "loginAllowedTimeMap attribute of NDS" msgstr "" #: src/config/SSSDConfig.py:226 -#, fuzzy msgid "SSH public key attribute" -msgstr "Atribut direktori Home" +msgstr "" #: src/config/SSSDConfig.py:228 msgid "Base DN for group lookups" @@ -701,29 +696,24 @@ msgid "Modification time attribute for netgroups" msgstr "" #: src/config/SSSDConfig.py:249 -#, fuzzy msgid "Base DN for service lookups" -msgstr "Filter pencarian pengguna" +msgstr "" #: src/config/SSSDConfig.py:250 -#, fuzzy msgid "Objectclass for services" -msgstr "Objectclass untuk pengguna" +msgstr "" #: src/config/SSSDConfig.py:251 -#, fuzzy msgid "Service name attribute" -msgstr "Atribut Nama pengguna" +msgstr "" #: src/config/SSSDConfig.py:252 -#, fuzzy msgid "Service port attribute" -msgstr "Atribut direktori Home" +msgstr "" #: src/config/SSSDConfig.py:253 -#, fuzzy msgid "Service protocol attribute" -msgstr "Atribut Shell" +msgstr "" #: src/config/SSSDConfig.py:257 msgid "Policy to evaluate the password expiration" @@ -750,9 +740,8 @@ msgid "DNS service name for LDAP password change server" msgstr "" #: src/config/SSSDConfig.py:269 -#, fuzzy msgid "Base DN for sudo rules lookups" -msgstr "Filter pencarian pengguna" +msgstr "" #: src/config/SSSDConfig.py:270 msgid "Enable periodical update of all sudo rules" @@ -763,86 +752,72 @@ msgid "Length of time between rules updates" msgstr "" #: src/config/SSSDConfig.py:272 -#, fuzzy msgid "Object class for sudo rules" -msgstr "Objectclass untuk pengguna" +msgstr "" #: src/config/SSSDConfig.py:273 msgid "Sudo rule name" msgstr "" #: src/config/SSSDConfig.py:274 -#, fuzzy msgid "Sudo rule command attribute" -msgstr "Atribut direktori Home" +msgstr "" #: src/config/SSSDConfig.py:275 -#, fuzzy msgid "Sudo rule host attribute" -msgstr "Atribut direktori Home" +msgstr "" #: src/config/SSSDConfig.py:276 -#, fuzzy msgid "Sudo rule user attribute" -msgstr "Atribut direktori Home" +msgstr "" #: src/config/SSSDConfig.py:277 -#, fuzzy msgid "Sudo rule option attribute" -msgstr "Atribut direktori Home" +msgstr "" #: src/config/SSSDConfig.py:278 -#, fuzzy msgid "Sudo rule runasuser attribute" -msgstr "Atribut Nama pengguna" +msgstr "" #: src/config/SSSDConfig.py:279 msgid "Sudo rule runasgroup attribute" msgstr "" #: src/config/SSSDConfig.py:280 -#, fuzzy msgid "Sudo rule notbefore attribute" -msgstr "Atribut direktori Home" +msgstr "" #: src/config/SSSDConfig.py:281 -#, fuzzy msgid "Sudo rule notafter attribute" -msgstr "Atribut direktori Home" +msgstr "" #: src/config/SSSDConfig.py:282 -#, fuzzy msgid "Sudo rule order attribute" -msgstr "Atribut direktori Home" +msgstr "" #: src/config/SSSDConfig.py:285 -#, fuzzy msgid "Object class for automounter maps" -msgstr "Objectclass untuk pengguna" +msgstr "" #: src/config/SSSDConfig.py:286 -#, fuzzy msgid "Automounter map name attribute" -msgstr "Atribut Nama pengguna" +msgstr "" #: src/config/SSSDConfig.py:287 -#, fuzzy msgid "Object class for automounter map entries" -msgstr "Objectclass untuk pengguna" +msgstr "" #: src/config/SSSDConfig.py:288 -#, fuzzy msgid "Automounter map entry key attribute" -msgstr "Atribut direktori Home" +msgstr "" #: src/config/SSSDConfig.py:289 msgid "Automounter map entry value attribute" msgstr "" #: src/config/SSSDConfig.py:290 -#, fuzzy msgid "Base DN for automounter map lookups" -msgstr "Filter pencarian pengguna" +msgstr "" #: src/config/SSSDConfig.py:293 msgid "Comma separated list of allowed users" @@ -903,7 +878,7 @@ msgstr "" msgid "An open file descriptor for the debug logs" msgstr "" -#: src/providers/data_provider_be.c:1938 +#: src/providers/data_provider_be.c:2022 msgid "Domain of the information provider (mandatory)" msgstr "" @@ -1004,9 +979,8 @@ msgstr "" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:42 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:215 -#, fuzzy msgid "The SSSD domain to use" -msgstr "Domain SSSD akan dijalankan" +msgstr "" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:58 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:229 src/tools/sss_useradd.c:71 @@ -1021,9 +995,8 @@ msgstr "" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:91 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:236 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:269 -#, fuzzy msgid "Not enough memory\n" -msgstr "Kehabisan memori\n" +msgstr "" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:84 msgid "User not specified\n" diff --git a/po/it.po b/po/it.po index 6fd4940e4..e5cc7624d 100644 --- a/po/it.po +++ b/po/it.po @@ -8,8 +8,8 @@ msgid "" msgstr "" "Project-Id-Version: SSSD\n" "Report-Msgid-Bugs-To: sssd-devel@lists.fedorahosted.org\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2011-12-21 10:11+0000\n" +"POT-Creation-Date: 2012-03-12 16:26-0400\n" +"PO-Revision-Date: 2012-03-08 11:41+0000\n" "Last-Translator: sgallagh \n" "Language-Team: Italian \n" "Language: it\n" @@ -174,24 +174,20 @@ msgid "Password change provider" msgstr "Provider di cambio password" #: src/config/SSSDConfig.py:88 -#, fuzzy msgid "SUDO provider" -msgstr "Provider di identità" +msgstr "" #: src/config/SSSDConfig.py:89 -#, fuzzy msgid "Autofs provider" -msgstr "Provider di autenticazione" +msgstr "" #: src/config/SSSDConfig.py:90 -#, fuzzy msgid "Session-loading provider" -msgstr "Provider di access control" +msgstr "" #: src/config/SSSDConfig.py:91 -#, fuzzy msgid "Host identity provider" -msgstr "Provider di identità" +msgstr "" #: src/config/SSSDConfig.py:94 msgid "Minimum user ID" @@ -643,9 +639,8 @@ msgid "loginAllowedTimeMap attribute of NDS" msgstr "" #: src/config/SSSDConfig.py:226 -#, fuzzy msgid "SSH public key attribute" -msgstr "Attributo della home directory" +msgstr "" #: src/config/SSSDConfig.py:228 msgid "Base DN for group lookups" @@ -712,29 +707,24 @@ msgid "Modification time attribute for netgroups" msgstr "" #: src/config/SSSDConfig.py:249 -#, fuzzy msgid "Base DN for service lookups" -msgstr "Base DN per i lookup utente" +msgstr "" #: src/config/SSSDConfig.py:250 -#, fuzzy msgid "Objectclass for services" -msgstr "Objectclass per gli utenti" +msgstr "" #: src/config/SSSDConfig.py:251 -#, fuzzy msgid "Service name attribute" -msgstr "Attributo del nome utente" +msgstr "" #: src/config/SSSDConfig.py:252 -#, fuzzy msgid "Service port attribute" -msgstr "Attributo della home directory" +msgstr "" #: src/config/SSSDConfig.py:253 -#, fuzzy msgid "Service protocol attribute" -msgstr "Attributo della shell" +msgstr "" #: src/config/SSSDConfig.py:257 msgid "Policy to evaluate the password expiration" @@ -761,100 +751,84 @@ msgid "DNS service name for LDAP password change server" msgstr "" #: src/config/SSSDConfig.py:269 -#, fuzzy msgid "Base DN for sudo rules lookups" -msgstr "Base DN per i lookup utente" +msgstr "" #: src/config/SSSDConfig.py:270 msgid "Enable periodical update of all sudo rules" msgstr "" #: src/config/SSSDConfig.py:271 -#, fuzzy msgid "Length of time between rules updates" -msgstr "Durata tra gli aggiornamenti alle enumeration" +msgstr "" #: src/config/SSSDConfig.py:272 -#, fuzzy msgid "Object class for sudo rules" -msgstr "Objectclass per gli utenti" +msgstr "" #: src/config/SSSDConfig.py:273 msgid "Sudo rule name" msgstr "" #: src/config/SSSDConfig.py:274 -#, fuzzy msgid "Sudo rule command attribute" -msgstr "Attributo della home directory" +msgstr "" #: src/config/SSSDConfig.py:275 -#, fuzzy msgid "Sudo rule host attribute" -msgstr "Attributo della home directory" +msgstr "" #: src/config/SSSDConfig.py:276 -#, fuzzy msgid "Sudo rule user attribute" -msgstr "Attributo della home directory" +msgstr "" #: src/config/SSSDConfig.py:277 -#, fuzzy msgid "Sudo rule option attribute" -msgstr "Attributo della home directory" +msgstr "" #: src/config/SSSDConfig.py:278 -#, fuzzy msgid "Sudo rule runasuser attribute" -msgstr "Attributo del nome utente" +msgstr "" #: src/config/SSSDConfig.py:279 msgid "Sudo rule runasgroup attribute" msgstr "" #: src/config/SSSDConfig.py:280 -#, fuzzy msgid "Sudo rule notbefore attribute" -msgstr "Attributo della home directory" +msgstr "" #: src/config/SSSDConfig.py:281 -#, fuzzy msgid "Sudo rule notafter attribute" -msgstr "Attributo della home directory" +msgstr "" #: src/config/SSSDConfig.py:282 -#, fuzzy msgid "Sudo rule order attribute" -msgstr "Attributo della home directory" +msgstr "" #: src/config/SSSDConfig.py:285 -#, fuzzy msgid "Object class for automounter maps" -msgstr "Objectclass per gli utenti" +msgstr "" #: src/config/SSSDConfig.py:286 -#, fuzzy msgid "Automounter map name attribute" -msgstr "Attributo del nome utente" +msgstr "" #: src/config/SSSDConfig.py:287 -#, fuzzy msgid "Object class for automounter map entries" -msgstr "Objectclass per gli utenti" +msgstr "" #: src/config/SSSDConfig.py:288 -#, fuzzy msgid "Automounter map entry key attribute" -msgstr "Attributo della home directory" +msgstr "" #: src/config/SSSDConfig.py:289 msgid "Automounter map entry value attribute" msgstr "" #: src/config/SSSDConfig.py:290 -#, fuzzy msgid "Base DN for automounter map lookups" -msgstr "Base DN per i lookup utente" +msgstr "" #: src/config/SSSDConfig.py:293 msgid "Comma separated list of allowed users" @@ -915,7 +889,7 @@ msgstr "" msgid "An open file descriptor for the debug logs" msgstr "Un descrittore di file aperto per l'output di debug" -#: src/providers/data_provider_be.c:1938 +#: src/providers/data_provider_be.c:2022 msgid "Domain of the information provider (mandatory)" msgstr "Dominio del provider di informazioni (obbligatorio)" @@ -1016,9 +990,8 @@ msgstr "Il livello di debug da utilizzare" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:42 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:215 -#, fuzzy msgid "The SSSD domain to use" -msgstr "Avvio dei domini SSSD" +msgstr "" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:58 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:229 src/tools/sss_useradd.c:71 @@ -1033,9 +1006,8 @@ msgstr "Errore di impostazione del locale\n" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:91 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:236 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:269 -#, fuzzy msgid "Not enough memory\n" -msgstr "Memoria esaurita\n" +msgstr "" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:84 msgid "User not specified\n" @@ -1510,9 +1482,8 @@ msgid "\n" msgstr "" #: src/tools/sss_debuglevel.c:102 -#, fuzzy msgid "Specify debug level you want to set\n" -msgstr "Il livello di debug da utilizzare" +msgstr "" #: src/tools/tools_util.c:286 msgid "Out of memory\n" diff --git a/po/ja.po b/po/ja.po index eb43a9aef..76d9ac9e0 100644 --- a/po/ja.po +++ b/po/ja.po @@ -8,8 +8,8 @@ msgid "" msgstr "" "Project-Id-Version: SSSD\n" "Report-Msgid-Bugs-To: sssd-devel@lists.fedorahosted.org\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2012-02-28 10:21+0000\n" +"POT-Creation-Date: 2012-03-12 16:26-0400\n" +"PO-Revision-Date: 2012-03-08 11:41+0000\n" "Last-Translator: Tomoyuki KATO \n" "Language-Team: Japanese \n" "Language: ja\n" @@ -823,7 +823,6 @@ msgid "Automounter map entry value attribute" msgstr "automounter マップエントリーの値属性" #: src/config/SSSDConfig.py:290 -#, fuzzy msgid "Base DN for automounter map lookups" msgstr "automonter のマップ検索のベース DN" @@ -886,7 +885,7 @@ msgstr "タイムスタンプをミリ秒単位で表示する" msgid "An open file descriptor for the debug logs" msgstr "デバッグログのオープンファイルディスクリプター" -#: src/providers/data_provider_be.c:1938 +#: src/providers/data_provider_be.c:2022 msgid "Domain of the information provider (mandatory)" msgstr "情報プロバイダーのドメイン (必須)" @@ -988,9 +987,8 @@ msgstr "実行するデバッグレベル" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:42 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:215 -#, fuzzy msgid "The SSSD domain to use" -msgstr "開始する SSSD ドメイン" +msgstr "使用する SSSD ドメイン" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:58 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:229 src/tools/sss_useradd.c:71 @@ -1005,42 +1003,41 @@ msgstr "ロケールの設定中にエラーが発生しました\n" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:91 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:236 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:269 -#, fuzzy msgid "Not enough memory\n" -msgstr "メモリー不足\n" +msgstr "十分なメモリーがありません\n" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:84 msgid "User not specified\n" -msgstr "" +msgstr "ユーザーが指定されていません\n" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:104 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:282 msgid "Error looking up public keys\n" -msgstr "" +msgstr "公開鍵の検索中にエラーが発生しました\n" #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:94 msgid "Failed to open a socket\n" -msgstr "" +msgstr "ソケットのオープンに失敗しました\n" #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:104 msgid "Failed to connect to the server\n" -msgstr "" +msgstr "サーバーへの接続に失敗しました\n" #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:195 msgid "Failed to execute proxy command\n" -msgstr "" +msgstr "プロキシーコマンドの実行に失敗しました\n" #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:213 msgid "The port to use to connect to the host" -msgstr "" +msgstr "ホストへの接続に使用するポート" #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:255 msgid "Host not specified\n" -msgstr "" +msgstr "ホストが指定されていません\n" #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:261 msgid "The path to the proxy command must be absolute\n" -msgstr "" +msgstr "プロキシーコマンドへのパスは絶対パスにする必要があります\n" #: src/tools/sss_useradd.c:49 src/tools/sss_usermod.c:48 msgid "The UID of the user" @@ -1443,49 +1440,48 @@ msgstr "トランザクションエラー。ユーザーを変更できません #: src/tools/sss_cache.c:132 #, c-format msgid "Couldn't invalidate %s" -msgstr "" +msgstr "%s を無効化できませんでした" #: src/tools/sss_cache.c:138 #, c-format msgid "Couldn't invalidate %s %s" -msgstr "" +msgstr "%s %s を無効化できませんでした" #: src/tools/sss_cache.c:262 msgid "Invalidate particular user" -msgstr "" +msgstr "特定のユーザーを無効にする" #: src/tools/sss_cache.c:264 msgid "Invalidate all users" -msgstr "" +msgstr "すべてのユーザーを無効にする" #: src/tools/sss_cache.c:266 msgid "Invalidate particular group" -msgstr "" +msgstr "特定のグループを無効にする" #: src/tools/sss_cache.c:268 msgid "Invalidate all groups" -msgstr "" +msgstr "すべてのグループを無効にする" #: src/tools/sss_cache.c:270 msgid "Invalidate particular netgroup" -msgstr "" +msgstr "特定のネットワークグループを無効にする" #: src/tools/sss_cache.c:272 msgid "Invalidate all netgroups" -msgstr "" +msgstr "すべてのネットワークグループを無効にする" #: src/tools/sss_cache.c:274 msgid "Only invalidate entries from a particular domain" -msgstr "" +msgstr "特定のドメインのみからエントリーを無効にする" #: src/tools/sss_debuglevel.c:43 msgid "\n" -msgstr "" +msgstr "\n" #: src/tools/sss_debuglevel.c:102 -#, fuzzy msgid "Specify debug level you want to set\n" -msgstr "実行するデバッグレベル" +msgstr "設定したいデバッグレベルを指定する\n" #: src/tools/tools_util.c:286 msgid "Out of memory\n" diff --git a/po/ja_JP.po b/po/ja_JP.po deleted file mode 100644 index b808f2a29..000000000 --- a/po/ja_JP.po +++ /dev/null @@ -1,1462 +0,0 @@ -# SOME DESCRIPTIVE TITLE. -# Copyright (C) YEAR Red Hat, Inc. -# This file is distributed under the same license as the PACKAGE package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@lists.fedorahosted.org\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-11-30 04:10+0000\n" -"Last-Translator: FULL NAME \n" -"Language-Team: LANGUAGE \n" -"Language: ja_JP\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=1; plural=0\n" - -#: src/config/SSSDConfig.py:39 -msgid "Set the verbosity of the debug logging" -msgstr "" - -#: src/config/SSSDConfig.py:40 -msgid "Include timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:41 -msgid "Include microseconds in timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:42 -msgid "Write debug messages to logfiles" -msgstr "" - -#: src/config/SSSDConfig.py:43 -msgid "Ping timeout before restarting service" -msgstr "" - -#: src/config/SSSDConfig.py:44 -msgid "Command to start service" -msgstr "" - -#: src/config/SSSDConfig.py:45 -msgid "Number of times to attempt connection to Data Providers" -msgstr "" - -#: src/config/SSSDConfig.py:48 -msgid "SSSD Services to start" -msgstr "" - -#: src/config/SSSDConfig.py:49 -msgid "SSSD Domains to start" -msgstr "" - -#: src/config/SSSDConfig.py:50 -msgid "Timeout for messages sent over the SBUS" -msgstr "" - -#: src/config/SSSDConfig.py:51 -msgid "Regex to parse username and domain" -msgstr "" - -#: src/config/SSSDConfig.py:52 -msgid "Printf-compatible format for displaying fully-qualified names" -msgstr "" - -#: src/config/SSSDConfig.py:53 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#: src/config/SSSDConfig.py:56 -msgid "Enumeration cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:57 -msgid "Entry cache background update timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:58 src/config/SSSDConfig.py:81 -msgid "Negative cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:59 -msgid "Users that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:60 -msgid "Groups that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:61 -msgid "Should filtered users appear in groups" -msgstr "" - -#: src/config/SSSDConfig.py:62 -msgid "The value of the password field the NSS provider should return" -msgstr "" - -#: src/config/SSSDConfig.py:63 -msgid "Override homedir value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:64 -msgid "The list of shells users are allowed to log in with" -msgstr "" - -#: src/config/SSSDConfig.py:65 -msgid "" -"The list of shells that will be vetoed, and replaced with the fallback shell" -msgstr "" - -#: src/config/SSSDConfig.py:66 -msgid "" -"If a shell stored in central directory is allowed but not available, use " -"this fallback" -msgstr "" - -#: src/config/SSSDConfig.py:69 -msgid "How long to allow cached logins between online logins (days)" -msgstr "" - -#: src/config/SSSDConfig.py:70 -msgid "How many failed logins attempts are allowed when offline" -msgstr "" - -#: src/config/SSSDConfig.py:71 -msgid "" -"How long (minutes) to deny login after offline_failed_login_attempts has " -"been reached" -msgstr "" - -#: src/config/SSSDConfig.py:72 -msgid "What kind of messages are displayed to the user during authentication" -msgstr "" - -#: src/config/SSSDConfig.py:73 -msgid "How many seconds to keep identity information cached for PAM requests" -msgstr "" - -#: src/config/SSSDConfig.py:74 -msgid "How many days before password expiration a warning should be displayed" -msgstr "" - -#: src/config/SSSDConfig.py:77 -msgid "Whether to evaluate the time-based attributes in sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:78 -msgid "" -"How many seconds to keep sudorules cached before asking the provider again" -msgstr "" - -#: src/config/SSSDConfig.py:84 -msgid "Identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:85 -msgid "Authentication provider" -msgstr "" - -#: src/config/SSSDConfig.py:86 -msgid "Access control provider" -msgstr "" - -#: src/config/SSSDConfig.py:87 -msgid "Password change provider" -msgstr "" - -#: src/config/SSSDConfig.py:88 -msgid "SUDO provider" -msgstr "" - -#: src/config/SSSDConfig.py:89 -msgid "Autofs provider" -msgstr "" - -#: src/config/SSSDConfig.py:90 -msgid "Session-loading provider" -msgstr "" - -#: src/config/SSSDConfig.py:91 -msgid "Host identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:94 -msgid "Minimum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:95 -msgid "Maximum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:96 -msgid "Enable enumerating all users/groups" -msgstr "" - -#: src/config/SSSDConfig.py:97 -msgid "Cache credentials for offline login" -msgstr "" - -#: src/config/SSSDConfig.py:98 -msgid "Store password hashes" -msgstr "" - -#: src/config/SSSDConfig.py:99 -msgid "Display users/groups in fully-qualified form" -msgstr "" - -#: src/config/SSSDConfig.py:100 src/config/SSSDConfig.py:107 -#: src/config/SSSDConfig.py:108 src/config/SSSDConfig.py:109 -#: src/config/SSSDConfig.py:110 src/config/SSSDConfig.py:111 -msgid "Entry cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:101 -msgid "" -"Restrict or prefer a specific address family when performing DNS lookups" -msgstr "" - -#: src/config/SSSDConfig.py:102 -msgid "How long to keep cached entries after last successful login (days)" -msgstr "" - -#: src/config/SSSDConfig.py:103 -msgid "How long to wait for replies from DNS when resolving servers (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:104 -msgid "The domain part of service discovery DNS query" -msgstr "" - -#: src/config/SSSDConfig.py:105 -msgid "Override GID value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:106 -msgid "Treat usernames as case sensitive" -msgstr "" - -#: src/config/SSSDConfig.py:114 -msgid "IPA domain" -msgstr "" - -#: src/config/SSSDConfig.py:115 -msgid "IPA server address" -msgstr "" - -#: src/config/SSSDConfig.py:116 -msgid "IPA client hostname" -msgstr "" - -#: src/config/SSSDConfig.py:117 -msgid "Whether to automatically update the client's DNS entry in FreeIPA" -msgstr "" - -#: src/config/SSSDConfig.py:118 -msgid "The interface whose IP should be used for dynamic DNS updates" -msgstr "" - -#: src/config/SSSDConfig.py:119 -msgid "Search base for HBAC related objects" -msgstr "" - -#: src/config/SSSDConfig.py:120 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server" -msgstr "" - -#: src/config/SSSDConfig.py:121 -msgid "If DENY rules are present, either DENY_ALL or IGNORE" -msgstr "" - -#: src/config/SSSDConfig.py:122 -msgid "If set to false, host argument given by PAM will be ignored" -msgstr "" - -#: src/config/SSSDConfig.py:123 -msgid "The automounter location this IPA client is using" -msgstr "" - -#: src/config/SSSDConfig.py:126 src/config/SSSDConfig.py:127 -msgid "Kerberos server address" -msgstr "" - -#: src/config/SSSDConfig.py:128 -msgid "Kerberos realm" -msgstr "" - -#: src/config/SSSDConfig.py:129 -msgid "Authentication timeout" -msgstr "" - -#: src/config/SSSDConfig.py:132 -msgid "Directory to store credential caches" -msgstr "" - -#: src/config/SSSDConfig.py:133 -msgid "Location of the user's credential cache" -msgstr "" - -#: src/config/SSSDConfig.py:134 -msgid "Location of the keytab to validate credentials" -msgstr "" - -#: src/config/SSSDConfig.py:135 -msgid "Enable credential validation" -msgstr "" - -#: src/config/SSSDConfig.py:136 -msgid "Store password if offline for later online authentication" -msgstr "" - -#: src/config/SSSDConfig.py:137 -msgid "Renewable lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:138 -msgid "Lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:139 -msgid "Time between two checks for renewal" -msgstr "" - -#: src/config/SSSDConfig.py:140 -msgid "Enables FAST" -msgstr "" - -#: src/config/SSSDConfig.py:141 -msgid "Selects the principal to use for FAST" -msgstr "" - -#: src/config/SSSDConfig.py:142 -msgid "Enables principal canonicalization" -msgstr "" - -#: src/config/SSSDConfig.py:145 -msgid "Server where the change password service is running if not on the KDC" -msgstr "" - -#: src/config/SSSDConfig.py:148 -msgid "ldap_uri, The URI of the LDAP server" -msgstr "" - -#: src/config/SSSDConfig.py:149 -msgid "The default base DN" -msgstr "" - -#: src/config/SSSDConfig.py:150 -msgid "The Schema Type in use on the LDAP server, rfc2307" -msgstr "" - -#: src/config/SSSDConfig.py:151 -msgid "The default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:152 -msgid "The type of the authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:153 -msgid "The authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:154 -msgid "Length of time to attempt connection" -msgstr "" - -#: src/config/SSSDConfig.py:155 -msgid "Length of time to attempt synchronous LDAP operations" -msgstr "" - -#: src/config/SSSDConfig.py:156 -msgid "Length of time between attempts to reconnect while offline" -msgstr "" - -#: src/config/SSSDConfig.py:157 -msgid "Use only the upper case for realm names" -msgstr "" - -#: src/config/SSSDConfig.py:158 -msgid "File that contains CA certificates" -msgstr "" - -#: src/config/SSSDConfig.py:159 -msgid "Path to CA certificate directory" -msgstr "" - -#: src/config/SSSDConfig.py:160 -msgid "File that contains the client certificate" -msgstr "" - -#: src/config/SSSDConfig.py:161 -msgid "File that contains the client key" -msgstr "" - -#: src/config/SSSDConfig.py:162 -msgid "List of possible ciphers suites" -msgstr "" - -#: src/config/SSSDConfig.py:163 -msgid "Require TLS certificate verification" -msgstr "" - -#: src/config/SSSDConfig.py:164 -msgid "Specify the sasl mechanism to use" -msgstr "" - -#: src/config/SSSDConfig.py:165 -msgid "Specify the sasl authorization id to use" -msgstr "" - -#: src/config/SSSDConfig.py:166 -msgid "Specify the sasl authorization realm to use" -msgstr "" - -#: src/config/SSSDConfig.py:167 -msgid "Specify the minimal SSF for LDAP sasl authorization" -msgstr "" - -#: src/config/SSSDConfig.py:168 -msgid "Kerberos service keytab" -msgstr "" - -#: src/config/SSSDConfig.py:169 -msgid "Use Kerberos auth for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:170 -msgid "Follow LDAP referrals" -msgstr "" - -#: src/config/SSSDConfig.py:171 -msgid "Lifetime of TGT for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:172 -msgid "How to dereference aliases" -msgstr "" - -#: src/config/SSSDConfig.py:173 -msgid "Service name for DNS service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:174 -msgid "The number of records to retrieve in a single LDAP query" -msgstr "" - -#: src/config/SSSDConfig.py:175 -msgid "The number of members that must be missing to trigger a full deref" -msgstr "" - -#: src/config/SSSDConfig.py:176 -msgid "" -"Whether the LDAP library should perform a reverse lookup to canonicalize the " -"host name during a SASL bind" -msgstr "" - -#: src/config/SSSDConfig.py:178 -msgid "entryUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:179 -msgid "lastUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:181 -msgid "How long to retain a connection to the LDAP server before disconnecting" -msgstr "" - -#: src/config/SSSDConfig.py:183 -msgid "Disable the LDAP paging control" -msgstr "" - -#: src/config/SSSDConfig.py:186 -msgid "Length of time to wait for a search request" -msgstr "" - -#: src/config/SSSDConfig.py:187 -msgid "Length of time to wait for a enumeration request" -msgstr "" - -#: src/config/SSSDConfig.py:188 -msgid "Length of time between enumeration updates" -msgstr "" - -#: src/config/SSSDConfig.py:189 -msgid "Length of time between cache cleanups" -msgstr "" - -#: src/config/SSSDConfig.py:190 -msgid "Require TLS for ID lookups" -msgstr "" - -#: src/config/SSSDConfig.py:191 -msgid "Base DN for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:192 -msgid "Scope of user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:193 -msgid "Filter for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:194 -msgid "Objectclass for users" -msgstr "" - -#: src/config/SSSDConfig.py:195 -msgid "Username attribute" -msgstr "" - -#: src/config/SSSDConfig.py:197 -msgid "UID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:198 -msgid "Primary GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:199 -msgid "GECOS attribute" -msgstr "" - -#: src/config/SSSDConfig.py:200 -msgid "Home directory attribute" -msgstr "" - -#: src/config/SSSDConfig.py:201 -msgid "Shell attribute" -msgstr "" - -#: src/config/SSSDConfig.py:202 -msgid "UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:203 -msgid "User principal attribute (for Kerberos)" -msgstr "" - -#: src/config/SSSDConfig.py:204 -msgid "Full Name" -msgstr "" - -#: src/config/SSSDConfig.py:205 -msgid "memberOf attribute" -msgstr "" - -#: src/config/SSSDConfig.py:206 -msgid "Modification time attribute" -msgstr "" - -#: src/config/SSSDConfig.py:208 -msgid "shadowLastChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:209 -msgid "shadowMin attribute" -msgstr "" - -#: src/config/SSSDConfig.py:210 -msgid "shadowMax attribute" -msgstr "" - -#: src/config/SSSDConfig.py:211 -msgid "shadowWarning attribute" -msgstr "" - -#: src/config/SSSDConfig.py:212 -msgid "shadowInactive attribute" -msgstr "" - -#: src/config/SSSDConfig.py:213 -msgid "shadowExpire attribute" -msgstr "" - -#: src/config/SSSDConfig.py:214 -msgid "shadowFlag attribute" -msgstr "" - -#: src/config/SSSDConfig.py:215 -msgid "Attribute listing authorized PAM services" -msgstr "" - -#: src/config/SSSDConfig.py:216 -msgid "Attribute listing authorized server hosts" -msgstr "" - -#: src/config/SSSDConfig.py:217 -msgid "krbLastPwdChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:218 -msgid "krbPasswordExpiration attribute" -msgstr "" - -#: src/config/SSSDConfig.py:219 -msgid "Attribute indicating that server side password policies are active" -msgstr "" - -#: src/config/SSSDConfig.py:220 -msgid "accountExpires attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:221 -msgid "userAccountControl attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:222 -msgid "nsAccountLock attribute" -msgstr "" - -#: src/config/SSSDConfig.py:223 -msgid "loginDisabled attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:224 -msgid "loginExpirationTime attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:225 -msgid "loginAllowedTimeMap attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:226 -msgid "SSH public key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:228 -msgid "Base DN for group lookups" -msgstr "" - -#: src/config/SSSDConfig.py:231 -msgid "Objectclass for groups" -msgstr "" - -#: src/config/SSSDConfig.py:232 -msgid "Group name" -msgstr "" - -#: src/config/SSSDConfig.py:233 -msgid "Group password" -msgstr "" - -#: src/config/SSSDConfig.py:234 -msgid "GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:235 -msgid "Group member attribute" -msgstr "" - -#: src/config/SSSDConfig.py:236 -msgid "Group UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:237 -msgid "Modification time attribute for groups" -msgstr "" - -#: src/config/SSSDConfig.py:239 -msgid "Maximum nesting level SSSd will follow" -msgstr "" - -#: src/config/SSSDConfig.py:241 -msgid "Base DN for netgroup lookups" -msgstr "" - -#: src/config/SSSDConfig.py:242 -msgid "Objectclass for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:243 -msgid "Netgroup name" -msgstr "" - -#: src/config/SSSDConfig.py:244 -msgid "Netgroups members attribute" -msgstr "" - -#: src/config/SSSDConfig.py:245 -msgid "Netgroup triple attribute" -msgstr "" - -#: src/config/SSSDConfig.py:246 -msgid "Netgroup UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:247 -msgid "Modification time attribute for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:249 -msgid "Base DN for service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:250 -msgid "Objectclass for services" -msgstr "" - -#: src/config/SSSDConfig.py:251 -msgid "Service name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:252 -msgid "Service port attribute" -msgstr "" - -#: src/config/SSSDConfig.py:253 -msgid "Service protocol attribute" -msgstr "" - -#: src/config/SSSDConfig.py:257 -msgid "Policy to evaluate the password expiration" -msgstr "" - -#: src/config/SSSDConfig.py:260 -msgid "LDAP filter to determine access privileges" -msgstr "" - -#: src/config/SSSDConfig.py:261 -msgid "Which attributes shall be used to evaluate if an account is expired" -msgstr "" - -#: src/config/SSSDConfig.py:262 -msgid "Which rules should be used to evaluate access control" -msgstr "" - -#: src/config/SSSDConfig.py:265 -msgid "URI of an LDAP server where password changes are allowed" -msgstr "" - -#: src/config/SSSDConfig.py:266 -msgid "DNS service name for LDAP password change server" -msgstr "" - -#: src/config/SSSDConfig.py:269 -msgid "Base DN for sudo rules lookups" -msgstr "" - -#: src/config/SSSDConfig.py:270 -msgid "Enable periodical update of all sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:271 -msgid "Length of time between rules updates" -msgstr "" - -#: src/config/SSSDConfig.py:272 -msgid "Object class for sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:273 -msgid "Sudo rule name" -msgstr "" - -#: src/config/SSSDConfig.py:274 -msgid "Sudo rule command attribute" -msgstr "" - -#: src/config/SSSDConfig.py:275 -msgid "Sudo rule host attribute" -msgstr "" - -#: src/config/SSSDConfig.py:276 -msgid "Sudo rule user attribute" -msgstr "" - -#: src/config/SSSDConfig.py:277 -msgid "Sudo rule option attribute" -msgstr "" - -#: src/config/SSSDConfig.py:278 -msgid "Sudo rule runasuser attribute" -msgstr "" - -#: src/config/SSSDConfig.py:279 -msgid "Sudo rule runasgroup attribute" -msgstr "" - -#: src/config/SSSDConfig.py:280 -msgid "Sudo rule notbefore attribute" -msgstr "" - -#: src/config/SSSDConfig.py:281 -msgid "Sudo rule notafter attribute" -msgstr "" - -#: src/config/SSSDConfig.py:282 -msgid "Sudo rule order attribute" -msgstr "" - -#: src/config/SSSDConfig.py:285 -msgid "Object class for automounter maps" -msgstr "" - -#: src/config/SSSDConfig.py:286 -msgid "Automounter map name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:287 -msgid "Object class for automounter map entries" -msgstr "" - -#: src/config/SSSDConfig.py:288 -msgid "Automounter map entry key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:289 -msgid "Automounter map entry value attribute" -msgstr "" - -#: src/config/SSSDConfig.py:290 -msgid "Base DN for automounter map lookups" -msgstr "" - -#: src/config/SSSDConfig.py:293 -msgid "Comma separated list of allowed users" -msgstr "" - -#: src/config/SSSDConfig.py:294 -msgid "Comma separated list of prohibited users" -msgstr "" - -#: src/config/SSSDConfig.py:297 -msgid "Default shell, /bin/bash" -msgstr "" - -#: src/config/SSSDConfig.py:298 -msgid "Base for home directories" -msgstr "" - -#: src/config/SSSDConfig.py:301 -msgid "The name of the NSS library to use" -msgstr "" - -#: src/config/SSSDConfig.py:304 -msgid "PAM stack to use" -msgstr "" - -#: src/monitor/monitor.c:2379 -msgid "Become a daemon (default)" -msgstr "" - -#: src/monitor/monitor.c:2381 -msgid "Run interactive (not a daemon)" -msgstr "" - -#: src/monitor/monitor.c:2383 src/tools/sss_debuglevel.c:77 -msgid "Specify a non-default config file" -msgstr "" - -#: src/monitor/monitor.c:2385 -msgid "Print version number and exit" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1575 src/providers/ldap/ldap_child.c:381 -#: src/util/util.h:89 -msgid "Debug level" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1577 src/providers/ldap/ldap_child.c:383 -#: src/util/util.h:93 -msgid "Add debug timestamps" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1579 src/providers/ldap/ldap_child.c:385 -#: src/util/util.h:95 -msgid "Show timestamps with microseconds" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1581 src/providers/ldap/ldap_child.c:387 -msgid "An open file descriptor for the debug logs" -msgstr "" - -#: src/providers/data_provider_be.c:1938 -msgid "Domain of the information provider (mandatory)" -msgstr "" - -#: src/sss_client/common.c:878 -msgid "Privileged socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:881 -msgid "Public socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:884 -msgid "Unexpected format of the server credential message." -msgstr "" - -#: src/sss_client/common.c:887 -msgid "SSSD is not run by root." -msgstr "" - -#: src/sss_client/common.c:892 -msgid "An error occurred, but no description can be found." -msgstr "" - -#: src/sss_client/common.c:898 -msgid "Unexpected error while looking for an error description" -msgstr "" - -#: src/sss_client/pam_sss.c:378 -msgid "Passwords do not match" -msgstr "" - -#: src/sss_client/pam_sss.c:571 -msgid "Password reset by root is not supported." -msgstr "" - -#: src/sss_client/pam_sss.c:612 -msgid "Authenticated with cached credentials" -msgstr "" - -#: src/sss_client/pam_sss.c:613 -msgid ", your cached password will expire at: " -msgstr "" - -#: src/sss_client/pam_sss.c:643 -#, c-format -msgid "Your password has expired. You have %d grace login(s) remaining." -msgstr "" - -#: src/sss_client/pam_sss.c:689 -#, c-format -msgid "Your password will expire in %d %s." -msgstr "" - -#: src/sss_client/pam_sss.c:738 -msgid "Authentication is denied until: " -msgstr "" - -#: src/sss_client/pam_sss.c:759 -msgid "System is offline, password change not possible" -msgstr "" - -#: src/sss_client/pam_sss.c:789 src/sss_client/pam_sss.c:802 -msgid "Password change failed. " -msgstr "" - -#: src/sss_client/pam_sss.c:792 src/sss_client/pam_sss.c:803 -msgid "Server message: " -msgstr "" - -#: src/sss_client/pam_sss.c:1286 -msgid "New Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1287 -msgid "Reenter new Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1373 -msgid "Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1405 -msgid "Current Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1552 -msgid "Password expired. Change your password now." -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:40 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:211 src/tools/sss_useradd.c:48 -#: src/tools/sss_groupadd.c:41 src/tools/sss_groupdel.c:43 -#: src/tools/sss_groupmod.c:42 src/tools/sss_groupshow.c:615 -#: src/tools/sss_userdel.c:131 src/tools/sss_usermod.c:47 -#: src/tools/sss_cache.c:260 src/tools/sss_debuglevel.c:75 -msgid "The debug level to run with" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:42 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:215 -msgid "The SSSD domain to use" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:58 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:229 src/tools/sss_useradd.c:71 -#: src/tools/sss_groupadd.c:56 src/tools/sss_groupdel.c:52 -#: src/tools/sss_groupmod.c:63 src/tools/sss_groupshow.c:626 -#: src/tools/sss_userdel.c:148 src/tools/sss_usermod.c:72 -#: src/tools/sss_cache.c:281 -msgid "Error setting the locale\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:65 -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:91 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:236 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:269 -msgid "Not enough memory\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:84 -msgid "User not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:104 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:282 -msgid "Error looking up public keys\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:94 -msgid "Failed to open a socket\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:104 -msgid "Failed to connect to the server\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:195 -msgid "Failed to execute proxy command\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:213 -msgid "The port to use to connect to the host" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:255 -msgid "Host not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:261 -msgid "The path to the proxy command must be absolute\n" -msgstr "" - -#: src/tools/sss_useradd.c:49 src/tools/sss_usermod.c:48 -msgid "The UID of the user" -msgstr "" - -#: src/tools/sss_useradd.c:50 src/tools/sss_usermod.c:50 -msgid "The comment string" -msgstr "" - -#: src/tools/sss_useradd.c:51 src/tools/sss_usermod.c:51 -msgid "Home directory" -msgstr "" - -#: src/tools/sss_useradd.c:52 src/tools/sss_usermod.c:52 -msgid "Login shell" -msgstr "" - -#: src/tools/sss_useradd.c:53 -msgid "Groups" -msgstr "" - -#: src/tools/sss_useradd.c:54 -msgid "Create user's directory if it does not exist" -msgstr "" - -#: src/tools/sss_useradd.c:55 -msgid "Never create user's directory, overrides config" -msgstr "" - -#: src/tools/sss_useradd.c:56 -msgid "Specify an alternative skeleton directory" -msgstr "" - -#: src/tools/sss_useradd.c:57 src/tools/sss_usermod.c:57 -msgid "The SELinux user for user's login" -msgstr "" - -#: src/tools/sss_useradd.c:84 src/tools/sss_groupmod.c:76 -#: src/tools/sss_usermod.c:85 -msgid "Specify group to add to\n" -msgstr "" - -#: src/tools/sss_useradd.c:108 -msgid "Specify user to add\n" -msgstr "" - -#: src/tools/sss_useradd.c:117 src/tools/sss_groupadd.c:82 -#: src/tools/sss_groupdel.c:77 src/tools/sss_groupmod.c:109 -#: src/tools/sss_groupshow.c:659 src/tools/sss_userdel.c:193 -#: src/tools/sss_usermod.c:126 -msgid "Error initializing the tools - no local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:119 src/tools/sss_groupadd.c:84 -#: src/tools/sss_groupdel.c:79 src/tools/sss_groupmod.c:111 -#: src/tools/sss_groupshow.c:661 src/tools/sss_userdel.c:195 -#: src/tools/sss_usermod.c:128 -msgid "Error initializing the tools\n" -msgstr "" - -#: src/tools/sss_useradd.c:128 src/tools/sss_groupadd.c:93 -#: src/tools/sss_groupdel.c:88 src/tools/sss_groupmod.c:119 -#: src/tools/sss_groupshow.c:670 src/tools/sss_userdel.c:204 -#: src/tools/sss_usermod.c:137 -msgid "Invalid domain specified in FQDN\n" -msgstr "" - -#: src/tools/sss_useradd.c:137 src/tools/sss_groupmod.c:139 -#: src/tools/sss_groupmod.c:166 src/tools/sss_usermod.c:160 -#: src/tools/sss_usermod.c:187 -msgid "Internal error while parsing parameters\n" -msgstr "" - -#: src/tools/sss_useradd.c:145 src/tools/sss_usermod.c:168 -#: src/tools/sss_usermod.c:195 -msgid "Groups must be in the same domain as user\n" -msgstr "" - -#: src/tools/sss_useradd.c:153 -#, c-format -msgid "Cannot find group %s in local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:168 src/tools/sss_userdel.c:214 -msgid "Cannot set default values\n" -msgstr "" - -#: src/tools/sss_useradd.c:175 src/tools/sss_usermod.c:151 -msgid "The selected UID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_useradd.c:202 src/tools/sss_usermod.c:236 -msgid "Cannot set SELinux login context\n" -msgstr "" - -#: src/tools/sss_useradd.c:217 -msgid "Cannot get info about the user\n" -msgstr "" - -#: src/tools/sss_useradd.c:229 -msgid "User's home directory already exists, not copying data from skeldir\n" -msgstr "" - -#: src/tools/sss_useradd.c:232 -#, c-format -msgid "Cannot create user's home directory: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:243 -#, c-format -msgid "Cannot create user's mail spool: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:255 -msgid "Could not allocate ID for the user - domain full?\n" -msgstr "" - -#: src/tools/sss_useradd.c:259 -msgid "A user or group with the same name or ID already exists\n" -msgstr "" - -#: src/tools/sss_useradd.c:265 -msgid "Transaction error. Could not add user.\n" -msgstr "" - -#: src/tools/sss_groupadd.c:43 src/tools/sss_groupmod.c:48 -msgid "The GID of the group" -msgstr "" - -#: src/tools/sss_groupadd.c:73 -msgid "Specify group to add\n" -msgstr "" - -#: src/tools/sss_groupadd.c:102 src/tools/sss_groupmod.c:190 -msgid "The selected GID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_groupadd.c:127 -msgid "Could not allocate ID for the group - domain full?\n" -msgstr "" - -#: src/tools/sss_groupadd.c:131 -msgid "A group with the same name or GID already exists\n" -msgstr "" - -#: src/tools/sss_groupadd.c:136 -msgid "Transaction error. Could not add group.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:68 -msgid "Specify group to delete\n" -msgstr "" - -#: src/tools/sss_groupdel.c:101 -#, c-format -msgid "Group %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_groupdel.c:115 -msgid "" -"No such group in local domain. Removing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:120 -msgid "Internal error. Could not remove group.\n" -msgstr "" - -#: src/tools/sss_groupmod.c:44 -msgid "Groups to add this group to" -msgstr "" - -#: src/tools/sss_groupmod.c:46 -msgid "Groups to remove this group from" -msgstr "" - -#: src/tools/sss_groupmod.c:84 src/tools/sss_usermod.c:93 -msgid "Specify group to remove from\n" -msgstr "" - -#: src/tools/sss_groupmod.c:98 -msgid "Specify group to modify\n" -msgstr "" - -#: src/tools/sss_groupmod.c:126 -msgid "" -"Cannot find group in local domain, modifying groups is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_groupmod.c:147 src/tools/sss_groupmod.c:174 -msgid "Member groups must be in the same domain as parent group\n" -msgstr "" - -#: src/tools/sss_groupmod.c:155 src/tools/sss_groupmod.c:182 -#: src/tools/sss_usermod.c:176 src/tools/sss_usermod.c:203 -#, c-format -msgid "" -"Cannot find group %s in local domain, only groups in local domain are " -"allowed\n" -msgstr "" - -#: src/tools/sss_groupmod.c:216 -msgid "Could not modify group - check if member group names are correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:220 -msgid "Could not modify group - check if groupname is correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:224 -msgid "Transaction error. Could not modify group.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:562 -#, c-format -msgid "%s%sGroup: %s\n" -msgstr "" - -#: src/tools/sss_groupshow.c:563 -msgid "Magic Private " -msgstr "" - -#: src/tools/sss_groupshow.c:565 -#, c-format -msgid "%sGID number: %d\n" -msgstr "" - -#: src/tools/sss_groupshow.c:567 -#, c-format -msgid "%sMember users: " -msgstr "" - -#: src/tools/sss_groupshow.c:574 -#, c-format -msgid "" -"\n" -"%sIs a member of: " -msgstr "" - -#: src/tools/sss_groupshow.c:581 -#, c-format -msgid "" -"\n" -"%sMember groups: " -msgstr "" - -#: src/tools/sss_groupshow.c:617 -msgid "Print indirect group members recursively" -msgstr "" - -#: src/tools/sss_groupshow.c:650 -msgid "Specify group to show\n" -msgstr "" - -#: src/tools/sss_groupshow.c:689 -msgid "" -"No such group in local domain. Printing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:694 -msgid "Internal error. Could not print group.\n" -msgstr "" - -#: src/tools/sss_userdel.c:133 -msgid "Remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:135 -msgid "Do not remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:137 -msgid "Force removal of files not owned by the user" -msgstr "" - -#: src/tools/sss_userdel.c:139 -msgid "Kill users' processes before removing him" -msgstr "" - -#: src/tools/sss_userdel.c:184 -msgid "Specify user to delete\n" -msgstr "" - -#: src/tools/sss_userdel.c:230 -#, c-format -msgid "User %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_userdel.c:255 -msgid "Cannot reset SELinux login context\n" -msgstr "" - -#: src/tools/sss_userdel.c:267 -#, c-format -msgid "WARNING: The user (uid %lu) was still logged in when deleted.\n" -msgstr "" - -#: src/tools/sss_userdel.c:272 -msgid "Cannot determine if the user was logged in on this platform" -msgstr "" - -#: src/tools/sss_userdel.c:277 -msgid "Error while checking if the user was logged in\n" -msgstr "" - -#: src/tools/sss_userdel.c:284 -#, c-format -msgid "The post-delete command failed: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:296 -msgid "Not removing home dir - not owned by user\n" -msgstr "" - -#: src/tools/sss_userdel.c:298 -#, c-format -msgid "Cannot remove homedir: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:309 -msgid "" -"No such user in local domain. Removing users only allowed in local domain.\n" -msgstr "" - -#: src/tools/sss_userdel.c:314 -msgid "Internal error. Could not remove user.\n" -msgstr "" - -#: src/tools/sss_usermod.c:49 -msgid "The GID of the user" -msgstr "" - -#: src/tools/sss_usermod.c:53 -msgid "Groups to add this user to" -msgstr "" - -#: src/tools/sss_usermod.c:54 -msgid "Groups to remove this user from" -msgstr "" - -#: src/tools/sss_usermod.c:55 -msgid "Lock the account" -msgstr "" - -#: src/tools/sss_usermod.c:56 -msgid "Unlock the account" -msgstr "" - -#: src/tools/sss_usermod.c:117 -msgid "Specify user to modify\n" -msgstr "" - -#: src/tools/sss_usermod.c:144 -msgid "" -"Cannot find user in local domain, modifying users is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_usermod.c:246 -msgid "Could not modify user - check if group names are correct\n" -msgstr "" - -#: src/tools/sss_usermod.c:250 -msgid "Could not modify user - user already member of groups?\n" -msgstr "" - -#: src/tools/sss_usermod.c:254 -msgid "Transaction error. Could not modify user.\n" -msgstr "" - -#: src/tools/sss_cache.c:132 -#, c-format -msgid "Couldn't invalidate %s" -msgstr "" - -#: src/tools/sss_cache.c:138 -#, c-format -msgid "Couldn't invalidate %s %s" -msgstr "" - -#: src/tools/sss_cache.c:262 -msgid "Invalidate particular user" -msgstr "" - -#: src/tools/sss_cache.c:264 -msgid "Invalidate all users" -msgstr "" - -#: src/tools/sss_cache.c:266 -msgid "Invalidate particular group" -msgstr "" - -#: src/tools/sss_cache.c:268 -msgid "Invalidate all groups" -msgstr "" - -#: src/tools/sss_cache.c:270 -msgid "Invalidate particular netgroup" -msgstr "" - -#: src/tools/sss_cache.c:272 -msgid "Invalidate all netgroups" -msgstr "" - -#: src/tools/sss_cache.c:274 -msgid "Only invalidate entries from a particular domain" -msgstr "" - -#: src/tools/sss_debuglevel.c:43 -msgid "\n" -msgstr "" - -#: src/tools/sss_debuglevel.c:102 -msgid "Specify debug level you want to set\n" -msgstr "" - -#: src/tools/tools_util.c:286 -msgid "Out of memory\n" -msgstr "" - -#: src/tools/tools_util.h:40 -#, c-format -msgid "%s must be run as root\n" -msgstr "" - -#: src/util/util.h:91 -msgid "Send the debug output to files instead of stderr" -msgstr "" diff --git a/po/ko.po b/po/ko.po deleted file mode 100644 index e3174aad8..000000000 --- a/po/ko.po +++ /dev/null @@ -1,1462 +0,0 @@ -# SOME DESCRIPTIVE TITLE. -# Copyright (C) YEAR Red Hat, Inc. -# This file is distributed under the same license as the PACKAGE package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@lists.fedorahosted.org\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-11-30 04:10+0000\n" -"Last-Translator: FULL NAME \n" -"Language-Team: Korean (http://www.transifex.net/projects/p/fedora/team/ko/)\n" -"Language: ko\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=1; plural=0\n" - -#: src/config/SSSDConfig.py:39 -msgid "Set the verbosity of the debug logging" -msgstr "" - -#: src/config/SSSDConfig.py:40 -msgid "Include timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:41 -msgid "Include microseconds in timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:42 -msgid "Write debug messages to logfiles" -msgstr "" - -#: src/config/SSSDConfig.py:43 -msgid "Ping timeout before restarting service" -msgstr "" - -#: src/config/SSSDConfig.py:44 -msgid "Command to start service" -msgstr "" - -#: src/config/SSSDConfig.py:45 -msgid "Number of times to attempt connection to Data Providers" -msgstr "" - -#: src/config/SSSDConfig.py:48 -msgid "SSSD Services to start" -msgstr "" - -#: src/config/SSSDConfig.py:49 -msgid "SSSD Domains to start" -msgstr "" - -#: src/config/SSSDConfig.py:50 -msgid "Timeout for messages sent over the SBUS" -msgstr "" - -#: src/config/SSSDConfig.py:51 -msgid "Regex to parse username and domain" -msgstr "" - -#: src/config/SSSDConfig.py:52 -msgid "Printf-compatible format for displaying fully-qualified names" -msgstr "" - -#: src/config/SSSDConfig.py:53 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#: src/config/SSSDConfig.py:56 -msgid "Enumeration cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:57 -msgid "Entry cache background update timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:58 src/config/SSSDConfig.py:81 -msgid "Negative cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:59 -msgid "Users that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:60 -msgid "Groups that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:61 -msgid "Should filtered users appear in groups" -msgstr "" - -#: src/config/SSSDConfig.py:62 -msgid "The value of the password field the NSS provider should return" -msgstr "" - -#: src/config/SSSDConfig.py:63 -msgid "Override homedir value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:64 -msgid "The list of shells users are allowed to log in with" -msgstr "" - -#: src/config/SSSDConfig.py:65 -msgid "" -"The list of shells that will be vetoed, and replaced with the fallback shell" -msgstr "" - -#: src/config/SSSDConfig.py:66 -msgid "" -"If a shell stored in central directory is allowed but not available, use " -"this fallback" -msgstr "" - -#: src/config/SSSDConfig.py:69 -msgid "How long to allow cached logins between online logins (days)" -msgstr "" - -#: src/config/SSSDConfig.py:70 -msgid "How many failed logins attempts are allowed when offline" -msgstr "" - -#: src/config/SSSDConfig.py:71 -msgid "" -"How long (minutes) to deny login after offline_failed_login_attempts has " -"been reached" -msgstr "" - -#: src/config/SSSDConfig.py:72 -msgid "What kind of messages are displayed to the user during authentication" -msgstr "" - -#: src/config/SSSDConfig.py:73 -msgid "How many seconds to keep identity information cached for PAM requests" -msgstr "" - -#: src/config/SSSDConfig.py:74 -msgid "How many days before password expiration a warning should be displayed" -msgstr "" - -#: src/config/SSSDConfig.py:77 -msgid "Whether to evaluate the time-based attributes in sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:78 -msgid "" -"How many seconds to keep sudorules cached before asking the provider again" -msgstr "" - -#: src/config/SSSDConfig.py:84 -msgid "Identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:85 -msgid "Authentication provider" -msgstr "" - -#: src/config/SSSDConfig.py:86 -msgid "Access control provider" -msgstr "" - -#: src/config/SSSDConfig.py:87 -msgid "Password change provider" -msgstr "" - -#: src/config/SSSDConfig.py:88 -msgid "SUDO provider" -msgstr "" - -#: src/config/SSSDConfig.py:89 -msgid "Autofs provider" -msgstr "" - -#: src/config/SSSDConfig.py:90 -msgid "Session-loading provider" -msgstr "" - -#: src/config/SSSDConfig.py:91 -msgid "Host identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:94 -msgid "Minimum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:95 -msgid "Maximum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:96 -msgid "Enable enumerating all users/groups" -msgstr "" - -#: src/config/SSSDConfig.py:97 -msgid "Cache credentials for offline login" -msgstr "" - -#: src/config/SSSDConfig.py:98 -msgid "Store password hashes" -msgstr "" - -#: src/config/SSSDConfig.py:99 -msgid "Display users/groups in fully-qualified form" -msgstr "" - -#: src/config/SSSDConfig.py:100 src/config/SSSDConfig.py:107 -#: src/config/SSSDConfig.py:108 src/config/SSSDConfig.py:109 -#: src/config/SSSDConfig.py:110 src/config/SSSDConfig.py:111 -msgid "Entry cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:101 -msgid "" -"Restrict or prefer a specific address family when performing DNS lookups" -msgstr "" - -#: src/config/SSSDConfig.py:102 -msgid "How long to keep cached entries after last successful login (days)" -msgstr "" - -#: src/config/SSSDConfig.py:103 -msgid "How long to wait for replies from DNS when resolving servers (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:104 -msgid "The domain part of service discovery DNS query" -msgstr "" - -#: src/config/SSSDConfig.py:105 -msgid "Override GID value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:106 -msgid "Treat usernames as case sensitive" -msgstr "" - -#: src/config/SSSDConfig.py:114 -msgid "IPA domain" -msgstr "" - -#: src/config/SSSDConfig.py:115 -msgid "IPA server address" -msgstr "" - -#: src/config/SSSDConfig.py:116 -msgid "IPA client hostname" -msgstr "" - -#: src/config/SSSDConfig.py:117 -msgid "Whether to automatically update the client's DNS entry in FreeIPA" -msgstr "" - -#: src/config/SSSDConfig.py:118 -msgid "The interface whose IP should be used for dynamic DNS updates" -msgstr "" - -#: src/config/SSSDConfig.py:119 -msgid "Search base for HBAC related objects" -msgstr "" - -#: src/config/SSSDConfig.py:120 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server" -msgstr "" - -#: src/config/SSSDConfig.py:121 -msgid "If DENY rules are present, either DENY_ALL or IGNORE" -msgstr "" - -#: src/config/SSSDConfig.py:122 -msgid "If set to false, host argument given by PAM will be ignored" -msgstr "" - -#: src/config/SSSDConfig.py:123 -msgid "The automounter location this IPA client is using" -msgstr "" - -#: src/config/SSSDConfig.py:126 src/config/SSSDConfig.py:127 -msgid "Kerberos server address" -msgstr "" - -#: src/config/SSSDConfig.py:128 -msgid "Kerberos realm" -msgstr "" - -#: src/config/SSSDConfig.py:129 -msgid "Authentication timeout" -msgstr "" - -#: src/config/SSSDConfig.py:132 -msgid "Directory to store credential caches" -msgstr "" - -#: src/config/SSSDConfig.py:133 -msgid "Location of the user's credential cache" -msgstr "" - -#: src/config/SSSDConfig.py:134 -msgid "Location of the keytab to validate credentials" -msgstr "" - -#: src/config/SSSDConfig.py:135 -msgid "Enable credential validation" -msgstr "" - -#: src/config/SSSDConfig.py:136 -msgid "Store password if offline for later online authentication" -msgstr "" - -#: src/config/SSSDConfig.py:137 -msgid "Renewable lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:138 -msgid "Lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:139 -msgid "Time between two checks for renewal" -msgstr "" - -#: src/config/SSSDConfig.py:140 -msgid "Enables FAST" -msgstr "" - -#: src/config/SSSDConfig.py:141 -msgid "Selects the principal to use for FAST" -msgstr "" - -#: src/config/SSSDConfig.py:142 -msgid "Enables principal canonicalization" -msgstr "" - -#: src/config/SSSDConfig.py:145 -msgid "Server where the change password service is running if not on the KDC" -msgstr "" - -#: src/config/SSSDConfig.py:148 -msgid "ldap_uri, The URI of the LDAP server" -msgstr "" - -#: src/config/SSSDConfig.py:149 -msgid "The default base DN" -msgstr "" - -#: src/config/SSSDConfig.py:150 -msgid "The Schema Type in use on the LDAP server, rfc2307" -msgstr "" - -#: src/config/SSSDConfig.py:151 -msgid "The default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:152 -msgid "The type of the authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:153 -msgid "The authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:154 -msgid "Length of time to attempt connection" -msgstr "" - -#: src/config/SSSDConfig.py:155 -msgid "Length of time to attempt synchronous LDAP operations" -msgstr "" - -#: src/config/SSSDConfig.py:156 -msgid "Length of time between attempts to reconnect while offline" -msgstr "" - -#: src/config/SSSDConfig.py:157 -msgid "Use only the upper case for realm names" -msgstr "" - -#: src/config/SSSDConfig.py:158 -msgid "File that contains CA certificates" -msgstr "" - -#: src/config/SSSDConfig.py:159 -msgid "Path to CA certificate directory" -msgstr "" - -#: src/config/SSSDConfig.py:160 -msgid "File that contains the client certificate" -msgstr "" - -#: src/config/SSSDConfig.py:161 -msgid "File that contains the client key" -msgstr "" - -#: src/config/SSSDConfig.py:162 -msgid "List of possible ciphers suites" -msgstr "" - -#: src/config/SSSDConfig.py:163 -msgid "Require TLS certificate verification" -msgstr "" - -#: src/config/SSSDConfig.py:164 -msgid "Specify the sasl mechanism to use" -msgstr "" - -#: src/config/SSSDConfig.py:165 -msgid "Specify the sasl authorization id to use" -msgstr "" - -#: src/config/SSSDConfig.py:166 -msgid "Specify the sasl authorization realm to use" -msgstr "" - -#: src/config/SSSDConfig.py:167 -msgid "Specify the minimal SSF for LDAP sasl authorization" -msgstr "" - -#: src/config/SSSDConfig.py:168 -msgid "Kerberos service keytab" -msgstr "" - -#: src/config/SSSDConfig.py:169 -msgid "Use Kerberos auth for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:170 -msgid "Follow LDAP referrals" -msgstr "" - -#: src/config/SSSDConfig.py:171 -msgid "Lifetime of TGT for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:172 -msgid "How to dereference aliases" -msgstr "" - -#: src/config/SSSDConfig.py:173 -msgid "Service name for DNS service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:174 -msgid "The number of records to retrieve in a single LDAP query" -msgstr "" - -#: src/config/SSSDConfig.py:175 -msgid "The number of members that must be missing to trigger a full deref" -msgstr "" - -#: src/config/SSSDConfig.py:176 -msgid "" -"Whether the LDAP library should perform a reverse lookup to canonicalize the " -"host name during a SASL bind" -msgstr "" - -#: src/config/SSSDConfig.py:178 -msgid "entryUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:179 -msgid "lastUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:181 -msgid "How long to retain a connection to the LDAP server before disconnecting" -msgstr "" - -#: src/config/SSSDConfig.py:183 -msgid "Disable the LDAP paging control" -msgstr "" - -#: src/config/SSSDConfig.py:186 -msgid "Length of time to wait for a search request" -msgstr "" - -#: src/config/SSSDConfig.py:187 -msgid "Length of time to wait for a enumeration request" -msgstr "" - -#: src/config/SSSDConfig.py:188 -msgid "Length of time between enumeration updates" -msgstr "" - -#: src/config/SSSDConfig.py:189 -msgid "Length of time between cache cleanups" -msgstr "" - -#: src/config/SSSDConfig.py:190 -msgid "Require TLS for ID lookups" -msgstr "" - -#: src/config/SSSDConfig.py:191 -msgid "Base DN for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:192 -msgid "Scope of user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:193 -msgid "Filter for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:194 -msgid "Objectclass for users" -msgstr "" - -#: src/config/SSSDConfig.py:195 -msgid "Username attribute" -msgstr "" - -#: src/config/SSSDConfig.py:197 -msgid "UID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:198 -msgid "Primary GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:199 -msgid "GECOS attribute" -msgstr "" - -#: src/config/SSSDConfig.py:200 -msgid "Home directory attribute" -msgstr "" - -#: src/config/SSSDConfig.py:201 -msgid "Shell attribute" -msgstr "" - -#: src/config/SSSDConfig.py:202 -msgid "UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:203 -msgid "User principal attribute (for Kerberos)" -msgstr "" - -#: src/config/SSSDConfig.py:204 -msgid "Full Name" -msgstr "" - -#: src/config/SSSDConfig.py:205 -msgid "memberOf attribute" -msgstr "" - -#: src/config/SSSDConfig.py:206 -msgid "Modification time attribute" -msgstr "" - -#: src/config/SSSDConfig.py:208 -msgid "shadowLastChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:209 -msgid "shadowMin attribute" -msgstr "" - -#: src/config/SSSDConfig.py:210 -msgid "shadowMax attribute" -msgstr "" - -#: src/config/SSSDConfig.py:211 -msgid "shadowWarning attribute" -msgstr "" - -#: src/config/SSSDConfig.py:212 -msgid "shadowInactive attribute" -msgstr "" - -#: src/config/SSSDConfig.py:213 -msgid "shadowExpire attribute" -msgstr "" - -#: src/config/SSSDConfig.py:214 -msgid "shadowFlag attribute" -msgstr "" - -#: src/config/SSSDConfig.py:215 -msgid "Attribute listing authorized PAM services" -msgstr "" - -#: src/config/SSSDConfig.py:216 -msgid "Attribute listing authorized server hosts" -msgstr "" - -#: src/config/SSSDConfig.py:217 -msgid "krbLastPwdChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:218 -msgid "krbPasswordExpiration attribute" -msgstr "" - -#: src/config/SSSDConfig.py:219 -msgid "Attribute indicating that server side password policies are active" -msgstr "" - -#: src/config/SSSDConfig.py:220 -msgid "accountExpires attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:221 -msgid "userAccountControl attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:222 -msgid "nsAccountLock attribute" -msgstr "" - -#: src/config/SSSDConfig.py:223 -msgid "loginDisabled attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:224 -msgid "loginExpirationTime attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:225 -msgid "loginAllowedTimeMap attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:226 -msgid "SSH public key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:228 -msgid "Base DN for group lookups" -msgstr "" - -#: src/config/SSSDConfig.py:231 -msgid "Objectclass for groups" -msgstr "" - -#: src/config/SSSDConfig.py:232 -msgid "Group name" -msgstr "" - -#: src/config/SSSDConfig.py:233 -msgid "Group password" -msgstr "" - -#: src/config/SSSDConfig.py:234 -msgid "GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:235 -msgid "Group member attribute" -msgstr "" - -#: src/config/SSSDConfig.py:236 -msgid "Group UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:237 -msgid "Modification time attribute for groups" -msgstr "" - -#: src/config/SSSDConfig.py:239 -msgid "Maximum nesting level SSSd will follow" -msgstr "" - -#: src/config/SSSDConfig.py:241 -msgid "Base DN for netgroup lookups" -msgstr "" - -#: src/config/SSSDConfig.py:242 -msgid "Objectclass for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:243 -msgid "Netgroup name" -msgstr "" - -#: src/config/SSSDConfig.py:244 -msgid "Netgroups members attribute" -msgstr "" - -#: src/config/SSSDConfig.py:245 -msgid "Netgroup triple attribute" -msgstr "" - -#: src/config/SSSDConfig.py:246 -msgid "Netgroup UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:247 -msgid "Modification time attribute for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:249 -msgid "Base DN for service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:250 -msgid "Objectclass for services" -msgstr "" - -#: src/config/SSSDConfig.py:251 -msgid "Service name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:252 -msgid "Service port attribute" -msgstr "" - -#: src/config/SSSDConfig.py:253 -msgid "Service protocol attribute" -msgstr "" - -#: src/config/SSSDConfig.py:257 -msgid "Policy to evaluate the password expiration" -msgstr "" - -#: src/config/SSSDConfig.py:260 -msgid "LDAP filter to determine access privileges" -msgstr "" - -#: src/config/SSSDConfig.py:261 -msgid "Which attributes shall be used to evaluate if an account is expired" -msgstr "" - -#: src/config/SSSDConfig.py:262 -msgid "Which rules should be used to evaluate access control" -msgstr "" - -#: src/config/SSSDConfig.py:265 -msgid "URI of an LDAP server where password changes are allowed" -msgstr "" - -#: src/config/SSSDConfig.py:266 -msgid "DNS service name for LDAP password change server" -msgstr "" - -#: src/config/SSSDConfig.py:269 -msgid "Base DN for sudo rules lookups" -msgstr "" - -#: src/config/SSSDConfig.py:270 -msgid "Enable periodical update of all sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:271 -msgid "Length of time between rules updates" -msgstr "" - -#: src/config/SSSDConfig.py:272 -msgid "Object class for sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:273 -msgid "Sudo rule name" -msgstr "" - -#: src/config/SSSDConfig.py:274 -msgid "Sudo rule command attribute" -msgstr "" - -#: src/config/SSSDConfig.py:275 -msgid "Sudo rule host attribute" -msgstr "" - -#: src/config/SSSDConfig.py:276 -msgid "Sudo rule user attribute" -msgstr "" - -#: src/config/SSSDConfig.py:277 -msgid "Sudo rule option attribute" -msgstr "" - -#: src/config/SSSDConfig.py:278 -msgid "Sudo rule runasuser attribute" -msgstr "" - -#: src/config/SSSDConfig.py:279 -msgid "Sudo rule runasgroup attribute" -msgstr "" - -#: src/config/SSSDConfig.py:280 -msgid "Sudo rule notbefore attribute" -msgstr "" - -#: src/config/SSSDConfig.py:281 -msgid "Sudo rule notafter attribute" -msgstr "" - -#: src/config/SSSDConfig.py:282 -msgid "Sudo rule order attribute" -msgstr "" - -#: src/config/SSSDConfig.py:285 -msgid "Object class for automounter maps" -msgstr "" - -#: src/config/SSSDConfig.py:286 -msgid "Automounter map name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:287 -msgid "Object class for automounter map entries" -msgstr "" - -#: src/config/SSSDConfig.py:288 -msgid "Automounter map entry key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:289 -msgid "Automounter map entry value attribute" -msgstr "" - -#: src/config/SSSDConfig.py:290 -msgid "Base DN for automounter map lookups" -msgstr "" - -#: src/config/SSSDConfig.py:293 -msgid "Comma separated list of allowed users" -msgstr "" - -#: src/config/SSSDConfig.py:294 -msgid "Comma separated list of prohibited users" -msgstr "" - -#: src/config/SSSDConfig.py:297 -msgid "Default shell, /bin/bash" -msgstr "" - -#: src/config/SSSDConfig.py:298 -msgid "Base for home directories" -msgstr "" - -#: src/config/SSSDConfig.py:301 -msgid "The name of the NSS library to use" -msgstr "" - -#: src/config/SSSDConfig.py:304 -msgid "PAM stack to use" -msgstr "" - -#: src/monitor/monitor.c:2379 -msgid "Become a daemon (default)" -msgstr "" - -#: src/monitor/monitor.c:2381 -msgid "Run interactive (not a daemon)" -msgstr "" - -#: src/monitor/monitor.c:2383 src/tools/sss_debuglevel.c:77 -msgid "Specify a non-default config file" -msgstr "" - -#: src/monitor/monitor.c:2385 -msgid "Print version number and exit" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1575 src/providers/ldap/ldap_child.c:381 -#: src/util/util.h:89 -msgid "Debug level" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1577 src/providers/ldap/ldap_child.c:383 -#: src/util/util.h:93 -msgid "Add debug timestamps" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1579 src/providers/ldap/ldap_child.c:385 -#: src/util/util.h:95 -msgid "Show timestamps with microseconds" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1581 src/providers/ldap/ldap_child.c:387 -msgid "An open file descriptor for the debug logs" -msgstr "" - -#: src/providers/data_provider_be.c:1938 -msgid "Domain of the information provider (mandatory)" -msgstr "" - -#: src/sss_client/common.c:878 -msgid "Privileged socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:881 -msgid "Public socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:884 -msgid "Unexpected format of the server credential message." -msgstr "" - -#: src/sss_client/common.c:887 -msgid "SSSD is not run by root." -msgstr "" - -#: src/sss_client/common.c:892 -msgid "An error occurred, but no description can be found." -msgstr "" - -#: src/sss_client/common.c:898 -msgid "Unexpected error while looking for an error description" -msgstr "" - -#: src/sss_client/pam_sss.c:378 -msgid "Passwords do not match" -msgstr "" - -#: src/sss_client/pam_sss.c:571 -msgid "Password reset by root is not supported." -msgstr "" - -#: src/sss_client/pam_sss.c:612 -msgid "Authenticated with cached credentials" -msgstr "" - -#: src/sss_client/pam_sss.c:613 -msgid ", your cached password will expire at: " -msgstr "" - -#: src/sss_client/pam_sss.c:643 -#, c-format -msgid "Your password has expired. You have %d grace login(s) remaining." -msgstr "" - -#: src/sss_client/pam_sss.c:689 -#, c-format -msgid "Your password will expire in %d %s." -msgstr "" - -#: src/sss_client/pam_sss.c:738 -msgid "Authentication is denied until: " -msgstr "" - -#: src/sss_client/pam_sss.c:759 -msgid "System is offline, password change not possible" -msgstr "" - -#: src/sss_client/pam_sss.c:789 src/sss_client/pam_sss.c:802 -msgid "Password change failed. " -msgstr "" - -#: src/sss_client/pam_sss.c:792 src/sss_client/pam_sss.c:803 -msgid "Server message: " -msgstr "" - -#: src/sss_client/pam_sss.c:1286 -msgid "New Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1287 -msgid "Reenter new Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1373 -msgid "Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1405 -msgid "Current Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1552 -msgid "Password expired. Change your password now." -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:40 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:211 src/tools/sss_useradd.c:48 -#: src/tools/sss_groupadd.c:41 src/tools/sss_groupdel.c:43 -#: src/tools/sss_groupmod.c:42 src/tools/sss_groupshow.c:615 -#: src/tools/sss_userdel.c:131 src/tools/sss_usermod.c:47 -#: src/tools/sss_cache.c:260 src/tools/sss_debuglevel.c:75 -msgid "The debug level to run with" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:42 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:215 -msgid "The SSSD domain to use" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:58 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:229 src/tools/sss_useradd.c:71 -#: src/tools/sss_groupadd.c:56 src/tools/sss_groupdel.c:52 -#: src/tools/sss_groupmod.c:63 src/tools/sss_groupshow.c:626 -#: src/tools/sss_userdel.c:148 src/tools/sss_usermod.c:72 -#: src/tools/sss_cache.c:281 -msgid "Error setting the locale\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:65 -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:91 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:236 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:269 -msgid "Not enough memory\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:84 -msgid "User not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:104 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:282 -msgid "Error looking up public keys\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:94 -msgid "Failed to open a socket\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:104 -msgid "Failed to connect to the server\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:195 -msgid "Failed to execute proxy command\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:213 -msgid "The port to use to connect to the host" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:255 -msgid "Host not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:261 -msgid "The path to the proxy command must be absolute\n" -msgstr "" - -#: src/tools/sss_useradd.c:49 src/tools/sss_usermod.c:48 -msgid "The UID of the user" -msgstr "" - -#: src/tools/sss_useradd.c:50 src/tools/sss_usermod.c:50 -msgid "The comment string" -msgstr "" - -#: src/tools/sss_useradd.c:51 src/tools/sss_usermod.c:51 -msgid "Home directory" -msgstr "" - -#: src/tools/sss_useradd.c:52 src/tools/sss_usermod.c:52 -msgid "Login shell" -msgstr "" - -#: src/tools/sss_useradd.c:53 -msgid "Groups" -msgstr "" - -#: src/tools/sss_useradd.c:54 -msgid "Create user's directory if it does not exist" -msgstr "" - -#: src/tools/sss_useradd.c:55 -msgid "Never create user's directory, overrides config" -msgstr "" - -#: src/tools/sss_useradd.c:56 -msgid "Specify an alternative skeleton directory" -msgstr "" - -#: src/tools/sss_useradd.c:57 src/tools/sss_usermod.c:57 -msgid "The SELinux user for user's login" -msgstr "" - -#: src/tools/sss_useradd.c:84 src/tools/sss_groupmod.c:76 -#: src/tools/sss_usermod.c:85 -msgid "Specify group to add to\n" -msgstr "" - -#: src/tools/sss_useradd.c:108 -msgid "Specify user to add\n" -msgstr "" - -#: src/tools/sss_useradd.c:117 src/tools/sss_groupadd.c:82 -#: src/tools/sss_groupdel.c:77 src/tools/sss_groupmod.c:109 -#: src/tools/sss_groupshow.c:659 src/tools/sss_userdel.c:193 -#: src/tools/sss_usermod.c:126 -msgid "Error initializing the tools - no local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:119 src/tools/sss_groupadd.c:84 -#: src/tools/sss_groupdel.c:79 src/tools/sss_groupmod.c:111 -#: src/tools/sss_groupshow.c:661 src/tools/sss_userdel.c:195 -#: src/tools/sss_usermod.c:128 -msgid "Error initializing the tools\n" -msgstr "" - -#: src/tools/sss_useradd.c:128 src/tools/sss_groupadd.c:93 -#: src/tools/sss_groupdel.c:88 src/tools/sss_groupmod.c:119 -#: src/tools/sss_groupshow.c:670 src/tools/sss_userdel.c:204 -#: src/tools/sss_usermod.c:137 -msgid "Invalid domain specified in FQDN\n" -msgstr "" - -#: src/tools/sss_useradd.c:137 src/tools/sss_groupmod.c:139 -#: src/tools/sss_groupmod.c:166 src/tools/sss_usermod.c:160 -#: src/tools/sss_usermod.c:187 -msgid "Internal error while parsing parameters\n" -msgstr "" - -#: src/tools/sss_useradd.c:145 src/tools/sss_usermod.c:168 -#: src/tools/sss_usermod.c:195 -msgid "Groups must be in the same domain as user\n" -msgstr "" - -#: src/tools/sss_useradd.c:153 -#, c-format -msgid "Cannot find group %s in local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:168 src/tools/sss_userdel.c:214 -msgid "Cannot set default values\n" -msgstr "" - -#: src/tools/sss_useradd.c:175 src/tools/sss_usermod.c:151 -msgid "The selected UID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_useradd.c:202 src/tools/sss_usermod.c:236 -msgid "Cannot set SELinux login context\n" -msgstr "" - -#: src/tools/sss_useradd.c:217 -msgid "Cannot get info about the user\n" -msgstr "" - -#: src/tools/sss_useradd.c:229 -msgid "User's home directory already exists, not copying data from skeldir\n" -msgstr "" - -#: src/tools/sss_useradd.c:232 -#, c-format -msgid "Cannot create user's home directory: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:243 -#, c-format -msgid "Cannot create user's mail spool: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:255 -msgid "Could not allocate ID for the user - domain full?\n" -msgstr "" - -#: src/tools/sss_useradd.c:259 -msgid "A user or group with the same name or ID already exists\n" -msgstr "" - -#: src/tools/sss_useradd.c:265 -msgid "Transaction error. Could not add user.\n" -msgstr "" - -#: src/tools/sss_groupadd.c:43 src/tools/sss_groupmod.c:48 -msgid "The GID of the group" -msgstr "" - -#: src/tools/sss_groupadd.c:73 -msgid "Specify group to add\n" -msgstr "" - -#: src/tools/sss_groupadd.c:102 src/tools/sss_groupmod.c:190 -msgid "The selected GID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_groupadd.c:127 -msgid "Could not allocate ID for the group - domain full?\n" -msgstr "" - -#: src/tools/sss_groupadd.c:131 -msgid "A group with the same name or GID already exists\n" -msgstr "" - -#: src/tools/sss_groupadd.c:136 -msgid "Transaction error. Could not add group.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:68 -msgid "Specify group to delete\n" -msgstr "" - -#: src/tools/sss_groupdel.c:101 -#, c-format -msgid "Group %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_groupdel.c:115 -msgid "" -"No such group in local domain. Removing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:120 -msgid "Internal error. Could not remove group.\n" -msgstr "" - -#: src/tools/sss_groupmod.c:44 -msgid "Groups to add this group to" -msgstr "" - -#: src/tools/sss_groupmod.c:46 -msgid "Groups to remove this group from" -msgstr "" - -#: src/tools/sss_groupmod.c:84 src/tools/sss_usermod.c:93 -msgid "Specify group to remove from\n" -msgstr "" - -#: src/tools/sss_groupmod.c:98 -msgid "Specify group to modify\n" -msgstr "" - -#: src/tools/sss_groupmod.c:126 -msgid "" -"Cannot find group in local domain, modifying groups is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_groupmod.c:147 src/tools/sss_groupmod.c:174 -msgid "Member groups must be in the same domain as parent group\n" -msgstr "" - -#: src/tools/sss_groupmod.c:155 src/tools/sss_groupmod.c:182 -#: src/tools/sss_usermod.c:176 src/tools/sss_usermod.c:203 -#, c-format -msgid "" -"Cannot find group %s in local domain, only groups in local domain are " -"allowed\n" -msgstr "" - -#: src/tools/sss_groupmod.c:216 -msgid "Could not modify group - check if member group names are correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:220 -msgid "Could not modify group - check if groupname is correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:224 -msgid "Transaction error. Could not modify group.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:562 -#, c-format -msgid "%s%sGroup: %s\n" -msgstr "" - -#: src/tools/sss_groupshow.c:563 -msgid "Magic Private " -msgstr "" - -#: src/tools/sss_groupshow.c:565 -#, c-format -msgid "%sGID number: %d\n" -msgstr "" - -#: src/tools/sss_groupshow.c:567 -#, c-format -msgid "%sMember users: " -msgstr "" - -#: src/tools/sss_groupshow.c:574 -#, c-format -msgid "" -"\n" -"%sIs a member of: " -msgstr "" - -#: src/tools/sss_groupshow.c:581 -#, c-format -msgid "" -"\n" -"%sMember groups: " -msgstr "" - -#: src/tools/sss_groupshow.c:617 -msgid "Print indirect group members recursively" -msgstr "" - -#: src/tools/sss_groupshow.c:650 -msgid "Specify group to show\n" -msgstr "" - -#: src/tools/sss_groupshow.c:689 -msgid "" -"No such group in local domain. Printing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:694 -msgid "Internal error. Could not print group.\n" -msgstr "" - -#: src/tools/sss_userdel.c:133 -msgid "Remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:135 -msgid "Do not remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:137 -msgid "Force removal of files not owned by the user" -msgstr "" - -#: src/tools/sss_userdel.c:139 -msgid "Kill users' processes before removing him" -msgstr "" - -#: src/tools/sss_userdel.c:184 -msgid "Specify user to delete\n" -msgstr "" - -#: src/tools/sss_userdel.c:230 -#, c-format -msgid "User %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_userdel.c:255 -msgid "Cannot reset SELinux login context\n" -msgstr "" - -#: src/tools/sss_userdel.c:267 -#, c-format -msgid "WARNING: The user (uid %lu) was still logged in when deleted.\n" -msgstr "" - -#: src/tools/sss_userdel.c:272 -msgid "Cannot determine if the user was logged in on this platform" -msgstr "" - -#: src/tools/sss_userdel.c:277 -msgid "Error while checking if the user was logged in\n" -msgstr "" - -#: src/tools/sss_userdel.c:284 -#, c-format -msgid "The post-delete command failed: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:296 -msgid "Not removing home dir - not owned by user\n" -msgstr "" - -#: src/tools/sss_userdel.c:298 -#, c-format -msgid "Cannot remove homedir: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:309 -msgid "" -"No such user in local domain. Removing users only allowed in local domain.\n" -msgstr "" - -#: src/tools/sss_userdel.c:314 -msgid "Internal error. Could not remove user.\n" -msgstr "" - -#: src/tools/sss_usermod.c:49 -msgid "The GID of the user" -msgstr "" - -#: src/tools/sss_usermod.c:53 -msgid "Groups to add this user to" -msgstr "" - -#: src/tools/sss_usermod.c:54 -msgid "Groups to remove this user from" -msgstr "" - -#: src/tools/sss_usermod.c:55 -msgid "Lock the account" -msgstr "" - -#: src/tools/sss_usermod.c:56 -msgid "Unlock the account" -msgstr "" - -#: src/tools/sss_usermod.c:117 -msgid "Specify user to modify\n" -msgstr "" - -#: src/tools/sss_usermod.c:144 -msgid "" -"Cannot find user in local domain, modifying users is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_usermod.c:246 -msgid "Could not modify user - check if group names are correct\n" -msgstr "" - -#: src/tools/sss_usermod.c:250 -msgid "Could not modify user - user already member of groups?\n" -msgstr "" - -#: src/tools/sss_usermod.c:254 -msgid "Transaction error. Could not modify user.\n" -msgstr "" - -#: src/tools/sss_cache.c:132 -#, c-format -msgid "Couldn't invalidate %s" -msgstr "" - -#: src/tools/sss_cache.c:138 -#, c-format -msgid "Couldn't invalidate %s %s" -msgstr "" - -#: src/tools/sss_cache.c:262 -msgid "Invalidate particular user" -msgstr "" - -#: src/tools/sss_cache.c:264 -msgid "Invalidate all users" -msgstr "" - -#: src/tools/sss_cache.c:266 -msgid "Invalidate particular group" -msgstr "" - -#: src/tools/sss_cache.c:268 -msgid "Invalidate all groups" -msgstr "" - -#: src/tools/sss_cache.c:270 -msgid "Invalidate particular netgroup" -msgstr "" - -#: src/tools/sss_cache.c:272 -msgid "Invalidate all netgroups" -msgstr "" - -#: src/tools/sss_cache.c:274 -msgid "Only invalidate entries from a particular domain" -msgstr "" - -#: src/tools/sss_debuglevel.c:43 -msgid "\n" -msgstr "" - -#: src/tools/sss_debuglevel.c:102 -msgid "Specify debug level you want to set\n" -msgstr "" - -#: src/tools/tools_util.c:286 -msgid "Out of memory\n" -msgstr "" - -#: src/tools/tools_util.h:40 -#, c-format -msgid "%s must be run as root\n" -msgstr "" - -#: src/util/util.h:91 -msgid "Send the debug output to files instead of stderr" -msgstr "" diff --git a/po/lt.po b/po/lt.po deleted file mode 100644 index 28e461bd6..000000000 --- a/po/lt.po +++ /dev/null @@ -1,1464 +0,0 @@ -# SOME DESCRIPTIVE TITLE. -# Copyright (C) YEAR Red Hat, Inc. -# This file is distributed under the same license as the PACKAGE package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@lists.fedorahosted.org\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-11-30 04:10+0000\n" -"Last-Translator: FULL NAME \n" -"Language-Team: Lithuanian (http://www.transifex.net/projects/p/fedora/team/" -"lt/)\n" -"Language: lt\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=3; plural=(n%10==1 && n%100!=11 ? 0 : n%10>=2 && (n" -"%100<10 || n%100>=20) ? 1 : 2)\n" - -#: src/config/SSSDConfig.py:39 -msgid "Set the verbosity of the debug logging" -msgstr "" - -#: src/config/SSSDConfig.py:40 -msgid "Include timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:41 -msgid "Include microseconds in timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:42 -msgid "Write debug messages to logfiles" -msgstr "" - -#: src/config/SSSDConfig.py:43 -msgid "Ping timeout before restarting service" -msgstr "" - -#: src/config/SSSDConfig.py:44 -msgid "Command to start service" -msgstr "" - -#: src/config/SSSDConfig.py:45 -msgid "Number of times to attempt connection to Data Providers" -msgstr "" - -#: src/config/SSSDConfig.py:48 -msgid "SSSD Services to start" -msgstr "" - -#: src/config/SSSDConfig.py:49 -msgid "SSSD Domains to start" -msgstr "" - -#: src/config/SSSDConfig.py:50 -msgid "Timeout for messages sent over the SBUS" -msgstr "" - -#: src/config/SSSDConfig.py:51 -msgid "Regex to parse username and domain" -msgstr "" - -#: src/config/SSSDConfig.py:52 -msgid "Printf-compatible format for displaying fully-qualified names" -msgstr "" - -#: src/config/SSSDConfig.py:53 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#: src/config/SSSDConfig.py:56 -msgid "Enumeration cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:57 -msgid "Entry cache background update timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:58 src/config/SSSDConfig.py:81 -msgid "Negative cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:59 -msgid "Users that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:60 -msgid "Groups that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:61 -msgid "Should filtered users appear in groups" -msgstr "" - -#: src/config/SSSDConfig.py:62 -msgid "The value of the password field the NSS provider should return" -msgstr "" - -#: src/config/SSSDConfig.py:63 -msgid "Override homedir value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:64 -msgid "The list of shells users are allowed to log in with" -msgstr "" - -#: src/config/SSSDConfig.py:65 -msgid "" -"The list of shells that will be vetoed, and replaced with the fallback shell" -msgstr "" - -#: src/config/SSSDConfig.py:66 -msgid "" -"If a shell stored in central directory is allowed but not available, use " -"this fallback" -msgstr "" - -#: src/config/SSSDConfig.py:69 -msgid "How long to allow cached logins between online logins (days)" -msgstr "" - -#: src/config/SSSDConfig.py:70 -msgid "How many failed logins attempts are allowed when offline" -msgstr "" - -#: src/config/SSSDConfig.py:71 -msgid "" -"How long (minutes) to deny login after offline_failed_login_attempts has " -"been reached" -msgstr "" - -#: src/config/SSSDConfig.py:72 -msgid "What kind of messages are displayed to the user during authentication" -msgstr "" - -#: src/config/SSSDConfig.py:73 -msgid "How many seconds to keep identity information cached for PAM requests" -msgstr "" - -#: src/config/SSSDConfig.py:74 -msgid "How many days before password expiration a warning should be displayed" -msgstr "" - -#: src/config/SSSDConfig.py:77 -msgid "Whether to evaluate the time-based attributes in sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:78 -msgid "" -"How many seconds to keep sudorules cached before asking the provider again" -msgstr "" - -#: src/config/SSSDConfig.py:84 -msgid "Identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:85 -msgid "Authentication provider" -msgstr "" - -#: src/config/SSSDConfig.py:86 -msgid "Access control provider" -msgstr "" - -#: src/config/SSSDConfig.py:87 -msgid "Password change provider" -msgstr "" - -#: src/config/SSSDConfig.py:88 -msgid "SUDO provider" -msgstr "" - -#: src/config/SSSDConfig.py:89 -msgid "Autofs provider" -msgstr "" - -#: src/config/SSSDConfig.py:90 -msgid "Session-loading provider" -msgstr "" - -#: src/config/SSSDConfig.py:91 -msgid "Host identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:94 -msgid "Minimum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:95 -msgid "Maximum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:96 -msgid "Enable enumerating all users/groups" -msgstr "" - -#: src/config/SSSDConfig.py:97 -msgid "Cache credentials for offline login" -msgstr "" - -#: src/config/SSSDConfig.py:98 -msgid "Store password hashes" -msgstr "" - -#: src/config/SSSDConfig.py:99 -msgid "Display users/groups in fully-qualified form" -msgstr "" - -#: src/config/SSSDConfig.py:100 src/config/SSSDConfig.py:107 -#: src/config/SSSDConfig.py:108 src/config/SSSDConfig.py:109 -#: src/config/SSSDConfig.py:110 src/config/SSSDConfig.py:111 -msgid "Entry cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:101 -msgid "" -"Restrict or prefer a specific address family when performing DNS lookups" -msgstr "" - -#: src/config/SSSDConfig.py:102 -msgid "How long to keep cached entries after last successful login (days)" -msgstr "" - -#: src/config/SSSDConfig.py:103 -msgid "How long to wait for replies from DNS when resolving servers (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:104 -msgid "The domain part of service discovery DNS query" -msgstr "" - -#: src/config/SSSDConfig.py:105 -msgid "Override GID value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:106 -msgid "Treat usernames as case sensitive" -msgstr "" - -#: src/config/SSSDConfig.py:114 -msgid "IPA domain" -msgstr "" - -#: src/config/SSSDConfig.py:115 -msgid "IPA server address" -msgstr "" - -#: src/config/SSSDConfig.py:116 -msgid "IPA client hostname" -msgstr "" - -#: src/config/SSSDConfig.py:117 -msgid "Whether to automatically update the client's DNS entry in FreeIPA" -msgstr "" - -#: src/config/SSSDConfig.py:118 -msgid "The interface whose IP should be used for dynamic DNS updates" -msgstr "" - -#: src/config/SSSDConfig.py:119 -msgid "Search base for HBAC related objects" -msgstr "" - -#: src/config/SSSDConfig.py:120 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server" -msgstr "" - -#: src/config/SSSDConfig.py:121 -msgid "If DENY rules are present, either DENY_ALL or IGNORE" -msgstr "" - -#: src/config/SSSDConfig.py:122 -msgid "If set to false, host argument given by PAM will be ignored" -msgstr "" - -#: src/config/SSSDConfig.py:123 -msgid "The automounter location this IPA client is using" -msgstr "" - -#: src/config/SSSDConfig.py:126 src/config/SSSDConfig.py:127 -msgid "Kerberos server address" -msgstr "" - -#: src/config/SSSDConfig.py:128 -msgid "Kerberos realm" -msgstr "" - -#: src/config/SSSDConfig.py:129 -msgid "Authentication timeout" -msgstr "" - -#: src/config/SSSDConfig.py:132 -msgid "Directory to store credential caches" -msgstr "" - -#: src/config/SSSDConfig.py:133 -msgid "Location of the user's credential cache" -msgstr "" - -#: src/config/SSSDConfig.py:134 -msgid "Location of the keytab to validate credentials" -msgstr "" - -#: src/config/SSSDConfig.py:135 -msgid "Enable credential validation" -msgstr "" - -#: src/config/SSSDConfig.py:136 -msgid "Store password if offline for later online authentication" -msgstr "" - -#: src/config/SSSDConfig.py:137 -msgid "Renewable lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:138 -msgid "Lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:139 -msgid "Time between two checks for renewal" -msgstr "" - -#: src/config/SSSDConfig.py:140 -msgid "Enables FAST" -msgstr "" - -#: src/config/SSSDConfig.py:141 -msgid "Selects the principal to use for FAST" -msgstr "" - -#: src/config/SSSDConfig.py:142 -msgid "Enables principal canonicalization" -msgstr "" - -#: src/config/SSSDConfig.py:145 -msgid "Server where the change password service is running if not on the KDC" -msgstr "" - -#: src/config/SSSDConfig.py:148 -msgid "ldap_uri, The URI of the LDAP server" -msgstr "" - -#: src/config/SSSDConfig.py:149 -msgid "The default base DN" -msgstr "" - -#: src/config/SSSDConfig.py:150 -msgid "The Schema Type in use on the LDAP server, rfc2307" -msgstr "" - -#: src/config/SSSDConfig.py:151 -msgid "The default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:152 -msgid "The type of the authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:153 -msgid "The authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:154 -msgid "Length of time to attempt connection" -msgstr "" - -#: src/config/SSSDConfig.py:155 -msgid "Length of time to attempt synchronous LDAP operations" -msgstr "" - -#: src/config/SSSDConfig.py:156 -msgid "Length of time between attempts to reconnect while offline" -msgstr "" - -#: src/config/SSSDConfig.py:157 -msgid "Use only the upper case for realm names" -msgstr "" - -#: src/config/SSSDConfig.py:158 -msgid "File that contains CA certificates" -msgstr "" - -#: src/config/SSSDConfig.py:159 -msgid "Path to CA certificate directory" -msgstr "" - -#: src/config/SSSDConfig.py:160 -msgid "File that contains the client certificate" -msgstr "" - -#: src/config/SSSDConfig.py:161 -msgid "File that contains the client key" -msgstr "" - -#: src/config/SSSDConfig.py:162 -msgid "List of possible ciphers suites" -msgstr "" - -#: src/config/SSSDConfig.py:163 -msgid "Require TLS certificate verification" -msgstr "" - -#: src/config/SSSDConfig.py:164 -msgid "Specify the sasl mechanism to use" -msgstr "" - -#: src/config/SSSDConfig.py:165 -msgid "Specify the sasl authorization id to use" -msgstr "" - -#: src/config/SSSDConfig.py:166 -msgid "Specify the sasl authorization realm to use" -msgstr "" - -#: src/config/SSSDConfig.py:167 -msgid "Specify the minimal SSF for LDAP sasl authorization" -msgstr "" - -#: src/config/SSSDConfig.py:168 -msgid "Kerberos service keytab" -msgstr "" - -#: src/config/SSSDConfig.py:169 -msgid "Use Kerberos auth for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:170 -msgid "Follow LDAP referrals" -msgstr "" - -#: src/config/SSSDConfig.py:171 -msgid "Lifetime of TGT for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:172 -msgid "How to dereference aliases" -msgstr "" - -#: src/config/SSSDConfig.py:173 -msgid "Service name for DNS service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:174 -msgid "The number of records to retrieve in a single LDAP query" -msgstr "" - -#: src/config/SSSDConfig.py:175 -msgid "The number of members that must be missing to trigger a full deref" -msgstr "" - -#: src/config/SSSDConfig.py:176 -msgid "" -"Whether the LDAP library should perform a reverse lookup to canonicalize the " -"host name during a SASL bind" -msgstr "" - -#: src/config/SSSDConfig.py:178 -msgid "entryUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:179 -msgid "lastUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:181 -msgid "How long to retain a connection to the LDAP server before disconnecting" -msgstr "" - -#: src/config/SSSDConfig.py:183 -msgid "Disable the LDAP paging control" -msgstr "" - -#: src/config/SSSDConfig.py:186 -msgid "Length of time to wait for a search request" -msgstr "" - -#: src/config/SSSDConfig.py:187 -msgid "Length of time to wait for a enumeration request" -msgstr "" - -#: src/config/SSSDConfig.py:188 -msgid "Length of time between enumeration updates" -msgstr "" - -#: src/config/SSSDConfig.py:189 -msgid "Length of time between cache cleanups" -msgstr "" - -#: src/config/SSSDConfig.py:190 -msgid "Require TLS for ID lookups" -msgstr "" - -#: src/config/SSSDConfig.py:191 -msgid "Base DN for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:192 -msgid "Scope of user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:193 -msgid "Filter for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:194 -msgid "Objectclass for users" -msgstr "" - -#: src/config/SSSDConfig.py:195 -msgid "Username attribute" -msgstr "" - -#: src/config/SSSDConfig.py:197 -msgid "UID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:198 -msgid "Primary GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:199 -msgid "GECOS attribute" -msgstr "" - -#: src/config/SSSDConfig.py:200 -msgid "Home directory attribute" -msgstr "" - -#: src/config/SSSDConfig.py:201 -msgid "Shell attribute" -msgstr "" - -#: src/config/SSSDConfig.py:202 -msgid "UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:203 -msgid "User principal attribute (for Kerberos)" -msgstr "" - -#: src/config/SSSDConfig.py:204 -msgid "Full Name" -msgstr "" - -#: src/config/SSSDConfig.py:205 -msgid "memberOf attribute" -msgstr "" - -#: src/config/SSSDConfig.py:206 -msgid "Modification time attribute" -msgstr "" - -#: src/config/SSSDConfig.py:208 -msgid "shadowLastChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:209 -msgid "shadowMin attribute" -msgstr "" - -#: src/config/SSSDConfig.py:210 -msgid "shadowMax attribute" -msgstr "" - -#: src/config/SSSDConfig.py:211 -msgid "shadowWarning attribute" -msgstr "" - -#: src/config/SSSDConfig.py:212 -msgid "shadowInactive attribute" -msgstr "" - -#: src/config/SSSDConfig.py:213 -msgid "shadowExpire attribute" -msgstr "" - -#: src/config/SSSDConfig.py:214 -msgid "shadowFlag attribute" -msgstr "" - -#: src/config/SSSDConfig.py:215 -msgid "Attribute listing authorized PAM services" -msgstr "" - -#: src/config/SSSDConfig.py:216 -msgid "Attribute listing authorized server hosts" -msgstr "" - -#: src/config/SSSDConfig.py:217 -msgid "krbLastPwdChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:218 -msgid "krbPasswordExpiration attribute" -msgstr "" - -#: src/config/SSSDConfig.py:219 -msgid "Attribute indicating that server side password policies are active" -msgstr "" - -#: src/config/SSSDConfig.py:220 -msgid "accountExpires attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:221 -msgid "userAccountControl attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:222 -msgid "nsAccountLock attribute" -msgstr "" - -#: src/config/SSSDConfig.py:223 -msgid "loginDisabled attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:224 -msgid "loginExpirationTime attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:225 -msgid "loginAllowedTimeMap attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:226 -msgid "SSH public key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:228 -msgid "Base DN for group lookups" -msgstr "" - -#: src/config/SSSDConfig.py:231 -msgid "Objectclass for groups" -msgstr "" - -#: src/config/SSSDConfig.py:232 -msgid "Group name" -msgstr "" - -#: src/config/SSSDConfig.py:233 -msgid "Group password" -msgstr "" - -#: src/config/SSSDConfig.py:234 -msgid "GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:235 -msgid "Group member attribute" -msgstr "" - -#: src/config/SSSDConfig.py:236 -msgid "Group UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:237 -msgid "Modification time attribute for groups" -msgstr "" - -#: src/config/SSSDConfig.py:239 -msgid "Maximum nesting level SSSd will follow" -msgstr "" - -#: src/config/SSSDConfig.py:241 -msgid "Base DN for netgroup lookups" -msgstr "" - -#: src/config/SSSDConfig.py:242 -msgid "Objectclass for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:243 -msgid "Netgroup name" -msgstr "" - -#: src/config/SSSDConfig.py:244 -msgid "Netgroups members attribute" -msgstr "" - -#: src/config/SSSDConfig.py:245 -msgid "Netgroup triple attribute" -msgstr "" - -#: src/config/SSSDConfig.py:246 -msgid "Netgroup UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:247 -msgid "Modification time attribute for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:249 -msgid "Base DN for service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:250 -msgid "Objectclass for services" -msgstr "" - -#: src/config/SSSDConfig.py:251 -msgid "Service name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:252 -msgid "Service port attribute" -msgstr "" - -#: src/config/SSSDConfig.py:253 -msgid "Service protocol attribute" -msgstr "" - -#: src/config/SSSDConfig.py:257 -msgid "Policy to evaluate the password expiration" -msgstr "" - -#: src/config/SSSDConfig.py:260 -msgid "LDAP filter to determine access privileges" -msgstr "" - -#: src/config/SSSDConfig.py:261 -msgid "Which attributes shall be used to evaluate if an account is expired" -msgstr "" - -#: src/config/SSSDConfig.py:262 -msgid "Which rules should be used to evaluate access control" -msgstr "" - -#: src/config/SSSDConfig.py:265 -msgid "URI of an LDAP server where password changes are allowed" -msgstr "" - -#: src/config/SSSDConfig.py:266 -msgid "DNS service name for LDAP password change server" -msgstr "" - -#: src/config/SSSDConfig.py:269 -msgid "Base DN for sudo rules lookups" -msgstr "" - -#: src/config/SSSDConfig.py:270 -msgid "Enable periodical update of all sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:271 -msgid "Length of time between rules updates" -msgstr "" - -#: src/config/SSSDConfig.py:272 -msgid "Object class for sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:273 -msgid "Sudo rule name" -msgstr "" - -#: src/config/SSSDConfig.py:274 -msgid "Sudo rule command attribute" -msgstr "" - -#: src/config/SSSDConfig.py:275 -msgid "Sudo rule host attribute" -msgstr "" - -#: src/config/SSSDConfig.py:276 -msgid "Sudo rule user attribute" -msgstr "" - -#: src/config/SSSDConfig.py:277 -msgid "Sudo rule option attribute" -msgstr "" - -#: src/config/SSSDConfig.py:278 -msgid "Sudo rule runasuser attribute" -msgstr "" - -#: src/config/SSSDConfig.py:279 -msgid "Sudo rule runasgroup attribute" -msgstr "" - -#: src/config/SSSDConfig.py:280 -msgid "Sudo rule notbefore attribute" -msgstr "" - -#: src/config/SSSDConfig.py:281 -msgid "Sudo rule notafter attribute" -msgstr "" - -#: src/config/SSSDConfig.py:282 -msgid "Sudo rule order attribute" -msgstr "" - -#: src/config/SSSDConfig.py:285 -msgid "Object class for automounter maps" -msgstr "" - -#: src/config/SSSDConfig.py:286 -msgid "Automounter map name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:287 -msgid "Object class for automounter map entries" -msgstr "" - -#: src/config/SSSDConfig.py:288 -msgid "Automounter map entry key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:289 -msgid "Automounter map entry value attribute" -msgstr "" - -#: src/config/SSSDConfig.py:290 -msgid "Base DN for automounter map lookups" -msgstr "" - -#: src/config/SSSDConfig.py:293 -msgid "Comma separated list of allowed users" -msgstr "" - -#: src/config/SSSDConfig.py:294 -msgid "Comma separated list of prohibited users" -msgstr "" - -#: src/config/SSSDConfig.py:297 -msgid "Default shell, /bin/bash" -msgstr "" - -#: src/config/SSSDConfig.py:298 -msgid "Base for home directories" -msgstr "" - -#: src/config/SSSDConfig.py:301 -msgid "The name of the NSS library to use" -msgstr "" - -#: src/config/SSSDConfig.py:304 -msgid "PAM stack to use" -msgstr "" - -#: src/monitor/monitor.c:2379 -msgid "Become a daemon (default)" -msgstr "" - -#: src/monitor/monitor.c:2381 -msgid "Run interactive (not a daemon)" -msgstr "" - -#: src/monitor/monitor.c:2383 src/tools/sss_debuglevel.c:77 -msgid "Specify a non-default config file" -msgstr "" - -#: src/monitor/monitor.c:2385 -msgid "Print version number and exit" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1575 src/providers/ldap/ldap_child.c:381 -#: src/util/util.h:89 -msgid "Debug level" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1577 src/providers/ldap/ldap_child.c:383 -#: src/util/util.h:93 -msgid "Add debug timestamps" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1579 src/providers/ldap/ldap_child.c:385 -#: src/util/util.h:95 -msgid "Show timestamps with microseconds" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1581 src/providers/ldap/ldap_child.c:387 -msgid "An open file descriptor for the debug logs" -msgstr "" - -#: src/providers/data_provider_be.c:1938 -msgid "Domain of the information provider (mandatory)" -msgstr "" - -#: src/sss_client/common.c:878 -msgid "Privileged socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:881 -msgid "Public socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:884 -msgid "Unexpected format of the server credential message." -msgstr "" - -#: src/sss_client/common.c:887 -msgid "SSSD is not run by root." -msgstr "" - -#: src/sss_client/common.c:892 -msgid "An error occurred, but no description can be found." -msgstr "" - -#: src/sss_client/common.c:898 -msgid "Unexpected error while looking for an error description" -msgstr "" - -#: src/sss_client/pam_sss.c:378 -msgid "Passwords do not match" -msgstr "" - -#: src/sss_client/pam_sss.c:571 -msgid "Password reset by root is not supported." -msgstr "" - -#: src/sss_client/pam_sss.c:612 -msgid "Authenticated with cached credentials" -msgstr "" - -#: src/sss_client/pam_sss.c:613 -msgid ", your cached password will expire at: " -msgstr "" - -#: src/sss_client/pam_sss.c:643 -#, c-format -msgid "Your password has expired. You have %d grace login(s) remaining." -msgstr "" - -#: src/sss_client/pam_sss.c:689 -#, c-format -msgid "Your password will expire in %d %s." -msgstr "" - -#: src/sss_client/pam_sss.c:738 -msgid "Authentication is denied until: " -msgstr "" - -#: src/sss_client/pam_sss.c:759 -msgid "System is offline, password change not possible" -msgstr "" - -#: src/sss_client/pam_sss.c:789 src/sss_client/pam_sss.c:802 -msgid "Password change failed. " -msgstr "" - -#: src/sss_client/pam_sss.c:792 src/sss_client/pam_sss.c:803 -msgid "Server message: " -msgstr "" - -#: src/sss_client/pam_sss.c:1286 -msgid "New Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1287 -msgid "Reenter new Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1373 -msgid "Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1405 -msgid "Current Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1552 -msgid "Password expired. Change your password now." -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:40 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:211 src/tools/sss_useradd.c:48 -#: src/tools/sss_groupadd.c:41 src/tools/sss_groupdel.c:43 -#: src/tools/sss_groupmod.c:42 src/tools/sss_groupshow.c:615 -#: src/tools/sss_userdel.c:131 src/tools/sss_usermod.c:47 -#: src/tools/sss_cache.c:260 src/tools/sss_debuglevel.c:75 -msgid "The debug level to run with" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:42 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:215 -msgid "The SSSD domain to use" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:58 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:229 src/tools/sss_useradd.c:71 -#: src/tools/sss_groupadd.c:56 src/tools/sss_groupdel.c:52 -#: src/tools/sss_groupmod.c:63 src/tools/sss_groupshow.c:626 -#: src/tools/sss_userdel.c:148 src/tools/sss_usermod.c:72 -#: src/tools/sss_cache.c:281 -msgid "Error setting the locale\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:65 -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:91 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:236 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:269 -msgid "Not enough memory\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:84 -msgid "User not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:104 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:282 -msgid "Error looking up public keys\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:94 -msgid "Failed to open a socket\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:104 -msgid "Failed to connect to the server\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:195 -msgid "Failed to execute proxy command\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:213 -msgid "The port to use to connect to the host" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:255 -msgid "Host not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:261 -msgid "The path to the proxy command must be absolute\n" -msgstr "" - -#: src/tools/sss_useradd.c:49 src/tools/sss_usermod.c:48 -msgid "The UID of the user" -msgstr "" - -#: src/tools/sss_useradd.c:50 src/tools/sss_usermod.c:50 -msgid "The comment string" -msgstr "" - -#: src/tools/sss_useradd.c:51 src/tools/sss_usermod.c:51 -msgid "Home directory" -msgstr "" - -#: src/tools/sss_useradd.c:52 src/tools/sss_usermod.c:52 -msgid "Login shell" -msgstr "" - -#: src/tools/sss_useradd.c:53 -msgid "Groups" -msgstr "" - -#: src/tools/sss_useradd.c:54 -msgid "Create user's directory if it does not exist" -msgstr "" - -#: src/tools/sss_useradd.c:55 -msgid "Never create user's directory, overrides config" -msgstr "" - -#: src/tools/sss_useradd.c:56 -msgid "Specify an alternative skeleton directory" -msgstr "" - -#: src/tools/sss_useradd.c:57 src/tools/sss_usermod.c:57 -msgid "The SELinux user for user's login" -msgstr "" - -#: src/tools/sss_useradd.c:84 src/tools/sss_groupmod.c:76 -#: src/tools/sss_usermod.c:85 -msgid "Specify group to add to\n" -msgstr "" - -#: src/tools/sss_useradd.c:108 -msgid "Specify user to add\n" -msgstr "" - -#: src/tools/sss_useradd.c:117 src/tools/sss_groupadd.c:82 -#: src/tools/sss_groupdel.c:77 src/tools/sss_groupmod.c:109 -#: src/tools/sss_groupshow.c:659 src/tools/sss_userdel.c:193 -#: src/tools/sss_usermod.c:126 -msgid "Error initializing the tools - no local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:119 src/tools/sss_groupadd.c:84 -#: src/tools/sss_groupdel.c:79 src/tools/sss_groupmod.c:111 -#: src/tools/sss_groupshow.c:661 src/tools/sss_userdel.c:195 -#: src/tools/sss_usermod.c:128 -msgid "Error initializing the tools\n" -msgstr "" - -#: src/tools/sss_useradd.c:128 src/tools/sss_groupadd.c:93 -#: src/tools/sss_groupdel.c:88 src/tools/sss_groupmod.c:119 -#: src/tools/sss_groupshow.c:670 src/tools/sss_userdel.c:204 -#: src/tools/sss_usermod.c:137 -msgid "Invalid domain specified in FQDN\n" -msgstr "" - -#: src/tools/sss_useradd.c:137 src/tools/sss_groupmod.c:139 -#: src/tools/sss_groupmod.c:166 src/tools/sss_usermod.c:160 -#: src/tools/sss_usermod.c:187 -msgid "Internal error while parsing parameters\n" -msgstr "" - -#: src/tools/sss_useradd.c:145 src/tools/sss_usermod.c:168 -#: src/tools/sss_usermod.c:195 -msgid "Groups must be in the same domain as user\n" -msgstr "" - -#: src/tools/sss_useradd.c:153 -#, c-format -msgid "Cannot find group %s in local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:168 src/tools/sss_userdel.c:214 -msgid "Cannot set default values\n" -msgstr "" - -#: src/tools/sss_useradd.c:175 src/tools/sss_usermod.c:151 -msgid "The selected UID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_useradd.c:202 src/tools/sss_usermod.c:236 -msgid "Cannot set SELinux login context\n" -msgstr "" - -#: src/tools/sss_useradd.c:217 -msgid "Cannot get info about the user\n" -msgstr "" - -#: src/tools/sss_useradd.c:229 -msgid "User's home directory already exists, not copying data from skeldir\n" -msgstr "" - -#: src/tools/sss_useradd.c:232 -#, c-format -msgid "Cannot create user's home directory: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:243 -#, c-format -msgid "Cannot create user's mail spool: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:255 -msgid "Could not allocate ID for the user - domain full?\n" -msgstr "" - -#: src/tools/sss_useradd.c:259 -msgid "A user or group with the same name or ID already exists\n" -msgstr "" - -#: src/tools/sss_useradd.c:265 -msgid "Transaction error. Could not add user.\n" -msgstr "" - -#: src/tools/sss_groupadd.c:43 src/tools/sss_groupmod.c:48 -msgid "The GID of the group" -msgstr "" - -#: src/tools/sss_groupadd.c:73 -msgid "Specify group to add\n" -msgstr "" - -#: src/tools/sss_groupadd.c:102 src/tools/sss_groupmod.c:190 -msgid "The selected GID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_groupadd.c:127 -msgid "Could not allocate ID for the group - domain full?\n" -msgstr "" - -#: src/tools/sss_groupadd.c:131 -msgid "A group with the same name or GID already exists\n" -msgstr "" - -#: src/tools/sss_groupadd.c:136 -msgid "Transaction error. Could not add group.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:68 -msgid "Specify group to delete\n" -msgstr "" - -#: src/tools/sss_groupdel.c:101 -#, c-format -msgid "Group %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_groupdel.c:115 -msgid "" -"No such group in local domain. Removing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:120 -msgid "Internal error. Could not remove group.\n" -msgstr "" - -#: src/tools/sss_groupmod.c:44 -msgid "Groups to add this group to" -msgstr "" - -#: src/tools/sss_groupmod.c:46 -msgid "Groups to remove this group from" -msgstr "" - -#: src/tools/sss_groupmod.c:84 src/tools/sss_usermod.c:93 -msgid "Specify group to remove from\n" -msgstr "" - -#: src/tools/sss_groupmod.c:98 -msgid "Specify group to modify\n" -msgstr "" - -#: src/tools/sss_groupmod.c:126 -msgid "" -"Cannot find group in local domain, modifying groups is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_groupmod.c:147 src/tools/sss_groupmod.c:174 -msgid "Member groups must be in the same domain as parent group\n" -msgstr "" - -#: src/tools/sss_groupmod.c:155 src/tools/sss_groupmod.c:182 -#: src/tools/sss_usermod.c:176 src/tools/sss_usermod.c:203 -#, c-format -msgid "" -"Cannot find group %s in local domain, only groups in local domain are " -"allowed\n" -msgstr "" - -#: src/tools/sss_groupmod.c:216 -msgid "Could not modify group - check if member group names are correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:220 -msgid "Could not modify group - check if groupname is correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:224 -msgid "Transaction error. Could not modify group.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:562 -#, c-format -msgid "%s%sGroup: %s\n" -msgstr "" - -#: src/tools/sss_groupshow.c:563 -msgid "Magic Private " -msgstr "" - -#: src/tools/sss_groupshow.c:565 -#, c-format -msgid "%sGID number: %d\n" -msgstr "" - -#: src/tools/sss_groupshow.c:567 -#, c-format -msgid "%sMember users: " -msgstr "" - -#: src/tools/sss_groupshow.c:574 -#, c-format -msgid "" -"\n" -"%sIs a member of: " -msgstr "" - -#: src/tools/sss_groupshow.c:581 -#, c-format -msgid "" -"\n" -"%sMember groups: " -msgstr "" - -#: src/tools/sss_groupshow.c:617 -msgid "Print indirect group members recursively" -msgstr "" - -#: src/tools/sss_groupshow.c:650 -msgid "Specify group to show\n" -msgstr "" - -#: src/tools/sss_groupshow.c:689 -msgid "" -"No such group in local domain. Printing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:694 -msgid "Internal error. Could not print group.\n" -msgstr "" - -#: src/tools/sss_userdel.c:133 -msgid "Remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:135 -msgid "Do not remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:137 -msgid "Force removal of files not owned by the user" -msgstr "" - -#: src/tools/sss_userdel.c:139 -msgid "Kill users' processes before removing him" -msgstr "" - -#: src/tools/sss_userdel.c:184 -msgid "Specify user to delete\n" -msgstr "" - -#: src/tools/sss_userdel.c:230 -#, c-format -msgid "User %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_userdel.c:255 -msgid "Cannot reset SELinux login context\n" -msgstr "" - -#: src/tools/sss_userdel.c:267 -#, c-format -msgid "WARNING: The user (uid %lu) was still logged in when deleted.\n" -msgstr "" - -#: src/tools/sss_userdel.c:272 -msgid "Cannot determine if the user was logged in on this platform" -msgstr "" - -#: src/tools/sss_userdel.c:277 -msgid "Error while checking if the user was logged in\n" -msgstr "" - -#: src/tools/sss_userdel.c:284 -#, c-format -msgid "The post-delete command failed: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:296 -msgid "Not removing home dir - not owned by user\n" -msgstr "" - -#: src/tools/sss_userdel.c:298 -#, c-format -msgid "Cannot remove homedir: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:309 -msgid "" -"No such user in local domain. Removing users only allowed in local domain.\n" -msgstr "" - -#: src/tools/sss_userdel.c:314 -msgid "Internal error. Could not remove user.\n" -msgstr "" - -#: src/tools/sss_usermod.c:49 -msgid "The GID of the user" -msgstr "" - -#: src/tools/sss_usermod.c:53 -msgid "Groups to add this user to" -msgstr "" - -#: src/tools/sss_usermod.c:54 -msgid "Groups to remove this user from" -msgstr "" - -#: src/tools/sss_usermod.c:55 -msgid "Lock the account" -msgstr "" - -#: src/tools/sss_usermod.c:56 -msgid "Unlock the account" -msgstr "" - -#: src/tools/sss_usermod.c:117 -msgid "Specify user to modify\n" -msgstr "" - -#: src/tools/sss_usermod.c:144 -msgid "" -"Cannot find user in local domain, modifying users is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_usermod.c:246 -msgid "Could not modify user - check if group names are correct\n" -msgstr "" - -#: src/tools/sss_usermod.c:250 -msgid "Could not modify user - user already member of groups?\n" -msgstr "" - -#: src/tools/sss_usermod.c:254 -msgid "Transaction error. Could not modify user.\n" -msgstr "" - -#: src/tools/sss_cache.c:132 -#, c-format -msgid "Couldn't invalidate %s" -msgstr "" - -#: src/tools/sss_cache.c:138 -#, c-format -msgid "Couldn't invalidate %s %s" -msgstr "" - -#: src/tools/sss_cache.c:262 -msgid "Invalidate particular user" -msgstr "" - -#: src/tools/sss_cache.c:264 -msgid "Invalidate all users" -msgstr "" - -#: src/tools/sss_cache.c:266 -msgid "Invalidate particular group" -msgstr "" - -#: src/tools/sss_cache.c:268 -msgid "Invalidate all groups" -msgstr "" - -#: src/tools/sss_cache.c:270 -msgid "Invalidate particular netgroup" -msgstr "" - -#: src/tools/sss_cache.c:272 -msgid "Invalidate all netgroups" -msgstr "" - -#: src/tools/sss_cache.c:274 -msgid "Only invalidate entries from a particular domain" -msgstr "" - -#: src/tools/sss_debuglevel.c:43 -msgid "\n" -msgstr "" - -#: src/tools/sss_debuglevel.c:102 -msgid "Specify debug level you want to set\n" -msgstr "" - -#: src/tools/tools_util.c:286 -msgid "Out of memory\n" -msgstr "" - -#: src/tools/tools_util.h:40 -#, c-format -msgid "%s must be run as root\n" -msgstr "" - -#: src/util/util.h:91 -msgid "Send the debug output to files instead of stderr" -msgstr "" diff --git a/po/mr.po b/po/mr.po deleted file mode 100644 index f8eadcb2a..000000000 --- a/po/mr.po +++ /dev/null @@ -1,1463 +0,0 @@ -# SOME DESCRIPTIVE TITLE. -# Copyright (C) YEAR Red Hat, Inc. -# This file is distributed under the same license as the PACKAGE package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@lists.fedorahosted.org\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2012-02-14 12:55+0000\n" -"Last-Translator: sgallagh \n" -"Language-Team: Marathi (http://www.transifex.net/projects/p/fedora/language/" -"mr/)\n" -"Language: mr\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=2; plural=(n != 1)\n" - -#: src/config/SSSDConfig.py:39 -msgid "Set the verbosity of the debug logging" -msgstr "" - -#: src/config/SSSDConfig.py:40 -msgid "Include timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:41 -msgid "Include microseconds in timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:42 -msgid "Write debug messages to logfiles" -msgstr "" - -#: src/config/SSSDConfig.py:43 -msgid "Ping timeout before restarting service" -msgstr "" - -#: src/config/SSSDConfig.py:44 -msgid "Command to start service" -msgstr "" - -#: src/config/SSSDConfig.py:45 -msgid "Number of times to attempt connection to Data Providers" -msgstr "" - -#: src/config/SSSDConfig.py:48 -msgid "SSSD Services to start" -msgstr "" - -#: src/config/SSSDConfig.py:49 -msgid "SSSD Domains to start" -msgstr "" - -#: src/config/SSSDConfig.py:50 -msgid "Timeout for messages sent over the SBUS" -msgstr "" - -#: src/config/SSSDConfig.py:51 -msgid "Regex to parse username and domain" -msgstr "" - -#: src/config/SSSDConfig.py:52 -msgid "Printf-compatible format for displaying fully-qualified names" -msgstr "" - -#: src/config/SSSDConfig.py:53 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#: src/config/SSSDConfig.py:56 -msgid "Enumeration cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:57 -msgid "Entry cache background update timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:58 src/config/SSSDConfig.py:81 -msgid "Negative cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:59 -msgid "Users that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:60 -msgid "Groups that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:61 -msgid "Should filtered users appear in groups" -msgstr "" - -#: src/config/SSSDConfig.py:62 -msgid "The value of the password field the NSS provider should return" -msgstr "" - -#: src/config/SSSDConfig.py:63 -msgid "Override homedir value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:64 -msgid "The list of shells users are allowed to log in with" -msgstr "" - -#: src/config/SSSDConfig.py:65 -msgid "" -"The list of shells that will be vetoed, and replaced with the fallback shell" -msgstr "" - -#: src/config/SSSDConfig.py:66 -msgid "" -"If a shell stored in central directory is allowed but not available, use " -"this fallback" -msgstr "" - -#: src/config/SSSDConfig.py:69 -msgid "How long to allow cached logins between online logins (days)" -msgstr "" - -#: src/config/SSSDConfig.py:70 -msgid "How many failed logins attempts are allowed when offline" -msgstr "" - -#: src/config/SSSDConfig.py:71 -msgid "" -"How long (minutes) to deny login after offline_failed_login_attempts has " -"been reached" -msgstr "" - -#: src/config/SSSDConfig.py:72 -msgid "What kind of messages are displayed to the user during authentication" -msgstr "" - -#: src/config/SSSDConfig.py:73 -msgid "How many seconds to keep identity information cached for PAM requests" -msgstr "" - -#: src/config/SSSDConfig.py:74 -msgid "How many days before password expiration a warning should be displayed" -msgstr "" - -#: src/config/SSSDConfig.py:77 -msgid "Whether to evaluate the time-based attributes in sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:78 -msgid "" -"How many seconds to keep sudorules cached before asking the provider again" -msgstr "" - -#: src/config/SSSDConfig.py:84 -msgid "Identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:85 -msgid "Authentication provider" -msgstr "" - -#: src/config/SSSDConfig.py:86 -msgid "Access control provider" -msgstr "" - -#: src/config/SSSDConfig.py:87 -msgid "Password change provider" -msgstr "" - -#: src/config/SSSDConfig.py:88 -msgid "SUDO provider" -msgstr "" - -#: src/config/SSSDConfig.py:89 -msgid "Autofs provider" -msgstr "" - -#: src/config/SSSDConfig.py:90 -msgid "Session-loading provider" -msgstr "" - -#: src/config/SSSDConfig.py:91 -msgid "Host identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:94 -msgid "Minimum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:95 -msgid "Maximum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:96 -msgid "Enable enumerating all users/groups" -msgstr "" - -#: src/config/SSSDConfig.py:97 -msgid "Cache credentials for offline login" -msgstr "" - -#: src/config/SSSDConfig.py:98 -msgid "Store password hashes" -msgstr "" - -#: src/config/SSSDConfig.py:99 -msgid "Display users/groups in fully-qualified form" -msgstr "" - -#: src/config/SSSDConfig.py:100 src/config/SSSDConfig.py:107 -#: src/config/SSSDConfig.py:108 src/config/SSSDConfig.py:109 -#: src/config/SSSDConfig.py:110 src/config/SSSDConfig.py:111 -msgid "Entry cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:101 -msgid "" -"Restrict or prefer a specific address family when performing DNS lookups" -msgstr "" - -#: src/config/SSSDConfig.py:102 -msgid "How long to keep cached entries after last successful login (days)" -msgstr "" - -#: src/config/SSSDConfig.py:103 -msgid "How long to wait for replies from DNS when resolving servers (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:104 -msgid "The domain part of service discovery DNS query" -msgstr "" - -#: src/config/SSSDConfig.py:105 -msgid "Override GID value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:106 -msgid "Treat usernames as case sensitive" -msgstr "" - -#: src/config/SSSDConfig.py:114 -msgid "IPA domain" -msgstr "" - -#: src/config/SSSDConfig.py:115 -msgid "IPA server address" -msgstr "" - -#: src/config/SSSDConfig.py:116 -msgid "IPA client hostname" -msgstr "" - -#: src/config/SSSDConfig.py:117 -msgid "Whether to automatically update the client's DNS entry in FreeIPA" -msgstr "" - -#: src/config/SSSDConfig.py:118 -msgid "The interface whose IP should be used for dynamic DNS updates" -msgstr "" - -#: src/config/SSSDConfig.py:119 -msgid "Search base for HBAC related objects" -msgstr "" - -#: src/config/SSSDConfig.py:120 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server" -msgstr "" - -#: src/config/SSSDConfig.py:121 -msgid "If DENY rules are present, either DENY_ALL or IGNORE" -msgstr "" - -#: src/config/SSSDConfig.py:122 -msgid "If set to false, host argument given by PAM will be ignored" -msgstr "" - -#: src/config/SSSDConfig.py:123 -msgid "The automounter location this IPA client is using" -msgstr "" - -#: src/config/SSSDConfig.py:126 src/config/SSSDConfig.py:127 -msgid "Kerberos server address" -msgstr "" - -#: src/config/SSSDConfig.py:128 -msgid "Kerberos realm" -msgstr "" - -#: src/config/SSSDConfig.py:129 -msgid "Authentication timeout" -msgstr "" - -#: src/config/SSSDConfig.py:132 -msgid "Directory to store credential caches" -msgstr "" - -#: src/config/SSSDConfig.py:133 -msgid "Location of the user's credential cache" -msgstr "" - -#: src/config/SSSDConfig.py:134 -msgid "Location of the keytab to validate credentials" -msgstr "" - -#: src/config/SSSDConfig.py:135 -msgid "Enable credential validation" -msgstr "" - -#: src/config/SSSDConfig.py:136 -msgid "Store password if offline for later online authentication" -msgstr "" - -#: src/config/SSSDConfig.py:137 -msgid "Renewable lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:138 -msgid "Lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:139 -msgid "Time between two checks for renewal" -msgstr "" - -#: src/config/SSSDConfig.py:140 -msgid "Enables FAST" -msgstr "" - -#: src/config/SSSDConfig.py:141 -msgid "Selects the principal to use for FAST" -msgstr "" - -#: src/config/SSSDConfig.py:142 -msgid "Enables principal canonicalization" -msgstr "" - -#: src/config/SSSDConfig.py:145 -msgid "Server where the change password service is running if not on the KDC" -msgstr "" - -#: src/config/SSSDConfig.py:148 -msgid "ldap_uri, The URI of the LDAP server" -msgstr "" - -#: src/config/SSSDConfig.py:149 -msgid "The default base DN" -msgstr "" - -#: src/config/SSSDConfig.py:150 -msgid "The Schema Type in use on the LDAP server, rfc2307" -msgstr "" - -#: src/config/SSSDConfig.py:151 -msgid "The default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:152 -msgid "The type of the authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:153 -msgid "The authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:154 -msgid "Length of time to attempt connection" -msgstr "" - -#: src/config/SSSDConfig.py:155 -msgid "Length of time to attempt synchronous LDAP operations" -msgstr "" - -#: src/config/SSSDConfig.py:156 -msgid "Length of time between attempts to reconnect while offline" -msgstr "" - -#: src/config/SSSDConfig.py:157 -msgid "Use only the upper case for realm names" -msgstr "" - -#: src/config/SSSDConfig.py:158 -msgid "File that contains CA certificates" -msgstr "" - -#: src/config/SSSDConfig.py:159 -msgid "Path to CA certificate directory" -msgstr "" - -#: src/config/SSSDConfig.py:160 -msgid "File that contains the client certificate" -msgstr "" - -#: src/config/SSSDConfig.py:161 -msgid "File that contains the client key" -msgstr "" - -#: src/config/SSSDConfig.py:162 -msgid "List of possible ciphers suites" -msgstr "" - -#: src/config/SSSDConfig.py:163 -msgid "Require TLS certificate verification" -msgstr "" - -#: src/config/SSSDConfig.py:164 -msgid "Specify the sasl mechanism to use" -msgstr "" - -#: src/config/SSSDConfig.py:165 -msgid "Specify the sasl authorization id to use" -msgstr "" - -#: src/config/SSSDConfig.py:166 -msgid "Specify the sasl authorization realm to use" -msgstr "" - -#: src/config/SSSDConfig.py:167 -msgid "Specify the minimal SSF for LDAP sasl authorization" -msgstr "" - -#: src/config/SSSDConfig.py:168 -msgid "Kerberos service keytab" -msgstr "" - -#: src/config/SSSDConfig.py:169 -msgid "Use Kerberos auth for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:170 -msgid "Follow LDAP referrals" -msgstr "" - -#: src/config/SSSDConfig.py:171 -msgid "Lifetime of TGT for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:172 -msgid "How to dereference aliases" -msgstr "" - -#: src/config/SSSDConfig.py:173 -msgid "Service name for DNS service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:174 -msgid "The number of records to retrieve in a single LDAP query" -msgstr "" - -#: src/config/SSSDConfig.py:175 -msgid "The number of members that must be missing to trigger a full deref" -msgstr "" - -#: src/config/SSSDConfig.py:176 -msgid "" -"Whether the LDAP library should perform a reverse lookup to canonicalize the " -"host name during a SASL bind" -msgstr "" - -#: src/config/SSSDConfig.py:178 -msgid "entryUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:179 -msgid "lastUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:181 -msgid "How long to retain a connection to the LDAP server before disconnecting" -msgstr "" - -#: src/config/SSSDConfig.py:183 -msgid "Disable the LDAP paging control" -msgstr "" - -#: src/config/SSSDConfig.py:186 -msgid "Length of time to wait for a search request" -msgstr "" - -#: src/config/SSSDConfig.py:187 -msgid "Length of time to wait for a enumeration request" -msgstr "" - -#: src/config/SSSDConfig.py:188 -msgid "Length of time between enumeration updates" -msgstr "" - -#: src/config/SSSDConfig.py:189 -msgid "Length of time between cache cleanups" -msgstr "" - -#: src/config/SSSDConfig.py:190 -msgid "Require TLS for ID lookups" -msgstr "" - -#: src/config/SSSDConfig.py:191 -msgid "Base DN for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:192 -msgid "Scope of user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:193 -msgid "Filter for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:194 -msgid "Objectclass for users" -msgstr "" - -#: src/config/SSSDConfig.py:195 -msgid "Username attribute" -msgstr "" - -#: src/config/SSSDConfig.py:197 -msgid "UID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:198 -msgid "Primary GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:199 -msgid "GECOS attribute" -msgstr "" - -#: src/config/SSSDConfig.py:200 -msgid "Home directory attribute" -msgstr "" - -#: src/config/SSSDConfig.py:201 -msgid "Shell attribute" -msgstr "" - -#: src/config/SSSDConfig.py:202 -msgid "UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:203 -msgid "User principal attribute (for Kerberos)" -msgstr "" - -#: src/config/SSSDConfig.py:204 -msgid "Full Name" -msgstr "" - -#: src/config/SSSDConfig.py:205 -msgid "memberOf attribute" -msgstr "" - -#: src/config/SSSDConfig.py:206 -msgid "Modification time attribute" -msgstr "" - -#: src/config/SSSDConfig.py:208 -msgid "shadowLastChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:209 -msgid "shadowMin attribute" -msgstr "" - -#: src/config/SSSDConfig.py:210 -msgid "shadowMax attribute" -msgstr "" - -#: src/config/SSSDConfig.py:211 -msgid "shadowWarning attribute" -msgstr "" - -#: src/config/SSSDConfig.py:212 -msgid "shadowInactive attribute" -msgstr "" - -#: src/config/SSSDConfig.py:213 -msgid "shadowExpire attribute" -msgstr "" - -#: src/config/SSSDConfig.py:214 -msgid "shadowFlag attribute" -msgstr "" - -#: src/config/SSSDConfig.py:215 -msgid "Attribute listing authorized PAM services" -msgstr "" - -#: src/config/SSSDConfig.py:216 -msgid "Attribute listing authorized server hosts" -msgstr "" - -#: src/config/SSSDConfig.py:217 -msgid "krbLastPwdChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:218 -msgid "krbPasswordExpiration attribute" -msgstr "" - -#: src/config/SSSDConfig.py:219 -msgid "Attribute indicating that server side password policies are active" -msgstr "" - -#: src/config/SSSDConfig.py:220 -msgid "accountExpires attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:221 -msgid "userAccountControl attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:222 -msgid "nsAccountLock attribute" -msgstr "" - -#: src/config/SSSDConfig.py:223 -msgid "loginDisabled attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:224 -msgid "loginExpirationTime attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:225 -msgid "loginAllowedTimeMap attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:226 -msgid "SSH public key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:228 -msgid "Base DN for group lookups" -msgstr "" - -#: src/config/SSSDConfig.py:231 -msgid "Objectclass for groups" -msgstr "" - -#: src/config/SSSDConfig.py:232 -msgid "Group name" -msgstr "" - -#: src/config/SSSDConfig.py:233 -msgid "Group password" -msgstr "" - -#: src/config/SSSDConfig.py:234 -msgid "GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:235 -msgid "Group member attribute" -msgstr "" - -#: src/config/SSSDConfig.py:236 -msgid "Group UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:237 -msgid "Modification time attribute for groups" -msgstr "" - -#: src/config/SSSDConfig.py:239 -msgid "Maximum nesting level SSSd will follow" -msgstr "" - -#: src/config/SSSDConfig.py:241 -msgid "Base DN for netgroup lookups" -msgstr "" - -#: src/config/SSSDConfig.py:242 -msgid "Objectclass for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:243 -msgid "Netgroup name" -msgstr "" - -#: src/config/SSSDConfig.py:244 -msgid "Netgroups members attribute" -msgstr "" - -#: src/config/SSSDConfig.py:245 -msgid "Netgroup triple attribute" -msgstr "" - -#: src/config/SSSDConfig.py:246 -msgid "Netgroup UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:247 -msgid "Modification time attribute for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:249 -msgid "Base DN for service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:250 -msgid "Objectclass for services" -msgstr "" - -#: src/config/SSSDConfig.py:251 -msgid "Service name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:252 -msgid "Service port attribute" -msgstr "" - -#: src/config/SSSDConfig.py:253 -msgid "Service protocol attribute" -msgstr "" - -#: src/config/SSSDConfig.py:257 -msgid "Policy to evaluate the password expiration" -msgstr "" - -#: src/config/SSSDConfig.py:260 -msgid "LDAP filter to determine access privileges" -msgstr "" - -#: src/config/SSSDConfig.py:261 -msgid "Which attributes shall be used to evaluate if an account is expired" -msgstr "" - -#: src/config/SSSDConfig.py:262 -msgid "Which rules should be used to evaluate access control" -msgstr "" - -#: src/config/SSSDConfig.py:265 -msgid "URI of an LDAP server where password changes are allowed" -msgstr "" - -#: src/config/SSSDConfig.py:266 -msgid "DNS service name for LDAP password change server" -msgstr "" - -#: src/config/SSSDConfig.py:269 -msgid "Base DN for sudo rules lookups" -msgstr "" - -#: src/config/SSSDConfig.py:270 -msgid "Enable periodical update of all sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:271 -msgid "Length of time between rules updates" -msgstr "" - -#: src/config/SSSDConfig.py:272 -msgid "Object class for sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:273 -msgid "Sudo rule name" -msgstr "" - -#: src/config/SSSDConfig.py:274 -msgid "Sudo rule command attribute" -msgstr "" - -#: src/config/SSSDConfig.py:275 -msgid "Sudo rule host attribute" -msgstr "" - -#: src/config/SSSDConfig.py:276 -msgid "Sudo rule user attribute" -msgstr "" - -#: src/config/SSSDConfig.py:277 -msgid "Sudo rule option attribute" -msgstr "" - -#: src/config/SSSDConfig.py:278 -msgid "Sudo rule runasuser attribute" -msgstr "" - -#: src/config/SSSDConfig.py:279 -msgid "Sudo rule runasgroup attribute" -msgstr "" - -#: src/config/SSSDConfig.py:280 -msgid "Sudo rule notbefore attribute" -msgstr "" - -#: src/config/SSSDConfig.py:281 -msgid "Sudo rule notafter attribute" -msgstr "" - -#: src/config/SSSDConfig.py:282 -msgid "Sudo rule order attribute" -msgstr "" - -#: src/config/SSSDConfig.py:285 -msgid "Object class for automounter maps" -msgstr "" - -#: src/config/SSSDConfig.py:286 -msgid "Automounter map name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:287 -msgid "Object class for automounter map entries" -msgstr "" - -#: src/config/SSSDConfig.py:288 -msgid "Automounter map entry key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:289 -msgid "Automounter map entry value attribute" -msgstr "" - -#: src/config/SSSDConfig.py:290 -msgid "Base DN for automounter map lookups" -msgstr "" - -#: src/config/SSSDConfig.py:293 -msgid "Comma separated list of allowed users" -msgstr "" - -#: src/config/SSSDConfig.py:294 -msgid "Comma separated list of prohibited users" -msgstr "" - -#: src/config/SSSDConfig.py:297 -msgid "Default shell, /bin/bash" -msgstr "" - -#: src/config/SSSDConfig.py:298 -msgid "Base for home directories" -msgstr "" - -#: src/config/SSSDConfig.py:301 -msgid "The name of the NSS library to use" -msgstr "" - -#: src/config/SSSDConfig.py:304 -msgid "PAM stack to use" -msgstr "" - -#: src/monitor/monitor.c:2379 -msgid "Become a daemon (default)" -msgstr "" - -#: src/monitor/monitor.c:2381 -msgid "Run interactive (not a daemon)" -msgstr "" - -#: src/monitor/monitor.c:2383 src/tools/sss_debuglevel.c:77 -msgid "Specify a non-default config file" -msgstr "" - -#: src/monitor/monitor.c:2385 -msgid "Print version number and exit" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1575 src/providers/ldap/ldap_child.c:381 -#: src/util/util.h:89 -msgid "Debug level" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1577 src/providers/ldap/ldap_child.c:383 -#: src/util/util.h:93 -msgid "Add debug timestamps" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1579 src/providers/ldap/ldap_child.c:385 -#: src/util/util.h:95 -msgid "Show timestamps with microseconds" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1581 src/providers/ldap/ldap_child.c:387 -msgid "An open file descriptor for the debug logs" -msgstr "" - -#: src/providers/data_provider_be.c:1938 -msgid "Domain of the information provider (mandatory)" -msgstr "" - -#: src/sss_client/common.c:878 -msgid "Privileged socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:881 -msgid "Public socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:884 -msgid "Unexpected format of the server credential message." -msgstr "" - -#: src/sss_client/common.c:887 -msgid "SSSD is not run by root." -msgstr "" - -#: src/sss_client/common.c:892 -msgid "An error occurred, but no description can be found." -msgstr "" - -#: src/sss_client/common.c:898 -msgid "Unexpected error while looking for an error description" -msgstr "" - -#: src/sss_client/pam_sss.c:378 -msgid "Passwords do not match" -msgstr "" - -#: src/sss_client/pam_sss.c:571 -msgid "Password reset by root is not supported." -msgstr "" - -#: src/sss_client/pam_sss.c:612 -msgid "Authenticated with cached credentials" -msgstr "" - -#: src/sss_client/pam_sss.c:613 -msgid ", your cached password will expire at: " -msgstr "" - -#: src/sss_client/pam_sss.c:643 -#, c-format -msgid "Your password has expired. You have %d grace login(s) remaining." -msgstr "" - -#: src/sss_client/pam_sss.c:689 -#, c-format -msgid "Your password will expire in %d %s." -msgstr "" - -#: src/sss_client/pam_sss.c:738 -msgid "Authentication is denied until: " -msgstr "" - -#: src/sss_client/pam_sss.c:759 -msgid "System is offline, password change not possible" -msgstr "" - -#: src/sss_client/pam_sss.c:789 src/sss_client/pam_sss.c:802 -msgid "Password change failed. " -msgstr "" - -#: src/sss_client/pam_sss.c:792 src/sss_client/pam_sss.c:803 -msgid "Server message: " -msgstr "" - -#: src/sss_client/pam_sss.c:1286 -msgid "New Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1287 -msgid "Reenter new Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1373 -msgid "Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1405 -msgid "Current Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1552 -msgid "Password expired. Change your password now." -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:40 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:211 src/tools/sss_useradd.c:48 -#: src/tools/sss_groupadd.c:41 src/tools/sss_groupdel.c:43 -#: src/tools/sss_groupmod.c:42 src/tools/sss_groupshow.c:615 -#: src/tools/sss_userdel.c:131 src/tools/sss_usermod.c:47 -#: src/tools/sss_cache.c:260 src/tools/sss_debuglevel.c:75 -msgid "The debug level to run with" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:42 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:215 -msgid "The SSSD domain to use" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:58 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:229 src/tools/sss_useradd.c:71 -#: src/tools/sss_groupadd.c:56 src/tools/sss_groupdel.c:52 -#: src/tools/sss_groupmod.c:63 src/tools/sss_groupshow.c:626 -#: src/tools/sss_userdel.c:148 src/tools/sss_usermod.c:72 -#: src/tools/sss_cache.c:281 -msgid "Error setting the locale\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:65 -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:91 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:236 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:269 -msgid "Not enough memory\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:84 -msgid "User not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:104 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:282 -msgid "Error looking up public keys\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:94 -msgid "Failed to open a socket\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:104 -msgid "Failed to connect to the server\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:195 -msgid "Failed to execute proxy command\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:213 -msgid "The port to use to connect to the host" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:255 -msgid "Host not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:261 -msgid "The path to the proxy command must be absolute\n" -msgstr "" - -#: src/tools/sss_useradd.c:49 src/tools/sss_usermod.c:48 -msgid "The UID of the user" -msgstr "" - -#: src/tools/sss_useradd.c:50 src/tools/sss_usermod.c:50 -msgid "The comment string" -msgstr "" - -#: src/tools/sss_useradd.c:51 src/tools/sss_usermod.c:51 -msgid "Home directory" -msgstr "" - -#: src/tools/sss_useradd.c:52 src/tools/sss_usermod.c:52 -msgid "Login shell" -msgstr "" - -#: src/tools/sss_useradd.c:53 -msgid "Groups" -msgstr "" - -#: src/tools/sss_useradd.c:54 -msgid "Create user's directory if it does not exist" -msgstr "" - -#: src/tools/sss_useradd.c:55 -msgid "Never create user's directory, overrides config" -msgstr "" - -#: src/tools/sss_useradd.c:56 -msgid "Specify an alternative skeleton directory" -msgstr "" - -#: src/tools/sss_useradd.c:57 src/tools/sss_usermod.c:57 -msgid "The SELinux user for user's login" -msgstr "" - -#: src/tools/sss_useradd.c:84 src/tools/sss_groupmod.c:76 -#: src/tools/sss_usermod.c:85 -msgid "Specify group to add to\n" -msgstr "" - -#: src/tools/sss_useradd.c:108 -msgid "Specify user to add\n" -msgstr "" - -#: src/tools/sss_useradd.c:117 src/tools/sss_groupadd.c:82 -#: src/tools/sss_groupdel.c:77 src/tools/sss_groupmod.c:109 -#: src/tools/sss_groupshow.c:659 src/tools/sss_userdel.c:193 -#: src/tools/sss_usermod.c:126 -msgid "Error initializing the tools - no local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:119 src/tools/sss_groupadd.c:84 -#: src/tools/sss_groupdel.c:79 src/tools/sss_groupmod.c:111 -#: src/tools/sss_groupshow.c:661 src/tools/sss_userdel.c:195 -#: src/tools/sss_usermod.c:128 -msgid "Error initializing the tools\n" -msgstr "" - -#: src/tools/sss_useradd.c:128 src/tools/sss_groupadd.c:93 -#: src/tools/sss_groupdel.c:88 src/tools/sss_groupmod.c:119 -#: src/tools/sss_groupshow.c:670 src/tools/sss_userdel.c:204 -#: src/tools/sss_usermod.c:137 -msgid "Invalid domain specified in FQDN\n" -msgstr "" - -#: src/tools/sss_useradd.c:137 src/tools/sss_groupmod.c:139 -#: src/tools/sss_groupmod.c:166 src/tools/sss_usermod.c:160 -#: src/tools/sss_usermod.c:187 -msgid "Internal error while parsing parameters\n" -msgstr "" - -#: src/tools/sss_useradd.c:145 src/tools/sss_usermod.c:168 -#: src/tools/sss_usermod.c:195 -msgid "Groups must be in the same domain as user\n" -msgstr "" - -#: src/tools/sss_useradd.c:153 -#, c-format -msgid "Cannot find group %s in local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:168 src/tools/sss_userdel.c:214 -msgid "Cannot set default values\n" -msgstr "" - -#: src/tools/sss_useradd.c:175 src/tools/sss_usermod.c:151 -msgid "The selected UID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_useradd.c:202 src/tools/sss_usermod.c:236 -msgid "Cannot set SELinux login context\n" -msgstr "" - -#: src/tools/sss_useradd.c:217 -msgid "Cannot get info about the user\n" -msgstr "" - -#: src/tools/sss_useradd.c:229 -msgid "User's home directory already exists, not copying data from skeldir\n" -msgstr "" - -#: src/tools/sss_useradd.c:232 -#, c-format -msgid "Cannot create user's home directory: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:243 -#, c-format -msgid "Cannot create user's mail spool: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:255 -msgid "Could not allocate ID for the user - domain full?\n" -msgstr "" - -#: src/tools/sss_useradd.c:259 -msgid "A user or group with the same name or ID already exists\n" -msgstr "" - -#: src/tools/sss_useradd.c:265 -msgid "Transaction error. Could not add user.\n" -msgstr "" - -#: src/tools/sss_groupadd.c:43 src/tools/sss_groupmod.c:48 -msgid "The GID of the group" -msgstr "" - -#: src/tools/sss_groupadd.c:73 -msgid "Specify group to add\n" -msgstr "" - -#: src/tools/sss_groupadd.c:102 src/tools/sss_groupmod.c:190 -msgid "The selected GID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_groupadd.c:127 -msgid "Could not allocate ID for the group - domain full?\n" -msgstr "" - -#: src/tools/sss_groupadd.c:131 -msgid "A group with the same name or GID already exists\n" -msgstr "" - -#: src/tools/sss_groupadd.c:136 -msgid "Transaction error. Could not add group.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:68 -msgid "Specify group to delete\n" -msgstr "" - -#: src/tools/sss_groupdel.c:101 -#, c-format -msgid "Group %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_groupdel.c:115 -msgid "" -"No such group in local domain. Removing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:120 -msgid "Internal error. Could not remove group.\n" -msgstr "" - -#: src/tools/sss_groupmod.c:44 -msgid "Groups to add this group to" -msgstr "" - -#: src/tools/sss_groupmod.c:46 -msgid "Groups to remove this group from" -msgstr "" - -#: src/tools/sss_groupmod.c:84 src/tools/sss_usermod.c:93 -msgid "Specify group to remove from\n" -msgstr "" - -#: src/tools/sss_groupmod.c:98 -msgid "Specify group to modify\n" -msgstr "" - -#: src/tools/sss_groupmod.c:126 -msgid "" -"Cannot find group in local domain, modifying groups is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_groupmod.c:147 src/tools/sss_groupmod.c:174 -msgid "Member groups must be in the same domain as parent group\n" -msgstr "" - -#: src/tools/sss_groupmod.c:155 src/tools/sss_groupmod.c:182 -#: src/tools/sss_usermod.c:176 src/tools/sss_usermod.c:203 -#, c-format -msgid "" -"Cannot find group %s in local domain, only groups in local domain are " -"allowed\n" -msgstr "" - -#: src/tools/sss_groupmod.c:216 -msgid "Could not modify group - check if member group names are correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:220 -msgid "Could not modify group - check if groupname is correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:224 -msgid "Transaction error. Could not modify group.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:562 -#, c-format -msgid "%s%sGroup: %s\n" -msgstr "" - -#: src/tools/sss_groupshow.c:563 -msgid "Magic Private " -msgstr "" - -#: src/tools/sss_groupshow.c:565 -#, c-format -msgid "%sGID number: %d\n" -msgstr "" - -#: src/tools/sss_groupshow.c:567 -#, c-format -msgid "%sMember users: " -msgstr "" - -#: src/tools/sss_groupshow.c:574 -#, c-format -msgid "" -"\n" -"%sIs a member of: " -msgstr "" - -#: src/tools/sss_groupshow.c:581 -#, c-format -msgid "" -"\n" -"%sMember groups: " -msgstr "" - -#: src/tools/sss_groupshow.c:617 -msgid "Print indirect group members recursively" -msgstr "" - -#: src/tools/sss_groupshow.c:650 -msgid "Specify group to show\n" -msgstr "" - -#: src/tools/sss_groupshow.c:689 -msgid "" -"No such group in local domain. Printing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:694 -msgid "Internal error. Could not print group.\n" -msgstr "" - -#: src/tools/sss_userdel.c:133 -msgid "Remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:135 -msgid "Do not remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:137 -msgid "Force removal of files not owned by the user" -msgstr "" - -#: src/tools/sss_userdel.c:139 -msgid "Kill users' processes before removing him" -msgstr "" - -#: src/tools/sss_userdel.c:184 -msgid "Specify user to delete\n" -msgstr "" - -#: src/tools/sss_userdel.c:230 -#, c-format -msgid "User %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_userdel.c:255 -msgid "Cannot reset SELinux login context\n" -msgstr "" - -#: src/tools/sss_userdel.c:267 -#, c-format -msgid "WARNING: The user (uid %lu) was still logged in when deleted.\n" -msgstr "" - -#: src/tools/sss_userdel.c:272 -msgid "Cannot determine if the user was logged in on this platform" -msgstr "" - -#: src/tools/sss_userdel.c:277 -msgid "Error while checking if the user was logged in\n" -msgstr "" - -#: src/tools/sss_userdel.c:284 -#, c-format -msgid "The post-delete command failed: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:296 -msgid "Not removing home dir - not owned by user\n" -msgstr "" - -#: src/tools/sss_userdel.c:298 -#, c-format -msgid "Cannot remove homedir: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:309 -msgid "" -"No such user in local domain. Removing users only allowed in local domain.\n" -msgstr "" - -#: src/tools/sss_userdel.c:314 -msgid "Internal error. Could not remove user.\n" -msgstr "" - -#: src/tools/sss_usermod.c:49 -msgid "The GID of the user" -msgstr "" - -#: src/tools/sss_usermod.c:53 -msgid "Groups to add this user to" -msgstr "" - -#: src/tools/sss_usermod.c:54 -msgid "Groups to remove this user from" -msgstr "" - -#: src/tools/sss_usermod.c:55 -msgid "Lock the account" -msgstr "" - -#: src/tools/sss_usermod.c:56 -msgid "Unlock the account" -msgstr "" - -#: src/tools/sss_usermod.c:117 -msgid "Specify user to modify\n" -msgstr "" - -#: src/tools/sss_usermod.c:144 -msgid "" -"Cannot find user in local domain, modifying users is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_usermod.c:246 -msgid "Could not modify user - check if group names are correct\n" -msgstr "" - -#: src/tools/sss_usermod.c:250 -msgid "Could not modify user - user already member of groups?\n" -msgstr "" - -#: src/tools/sss_usermod.c:254 -msgid "Transaction error. Could not modify user.\n" -msgstr "" - -#: src/tools/sss_cache.c:132 -#, c-format -msgid "Couldn't invalidate %s" -msgstr "" - -#: src/tools/sss_cache.c:138 -#, c-format -msgid "Couldn't invalidate %s %s" -msgstr "" - -#: src/tools/sss_cache.c:262 -msgid "Invalidate particular user" -msgstr "" - -#: src/tools/sss_cache.c:264 -msgid "Invalidate all users" -msgstr "" - -#: src/tools/sss_cache.c:266 -msgid "Invalidate particular group" -msgstr "" - -#: src/tools/sss_cache.c:268 -msgid "Invalidate all groups" -msgstr "" - -#: src/tools/sss_cache.c:270 -msgid "Invalidate particular netgroup" -msgstr "" - -#: src/tools/sss_cache.c:272 -msgid "Invalidate all netgroups" -msgstr "" - -#: src/tools/sss_cache.c:274 -msgid "Only invalidate entries from a particular domain" -msgstr "" - -#: src/tools/sss_debuglevel.c:43 -msgid "\n" -msgstr "" - -#: src/tools/sss_debuglevel.c:102 -msgid "Specify debug level you want to set\n" -msgstr "" - -#: src/tools/tools_util.c:286 -msgid "Out of memory\n" -msgstr "" - -#: src/tools/tools_util.h:40 -#, c-format -msgid "%s must be run as root\n" -msgstr "" - -#: src/util/util.h:91 -msgid "Send the debug output to files instead of stderr" -msgstr "" diff --git a/po/nb.po b/po/nb.po deleted file mode 100644 index 30d448017..000000000 --- a/po/nb.po +++ /dev/null @@ -1,1462 +0,0 @@ -# SOME DESCRIPTIVE TITLE. -# Copyright (C) YEAR Red Hat, Inc. -# This file is distributed under the same license as the PACKAGE package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@lists.fedorahosted.org\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-11-30 04:10+0000\n" -"Last-Translator: FULL NAME \n" -"Language-Team: Norwegian Bokmål \n" -"Language: nb\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=2; plural=(n != 1)\n" - -#: src/config/SSSDConfig.py:39 -msgid "Set the verbosity of the debug logging" -msgstr "" - -#: src/config/SSSDConfig.py:40 -msgid "Include timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:41 -msgid "Include microseconds in timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:42 -msgid "Write debug messages to logfiles" -msgstr "" - -#: src/config/SSSDConfig.py:43 -msgid "Ping timeout before restarting service" -msgstr "" - -#: src/config/SSSDConfig.py:44 -msgid "Command to start service" -msgstr "" - -#: src/config/SSSDConfig.py:45 -msgid "Number of times to attempt connection to Data Providers" -msgstr "" - -#: src/config/SSSDConfig.py:48 -msgid "SSSD Services to start" -msgstr "" - -#: src/config/SSSDConfig.py:49 -msgid "SSSD Domains to start" -msgstr "" - -#: src/config/SSSDConfig.py:50 -msgid "Timeout for messages sent over the SBUS" -msgstr "" - -#: src/config/SSSDConfig.py:51 -msgid "Regex to parse username and domain" -msgstr "" - -#: src/config/SSSDConfig.py:52 -msgid "Printf-compatible format for displaying fully-qualified names" -msgstr "" - -#: src/config/SSSDConfig.py:53 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#: src/config/SSSDConfig.py:56 -msgid "Enumeration cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:57 -msgid "Entry cache background update timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:58 src/config/SSSDConfig.py:81 -msgid "Negative cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:59 -msgid "Users that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:60 -msgid "Groups that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:61 -msgid "Should filtered users appear in groups" -msgstr "" - -#: src/config/SSSDConfig.py:62 -msgid "The value of the password field the NSS provider should return" -msgstr "" - -#: src/config/SSSDConfig.py:63 -msgid "Override homedir value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:64 -msgid "The list of shells users are allowed to log in with" -msgstr "" - -#: src/config/SSSDConfig.py:65 -msgid "" -"The list of shells that will be vetoed, and replaced with the fallback shell" -msgstr "" - -#: src/config/SSSDConfig.py:66 -msgid "" -"If a shell stored in central directory is allowed but not available, use " -"this fallback" -msgstr "" - -#: src/config/SSSDConfig.py:69 -msgid "How long to allow cached logins between online logins (days)" -msgstr "" - -#: src/config/SSSDConfig.py:70 -msgid "How many failed logins attempts are allowed when offline" -msgstr "" - -#: src/config/SSSDConfig.py:71 -msgid "" -"How long (minutes) to deny login after offline_failed_login_attempts has " -"been reached" -msgstr "" - -#: src/config/SSSDConfig.py:72 -msgid "What kind of messages are displayed to the user during authentication" -msgstr "" - -#: src/config/SSSDConfig.py:73 -msgid "How many seconds to keep identity information cached for PAM requests" -msgstr "" - -#: src/config/SSSDConfig.py:74 -msgid "How many days before password expiration a warning should be displayed" -msgstr "" - -#: src/config/SSSDConfig.py:77 -msgid "Whether to evaluate the time-based attributes in sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:78 -msgid "" -"How many seconds to keep sudorules cached before asking the provider again" -msgstr "" - -#: src/config/SSSDConfig.py:84 -msgid "Identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:85 -msgid "Authentication provider" -msgstr "" - -#: src/config/SSSDConfig.py:86 -msgid "Access control provider" -msgstr "" - -#: src/config/SSSDConfig.py:87 -msgid "Password change provider" -msgstr "" - -#: src/config/SSSDConfig.py:88 -msgid "SUDO provider" -msgstr "" - -#: src/config/SSSDConfig.py:89 -msgid "Autofs provider" -msgstr "" - -#: src/config/SSSDConfig.py:90 -msgid "Session-loading provider" -msgstr "" - -#: src/config/SSSDConfig.py:91 -msgid "Host identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:94 -msgid "Minimum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:95 -msgid "Maximum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:96 -msgid "Enable enumerating all users/groups" -msgstr "" - -#: src/config/SSSDConfig.py:97 -msgid "Cache credentials for offline login" -msgstr "" - -#: src/config/SSSDConfig.py:98 -msgid "Store password hashes" -msgstr "" - -#: src/config/SSSDConfig.py:99 -msgid "Display users/groups in fully-qualified form" -msgstr "" - -#: src/config/SSSDConfig.py:100 src/config/SSSDConfig.py:107 -#: src/config/SSSDConfig.py:108 src/config/SSSDConfig.py:109 -#: src/config/SSSDConfig.py:110 src/config/SSSDConfig.py:111 -msgid "Entry cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:101 -msgid "" -"Restrict or prefer a specific address family when performing DNS lookups" -msgstr "" - -#: src/config/SSSDConfig.py:102 -msgid "How long to keep cached entries after last successful login (days)" -msgstr "" - -#: src/config/SSSDConfig.py:103 -msgid "How long to wait for replies from DNS when resolving servers (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:104 -msgid "The domain part of service discovery DNS query" -msgstr "" - -#: src/config/SSSDConfig.py:105 -msgid "Override GID value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:106 -msgid "Treat usernames as case sensitive" -msgstr "" - -#: src/config/SSSDConfig.py:114 -msgid "IPA domain" -msgstr "" - -#: src/config/SSSDConfig.py:115 -msgid "IPA server address" -msgstr "" - -#: src/config/SSSDConfig.py:116 -msgid "IPA client hostname" -msgstr "" - -#: src/config/SSSDConfig.py:117 -msgid "Whether to automatically update the client's DNS entry in FreeIPA" -msgstr "" - -#: src/config/SSSDConfig.py:118 -msgid "The interface whose IP should be used for dynamic DNS updates" -msgstr "" - -#: src/config/SSSDConfig.py:119 -msgid "Search base for HBAC related objects" -msgstr "" - -#: src/config/SSSDConfig.py:120 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server" -msgstr "" - -#: src/config/SSSDConfig.py:121 -msgid "If DENY rules are present, either DENY_ALL or IGNORE" -msgstr "" - -#: src/config/SSSDConfig.py:122 -msgid "If set to false, host argument given by PAM will be ignored" -msgstr "" - -#: src/config/SSSDConfig.py:123 -msgid "The automounter location this IPA client is using" -msgstr "" - -#: src/config/SSSDConfig.py:126 src/config/SSSDConfig.py:127 -msgid "Kerberos server address" -msgstr "" - -#: src/config/SSSDConfig.py:128 -msgid "Kerberos realm" -msgstr "" - -#: src/config/SSSDConfig.py:129 -msgid "Authentication timeout" -msgstr "" - -#: src/config/SSSDConfig.py:132 -msgid "Directory to store credential caches" -msgstr "" - -#: src/config/SSSDConfig.py:133 -msgid "Location of the user's credential cache" -msgstr "" - -#: src/config/SSSDConfig.py:134 -msgid "Location of the keytab to validate credentials" -msgstr "" - -#: src/config/SSSDConfig.py:135 -msgid "Enable credential validation" -msgstr "" - -#: src/config/SSSDConfig.py:136 -msgid "Store password if offline for later online authentication" -msgstr "" - -#: src/config/SSSDConfig.py:137 -msgid "Renewable lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:138 -msgid "Lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:139 -msgid "Time between two checks for renewal" -msgstr "" - -#: src/config/SSSDConfig.py:140 -msgid "Enables FAST" -msgstr "" - -#: src/config/SSSDConfig.py:141 -msgid "Selects the principal to use for FAST" -msgstr "" - -#: src/config/SSSDConfig.py:142 -msgid "Enables principal canonicalization" -msgstr "" - -#: src/config/SSSDConfig.py:145 -msgid "Server where the change password service is running if not on the KDC" -msgstr "" - -#: src/config/SSSDConfig.py:148 -msgid "ldap_uri, The URI of the LDAP server" -msgstr "" - -#: src/config/SSSDConfig.py:149 -msgid "The default base DN" -msgstr "" - -#: src/config/SSSDConfig.py:150 -msgid "The Schema Type in use on the LDAP server, rfc2307" -msgstr "" - -#: src/config/SSSDConfig.py:151 -msgid "The default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:152 -msgid "The type of the authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:153 -msgid "The authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:154 -msgid "Length of time to attempt connection" -msgstr "" - -#: src/config/SSSDConfig.py:155 -msgid "Length of time to attempt synchronous LDAP operations" -msgstr "" - -#: src/config/SSSDConfig.py:156 -msgid "Length of time between attempts to reconnect while offline" -msgstr "" - -#: src/config/SSSDConfig.py:157 -msgid "Use only the upper case for realm names" -msgstr "" - -#: src/config/SSSDConfig.py:158 -msgid "File that contains CA certificates" -msgstr "" - -#: src/config/SSSDConfig.py:159 -msgid "Path to CA certificate directory" -msgstr "" - -#: src/config/SSSDConfig.py:160 -msgid "File that contains the client certificate" -msgstr "" - -#: src/config/SSSDConfig.py:161 -msgid "File that contains the client key" -msgstr "" - -#: src/config/SSSDConfig.py:162 -msgid "List of possible ciphers suites" -msgstr "" - -#: src/config/SSSDConfig.py:163 -msgid "Require TLS certificate verification" -msgstr "" - -#: src/config/SSSDConfig.py:164 -msgid "Specify the sasl mechanism to use" -msgstr "" - -#: src/config/SSSDConfig.py:165 -msgid "Specify the sasl authorization id to use" -msgstr "" - -#: src/config/SSSDConfig.py:166 -msgid "Specify the sasl authorization realm to use" -msgstr "" - -#: src/config/SSSDConfig.py:167 -msgid "Specify the minimal SSF for LDAP sasl authorization" -msgstr "" - -#: src/config/SSSDConfig.py:168 -msgid "Kerberos service keytab" -msgstr "" - -#: src/config/SSSDConfig.py:169 -msgid "Use Kerberos auth for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:170 -msgid "Follow LDAP referrals" -msgstr "" - -#: src/config/SSSDConfig.py:171 -msgid "Lifetime of TGT for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:172 -msgid "How to dereference aliases" -msgstr "" - -#: src/config/SSSDConfig.py:173 -msgid "Service name for DNS service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:174 -msgid "The number of records to retrieve in a single LDAP query" -msgstr "" - -#: src/config/SSSDConfig.py:175 -msgid "The number of members that must be missing to trigger a full deref" -msgstr "" - -#: src/config/SSSDConfig.py:176 -msgid "" -"Whether the LDAP library should perform a reverse lookup to canonicalize the " -"host name during a SASL bind" -msgstr "" - -#: src/config/SSSDConfig.py:178 -msgid "entryUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:179 -msgid "lastUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:181 -msgid "How long to retain a connection to the LDAP server before disconnecting" -msgstr "" - -#: src/config/SSSDConfig.py:183 -msgid "Disable the LDAP paging control" -msgstr "" - -#: src/config/SSSDConfig.py:186 -msgid "Length of time to wait for a search request" -msgstr "" - -#: src/config/SSSDConfig.py:187 -msgid "Length of time to wait for a enumeration request" -msgstr "" - -#: src/config/SSSDConfig.py:188 -msgid "Length of time between enumeration updates" -msgstr "" - -#: src/config/SSSDConfig.py:189 -msgid "Length of time between cache cleanups" -msgstr "" - -#: src/config/SSSDConfig.py:190 -msgid "Require TLS for ID lookups" -msgstr "" - -#: src/config/SSSDConfig.py:191 -msgid "Base DN for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:192 -msgid "Scope of user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:193 -msgid "Filter for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:194 -msgid "Objectclass for users" -msgstr "" - -#: src/config/SSSDConfig.py:195 -msgid "Username attribute" -msgstr "" - -#: src/config/SSSDConfig.py:197 -msgid "UID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:198 -msgid "Primary GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:199 -msgid "GECOS attribute" -msgstr "" - -#: src/config/SSSDConfig.py:200 -msgid "Home directory attribute" -msgstr "" - -#: src/config/SSSDConfig.py:201 -msgid "Shell attribute" -msgstr "" - -#: src/config/SSSDConfig.py:202 -msgid "UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:203 -msgid "User principal attribute (for Kerberos)" -msgstr "" - -#: src/config/SSSDConfig.py:204 -msgid "Full Name" -msgstr "" - -#: src/config/SSSDConfig.py:205 -msgid "memberOf attribute" -msgstr "" - -#: src/config/SSSDConfig.py:206 -msgid "Modification time attribute" -msgstr "" - -#: src/config/SSSDConfig.py:208 -msgid "shadowLastChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:209 -msgid "shadowMin attribute" -msgstr "" - -#: src/config/SSSDConfig.py:210 -msgid "shadowMax attribute" -msgstr "" - -#: src/config/SSSDConfig.py:211 -msgid "shadowWarning attribute" -msgstr "" - -#: src/config/SSSDConfig.py:212 -msgid "shadowInactive attribute" -msgstr "" - -#: src/config/SSSDConfig.py:213 -msgid "shadowExpire attribute" -msgstr "" - -#: src/config/SSSDConfig.py:214 -msgid "shadowFlag attribute" -msgstr "" - -#: src/config/SSSDConfig.py:215 -msgid "Attribute listing authorized PAM services" -msgstr "" - -#: src/config/SSSDConfig.py:216 -msgid "Attribute listing authorized server hosts" -msgstr "" - -#: src/config/SSSDConfig.py:217 -msgid "krbLastPwdChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:218 -msgid "krbPasswordExpiration attribute" -msgstr "" - -#: src/config/SSSDConfig.py:219 -msgid "Attribute indicating that server side password policies are active" -msgstr "" - -#: src/config/SSSDConfig.py:220 -msgid "accountExpires attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:221 -msgid "userAccountControl attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:222 -msgid "nsAccountLock attribute" -msgstr "" - -#: src/config/SSSDConfig.py:223 -msgid "loginDisabled attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:224 -msgid "loginExpirationTime attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:225 -msgid "loginAllowedTimeMap attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:226 -msgid "SSH public key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:228 -msgid "Base DN for group lookups" -msgstr "" - -#: src/config/SSSDConfig.py:231 -msgid "Objectclass for groups" -msgstr "" - -#: src/config/SSSDConfig.py:232 -msgid "Group name" -msgstr "" - -#: src/config/SSSDConfig.py:233 -msgid "Group password" -msgstr "" - -#: src/config/SSSDConfig.py:234 -msgid "GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:235 -msgid "Group member attribute" -msgstr "" - -#: src/config/SSSDConfig.py:236 -msgid "Group UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:237 -msgid "Modification time attribute for groups" -msgstr "" - -#: src/config/SSSDConfig.py:239 -msgid "Maximum nesting level SSSd will follow" -msgstr "" - -#: src/config/SSSDConfig.py:241 -msgid "Base DN for netgroup lookups" -msgstr "" - -#: src/config/SSSDConfig.py:242 -msgid "Objectclass for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:243 -msgid "Netgroup name" -msgstr "" - -#: src/config/SSSDConfig.py:244 -msgid "Netgroups members attribute" -msgstr "" - -#: src/config/SSSDConfig.py:245 -msgid "Netgroup triple attribute" -msgstr "" - -#: src/config/SSSDConfig.py:246 -msgid "Netgroup UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:247 -msgid "Modification time attribute for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:249 -msgid "Base DN for service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:250 -msgid "Objectclass for services" -msgstr "" - -#: src/config/SSSDConfig.py:251 -msgid "Service name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:252 -msgid "Service port attribute" -msgstr "" - -#: src/config/SSSDConfig.py:253 -msgid "Service protocol attribute" -msgstr "" - -#: src/config/SSSDConfig.py:257 -msgid "Policy to evaluate the password expiration" -msgstr "" - -#: src/config/SSSDConfig.py:260 -msgid "LDAP filter to determine access privileges" -msgstr "" - -#: src/config/SSSDConfig.py:261 -msgid "Which attributes shall be used to evaluate if an account is expired" -msgstr "" - -#: src/config/SSSDConfig.py:262 -msgid "Which rules should be used to evaluate access control" -msgstr "" - -#: src/config/SSSDConfig.py:265 -msgid "URI of an LDAP server where password changes are allowed" -msgstr "" - -#: src/config/SSSDConfig.py:266 -msgid "DNS service name for LDAP password change server" -msgstr "" - -#: src/config/SSSDConfig.py:269 -msgid "Base DN for sudo rules lookups" -msgstr "" - -#: src/config/SSSDConfig.py:270 -msgid "Enable periodical update of all sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:271 -msgid "Length of time between rules updates" -msgstr "" - -#: src/config/SSSDConfig.py:272 -msgid "Object class for sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:273 -msgid "Sudo rule name" -msgstr "" - -#: src/config/SSSDConfig.py:274 -msgid "Sudo rule command attribute" -msgstr "" - -#: src/config/SSSDConfig.py:275 -msgid "Sudo rule host attribute" -msgstr "" - -#: src/config/SSSDConfig.py:276 -msgid "Sudo rule user attribute" -msgstr "" - -#: src/config/SSSDConfig.py:277 -msgid "Sudo rule option attribute" -msgstr "" - -#: src/config/SSSDConfig.py:278 -msgid "Sudo rule runasuser attribute" -msgstr "" - -#: src/config/SSSDConfig.py:279 -msgid "Sudo rule runasgroup attribute" -msgstr "" - -#: src/config/SSSDConfig.py:280 -msgid "Sudo rule notbefore attribute" -msgstr "" - -#: src/config/SSSDConfig.py:281 -msgid "Sudo rule notafter attribute" -msgstr "" - -#: src/config/SSSDConfig.py:282 -msgid "Sudo rule order attribute" -msgstr "" - -#: src/config/SSSDConfig.py:285 -msgid "Object class for automounter maps" -msgstr "" - -#: src/config/SSSDConfig.py:286 -msgid "Automounter map name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:287 -msgid "Object class for automounter map entries" -msgstr "" - -#: src/config/SSSDConfig.py:288 -msgid "Automounter map entry key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:289 -msgid "Automounter map entry value attribute" -msgstr "" - -#: src/config/SSSDConfig.py:290 -msgid "Base DN for automounter map lookups" -msgstr "" - -#: src/config/SSSDConfig.py:293 -msgid "Comma separated list of allowed users" -msgstr "" - -#: src/config/SSSDConfig.py:294 -msgid "Comma separated list of prohibited users" -msgstr "" - -#: src/config/SSSDConfig.py:297 -msgid "Default shell, /bin/bash" -msgstr "" - -#: src/config/SSSDConfig.py:298 -msgid "Base for home directories" -msgstr "" - -#: src/config/SSSDConfig.py:301 -msgid "The name of the NSS library to use" -msgstr "" - -#: src/config/SSSDConfig.py:304 -msgid "PAM stack to use" -msgstr "" - -#: src/monitor/monitor.c:2379 -msgid "Become a daemon (default)" -msgstr "" - -#: src/monitor/monitor.c:2381 -msgid "Run interactive (not a daemon)" -msgstr "" - -#: src/monitor/monitor.c:2383 src/tools/sss_debuglevel.c:77 -msgid "Specify a non-default config file" -msgstr "" - -#: src/monitor/monitor.c:2385 -msgid "Print version number and exit" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1575 src/providers/ldap/ldap_child.c:381 -#: src/util/util.h:89 -msgid "Debug level" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1577 src/providers/ldap/ldap_child.c:383 -#: src/util/util.h:93 -msgid "Add debug timestamps" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1579 src/providers/ldap/ldap_child.c:385 -#: src/util/util.h:95 -msgid "Show timestamps with microseconds" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1581 src/providers/ldap/ldap_child.c:387 -msgid "An open file descriptor for the debug logs" -msgstr "" - -#: src/providers/data_provider_be.c:1938 -msgid "Domain of the information provider (mandatory)" -msgstr "" - -#: src/sss_client/common.c:878 -msgid "Privileged socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:881 -msgid "Public socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:884 -msgid "Unexpected format of the server credential message." -msgstr "" - -#: src/sss_client/common.c:887 -msgid "SSSD is not run by root." -msgstr "" - -#: src/sss_client/common.c:892 -msgid "An error occurred, but no description can be found." -msgstr "" - -#: src/sss_client/common.c:898 -msgid "Unexpected error while looking for an error description" -msgstr "" - -#: src/sss_client/pam_sss.c:378 -msgid "Passwords do not match" -msgstr "" - -#: src/sss_client/pam_sss.c:571 -msgid "Password reset by root is not supported." -msgstr "" - -#: src/sss_client/pam_sss.c:612 -msgid "Authenticated with cached credentials" -msgstr "" - -#: src/sss_client/pam_sss.c:613 -msgid ", your cached password will expire at: " -msgstr "" - -#: src/sss_client/pam_sss.c:643 -#, c-format -msgid "Your password has expired. You have %d grace login(s) remaining." -msgstr "" - -#: src/sss_client/pam_sss.c:689 -#, c-format -msgid "Your password will expire in %d %s." -msgstr "" - -#: src/sss_client/pam_sss.c:738 -msgid "Authentication is denied until: " -msgstr "" - -#: src/sss_client/pam_sss.c:759 -msgid "System is offline, password change not possible" -msgstr "" - -#: src/sss_client/pam_sss.c:789 src/sss_client/pam_sss.c:802 -msgid "Password change failed. " -msgstr "" - -#: src/sss_client/pam_sss.c:792 src/sss_client/pam_sss.c:803 -msgid "Server message: " -msgstr "" - -#: src/sss_client/pam_sss.c:1286 -msgid "New Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1287 -msgid "Reenter new Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1373 -msgid "Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1405 -msgid "Current Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1552 -msgid "Password expired. Change your password now." -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:40 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:211 src/tools/sss_useradd.c:48 -#: src/tools/sss_groupadd.c:41 src/tools/sss_groupdel.c:43 -#: src/tools/sss_groupmod.c:42 src/tools/sss_groupshow.c:615 -#: src/tools/sss_userdel.c:131 src/tools/sss_usermod.c:47 -#: src/tools/sss_cache.c:260 src/tools/sss_debuglevel.c:75 -msgid "The debug level to run with" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:42 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:215 -msgid "The SSSD domain to use" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:58 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:229 src/tools/sss_useradd.c:71 -#: src/tools/sss_groupadd.c:56 src/tools/sss_groupdel.c:52 -#: src/tools/sss_groupmod.c:63 src/tools/sss_groupshow.c:626 -#: src/tools/sss_userdel.c:148 src/tools/sss_usermod.c:72 -#: src/tools/sss_cache.c:281 -msgid "Error setting the locale\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:65 -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:91 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:236 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:269 -msgid "Not enough memory\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:84 -msgid "User not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:104 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:282 -msgid "Error looking up public keys\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:94 -msgid "Failed to open a socket\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:104 -msgid "Failed to connect to the server\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:195 -msgid "Failed to execute proxy command\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:213 -msgid "The port to use to connect to the host" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:255 -msgid "Host not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:261 -msgid "The path to the proxy command must be absolute\n" -msgstr "" - -#: src/tools/sss_useradd.c:49 src/tools/sss_usermod.c:48 -msgid "The UID of the user" -msgstr "" - -#: src/tools/sss_useradd.c:50 src/tools/sss_usermod.c:50 -msgid "The comment string" -msgstr "" - -#: src/tools/sss_useradd.c:51 src/tools/sss_usermod.c:51 -msgid "Home directory" -msgstr "" - -#: src/tools/sss_useradd.c:52 src/tools/sss_usermod.c:52 -msgid "Login shell" -msgstr "" - -#: src/tools/sss_useradd.c:53 -msgid "Groups" -msgstr "" - -#: src/tools/sss_useradd.c:54 -msgid "Create user's directory if it does not exist" -msgstr "" - -#: src/tools/sss_useradd.c:55 -msgid "Never create user's directory, overrides config" -msgstr "" - -#: src/tools/sss_useradd.c:56 -msgid "Specify an alternative skeleton directory" -msgstr "" - -#: src/tools/sss_useradd.c:57 src/tools/sss_usermod.c:57 -msgid "The SELinux user for user's login" -msgstr "" - -#: src/tools/sss_useradd.c:84 src/tools/sss_groupmod.c:76 -#: src/tools/sss_usermod.c:85 -msgid "Specify group to add to\n" -msgstr "" - -#: src/tools/sss_useradd.c:108 -msgid "Specify user to add\n" -msgstr "" - -#: src/tools/sss_useradd.c:117 src/tools/sss_groupadd.c:82 -#: src/tools/sss_groupdel.c:77 src/tools/sss_groupmod.c:109 -#: src/tools/sss_groupshow.c:659 src/tools/sss_userdel.c:193 -#: src/tools/sss_usermod.c:126 -msgid "Error initializing the tools - no local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:119 src/tools/sss_groupadd.c:84 -#: src/tools/sss_groupdel.c:79 src/tools/sss_groupmod.c:111 -#: src/tools/sss_groupshow.c:661 src/tools/sss_userdel.c:195 -#: src/tools/sss_usermod.c:128 -msgid "Error initializing the tools\n" -msgstr "" - -#: src/tools/sss_useradd.c:128 src/tools/sss_groupadd.c:93 -#: src/tools/sss_groupdel.c:88 src/tools/sss_groupmod.c:119 -#: src/tools/sss_groupshow.c:670 src/tools/sss_userdel.c:204 -#: src/tools/sss_usermod.c:137 -msgid "Invalid domain specified in FQDN\n" -msgstr "" - -#: src/tools/sss_useradd.c:137 src/tools/sss_groupmod.c:139 -#: src/tools/sss_groupmod.c:166 src/tools/sss_usermod.c:160 -#: src/tools/sss_usermod.c:187 -msgid "Internal error while parsing parameters\n" -msgstr "" - -#: src/tools/sss_useradd.c:145 src/tools/sss_usermod.c:168 -#: src/tools/sss_usermod.c:195 -msgid "Groups must be in the same domain as user\n" -msgstr "" - -#: src/tools/sss_useradd.c:153 -#, c-format -msgid "Cannot find group %s in local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:168 src/tools/sss_userdel.c:214 -msgid "Cannot set default values\n" -msgstr "" - -#: src/tools/sss_useradd.c:175 src/tools/sss_usermod.c:151 -msgid "The selected UID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_useradd.c:202 src/tools/sss_usermod.c:236 -msgid "Cannot set SELinux login context\n" -msgstr "" - -#: src/tools/sss_useradd.c:217 -msgid "Cannot get info about the user\n" -msgstr "" - -#: src/tools/sss_useradd.c:229 -msgid "User's home directory already exists, not copying data from skeldir\n" -msgstr "" - -#: src/tools/sss_useradd.c:232 -#, c-format -msgid "Cannot create user's home directory: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:243 -#, c-format -msgid "Cannot create user's mail spool: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:255 -msgid "Could not allocate ID for the user - domain full?\n" -msgstr "" - -#: src/tools/sss_useradd.c:259 -msgid "A user or group with the same name or ID already exists\n" -msgstr "" - -#: src/tools/sss_useradd.c:265 -msgid "Transaction error. Could not add user.\n" -msgstr "" - -#: src/tools/sss_groupadd.c:43 src/tools/sss_groupmod.c:48 -msgid "The GID of the group" -msgstr "" - -#: src/tools/sss_groupadd.c:73 -msgid "Specify group to add\n" -msgstr "" - -#: src/tools/sss_groupadd.c:102 src/tools/sss_groupmod.c:190 -msgid "The selected GID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_groupadd.c:127 -msgid "Could not allocate ID for the group - domain full?\n" -msgstr "" - -#: src/tools/sss_groupadd.c:131 -msgid "A group with the same name or GID already exists\n" -msgstr "" - -#: src/tools/sss_groupadd.c:136 -msgid "Transaction error. Could not add group.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:68 -msgid "Specify group to delete\n" -msgstr "" - -#: src/tools/sss_groupdel.c:101 -#, c-format -msgid "Group %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_groupdel.c:115 -msgid "" -"No such group in local domain. Removing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:120 -msgid "Internal error. Could not remove group.\n" -msgstr "" - -#: src/tools/sss_groupmod.c:44 -msgid "Groups to add this group to" -msgstr "" - -#: src/tools/sss_groupmod.c:46 -msgid "Groups to remove this group from" -msgstr "" - -#: src/tools/sss_groupmod.c:84 src/tools/sss_usermod.c:93 -msgid "Specify group to remove from\n" -msgstr "" - -#: src/tools/sss_groupmod.c:98 -msgid "Specify group to modify\n" -msgstr "" - -#: src/tools/sss_groupmod.c:126 -msgid "" -"Cannot find group in local domain, modifying groups is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_groupmod.c:147 src/tools/sss_groupmod.c:174 -msgid "Member groups must be in the same domain as parent group\n" -msgstr "" - -#: src/tools/sss_groupmod.c:155 src/tools/sss_groupmod.c:182 -#: src/tools/sss_usermod.c:176 src/tools/sss_usermod.c:203 -#, c-format -msgid "" -"Cannot find group %s in local domain, only groups in local domain are " -"allowed\n" -msgstr "" - -#: src/tools/sss_groupmod.c:216 -msgid "Could not modify group - check if member group names are correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:220 -msgid "Could not modify group - check if groupname is correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:224 -msgid "Transaction error. Could not modify group.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:562 -#, c-format -msgid "%s%sGroup: %s\n" -msgstr "" - -#: src/tools/sss_groupshow.c:563 -msgid "Magic Private " -msgstr "" - -#: src/tools/sss_groupshow.c:565 -#, c-format -msgid "%sGID number: %d\n" -msgstr "" - -#: src/tools/sss_groupshow.c:567 -#, c-format -msgid "%sMember users: " -msgstr "" - -#: src/tools/sss_groupshow.c:574 -#, c-format -msgid "" -"\n" -"%sIs a member of: " -msgstr "" - -#: src/tools/sss_groupshow.c:581 -#, c-format -msgid "" -"\n" -"%sMember groups: " -msgstr "" - -#: src/tools/sss_groupshow.c:617 -msgid "Print indirect group members recursively" -msgstr "" - -#: src/tools/sss_groupshow.c:650 -msgid "Specify group to show\n" -msgstr "" - -#: src/tools/sss_groupshow.c:689 -msgid "" -"No such group in local domain. Printing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:694 -msgid "Internal error. Could not print group.\n" -msgstr "" - -#: src/tools/sss_userdel.c:133 -msgid "Remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:135 -msgid "Do not remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:137 -msgid "Force removal of files not owned by the user" -msgstr "" - -#: src/tools/sss_userdel.c:139 -msgid "Kill users' processes before removing him" -msgstr "" - -#: src/tools/sss_userdel.c:184 -msgid "Specify user to delete\n" -msgstr "" - -#: src/tools/sss_userdel.c:230 -#, c-format -msgid "User %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_userdel.c:255 -msgid "Cannot reset SELinux login context\n" -msgstr "" - -#: src/tools/sss_userdel.c:267 -#, c-format -msgid "WARNING: The user (uid %lu) was still logged in when deleted.\n" -msgstr "" - -#: src/tools/sss_userdel.c:272 -msgid "Cannot determine if the user was logged in on this platform" -msgstr "" - -#: src/tools/sss_userdel.c:277 -msgid "Error while checking if the user was logged in\n" -msgstr "" - -#: src/tools/sss_userdel.c:284 -#, c-format -msgid "The post-delete command failed: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:296 -msgid "Not removing home dir - not owned by user\n" -msgstr "" - -#: src/tools/sss_userdel.c:298 -#, c-format -msgid "Cannot remove homedir: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:309 -msgid "" -"No such user in local domain. Removing users only allowed in local domain.\n" -msgstr "" - -#: src/tools/sss_userdel.c:314 -msgid "Internal error. Could not remove user.\n" -msgstr "" - -#: src/tools/sss_usermod.c:49 -msgid "The GID of the user" -msgstr "" - -#: src/tools/sss_usermod.c:53 -msgid "Groups to add this user to" -msgstr "" - -#: src/tools/sss_usermod.c:54 -msgid "Groups to remove this user from" -msgstr "" - -#: src/tools/sss_usermod.c:55 -msgid "Lock the account" -msgstr "" - -#: src/tools/sss_usermod.c:56 -msgid "Unlock the account" -msgstr "" - -#: src/tools/sss_usermod.c:117 -msgid "Specify user to modify\n" -msgstr "" - -#: src/tools/sss_usermod.c:144 -msgid "" -"Cannot find user in local domain, modifying users is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_usermod.c:246 -msgid "Could not modify user - check if group names are correct\n" -msgstr "" - -#: src/tools/sss_usermod.c:250 -msgid "Could not modify user - user already member of groups?\n" -msgstr "" - -#: src/tools/sss_usermod.c:254 -msgid "Transaction error. Could not modify user.\n" -msgstr "" - -#: src/tools/sss_cache.c:132 -#, c-format -msgid "Couldn't invalidate %s" -msgstr "" - -#: src/tools/sss_cache.c:138 -#, c-format -msgid "Couldn't invalidate %s %s" -msgstr "" - -#: src/tools/sss_cache.c:262 -msgid "Invalidate particular user" -msgstr "" - -#: src/tools/sss_cache.c:264 -msgid "Invalidate all users" -msgstr "" - -#: src/tools/sss_cache.c:266 -msgid "Invalidate particular group" -msgstr "" - -#: src/tools/sss_cache.c:268 -msgid "Invalidate all groups" -msgstr "" - -#: src/tools/sss_cache.c:270 -msgid "Invalidate particular netgroup" -msgstr "" - -#: src/tools/sss_cache.c:272 -msgid "Invalidate all netgroups" -msgstr "" - -#: src/tools/sss_cache.c:274 -msgid "Only invalidate entries from a particular domain" -msgstr "" - -#: src/tools/sss_debuglevel.c:43 -msgid "\n" -msgstr "" - -#: src/tools/sss_debuglevel.c:102 -msgid "Specify debug level you want to set\n" -msgstr "" - -#: src/tools/tools_util.c:286 -msgid "Out of memory\n" -msgstr "" - -#: src/tools/tools_util.h:40 -#, c-format -msgid "%s must be run as root\n" -msgstr "" - -#: src/util/util.h:91 -msgid "Send the debug output to files instead of stderr" -msgstr "" diff --git a/po/nl.po b/po/nl.po index ed269d88c..eb20885f0 100644 --- a/po/nl.po +++ b/po/nl.po @@ -11,9 +11,9 @@ msgid "" msgstr "" "Project-Id-Version: SSSD\n" "Report-Msgid-Bugs-To: sssd-devel@lists.fedorahosted.org\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2012-02-28 09:07+0000\n" -"Last-Translator: Richard E. van der Luit \n" +"POT-Creation-Date: 2012-03-12 16:26-0400\n" +"PO-Revision-Date: 2012-03-08 11:41+0000\n" +"Last-Translator: sgallagh \n" "Language-Team: Dutch (http://www.transifex.net/projects/p/fedora/language/" "nl/)\n" "Language: nl\n" @@ -863,9 +863,8 @@ msgid "Automounter map entry value attribute" msgstr "Automounter map ingavewaarde attribuut" #: src/config/SSSDConfig.py:290 -#, fuzzy msgid "Base DN for automounter map lookups" -msgstr "Basis DN voor automounter map lookups" +msgstr "" #: src/config/SSSDConfig.py:293 msgid "Comma separated list of allowed users" @@ -926,7 +925,7 @@ msgstr "Toon tijdstempel met microseconden" msgid "An open file descriptor for the debug logs" msgstr "Een geopend bestand voor de debug logs" -#: src/providers/data_provider_be.c:1938 +#: src/providers/data_provider_be.c:2022 msgid "Domain of the information provider (mandatory)" msgstr "Domein voor de informatie provider (verplicht)" @@ -1028,9 +1027,8 @@ msgstr "Het debugniveau waarmee gestart wordt" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:42 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:215 -#, fuzzy msgid "The SSSD domain to use" -msgstr "SSSD Domeinen die gestart moeten worden" +msgstr "" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:58 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:229 src/tools/sss_useradd.c:71 @@ -1045,9 +1043,8 @@ msgstr "Fout bij het zetten van de locale\n" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:91 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:236 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:269 -#, fuzzy msgid "Not enough memory\n" -msgstr "Het geheugen zit vol\n" +msgstr "" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:84 msgid "User not specified\n" @@ -1525,9 +1522,8 @@ msgid "\n" msgstr "" #: src/tools/sss_debuglevel.c:102 -#, fuzzy msgid "Specify debug level you want to set\n" -msgstr "Het debugniveau waarmee gestart wordt" +msgstr "" #: src/tools/tools_util.c:286 msgid "Out of memory\n" diff --git a/po/nn.po b/po/nn.po deleted file mode 100644 index e597c655b..000000000 --- a/po/nn.po +++ /dev/null @@ -1,1462 +0,0 @@ -# SOME DESCRIPTIVE TITLE. -# Copyright (C) YEAR Red Hat, Inc. -# This file is distributed under the same license as the PACKAGE package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@lists.fedorahosted.org\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-11-30 04:10+0000\n" -"Last-Translator: FULL NAME \n" -"Language-Team: Norwegian Nynorsk \n" -"Language: nn\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=2; plural=(n != 1)\n" - -#: src/config/SSSDConfig.py:39 -msgid "Set the verbosity of the debug logging" -msgstr "" - -#: src/config/SSSDConfig.py:40 -msgid "Include timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:41 -msgid "Include microseconds in timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:42 -msgid "Write debug messages to logfiles" -msgstr "" - -#: src/config/SSSDConfig.py:43 -msgid "Ping timeout before restarting service" -msgstr "" - -#: src/config/SSSDConfig.py:44 -msgid "Command to start service" -msgstr "" - -#: src/config/SSSDConfig.py:45 -msgid "Number of times to attempt connection to Data Providers" -msgstr "" - -#: src/config/SSSDConfig.py:48 -msgid "SSSD Services to start" -msgstr "" - -#: src/config/SSSDConfig.py:49 -msgid "SSSD Domains to start" -msgstr "" - -#: src/config/SSSDConfig.py:50 -msgid "Timeout for messages sent over the SBUS" -msgstr "" - -#: src/config/SSSDConfig.py:51 -msgid "Regex to parse username and domain" -msgstr "" - -#: src/config/SSSDConfig.py:52 -msgid "Printf-compatible format for displaying fully-qualified names" -msgstr "" - -#: src/config/SSSDConfig.py:53 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#: src/config/SSSDConfig.py:56 -msgid "Enumeration cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:57 -msgid "Entry cache background update timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:58 src/config/SSSDConfig.py:81 -msgid "Negative cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:59 -msgid "Users that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:60 -msgid "Groups that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:61 -msgid "Should filtered users appear in groups" -msgstr "" - -#: src/config/SSSDConfig.py:62 -msgid "The value of the password field the NSS provider should return" -msgstr "" - -#: src/config/SSSDConfig.py:63 -msgid "Override homedir value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:64 -msgid "The list of shells users are allowed to log in with" -msgstr "" - -#: src/config/SSSDConfig.py:65 -msgid "" -"The list of shells that will be vetoed, and replaced with the fallback shell" -msgstr "" - -#: src/config/SSSDConfig.py:66 -msgid "" -"If a shell stored in central directory is allowed but not available, use " -"this fallback" -msgstr "" - -#: src/config/SSSDConfig.py:69 -msgid "How long to allow cached logins between online logins (days)" -msgstr "" - -#: src/config/SSSDConfig.py:70 -msgid "How many failed logins attempts are allowed when offline" -msgstr "" - -#: src/config/SSSDConfig.py:71 -msgid "" -"How long (minutes) to deny login after offline_failed_login_attempts has " -"been reached" -msgstr "" - -#: src/config/SSSDConfig.py:72 -msgid "What kind of messages are displayed to the user during authentication" -msgstr "" - -#: src/config/SSSDConfig.py:73 -msgid "How many seconds to keep identity information cached for PAM requests" -msgstr "" - -#: src/config/SSSDConfig.py:74 -msgid "How many days before password expiration a warning should be displayed" -msgstr "" - -#: src/config/SSSDConfig.py:77 -msgid "Whether to evaluate the time-based attributes in sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:78 -msgid "" -"How many seconds to keep sudorules cached before asking the provider again" -msgstr "" - -#: src/config/SSSDConfig.py:84 -msgid "Identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:85 -msgid "Authentication provider" -msgstr "" - -#: src/config/SSSDConfig.py:86 -msgid "Access control provider" -msgstr "" - -#: src/config/SSSDConfig.py:87 -msgid "Password change provider" -msgstr "" - -#: src/config/SSSDConfig.py:88 -msgid "SUDO provider" -msgstr "" - -#: src/config/SSSDConfig.py:89 -msgid "Autofs provider" -msgstr "" - -#: src/config/SSSDConfig.py:90 -msgid "Session-loading provider" -msgstr "" - -#: src/config/SSSDConfig.py:91 -msgid "Host identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:94 -msgid "Minimum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:95 -msgid "Maximum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:96 -msgid "Enable enumerating all users/groups" -msgstr "" - -#: src/config/SSSDConfig.py:97 -msgid "Cache credentials for offline login" -msgstr "" - -#: src/config/SSSDConfig.py:98 -msgid "Store password hashes" -msgstr "" - -#: src/config/SSSDConfig.py:99 -msgid "Display users/groups in fully-qualified form" -msgstr "" - -#: src/config/SSSDConfig.py:100 src/config/SSSDConfig.py:107 -#: src/config/SSSDConfig.py:108 src/config/SSSDConfig.py:109 -#: src/config/SSSDConfig.py:110 src/config/SSSDConfig.py:111 -msgid "Entry cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:101 -msgid "" -"Restrict or prefer a specific address family when performing DNS lookups" -msgstr "" - -#: src/config/SSSDConfig.py:102 -msgid "How long to keep cached entries after last successful login (days)" -msgstr "" - -#: src/config/SSSDConfig.py:103 -msgid "How long to wait for replies from DNS when resolving servers (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:104 -msgid "The domain part of service discovery DNS query" -msgstr "" - -#: src/config/SSSDConfig.py:105 -msgid "Override GID value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:106 -msgid "Treat usernames as case sensitive" -msgstr "" - -#: src/config/SSSDConfig.py:114 -msgid "IPA domain" -msgstr "" - -#: src/config/SSSDConfig.py:115 -msgid "IPA server address" -msgstr "" - -#: src/config/SSSDConfig.py:116 -msgid "IPA client hostname" -msgstr "" - -#: src/config/SSSDConfig.py:117 -msgid "Whether to automatically update the client's DNS entry in FreeIPA" -msgstr "" - -#: src/config/SSSDConfig.py:118 -msgid "The interface whose IP should be used for dynamic DNS updates" -msgstr "" - -#: src/config/SSSDConfig.py:119 -msgid "Search base for HBAC related objects" -msgstr "" - -#: src/config/SSSDConfig.py:120 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server" -msgstr "" - -#: src/config/SSSDConfig.py:121 -msgid "If DENY rules are present, either DENY_ALL or IGNORE" -msgstr "" - -#: src/config/SSSDConfig.py:122 -msgid "If set to false, host argument given by PAM will be ignored" -msgstr "" - -#: src/config/SSSDConfig.py:123 -msgid "The automounter location this IPA client is using" -msgstr "" - -#: src/config/SSSDConfig.py:126 src/config/SSSDConfig.py:127 -msgid "Kerberos server address" -msgstr "" - -#: src/config/SSSDConfig.py:128 -msgid "Kerberos realm" -msgstr "" - -#: src/config/SSSDConfig.py:129 -msgid "Authentication timeout" -msgstr "" - -#: src/config/SSSDConfig.py:132 -msgid "Directory to store credential caches" -msgstr "" - -#: src/config/SSSDConfig.py:133 -msgid "Location of the user's credential cache" -msgstr "" - -#: src/config/SSSDConfig.py:134 -msgid "Location of the keytab to validate credentials" -msgstr "" - -#: src/config/SSSDConfig.py:135 -msgid "Enable credential validation" -msgstr "" - -#: src/config/SSSDConfig.py:136 -msgid "Store password if offline for later online authentication" -msgstr "" - -#: src/config/SSSDConfig.py:137 -msgid "Renewable lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:138 -msgid "Lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:139 -msgid "Time between two checks for renewal" -msgstr "" - -#: src/config/SSSDConfig.py:140 -msgid "Enables FAST" -msgstr "" - -#: src/config/SSSDConfig.py:141 -msgid "Selects the principal to use for FAST" -msgstr "" - -#: src/config/SSSDConfig.py:142 -msgid "Enables principal canonicalization" -msgstr "" - -#: src/config/SSSDConfig.py:145 -msgid "Server where the change password service is running if not on the KDC" -msgstr "" - -#: src/config/SSSDConfig.py:148 -msgid "ldap_uri, The URI of the LDAP server" -msgstr "" - -#: src/config/SSSDConfig.py:149 -msgid "The default base DN" -msgstr "" - -#: src/config/SSSDConfig.py:150 -msgid "The Schema Type in use on the LDAP server, rfc2307" -msgstr "" - -#: src/config/SSSDConfig.py:151 -msgid "The default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:152 -msgid "The type of the authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:153 -msgid "The authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:154 -msgid "Length of time to attempt connection" -msgstr "" - -#: src/config/SSSDConfig.py:155 -msgid "Length of time to attempt synchronous LDAP operations" -msgstr "" - -#: src/config/SSSDConfig.py:156 -msgid "Length of time between attempts to reconnect while offline" -msgstr "" - -#: src/config/SSSDConfig.py:157 -msgid "Use only the upper case for realm names" -msgstr "" - -#: src/config/SSSDConfig.py:158 -msgid "File that contains CA certificates" -msgstr "" - -#: src/config/SSSDConfig.py:159 -msgid "Path to CA certificate directory" -msgstr "" - -#: src/config/SSSDConfig.py:160 -msgid "File that contains the client certificate" -msgstr "" - -#: src/config/SSSDConfig.py:161 -msgid "File that contains the client key" -msgstr "" - -#: src/config/SSSDConfig.py:162 -msgid "List of possible ciphers suites" -msgstr "" - -#: src/config/SSSDConfig.py:163 -msgid "Require TLS certificate verification" -msgstr "" - -#: src/config/SSSDConfig.py:164 -msgid "Specify the sasl mechanism to use" -msgstr "" - -#: src/config/SSSDConfig.py:165 -msgid "Specify the sasl authorization id to use" -msgstr "" - -#: src/config/SSSDConfig.py:166 -msgid "Specify the sasl authorization realm to use" -msgstr "" - -#: src/config/SSSDConfig.py:167 -msgid "Specify the minimal SSF for LDAP sasl authorization" -msgstr "" - -#: src/config/SSSDConfig.py:168 -msgid "Kerberos service keytab" -msgstr "" - -#: src/config/SSSDConfig.py:169 -msgid "Use Kerberos auth for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:170 -msgid "Follow LDAP referrals" -msgstr "" - -#: src/config/SSSDConfig.py:171 -msgid "Lifetime of TGT for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:172 -msgid "How to dereference aliases" -msgstr "" - -#: src/config/SSSDConfig.py:173 -msgid "Service name for DNS service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:174 -msgid "The number of records to retrieve in a single LDAP query" -msgstr "" - -#: src/config/SSSDConfig.py:175 -msgid "The number of members that must be missing to trigger a full deref" -msgstr "" - -#: src/config/SSSDConfig.py:176 -msgid "" -"Whether the LDAP library should perform a reverse lookup to canonicalize the " -"host name during a SASL bind" -msgstr "" - -#: src/config/SSSDConfig.py:178 -msgid "entryUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:179 -msgid "lastUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:181 -msgid "How long to retain a connection to the LDAP server before disconnecting" -msgstr "" - -#: src/config/SSSDConfig.py:183 -msgid "Disable the LDAP paging control" -msgstr "" - -#: src/config/SSSDConfig.py:186 -msgid "Length of time to wait for a search request" -msgstr "" - -#: src/config/SSSDConfig.py:187 -msgid "Length of time to wait for a enumeration request" -msgstr "" - -#: src/config/SSSDConfig.py:188 -msgid "Length of time between enumeration updates" -msgstr "" - -#: src/config/SSSDConfig.py:189 -msgid "Length of time between cache cleanups" -msgstr "" - -#: src/config/SSSDConfig.py:190 -msgid "Require TLS for ID lookups" -msgstr "" - -#: src/config/SSSDConfig.py:191 -msgid "Base DN for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:192 -msgid "Scope of user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:193 -msgid "Filter for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:194 -msgid "Objectclass for users" -msgstr "" - -#: src/config/SSSDConfig.py:195 -msgid "Username attribute" -msgstr "" - -#: src/config/SSSDConfig.py:197 -msgid "UID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:198 -msgid "Primary GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:199 -msgid "GECOS attribute" -msgstr "" - -#: src/config/SSSDConfig.py:200 -msgid "Home directory attribute" -msgstr "" - -#: src/config/SSSDConfig.py:201 -msgid "Shell attribute" -msgstr "" - -#: src/config/SSSDConfig.py:202 -msgid "UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:203 -msgid "User principal attribute (for Kerberos)" -msgstr "" - -#: src/config/SSSDConfig.py:204 -msgid "Full Name" -msgstr "" - -#: src/config/SSSDConfig.py:205 -msgid "memberOf attribute" -msgstr "" - -#: src/config/SSSDConfig.py:206 -msgid "Modification time attribute" -msgstr "" - -#: src/config/SSSDConfig.py:208 -msgid "shadowLastChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:209 -msgid "shadowMin attribute" -msgstr "" - -#: src/config/SSSDConfig.py:210 -msgid "shadowMax attribute" -msgstr "" - -#: src/config/SSSDConfig.py:211 -msgid "shadowWarning attribute" -msgstr "" - -#: src/config/SSSDConfig.py:212 -msgid "shadowInactive attribute" -msgstr "" - -#: src/config/SSSDConfig.py:213 -msgid "shadowExpire attribute" -msgstr "" - -#: src/config/SSSDConfig.py:214 -msgid "shadowFlag attribute" -msgstr "" - -#: src/config/SSSDConfig.py:215 -msgid "Attribute listing authorized PAM services" -msgstr "" - -#: src/config/SSSDConfig.py:216 -msgid "Attribute listing authorized server hosts" -msgstr "" - -#: src/config/SSSDConfig.py:217 -msgid "krbLastPwdChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:218 -msgid "krbPasswordExpiration attribute" -msgstr "" - -#: src/config/SSSDConfig.py:219 -msgid "Attribute indicating that server side password policies are active" -msgstr "" - -#: src/config/SSSDConfig.py:220 -msgid "accountExpires attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:221 -msgid "userAccountControl attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:222 -msgid "nsAccountLock attribute" -msgstr "" - -#: src/config/SSSDConfig.py:223 -msgid "loginDisabled attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:224 -msgid "loginExpirationTime attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:225 -msgid "loginAllowedTimeMap attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:226 -msgid "SSH public key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:228 -msgid "Base DN for group lookups" -msgstr "" - -#: src/config/SSSDConfig.py:231 -msgid "Objectclass for groups" -msgstr "" - -#: src/config/SSSDConfig.py:232 -msgid "Group name" -msgstr "" - -#: src/config/SSSDConfig.py:233 -msgid "Group password" -msgstr "" - -#: src/config/SSSDConfig.py:234 -msgid "GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:235 -msgid "Group member attribute" -msgstr "" - -#: src/config/SSSDConfig.py:236 -msgid "Group UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:237 -msgid "Modification time attribute for groups" -msgstr "" - -#: src/config/SSSDConfig.py:239 -msgid "Maximum nesting level SSSd will follow" -msgstr "" - -#: src/config/SSSDConfig.py:241 -msgid "Base DN for netgroup lookups" -msgstr "" - -#: src/config/SSSDConfig.py:242 -msgid "Objectclass for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:243 -msgid "Netgroup name" -msgstr "" - -#: src/config/SSSDConfig.py:244 -msgid "Netgroups members attribute" -msgstr "" - -#: src/config/SSSDConfig.py:245 -msgid "Netgroup triple attribute" -msgstr "" - -#: src/config/SSSDConfig.py:246 -msgid "Netgroup UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:247 -msgid "Modification time attribute for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:249 -msgid "Base DN for service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:250 -msgid "Objectclass for services" -msgstr "" - -#: src/config/SSSDConfig.py:251 -msgid "Service name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:252 -msgid "Service port attribute" -msgstr "" - -#: src/config/SSSDConfig.py:253 -msgid "Service protocol attribute" -msgstr "" - -#: src/config/SSSDConfig.py:257 -msgid "Policy to evaluate the password expiration" -msgstr "" - -#: src/config/SSSDConfig.py:260 -msgid "LDAP filter to determine access privileges" -msgstr "" - -#: src/config/SSSDConfig.py:261 -msgid "Which attributes shall be used to evaluate if an account is expired" -msgstr "" - -#: src/config/SSSDConfig.py:262 -msgid "Which rules should be used to evaluate access control" -msgstr "" - -#: src/config/SSSDConfig.py:265 -msgid "URI of an LDAP server where password changes are allowed" -msgstr "" - -#: src/config/SSSDConfig.py:266 -msgid "DNS service name for LDAP password change server" -msgstr "" - -#: src/config/SSSDConfig.py:269 -msgid "Base DN for sudo rules lookups" -msgstr "" - -#: src/config/SSSDConfig.py:270 -msgid "Enable periodical update of all sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:271 -msgid "Length of time between rules updates" -msgstr "" - -#: src/config/SSSDConfig.py:272 -msgid "Object class for sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:273 -msgid "Sudo rule name" -msgstr "" - -#: src/config/SSSDConfig.py:274 -msgid "Sudo rule command attribute" -msgstr "" - -#: src/config/SSSDConfig.py:275 -msgid "Sudo rule host attribute" -msgstr "" - -#: src/config/SSSDConfig.py:276 -msgid "Sudo rule user attribute" -msgstr "" - -#: src/config/SSSDConfig.py:277 -msgid "Sudo rule option attribute" -msgstr "" - -#: src/config/SSSDConfig.py:278 -msgid "Sudo rule runasuser attribute" -msgstr "" - -#: src/config/SSSDConfig.py:279 -msgid "Sudo rule runasgroup attribute" -msgstr "" - -#: src/config/SSSDConfig.py:280 -msgid "Sudo rule notbefore attribute" -msgstr "" - -#: src/config/SSSDConfig.py:281 -msgid "Sudo rule notafter attribute" -msgstr "" - -#: src/config/SSSDConfig.py:282 -msgid "Sudo rule order attribute" -msgstr "" - -#: src/config/SSSDConfig.py:285 -msgid "Object class for automounter maps" -msgstr "" - -#: src/config/SSSDConfig.py:286 -msgid "Automounter map name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:287 -msgid "Object class for automounter map entries" -msgstr "" - -#: src/config/SSSDConfig.py:288 -msgid "Automounter map entry key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:289 -msgid "Automounter map entry value attribute" -msgstr "" - -#: src/config/SSSDConfig.py:290 -msgid "Base DN for automounter map lookups" -msgstr "" - -#: src/config/SSSDConfig.py:293 -msgid "Comma separated list of allowed users" -msgstr "" - -#: src/config/SSSDConfig.py:294 -msgid "Comma separated list of prohibited users" -msgstr "" - -#: src/config/SSSDConfig.py:297 -msgid "Default shell, /bin/bash" -msgstr "" - -#: src/config/SSSDConfig.py:298 -msgid "Base for home directories" -msgstr "" - -#: src/config/SSSDConfig.py:301 -msgid "The name of the NSS library to use" -msgstr "" - -#: src/config/SSSDConfig.py:304 -msgid "PAM stack to use" -msgstr "" - -#: src/monitor/monitor.c:2379 -msgid "Become a daemon (default)" -msgstr "" - -#: src/monitor/monitor.c:2381 -msgid "Run interactive (not a daemon)" -msgstr "" - -#: src/monitor/monitor.c:2383 src/tools/sss_debuglevel.c:77 -msgid "Specify a non-default config file" -msgstr "" - -#: src/monitor/monitor.c:2385 -msgid "Print version number and exit" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1575 src/providers/ldap/ldap_child.c:381 -#: src/util/util.h:89 -msgid "Debug level" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1577 src/providers/ldap/ldap_child.c:383 -#: src/util/util.h:93 -msgid "Add debug timestamps" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1579 src/providers/ldap/ldap_child.c:385 -#: src/util/util.h:95 -msgid "Show timestamps with microseconds" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1581 src/providers/ldap/ldap_child.c:387 -msgid "An open file descriptor for the debug logs" -msgstr "" - -#: src/providers/data_provider_be.c:1938 -msgid "Domain of the information provider (mandatory)" -msgstr "" - -#: src/sss_client/common.c:878 -msgid "Privileged socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:881 -msgid "Public socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:884 -msgid "Unexpected format of the server credential message." -msgstr "" - -#: src/sss_client/common.c:887 -msgid "SSSD is not run by root." -msgstr "" - -#: src/sss_client/common.c:892 -msgid "An error occurred, but no description can be found." -msgstr "" - -#: src/sss_client/common.c:898 -msgid "Unexpected error while looking for an error description" -msgstr "" - -#: src/sss_client/pam_sss.c:378 -msgid "Passwords do not match" -msgstr "" - -#: src/sss_client/pam_sss.c:571 -msgid "Password reset by root is not supported." -msgstr "" - -#: src/sss_client/pam_sss.c:612 -msgid "Authenticated with cached credentials" -msgstr "" - -#: src/sss_client/pam_sss.c:613 -msgid ", your cached password will expire at: " -msgstr "" - -#: src/sss_client/pam_sss.c:643 -#, c-format -msgid "Your password has expired. You have %d grace login(s) remaining." -msgstr "" - -#: src/sss_client/pam_sss.c:689 -#, c-format -msgid "Your password will expire in %d %s." -msgstr "" - -#: src/sss_client/pam_sss.c:738 -msgid "Authentication is denied until: " -msgstr "" - -#: src/sss_client/pam_sss.c:759 -msgid "System is offline, password change not possible" -msgstr "" - -#: src/sss_client/pam_sss.c:789 src/sss_client/pam_sss.c:802 -msgid "Password change failed. " -msgstr "" - -#: src/sss_client/pam_sss.c:792 src/sss_client/pam_sss.c:803 -msgid "Server message: " -msgstr "" - -#: src/sss_client/pam_sss.c:1286 -msgid "New Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1287 -msgid "Reenter new Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1373 -msgid "Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1405 -msgid "Current Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1552 -msgid "Password expired. Change your password now." -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:40 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:211 src/tools/sss_useradd.c:48 -#: src/tools/sss_groupadd.c:41 src/tools/sss_groupdel.c:43 -#: src/tools/sss_groupmod.c:42 src/tools/sss_groupshow.c:615 -#: src/tools/sss_userdel.c:131 src/tools/sss_usermod.c:47 -#: src/tools/sss_cache.c:260 src/tools/sss_debuglevel.c:75 -msgid "The debug level to run with" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:42 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:215 -msgid "The SSSD domain to use" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:58 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:229 src/tools/sss_useradd.c:71 -#: src/tools/sss_groupadd.c:56 src/tools/sss_groupdel.c:52 -#: src/tools/sss_groupmod.c:63 src/tools/sss_groupshow.c:626 -#: src/tools/sss_userdel.c:148 src/tools/sss_usermod.c:72 -#: src/tools/sss_cache.c:281 -msgid "Error setting the locale\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:65 -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:91 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:236 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:269 -msgid "Not enough memory\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:84 -msgid "User not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:104 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:282 -msgid "Error looking up public keys\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:94 -msgid "Failed to open a socket\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:104 -msgid "Failed to connect to the server\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:195 -msgid "Failed to execute proxy command\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:213 -msgid "The port to use to connect to the host" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:255 -msgid "Host not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:261 -msgid "The path to the proxy command must be absolute\n" -msgstr "" - -#: src/tools/sss_useradd.c:49 src/tools/sss_usermod.c:48 -msgid "The UID of the user" -msgstr "" - -#: src/tools/sss_useradd.c:50 src/tools/sss_usermod.c:50 -msgid "The comment string" -msgstr "" - -#: src/tools/sss_useradd.c:51 src/tools/sss_usermod.c:51 -msgid "Home directory" -msgstr "" - -#: src/tools/sss_useradd.c:52 src/tools/sss_usermod.c:52 -msgid "Login shell" -msgstr "" - -#: src/tools/sss_useradd.c:53 -msgid "Groups" -msgstr "" - -#: src/tools/sss_useradd.c:54 -msgid "Create user's directory if it does not exist" -msgstr "" - -#: src/tools/sss_useradd.c:55 -msgid "Never create user's directory, overrides config" -msgstr "" - -#: src/tools/sss_useradd.c:56 -msgid "Specify an alternative skeleton directory" -msgstr "" - -#: src/tools/sss_useradd.c:57 src/tools/sss_usermod.c:57 -msgid "The SELinux user for user's login" -msgstr "" - -#: src/tools/sss_useradd.c:84 src/tools/sss_groupmod.c:76 -#: src/tools/sss_usermod.c:85 -msgid "Specify group to add to\n" -msgstr "" - -#: src/tools/sss_useradd.c:108 -msgid "Specify user to add\n" -msgstr "" - -#: src/tools/sss_useradd.c:117 src/tools/sss_groupadd.c:82 -#: src/tools/sss_groupdel.c:77 src/tools/sss_groupmod.c:109 -#: src/tools/sss_groupshow.c:659 src/tools/sss_userdel.c:193 -#: src/tools/sss_usermod.c:126 -msgid "Error initializing the tools - no local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:119 src/tools/sss_groupadd.c:84 -#: src/tools/sss_groupdel.c:79 src/tools/sss_groupmod.c:111 -#: src/tools/sss_groupshow.c:661 src/tools/sss_userdel.c:195 -#: src/tools/sss_usermod.c:128 -msgid "Error initializing the tools\n" -msgstr "" - -#: src/tools/sss_useradd.c:128 src/tools/sss_groupadd.c:93 -#: src/tools/sss_groupdel.c:88 src/tools/sss_groupmod.c:119 -#: src/tools/sss_groupshow.c:670 src/tools/sss_userdel.c:204 -#: src/tools/sss_usermod.c:137 -msgid "Invalid domain specified in FQDN\n" -msgstr "" - -#: src/tools/sss_useradd.c:137 src/tools/sss_groupmod.c:139 -#: src/tools/sss_groupmod.c:166 src/tools/sss_usermod.c:160 -#: src/tools/sss_usermod.c:187 -msgid "Internal error while parsing parameters\n" -msgstr "" - -#: src/tools/sss_useradd.c:145 src/tools/sss_usermod.c:168 -#: src/tools/sss_usermod.c:195 -msgid "Groups must be in the same domain as user\n" -msgstr "" - -#: src/tools/sss_useradd.c:153 -#, c-format -msgid "Cannot find group %s in local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:168 src/tools/sss_userdel.c:214 -msgid "Cannot set default values\n" -msgstr "" - -#: src/tools/sss_useradd.c:175 src/tools/sss_usermod.c:151 -msgid "The selected UID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_useradd.c:202 src/tools/sss_usermod.c:236 -msgid "Cannot set SELinux login context\n" -msgstr "" - -#: src/tools/sss_useradd.c:217 -msgid "Cannot get info about the user\n" -msgstr "" - -#: src/tools/sss_useradd.c:229 -msgid "User's home directory already exists, not copying data from skeldir\n" -msgstr "" - -#: src/tools/sss_useradd.c:232 -#, c-format -msgid "Cannot create user's home directory: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:243 -#, c-format -msgid "Cannot create user's mail spool: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:255 -msgid "Could not allocate ID for the user - domain full?\n" -msgstr "" - -#: src/tools/sss_useradd.c:259 -msgid "A user or group with the same name or ID already exists\n" -msgstr "" - -#: src/tools/sss_useradd.c:265 -msgid "Transaction error. Could not add user.\n" -msgstr "" - -#: src/tools/sss_groupadd.c:43 src/tools/sss_groupmod.c:48 -msgid "The GID of the group" -msgstr "" - -#: src/tools/sss_groupadd.c:73 -msgid "Specify group to add\n" -msgstr "" - -#: src/tools/sss_groupadd.c:102 src/tools/sss_groupmod.c:190 -msgid "The selected GID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_groupadd.c:127 -msgid "Could not allocate ID for the group - domain full?\n" -msgstr "" - -#: src/tools/sss_groupadd.c:131 -msgid "A group with the same name or GID already exists\n" -msgstr "" - -#: src/tools/sss_groupadd.c:136 -msgid "Transaction error. Could not add group.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:68 -msgid "Specify group to delete\n" -msgstr "" - -#: src/tools/sss_groupdel.c:101 -#, c-format -msgid "Group %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_groupdel.c:115 -msgid "" -"No such group in local domain. Removing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:120 -msgid "Internal error. Could not remove group.\n" -msgstr "" - -#: src/tools/sss_groupmod.c:44 -msgid "Groups to add this group to" -msgstr "" - -#: src/tools/sss_groupmod.c:46 -msgid "Groups to remove this group from" -msgstr "" - -#: src/tools/sss_groupmod.c:84 src/tools/sss_usermod.c:93 -msgid "Specify group to remove from\n" -msgstr "" - -#: src/tools/sss_groupmod.c:98 -msgid "Specify group to modify\n" -msgstr "" - -#: src/tools/sss_groupmod.c:126 -msgid "" -"Cannot find group in local domain, modifying groups is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_groupmod.c:147 src/tools/sss_groupmod.c:174 -msgid "Member groups must be in the same domain as parent group\n" -msgstr "" - -#: src/tools/sss_groupmod.c:155 src/tools/sss_groupmod.c:182 -#: src/tools/sss_usermod.c:176 src/tools/sss_usermod.c:203 -#, c-format -msgid "" -"Cannot find group %s in local domain, only groups in local domain are " -"allowed\n" -msgstr "" - -#: src/tools/sss_groupmod.c:216 -msgid "Could not modify group - check if member group names are correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:220 -msgid "Could not modify group - check if groupname is correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:224 -msgid "Transaction error. Could not modify group.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:562 -#, c-format -msgid "%s%sGroup: %s\n" -msgstr "" - -#: src/tools/sss_groupshow.c:563 -msgid "Magic Private " -msgstr "" - -#: src/tools/sss_groupshow.c:565 -#, c-format -msgid "%sGID number: %d\n" -msgstr "" - -#: src/tools/sss_groupshow.c:567 -#, c-format -msgid "%sMember users: " -msgstr "" - -#: src/tools/sss_groupshow.c:574 -#, c-format -msgid "" -"\n" -"%sIs a member of: " -msgstr "" - -#: src/tools/sss_groupshow.c:581 -#, c-format -msgid "" -"\n" -"%sMember groups: " -msgstr "" - -#: src/tools/sss_groupshow.c:617 -msgid "Print indirect group members recursively" -msgstr "" - -#: src/tools/sss_groupshow.c:650 -msgid "Specify group to show\n" -msgstr "" - -#: src/tools/sss_groupshow.c:689 -msgid "" -"No such group in local domain. Printing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:694 -msgid "Internal error. Could not print group.\n" -msgstr "" - -#: src/tools/sss_userdel.c:133 -msgid "Remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:135 -msgid "Do not remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:137 -msgid "Force removal of files not owned by the user" -msgstr "" - -#: src/tools/sss_userdel.c:139 -msgid "Kill users' processes before removing him" -msgstr "" - -#: src/tools/sss_userdel.c:184 -msgid "Specify user to delete\n" -msgstr "" - -#: src/tools/sss_userdel.c:230 -#, c-format -msgid "User %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_userdel.c:255 -msgid "Cannot reset SELinux login context\n" -msgstr "" - -#: src/tools/sss_userdel.c:267 -#, c-format -msgid "WARNING: The user (uid %lu) was still logged in when deleted.\n" -msgstr "" - -#: src/tools/sss_userdel.c:272 -msgid "Cannot determine if the user was logged in on this platform" -msgstr "" - -#: src/tools/sss_userdel.c:277 -msgid "Error while checking if the user was logged in\n" -msgstr "" - -#: src/tools/sss_userdel.c:284 -#, c-format -msgid "The post-delete command failed: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:296 -msgid "Not removing home dir - not owned by user\n" -msgstr "" - -#: src/tools/sss_userdel.c:298 -#, c-format -msgid "Cannot remove homedir: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:309 -msgid "" -"No such user in local domain. Removing users only allowed in local domain.\n" -msgstr "" - -#: src/tools/sss_userdel.c:314 -msgid "Internal error. Could not remove user.\n" -msgstr "" - -#: src/tools/sss_usermod.c:49 -msgid "The GID of the user" -msgstr "" - -#: src/tools/sss_usermod.c:53 -msgid "Groups to add this user to" -msgstr "" - -#: src/tools/sss_usermod.c:54 -msgid "Groups to remove this user from" -msgstr "" - -#: src/tools/sss_usermod.c:55 -msgid "Lock the account" -msgstr "" - -#: src/tools/sss_usermod.c:56 -msgid "Unlock the account" -msgstr "" - -#: src/tools/sss_usermod.c:117 -msgid "Specify user to modify\n" -msgstr "" - -#: src/tools/sss_usermod.c:144 -msgid "" -"Cannot find user in local domain, modifying users is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_usermod.c:246 -msgid "Could not modify user - check if group names are correct\n" -msgstr "" - -#: src/tools/sss_usermod.c:250 -msgid "Could not modify user - user already member of groups?\n" -msgstr "" - -#: src/tools/sss_usermod.c:254 -msgid "Transaction error. Could not modify user.\n" -msgstr "" - -#: src/tools/sss_cache.c:132 -#, c-format -msgid "Couldn't invalidate %s" -msgstr "" - -#: src/tools/sss_cache.c:138 -#, c-format -msgid "Couldn't invalidate %s %s" -msgstr "" - -#: src/tools/sss_cache.c:262 -msgid "Invalidate particular user" -msgstr "" - -#: src/tools/sss_cache.c:264 -msgid "Invalidate all users" -msgstr "" - -#: src/tools/sss_cache.c:266 -msgid "Invalidate particular group" -msgstr "" - -#: src/tools/sss_cache.c:268 -msgid "Invalidate all groups" -msgstr "" - -#: src/tools/sss_cache.c:270 -msgid "Invalidate particular netgroup" -msgstr "" - -#: src/tools/sss_cache.c:272 -msgid "Invalidate all netgroups" -msgstr "" - -#: src/tools/sss_cache.c:274 -msgid "Only invalidate entries from a particular domain" -msgstr "" - -#: src/tools/sss_debuglevel.c:43 -msgid "\n" -msgstr "" - -#: src/tools/sss_debuglevel.c:102 -msgid "Specify debug level you want to set\n" -msgstr "" - -#: src/tools/tools_util.c:286 -msgid "Out of memory\n" -msgstr "" - -#: src/tools/tools_util.h:40 -#, c-format -msgid "%s must be run as root\n" -msgstr "" - -#: src/util/util.h:91 -msgid "Send the debug output to files instead of stderr" -msgstr "" diff --git a/po/pl.po b/po/pl.po index dfc2ed683..d5aff9e47 100644 --- a/po/pl.po +++ b/po/pl.po @@ -9,8 +9,8 @@ msgid "" msgstr "" "Project-Id-Version: SSSD\n" "Report-Msgid-Bugs-To: sssd-devel@lists.fedorahosted.org\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2012-02-24 19:08+0000\n" +"POT-Creation-Date: 2012-03-12 16:26-0400\n" +"PO-Revision-Date: 2012-03-08 11:41+0000\n" "Last-Translator: Piotr Drąg \n" "Language-Team: Polish (http://www.transifex.net/projects/p/fedora/language/" "pl/)\n" @@ -851,7 +851,6 @@ msgid "Automounter map entry value attribute" msgstr "Atrybut wartości wpisu mapy automountera" #: src/config/SSSDConfig.py:290 -#, fuzzy msgid "Base DN for automounter map lookups" msgstr "Podstawowe DN dla wyszukiwań map automountera" @@ -914,7 +913,7 @@ msgstr "Wyświetlanie dat z mikrosekundami" msgid "An open file descriptor for the debug logs" msgstr "Otwiera deskryptor pliku dla dzienników debugowania" -#: src/providers/data_provider_be.c:1938 +#: src/providers/data_provider_be.c:2022 msgid "Domain of the information provider (mandatory)" msgstr "Domena dostawcy informacji (wymagane)" @@ -1015,9 +1014,8 @@ msgstr "Poziom debugowania, z jakim uruchomić" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:42 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:215 -#, fuzzy msgid "The SSSD domain to use" -msgstr "Domeny SSSD do uruchomienia" +msgstr "Domena SSSD do użycia" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:58 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:229 src/tools/sss_useradd.c:71 @@ -1032,42 +1030,41 @@ msgstr "Błąd podczas ustawiania lokalizacji\n" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:91 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:236 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:269 -#, fuzzy msgid "Not enough memory\n" msgstr "Brak pamięci\n" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:84 msgid "User not specified\n" -msgstr "" +msgstr "Nie podano użytkownika\n" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:104 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:282 msgid "Error looking up public keys\n" -msgstr "" +msgstr "Błąd podczas wyszukiwania kluczy publicznych\n" #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:94 msgid "Failed to open a socket\n" -msgstr "" +msgstr "Otwarcie gniazda się nie powiodło\n" #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:104 msgid "Failed to connect to the server\n" -msgstr "" +msgstr "Połączenie z serwerem się nie powiodło\n" #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:195 msgid "Failed to execute proxy command\n" -msgstr "" +msgstr "Wykonanie polecenia pośrednika się nie powiodło\n" #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:213 msgid "The port to use to connect to the host" -msgstr "" +msgstr "Port do użycia do połączenia z komputerem" #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:255 msgid "Host not specified\n" -msgstr "" +msgstr "Nie podano komputera\n" #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:261 msgid "The path to the proxy command must be absolute\n" -msgstr "" +msgstr "Ścieżka do polecenia pośrednika musi być bezwzględna\n" #: src/tools/sss_useradd.c:49 src/tools/sss_usermod.c:48 msgid "The UID of the user" @@ -1474,49 +1471,48 @@ msgstr "Błąd transakcji. Nie można zmodyfikować użytkownika.\n" #: src/tools/sss_cache.c:132 #, c-format msgid "Couldn't invalidate %s" -msgstr "" +msgstr "Nie można unieważnić %s" #: src/tools/sss_cache.c:138 #, c-format msgid "Couldn't invalidate %s %s" -msgstr "" +msgstr "Nie można unieważnić %s %s" #: src/tools/sss_cache.c:262 msgid "Invalidate particular user" -msgstr "" +msgstr "Unieważnia podanego użytkownika" #: src/tools/sss_cache.c:264 msgid "Invalidate all users" -msgstr "" +msgstr "Unieważnia wszystkich użytkowników" #: src/tools/sss_cache.c:266 msgid "Invalidate particular group" -msgstr "" +msgstr "Unieważnia podaną grupę" #: src/tools/sss_cache.c:268 msgid "Invalidate all groups" -msgstr "" +msgstr "Unieważnia wszystkie grupy" #: src/tools/sss_cache.c:270 msgid "Invalidate particular netgroup" -msgstr "" +msgstr "Unieważnia podaną grupę sieciową" #: src/tools/sss_cache.c:272 msgid "Invalidate all netgroups" -msgstr "" +msgstr "Unieważnia wszystkie grupy sieciowe" #: src/tools/sss_cache.c:274 msgid "Only invalidate entries from a particular domain" -msgstr "" +msgstr "Unieważnia wpisy tylko z podanej domeny" #: src/tools/sss_debuglevel.c:43 msgid "\n" -msgstr "" +msgstr "\n" #: src/tools/sss_debuglevel.c:102 -#, fuzzy msgid "Specify debug level you want to set\n" -msgstr "Poziom debugowania, z jakim uruchomić" +msgstr "Podaje poziom debugowania do ustawienia\n" #: src/tools/tools_util.c:286 msgid "Out of memory\n" diff --git a/po/pt.po b/po/pt.po index 04a034a6e..235802fcd 100644 --- a/po/pt.po +++ b/po/pt.po @@ -7,8 +7,8 @@ msgid "" msgstr "" "Project-Id-Version: SSSD\n" "Report-Msgid-Bugs-To: sssd-devel@lists.fedorahosted.org\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2011-12-21 10:11+0000\n" +"POT-Creation-Date: 2012-03-12 16:26-0400\n" +"PO-Revision-Date: 2012-03-08 11:41+0000\n" "Last-Translator: sgallagh \n" "Language-Team: Portuguese \n" "Language: pt\n" @@ -175,24 +175,20 @@ msgid "Password change provider" msgstr "Fornecedor de Alteração de Senha" #: src/config/SSSDConfig.py:88 -#, fuzzy msgid "SUDO provider" -msgstr "Fornecedor de identidade" +msgstr "" #: src/config/SSSDConfig.py:89 -#, fuzzy msgid "Autofs provider" -msgstr "Fornecedor de autenticação" +msgstr "" #: src/config/SSSDConfig.py:90 -#, fuzzy msgid "Session-loading provider" -msgstr "Fornecedor de controle de acesso" +msgstr "" #: src/config/SSSDConfig.py:91 -#, fuzzy msgid "Host identity provider" -msgstr "Fornecedor de identidade" +msgstr "" #: src/config/SSSDConfig.py:94 msgid "Minimum user ID" @@ -643,9 +639,8 @@ msgid "loginAllowedTimeMap attribute of NDS" msgstr "" #: src/config/SSSDConfig.py:226 -#, fuzzy msgid "SSH public key attribute" -msgstr "Atributo da pasta pessoal" +msgstr "" #: src/config/SSSDConfig.py:228 msgid "Base DN for group lookups" @@ -712,29 +707,24 @@ msgid "Modification time attribute for netgroups" msgstr "" #: src/config/SSSDConfig.py:249 -#, fuzzy msgid "Base DN for service lookups" -msgstr "DN base para pesquisa de utilizadores" +msgstr "" #: src/config/SSSDConfig.py:250 -#, fuzzy msgid "Objectclass for services" -msgstr "Objectclass para utilizadores" +msgstr "" #: src/config/SSSDConfig.py:251 -#, fuzzy msgid "Service name attribute" -msgstr "Atributo do nome do utilizador" +msgstr "" #: src/config/SSSDConfig.py:252 -#, fuzzy msgid "Service port attribute" -msgstr "Atributo da pasta pessoal" +msgstr "" #: src/config/SSSDConfig.py:253 -#, fuzzy msgid "Service protocol attribute" -msgstr "Atributo da Shell" +msgstr "" #: src/config/SSSDConfig.py:257 msgid "Policy to evaluate the password expiration" @@ -761,100 +751,84 @@ msgid "DNS service name for LDAP password change server" msgstr "" #: src/config/SSSDConfig.py:269 -#, fuzzy msgid "Base DN for sudo rules lookups" -msgstr "DN base para pesquisa de utilizadores" +msgstr "" #: src/config/SSSDConfig.py:270 msgid "Enable periodical update of all sudo rules" msgstr "" #: src/config/SSSDConfig.py:271 -#, fuzzy msgid "Length of time between rules updates" -msgstr "Período de tempo entre enumeração de actualizações" +msgstr "" #: src/config/SSSDConfig.py:272 -#, fuzzy msgid "Object class for sudo rules" -msgstr "Objectclass para utilizadores" +msgstr "" #: src/config/SSSDConfig.py:273 msgid "Sudo rule name" msgstr "" #: src/config/SSSDConfig.py:274 -#, fuzzy msgid "Sudo rule command attribute" -msgstr "Atributo da pasta pessoal" +msgstr "" #: src/config/SSSDConfig.py:275 -#, fuzzy msgid "Sudo rule host attribute" -msgstr "Atributo da pasta pessoal" +msgstr "" #: src/config/SSSDConfig.py:276 -#, fuzzy msgid "Sudo rule user attribute" -msgstr "Atributo da pasta pessoal" +msgstr "" #: src/config/SSSDConfig.py:277 -#, fuzzy msgid "Sudo rule option attribute" -msgstr "Atributo da pasta pessoal" +msgstr "" #: src/config/SSSDConfig.py:278 -#, fuzzy msgid "Sudo rule runasuser attribute" -msgstr "Atributo do nome do utilizador" +msgstr "" #: src/config/SSSDConfig.py:279 msgid "Sudo rule runasgroup attribute" msgstr "" #: src/config/SSSDConfig.py:280 -#, fuzzy msgid "Sudo rule notbefore attribute" -msgstr "Atributo da pasta pessoal" +msgstr "" #: src/config/SSSDConfig.py:281 -#, fuzzy msgid "Sudo rule notafter attribute" -msgstr "Atributo da pasta pessoal" +msgstr "" #: src/config/SSSDConfig.py:282 -#, fuzzy msgid "Sudo rule order attribute" -msgstr "Atributo da pasta pessoal" +msgstr "" #: src/config/SSSDConfig.py:285 -#, fuzzy msgid "Object class for automounter maps" -msgstr "Objectclass para utilizadores" +msgstr "" #: src/config/SSSDConfig.py:286 -#, fuzzy msgid "Automounter map name attribute" -msgstr "Atributo do nome do utilizador" +msgstr "" #: src/config/SSSDConfig.py:287 -#, fuzzy msgid "Object class for automounter map entries" -msgstr "Objectclass para utilizadores" +msgstr "" #: src/config/SSSDConfig.py:288 -#, fuzzy msgid "Automounter map entry key attribute" -msgstr "Atributo da pasta pessoal" +msgstr "" #: src/config/SSSDConfig.py:289 msgid "Automounter map entry value attribute" msgstr "" #: src/config/SSSDConfig.py:290 -#, fuzzy msgid "Base DN for automounter map lookups" -msgstr "DN base para pesquisa de utilizadores" +msgstr "" #: src/config/SSSDConfig.py:293 msgid "Comma separated list of allowed users" @@ -915,7 +889,7 @@ msgstr "" msgid "An open file descriptor for the debug logs" msgstr "Um descritor de ficheiro aberto para os registos de depuração" -#: src/providers/data_provider_be.c:1938 +#: src/providers/data_provider_be.c:2022 msgid "Domain of the information provider (mandatory)" msgstr "Domínio do fornecedor de informação (obrigatório)" @@ -1016,9 +990,8 @@ msgstr "O nível de depuração a utilizar durante a execução" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:42 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:215 -#, fuzzy msgid "The SSSD domain to use" -msgstr "Domínios SSSD a iniciar" +msgstr "" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:58 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:229 src/tools/sss_useradd.c:71 @@ -1033,9 +1006,8 @@ msgstr "Erro ao definir a configuração regional\n" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:91 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:236 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:269 -#, fuzzy msgid "Not enough memory\n" -msgstr "Memória esgotada\n" +msgstr "" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:84 msgid "User not specified\n" @@ -1509,9 +1481,8 @@ msgid "\n" msgstr "" #: src/tools/sss_debuglevel.c:102 -#, fuzzy msgid "Specify debug level you want to set\n" -msgstr "O nível de depuração a utilizar durante a execução" +msgstr "" #: src/tools/tools_util.c:286 msgid "Out of memory\n" diff --git a/po/pt_BR.po b/po/pt_BR.po deleted file mode 100644 index 2647252bc..000000000 --- a/po/pt_BR.po +++ /dev/null @@ -1,1462 +0,0 @@ -# SOME DESCRIPTIVE TITLE. -# Copyright (C) YEAR Red Hat, Inc. -# This file is distributed under the same license as the PACKAGE package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@lists.fedorahosted.org\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-11-30 04:10+0000\n" -"Last-Translator: FULL NAME \n" -"Language-Team: Portuguese (Brazilian) \n" -"Language: pt_BR\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=2; plural=(n > 1)\n" - -#: src/config/SSSDConfig.py:39 -msgid "Set the verbosity of the debug logging" -msgstr "" - -#: src/config/SSSDConfig.py:40 -msgid "Include timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:41 -msgid "Include microseconds in timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:42 -msgid "Write debug messages to logfiles" -msgstr "" - -#: src/config/SSSDConfig.py:43 -msgid "Ping timeout before restarting service" -msgstr "" - -#: src/config/SSSDConfig.py:44 -msgid "Command to start service" -msgstr "" - -#: src/config/SSSDConfig.py:45 -msgid "Number of times to attempt connection to Data Providers" -msgstr "" - -#: src/config/SSSDConfig.py:48 -msgid "SSSD Services to start" -msgstr "" - -#: src/config/SSSDConfig.py:49 -msgid "SSSD Domains to start" -msgstr "" - -#: src/config/SSSDConfig.py:50 -msgid "Timeout for messages sent over the SBUS" -msgstr "" - -#: src/config/SSSDConfig.py:51 -msgid "Regex to parse username and domain" -msgstr "" - -#: src/config/SSSDConfig.py:52 -msgid "Printf-compatible format for displaying fully-qualified names" -msgstr "" - -#: src/config/SSSDConfig.py:53 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#: src/config/SSSDConfig.py:56 -msgid "Enumeration cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:57 -msgid "Entry cache background update timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:58 src/config/SSSDConfig.py:81 -msgid "Negative cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:59 -msgid "Users that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:60 -msgid "Groups that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:61 -msgid "Should filtered users appear in groups" -msgstr "" - -#: src/config/SSSDConfig.py:62 -msgid "The value of the password field the NSS provider should return" -msgstr "" - -#: src/config/SSSDConfig.py:63 -msgid "Override homedir value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:64 -msgid "The list of shells users are allowed to log in with" -msgstr "" - -#: src/config/SSSDConfig.py:65 -msgid "" -"The list of shells that will be vetoed, and replaced with the fallback shell" -msgstr "" - -#: src/config/SSSDConfig.py:66 -msgid "" -"If a shell stored in central directory is allowed but not available, use " -"this fallback" -msgstr "" - -#: src/config/SSSDConfig.py:69 -msgid "How long to allow cached logins between online logins (days)" -msgstr "" - -#: src/config/SSSDConfig.py:70 -msgid "How many failed logins attempts are allowed when offline" -msgstr "" - -#: src/config/SSSDConfig.py:71 -msgid "" -"How long (minutes) to deny login after offline_failed_login_attempts has " -"been reached" -msgstr "" - -#: src/config/SSSDConfig.py:72 -msgid "What kind of messages are displayed to the user during authentication" -msgstr "" - -#: src/config/SSSDConfig.py:73 -msgid "How many seconds to keep identity information cached for PAM requests" -msgstr "" - -#: src/config/SSSDConfig.py:74 -msgid "How many days before password expiration a warning should be displayed" -msgstr "" - -#: src/config/SSSDConfig.py:77 -msgid "Whether to evaluate the time-based attributes in sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:78 -msgid "" -"How many seconds to keep sudorules cached before asking the provider again" -msgstr "" - -#: src/config/SSSDConfig.py:84 -msgid "Identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:85 -msgid "Authentication provider" -msgstr "" - -#: src/config/SSSDConfig.py:86 -msgid "Access control provider" -msgstr "" - -#: src/config/SSSDConfig.py:87 -msgid "Password change provider" -msgstr "" - -#: src/config/SSSDConfig.py:88 -msgid "SUDO provider" -msgstr "" - -#: src/config/SSSDConfig.py:89 -msgid "Autofs provider" -msgstr "" - -#: src/config/SSSDConfig.py:90 -msgid "Session-loading provider" -msgstr "" - -#: src/config/SSSDConfig.py:91 -msgid "Host identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:94 -msgid "Minimum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:95 -msgid "Maximum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:96 -msgid "Enable enumerating all users/groups" -msgstr "" - -#: src/config/SSSDConfig.py:97 -msgid "Cache credentials for offline login" -msgstr "" - -#: src/config/SSSDConfig.py:98 -msgid "Store password hashes" -msgstr "" - -#: src/config/SSSDConfig.py:99 -msgid "Display users/groups in fully-qualified form" -msgstr "" - -#: src/config/SSSDConfig.py:100 src/config/SSSDConfig.py:107 -#: src/config/SSSDConfig.py:108 src/config/SSSDConfig.py:109 -#: src/config/SSSDConfig.py:110 src/config/SSSDConfig.py:111 -msgid "Entry cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:101 -msgid "" -"Restrict or prefer a specific address family when performing DNS lookups" -msgstr "" - -#: src/config/SSSDConfig.py:102 -msgid "How long to keep cached entries after last successful login (days)" -msgstr "" - -#: src/config/SSSDConfig.py:103 -msgid "How long to wait for replies from DNS when resolving servers (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:104 -msgid "The domain part of service discovery DNS query" -msgstr "" - -#: src/config/SSSDConfig.py:105 -msgid "Override GID value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:106 -msgid "Treat usernames as case sensitive" -msgstr "" - -#: src/config/SSSDConfig.py:114 -msgid "IPA domain" -msgstr "" - -#: src/config/SSSDConfig.py:115 -msgid "IPA server address" -msgstr "" - -#: src/config/SSSDConfig.py:116 -msgid "IPA client hostname" -msgstr "" - -#: src/config/SSSDConfig.py:117 -msgid "Whether to automatically update the client's DNS entry in FreeIPA" -msgstr "" - -#: src/config/SSSDConfig.py:118 -msgid "The interface whose IP should be used for dynamic DNS updates" -msgstr "" - -#: src/config/SSSDConfig.py:119 -msgid "Search base for HBAC related objects" -msgstr "" - -#: src/config/SSSDConfig.py:120 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server" -msgstr "" - -#: src/config/SSSDConfig.py:121 -msgid "If DENY rules are present, either DENY_ALL or IGNORE" -msgstr "" - -#: src/config/SSSDConfig.py:122 -msgid "If set to false, host argument given by PAM will be ignored" -msgstr "" - -#: src/config/SSSDConfig.py:123 -msgid "The automounter location this IPA client is using" -msgstr "" - -#: src/config/SSSDConfig.py:126 src/config/SSSDConfig.py:127 -msgid "Kerberos server address" -msgstr "" - -#: src/config/SSSDConfig.py:128 -msgid "Kerberos realm" -msgstr "" - -#: src/config/SSSDConfig.py:129 -msgid "Authentication timeout" -msgstr "" - -#: src/config/SSSDConfig.py:132 -msgid "Directory to store credential caches" -msgstr "" - -#: src/config/SSSDConfig.py:133 -msgid "Location of the user's credential cache" -msgstr "" - -#: src/config/SSSDConfig.py:134 -msgid "Location of the keytab to validate credentials" -msgstr "" - -#: src/config/SSSDConfig.py:135 -msgid "Enable credential validation" -msgstr "" - -#: src/config/SSSDConfig.py:136 -msgid "Store password if offline for later online authentication" -msgstr "" - -#: src/config/SSSDConfig.py:137 -msgid "Renewable lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:138 -msgid "Lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:139 -msgid "Time between two checks for renewal" -msgstr "" - -#: src/config/SSSDConfig.py:140 -msgid "Enables FAST" -msgstr "" - -#: src/config/SSSDConfig.py:141 -msgid "Selects the principal to use for FAST" -msgstr "" - -#: src/config/SSSDConfig.py:142 -msgid "Enables principal canonicalization" -msgstr "" - -#: src/config/SSSDConfig.py:145 -msgid "Server where the change password service is running if not on the KDC" -msgstr "" - -#: src/config/SSSDConfig.py:148 -msgid "ldap_uri, The URI of the LDAP server" -msgstr "" - -#: src/config/SSSDConfig.py:149 -msgid "The default base DN" -msgstr "" - -#: src/config/SSSDConfig.py:150 -msgid "The Schema Type in use on the LDAP server, rfc2307" -msgstr "" - -#: src/config/SSSDConfig.py:151 -msgid "The default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:152 -msgid "The type of the authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:153 -msgid "The authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:154 -msgid "Length of time to attempt connection" -msgstr "" - -#: src/config/SSSDConfig.py:155 -msgid "Length of time to attempt synchronous LDAP operations" -msgstr "" - -#: src/config/SSSDConfig.py:156 -msgid "Length of time between attempts to reconnect while offline" -msgstr "" - -#: src/config/SSSDConfig.py:157 -msgid "Use only the upper case for realm names" -msgstr "" - -#: src/config/SSSDConfig.py:158 -msgid "File that contains CA certificates" -msgstr "" - -#: src/config/SSSDConfig.py:159 -msgid "Path to CA certificate directory" -msgstr "" - -#: src/config/SSSDConfig.py:160 -msgid "File that contains the client certificate" -msgstr "" - -#: src/config/SSSDConfig.py:161 -msgid "File that contains the client key" -msgstr "" - -#: src/config/SSSDConfig.py:162 -msgid "List of possible ciphers suites" -msgstr "" - -#: src/config/SSSDConfig.py:163 -msgid "Require TLS certificate verification" -msgstr "" - -#: src/config/SSSDConfig.py:164 -msgid "Specify the sasl mechanism to use" -msgstr "" - -#: src/config/SSSDConfig.py:165 -msgid "Specify the sasl authorization id to use" -msgstr "" - -#: src/config/SSSDConfig.py:166 -msgid "Specify the sasl authorization realm to use" -msgstr "" - -#: src/config/SSSDConfig.py:167 -msgid "Specify the minimal SSF for LDAP sasl authorization" -msgstr "" - -#: src/config/SSSDConfig.py:168 -msgid "Kerberos service keytab" -msgstr "" - -#: src/config/SSSDConfig.py:169 -msgid "Use Kerberos auth for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:170 -msgid "Follow LDAP referrals" -msgstr "" - -#: src/config/SSSDConfig.py:171 -msgid "Lifetime of TGT for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:172 -msgid "How to dereference aliases" -msgstr "" - -#: src/config/SSSDConfig.py:173 -msgid "Service name for DNS service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:174 -msgid "The number of records to retrieve in a single LDAP query" -msgstr "" - -#: src/config/SSSDConfig.py:175 -msgid "The number of members that must be missing to trigger a full deref" -msgstr "" - -#: src/config/SSSDConfig.py:176 -msgid "" -"Whether the LDAP library should perform a reverse lookup to canonicalize the " -"host name during a SASL bind" -msgstr "" - -#: src/config/SSSDConfig.py:178 -msgid "entryUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:179 -msgid "lastUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:181 -msgid "How long to retain a connection to the LDAP server before disconnecting" -msgstr "" - -#: src/config/SSSDConfig.py:183 -msgid "Disable the LDAP paging control" -msgstr "" - -#: src/config/SSSDConfig.py:186 -msgid "Length of time to wait for a search request" -msgstr "" - -#: src/config/SSSDConfig.py:187 -msgid "Length of time to wait for a enumeration request" -msgstr "" - -#: src/config/SSSDConfig.py:188 -msgid "Length of time between enumeration updates" -msgstr "" - -#: src/config/SSSDConfig.py:189 -msgid "Length of time between cache cleanups" -msgstr "" - -#: src/config/SSSDConfig.py:190 -msgid "Require TLS for ID lookups" -msgstr "" - -#: src/config/SSSDConfig.py:191 -msgid "Base DN for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:192 -msgid "Scope of user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:193 -msgid "Filter for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:194 -msgid "Objectclass for users" -msgstr "" - -#: src/config/SSSDConfig.py:195 -msgid "Username attribute" -msgstr "" - -#: src/config/SSSDConfig.py:197 -msgid "UID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:198 -msgid "Primary GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:199 -msgid "GECOS attribute" -msgstr "" - -#: src/config/SSSDConfig.py:200 -msgid "Home directory attribute" -msgstr "" - -#: src/config/SSSDConfig.py:201 -msgid "Shell attribute" -msgstr "" - -#: src/config/SSSDConfig.py:202 -msgid "UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:203 -msgid "User principal attribute (for Kerberos)" -msgstr "" - -#: src/config/SSSDConfig.py:204 -msgid "Full Name" -msgstr "" - -#: src/config/SSSDConfig.py:205 -msgid "memberOf attribute" -msgstr "" - -#: src/config/SSSDConfig.py:206 -msgid "Modification time attribute" -msgstr "" - -#: src/config/SSSDConfig.py:208 -msgid "shadowLastChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:209 -msgid "shadowMin attribute" -msgstr "" - -#: src/config/SSSDConfig.py:210 -msgid "shadowMax attribute" -msgstr "" - -#: src/config/SSSDConfig.py:211 -msgid "shadowWarning attribute" -msgstr "" - -#: src/config/SSSDConfig.py:212 -msgid "shadowInactive attribute" -msgstr "" - -#: src/config/SSSDConfig.py:213 -msgid "shadowExpire attribute" -msgstr "" - -#: src/config/SSSDConfig.py:214 -msgid "shadowFlag attribute" -msgstr "" - -#: src/config/SSSDConfig.py:215 -msgid "Attribute listing authorized PAM services" -msgstr "" - -#: src/config/SSSDConfig.py:216 -msgid "Attribute listing authorized server hosts" -msgstr "" - -#: src/config/SSSDConfig.py:217 -msgid "krbLastPwdChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:218 -msgid "krbPasswordExpiration attribute" -msgstr "" - -#: src/config/SSSDConfig.py:219 -msgid "Attribute indicating that server side password policies are active" -msgstr "" - -#: src/config/SSSDConfig.py:220 -msgid "accountExpires attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:221 -msgid "userAccountControl attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:222 -msgid "nsAccountLock attribute" -msgstr "" - -#: src/config/SSSDConfig.py:223 -msgid "loginDisabled attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:224 -msgid "loginExpirationTime attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:225 -msgid "loginAllowedTimeMap attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:226 -msgid "SSH public key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:228 -msgid "Base DN for group lookups" -msgstr "" - -#: src/config/SSSDConfig.py:231 -msgid "Objectclass for groups" -msgstr "" - -#: src/config/SSSDConfig.py:232 -msgid "Group name" -msgstr "" - -#: src/config/SSSDConfig.py:233 -msgid "Group password" -msgstr "" - -#: src/config/SSSDConfig.py:234 -msgid "GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:235 -msgid "Group member attribute" -msgstr "" - -#: src/config/SSSDConfig.py:236 -msgid "Group UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:237 -msgid "Modification time attribute for groups" -msgstr "" - -#: src/config/SSSDConfig.py:239 -msgid "Maximum nesting level SSSd will follow" -msgstr "" - -#: src/config/SSSDConfig.py:241 -msgid "Base DN for netgroup lookups" -msgstr "" - -#: src/config/SSSDConfig.py:242 -msgid "Objectclass for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:243 -msgid "Netgroup name" -msgstr "" - -#: src/config/SSSDConfig.py:244 -msgid "Netgroups members attribute" -msgstr "" - -#: src/config/SSSDConfig.py:245 -msgid "Netgroup triple attribute" -msgstr "" - -#: src/config/SSSDConfig.py:246 -msgid "Netgroup UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:247 -msgid "Modification time attribute for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:249 -msgid "Base DN for service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:250 -msgid "Objectclass for services" -msgstr "" - -#: src/config/SSSDConfig.py:251 -msgid "Service name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:252 -msgid "Service port attribute" -msgstr "" - -#: src/config/SSSDConfig.py:253 -msgid "Service protocol attribute" -msgstr "" - -#: src/config/SSSDConfig.py:257 -msgid "Policy to evaluate the password expiration" -msgstr "" - -#: src/config/SSSDConfig.py:260 -msgid "LDAP filter to determine access privileges" -msgstr "" - -#: src/config/SSSDConfig.py:261 -msgid "Which attributes shall be used to evaluate if an account is expired" -msgstr "" - -#: src/config/SSSDConfig.py:262 -msgid "Which rules should be used to evaluate access control" -msgstr "" - -#: src/config/SSSDConfig.py:265 -msgid "URI of an LDAP server where password changes are allowed" -msgstr "" - -#: src/config/SSSDConfig.py:266 -msgid "DNS service name for LDAP password change server" -msgstr "" - -#: src/config/SSSDConfig.py:269 -msgid "Base DN for sudo rules lookups" -msgstr "" - -#: src/config/SSSDConfig.py:270 -msgid "Enable periodical update of all sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:271 -msgid "Length of time between rules updates" -msgstr "" - -#: src/config/SSSDConfig.py:272 -msgid "Object class for sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:273 -msgid "Sudo rule name" -msgstr "" - -#: src/config/SSSDConfig.py:274 -msgid "Sudo rule command attribute" -msgstr "" - -#: src/config/SSSDConfig.py:275 -msgid "Sudo rule host attribute" -msgstr "" - -#: src/config/SSSDConfig.py:276 -msgid "Sudo rule user attribute" -msgstr "" - -#: src/config/SSSDConfig.py:277 -msgid "Sudo rule option attribute" -msgstr "" - -#: src/config/SSSDConfig.py:278 -msgid "Sudo rule runasuser attribute" -msgstr "" - -#: src/config/SSSDConfig.py:279 -msgid "Sudo rule runasgroup attribute" -msgstr "" - -#: src/config/SSSDConfig.py:280 -msgid "Sudo rule notbefore attribute" -msgstr "" - -#: src/config/SSSDConfig.py:281 -msgid "Sudo rule notafter attribute" -msgstr "" - -#: src/config/SSSDConfig.py:282 -msgid "Sudo rule order attribute" -msgstr "" - -#: src/config/SSSDConfig.py:285 -msgid "Object class for automounter maps" -msgstr "" - -#: src/config/SSSDConfig.py:286 -msgid "Automounter map name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:287 -msgid "Object class for automounter map entries" -msgstr "" - -#: src/config/SSSDConfig.py:288 -msgid "Automounter map entry key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:289 -msgid "Automounter map entry value attribute" -msgstr "" - -#: src/config/SSSDConfig.py:290 -msgid "Base DN for automounter map lookups" -msgstr "" - -#: src/config/SSSDConfig.py:293 -msgid "Comma separated list of allowed users" -msgstr "" - -#: src/config/SSSDConfig.py:294 -msgid "Comma separated list of prohibited users" -msgstr "" - -#: src/config/SSSDConfig.py:297 -msgid "Default shell, /bin/bash" -msgstr "" - -#: src/config/SSSDConfig.py:298 -msgid "Base for home directories" -msgstr "" - -#: src/config/SSSDConfig.py:301 -msgid "The name of the NSS library to use" -msgstr "" - -#: src/config/SSSDConfig.py:304 -msgid "PAM stack to use" -msgstr "" - -#: src/monitor/monitor.c:2379 -msgid "Become a daemon (default)" -msgstr "" - -#: src/monitor/monitor.c:2381 -msgid "Run interactive (not a daemon)" -msgstr "" - -#: src/monitor/monitor.c:2383 src/tools/sss_debuglevel.c:77 -msgid "Specify a non-default config file" -msgstr "" - -#: src/monitor/monitor.c:2385 -msgid "Print version number and exit" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1575 src/providers/ldap/ldap_child.c:381 -#: src/util/util.h:89 -msgid "Debug level" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1577 src/providers/ldap/ldap_child.c:383 -#: src/util/util.h:93 -msgid "Add debug timestamps" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1579 src/providers/ldap/ldap_child.c:385 -#: src/util/util.h:95 -msgid "Show timestamps with microseconds" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1581 src/providers/ldap/ldap_child.c:387 -msgid "An open file descriptor for the debug logs" -msgstr "" - -#: src/providers/data_provider_be.c:1938 -msgid "Domain of the information provider (mandatory)" -msgstr "" - -#: src/sss_client/common.c:878 -msgid "Privileged socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:881 -msgid "Public socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:884 -msgid "Unexpected format of the server credential message." -msgstr "" - -#: src/sss_client/common.c:887 -msgid "SSSD is not run by root." -msgstr "" - -#: src/sss_client/common.c:892 -msgid "An error occurred, but no description can be found." -msgstr "" - -#: src/sss_client/common.c:898 -msgid "Unexpected error while looking for an error description" -msgstr "" - -#: src/sss_client/pam_sss.c:378 -msgid "Passwords do not match" -msgstr "" - -#: src/sss_client/pam_sss.c:571 -msgid "Password reset by root is not supported." -msgstr "" - -#: src/sss_client/pam_sss.c:612 -msgid "Authenticated with cached credentials" -msgstr "" - -#: src/sss_client/pam_sss.c:613 -msgid ", your cached password will expire at: " -msgstr "" - -#: src/sss_client/pam_sss.c:643 -#, c-format -msgid "Your password has expired. You have %d grace login(s) remaining." -msgstr "" - -#: src/sss_client/pam_sss.c:689 -#, c-format -msgid "Your password will expire in %d %s." -msgstr "" - -#: src/sss_client/pam_sss.c:738 -msgid "Authentication is denied until: " -msgstr "" - -#: src/sss_client/pam_sss.c:759 -msgid "System is offline, password change not possible" -msgstr "" - -#: src/sss_client/pam_sss.c:789 src/sss_client/pam_sss.c:802 -msgid "Password change failed. " -msgstr "" - -#: src/sss_client/pam_sss.c:792 src/sss_client/pam_sss.c:803 -msgid "Server message: " -msgstr "" - -#: src/sss_client/pam_sss.c:1286 -msgid "New Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1287 -msgid "Reenter new Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1373 -msgid "Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1405 -msgid "Current Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1552 -msgid "Password expired. Change your password now." -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:40 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:211 src/tools/sss_useradd.c:48 -#: src/tools/sss_groupadd.c:41 src/tools/sss_groupdel.c:43 -#: src/tools/sss_groupmod.c:42 src/tools/sss_groupshow.c:615 -#: src/tools/sss_userdel.c:131 src/tools/sss_usermod.c:47 -#: src/tools/sss_cache.c:260 src/tools/sss_debuglevel.c:75 -msgid "The debug level to run with" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:42 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:215 -msgid "The SSSD domain to use" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:58 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:229 src/tools/sss_useradd.c:71 -#: src/tools/sss_groupadd.c:56 src/tools/sss_groupdel.c:52 -#: src/tools/sss_groupmod.c:63 src/tools/sss_groupshow.c:626 -#: src/tools/sss_userdel.c:148 src/tools/sss_usermod.c:72 -#: src/tools/sss_cache.c:281 -msgid "Error setting the locale\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:65 -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:91 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:236 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:269 -msgid "Not enough memory\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:84 -msgid "User not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:104 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:282 -msgid "Error looking up public keys\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:94 -msgid "Failed to open a socket\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:104 -msgid "Failed to connect to the server\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:195 -msgid "Failed to execute proxy command\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:213 -msgid "The port to use to connect to the host" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:255 -msgid "Host not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:261 -msgid "The path to the proxy command must be absolute\n" -msgstr "" - -#: src/tools/sss_useradd.c:49 src/tools/sss_usermod.c:48 -msgid "The UID of the user" -msgstr "" - -#: src/tools/sss_useradd.c:50 src/tools/sss_usermod.c:50 -msgid "The comment string" -msgstr "" - -#: src/tools/sss_useradd.c:51 src/tools/sss_usermod.c:51 -msgid "Home directory" -msgstr "" - -#: src/tools/sss_useradd.c:52 src/tools/sss_usermod.c:52 -msgid "Login shell" -msgstr "" - -#: src/tools/sss_useradd.c:53 -msgid "Groups" -msgstr "" - -#: src/tools/sss_useradd.c:54 -msgid "Create user's directory if it does not exist" -msgstr "" - -#: src/tools/sss_useradd.c:55 -msgid "Never create user's directory, overrides config" -msgstr "" - -#: src/tools/sss_useradd.c:56 -msgid "Specify an alternative skeleton directory" -msgstr "" - -#: src/tools/sss_useradd.c:57 src/tools/sss_usermod.c:57 -msgid "The SELinux user for user's login" -msgstr "" - -#: src/tools/sss_useradd.c:84 src/tools/sss_groupmod.c:76 -#: src/tools/sss_usermod.c:85 -msgid "Specify group to add to\n" -msgstr "" - -#: src/tools/sss_useradd.c:108 -msgid "Specify user to add\n" -msgstr "" - -#: src/tools/sss_useradd.c:117 src/tools/sss_groupadd.c:82 -#: src/tools/sss_groupdel.c:77 src/tools/sss_groupmod.c:109 -#: src/tools/sss_groupshow.c:659 src/tools/sss_userdel.c:193 -#: src/tools/sss_usermod.c:126 -msgid "Error initializing the tools - no local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:119 src/tools/sss_groupadd.c:84 -#: src/tools/sss_groupdel.c:79 src/tools/sss_groupmod.c:111 -#: src/tools/sss_groupshow.c:661 src/tools/sss_userdel.c:195 -#: src/tools/sss_usermod.c:128 -msgid "Error initializing the tools\n" -msgstr "" - -#: src/tools/sss_useradd.c:128 src/tools/sss_groupadd.c:93 -#: src/tools/sss_groupdel.c:88 src/tools/sss_groupmod.c:119 -#: src/tools/sss_groupshow.c:670 src/tools/sss_userdel.c:204 -#: src/tools/sss_usermod.c:137 -msgid "Invalid domain specified in FQDN\n" -msgstr "" - -#: src/tools/sss_useradd.c:137 src/tools/sss_groupmod.c:139 -#: src/tools/sss_groupmod.c:166 src/tools/sss_usermod.c:160 -#: src/tools/sss_usermod.c:187 -msgid "Internal error while parsing parameters\n" -msgstr "" - -#: src/tools/sss_useradd.c:145 src/tools/sss_usermod.c:168 -#: src/tools/sss_usermod.c:195 -msgid "Groups must be in the same domain as user\n" -msgstr "" - -#: src/tools/sss_useradd.c:153 -#, c-format -msgid "Cannot find group %s in local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:168 src/tools/sss_userdel.c:214 -msgid "Cannot set default values\n" -msgstr "" - -#: src/tools/sss_useradd.c:175 src/tools/sss_usermod.c:151 -msgid "The selected UID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_useradd.c:202 src/tools/sss_usermod.c:236 -msgid "Cannot set SELinux login context\n" -msgstr "" - -#: src/tools/sss_useradd.c:217 -msgid "Cannot get info about the user\n" -msgstr "" - -#: src/tools/sss_useradd.c:229 -msgid "User's home directory already exists, not copying data from skeldir\n" -msgstr "" - -#: src/tools/sss_useradd.c:232 -#, c-format -msgid "Cannot create user's home directory: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:243 -#, c-format -msgid "Cannot create user's mail spool: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:255 -msgid "Could not allocate ID for the user - domain full?\n" -msgstr "" - -#: src/tools/sss_useradd.c:259 -msgid "A user or group with the same name or ID already exists\n" -msgstr "" - -#: src/tools/sss_useradd.c:265 -msgid "Transaction error. Could not add user.\n" -msgstr "" - -#: src/tools/sss_groupadd.c:43 src/tools/sss_groupmod.c:48 -msgid "The GID of the group" -msgstr "" - -#: src/tools/sss_groupadd.c:73 -msgid "Specify group to add\n" -msgstr "" - -#: src/tools/sss_groupadd.c:102 src/tools/sss_groupmod.c:190 -msgid "The selected GID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_groupadd.c:127 -msgid "Could not allocate ID for the group - domain full?\n" -msgstr "" - -#: src/tools/sss_groupadd.c:131 -msgid "A group with the same name or GID already exists\n" -msgstr "" - -#: src/tools/sss_groupadd.c:136 -msgid "Transaction error. Could not add group.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:68 -msgid "Specify group to delete\n" -msgstr "" - -#: src/tools/sss_groupdel.c:101 -#, c-format -msgid "Group %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_groupdel.c:115 -msgid "" -"No such group in local domain. Removing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:120 -msgid "Internal error. Could not remove group.\n" -msgstr "" - -#: src/tools/sss_groupmod.c:44 -msgid "Groups to add this group to" -msgstr "" - -#: src/tools/sss_groupmod.c:46 -msgid "Groups to remove this group from" -msgstr "" - -#: src/tools/sss_groupmod.c:84 src/tools/sss_usermod.c:93 -msgid "Specify group to remove from\n" -msgstr "" - -#: src/tools/sss_groupmod.c:98 -msgid "Specify group to modify\n" -msgstr "" - -#: src/tools/sss_groupmod.c:126 -msgid "" -"Cannot find group in local domain, modifying groups is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_groupmod.c:147 src/tools/sss_groupmod.c:174 -msgid "Member groups must be in the same domain as parent group\n" -msgstr "" - -#: src/tools/sss_groupmod.c:155 src/tools/sss_groupmod.c:182 -#: src/tools/sss_usermod.c:176 src/tools/sss_usermod.c:203 -#, c-format -msgid "" -"Cannot find group %s in local domain, only groups in local domain are " -"allowed\n" -msgstr "" - -#: src/tools/sss_groupmod.c:216 -msgid "Could not modify group - check if member group names are correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:220 -msgid "Could not modify group - check if groupname is correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:224 -msgid "Transaction error. Could not modify group.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:562 -#, c-format -msgid "%s%sGroup: %s\n" -msgstr "" - -#: src/tools/sss_groupshow.c:563 -msgid "Magic Private " -msgstr "" - -#: src/tools/sss_groupshow.c:565 -#, c-format -msgid "%sGID number: %d\n" -msgstr "" - -#: src/tools/sss_groupshow.c:567 -#, c-format -msgid "%sMember users: " -msgstr "" - -#: src/tools/sss_groupshow.c:574 -#, c-format -msgid "" -"\n" -"%sIs a member of: " -msgstr "" - -#: src/tools/sss_groupshow.c:581 -#, c-format -msgid "" -"\n" -"%sMember groups: " -msgstr "" - -#: src/tools/sss_groupshow.c:617 -msgid "Print indirect group members recursively" -msgstr "" - -#: src/tools/sss_groupshow.c:650 -msgid "Specify group to show\n" -msgstr "" - -#: src/tools/sss_groupshow.c:689 -msgid "" -"No such group in local domain. Printing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:694 -msgid "Internal error. Could not print group.\n" -msgstr "" - -#: src/tools/sss_userdel.c:133 -msgid "Remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:135 -msgid "Do not remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:137 -msgid "Force removal of files not owned by the user" -msgstr "" - -#: src/tools/sss_userdel.c:139 -msgid "Kill users' processes before removing him" -msgstr "" - -#: src/tools/sss_userdel.c:184 -msgid "Specify user to delete\n" -msgstr "" - -#: src/tools/sss_userdel.c:230 -#, c-format -msgid "User %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_userdel.c:255 -msgid "Cannot reset SELinux login context\n" -msgstr "" - -#: src/tools/sss_userdel.c:267 -#, c-format -msgid "WARNING: The user (uid %lu) was still logged in when deleted.\n" -msgstr "" - -#: src/tools/sss_userdel.c:272 -msgid "Cannot determine if the user was logged in on this platform" -msgstr "" - -#: src/tools/sss_userdel.c:277 -msgid "Error while checking if the user was logged in\n" -msgstr "" - -#: src/tools/sss_userdel.c:284 -#, c-format -msgid "The post-delete command failed: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:296 -msgid "Not removing home dir - not owned by user\n" -msgstr "" - -#: src/tools/sss_userdel.c:298 -#, c-format -msgid "Cannot remove homedir: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:309 -msgid "" -"No such user in local domain. Removing users only allowed in local domain.\n" -msgstr "" - -#: src/tools/sss_userdel.c:314 -msgid "Internal error. Could not remove user.\n" -msgstr "" - -#: src/tools/sss_usermod.c:49 -msgid "The GID of the user" -msgstr "" - -#: src/tools/sss_usermod.c:53 -msgid "Groups to add this user to" -msgstr "" - -#: src/tools/sss_usermod.c:54 -msgid "Groups to remove this user from" -msgstr "" - -#: src/tools/sss_usermod.c:55 -msgid "Lock the account" -msgstr "" - -#: src/tools/sss_usermod.c:56 -msgid "Unlock the account" -msgstr "" - -#: src/tools/sss_usermod.c:117 -msgid "Specify user to modify\n" -msgstr "" - -#: src/tools/sss_usermod.c:144 -msgid "" -"Cannot find user in local domain, modifying users is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_usermod.c:246 -msgid "Could not modify user - check if group names are correct\n" -msgstr "" - -#: src/tools/sss_usermod.c:250 -msgid "Could not modify user - user already member of groups?\n" -msgstr "" - -#: src/tools/sss_usermod.c:254 -msgid "Transaction error. Could not modify user.\n" -msgstr "" - -#: src/tools/sss_cache.c:132 -#, c-format -msgid "Couldn't invalidate %s" -msgstr "" - -#: src/tools/sss_cache.c:138 -#, c-format -msgid "Couldn't invalidate %s %s" -msgstr "" - -#: src/tools/sss_cache.c:262 -msgid "Invalidate particular user" -msgstr "" - -#: src/tools/sss_cache.c:264 -msgid "Invalidate all users" -msgstr "" - -#: src/tools/sss_cache.c:266 -msgid "Invalidate particular group" -msgstr "" - -#: src/tools/sss_cache.c:268 -msgid "Invalidate all groups" -msgstr "" - -#: src/tools/sss_cache.c:270 -msgid "Invalidate particular netgroup" -msgstr "" - -#: src/tools/sss_cache.c:272 -msgid "Invalidate all netgroups" -msgstr "" - -#: src/tools/sss_cache.c:274 -msgid "Only invalidate entries from a particular domain" -msgstr "" - -#: src/tools/sss_debuglevel.c:43 -msgid "\n" -msgstr "" - -#: src/tools/sss_debuglevel.c:102 -msgid "Specify debug level you want to set\n" -msgstr "" - -#: src/tools/tools_util.c:286 -msgid "Out of memory\n" -msgstr "" - -#: src/tools/tools_util.h:40 -#, c-format -msgid "%s must be run as root\n" -msgstr "" - -#: src/util/util.h:91 -msgid "Send the debug output to files instead of stderr" -msgstr "" diff --git a/po/ru.po b/po/ru.po index 24383286e..bce9ea27f 100644 --- a/po/ru.po +++ b/po/ru.po @@ -7,8 +7,8 @@ msgid "" msgstr "" "Project-Id-Version: SSSD\n" "Report-Msgid-Bugs-To: sssd-devel@lists.fedorahosted.org\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2011-12-21 10:11+0000\n" +"POT-Creation-Date: 2012-03-12 16:26-0400\n" +"PO-Revision-Date: 2012-03-08 11:41+0000\n" "Last-Translator: sgallagh \n" "Language-Team: Russian \n" "Language: ru\n" @@ -175,24 +175,20 @@ msgid "Password change provider" msgstr "Поставщик операции смены пароля" #: src/config/SSSDConfig.py:88 -#, fuzzy msgid "SUDO provider" -msgstr "Поставщик данных для идентификации" +msgstr "" #: src/config/SSSDConfig.py:89 -#, fuzzy msgid "Autofs provider" -msgstr "Поставщик данных для проверки подлинности" +msgstr "" #: src/config/SSSDConfig.py:90 -#, fuzzy msgid "Session-loading provider" -msgstr "Поставщик данных для контроля доступа" +msgstr "" #: src/config/SSSDConfig.py:91 -#, fuzzy msgid "Host identity provider" -msgstr "Поставщик данных для идентификации" +msgstr "" #: src/config/SSSDConfig.py:94 msgid "Minimum user ID" @@ -643,9 +639,8 @@ msgid "loginAllowedTimeMap attribute of NDS" msgstr "" #: src/config/SSSDConfig.py:226 -#, fuzzy msgid "SSH public key attribute" -msgstr "Атрибут домашнего каталога" +msgstr "" #: src/config/SSSDConfig.py:228 msgid "Base DN for group lookups" @@ -712,29 +707,24 @@ msgid "Modification time attribute for netgroups" msgstr "" #: src/config/SSSDConfig.py:249 -#, fuzzy msgid "Base DN for service lookups" -msgstr "Base DN для поиска" +msgstr "" #: src/config/SSSDConfig.py:250 -#, fuzzy msgid "Objectclass for services" -msgstr "Objectclass для пользователей" +msgstr "" #: src/config/SSSDConfig.py:251 -#, fuzzy msgid "Service name attribute" -msgstr "Атрибут «username»" +msgstr "" #: src/config/SSSDConfig.py:252 -#, fuzzy msgid "Service port attribute" -msgstr "Атрибут домашнего каталога" +msgstr "" #: src/config/SSSDConfig.py:253 -#, fuzzy msgid "Service protocol attribute" -msgstr "Атрибут оболочки" +msgstr "" #: src/config/SSSDConfig.py:257 msgid "Policy to evaluate the password expiration" @@ -761,100 +751,84 @@ msgid "DNS service name for LDAP password change server" msgstr "" #: src/config/SSSDConfig.py:269 -#, fuzzy msgid "Base DN for sudo rules lookups" -msgstr "Base DN для поиска" +msgstr "" #: src/config/SSSDConfig.py:270 msgid "Enable periodical update of all sudo rules" msgstr "" #: src/config/SSSDConfig.py:271 -#, fuzzy msgid "Length of time between rules updates" -msgstr "Временной интервал между обновлениями перечисления" +msgstr "" #: src/config/SSSDConfig.py:272 -#, fuzzy msgid "Object class for sudo rules" -msgstr "Objectclass для пользователей" +msgstr "" #: src/config/SSSDConfig.py:273 msgid "Sudo rule name" msgstr "" #: src/config/SSSDConfig.py:274 -#, fuzzy msgid "Sudo rule command attribute" -msgstr "Атрибут домашнего каталога" +msgstr "" #: src/config/SSSDConfig.py:275 -#, fuzzy msgid "Sudo rule host attribute" -msgstr "Атрибут домашнего каталога" +msgstr "" #: src/config/SSSDConfig.py:276 -#, fuzzy msgid "Sudo rule user attribute" -msgstr "Атрибут домашнего каталога" +msgstr "" #: src/config/SSSDConfig.py:277 -#, fuzzy msgid "Sudo rule option attribute" -msgstr "Атрибут домашнего каталога" +msgstr "" #: src/config/SSSDConfig.py:278 -#, fuzzy msgid "Sudo rule runasuser attribute" -msgstr "Атрибут «username»" +msgstr "" #: src/config/SSSDConfig.py:279 msgid "Sudo rule runasgroup attribute" msgstr "" #: src/config/SSSDConfig.py:280 -#, fuzzy msgid "Sudo rule notbefore attribute" -msgstr "Атрибут домашнего каталога" +msgstr "" #: src/config/SSSDConfig.py:281 -#, fuzzy msgid "Sudo rule notafter attribute" -msgstr "Атрибут домашнего каталога" +msgstr "" #: src/config/SSSDConfig.py:282 -#, fuzzy msgid "Sudo rule order attribute" -msgstr "Атрибут домашнего каталога" +msgstr "" #: src/config/SSSDConfig.py:285 -#, fuzzy msgid "Object class for automounter maps" -msgstr "Objectclass для пользователей" +msgstr "" #: src/config/SSSDConfig.py:286 -#, fuzzy msgid "Automounter map name attribute" -msgstr "Атрибут «username»" +msgstr "" #: src/config/SSSDConfig.py:287 -#, fuzzy msgid "Object class for automounter map entries" -msgstr "Objectclass для пользователей" +msgstr "" #: src/config/SSSDConfig.py:288 -#, fuzzy msgid "Automounter map entry key attribute" -msgstr "Атрибут домашнего каталога" +msgstr "" #: src/config/SSSDConfig.py:289 msgid "Automounter map entry value attribute" msgstr "" #: src/config/SSSDConfig.py:290 -#, fuzzy msgid "Base DN for automounter map lookups" -msgstr "Base DN для поиска" +msgstr "" #: src/config/SSSDConfig.py:293 msgid "Comma separated list of allowed users" @@ -915,7 +889,7 @@ msgstr "" msgid "An open file descriptor for the debug logs" msgstr "Открытый дескриптор файла для журналов отладки" -#: src/providers/data_provider_be.c:1938 +#: src/providers/data_provider_be.c:2022 msgid "Domain of the information provider (mandatory)" msgstr "Домен поставщика информации (обязательный)" @@ -1016,9 +990,8 @@ msgstr "Уровень отладки для запуска" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:42 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:215 -#, fuzzy msgid "The SSSD domain to use" -msgstr "SSSD домены для запуска" +msgstr "" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:58 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:229 src/tools/sss_useradd.c:71 @@ -1033,9 +1006,8 @@ msgstr "" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:91 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:236 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:269 -#, fuzzy msgid "Not enough memory\n" -msgstr "Недостаточно памяти\n" +msgstr "" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:84 msgid "User not specified\n" @@ -1503,9 +1475,8 @@ msgid "\n" msgstr "" #: src/tools/sss_debuglevel.c:102 -#, fuzzy msgid "Specify debug level you want to set\n" -msgstr "Уровень отладки для запуска" +msgstr "" #: src/tools/tools_util.c:286 msgid "Out of memory\n" diff --git a/po/sk.po b/po/sk.po deleted file mode 100644 index 1374fd597..000000000 --- a/po/sk.po +++ /dev/null @@ -1,1462 +0,0 @@ -# SOME DESCRIPTIVE TITLE. -# Copyright (C) YEAR Red Hat, Inc. -# This file is distributed under the same license as the PACKAGE package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@lists.fedorahosted.org\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-11-30 04:10+0000\n" -"Last-Translator: FULL NAME \n" -"Language-Team: Slovak (http://www.transifex.net/projects/p/fedora/team/sk/)\n" -"Language: sk\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=3; plural=(n==1) ? 0 : (n>=2 && n<=4) ? 1 : 2\n" - -#: src/config/SSSDConfig.py:39 -msgid "Set the verbosity of the debug logging" -msgstr "" - -#: src/config/SSSDConfig.py:40 -msgid "Include timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:41 -msgid "Include microseconds in timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:42 -msgid "Write debug messages to logfiles" -msgstr "" - -#: src/config/SSSDConfig.py:43 -msgid "Ping timeout before restarting service" -msgstr "" - -#: src/config/SSSDConfig.py:44 -msgid "Command to start service" -msgstr "" - -#: src/config/SSSDConfig.py:45 -msgid "Number of times to attempt connection to Data Providers" -msgstr "" - -#: src/config/SSSDConfig.py:48 -msgid "SSSD Services to start" -msgstr "" - -#: src/config/SSSDConfig.py:49 -msgid "SSSD Domains to start" -msgstr "" - -#: src/config/SSSDConfig.py:50 -msgid "Timeout for messages sent over the SBUS" -msgstr "" - -#: src/config/SSSDConfig.py:51 -msgid "Regex to parse username and domain" -msgstr "" - -#: src/config/SSSDConfig.py:52 -msgid "Printf-compatible format for displaying fully-qualified names" -msgstr "" - -#: src/config/SSSDConfig.py:53 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#: src/config/SSSDConfig.py:56 -msgid "Enumeration cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:57 -msgid "Entry cache background update timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:58 src/config/SSSDConfig.py:81 -msgid "Negative cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:59 -msgid "Users that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:60 -msgid "Groups that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:61 -msgid "Should filtered users appear in groups" -msgstr "" - -#: src/config/SSSDConfig.py:62 -msgid "The value of the password field the NSS provider should return" -msgstr "" - -#: src/config/SSSDConfig.py:63 -msgid "Override homedir value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:64 -msgid "The list of shells users are allowed to log in with" -msgstr "" - -#: src/config/SSSDConfig.py:65 -msgid "" -"The list of shells that will be vetoed, and replaced with the fallback shell" -msgstr "" - -#: src/config/SSSDConfig.py:66 -msgid "" -"If a shell stored in central directory is allowed but not available, use " -"this fallback" -msgstr "" - -#: src/config/SSSDConfig.py:69 -msgid "How long to allow cached logins between online logins (days)" -msgstr "" - -#: src/config/SSSDConfig.py:70 -msgid "How many failed logins attempts are allowed when offline" -msgstr "" - -#: src/config/SSSDConfig.py:71 -msgid "" -"How long (minutes) to deny login after offline_failed_login_attempts has " -"been reached" -msgstr "" - -#: src/config/SSSDConfig.py:72 -msgid "What kind of messages are displayed to the user during authentication" -msgstr "" - -#: src/config/SSSDConfig.py:73 -msgid "How many seconds to keep identity information cached for PAM requests" -msgstr "" - -#: src/config/SSSDConfig.py:74 -msgid "How many days before password expiration a warning should be displayed" -msgstr "" - -#: src/config/SSSDConfig.py:77 -msgid "Whether to evaluate the time-based attributes in sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:78 -msgid "" -"How many seconds to keep sudorules cached before asking the provider again" -msgstr "" - -#: src/config/SSSDConfig.py:84 -msgid "Identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:85 -msgid "Authentication provider" -msgstr "" - -#: src/config/SSSDConfig.py:86 -msgid "Access control provider" -msgstr "" - -#: src/config/SSSDConfig.py:87 -msgid "Password change provider" -msgstr "" - -#: src/config/SSSDConfig.py:88 -msgid "SUDO provider" -msgstr "" - -#: src/config/SSSDConfig.py:89 -msgid "Autofs provider" -msgstr "" - -#: src/config/SSSDConfig.py:90 -msgid "Session-loading provider" -msgstr "" - -#: src/config/SSSDConfig.py:91 -msgid "Host identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:94 -msgid "Minimum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:95 -msgid "Maximum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:96 -msgid "Enable enumerating all users/groups" -msgstr "" - -#: src/config/SSSDConfig.py:97 -msgid "Cache credentials for offline login" -msgstr "" - -#: src/config/SSSDConfig.py:98 -msgid "Store password hashes" -msgstr "" - -#: src/config/SSSDConfig.py:99 -msgid "Display users/groups in fully-qualified form" -msgstr "" - -#: src/config/SSSDConfig.py:100 src/config/SSSDConfig.py:107 -#: src/config/SSSDConfig.py:108 src/config/SSSDConfig.py:109 -#: src/config/SSSDConfig.py:110 src/config/SSSDConfig.py:111 -msgid "Entry cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:101 -msgid "" -"Restrict or prefer a specific address family when performing DNS lookups" -msgstr "" - -#: src/config/SSSDConfig.py:102 -msgid "How long to keep cached entries after last successful login (days)" -msgstr "" - -#: src/config/SSSDConfig.py:103 -msgid "How long to wait for replies from DNS when resolving servers (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:104 -msgid "The domain part of service discovery DNS query" -msgstr "" - -#: src/config/SSSDConfig.py:105 -msgid "Override GID value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:106 -msgid "Treat usernames as case sensitive" -msgstr "" - -#: src/config/SSSDConfig.py:114 -msgid "IPA domain" -msgstr "" - -#: src/config/SSSDConfig.py:115 -msgid "IPA server address" -msgstr "" - -#: src/config/SSSDConfig.py:116 -msgid "IPA client hostname" -msgstr "" - -#: src/config/SSSDConfig.py:117 -msgid "Whether to automatically update the client's DNS entry in FreeIPA" -msgstr "" - -#: src/config/SSSDConfig.py:118 -msgid "The interface whose IP should be used for dynamic DNS updates" -msgstr "" - -#: src/config/SSSDConfig.py:119 -msgid "Search base for HBAC related objects" -msgstr "" - -#: src/config/SSSDConfig.py:120 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server" -msgstr "" - -#: src/config/SSSDConfig.py:121 -msgid "If DENY rules are present, either DENY_ALL or IGNORE" -msgstr "" - -#: src/config/SSSDConfig.py:122 -msgid "If set to false, host argument given by PAM will be ignored" -msgstr "" - -#: src/config/SSSDConfig.py:123 -msgid "The automounter location this IPA client is using" -msgstr "" - -#: src/config/SSSDConfig.py:126 src/config/SSSDConfig.py:127 -msgid "Kerberos server address" -msgstr "" - -#: src/config/SSSDConfig.py:128 -msgid "Kerberos realm" -msgstr "" - -#: src/config/SSSDConfig.py:129 -msgid "Authentication timeout" -msgstr "" - -#: src/config/SSSDConfig.py:132 -msgid "Directory to store credential caches" -msgstr "" - -#: src/config/SSSDConfig.py:133 -msgid "Location of the user's credential cache" -msgstr "" - -#: src/config/SSSDConfig.py:134 -msgid "Location of the keytab to validate credentials" -msgstr "" - -#: src/config/SSSDConfig.py:135 -msgid "Enable credential validation" -msgstr "" - -#: src/config/SSSDConfig.py:136 -msgid "Store password if offline for later online authentication" -msgstr "" - -#: src/config/SSSDConfig.py:137 -msgid "Renewable lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:138 -msgid "Lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:139 -msgid "Time between two checks for renewal" -msgstr "" - -#: src/config/SSSDConfig.py:140 -msgid "Enables FAST" -msgstr "" - -#: src/config/SSSDConfig.py:141 -msgid "Selects the principal to use for FAST" -msgstr "" - -#: src/config/SSSDConfig.py:142 -msgid "Enables principal canonicalization" -msgstr "" - -#: src/config/SSSDConfig.py:145 -msgid "Server where the change password service is running if not on the KDC" -msgstr "" - -#: src/config/SSSDConfig.py:148 -msgid "ldap_uri, The URI of the LDAP server" -msgstr "" - -#: src/config/SSSDConfig.py:149 -msgid "The default base DN" -msgstr "" - -#: src/config/SSSDConfig.py:150 -msgid "The Schema Type in use on the LDAP server, rfc2307" -msgstr "" - -#: src/config/SSSDConfig.py:151 -msgid "The default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:152 -msgid "The type of the authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:153 -msgid "The authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:154 -msgid "Length of time to attempt connection" -msgstr "" - -#: src/config/SSSDConfig.py:155 -msgid "Length of time to attempt synchronous LDAP operations" -msgstr "" - -#: src/config/SSSDConfig.py:156 -msgid "Length of time between attempts to reconnect while offline" -msgstr "" - -#: src/config/SSSDConfig.py:157 -msgid "Use only the upper case for realm names" -msgstr "" - -#: src/config/SSSDConfig.py:158 -msgid "File that contains CA certificates" -msgstr "" - -#: src/config/SSSDConfig.py:159 -msgid "Path to CA certificate directory" -msgstr "" - -#: src/config/SSSDConfig.py:160 -msgid "File that contains the client certificate" -msgstr "" - -#: src/config/SSSDConfig.py:161 -msgid "File that contains the client key" -msgstr "" - -#: src/config/SSSDConfig.py:162 -msgid "List of possible ciphers suites" -msgstr "" - -#: src/config/SSSDConfig.py:163 -msgid "Require TLS certificate verification" -msgstr "" - -#: src/config/SSSDConfig.py:164 -msgid "Specify the sasl mechanism to use" -msgstr "" - -#: src/config/SSSDConfig.py:165 -msgid "Specify the sasl authorization id to use" -msgstr "" - -#: src/config/SSSDConfig.py:166 -msgid "Specify the sasl authorization realm to use" -msgstr "" - -#: src/config/SSSDConfig.py:167 -msgid "Specify the minimal SSF for LDAP sasl authorization" -msgstr "" - -#: src/config/SSSDConfig.py:168 -msgid "Kerberos service keytab" -msgstr "" - -#: src/config/SSSDConfig.py:169 -msgid "Use Kerberos auth for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:170 -msgid "Follow LDAP referrals" -msgstr "" - -#: src/config/SSSDConfig.py:171 -msgid "Lifetime of TGT for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:172 -msgid "How to dereference aliases" -msgstr "" - -#: src/config/SSSDConfig.py:173 -msgid "Service name for DNS service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:174 -msgid "The number of records to retrieve in a single LDAP query" -msgstr "" - -#: src/config/SSSDConfig.py:175 -msgid "The number of members that must be missing to trigger a full deref" -msgstr "" - -#: src/config/SSSDConfig.py:176 -msgid "" -"Whether the LDAP library should perform a reverse lookup to canonicalize the " -"host name during a SASL bind" -msgstr "" - -#: src/config/SSSDConfig.py:178 -msgid "entryUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:179 -msgid "lastUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:181 -msgid "How long to retain a connection to the LDAP server before disconnecting" -msgstr "" - -#: src/config/SSSDConfig.py:183 -msgid "Disable the LDAP paging control" -msgstr "" - -#: src/config/SSSDConfig.py:186 -msgid "Length of time to wait for a search request" -msgstr "" - -#: src/config/SSSDConfig.py:187 -msgid "Length of time to wait for a enumeration request" -msgstr "" - -#: src/config/SSSDConfig.py:188 -msgid "Length of time between enumeration updates" -msgstr "" - -#: src/config/SSSDConfig.py:189 -msgid "Length of time between cache cleanups" -msgstr "" - -#: src/config/SSSDConfig.py:190 -msgid "Require TLS for ID lookups" -msgstr "" - -#: src/config/SSSDConfig.py:191 -msgid "Base DN for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:192 -msgid "Scope of user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:193 -msgid "Filter for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:194 -msgid "Objectclass for users" -msgstr "" - -#: src/config/SSSDConfig.py:195 -msgid "Username attribute" -msgstr "" - -#: src/config/SSSDConfig.py:197 -msgid "UID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:198 -msgid "Primary GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:199 -msgid "GECOS attribute" -msgstr "" - -#: src/config/SSSDConfig.py:200 -msgid "Home directory attribute" -msgstr "" - -#: src/config/SSSDConfig.py:201 -msgid "Shell attribute" -msgstr "" - -#: src/config/SSSDConfig.py:202 -msgid "UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:203 -msgid "User principal attribute (for Kerberos)" -msgstr "" - -#: src/config/SSSDConfig.py:204 -msgid "Full Name" -msgstr "" - -#: src/config/SSSDConfig.py:205 -msgid "memberOf attribute" -msgstr "" - -#: src/config/SSSDConfig.py:206 -msgid "Modification time attribute" -msgstr "" - -#: src/config/SSSDConfig.py:208 -msgid "shadowLastChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:209 -msgid "shadowMin attribute" -msgstr "" - -#: src/config/SSSDConfig.py:210 -msgid "shadowMax attribute" -msgstr "" - -#: src/config/SSSDConfig.py:211 -msgid "shadowWarning attribute" -msgstr "" - -#: src/config/SSSDConfig.py:212 -msgid "shadowInactive attribute" -msgstr "" - -#: src/config/SSSDConfig.py:213 -msgid "shadowExpire attribute" -msgstr "" - -#: src/config/SSSDConfig.py:214 -msgid "shadowFlag attribute" -msgstr "" - -#: src/config/SSSDConfig.py:215 -msgid "Attribute listing authorized PAM services" -msgstr "" - -#: src/config/SSSDConfig.py:216 -msgid "Attribute listing authorized server hosts" -msgstr "" - -#: src/config/SSSDConfig.py:217 -msgid "krbLastPwdChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:218 -msgid "krbPasswordExpiration attribute" -msgstr "" - -#: src/config/SSSDConfig.py:219 -msgid "Attribute indicating that server side password policies are active" -msgstr "" - -#: src/config/SSSDConfig.py:220 -msgid "accountExpires attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:221 -msgid "userAccountControl attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:222 -msgid "nsAccountLock attribute" -msgstr "" - -#: src/config/SSSDConfig.py:223 -msgid "loginDisabled attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:224 -msgid "loginExpirationTime attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:225 -msgid "loginAllowedTimeMap attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:226 -msgid "SSH public key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:228 -msgid "Base DN for group lookups" -msgstr "" - -#: src/config/SSSDConfig.py:231 -msgid "Objectclass for groups" -msgstr "" - -#: src/config/SSSDConfig.py:232 -msgid "Group name" -msgstr "" - -#: src/config/SSSDConfig.py:233 -msgid "Group password" -msgstr "" - -#: src/config/SSSDConfig.py:234 -msgid "GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:235 -msgid "Group member attribute" -msgstr "" - -#: src/config/SSSDConfig.py:236 -msgid "Group UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:237 -msgid "Modification time attribute for groups" -msgstr "" - -#: src/config/SSSDConfig.py:239 -msgid "Maximum nesting level SSSd will follow" -msgstr "" - -#: src/config/SSSDConfig.py:241 -msgid "Base DN for netgroup lookups" -msgstr "" - -#: src/config/SSSDConfig.py:242 -msgid "Objectclass for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:243 -msgid "Netgroup name" -msgstr "" - -#: src/config/SSSDConfig.py:244 -msgid "Netgroups members attribute" -msgstr "" - -#: src/config/SSSDConfig.py:245 -msgid "Netgroup triple attribute" -msgstr "" - -#: src/config/SSSDConfig.py:246 -msgid "Netgroup UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:247 -msgid "Modification time attribute for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:249 -msgid "Base DN for service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:250 -msgid "Objectclass for services" -msgstr "" - -#: src/config/SSSDConfig.py:251 -msgid "Service name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:252 -msgid "Service port attribute" -msgstr "" - -#: src/config/SSSDConfig.py:253 -msgid "Service protocol attribute" -msgstr "" - -#: src/config/SSSDConfig.py:257 -msgid "Policy to evaluate the password expiration" -msgstr "" - -#: src/config/SSSDConfig.py:260 -msgid "LDAP filter to determine access privileges" -msgstr "" - -#: src/config/SSSDConfig.py:261 -msgid "Which attributes shall be used to evaluate if an account is expired" -msgstr "" - -#: src/config/SSSDConfig.py:262 -msgid "Which rules should be used to evaluate access control" -msgstr "" - -#: src/config/SSSDConfig.py:265 -msgid "URI of an LDAP server where password changes are allowed" -msgstr "" - -#: src/config/SSSDConfig.py:266 -msgid "DNS service name for LDAP password change server" -msgstr "" - -#: src/config/SSSDConfig.py:269 -msgid "Base DN for sudo rules lookups" -msgstr "" - -#: src/config/SSSDConfig.py:270 -msgid "Enable periodical update of all sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:271 -msgid "Length of time between rules updates" -msgstr "" - -#: src/config/SSSDConfig.py:272 -msgid "Object class for sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:273 -msgid "Sudo rule name" -msgstr "" - -#: src/config/SSSDConfig.py:274 -msgid "Sudo rule command attribute" -msgstr "" - -#: src/config/SSSDConfig.py:275 -msgid "Sudo rule host attribute" -msgstr "" - -#: src/config/SSSDConfig.py:276 -msgid "Sudo rule user attribute" -msgstr "" - -#: src/config/SSSDConfig.py:277 -msgid "Sudo rule option attribute" -msgstr "" - -#: src/config/SSSDConfig.py:278 -msgid "Sudo rule runasuser attribute" -msgstr "" - -#: src/config/SSSDConfig.py:279 -msgid "Sudo rule runasgroup attribute" -msgstr "" - -#: src/config/SSSDConfig.py:280 -msgid "Sudo rule notbefore attribute" -msgstr "" - -#: src/config/SSSDConfig.py:281 -msgid "Sudo rule notafter attribute" -msgstr "" - -#: src/config/SSSDConfig.py:282 -msgid "Sudo rule order attribute" -msgstr "" - -#: src/config/SSSDConfig.py:285 -msgid "Object class for automounter maps" -msgstr "" - -#: src/config/SSSDConfig.py:286 -msgid "Automounter map name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:287 -msgid "Object class for automounter map entries" -msgstr "" - -#: src/config/SSSDConfig.py:288 -msgid "Automounter map entry key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:289 -msgid "Automounter map entry value attribute" -msgstr "" - -#: src/config/SSSDConfig.py:290 -msgid "Base DN for automounter map lookups" -msgstr "" - -#: src/config/SSSDConfig.py:293 -msgid "Comma separated list of allowed users" -msgstr "" - -#: src/config/SSSDConfig.py:294 -msgid "Comma separated list of prohibited users" -msgstr "" - -#: src/config/SSSDConfig.py:297 -msgid "Default shell, /bin/bash" -msgstr "" - -#: src/config/SSSDConfig.py:298 -msgid "Base for home directories" -msgstr "" - -#: src/config/SSSDConfig.py:301 -msgid "The name of the NSS library to use" -msgstr "" - -#: src/config/SSSDConfig.py:304 -msgid "PAM stack to use" -msgstr "" - -#: src/monitor/monitor.c:2379 -msgid "Become a daemon (default)" -msgstr "" - -#: src/monitor/monitor.c:2381 -msgid "Run interactive (not a daemon)" -msgstr "" - -#: src/monitor/monitor.c:2383 src/tools/sss_debuglevel.c:77 -msgid "Specify a non-default config file" -msgstr "" - -#: src/monitor/monitor.c:2385 -msgid "Print version number and exit" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1575 src/providers/ldap/ldap_child.c:381 -#: src/util/util.h:89 -msgid "Debug level" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1577 src/providers/ldap/ldap_child.c:383 -#: src/util/util.h:93 -msgid "Add debug timestamps" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1579 src/providers/ldap/ldap_child.c:385 -#: src/util/util.h:95 -msgid "Show timestamps with microseconds" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1581 src/providers/ldap/ldap_child.c:387 -msgid "An open file descriptor for the debug logs" -msgstr "" - -#: src/providers/data_provider_be.c:1938 -msgid "Domain of the information provider (mandatory)" -msgstr "" - -#: src/sss_client/common.c:878 -msgid "Privileged socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:881 -msgid "Public socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:884 -msgid "Unexpected format of the server credential message." -msgstr "" - -#: src/sss_client/common.c:887 -msgid "SSSD is not run by root." -msgstr "" - -#: src/sss_client/common.c:892 -msgid "An error occurred, but no description can be found." -msgstr "" - -#: src/sss_client/common.c:898 -msgid "Unexpected error while looking for an error description" -msgstr "" - -#: src/sss_client/pam_sss.c:378 -msgid "Passwords do not match" -msgstr "" - -#: src/sss_client/pam_sss.c:571 -msgid "Password reset by root is not supported." -msgstr "" - -#: src/sss_client/pam_sss.c:612 -msgid "Authenticated with cached credentials" -msgstr "" - -#: src/sss_client/pam_sss.c:613 -msgid ", your cached password will expire at: " -msgstr "" - -#: src/sss_client/pam_sss.c:643 -#, c-format -msgid "Your password has expired. You have %d grace login(s) remaining." -msgstr "" - -#: src/sss_client/pam_sss.c:689 -#, c-format -msgid "Your password will expire in %d %s." -msgstr "" - -#: src/sss_client/pam_sss.c:738 -msgid "Authentication is denied until: " -msgstr "" - -#: src/sss_client/pam_sss.c:759 -msgid "System is offline, password change not possible" -msgstr "" - -#: src/sss_client/pam_sss.c:789 src/sss_client/pam_sss.c:802 -msgid "Password change failed. " -msgstr "" - -#: src/sss_client/pam_sss.c:792 src/sss_client/pam_sss.c:803 -msgid "Server message: " -msgstr "" - -#: src/sss_client/pam_sss.c:1286 -msgid "New Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1287 -msgid "Reenter new Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1373 -msgid "Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1405 -msgid "Current Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1552 -msgid "Password expired. Change your password now." -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:40 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:211 src/tools/sss_useradd.c:48 -#: src/tools/sss_groupadd.c:41 src/tools/sss_groupdel.c:43 -#: src/tools/sss_groupmod.c:42 src/tools/sss_groupshow.c:615 -#: src/tools/sss_userdel.c:131 src/tools/sss_usermod.c:47 -#: src/tools/sss_cache.c:260 src/tools/sss_debuglevel.c:75 -msgid "The debug level to run with" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:42 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:215 -msgid "The SSSD domain to use" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:58 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:229 src/tools/sss_useradd.c:71 -#: src/tools/sss_groupadd.c:56 src/tools/sss_groupdel.c:52 -#: src/tools/sss_groupmod.c:63 src/tools/sss_groupshow.c:626 -#: src/tools/sss_userdel.c:148 src/tools/sss_usermod.c:72 -#: src/tools/sss_cache.c:281 -msgid "Error setting the locale\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:65 -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:91 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:236 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:269 -msgid "Not enough memory\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:84 -msgid "User not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:104 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:282 -msgid "Error looking up public keys\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:94 -msgid "Failed to open a socket\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:104 -msgid "Failed to connect to the server\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:195 -msgid "Failed to execute proxy command\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:213 -msgid "The port to use to connect to the host" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:255 -msgid "Host not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:261 -msgid "The path to the proxy command must be absolute\n" -msgstr "" - -#: src/tools/sss_useradd.c:49 src/tools/sss_usermod.c:48 -msgid "The UID of the user" -msgstr "" - -#: src/tools/sss_useradd.c:50 src/tools/sss_usermod.c:50 -msgid "The comment string" -msgstr "" - -#: src/tools/sss_useradd.c:51 src/tools/sss_usermod.c:51 -msgid "Home directory" -msgstr "" - -#: src/tools/sss_useradd.c:52 src/tools/sss_usermod.c:52 -msgid "Login shell" -msgstr "" - -#: src/tools/sss_useradd.c:53 -msgid "Groups" -msgstr "" - -#: src/tools/sss_useradd.c:54 -msgid "Create user's directory if it does not exist" -msgstr "" - -#: src/tools/sss_useradd.c:55 -msgid "Never create user's directory, overrides config" -msgstr "" - -#: src/tools/sss_useradd.c:56 -msgid "Specify an alternative skeleton directory" -msgstr "" - -#: src/tools/sss_useradd.c:57 src/tools/sss_usermod.c:57 -msgid "The SELinux user for user's login" -msgstr "" - -#: src/tools/sss_useradd.c:84 src/tools/sss_groupmod.c:76 -#: src/tools/sss_usermod.c:85 -msgid "Specify group to add to\n" -msgstr "" - -#: src/tools/sss_useradd.c:108 -msgid "Specify user to add\n" -msgstr "" - -#: src/tools/sss_useradd.c:117 src/tools/sss_groupadd.c:82 -#: src/tools/sss_groupdel.c:77 src/tools/sss_groupmod.c:109 -#: src/tools/sss_groupshow.c:659 src/tools/sss_userdel.c:193 -#: src/tools/sss_usermod.c:126 -msgid "Error initializing the tools - no local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:119 src/tools/sss_groupadd.c:84 -#: src/tools/sss_groupdel.c:79 src/tools/sss_groupmod.c:111 -#: src/tools/sss_groupshow.c:661 src/tools/sss_userdel.c:195 -#: src/tools/sss_usermod.c:128 -msgid "Error initializing the tools\n" -msgstr "" - -#: src/tools/sss_useradd.c:128 src/tools/sss_groupadd.c:93 -#: src/tools/sss_groupdel.c:88 src/tools/sss_groupmod.c:119 -#: src/tools/sss_groupshow.c:670 src/tools/sss_userdel.c:204 -#: src/tools/sss_usermod.c:137 -msgid "Invalid domain specified in FQDN\n" -msgstr "" - -#: src/tools/sss_useradd.c:137 src/tools/sss_groupmod.c:139 -#: src/tools/sss_groupmod.c:166 src/tools/sss_usermod.c:160 -#: src/tools/sss_usermod.c:187 -msgid "Internal error while parsing parameters\n" -msgstr "" - -#: src/tools/sss_useradd.c:145 src/tools/sss_usermod.c:168 -#: src/tools/sss_usermod.c:195 -msgid "Groups must be in the same domain as user\n" -msgstr "" - -#: src/tools/sss_useradd.c:153 -#, c-format -msgid "Cannot find group %s in local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:168 src/tools/sss_userdel.c:214 -msgid "Cannot set default values\n" -msgstr "" - -#: src/tools/sss_useradd.c:175 src/tools/sss_usermod.c:151 -msgid "The selected UID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_useradd.c:202 src/tools/sss_usermod.c:236 -msgid "Cannot set SELinux login context\n" -msgstr "" - -#: src/tools/sss_useradd.c:217 -msgid "Cannot get info about the user\n" -msgstr "" - -#: src/tools/sss_useradd.c:229 -msgid "User's home directory already exists, not copying data from skeldir\n" -msgstr "" - -#: src/tools/sss_useradd.c:232 -#, c-format -msgid "Cannot create user's home directory: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:243 -#, c-format -msgid "Cannot create user's mail spool: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:255 -msgid "Could not allocate ID for the user - domain full?\n" -msgstr "" - -#: src/tools/sss_useradd.c:259 -msgid "A user or group with the same name or ID already exists\n" -msgstr "" - -#: src/tools/sss_useradd.c:265 -msgid "Transaction error. Could not add user.\n" -msgstr "" - -#: src/tools/sss_groupadd.c:43 src/tools/sss_groupmod.c:48 -msgid "The GID of the group" -msgstr "" - -#: src/tools/sss_groupadd.c:73 -msgid "Specify group to add\n" -msgstr "" - -#: src/tools/sss_groupadd.c:102 src/tools/sss_groupmod.c:190 -msgid "The selected GID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_groupadd.c:127 -msgid "Could not allocate ID for the group - domain full?\n" -msgstr "" - -#: src/tools/sss_groupadd.c:131 -msgid "A group with the same name or GID already exists\n" -msgstr "" - -#: src/tools/sss_groupadd.c:136 -msgid "Transaction error. Could not add group.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:68 -msgid "Specify group to delete\n" -msgstr "" - -#: src/tools/sss_groupdel.c:101 -#, c-format -msgid "Group %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_groupdel.c:115 -msgid "" -"No such group in local domain. Removing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:120 -msgid "Internal error. Could not remove group.\n" -msgstr "" - -#: src/tools/sss_groupmod.c:44 -msgid "Groups to add this group to" -msgstr "" - -#: src/tools/sss_groupmod.c:46 -msgid "Groups to remove this group from" -msgstr "" - -#: src/tools/sss_groupmod.c:84 src/tools/sss_usermod.c:93 -msgid "Specify group to remove from\n" -msgstr "" - -#: src/tools/sss_groupmod.c:98 -msgid "Specify group to modify\n" -msgstr "" - -#: src/tools/sss_groupmod.c:126 -msgid "" -"Cannot find group in local domain, modifying groups is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_groupmod.c:147 src/tools/sss_groupmod.c:174 -msgid "Member groups must be in the same domain as parent group\n" -msgstr "" - -#: src/tools/sss_groupmod.c:155 src/tools/sss_groupmod.c:182 -#: src/tools/sss_usermod.c:176 src/tools/sss_usermod.c:203 -#, c-format -msgid "" -"Cannot find group %s in local domain, only groups in local domain are " -"allowed\n" -msgstr "" - -#: src/tools/sss_groupmod.c:216 -msgid "Could not modify group - check if member group names are correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:220 -msgid "Could not modify group - check if groupname is correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:224 -msgid "Transaction error. Could not modify group.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:562 -#, c-format -msgid "%s%sGroup: %s\n" -msgstr "" - -#: src/tools/sss_groupshow.c:563 -msgid "Magic Private " -msgstr "" - -#: src/tools/sss_groupshow.c:565 -#, c-format -msgid "%sGID number: %d\n" -msgstr "" - -#: src/tools/sss_groupshow.c:567 -#, c-format -msgid "%sMember users: " -msgstr "" - -#: src/tools/sss_groupshow.c:574 -#, c-format -msgid "" -"\n" -"%sIs a member of: " -msgstr "" - -#: src/tools/sss_groupshow.c:581 -#, c-format -msgid "" -"\n" -"%sMember groups: " -msgstr "" - -#: src/tools/sss_groupshow.c:617 -msgid "Print indirect group members recursively" -msgstr "" - -#: src/tools/sss_groupshow.c:650 -msgid "Specify group to show\n" -msgstr "" - -#: src/tools/sss_groupshow.c:689 -msgid "" -"No such group in local domain. Printing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:694 -msgid "Internal error. Could not print group.\n" -msgstr "" - -#: src/tools/sss_userdel.c:133 -msgid "Remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:135 -msgid "Do not remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:137 -msgid "Force removal of files not owned by the user" -msgstr "" - -#: src/tools/sss_userdel.c:139 -msgid "Kill users' processes before removing him" -msgstr "" - -#: src/tools/sss_userdel.c:184 -msgid "Specify user to delete\n" -msgstr "" - -#: src/tools/sss_userdel.c:230 -#, c-format -msgid "User %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_userdel.c:255 -msgid "Cannot reset SELinux login context\n" -msgstr "" - -#: src/tools/sss_userdel.c:267 -#, c-format -msgid "WARNING: The user (uid %lu) was still logged in when deleted.\n" -msgstr "" - -#: src/tools/sss_userdel.c:272 -msgid "Cannot determine if the user was logged in on this platform" -msgstr "" - -#: src/tools/sss_userdel.c:277 -msgid "Error while checking if the user was logged in\n" -msgstr "" - -#: src/tools/sss_userdel.c:284 -#, c-format -msgid "The post-delete command failed: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:296 -msgid "Not removing home dir - not owned by user\n" -msgstr "" - -#: src/tools/sss_userdel.c:298 -#, c-format -msgid "Cannot remove homedir: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:309 -msgid "" -"No such user in local domain. Removing users only allowed in local domain.\n" -msgstr "" - -#: src/tools/sss_userdel.c:314 -msgid "Internal error. Could not remove user.\n" -msgstr "" - -#: src/tools/sss_usermod.c:49 -msgid "The GID of the user" -msgstr "" - -#: src/tools/sss_usermod.c:53 -msgid "Groups to add this user to" -msgstr "" - -#: src/tools/sss_usermod.c:54 -msgid "Groups to remove this user from" -msgstr "" - -#: src/tools/sss_usermod.c:55 -msgid "Lock the account" -msgstr "" - -#: src/tools/sss_usermod.c:56 -msgid "Unlock the account" -msgstr "" - -#: src/tools/sss_usermod.c:117 -msgid "Specify user to modify\n" -msgstr "" - -#: src/tools/sss_usermod.c:144 -msgid "" -"Cannot find user in local domain, modifying users is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_usermod.c:246 -msgid "Could not modify user - check if group names are correct\n" -msgstr "" - -#: src/tools/sss_usermod.c:250 -msgid "Could not modify user - user already member of groups?\n" -msgstr "" - -#: src/tools/sss_usermod.c:254 -msgid "Transaction error. Could not modify user.\n" -msgstr "" - -#: src/tools/sss_cache.c:132 -#, c-format -msgid "Couldn't invalidate %s" -msgstr "" - -#: src/tools/sss_cache.c:138 -#, c-format -msgid "Couldn't invalidate %s %s" -msgstr "" - -#: src/tools/sss_cache.c:262 -msgid "Invalidate particular user" -msgstr "" - -#: src/tools/sss_cache.c:264 -msgid "Invalidate all users" -msgstr "" - -#: src/tools/sss_cache.c:266 -msgid "Invalidate particular group" -msgstr "" - -#: src/tools/sss_cache.c:268 -msgid "Invalidate all groups" -msgstr "" - -#: src/tools/sss_cache.c:270 -msgid "Invalidate particular netgroup" -msgstr "" - -#: src/tools/sss_cache.c:272 -msgid "Invalidate all netgroups" -msgstr "" - -#: src/tools/sss_cache.c:274 -msgid "Only invalidate entries from a particular domain" -msgstr "" - -#: src/tools/sss_debuglevel.c:43 -msgid "\n" -msgstr "" - -#: src/tools/sss_debuglevel.c:102 -msgid "Specify debug level you want to set\n" -msgstr "" - -#: src/tools/tools_util.c:286 -msgid "Out of memory\n" -msgstr "" - -#: src/tools/tools_util.h:40 -#, c-format -msgid "%s must be run as root\n" -msgstr "" - -#: src/util/util.h:91 -msgid "Send the debug output to files instead of stderr" -msgstr "" diff --git a/po/sq.po b/po/sq.po deleted file mode 100644 index 291af9dd8..000000000 --- a/po/sq.po +++ /dev/null @@ -1,1463 +0,0 @@ -# SOME DESCRIPTIVE TITLE. -# Copyright (C) YEAR Red Hat, Inc. -# This file is distributed under the same license as the PACKAGE package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@lists.fedorahosted.org\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-11-30 04:10+0000\n" -"Last-Translator: FULL NAME \n" -"Language-Team: Albanian (http://www.transifex.net/projects/p/fedora/team/" -"sq/)\n" -"Language: sq\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=2; plural=(n != 1)\n" - -#: src/config/SSSDConfig.py:39 -msgid "Set the verbosity of the debug logging" -msgstr "" - -#: src/config/SSSDConfig.py:40 -msgid "Include timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:41 -msgid "Include microseconds in timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:42 -msgid "Write debug messages to logfiles" -msgstr "" - -#: src/config/SSSDConfig.py:43 -msgid "Ping timeout before restarting service" -msgstr "" - -#: src/config/SSSDConfig.py:44 -msgid "Command to start service" -msgstr "" - -#: src/config/SSSDConfig.py:45 -msgid "Number of times to attempt connection to Data Providers" -msgstr "" - -#: src/config/SSSDConfig.py:48 -msgid "SSSD Services to start" -msgstr "" - -#: src/config/SSSDConfig.py:49 -msgid "SSSD Domains to start" -msgstr "" - -#: src/config/SSSDConfig.py:50 -msgid "Timeout for messages sent over the SBUS" -msgstr "" - -#: src/config/SSSDConfig.py:51 -msgid "Regex to parse username and domain" -msgstr "" - -#: src/config/SSSDConfig.py:52 -msgid "Printf-compatible format for displaying fully-qualified names" -msgstr "" - -#: src/config/SSSDConfig.py:53 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#: src/config/SSSDConfig.py:56 -msgid "Enumeration cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:57 -msgid "Entry cache background update timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:58 src/config/SSSDConfig.py:81 -msgid "Negative cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:59 -msgid "Users that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:60 -msgid "Groups that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:61 -msgid "Should filtered users appear in groups" -msgstr "" - -#: src/config/SSSDConfig.py:62 -msgid "The value of the password field the NSS provider should return" -msgstr "" - -#: src/config/SSSDConfig.py:63 -msgid "Override homedir value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:64 -msgid "The list of shells users are allowed to log in with" -msgstr "" - -#: src/config/SSSDConfig.py:65 -msgid "" -"The list of shells that will be vetoed, and replaced with the fallback shell" -msgstr "" - -#: src/config/SSSDConfig.py:66 -msgid "" -"If a shell stored in central directory is allowed but not available, use " -"this fallback" -msgstr "" - -#: src/config/SSSDConfig.py:69 -msgid "How long to allow cached logins between online logins (days)" -msgstr "" - -#: src/config/SSSDConfig.py:70 -msgid "How many failed logins attempts are allowed when offline" -msgstr "" - -#: src/config/SSSDConfig.py:71 -msgid "" -"How long (minutes) to deny login after offline_failed_login_attempts has " -"been reached" -msgstr "" - -#: src/config/SSSDConfig.py:72 -msgid "What kind of messages are displayed to the user during authentication" -msgstr "" - -#: src/config/SSSDConfig.py:73 -msgid "How many seconds to keep identity information cached for PAM requests" -msgstr "" - -#: src/config/SSSDConfig.py:74 -msgid "How many days before password expiration a warning should be displayed" -msgstr "" - -#: src/config/SSSDConfig.py:77 -msgid "Whether to evaluate the time-based attributes in sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:78 -msgid "" -"How many seconds to keep sudorules cached before asking the provider again" -msgstr "" - -#: src/config/SSSDConfig.py:84 -msgid "Identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:85 -msgid "Authentication provider" -msgstr "" - -#: src/config/SSSDConfig.py:86 -msgid "Access control provider" -msgstr "" - -#: src/config/SSSDConfig.py:87 -msgid "Password change provider" -msgstr "" - -#: src/config/SSSDConfig.py:88 -msgid "SUDO provider" -msgstr "" - -#: src/config/SSSDConfig.py:89 -msgid "Autofs provider" -msgstr "" - -#: src/config/SSSDConfig.py:90 -msgid "Session-loading provider" -msgstr "" - -#: src/config/SSSDConfig.py:91 -msgid "Host identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:94 -msgid "Minimum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:95 -msgid "Maximum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:96 -msgid "Enable enumerating all users/groups" -msgstr "" - -#: src/config/SSSDConfig.py:97 -msgid "Cache credentials for offline login" -msgstr "" - -#: src/config/SSSDConfig.py:98 -msgid "Store password hashes" -msgstr "" - -#: src/config/SSSDConfig.py:99 -msgid "Display users/groups in fully-qualified form" -msgstr "" - -#: src/config/SSSDConfig.py:100 src/config/SSSDConfig.py:107 -#: src/config/SSSDConfig.py:108 src/config/SSSDConfig.py:109 -#: src/config/SSSDConfig.py:110 src/config/SSSDConfig.py:111 -msgid "Entry cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:101 -msgid "" -"Restrict or prefer a specific address family when performing DNS lookups" -msgstr "" - -#: src/config/SSSDConfig.py:102 -msgid "How long to keep cached entries after last successful login (days)" -msgstr "" - -#: src/config/SSSDConfig.py:103 -msgid "How long to wait for replies from DNS when resolving servers (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:104 -msgid "The domain part of service discovery DNS query" -msgstr "" - -#: src/config/SSSDConfig.py:105 -msgid "Override GID value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:106 -msgid "Treat usernames as case sensitive" -msgstr "" - -#: src/config/SSSDConfig.py:114 -msgid "IPA domain" -msgstr "" - -#: src/config/SSSDConfig.py:115 -msgid "IPA server address" -msgstr "" - -#: src/config/SSSDConfig.py:116 -msgid "IPA client hostname" -msgstr "" - -#: src/config/SSSDConfig.py:117 -msgid "Whether to automatically update the client's DNS entry in FreeIPA" -msgstr "" - -#: src/config/SSSDConfig.py:118 -msgid "The interface whose IP should be used for dynamic DNS updates" -msgstr "" - -#: src/config/SSSDConfig.py:119 -msgid "Search base for HBAC related objects" -msgstr "" - -#: src/config/SSSDConfig.py:120 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server" -msgstr "" - -#: src/config/SSSDConfig.py:121 -msgid "If DENY rules are present, either DENY_ALL or IGNORE" -msgstr "" - -#: src/config/SSSDConfig.py:122 -msgid "If set to false, host argument given by PAM will be ignored" -msgstr "" - -#: src/config/SSSDConfig.py:123 -msgid "The automounter location this IPA client is using" -msgstr "" - -#: src/config/SSSDConfig.py:126 src/config/SSSDConfig.py:127 -msgid "Kerberos server address" -msgstr "" - -#: src/config/SSSDConfig.py:128 -msgid "Kerberos realm" -msgstr "" - -#: src/config/SSSDConfig.py:129 -msgid "Authentication timeout" -msgstr "" - -#: src/config/SSSDConfig.py:132 -msgid "Directory to store credential caches" -msgstr "" - -#: src/config/SSSDConfig.py:133 -msgid "Location of the user's credential cache" -msgstr "" - -#: src/config/SSSDConfig.py:134 -msgid "Location of the keytab to validate credentials" -msgstr "" - -#: src/config/SSSDConfig.py:135 -msgid "Enable credential validation" -msgstr "" - -#: src/config/SSSDConfig.py:136 -msgid "Store password if offline for later online authentication" -msgstr "" - -#: src/config/SSSDConfig.py:137 -msgid "Renewable lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:138 -msgid "Lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:139 -msgid "Time between two checks for renewal" -msgstr "" - -#: src/config/SSSDConfig.py:140 -msgid "Enables FAST" -msgstr "" - -#: src/config/SSSDConfig.py:141 -msgid "Selects the principal to use for FAST" -msgstr "" - -#: src/config/SSSDConfig.py:142 -msgid "Enables principal canonicalization" -msgstr "" - -#: src/config/SSSDConfig.py:145 -msgid "Server where the change password service is running if not on the KDC" -msgstr "" - -#: src/config/SSSDConfig.py:148 -msgid "ldap_uri, The URI of the LDAP server" -msgstr "" - -#: src/config/SSSDConfig.py:149 -msgid "The default base DN" -msgstr "" - -#: src/config/SSSDConfig.py:150 -msgid "The Schema Type in use on the LDAP server, rfc2307" -msgstr "" - -#: src/config/SSSDConfig.py:151 -msgid "The default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:152 -msgid "The type of the authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:153 -msgid "The authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:154 -msgid "Length of time to attempt connection" -msgstr "" - -#: src/config/SSSDConfig.py:155 -msgid "Length of time to attempt synchronous LDAP operations" -msgstr "" - -#: src/config/SSSDConfig.py:156 -msgid "Length of time between attempts to reconnect while offline" -msgstr "" - -#: src/config/SSSDConfig.py:157 -msgid "Use only the upper case for realm names" -msgstr "" - -#: src/config/SSSDConfig.py:158 -msgid "File that contains CA certificates" -msgstr "" - -#: src/config/SSSDConfig.py:159 -msgid "Path to CA certificate directory" -msgstr "" - -#: src/config/SSSDConfig.py:160 -msgid "File that contains the client certificate" -msgstr "" - -#: src/config/SSSDConfig.py:161 -msgid "File that contains the client key" -msgstr "" - -#: src/config/SSSDConfig.py:162 -msgid "List of possible ciphers suites" -msgstr "" - -#: src/config/SSSDConfig.py:163 -msgid "Require TLS certificate verification" -msgstr "" - -#: src/config/SSSDConfig.py:164 -msgid "Specify the sasl mechanism to use" -msgstr "" - -#: src/config/SSSDConfig.py:165 -msgid "Specify the sasl authorization id to use" -msgstr "" - -#: src/config/SSSDConfig.py:166 -msgid "Specify the sasl authorization realm to use" -msgstr "" - -#: src/config/SSSDConfig.py:167 -msgid "Specify the minimal SSF for LDAP sasl authorization" -msgstr "" - -#: src/config/SSSDConfig.py:168 -msgid "Kerberos service keytab" -msgstr "" - -#: src/config/SSSDConfig.py:169 -msgid "Use Kerberos auth for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:170 -msgid "Follow LDAP referrals" -msgstr "" - -#: src/config/SSSDConfig.py:171 -msgid "Lifetime of TGT for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:172 -msgid "How to dereference aliases" -msgstr "" - -#: src/config/SSSDConfig.py:173 -msgid "Service name for DNS service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:174 -msgid "The number of records to retrieve in a single LDAP query" -msgstr "" - -#: src/config/SSSDConfig.py:175 -msgid "The number of members that must be missing to trigger a full deref" -msgstr "" - -#: src/config/SSSDConfig.py:176 -msgid "" -"Whether the LDAP library should perform a reverse lookup to canonicalize the " -"host name during a SASL bind" -msgstr "" - -#: src/config/SSSDConfig.py:178 -msgid "entryUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:179 -msgid "lastUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:181 -msgid "How long to retain a connection to the LDAP server before disconnecting" -msgstr "" - -#: src/config/SSSDConfig.py:183 -msgid "Disable the LDAP paging control" -msgstr "" - -#: src/config/SSSDConfig.py:186 -msgid "Length of time to wait for a search request" -msgstr "" - -#: src/config/SSSDConfig.py:187 -msgid "Length of time to wait for a enumeration request" -msgstr "" - -#: src/config/SSSDConfig.py:188 -msgid "Length of time between enumeration updates" -msgstr "" - -#: src/config/SSSDConfig.py:189 -msgid "Length of time between cache cleanups" -msgstr "" - -#: src/config/SSSDConfig.py:190 -msgid "Require TLS for ID lookups" -msgstr "" - -#: src/config/SSSDConfig.py:191 -msgid "Base DN for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:192 -msgid "Scope of user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:193 -msgid "Filter for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:194 -msgid "Objectclass for users" -msgstr "" - -#: src/config/SSSDConfig.py:195 -msgid "Username attribute" -msgstr "" - -#: src/config/SSSDConfig.py:197 -msgid "UID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:198 -msgid "Primary GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:199 -msgid "GECOS attribute" -msgstr "" - -#: src/config/SSSDConfig.py:200 -msgid "Home directory attribute" -msgstr "" - -#: src/config/SSSDConfig.py:201 -msgid "Shell attribute" -msgstr "" - -#: src/config/SSSDConfig.py:202 -msgid "UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:203 -msgid "User principal attribute (for Kerberos)" -msgstr "" - -#: src/config/SSSDConfig.py:204 -msgid "Full Name" -msgstr "" - -#: src/config/SSSDConfig.py:205 -msgid "memberOf attribute" -msgstr "" - -#: src/config/SSSDConfig.py:206 -msgid "Modification time attribute" -msgstr "" - -#: src/config/SSSDConfig.py:208 -msgid "shadowLastChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:209 -msgid "shadowMin attribute" -msgstr "" - -#: src/config/SSSDConfig.py:210 -msgid "shadowMax attribute" -msgstr "" - -#: src/config/SSSDConfig.py:211 -msgid "shadowWarning attribute" -msgstr "" - -#: src/config/SSSDConfig.py:212 -msgid "shadowInactive attribute" -msgstr "" - -#: src/config/SSSDConfig.py:213 -msgid "shadowExpire attribute" -msgstr "" - -#: src/config/SSSDConfig.py:214 -msgid "shadowFlag attribute" -msgstr "" - -#: src/config/SSSDConfig.py:215 -msgid "Attribute listing authorized PAM services" -msgstr "" - -#: src/config/SSSDConfig.py:216 -msgid "Attribute listing authorized server hosts" -msgstr "" - -#: src/config/SSSDConfig.py:217 -msgid "krbLastPwdChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:218 -msgid "krbPasswordExpiration attribute" -msgstr "" - -#: src/config/SSSDConfig.py:219 -msgid "Attribute indicating that server side password policies are active" -msgstr "" - -#: src/config/SSSDConfig.py:220 -msgid "accountExpires attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:221 -msgid "userAccountControl attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:222 -msgid "nsAccountLock attribute" -msgstr "" - -#: src/config/SSSDConfig.py:223 -msgid "loginDisabled attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:224 -msgid "loginExpirationTime attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:225 -msgid "loginAllowedTimeMap attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:226 -msgid "SSH public key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:228 -msgid "Base DN for group lookups" -msgstr "" - -#: src/config/SSSDConfig.py:231 -msgid "Objectclass for groups" -msgstr "" - -#: src/config/SSSDConfig.py:232 -msgid "Group name" -msgstr "" - -#: src/config/SSSDConfig.py:233 -msgid "Group password" -msgstr "" - -#: src/config/SSSDConfig.py:234 -msgid "GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:235 -msgid "Group member attribute" -msgstr "" - -#: src/config/SSSDConfig.py:236 -msgid "Group UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:237 -msgid "Modification time attribute for groups" -msgstr "" - -#: src/config/SSSDConfig.py:239 -msgid "Maximum nesting level SSSd will follow" -msgstr "" - -#: src/config/SSSDConfig.py:241 -msgid "Base DN for netgroup lookups" -msgstr "" - -#: src/config/SSSDConfig.py:242 -msgid "Objectclass for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:243 -msgid "Netgroup name" -msgstr "" - -#: src/config/SSSDConfig.py:244 -msgid "Netgroups members attribute" -msgstr "" - -#: src/config/SSSDConfig.py:245 -msgid "Netgroup triple attribute" -msgstr "" - -#: src/config/SSSDConfig.py:246 -msgid "Netgroup UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:247 -msgid "Modification time attribute for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:249 -msgid "Base DN for service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:250 -msgid "Objectclass for services" -msgstr "" - -#: src/config/SSSDConfig.py:251 -msgid "Service name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:252 -msgid "Service port attribute" -msgstr "" - -#: src/config/SSSDConfig.py:253 -msgid "Service protocol attribute" -msgstr "" - -#: src/config/SSSDConfig.py:257 -msgid "Policy to evaluate the password expiration" -msgstr "" - -#: src/config/SSSDConfig.py:260 -msgid "LDAP filter to determine access privileges" -msgstr "" - -#: src/config/SSSDConfig.py:261 -msgid "Which attributes shall be used to evaluate if an account is expired" -msgstr "" - -#: src/config/SSSDConfig.py:262 -msgid "Which rules should be used to evaluate access control" -msgstr "" - -#: src/config/SSSDConfig.py:265 -msgid "URI of an LDAP server where password changes are allowed" -msgstr "" - -#: src/config/SSSDConfig.py:266 -msgid "DNS service name for LDAP password change server" -msgstr "" - -#: src/config/SSSDConfig.py:269 -msgid "Base DN for sudo rules lookups" -msgstr "" - -#: src/config/SSSDConfig.py:270 -msgid "Enable periodical update of all sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:271 -msgid "Length of time between rules updates" -msgstr "" - -#: src/config/SSSDConfig.py:272 -msgid "Object class for sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:273 -msgid "Sudo rule name" -msgstr "" - -#: src/config/SSSDConfig.py:274 -msgid "Sudo rule command attribute" -msgstr "" - -#: src/config/SSSDConfig.py:275 -msgid "Sudo rule host attribute" -msgstr "" - -#: src/config/SSSDConfig.py:276 -msgid "Sudo rule user attribute" -msgstr "" - -#: src/config/SSSDConfig.py:277 -msgid "Sudo rule option attribute" -msgstr "" - -#: src/config/SSSDConfig.py:278 -msgid "Sudo rule runasuser attribute" -msgstr "" - -#: src/config/SSSDConfig.py:279 -msgid "Sudo rule runasgroup attribute" -msgstr "" - -#: src/config/SSSDConfig.py:280 -msgid "Sudo rule notbefore attribute" -msgstr "" - -#: src/config/SSSDConfig.py:281 -msgid "Sudo rule notafter attribute" -msgstr "" - -#: src/config/SSSDConfig.py:282 -msgid "Sudo rule order attribute" -msgstr "" - -#: src/config/SSSDConfig.py:285 -msgid "Object class for automounter maps" -msgstr "" - -#: src/config/SSSDConfig.py:286 -msgid "Automounter map name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:287 -msgid "Object class for automounter map entries" -msgstr "" - -#: src/config/SSSDConfig.py:288 -msgid "Automounter map entry key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:289 -msgid "Automounter map entry value attribute" -msgstr "" - -#: src/config/SSSDConfig.py:290 -msgid "Base DN for automounter map lookups" -msgstr "" - -#: src/config/SSSDConfig.py:293 -msgid "Comma separated list of allowed users" -msgstr "" - -#: src/config/SSSDConfig.py:294 -msgid "Comma separated list of prohibited users" -msgstr "" - -#: src/config/SSSDConfig.py:297 -msgid "Default shell, /bin/bash" -msgstr "" - -#: src/config/SSSDConfig.py:298 -msgid "Base for home directories" -msgstr "" - -#: src/config/SSSDConfig.py:301 -msgid "The name of the NSS library to use" -msgstr "" - -#: src/config/SSSDConfig.py:304 -msgid "PAM stack to use" -msgstr "" - -#: src/monitor/monitor.c:2379 -msgid "Become a daemon (default)" -msgstr "" - -#: src/monitor/monitor.c:2381 -msgid "Run interactive (not a daemon)" -msgstr "" - -#: src/monitor/monitor.c:2383 src/tools/sss_debuglevel.c:77 -msgid "Specify a non-default config file" -msgstr "" - -#: src/monitor/monitor.c:2385 -msgid "Print version number and exit" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1575 src/providers/ldap/ldap_child.c:381 -#: src/util/util.h:89 -msgid "Debug level" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1577 src/providers/ldap/ldap_child.c:383 -#: src/util/util.h:93 -msgid "Add debug timestamps" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1579 src/providers/ldap/ldap_child.c:385 -#: src/util/util.h:95 -msgid "Show timestamps with microseconds" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1581 src/providers/ldap/ldap_child.c:387 -msgid "An open file descriptor for the debug logs" -msgstr "" - -#: src/providers/data_provider_be.c:1938 -msgid "Domain of the information provider (mandatory)" -msgstr "" - -#: src/sss_client/common.c:878 -msgid "Privileged socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:881 -msgid "Public socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:884 -msgid "Unexpected format of the server credential message." -msgstr "" - -#: src/sss_client/common.c:887 -msgid "SSSD is not run by root." -msgstr "" - -#: src/sss_client/common.c:892 -msgid "An error occurred, but no description can be found." -msgstr "" - -#: src/sss_client/common.c:898 -msgid "Unexpected error while looking for an error description" -msgstr "" - -#: src/sss_client/pam_sss.c:378 -msgid "Passwords do not match" -msgstr "" - -#: src/sss_client/pam_sss.c:571 -msgid "Password reset by root is not supported." -msgstr "" - -#: src/sss_client/pam_sss.c:612 -msgid "Authenticated with cached credentials" -msgstr "" - -#: src/sss_client/pam_sss.c:613 -msgid ", your cached password will expire at: " -msgstr "" - -#: src/sss_client/pam_sss.c:643 -#, c-format -msgid "Your password has expired. You have %d grace login(s) remaining." -msgstr "" - -#: src/sss_client/pam_sss.c:689 -#, c-format -msgid "Your password will expire in %d %s." -msgstr "" - -#: src/sss_client/pam_sss.c:738 -msgid "Authentication is denied until: " -msgstr "" - -#: src/sss_client/pam_sss.c:759 -msgid "System is offline, password change not possible" -msgstr "" - -#: src/sss_client/pam_sss.c:789 src/sss_client/pam_sss.c:802 -msgid "Password change failed. " -msgstr "" - -#: src/sss_client/pam_sss.c:792 src/sss_client/pam_sss.c:803 -msgid "Server message: " -msgstr "" - -#: src/sss_client/pam_sss.c:1286 -msgid "New Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1287 -msgid "Reenter new Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1373 -msgid "Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1405 -msgid "Current Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1552 -msgid "Password expired. Change your password now." -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:40 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:211 src/tools/sss_useradd.c:48 -#: src/tools/sss_groupadd.c:41 src/tools/sss_groupdel.c:43 -#: src/tools/sss_groupmod.c:42 src/tools/sss_groupshow.c:615 -#: src/tools/sss_userdel.c:131 src/tools/sss_usermod.c:47 -#: src/tools/sss_cache.c:260 src/tools/sss_debuglevel.c:75 -msgid "The debug level to run with" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:42 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:215 -msgid "The SSSD domain to use" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:58 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:229 src/tools/sss_useradd.c:71 -#: src/tools/sss_groupadd.c:56 src/tools/sss_groupdel.c:52 -#: src/tools/sss_groupmod.c:63 src/tools/sss_groupshow.c:626 -#: src/tools/sss_userdel.c:148 src/tools/sss_usermod.c:72 -#: src/tools/sss_cache.c:281 -msgid "Error setting the locale\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:65 -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:91 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:236 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:269 -msgid "Not enough memory\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:84 -msgid "User not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:104 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:282 -msgid "Error looking up public keys\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:94 -msgid "Failed to open a socket\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:104 -msgid "Failed to connect to the server\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:195 -msgid "Failed to execute proxy command\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:213 -msgid "The port to use to connect to the host" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:255 -msgid "Host not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:261 -msgid "The path to the proxy command must be absolute\n" -msgstr "" - -#: src/tools/sss_useradd.c:49 src/tools/sss_usermod.c:48 -msgid "The UID of the user" -msgstr "" - -#: src/tools/sss_useradd.c:50 src/tools/sss_usermod.c:50 -msgid "The comment string" -msgstr "" - -#: src/tools/sss_useradd.c:51 src/tools/sss_usermod.c:51 -msgid "Home directory" -msgstr "" - -#: src/tools/sss_useradd.c:52 src/tools/sss_usermod.c:52 -msgid "Login shell" -msgstr "" - -#: src/tools/sss_useradd.c:53 -msgid "Groups" -msgstr "" - -#: src/tools/sss_useradd.c:54 -msgid "Create user's directory if it does not exist" -msgstr "" - -#: src/tools/sss_useradd.c:55 -msgid "Never create user's directory, overrides config" -msgstr "" - -#: src/tools/sss_useradd.c:56 -msgid "Specify an alternative skeleton directory" -msgstr "" - -#: src/tools/sss_useradd.c:57 src/tools/sss_usermod.c:57 -msgid "The SELinux user for user's login" -msgstr "" - -#: src/tools/sss_useradd.c:84 src/tools/sss_groupmod.c:76 -#: src/tools/sss_usermod.c:85 -msgid "Specify group to add to\n" -msgstr "" - -#: src/tools/sss_useradd.c:108 -msgid "Specify user to add\n" -msgstr "" - -#: src/tools/sss_useradd.c:117 src/tools/sss_groupadd.c:82 -#: src/tools/sss_groupdel.c:77 src/tools/sss_groupmod.c:109 -#: src/tools/sss_groupshow.c:659 src/tools/sss_userdel.c:193 -#: src/tools/sss_usermod.c:126 -msgid "Error initializing the tools - no local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:119 src/tools/sss_groupadd.c:84 -#: src/tools/sss_groupdel.c:79 src/tools/sss_groupmod.c:111 -#: src/tools/sss_groupshow.c:661 src/tools/sss_userdel.c:195 -#: src/tools/sss_usermod.c:128 -msgid "Error initializing the tools\n" -msgstr "" - -#: src/tools/sss_useradd.c:128 src/tools/sss_groupadd.c:93 -#: src/tools/sss_groupdel.c:88 src/tools/sss_groupmod.c:119 -#: src/tools/sss_groupshow.c:670 src/tools/sss_userdel.c:204 -#: src/tools/sss_usermod.c:137 -msgid "Invalid domain specified in FQDN\n" -msgstr "" - -#: src/tools/sss_useradd.c:137 src/tools/sss_groupmod.c:139 -#: src/tools/sss_groupmod.c:166 src/tools/sss_usermod.c:160 -#: src/tools/sss_usermod.c:187 -msgid "Internal error while parsing parameters\n" -msgstr "" - -#: src/tools/sss_useradd.c:145 src/tools/sss_usermod.c:168 -#: src/tools/sss_usermod.c:195 -msgid "Groups must be in the same domain as user\n" -msgstr "" - -#: src/tools/sss_useradd.c:153 -#, c-format -msgid "Cannot find group %s in local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:168 src/tools/sss_userdel.c:214 -msgid "Cannot set default values\n" -msgstr "" - -#: src/tools/sss_useradd.c:175 src/tools/sss_usermod.c:151 -msgid "The selected UID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_useradd.c:202 src/tools/sss_usermod.c:236 -msgid "Cannot set SELinux login context\n" -msgstr "" - -#: src/tools/sss_useradd.c:217 -msgid "Cannot get info about the user\n" -msgstr "" - -#: src/tools/sss_useradd.c:229 -msgid "User's home directory already exists, not copying data from skeldir\n" -msgstr "" - -#: src/tools/sss_useradd.c:232 -#, c-format -msgid "Cannot create user's home directory: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:243 -#, c-format -msgid "Cannot create user's mail spool: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:255 -msgid "Could not allocate ID for the user - domain full?\n" -msgstr "" - -#: src/tools/sss_useradd.c:259 -msgid "A user or group with the same name or ID already exists\n" -msgstr "" - -#: src/tools/sss_useradd.c:265 -msgid "Transaction error. Could not add user.\n" -msgstr "" - -#: src/tools/sss_groupadd.c:43 src/tools/sss_groupmod.c:48 -msgid "The GID of the group" -msgstr "" - -#: src/tools/sss_groupadd.c:73 -msgid "Specify group to add\n" -msgstr "" - -#: src/tools/sss_groupadd.c:102 src/tools/sss_groupmod.c:190 -msgid "The selected GID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_groupadd.c:127 -msgid "Could not allocate ID for the group - domain full?\n" -msgstr "" - -#: src/tools/sss_groupadd.c:131 -msgid "A group with the same name or GID already exists\n" -msgstr "" - -#: src/tools/sss_groupadd.c:136 -msgid "Transaction error. Could not add group.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:68 -msgid "Specify group to delete\n" -msgstr "" - -#: src/tools/sss_groupdel.c:101 -#, c-format -msgid "Group %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_groupdel.c:115 -msgid "" -"No such group in local domain. Removing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:120 -msgid "Internal error. Could not remove group.\n" -msgstr "" - -#: src/tools/sss_groupmod.c:44 -msgid "Groups to add this group to" -msgstr "" - -#: src/tools/sss_groupmod.c:46 -msgid "Groups to remove this group from" -msgstr "" - -#: src/tools/sss_groupmod.c:84 src/tools/sss_usermod.c:93 -msgid "Specify group to remove from\n" -msgstr "" - -#: src/tools/sss_groupmod.c:98 -msgid "Specify group to modify\n" -msgstr "" - -#: src/tools/sss_groupmod.c:126 -msgid "" -"Cannot find group in local domain, modifying groups is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_groupmod.c:147 src/tools/sss_groupmod.c:174 -msgid "Member groups must be in the same domain as parent group\n" -msgstr "" - -#: src/tools/sss_groupmod.c:155 src/tools/sss_groupmod.c:182 -#: src/tools/sss_usermod.c:176 src/tools/sss_usermod.c:203 -#, c-format -msgid "" -"Cannot find group %s in local domain, only groups in local domain are " -"allowed\n" -msgstr "" - -#: src/tools/sss_groupmod.c:216 -msgid "Could not modify group - check if member group names are correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:220 -msgid "Could not modify group - check if groupname is correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:224 -msgid "Transaction error. Could not modify group.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:562 -#, c-format -msgid "%s%sGroup: %s\n" -msgstr "" - -#: src/tools/sss_groupshow.c:563 -msgid "Magic Private " -msgstr "" - -#: src/tools/sss_groupshow.c:565 -#, c-format -msgid "%sGID number: %d\n" -msgstr "" - -#: src/tools/sss_groupshow.c:567 -#, c-format -msgid "%sMember users: " -msgstr "" - -#: src/tools/sss_groupshow.c:574 -#, c-format -msgid "" -"\n" -"%sIs a member of: " -msgstr "" - -#: src/tools/sss_groupshow.c:581 -#, c-format -msgid "" -"\n" -"%sMember groups: " -msgstr "" - -#: src/tools/sss_groupshow.c:617 -msgid "Print indirect group members recursively" -msgstr "" - -#: src/tools/sss_groupshow.c:650 -msgid "Specify group to show\n" -msgstr "" - -#: src/tools/sss_groupshow.c:689 -msgid "" -"No such group in local domain. Printing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:694 -msgid "Internal error. Could not print group.\n" -msgstr "" - -#: src/tools/sss_userdel.c:133 -msgid "Remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:135 -msgid "Do not remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:137 -msgid "Force removal of files not owned by the user" -msgstr "" - -#: src/tools/sss_userdel.c:139 -msgid "Kill users' processes before removing him" -msgstr "" - -#: src/tools/sss_userdel.c:184 -msgid "Specify user to delete\n" -msgstr "" - -#: src/tools/sss_userdel.c:230 -#, c-format -msgid "User %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_userdel.c:255 -msgid "Cannot reset SELinux login context\n" -msgstr "" - -#: src/tools/sss_userdel.c:267 -#, c-format -msgid "WARNING: The user (uid %lu) was still logged in when deleted.\n" -msgstr "" - -#: src/tools/sss_userdel.c:272 -msgid "Cannot determine if the user was logged in on this platform" -msgstr "" - -#: src/tools/sss_userdel.c:277 -msgid "Error while checking if the user was logged in\n" -msgstr "" - -#: src/tools/sss_userdel.c:284 -#, c-format -msgid "The post-delete command failed: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:296 -msgid "Not removing home dir - not owned by user\n" -msgstr "" - -#: src/tools/sss_userdel.c:298 -#, c-format -msgid "Cannot remove homedir: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:309 -msgid "" -"No such user in local domain. Removing users only allowed in local domain.\n" -msgstr "" - -#: src/tools/sss_userdel.c:314 -msgid "Internal error. Could not remove user.\n" -msgstr "" - -#: src/tools/sss_usermod.c:49 -msgid "The GID of the user" -msgstr "" - -#: src/tools/sss_usermod.c:53 -msgid "Groups to add this user to" -msgstr "" - -#: src/tools/sss_usermod.c:54 -msgid "Groups to remove this user from" -msgstr "" - -#: src/tools/sss_usermod.c:55 -msgid "Lock the account" -msgstr "" - -#: src/tools/sss_usermod.c:56 -msgid "Unlock the account" -msgstr "" - -#: src/tools/sss_usermod.c:117 -msgid "Specify user to modify\n" -msgstr "" - -#: src/tools/sss_usermod.c:144 -msgid "" -"Cannot find user in local domain, modifying users is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_usermod.c:246 -msgid "Could not modify user - check if group names are correct\n" -msgstr "" - -#: src/tools/sss_usermod.c:250 -msgid "Could not modify user - user already member of groups?\n" -msgstr "" - -#: src/tools/sss_usermod.c:254 -msgid "Transaction error. Could not modify user.\n" -msgstr "" - -#: src/tools/sss_cache.c:132 -#, c-format -msgid "Couldn't invalidate %s" -msgstr "" - -#: src/tools/sss_cache.c:138 -#, c-format -msgid "Couldn't invalidate %s %s" -msgstr "" - -#: src/tools/sss_cache.c:262 -msgid "Invalidate particular user" -msgstr "" - -#: src/tools/sss_cache.c:264 -msgid "Invalidate all users" -msgstr "" - -#: src/tools/sss_cache.c:266 -msgid "Invalidate particular group" -msgstr "" - -#: src/tools/sss_cache.c:268 -msgid "Invalidate all groups" -msgstr "" - -#: src/tools/sss_cache.c:270 -msgid "Invalidate particular netgroup" -msgstr "" - -#: src/tools/sss_cache.c:272 -msgid "Invalidate all netgroups" -msgstr "" - -#: src/tools/sss_cache.c:274 -msgid "Only invalidate entries from a particular domain" -msgstr "" - -#: src/tools/sss_debuglevel.c:43 -msgid "\n" -msgstr "" - -#: src/tools/sss_debuglevel.c:102 -msgid "Specify debug level you want to set\n" -msgstr "" - -#: src/tools/tools_util.c:286 -msgid "Out of memory\n" -msgstr "" - -#: src/tools/tools_util.h:40 -#, c-format -msgid "%s must be run as root\n" -msgstr "" - -#: src/util/util.h:91 -msgid "Send the debug output to files instead of stderr" -msgstr "" diff --git a/po/sr.po b/po/sr.po deleted file mode 100644 index 52a729041..000000000 --- a/po/sr.po +++ /dev/null @@ -1,1463 +0,0 @@ -# SOME DESCRIPTIVE TITLE. -# Copyright (C) YEAR Red Hat, Inc. -# This file is distributed under the same license as the PACKAGE package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@lists.fedorahosted.org\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-11-30 04:10+0000\n" -"Last-Translator: FULL NAME \n" -"Language-Team: Serbian \n" -"Language: sr\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=3; plural=(n%10==1 && n%100!=11 ? 0 : n%10>=2 && n" -"%10<=4 && (n%100<10 || n%100>=20) ? 1 : 2)\n" - -#: src/config/SSSDConfig.py:39 -msgid "Set the verbosity of the debug logging" -msgstr "" - -#: src/config/SSSDConfig.py:40 -msgid "Include timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:41 -msgid "Include microseconds in timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:42 -msgid "Write debug messages to logfiles" -msgstr "" - -#: src/config/SSSDConfig.py:43 -msgid "Ping timeout before restarting service" -msgstr "" - -#: src/config/SSSDConfig.py:44 -msgid "Command to start service" -msgstr "" - -#: src/config/SSSDConfig.py:45 -msgid "Number of times to attempt connection to Data Providers" -msgstr "" - -#: src/config/SSSDConfig.py:48 -msgid "SSSD Services to start" -msgstr "" - -#: src/config/SSSDConfig.py:49 -msgid "SSSD Domains to start" -msgstr "" - -#: src/config/SSSDConfig.py:50 -msgid "Timeout for messages sent over the SBUS" -msgstr "" - -#: src/config/SSSDConfig.py:51 -msgid "Regex to parse username and domain" -msgstr "" - -#: src/config/SSSDConfig.py:52 -msgid "Printf-compatible format for displaying fully-qualified names" -msgstr "" - -#: src/config/SSSDConfig.py:53 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#: src/config/SSSDConfig.py:56 -msgid "Enumeration cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:57 -msgid "Entry cache background update timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:58 src/config/SSSDConfig.py:81 -msgid "Negative cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:59 -msgid "Users that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:60 -msgid "Groups that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:61 -msgid "Should filtered users appear in groups" -msgstr "" - -#: src/config/SSSDConfig.py:62 -msgid "The value of the password field the NSS provider should return" -msgstr "" - -#: src/config/SSSDConfig.py:63 -msgid "Override homedir value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:64 -msgid "The list of shells users are allowed to log in with" -msgstr "" - -#: src/config/SSSDConfig.py:65 -msgid "" -"The list of shells that will be vetoed, and replaced with the fallback shell" -msgstr "" - -#: src/config/SSSDConfig.py:66 -msgid "" -"If a shell stored in central directory is allowed but not available, use " -"this fallback" -msgstr "" - -#: src/config/SSSDConfig.py:69 -msgid "How long to allow cached logins between online logins (days)" -msgstr "" - -#: src/config/SSSDConfig.py:70 -msgid "How many failed logins attempts are allowed when offline" -msgstr "" - -#: src/config/SSSDConfig.py:71 -msgid "" -"How long (minutes) to deny login after offline_failed_login_attempts has " -"been reached" -msgstr "" - -#: src/config/SSSDConfig.py:72 -msgid "What kind of messages are displayed to the user during authentication" -msgstr "" - -#: src/config/SSSDConfig.py:73 -msgid "How many seconds to keep identity information cached for PAM requests" -msgstr "" - -#: src/config/SSSDConfig.py:74 -msgid "How many days before password expiration a warning should be displayed" -msgstr "" - -#: src/config/SSSDConfig.py:77 -msgid "Whether to evaluate the time-based attributes in sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:78 -msgid "" -"How many seconds to keep sudorules cached before asking the provider again" -msgstr "" - -#: src/config/SSSDConfig.py:84 -msgid "Identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:85 -msgid "Authentication provider" -msgstr "" - -#: src/config/SSSDConfig.py:86 -msgid "Access control provider" -msgstr "" - -#: src/config/SSSDConfig.py:87 -msgid "Password change provider" -msgstr "" - -#: src/config/SSSDConfig.py:88 -msgid "SUDO provider" -msgstr "" - -#: src/config/SSSDConfig.py:89 -msgid "Autofs provider" -msgstr "" - -#: src/config/SSSDConfig.py:90 -msgid "Session-loading provider" -msgstr "" - -#: src/config/SSSDConfig.py:91 -msgid "Host identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:94 -msgid "Minimum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:95 -msgid "Maximum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:96 -msgid "Enable enumerating all users/groups" -msgstr "" - -#: src/config/SSSDConfig.py:97 -msgid "Cache credentials for offline login" -msgstr "" - -#: src/config/SSSDConfig.py:98 -msgid "Store password hashes" -msgstr "" - -#: src/config/SSSDConfig.py:99 -msgid "Display users/groups in fully-qualified form" -msgstr "" - -#: src/config/SSSDConfig.py:100 src/config/SSSDConfig.py:107 -#: src/config/SSSDConfig.py:108 src/config/SSSDConfig.py:109 -#: src/config/SSSDConfig.py:110 src/config/SSSDConfig.py:111 -msgid "Entry cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:101 -msgid "" -"Restrict or prefer a specific address family when performing DNS lookups" -msgstr "" - -#: src/config/SSSDConfig.py:102 -msgid "How long to keep cached entries after last successful login (days)" -msgstr "" - -#: src/config/SSSDConfig.py:103 -msgid "How long to wait for replies from DNS when resolving servers (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:104 -msgid "The domain part of service discovery DNS query" -msgstr "" - -#: src/config/SSSDConfig.py:105 -msgid "Override GID value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:106 -msgid "Treat usernames as case sensitive" -msgstr "" - -#: src/config/SSSDConfig.py:114 -msgid "IPA domain" -msgstr "" - -#: src/config/SSSDConfig.py:115 -msgid "IPA server address" -msgstr "" - -#: src/config/SSSDConfig.py:116 -msgid "IPA client hostname" -msgstr "" - -#: src/config/SSSDConfig.py:117 -msgid "Whether to automatically update the client's DNS entry in FreeIPA" -msgstr "" - -#: src/config/SSSDConfig.py:118 -msgid "The interface whose IP should be used for dynamic DNS updates" -msgstr "" - -#: src/config/SSSDConfig.py:119 -msgid "Search base for HBAC related objects" -msgstr "" - -#: src/config/SSSDConfig.py:120 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server" -msgstr "" - -#: src/config/SSSDConfig.py:121 -msgid "If DENY rules are present, either DENY_ALL or IGNORE" -msgstr "" - -#: src/config/SSSDConfig.py:122 -msgid "If set to false, host argument given by PAM will be ignored" -msgstr "" - -#: src/config/SSSDConfig.py:123 -msgid "The automounter location this IPA client is using" -msgstr "" - -#: src/config/SSSDConfig.py:126 src/config/SSSDConfig.py:127 -msgid "Kerberos server address" -msgstr "" - -#: src/config/SSSDConfig.py:128 -msgid "Kerberos realm" -msgstr "" - -#: src/config/SSSDConfig.py:129 -msgid "Authentication timeout" -msgstr "" - -#: src/config/SSSDConfig.py:132 -msgid "Directory to store credential caches" -msgstr "" - -#: src/config/SSSDConfig.py:133 -msgid "Location of the user's credential cache" -msgstr "" - -#: src/config/SSSDConfig.py:134 -msgid "Location of the keytab to validate credentials" -msgstr "" - -#: src/config/SSSDConfig.py:135 -msgid "Enable credential validation" -msgstr "" - -#: src/config/SSSDConfig.py:136 -msgid "Store password if offline for later online authentication" -msgstr "" - -#: src/config/SSSDConfig.py:137 -msgid "Renewable lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:138 -msgid "Lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:139 -msgid "Time between two checks for renewal" -msgstr "" - -#: src/config/SSSDConfig.py:140 -msgid "Enables FAST" -msgstr "" - -#: src/config/SSSDConfig.py:141 -msgid "Selects the principal to use for FAST" -msgstr "" - -#: src/config/SSSDConfig.py:142 -msgid "Enables principal canonicalization" -msgstr "" - -#: src/config/SSSDConfig.py:145 -msgid "Server where the change password service is running if not on the KDC" -msgstr "" - -#: src/config/SSSDConfig.py:148 -msgid "ldap_uri, The URI of the LDAP server" -msgstr "" - -#: src/config/SSSDConfig.py:149 -msgid "The default base DN" -msgstr "" - -#: src/config/SSSDConfig.py:150 -msgid "The Schema Type in use on the LDAP server, rfc2307" -msgstr "" - -#: src/config/SSSDConfig.py:151 -msgid "The default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:152 -msgid "The type of the authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:153 -msgid "The authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:154 -msgid "Length of time to attempt connection" -msgstr "" - -#: src/config/SSSDConfig.py:155 -msgid "Length of time to attempt synchronous LDAP operations" -msgstr "" - -#: src/config/SSSDConfig.py:156 -msgid "Length of time between attempts to reconnect while offline" -msgstr "" - -#: src/config/SSSDConfig.py:157 -msgid "Use only the upper case for realm names" -msgstr "" - -#: src/config/SSSDConfig.py:158 -msgid "File that contains CA certificates" -msgstr "" - -#: src/config/SSSDConfig.py:159 -msgid "Path to CA certificate directory" -msgstr "" - -#: src/config/SSSDConfig.py:160 -msgid "File that contains the client certificate" -msgstr "" - -#: src/config/SSSDConfig.py:161 -msgid "File that contains the client key" -msgstr "" - -#: src/config/SSSDConfig.py:162 -msgid "List of possible ciphers suites" -msgstr "" - -#: src/config/SSSDConfig.py:163 -msgid "Require TLS certificate verification" -msgstr "" - -#: src/config/SSSDConfig.py:164 -msgid "Specify the sasl mechanism to use" -msgstr "" - -#: src/config/SSSDConfig.py:165 -msgid "Specify the sasl authorization id to use" -msgstr "" - -#: src/config/SSSDConfig.py:166 -msgid "Specify the sasl authorization realm to use" -msgstr "" - -#: src/config/SSSDConfig.py:167 -msgid "Specify the minimal SSF for LDAP sasl authorization" -msgstr "" - -#: src/config/SSSDConfig.py:168 -msgid "Kerberos service keytab" -msgstr "" - -#: src/config/SSSDConfig.py:169 -msgid "Use Kerberos auth for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:170 -msgid "Follow LDAP referrals" -msgstr "" - -#: src/config/SSSDConfig.py:171 -msgid "Lifetime of TGT for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:172 -msgid "How to dereference aliases" -msgstr "" - -#: src/config/SSSDConfig.py:173 -msgid "Service name for DNS service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:174 -msgid "The number of records to retrieve in a single LDAP query" -msgstr "" - -#: src/config/SSSDConfig.py:175 -msgid "The number of members that must be missing to trigger a full deref" -msgstr "" - -#: src/config/SSSDConfig.py:176 -msgid "" -"Whether the LDAP library should perform a reverse lookup to canonicalize the " -"host name during a SASL bind" -msgstr "" - -#: src/config/SSSDConfig.py:178 -msgid "entryUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:179 -msgid "lastUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:181 -msgid "How long to retain a connection to the LDAP server before disconnecting" -msgstr "" - -#: src/config/SSSDConfig.py:183 -msgid "Disable the LDAP paging control" -msgstr "" - -#: src/config/SSSDConfig.py:186 -msgid "Length of time to wait for a search request" -msgstr "" - -#: src/config/SSSDConfig.py:187 -msgid "Length of time to wait for a enumeration request" -msgstr "" - -#: src/config/SSSDConfig.py:188 -msgid "Length of time between enumeration updates" -msgstr "" - -#: src/config/SSSDConfig.py:189 -msgid "Length of time between cache cleanups" -msgstr "" - -#: src/config/SSSDConfig.py:190 -msgid "Require TLS for ID lookups" -msgstr "" - -#: src/config/SSSDConfig.py:191 -msgid "Base DN for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:192 -msgid "Scope of user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:193 -msgid "Filter for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:194 -msgid "Objectclass for users" -msgstr "" - -#: src/config/SSSDConfig.py:195 -msgid "Username attribute" -msgstr "" - -#: src/config/SSSDConfig.py:197 -msgid "UID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:198 -msgid "Primary GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:199 -msgid "GECOS attribute" -msgstr "" - -#: src/config/SSSDConfig.py:200 -msgid "Home directory attribute" -msgstr "" - -#: src/config/SSSDConfig.py:201 -msgid "Shell attribute" -msgstr "" - -#: src/config/SSSDConfig.py:202 -msgid "UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:203 -msgid "User principal attribute (for Kerberos)" -msgstr "" - -#: src/config/SSSDConfig.py:204 -msgid "Full Name" -msgstr "" - -#: src/config/SSSDConfig.py:205 -msgid "memberOf attribute" -msgstr "" - -#: src/config/SSSDConfig.py:206 -msgid "Modification time attribute" -msgstr "" - -#: src/config/SSSDConfig.py:208 -msgid "shadowLastChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:209 -msgid "shadowMin attribute" -msgstr "" - -#: src/config/SSSDConfig.py:210 -msgid "shadowMax attribute" -msgstr "" - -#: src/config/SSSDConfig.py:211 -msgid "shadowWarning attribute" -msgstr "" - -#: src/config/SSSDConfig.py:212 -msgid "shadowInactive attribute" -msgstr "" - -#: src/config/SSSDConfig.py:213 -msgid "shadowExpire attribute" -msgstr "" - -#: src/config/SSSDConfig.py:214 -msgid "shadowFlag attribute" -msgstr "" - -#: src/config/SSSDConfig.py:215 -msgid "Attribute listing authorized PAM services" -msgstr "" - -#: src/config/SSSDConfig.py:216 -msgid "Attribute listing authorized server hosts" -msgstr "" - -#: src/config/SSSDConfig.py:217 -msgid "krbLastPwdChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:218 -msgid "krbPasswordExpiration attribute" -msgstr "" - -#: src/config/SSSDConfig.py:219 -msgid "Attribute indicating that server side password policies are active" -msgstr "" - -#: src/config/SSSDConfig.py:220 -msgid "accountExpires attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:221 -msgid "userAccountControl attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:222 -msgid "nsAccountLock attribute" -msgstr "" - -#: src/config/SSSDConfig.py:223 -msgid "loginDisabled attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:224 -msgid "loginExpirationTime attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:225 -msgid "loginAllowedTimeMap attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:226 -msgid "SSH public key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:228 -msgid "Base DN for group lookups" -msgstr "" - -#: src/config/SSSDConfig.py:231 -msgid "Objectclass for groups" -msgstr "" - -#: src/config/SSSDConfig.py:232 -msgid "Group name" -msgstr "" - -#: src/config/SSSDConfig.py:233 -msgid "Group password" -msgstr "" - -#: src/config/SSSDConfig.py:234 -msgid "GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:235 -msgid "Group member attribute" -msgstr "" - -#: src/config/SSSDConfig.py:236 -msgid "Group UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:237 -msgid "Modification time attribute for groups" -msgstr "" - -#: src/config/SSSDConfig.py:239 -msgid "Maximum nesting level SSSd will follow" -msgstr "" - -#: src/config/SSSDConfig.py:241 -msgid "Base DN for netgroup lookups" -msgstr "" - -#: src/config/SSSDConfig.py:242 -msgid "Objectclass for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:243 -msgid "Netgroup name" -msgstr "" - -#: src/config/SSSDConfig.py:244 -msgid "Netgroups members attribute" -msgstr "" - -#: src/config/SSSDConfig.py:245 -msgid "Netgroup triple attribute" -msgstr "" - -#: src/config/SSSDConfig.py:246 -msgid "Netgroup UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:247 -msgid "Modification time attribute for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:249 -msgid "Base DN for service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:250 -msgid "Objectclass for services" -msgstr "" - -#: src/config/SSSDConfig.py:251 -msgid "Service name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:252 -msgid "Service port attribute" -msgstr "" - -#: src/config/SSSDConfig.py:253 -msgid "Service protocol attribute" -msgstr "" - -#: src/config/SSSDConfig.py:257 -msgid "Policy to evaluate the password expiration" -msgstr "" - -#: src/config/SSSDConfig.py:260 -msgid "LDAP filter to determine access privileges" -msgstr "" - -#: src/config/SSSDConfig.py:261 -msgid "Which attributes shall be used to evaluate if an account is expired" -msgstr "" - -#: src/config/SSSDConfig.py:262 -msgid "Which rules should be used to evaluate access control" -msgstr "" - -#: src/config/SSSDConfig.py:265 -msgid "URI of an LDAP server where password changes are allowed" -msgstr "" - -#: src/config/SSSDConfig.py:266 -msgid "DNS service name for LDAP password change server" -msgstr "" - -#: src/config/SSSDConfig.py:269 -msgid "Base DN for sudo rules lookups" -msgstr "" - -#: src/config/SSSDConfig.py:270 -msgid "Enable periodical update of all sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:271 -msgid "Length of time between rules updates" -msgstr "" - -#: src/config/SSSDConfig.py:272 -msgid "Object class for sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:273 -msgid "Sudo rule name" -msgstr "" - -#: src/config/SSSDConfig.py:274 -msgid "Sudo rule command attribute" -msgstr "" - -#: src/config/SSSDConfig.py:275 -msgid "Sudo rule host attribute" -msgstr "" - -#: src/config/SSSDConfig.py:276 -msgid "Sudo rule user attribute" -msgstr "" - -#: src/config/SSSDConfig.py:277 -msgid "Sudo rule option attribute" -msgstr "" - -#: src/config/SSSDConfig.py:278 -msgid "Sudo rule runasuser attribute" -msgstr "" - -#: src/config/SSSDConfig.py:279 -msgid "Sudo rule runasgroup attribute" -msgstr "" - -#: src/config/SSSDConfig.py:280 -msgid "Sudo rule notbefore attribute" -msgstr "" - -#: src/config/SSSDConfig.py:281 -msgid "Sudo rule notafter attribute" -msgstr "" - -#: src/config/SSSDConfig.py:282 -msgid "Sudo rule order attribute" -msgstr "" - -#: src/config/SSSDConfig.py:285 -msgid "Object class for automounter maps" -msgstr "" - -#: src/config/SSSDConfig.py:286 -msgid "Automounter map name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:287 -msgid "Object class for automounter map entries" -msgstr "" - -#: src/config/SSSDConfig.py:288 -msgid "Automounter map entry key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:289 -msgid "Automounter map entry value attribute" -msgstr "" - -#: src/config/SSSDConfig.py:290 -msgid "Base DN for automounter map lookups" -msgstr "" - -#: src/config/SSSDConfig.py:293 -msgid "Comma separated list of allowed users" -msgstr "" - -#: src/config/SSSDConfig.py:294 -msgid "Comma separated list of prohibited users" -msgstr "" - -#: src/config/SSSDConfig.py:297 -msgid "Default shell, /bin/bash" -msgstr "" - -#: src/config/SSSDConfig.py:298 -msgid "Base for home directories" -msgstr "" - -#: src/config/SSSDConfig.py:301 -msgid "The name of the NSS library to use" -msgstr "" - -#: src/config/SSSDConfig.py:304 -msgid "PAM stack to use" -msgstr "" - -#: src/monitor/monitor.c:2379 -msgid "Become a daemon (default)" -msgstr "" - -#: src/monitor/monitor.c:2381 -msgid "Run interactive (not a daemon)" -msgstr "" - -#: src/monitor/monitor.c:2383 src/tools/sss_debuglevel.c:77 -msgid "Specify a non-default config file" -msgstr "" - -#: src/monitor/monitor.c:2385 -msgid "Print version number and exit" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1575 src/providers/ldap/ldap_child.c:381 -#: src/util/util.h:89 -msgid "Debug level" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1577 src/providers/ldap/ldap_child.c:383 -#: src/util/util.h:93 -msgid "Add debug timestamps" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1579 src/providers/ldap/ldap_child.c:385 -#: src/util/util.h:95 -msgid "Show timestamps with microseconds" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1581 src/providers/ldap/ldap_child.c:387 -msgid "An open file descriptor for the debug logs" -msgstr "" - -#: src/providers/data_provider_be.c:1938 -msgid "Domain of the information provider (mandatory)" -msgstr "" - -#: src/sss_client/common.c:878 -msgid "Privileged socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:881 -msgid "Public socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:884 -msgid "Unexpected format of the server credential message." -msgstr "" - -#: src/sss_client/common.c:887 -msgid "SSSD is not run by root." -msgstr "" - -#: src/sss_client/common.c:892 -msgid "An error occurred, but no description can be found." -msgstr "" - -#: src/sss_client/common.c:898 -msgid "Unexpected error while looking for an error description" -msgstr "" - -#: src/sss_client/pam_sss.c:378 -msgid "Passwords do not match" -msgstr "" - -#: src/sss_client/pam_sss.c:571 -msgid "Password reset by root is not supported." -msgstr "" - -#: src/sss_client/pam_sss.c:612 -msgid "Authenticated with cached credentials" -msgstr "" - -#: src/sss_client/pam_sss.c:613 -msgid ", your cached password will expire at: " -msgstr "" - -#: src/sss_client/pam_sss.c:643 -#, c-format -msgid "Your password has expired. You have %d grace login(s) remaining." -msgstr "" - -#: src/sss_client/pam_sss.c:689 -#, c-format -msgid "Your password will expire in %d %s." -msgstr "" - -#: src/sss_client/pam_sss.c:738 -msgid "Authentication is denied until: " -msgstr "" - -#: src/sss_client/pam_sss.c:759 -msgid "System is offline, password change not possible" -msgstr "" - -#: src/sss_client/pam_sss.c:789 src/sss_client/pam_sss.c:802 -msgid "Password change failed. " -msgstr "" - -#: src/sss_client/pam_sss.c:792 src/sss_client/pam_sss.c:803 -msgid "Server message: " -msgstr "" - -#: src/sss_client/pam_sss.c:1286 -msgid "New Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1287 -msgid "Reenter new Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1373 -msgid "Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1405 -msgid "Current Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1552 -msgid "Password expired. Change your password now." -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:40 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:211 src/tools/sss_useradd.c:48 -#: src/tools/sss_groupadd.c:41 src/tools/sss_groupdel.c:43 -#: src/tools/sss_groupmod.c:42 src/tools/sss_groupshow.c:615 -#: src/tools/sss_userdel.c:131 src/tools/sss_usermod.c:47 -#: src/tools/sss_cache.c:260 src/tools/sss_debuglevel.c:75 -msgid "The debug level to run with" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:42 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:215 -msgid "The SSSD domain to use" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:58 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:229 src/tools/sss_useradd.c:71 -#: src/tools/sss_groupadd.c:56 src/tools/sss_groupdel.c:52 -#: src/tools/sss_groupmod.c:63 src/tools/sss_groupshow.c:626 -#: src/tools/sss_userdel.c:148 src/tools/sss_usermod.c:72 -#: src/tools/sss_cache.c:281 -msgid "Error setting the locale\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:65 -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:91 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:236 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:269 -msgid "Not enough memory\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:84 -msgid "User not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:104 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:282 -msgid "Error looking up public keys\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:94 -msgid "Failed to open a socket\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:104 -msgid "Failed to connect to the server\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:195 -msgid "Failed to execute proxy command\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:213 -msgid "The port to use to connect to the host" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:255 -msgid "Host not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:261 -msgid "The path to the proxy command must be absolute\n" -msgstr "" - -#: src/tools/sss_useradd.c:49 src/tools/sss_usermod.c:48 -msgid "The UID of the user" -msgstr "" - -#: src/tools/sss_useradd.c:50 src/tools/sss_usermod.c:50 -msgid "The comment string" -msgstr "" - -#: src/tools/sss_useradd.c:51 src/tools/sss_usermod.c:51 -msgid "Home directory" -msgstr "" - -#: src/tools/sss_useradd.c:52 src/tools/sss_usermod.c:52 -msgid "Login shell" -msgstr "" - -#: src/tools/sss_useradd.c:53 -msgid "Groups" -msgstr "" - -#: src/tools/sss_useradd.c:54 -msgid "Create user's directory if it does not exist" -msgstr "" - -#: src/tools/sss_useradd.c:55 -msgid "Never create user's directory, overrides config" -msgstr "" - -#: src/tools/sss_useradd.c:56 -msgid "Specify an alternative skeleton directory" -msgstr "" - -#: src/tools/sss_useradd.c:57 src/tools/sss_usermod.c:57 -msgid "The SELinux user for user's login" -msgstr "" - -#: src/tools/sss_useradd.c:84 src/tools/sss_groupmod.c:76 -#: src/tools/sss_usermod.c:85 -msgid "Specify group to add to\n" -msgstr "" - -#: src/tools/sss_useradd.c:108 -msgid "Specify user to add\n" -msgstr "" - -#: src/tools/sss_useradd.c:117 src/tools/sss_groupadd.c:82 -#: src/tools/sss_groupdel.c:77 src/tools/sss_groupmod.c:109 -#: src/tools/sss_groupshow.c:659 src/tools/sss_userdel.c:193 -#: src/tools/sss_usermod.c:126 -msgid "Error initializing the tools - no local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:119 src/tools/sss_groupadd.c:84 -#: src/tools/sss_groupdel.c:79 src/tools/sss_groupmod.c:111 -#: src/tools/sss_groupshow.c:661 src/tools/sss_userdel.c:195 -#: src/tools/sss_usermod.c:128 -msgid "Error initializing the tools\n" -msgstr "" - -#: src/tools/sss_useradd.c:128 src/tools/sss_groupadd.c:93 -#: src/tools/sss_groupdel.c:88 src/tools/sss_groupmod.c:119 -#: src/tools/sss_groupshow.c:670 src/tools/sss_userdel.c:204 -#: src/tools/sss_usermod.c:137 -msgid "Invalid domain specified in FQDN\n" -msgstr "" - -#: src/tools/sss_useradd.c:137 src/tools/sss_groupmod.c:139 -#: src/tools/sss_groupmod.c:166 src/tools/sss_usermod.c:160 -#: src/tools/sss_usermod.c:187 -msgid "Internal error while parsing parameters\n" -msgstr "" - -#: src/tools/sss_useradd.c:145 src/tools/sss_usermod.c:168 -#: src/tools/sss_usermod.c:195 -msgid "Groups must be in the same domain as user\n" -msgstr "" - -#: src/tools/sss_useradd.c:153 -#, c-format -msgid "Cannot find group %s in local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:168 src/tools/sss_userdel.c:214 -msgid "Cannot set default values\n" -msgstr "" - -#: src/tools/sss_useradd.c:175 src/tools/sss_usermod.c:151 -msgid "The selected UID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_useradd.c:202 src/tools/sss_usermod.c:236 -msgid "Cannot set SELinux login context\n" -msgstr "" - -#: src/tools/sss_useradd.c:217 -msgid "Cannot get info about the user\n" -msgstr "" - -#: src/tools/sss_useradd.c:229 -msgid "User's home directory already exists, not copying data from skeldir\n" -msgstr "" - -#: src/tools/sss_useradd.c:232 -#, c-format -msgid "Cannot create user's home directory: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:243 -#, c-format -msgid "Cannot create user's mail spool: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:255 -msgid "Could not allocate ID for the user - domain full?\n" -msgstr "" - -#: src/tools/sss_useradd.c:259 -msgid "A user or group with the same name or ID already exists\n" -msgstr "" - -#: src/tools/sss_useradd.c:265 -msgid "Transaction error. Could not add user.\n" -msgstr "" - -#: src/tools/sss_groupadd.c:43 src/tools/sss_groupmod.c:48 -msgid "The GID of the group" -msgstr "" - -#: src/tools/sss_groupadd.c:73 -msgid "Specify group to add\n" -msgstr "" - -#: src/tools/sss_groupadd.c:102 src/tools/sss_groupmod.c:190 -msgid "The selected GID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_groupadd.c:127 -msgid "Could not allocate ID for the group - domain full?\n" -msgstr "" - -#: src/tools/sss_groupadd.c:131 -msgid "A group with the same name or GID already exists\n" -msgstr "" - -#: src/tools/sss_groupadd.c:136 -msgid "Transaction error. Could not add group.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:68 -msgid "Specify group to delete\n" -msgstr "" - -#: src/tools/sss_groupdel.c:101 -#, c-format -msgid "Group %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_groupdel.c:115 -msgid "" -"No such group in local domain. Removing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:120 -msgid "Internal error. Could not remove group.\n" -msgstr "" - -#: src/tools/sss_groupmod.c:44 -msgid "Groups to add this group to" -msgstr "" - -#: src/tools/sss_groupmod.c:46 -msgid "Groups to remove this group from" -msgstr "" - -#: src/tools/sss_groupmod.c:84 src/tools/sss_usermod.c:93 -msgid "Specify group to remove from\n" -msgstr "" - -#: src/tools/sss_groupmod.c:98 -msgid "Specify group to modify\n" -msgstr "" - -#: src/tools/sss_groupmod.c:126 -msgid "" -"Cannot find group in local domain, modifying groups is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_groupmod.c:147 src/tools/sss_groupmod.c:174 -msgid "Member groups must be in the same domain as parent group\n" -msgstr "" - -#: src/tools/sss_groupmod.c:155 src/tools/sss_groupmod.c:182 -#: src/tools/sss_usermod.c:176 src/tools/sss_usermod.c:203 -#, c-format -msgid "" -"Cannot find group %s in local domain, only groups in local domain are " -"allowed\n" -msgstr "" - -#: src/tools/sss_groupmod.c:216 -msgid "Could not modify group - check if member group names are correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:220 -msgid "Could not modify group - check if groupname is correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:224 -msgid "Transaction error. Could not modify group.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:562 -#, c-format -msgid "%s%sGroup: %s\n" -msgstr "" - -#: src/tools/sss_groupshow.c:563 -msgid "Magic Private " -msgstr "" - -#: src/tools/sss_groupshow.c:565 -#, c-format -msgid "%sGID number: %d\n" -msgstr "" - -#: src/tools/sss_groupshow.c:567 -#, c-format -msgid "%sMember users: " -msgstr "" - -#: src/tools/sss_groupshow.c:574 -#, c-format -msgid "" -"\n" -"%sIs a member of: " -msgstr "" - -#: src/tools/sss_groupshow.c:581 -#, c-format -msgid "" -"\n" -"%sMember groups: " -msgstr "" - -#: src/tools/sss_groupshow.c:617 -msgid "Print indirect group members recursively" -msgstr "" - -#: src/tools/sss_groupshow.c:650 -msgid "Specify group to show\n" -msgstr "" - -#: src/tools/sss_groupshow.c:689 -msgid "" -"No such group in local domain. Printing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:694 -msgid "Internal error. Could not print group.\n" -msgstr "" - -#: src/tools/sss_userdel.c:133 -msgid "Remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:135 -msgid "Do not remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:137 -msgid "Force removal of files not owned by the user" -msgstr "" - -#: src/tools/sss_userdel.c:139 -msgid "Kill users' processes before removing him" -msgstr "" - -#: src/tools/sss_userdel.c:184 -msgid "Specify user to delete\n" -msgstr "" - -#: src/tools/sss_userdel.c:230 -#, c-format -msgid "User %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_userdel.c:255 -msgid "Cannot reset SELinux login context\n" -msgstr "" - -#: src/tools/sss_userdel.c:267 -#, c-format -msgid "WARNING: The user (uid %lu) was still logged in when deleted.\n" -msgstr "" - -#: src/tools/sss_userdel.c:272 -msgid "Cannot determine if the user was logged in on this platform" -msgstr "" - -#: src/tools/sss_userdel.c:277 -msgid "Error while checking if the user was logged in\n" -msgstr "" - -#: src/tools/sss_userdel.c:284 -#, c-format -msgid "The post-delete command failed: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:296 -msgid "Not removing home dir - not owned by user\n" -msgstr "" - -#: src/tools/sss_userdel.c:298 -#, c-format -msgid "Cannot remove homedir: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:309 -msgid "" -"No such user in local domain. Removing users only allowed in local domain.\n" -msgstr "" - -#: src/tools/sss_userdel.c:314 -msgid "Internal error. Could not remove user.\n" -msgstr "" - -#: src/tools/sss_usermod.c:49 -msgid "The GID of the user" -msgstr "" - -#: src/tools/sss_usermod.c:53 -msgid "Groups to add this user to" -msgstr "" - -#: src/tools/sss_usermod.c:54 -msgid "Groups to remove this user from" -msgstr "" - -#: src/tools/sss_usermod.c:55 -msgid "Lock the account" -msgstr "" - -#: src/tools/sss_usermod.c:56 -msgid "Unlock the account" -msgstr "" - -#: src/tools/sss_usermod.c:117 -msgid "Specify user to modify\n" -msgstr "" - -#: src/tools/sss_usermod.c:144 -msgid "" -"Cannot find user in local domain, modifying users is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_usermod.c:246 -msgid "Could not modify user - check if group names are correct\n" -msgstr "" - -#: src/tools/sss_usermod.c:250 -msgid "Could not modify user - user already member of groups?\n" -msgstr "" - -#: src/tools/sss_usermod.c:254 -msgid "Transaction error. Could not modify user.\n" -msgstr "" - -#: src/tools/sss_cache.c:132 -#, c-format -msgid "Couldn't invalidate %s" -msgstr "" - -#: src/tools/sss_cache.c:138 -#, c-format -msgid "Couldn't invalidate %s %s" -msgstr "" - -#: src/tools/sss_cache.c:262 -msgid "Invalidate particular user" -msgstr "" - -#: src/tools/sss_cache.c:264 -msgid "Invalidate all users" -msgstr "" - -#: src/tools/sss_cache.c:266 -msgid "Invalidate particular group" -msgstr "" - -#: src/tools/sss_cache.c:268 -msgid "Invalidate all groups" -msgstr "" - -#: src/tools/sss_cache.c:270 -msgid "Invalidate particular netgroup" -msgstr "" - -#: src/tools/sss_cache.c:272 -msgid "Invalidate all netgroups" -msgstr "" - -#: src/tools/sss_cache.c:274 -msgid "Only invalidate entries from a particular domain" -msgstr "" - -#: src/tools/sss_debuglevel.c:43 -msgid "\n" -msgstr "" - -#: src/tools/sss_debuglevel.c:102 -msgid "Specify debug level you want to set\n" -msgstr "" - -#: src/tools/tools_util.c:286 -msgid "Out of memory\n" -msgstr "" - -#: src/tools/tools_util.h:40 -#, c-format -msgid "%s must be run as root\n" -msgstr "" - -#: src/util/util.h:91 -msgid "Send the debug output to files instead of stderr" -msgstr "" diff --git a/po/sssd.pot b/po/sssd.pot index 60d971131..cc1ea52a8 100644 --- a/po/sssd.pot +++ b/po/sssd.pot @@ -8,7 +8,7 @@ msgid "" msgstr "" "Project-Id-Version: PACKAGE VERSION\n" "Report-Msgid-Bugs-To: sssd-devel@lists.fedorahosted.org\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" +"POT-Creation-Date: 2012-03-12 16:26-0400\n" "PO-Revision-Date: YEAR-MO-DA HO:MI+ZONE\n" "Last-Translator: FULL NAME \n" "Language-Team: LANGUAGE \n" @@ -878,7 +878,7 @@ msgstr "" msgid "An open file descriptor for the debug logs" msgstr "" -#: src/providers/data_provider_be.c:1938 +#: src/providers/data_provider_be.c:2022 msgid "Domain of the information provider (mandatory)" msgstr "" diff --git a/po/sv.po b/po/sv.po index ebd0b39c7..86049d51d 100644 --- a/po/sv.po +++ b/po/sv.po @@ -7,10 +7,10 @@ msgid "" msgstr "" "Project-Id-Version: SSSD\n" "Report-Msgid-Bugs-To: sssd-devel@lists.fedorahosted.org\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2011-12-21 10:11+0000\n" +"POT-Creation-Date: 2012-03-12 16:26-0400\n" +"PO-Revision-Date: 2012-03-08 11:41+0000\n" "Last-Translator: sgallagh \n" -"Language-Team: Swedish (http://www.transifex.net/projects/p/fedora/team/" +"Language-Team: Swedish (http://www.transifex.net/projects/p/fedora/language/" "sv/)\n" "Language: sv\n" "MIME-Version: 1.0\n" @@ -172,24 +172,20 @@ msgid "Password change provider" msgstr "Leverantör av lösenordsändringar" #: src/config/SSSDConfig.py:88 -#, fuzzy msgid "SUDO provider" -msgstr "Identifiera leverantör" +msgstr "" #: src/config/SSSDConfig.py:89 -#, fuzzy msgid "Autofs provider" -msgstr "Autentiseringsleverantör" +msgstr "" #: src/config/SSSDConfig.py:90 -#, fuzzy msgid "Session-loading provider" -msgstr "Leverantör av åtkomstkontroll" +msgstr "" #: src/config/SSSDConfig.py:91 -#, fuzzy msgid "Host identity provider" -msgstr "Identifiera leverantör" +msgstr "" #: src/config/SSSDConfig.py:94 msgid "Minimum user ID" @@ -634,9 +630,8 @@ msgid "loginAllowedTimeMap attribute of NDS" msgstr "" #: src/config/SSSDConfig.py:226 -#, fuzzy msgid "SSH public key attribute" -msgstr "Hemkatalogattribut" +msgstr "" #: src/config/SSSDConfig.py:228 msgid "Base DN for group lookups" @@ -703,29 +698,24 @@ msgid "Modification time attribute for netgroups" msgstr "" #: src/config/SSSDConfig.py:249 -#, fuzzy msgid "Base DN for service lookups" -msgstr "Bas-DN för användaruppslagningar" +msgstr "" #: src/config/SSSDConfig.py:250 -#, fuzzy msgid "Objectclass for services" -msgstr "Objektklass för användare" +msgstr "" #: src/config/SSSDConfig.py:251 -#, fuzzy msgid "Service name attribute" -msgstr "Användarnamnsattribut" +msgstr "" #: src/config/SSSDConfig.py:252 -#, fuzzy msgid "Service port attribute" -msgstr "Hemkatalogattribut" +msgstr "" #: src/config/SSSDConfig.py:253 -#, fuzzy msgid "Service protocol attribute" -msgstr "Skalattribut" +msgstr "" #: src/config/SSSDConfig.py:257 msgid "Policy to evaluate the password expiration" @@ -752,100 +742,84 @@ msgid "DNS service name for LDAP password change server" msgstr "" #: src/config/SSSDConfig.py:269 -#, fuzzy msgid "Base DN for sudo rules lookups" -msgstr "Bas-DN för användaruppslagningar" +msgstr "" #: src/config/SSSDConfig.py:270 msgid "Enable periodical update of all sudo rules" msgstr "" #: src/config/SSSDConfig.py:271 -#, fuzzy msgid "Length of time between rules updates" -msgstr "Tidslängd mellan uppräkningsuppdateringar" +msgstr "" #: src/config/SSSDConfig.py:272 -#, fuzzy msgid "Object class for sudo rules" -msgstr "Objektklass för användare" +msgstr "" #: src/config/SSSDConfig.py:273 msgid "Sudo rule name" msgstr "" #: src/config/SSSDConfig.py:274 -#, fuzzy msgid "Sudo rule command attribute" -msgstr "Hemkatalogattribut" +msgstr "" #: src/config/SSSDConfig.py:275 -#, fuzzy msgid "Sudo rule host attribute" -msgstr "Hemkatalogattribut" +msgstr "" #: src/config/SSSDConfig.py:276 -#, fuzzy msgid "Sudo rule user attribute" -msgstr "Hemkatalogattribut" +msgstr "" #: src/config/SSSDConfig.py:277 -#, fuzzy msgid "Sudo rule option attribute" -msgstr "Hemkatalogattribut" +msgstr "" #: src/config/SSSDConfig.py:278 -#, fuzzy msgid "Sudo rule runasuser attribute" -msgstr "Användarnamnsattribut" +msgstr "" #: src/config/SSSDConfig.py:279 msgid "Sudo rule runasgroup attribute" msgstr "" #: src/config/SSSDConfig.py:280 -#, fuzzy msgid "Sudo rule notbefore attribute" -msgstr "Hemkatalogattribut" +msgstr "" #: src/config/SSSDConfig.py:281 -#, fuzzy msgid "Sudo rule notafter attribute" -msgstr "Hemkatalogattribut" +msgstr "" #: src/config/SSSDConfig.py:282 -#, fuzzy msgid "Sudo rule order attribute" -msgstr "Hemkatalogattribut" +msgstr "" #: src/config/SSSDConfig.py:285 -#, fuzzy msgid "Object class for automounter maps" -msgstr "Objektklass för användare" +msgstr "" #: src/config/SSSDConfig.py:286 -#, fuzzy msgid "Automounter map name attribute" -msgstr "Användarnamnsattribut" +msgstr "" #: src/config/SSSDConfig.py:287 -#, fuzzy msgid "Object class for automounter map entries" -msgstr "Objektklass för användare" +msgstr "" #: src/config/SSSDConfig.py:288 -#, fuzzy msgid "Automounter map entry key attribute" -msgstr "Hemkatalogattribut" +msgstr "" #: src/config/SSSDConfig.py:289 msgid "Automounter map entry value attribute" msgstr "" #: src/config/SSSDConfig.py:290 -#, fuzzy msgid "Base DN for automounter map lookups" -msgstr "Bas-DN för användaruppslagningar" +msgstr "" #: src/config/SSSDConfig.py:293 msgid "Comma separated list of allowed users" @@ -906,7 +880,7 @@ msgstr "" msgid "An open file descriptor for the debug logs" msgstr "" -#: src/providers/data_provider_be.c:1938 +#: src/providers/data_provider_be.c:2022 msgid "Domain of the information provider (mandatory)" msgstr "" @@ -1007,9 +981,8 @@ msgstr "Felsökningsnivå att köra med" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:42 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:215 -#, fuzzy msgid "The SSSD domain to use" -msgstr "SSSD-domäner att starta" +msgstr "" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:58 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:229 src/tools/sss_useradd.c:71 @@ -1024,9 +997,8 @@ msgstr "Fel när lokalen sattes\n" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:91 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:236 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:269 -#, fuzzy msgid "Not enough memory\n" -msgstr "Slut på minne\n" +msgstr "" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:84 msgid "User not specified\n" @@ -1492,9 +1464,8 @@ msgid "\n" msgstr "" #: src/tools/sss_debuglevel.c:102 -#, fuzzy msgid "Specify debug level you want to set\n" -msgstr "Felsökningsnivå att köra med" +msgstr "" #: src/tools/tools_util.c:286 msgid "Out of memory\n" diff --git a/po/ta.po b/po/ta.po deleted file mode 100644 index 67efb549a..000000000 --- a/po/ta.po +++ /dev/null @@ -1,1462 +0,0 @@ -# SOME DESCRIPTIVE TITLE. -# Copyright (C) YEAR Red Hat, Inc. -# This file is distributed under the same license as the PACKAGE package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@lists.fedorahosted.org\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-11-30 04:10+0000\n" -"Last-Translator: FULL NAME \n" -"Language-Team: Tamil \n" -"Language: ta\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=2; plural=(n != 1)\n" - -#: src/config/SSSDConfig.py:39 -msgid "Set the verbosity of the debug logging" -msgstr "" - -#: src/config/SSSDConfig.py:40 -msgid "Include timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:41 -msgid "Include microseconds in timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:42 -msgid "Write debug messages to logfiles" -msgstr "" - -#: src/config/SSSDConfig.py:43 -msgid "Ping timeout before restarting service" -msgstr "" - -#: src/config/SSSDConfig.py:44 -msgid "Command to start service" -msgstr "" - -#: src/config/SSSDConfig.py:45 -msgid "Number of times to attempt connection to Data Providers" -msgstr "" - -#: src/config/SSSDConfig.py:48 -msgid "SSSD Services to start" -msgstr "" - -#: src/config/SSSDConfig.py:49 -msgid "SSSD Domains to start" -msgstr "" - -#: src/config/SSSDConfig.py:50 -msgid "Timeout for messages sent over the SBUS" -msgstr "" - -#: src/config/SSSDConfig.py:51 -msgid "Regex to parse username and domain" -msgstr "" - -#: src/config/SSSDConfig.py:52 -msgid "Printf-compatible format for displaying fully-qualified names" -msgstr "" - -#: src/config/SSSDConfig.py:53 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#: src/config/SSSDConfig.py:56 -msgid "Enumeration cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:57 -msgid "Entry cache background update timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:58 src/config/SSSDConfig.py:81 -msgid "Negative cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:59 -msgid "Users that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:60 -msgid "Groups that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:61 -msgid "Should filtered users appear in groups" -msgstr "" - -#: src/config/SSSDConfig.py:62 -msgid "The value of the password field the NSS provider should return" -msgstr "" - -#: src/config/SSSDConfig.py:63 -msgid "Override homedir value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:64 -msgid "The list of shells users are allowed to log in with" -msgstr "" - -#: src/config/SSSDConfig.py:65 -msgid "" -"The list of shells that will be vetoed, and replaced with the fallback shell" -msgstr "" - -#: src/config/SSSDConfig.py:66 -msgid "" -"If a shell stored in central directory is allowed but not available, use " -"this fallback" -msgstr "" - -#: src/config/SSSDConfig.py:69 -msgid "How long to allow cached logins between online logins (days)" -msgstr "" - -#: src/config/SSSDConfig.py:70 -msgid "How many failed logins attempts are allowed when offline" -msgstr "" - -#: src/config/SSSDConfig.py:71 -msgid "" -"How long (minutes) to deny login after offline_failed_login_attempts has " -"been reached" -msgstr "" - -#: src/config/SSSDConfig.py:72 -msgid "What kind of messages are displayed to the user during authentication" -msgstr "" - -#: src/config/SSSDConfig.py:73 -msgid "How many seconds to keep identity information cached for PAM requests" -msgstr "" - -#: src/config/SSSDConfig.py:74 -msgid "How many days before password expiration a warning should be displayed" -msgstr "" - -#: src/config/SSSDConfig.py:77 -msgid "Whether to evaluate the time-based attributes in sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:78 -msgid "" -"How many seconds to keep sudorules cached before asking the provider again" -msgstr "" - -#: src/config/SSSDConfig.py:84 -msgid "Identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:85 -msgid "Authentication provider" -msgstr "" - -#: src/config/SSSDConfig.py:86 -msgid "Access control provider" -msgstr "" - -#: src/config/SSSDConfig.py:87 -msgid "Password change provider" -msgstr "" - -#: src/config/SSSDConfig.py:88 -msgid "SUDO provider" -msgstr "" - -#: src/config/SSSDConfig.py:89 -msgid "Autofs provider" -msgstr "" - -#: src/config/SSSDConfig.py:90 -msgid "Session-loading provider" -msgstr "" - -#: src/config/SSSDConfig.py:91 -msgid "Host identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:94 -msgid "Minimum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:95 -msgid "Maximum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:96 -msgid "Enable enumerating all users/groups" -msgstr "" - -#: src/config/SSSDConfig.py:97 -msgid "Cache credentials for offline login" -msgstr "" - -#: src/config/SSSDConfig.py:98 -msgid "Store password hashes" -msgstr "" - -#: src/config/SSSDConfig.py:99 -msgid "Display users/groups in fully-qualified form" -msgstr "" - -#: src/config/SSSDConfig.py:100 src/config/SSSDConfig.py:107 -#: src/config/SSSDConfig.py:108 src/config/SSSDConfig.py:109 -#: src/config/SSSDConfig.py:110 src/config/SSSDConfig.py:111 -msgid "Entry cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:101 -msgid "" -"Restrict or prefer a specific address family when performing DNS lookups" -msgstr "" - -#: src/config/SSSDConfig.py:102 -msgid "How long to keep cached entries after last successful login (days)" -msgstr "" - -#: src/config/SSSDConfig.py:103 -msgid "How long to wait for replies from DNS when resolving servers (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:104 -msgid "The domain part of service discovery DNS query" -msgstr "" - -#: src/config/SSSDConfig.py:105 -msgid "Override GID value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:106 -msgid "Treat usernames as case sensitive" -msgstr "" - -#: src/config/SSSDConfig.py:114 -msgid "IPA domain" -msgstr "" - -#: src/config/SSSDConfig.py:115 -msgid "IPA server address" -msgstr "" - -#: src/config/SSSDConfig.py:116 -msgid "IPA client hostname" -msgstr "" - -#: src/config/SSSDConfig.py:117 -msgid "Whether to automatically update the client's DNS entry in FreeIPA" -msgstr "" - -#: src/config/SSSDConfig.py:118 -msgid "The interface whose IP should be used for dynamic DNS updates" -msgstr "" - -#: src/config/SSSDConfig.py:119 -msgid "Search base for HBAC related objects" -msgstr "" - -#: src/config/SSSDConfig.py:120 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server" -msgstr "" - -#: src/config/SSSDConfig.py:121 -msgid "If DENY rules are present, either DENY_ALL or IGNORE" -msgstr "" - -#: src/config/SSSDConfig.py:122 -msgid "If set to false, host argument given by PAM will be ignored" -msgstr "" - -#: src/config/SSSDConfig.py:123 -msgid "The automounter location this IPA client is using" -msgstr "" - -#: src/config/SSSDConfig.py:126 src/config/SSSDConfig.py:127 -msgid "Kerberos server address" -msgstr "" - -#: src/config/SSSDConfig.py:128 -msgid "Kerberos realm" -msgstr "" - -#: src/config/SSSDConfig.py:129 -msgid "Authentication timeout" -msgstr "" - -#: src/config/SSSDConfig.py:132 -msgid "Directory to store credential caches" -msgstr "" - -#: src/config/SSSDConfig.py:133 -msgid "Location of the user's credential cache" -msgstr "" - -#: src/config/SSSDConfig.py:134 -msgid "Location of the keytab to validate credentials" -msgstr "" - -#: src/config/SSSDConfig.py:135 -msgid "Enable credential validation" -msgstr "" - -#: src/config/SSSDConfig.py:136 -msgid "Store password if offline for later online authentication" -msgstr "" - -#: src/config/SSSDConfig.py:137 -msgid "Renewable lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:138 -msgid "Lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:139 -msgid "Time between two checks for renewal" -msgstr "" - -#: src/config/SSSDConfig.py:140 -msgid "Enables FAST" -msgstr "" - -#: src/config/SSSDConfig.py:141 -msgid "Selects the principal to use for FAST" -msgstr "" - -#: src/config/SSSDConfig.py:142 -msgid "Enables principal canonicalization" -msgstr "" - -#: src/config/SSSDConfig.py:145 -msgid "Server where the change password service is running if not on the KDC" -msgstr "" - -#: src/config/SSSDConfig.py:148 -msgid "ldap_uri, The URI of the LDAP server" -msgstr "" - -#: src/config/SSSDConfig.py:149 -msgid "The default base DN" -msgstr "" - -#: src/config/SSSDConfig.py:150 -msgid "The Schema Type in use on the LDAP server, rfc2307" -msgstr "" - -#: src/config/SSSDConfig.py:151 -msgid "The default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:152 -msgid "The type of the authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:153 -msgid "The authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:154 -msgid "Length of time to attempt connection" -msgstr "" - -#: src/config/SSSDConfig.py:155 -msgid "Length of time to attempt synchronous LDAP operations" -msgstr "" - -#: src/config/SSSDConfig.py:156 -msgid "Length of time between attempts to reconnect while offline" -msgstr "" - -#: src/config/SSSDConfig.py:157 -msgid "Use only the upper case for realm names" -msgstr "" - -#: src/config/SSSDConfig.py:158 -msgid "File that contains CA certificates" -msgstr "" - -#: src/config/SSSDConfig.py:159 -msgid "Path to CA certificate directory" -msgstr "" - -#: src/config/SSSDConfig.py:160 -msgid "File that contains the client certificate" -msgstr "" - -#: src/config/SSSDConfig.py:161 -msgid "File that contains the client key" -msgstr "" - -#: src/config/SSSDConfig.py:162 -msgid "List of possible ciphers suites" -msgstr "" - -#: src/config/SSSDConfig.py:163 -msgid "Require TLS certificate verification" -msgstr "" - -#: src/config/SSSDConfig.py:164 -msgid "Specify the sasl mechanism to use" -msgstr "" - -#: src/config/SSSDConfig.py:165 -msgid "Specify the sasl authorization id to use" -msgstr "" - -#: src/config/SSSDConfig.py:166 -msgid "Specify the sasl authorization realm to use" -msgstr "" - -#: src/config/SSSDConfig.py:167 -msgid "Specify the minimal SSF for LDAP sasl authorization" -msgstr "" - -#: src/config/SSSDConfig.py:168 -msgid "Kerberos service keytab" -msgstr "" - -#: src/config/SSSDConfig.py:169 -msgid "Use Kerberos auth for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:170 -msgid "Follow LDAP referrals" -msgstr "" - -#: src/config/SSSDConfig.py:171 -msgid "Lifetime of TGT for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:172 -msgid "How to dereference aliases" -msgstr "" - -#: src/config/SSSDConfig.py:173 -msgid "Service name for DNS service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:174 -msgid "The number of records to retrieve in a single LDAP query" -msgstr "" - -#: src/config/SSSDConfig.py:175 -msgid "The number of members that must be missing to trigger a full deref" -msgstr "" - -#: src/config/SSSDConfig.py:176 -msgid "" -"Whether the LDAP library should perform a reverse lookup to canonicalize the " -"host name during a SASL bind" -msgstr "" - -#: src/config/SSSDConfig.py:178 -msgid "entryUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:179 -msgid "lastUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:181 -msgid "How long to retain a connection to the LDAP server before disconnecting" -msgstr "" - -#: src/config/SSSDConfig.py:183 -msgid "Disable the LDAP paging control" -msgstr "" - -#: src/config/SSSDConfig.py:186 -msgid "Length of time to wait for a search request" -msgstr "" - -#: src/config/SSSDConfig.py:187 -msgid "Length of time to wait for a enumeration request" -msgstr "" - -#: src/config/SSSDConfig.py:188 -msgid "Length of time between enumeration updates" -msgstr "" - -#: src/config/SSSDConfig.py:189 -msgid "Length of time between cache cleanups" -msgstr "" - -#: src/config/SSSDConfig.py:190 -msgid "Require TLS for ID lookups" -msgstr "" - -#: src/config/SSSDConfig.py:191 -msgid "Base DN for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:192 -msgid "Scope of user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:193 -msgid "Filter for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:194 -msgid "Objectclass for users" -msgstr "" - -#: src/config/SSSDConfig.py:195 -msgid "Username attribute" -msgstr "" - -#: src/config/SSSDConfig.py:197 -msgid "UID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:198 -msgid "Primary GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:199 -msgid "GECOS attribute" -msgstr "" - -#: src/config/SSSDConfig.py:200 -msgid "Home directory attribute" -msgstr "" - -#: src/config/SSSDConfig.py:201 -msgid "Shell attribute" -msgstr "" - -#: src/config/SSSDConfig.py:202 -msgid "UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:203 -msgid "User principal attribute (for Kerberos)" -msgstr "" - -#: src/config/SSSDConfig.py:204 -msgid "Full Name" -msgstr "" - -#: src/config/SSSDConfig.py:205 -msgid "memberOf attribute" -msgstr "" - -#: src/config/SSSDConfig.py:206 -msgid "Modification time attribute" -msgstr "" - -#: src/config/SSSDConfig.py:208 -msgid "shadowLastChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:209 -msgid "shadowMin attribute" -msgstr "" - -#: src/config/SSSDConfig.py:210 -msgid "shadowMax attribute" -msgstr "" - -#: src/config/SSSDConfig.py:211 -msgid "shadowWarning attribute" -msgstr "" - -#: src/config/SSSDConfig.py:212 -msgid "shadowInactive attribute" -msgstr "" - -#: src/config/SSSDConfig.py:213 -msgid "shadowExpire attribute" -msgstr "" - -#: src/config/SSSDConfig.py:214 -msgid "shadowFlag attribute" -msgstr "" - -#: src/config/SSSDConfig.py:215 -msgid "Attribute listing authorized PAM services" -msgstr "" - -#: src/config/SSSDConfig.py:216 -msgid "Attribute listing authorized server hosts" -msgstr "" - -#: src/config/SSSDConfig.py:217 -msgid "krbLastPwdChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:218 -msgid "krbPasswordExpiration attribute" -msgstr "" - -#: src/config/SSSDConfig.py:219 -msgid "Attribute indicating that server side password policies are active" -msgstr "" - -#: src/config/SSSDConfig.py:220 -msgid "accountExpires attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:221 -msgid "userAccountControl attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:222 -msgid "nsAccountLock attribute" -msgstr "" - -#: src/config/SSSDConfig.py:223 -msgid "loginDisabled attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:224 -msgid "loginExpirationTime attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:225 -msgid "loginAllowedTimeMap attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:226 -msgid "SSH public key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:228 -msgid "Base DN for group lookups" -msgstr "" - -#: src/config/SSSDConfig.py:231 -msgid "Objectclass for groups" -msgstr "" - -#: src/config/SSSDConfig.py:232 -msgid "Group name" -msgstr "" - -#: src/config/SSSDConfig.py:233 -msgid "Group password" -msgstr "" - -#: src/config/SSSDConfig.py:234 -msgid "GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:235 -msgid "Group member attribute" -msgstr "" - -#: src/config/SSSDConfig.py:236 -msgid "Group UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:237 -msgid "Modification time attribute for groups" -msgstr "" - -#: src/config/SSSDConfig.py:239 -msgid "Maximum nesting level SSSd will follow" -msgstr "" - -#: src/config/SSSDConfig.py:241 -msgid "Base DN for netgroup lookups" -msgstr "" - -#: src/config/SSSDConfig.py:242 -msgid "Objectclass for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:243 -msgid "Netgroup name" -msgstr "" - -#: src/config/SSSDConfig.py:244 -msgid "Netgroups members attribute" -msgstr "" - -#: src/config/SSSDConfig.py:245 -msgid "Netgroup triple attribute" -msgstr "" - -#: src/config/SSSDConfig.py:246 -msgid "Netgroup UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:247 -msgid "Modification time attribute for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:249 -msgid "Base DN for service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:250 -msgid "Objectclass for services" -msgstr "" - -#: src/config/SSSDConfig.py:251 -msgid "Service name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:252 -msgid "Service port attribute" -msgstr "" - -#: src/config/SSSDConfig.py:253 -msgid "Service protocol attribute" -msgstr "" - -#: src/config/SSSDConfig.py:257 -msgid "Policy to evaluate the password expiration" -msgstr "" - -#: src/config/SSSDConfig.py:260 -msgid "LDAP filter to determine access privileges" -msgstr "" - -#: src/config/SSSDConfig.py:261 -msgid "Which attributes shall be used to evaluate if an account is expired" -msgstr "" - -#: src/config/SSSDConfig.py:262 -msgid "Which rules should be used to evaluate access control" -msgstr "" - -#: src/config/SSSDConfig.py:265 -msgid "URI of an LDAP server where password changes are allowed" -msgstr "" - -#: src/config/SSSDConfig.py:266 -msgid "DNS service name for LDAP password change server" -msgstr "" - -#: src/config/SSSDConfig.py:269 -msgid "Base DN for sudo rules lookups" -msgstr "" - -#: src/config/SSSDConfig.py:270 -msgid "Enable periodical update of all sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:271 -msgid "Length of time between rules updates" -msgstr "" - -#: src/config/SSSDConfig.py:272 -msgid "Object class for sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:273 -msgid "Sudo rule name" -msgstr "" - -#: src/config/SSSDConfig.py:274 -msgid "Sudo rule command attribute" -msgstr "" - -#: src/config/SSSDConfig.py:275 -msgid "Sudo rule host attribute" -msgstr "" - -#: src/config/SSSDConfig.py:276 -msgid "Sudo rule user attribute" -msgstr "" - -#: src/config/SSSDConfig.py:277 -msgid "Sudo rule option attribute" -msgstr "" - -#: src/config/SSSDConfig.py:278 -msgid "Sudo rule runasuser attribute" -msgstr "" - -#: src/config/SSSDConfig.py:279 -msgid "Sudo rule runasgroup attribute" -msgstr "" - -#: src/config/SSSDConfig.py:280 -msgid "Sudo rule notbefore attribute" -msgstr "" - -#: src/config/SSSDConfig.py:281 -msgid "Sudo rule notafter attribute" -msgstr "" - -#: src/config/SSSDConfig.py:282 -msgid "Sudo rule order attribute" -msgstr "" - -#: src/config/SSSDConfig.py:285 -msgid "Object class for automounter maps" -msgstr "" - -#: src/config/SSSDConfig.py:286 -msgid "Automounter map name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:287 -msgid "Object class for automounter map entries" -msgstr "" - -#: src/config/SSSDConfig.py:288 -msgid "Automounter map entry key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:289 -msgid "Automounter map entry value attribute" -msgstr "" - -#: src/config/SSSDConfig.py:290 -msgid "Base DN for automounter map lookups" -msgstr "" - -#: src/config/SSSDConfig.py:293 -msgid "Comma separated list of allowed users" -msgstr "" - -#: src/config/SSSDConfig.py:294 -msgid "Comma separated list of prohibited users" -msgstr "" - -#: src/config/SSSDConfig.py:297 -msgid "Default shell, /bin/bash" -msgstr "" - -#: src/config/SSSDConfig.py:298 -msgid "Base for home directories" -msgstr "" - -#: src/config/SSSDConfig.py:301 -msgid "The name of the NSS library to use" -msgstr "" - -#: src/config/SSSDConfig.py:304 -msgid "PAM stack to use" -msgstr "" - -#: src/monitor/monitor.c:2379 -msgid "Become a daemon (default)" -msgstr "" - -#: src/monitor/monitor.c:2381 -msgid "Run interactive (not a daemon)" -msgstr "" - -#: src/monitor/monitor.c:2383 src/tools/sss_debuglevel.c:77 -msgid "Specify a non-default config file" -msgstr "" - -#: src/monitor/monitor.c:2385 -msgid "Print version number and exit" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1575 src/providers/ldap/ldap_child.c:381 -#: src/util/util.h:89 -msgid "Debug level" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1577 src/providers/ldap/ldap_child.c:383 -#: src/util/util.h:93 -msgid "Add debug timestamps" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1579 src/providers/ldap/ldap_child.c:385 -#: src/util/util.h:95 -msgid "Show timestamps with microseconds" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1581 src/providers/ldap/ldap_child.c:387 -msgid "An open file descriptor for the debug logs" -msgstr "" - -#: src/providers/data_provider_be.c:1938 -msgid "Domain of the information provider (mandatory)" -msgstr "" - -#: src/sss_client/common.c:878 -msgid "Privileged socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:881 -msgid "Public socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:884 -msgid "Unexpected format of the server credential message." -msgstr "" - -#: src/sss_client/common.c:887 -msgid "SSSD is not run by root." -msgstr "" - -#: src/sss_client/common.c:892 -msgid "An error occurred, but no description can be found." -msgstr "" - -#: src/sss_client/common.c:898 -msgid "Unexpected error while looking for an error description" -msgstr "" - -#: src/sss_client/pam_sss.c:378 -msgid "Passwords do not match" -msgstr "" - -#: src/sss_client/pam_sss.c:571 -msgid "Password reset by root is not supported." -msgstr "" - -#: src/sss_client/pam_sss.c:612 -msgid "Authenticated with cached credentials" -msgstr "" - -#: src/sss_client/pam_sss.c:613 -msgid ", your cached password will expire at: " -msgstr "" - -#: src/sss_client/pam_sss.c:643 -#, c-format -msgid "Your password has expired. You have %d grace login(s) remaining." -msgstr "" - -#: src/sss_client/pam_sss.c:689 -#, c-format -msgid "Your password will expire in %d %s." -msgstr "" - -#: src/sss_client/pam_sss.c:738 -msgid "Authentication is denied until: " -msgstr "" - -#: src/sss_client/pam_sss.c:759 -msgid "System is offline, password change not possible" -msgstr "" - -#: src/sss_client/pam_sss.c:789 src/sss_client/pam_sss.c:802 -msgid "Password change failed. " -msgstr "" - -#: src/sss_client/pam_sss.c:792 src/sss_client/pam_sss.c:803 -msgid "Server message: " -msgstr "" - -#: src/sss_client/pam_sss.c:1286 -msgid "New Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1287 -msgid "Reenter new Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1373 -msgid "Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1405 -msgid "Current Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1552 -msgid "Password expired. Change your password now." -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:40 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:211 src/tools/sss_useradd.c:48 -#: src/tools/sss_groupadd.c:41 src/tools/sss_groupdel.c:43 -#: src/tools/sss_groupmod.c:42 src/tools/sss_groupshow.c:615 -#: src/tools/sss_userdel.c:131 src/tools/sss_usermod.c:47 -#: src/tools/sss_cache.c:260 src/tools/sss_debuglevel.c:75 -msgid "The debug level to run with" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:42 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:215 -msgid "The SSSD domain to use" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:58 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:229 src/tools/sss_useradd.c:71 -#: src/tools/sss_groupadd.c:56 src/tools/sss_groupdel.c:52 -#: src/tools/sss_groupmod.c:63 src/tools/sss_groupshow.c:626 -#: src/tools/sss_userdel.c:148 src/tools/sss_usermod.c:72 -#: src/tools/sss_cache.c:281 -msgid "Error setting the locale\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:65 -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:91 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:236 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:269 -msgid "Not enough memory\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:84 -msgid "User not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:104 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:282 -msgid "Error looking up public keys\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:94 -msgid "Failed to open a socket\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:104 -msgid "Failed to connect to the server\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:195 -msgid "Failed to execute proxy command\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:213 -msgid "The port to use to connect to the host" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:255 -msgid "Host not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:261 -msgid "The path to the proxy command must be absolute\n" -msgstr "" - -#: src/tools/sss_useradd.c:49 src/tools/sss_usermod.c:48 -msgid "The UID of the user" -msgstr "" - -#: src/tools/sss_useradd.c:50 src/tools/sss_usermod.c:50 -msgid "The comment string" -msgstr "" - -#: src/tools/sss_useradd.c:51 src/tools/sss_usermod.c:51 -msgid "Home directory" -msgstr "" - -#: src/tools/sss_useradd.c:52 src/tools/sss_usermod.c:52 -msgid "Login shell" -msgstr "" - -#: src/tools/sss_useradd.c:53 -msgid "Groups" -msgstr "" - -#: src/tools/sss_useradd.c:54 -msgid "Create user's directory if it does not exist" -msgstr "" - -#: src/tools/sss_useradd.c:55 -msgid "Never create user's directory, overrides config" -msgstr "" - -#: src/tools/sss_useradd.c:56 -msgid "Specify an alternative skeleton directory" -msgstr "" - -#: src/tools/sss_useradd.c:57 src/tools/sss_usermod.c:57 -msgid "The SELinux user for user's login" -msgstr "" - -#: src/tools/sss_useradd.c:84 src/tools/sss_groupmod.c:76 -#: src/tools/sss_usermod.c:85 -msgid "Specify group to add to\n" -msgstr "" - -#: src/tools/sss_useradd.c:108 -msgid "Specify user to add\n" -msgstr "" - -#: src/tools/sss_useradd.c:117 src/tools/sss_groupadd.c:82 -#: src/tools/sss_groupdel.c:77 src/tools/sss_groupmod.c:109 -#: src/tools/sss_groupshow.c:659 src/tools/sss_userdel.c:193 -#: src/tools/sss_usermod.c:126 -msgid "Error initializing the tools - no local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:119 src/tools/sss_groupadd.c:84 -#: src/tools/sss_groupdel.c:79 src/tools/sss_groupmod.c:111 -#: src/tools/sss_groupshow.c:661 src/tools/sss_userdel.c:195 -#: src/tools/sss_usermod.c:128 -msgid "Error initializing the tools\n" -msgstr "" - -#: src/tools/sss_useradd.c:128 src/tools/sss_groupadd.c:93 -#: src/tools/sss_groupdel.c:88 src/tools/sss_groupmod.c:119 -#: src/tools/sss_groupshow.c:670 src/tools/sss_userdel.c:204 -#: src/tools/sss_usermod.c:137 -msgid "Invalid domain specified in FQDN\n" -msgstr "" - -#: src/tools/sss_useradd.c:137 src/tools/sss_groupmod.c:139 -#: src/tools/sss_groupmod.c:166 src/tools/sss_usermod.c:160 -#: src/tools/sss_usermod.c:187 -msgid "Internal error while parsing parameters\n" -msgstr "" - -#: src/tools/sss_useradd.c:145 src/tools/sss_usermod.c:168 -#: src/tools/sss_usermod.c:195 -msgid "Groups must be in the same domain as user\n" -msgstr "" - -#: src/tools/sss_useradd.c:153 -#, c-format -msgid "Cannot find group %s in local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:168 src/tools/sss_userdel.c:214 -msgid "Cannot set default values\n" -msgstr "" - -#: src/tools/sss_useradd.c:175 src/tools/sss_usermod.c:151 -msgid "The selected UID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_useradd.c:202 src/tools/sss_usermod.c:236 -msgid "Cannot set SELinux login context\n" -msgstr "" - -#: src/tools/sss_useradd.c:217 -msgid "Cannot get info about the user\n" -msgstr "" - -#: src/tools/sss_useradd.c:229 -msgid "User's home directory already exists, not copying data from skeldir\n" -msgstr "" - -#: src/tools/sss_useradd.c:232 -#, c-format -msgid "Cannot create user's home directory: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:243 -#, c-format -msgid "Cannot create user's mail spool: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:255 -msgid "Could not allocate ID for the user - domain full?\n" -msgstr "" - -#: src/tools/sss_useradd.c:259 -msgid "A user or group with the same name or ID already exists\n" -msgstr "" - -#: src/tools/sss_useradd.c:265 -msgid "Transaction error. Could not add user.\n" -msgstr "" - -#: src/tools/sss_groupadd.c:43 src/tools/sss_groupmod.c:48 -msgid "The GID of the group" -msgstr "" - -#: src/tools/sss_groupadd.c:73 -msgid "Specify group to add\n" -msgstr "" - -#: src/tools/sss_groupadd.c:102 src/tools/sss_groupmod.c:190 -msgid "The selected GID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_groupadd.c:127 -msgid "Could not allocate ID for the group - domain full?\n" -msgstr "" - -#: src/tools/sss_groupadd.c:131 -msgid "A group with the same name or GID already exists\n" -msgstr "" - -#: src/tools/sss_groupadd.c:136 -msgid "Transaction error. Could not add group.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:68 -msgid "Specify group to delete\n" -msgstr "" - -#: src/tools/sss_groupdel.c:101 -#, c-format -msgid "Group %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_groupdel.c:115 -msgid "" -"No such group in local domain. Removing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:120 -msgid "Internal error. Could not remove group.\n" -msgstr "" - -#: src/tools/sss_groupmod.c:44 -msgid "Groups to add this group to" -msgstr "" - -#: src/tools/sss_groupmod.c:46 -msgid "Groups to remove this group from" -msgstr "" - -#: src/tools/sss_groupmod.c:84 src/tools/sss_usermod.c:93 -msgid "Specify group to remove from\n" -msgstr "" - -#: src/tools/sss_groupmod.c:98 -msgid "Specify group to modify\n" -msgstr "" - -#: src/tools/sss_groupmod.c:126 -msgid "" -"Cannot find group in local domain, modifying groups is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_groupmod.c:147 src/tools/sss_groupmod.c:174 -msgid "Member groups must be in the same domain as parent group\n" -msgstr "" - -#: src/tools/sss_groupmod.c:155 src/tools/sss_groupmod.c:182 -#: src/tools/sss_usermod.c:176 src/tools/sss_usermod.c:203 -#, c-format -msgid "" -"Cannot find group %s in local domain, only groups in local domain are " -"allowed\n" -msgstr "" - -#: src/tools/sss_groupmod.c:216 -msgid "Could not modify group - check if member group names are correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:220 -msgid "Could not modify group - check if groupname is correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:224 -msgid "Transaction error. Could not modify group.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:562 -#, c-format -msgid "%s%sGroup: %s\n" -msgstr "" - -#: src/tools/sss_groupshow.c:563 -msgid "Magic Private " -msgstr "" - -#: src/tools/sss_groupshow.c:565 -#, c-format -msgid "%sGID number: %d\n" -msgstr "" - -#: src/tools/sss_groupshow.c:567 -#, c-format -msgid "%sMember users: " -msgstr "" - -#: src/tools/sss_groupshow.c:574 -#, c-format -msgid "" -"\n" -"%sIs a member of: " -msgstr "" - -#: src/tools/sss_groupshow.c:581 -#, c-format -msgid "" -"\n" -"%sMember groups: " -msgstr "" - -#: src/tools/sss_groupshow.c:617 -msgid "Print indirect group members recursively" -msgstr "" - -#: src/tools/sss_groupshow.c:650 -msgid "Specify group to show\n" -msgstr "" - -#: src/tools/sss_groupshow.c:689 -msgid "" -"No such group in local domain. Printing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:694 -msgid "Internal error. Could not print group.\n" -msgstr "" - -#: src/tools/sss_userdel.c:133 -msgid "Remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:135 -msgid "Do not remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:137 -msgid "Force removal of files not owned by the user" -msgstr "" - -#: src/tools/sss_userdel.c:139 -msgid "Kill users' processes before removing him" -msgstr "" - -#: src/tools/sss_userdel.c:184 -msgid "Specify user to delete\n" -msgstr "" - -#: src/tools/sss_userdel.c:230 -#, c-format -msgid "User %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_userdel.c:255 -msgid "Cannot reset SELinux login context\n" -msgstr "" - -#: src/tools/sss_userdel.c:267 -#, c-format -msgid "WARNING: The user (uid %lu) was still logged in when deleted.\n" -msgstr "" - -#: src/tools/sss_userdel.c:272 -msgid "Cannot determine if the user was logged in on this platform" -msgstr "" - -#: src/tools/sss_userdel.c:277 -msgid "Error while checking if the user was logged in\n" -msgstr "" - -#: src/tools/sss_userdel.c:284 -#, c-format -msgid "The post-delete command failed: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:296 -msgid "Not removing home dir - not owned by user\n" -msgstr "" - -#: src/tools/sss_userdel.c:298 -#, c-format -msgid "Cannot remove homedir: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:309 -msgid "" -"No such user in local domain. Removing users only allowed in local domain.\n" -msgstr "" - -#: src/tools/sss_userdel.c:314 -msgid "Internal error. Could not remove user.\n" -msgstr "" - -#: src/tools/sss_usermod.c:49 -msgid "The GID of the user" -msgstr "" - -#: src/tools/sss_usermod.c:53 -msgid "Groups to add this user to" -msgstr "" - -#: src/tools/sss_usermod.c:54 -msgid "Groups to remove this user from" -msgstr "" - -#: src/tools/sss_usermod.c:55 -msgid "Lock the account" -msgstr "" - -#: src/tools/sss_usermod.c:56 -msgid "Unlock the account" -msgstr "" - -#: src/tools/sss_usermod.c:117 -msgid "Specify user to modify\n" -msgstr "" - -#: src/tools/sss_usermod.c:144 -msgid "" -"Cannot find user in local domain, modifying users is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_usermod.c:246 -msgid "Could not modify user - check if group names are correct\n" -msgstr "" - -#: src/tools/sss_usermod.c:250 -msgid "Could not modify user - user already member of groups?\n" -msgstr "" - -#: src/tools/sss_usermod.c:254 -msgid "Transaction error. Could not modify user.\n" -msgstr "" - -#: src/tools/sss_cache.c:132 -#, c-format -msgid "Couldn't invalidate %s" -msgstr "" - -#: src/tools/sss_cache.c:138 -#, c-format -msgid "Couldn't invalidate %s %s" -msgstr "" - -#: src/tools/sss_cache.c:262 -msgid "Invalidate particular user" -msgstr "" - -#: src/tools/sss_cache.c:264 -msgid "Invalidate all users" -msgstr "" - -#: src/tools/sss_cache.c:266 -msgid "Invalidate particular group" -msgstr "" - -#: src/tools/sss_cache.c:268 -msgid "Invalidate all groups" -msgstr "" - -#: src/tools/sss_cache.c:270 -msgid "Invalidate particular netgroup" -msgstr "" - -#: src/tools/sss_cache.c:272 -msgid "Invalidate all netgroups" -msgstr "" - -#: src/tools/sss_cache.c:274 -msgid "Only invalidate entries from a particular domain" -msgstr "" - -#: src/tools/sss_debuglevel.c:43 -msgid "\n" -msgstr "" - -#: src/tools/sss_debuglevel.c:102 -msgid "Specify debug level you want to set\n" -msgstr "" - -#: src/tools/tools_util.c:286 -msgid "Out of memory\n" -msgstr "" - -#: src/tools/tools_util.h:40 -#, c-format -msgid "%s must be run as root\n" -msgstr "" - -#: src/util/util.h:91 -msgid "Send the debug output to files instead of stderr" -msgstr "" diff --git a/po/tg.po b/po/tg.po index 3832264fa..913d49ff8 100644 --- a/po/tg.po +++ b/po/tg.po @@ -7,8 +7,8 @@ msgid "" msgstr "" "Project-Id-Version: SSSD\n" "Report-Msgid-Bugs-To: sssd-devel@lists.fedorahosted.org\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2012-02-14 12:55+0000\n" +"POT-Creation-Date: 2012-03-12 16:26-0400\n" +"PO-Revision-Date: 2012-03-08 11:42+0000\n" "Last-Translator: sgallagh \n" "Language-Team: Tajik (http://www.transifex.net/projects/p/fedora/language/" "tg/)\n" @@ -879,7 +879,7 @@ msgstr "" msgid "An open file descriptor for the debug logs" msgstr "" -#: src/providers/data_provider_be.c:1938 +#: src/providers/data_provider_be.c:2022 msgid "Domain of the information provider (mandatory)" msgstr "" @@ -996,9 +996,8 @@ msgstr "" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:91 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:236 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:269 -#, fuzzy msgid "Not enough memory\n" -msgstr "Берун аз хотира\n" +msgstr "" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:84 msgid "User not specified\n" diff --git a/po/tr.po b/po/tr.po deleted file mode 100644 index b2c519f3b..000000000 --- a/po/tr.po +++ /dev/null @@ -1,1463 +0,0 @@ -# SOME DESCRIPTIVE TITLE. -# Copyright (C) YEAR Red Hat, Inc. -# This file is distributed under the same license as the PACKAGE package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@lists.fedorahosted.org\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-11-30 04:10+0000\n" -"Last-Translator: FULL NAME \n" -"Language-Team: Turkish (http://www.transifex.net/projects/p/fedora/team/" -"tr/)\n" -"Language: tr\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=1; plural=0\n" - -#: src/config/SSSDConfig.py:39 -msgid "Set the verbosity of the debug logging" -msgstr "" - -#: src/config/SSSDConfig.py:40 -msgid "Include timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:41 -msgid "Include microseconds in timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:42 -msgid "Write debug messages to logfiles" -msgstr "" - -#: src/config/SSSDConfig.py:43 -msgid "Ping timeout before restarting service" -msgstr "" - -#: src/config/SSSDConfig.py:44 -msgid "Command to start service" -msgstr "" - -#: src/config/SSSDConfig.py:45 -msgid "Number of times to attempt connection to Data Providers" -msgstr "" - -#: src/config/SSSDConfig.py:48 -msgid "SSSD Services to start" -msgstr "" - -#: src/config/SSSDConfig.py:49 -msgid "SSSD Domains to start" -msgstr "" - -#: src/config/SSSDConfig.py:50 -msgid "Timeout for messages sent over the SBUS" -msgstr "" - -#: src/config/SSSDConfig.py:51 -msgid "Regex to parse username and domain" -msgstr "" - -#: src/config/SSSDConfig.py:52 -msgid "Printf-compatible format for displaying fully-qualified names" -msgstr "" - -#: src/config/SSSDConfig.py:53 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#: src/config/SSSDConfig.py:56 -msgid "Enumeration cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:57 -msgid "Entry cache background update timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:58 src/config/SSSDConfig.py:81 -msgid "Negative cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:59 -msgid "Users that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:60 -msgid "Groups that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:61 -msgid "Should filtered users appear in groups" -msgstr "" - -#: src/config/SSSDConfig.py:62 -msgid "The value of the password field the NSS provider should return" -msgstr "" - -#: src/config/SSSDConfig.py:63 -msgid "Override homedir value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:64 -msgid "The list of shells users are allowed to log in with" -msgstr "" - -#: src/config/SSSDConfig.py:65 -msgid "" -"The list of shells that will be vetoed, and replaced with the fallback shell" -msgstr "" - -#: src/config/SSSDConfig.py:66 -msgid "" -"If a shell stored in central directory is allowed but not available, use " -"this fallback" -msgstr "" - -#: src/config/SSSDConfig.py:69 -msgid "How long to allow cached logins between online logins (days)" -msgstr "" - -#: src/config/SSSDConfig.py:70 -msgid "How many failed logins attempts are allowed when offline" -msgstr "" - -#: src/config/SSSDConfig.py:71 -msgid "" -"How long (minutes) to deny login after offline_failed_login_attempts has " -"been reached" -msgstr "" - -#: src/config/SSSDConfig.py:72 -msgid "What kind of messages are displayed to the user during authentication" -msgstr "" - -#: src/config/SSSDConfig.py:73 -msgid "How many seconds to keep identity information cached for PAM requests" -msgstr "" - -#: src/config/SSSDConfig.py:74 -msgid "How many days before password expiration a warning should be displayed" -msgstr "" - -#: src/config/SSSDConfig.py:77 -msgid "Whether to evaluate the time-based attributes in sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:78 -msgid "" -"How many seconds to keep sudorules cached before asking the provider again" -msgstr "" - -#: src/config/SSSDConfig.py:84 -msgid "Identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:85 -msgid "Authentication provider" -msgstr "" - -#: src/config/SSSDConfig.py:86 -msgid "Access control provider" -msgstr "" - -#: src/config/SSSDConfig.py:87 -msgid "Password change provider" -msgstr "" - -#: src/config/SSSDConfig.py:88 -msgid "SUDO provider" -msgstr "" - -#: src/config/SSSDConfig.py:89 -msgid "Autofs provider" -msgstr "" - -#: src/config/SSSDConfig.py:90 -msgid "Session-loading provider" -msgstr "" - -#: src/config/SSSDConfig.py:91 -msgid "Host identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:94 -msgid "Minimum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:95 -msgid "Maximum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:96 -msgid "Enable enumerating all users/groups" -msgstr "" - -#: src/config/SSSDConfig.py:97 -msgid "Cache credentials for offline login" -msgstr "" - -#: src/config/SSSDConfig.py:98 -msgid "Store password hashes" -msgstr "" - -#: src/config/SSSDConfig.py:99 -msgid "Display users/groups in fully-qualified form" -msgstr "" - -#: src/config/SSSDConfig.py:100 src/config/SSSDConfig.py:107 -#: src/config/SSSDConfig.py:108 src/config/SSSDConfig.py:109 -#: src/config/SSSDConfig.py:110 src/config/SSSDConfig.py:111 -msgid "Entry cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:101 -msgid "" -"Restrict or prefer a specific address family when performing DNS lookups" -msgstr "" - -#: src/config/SSSDConfig.py:102 -msgid "How long to keep cached entries after last successful login (days)" -msgstr "" - -#: src/config/SSSDConfig.py:103 -msgid "How long to wait for replies from DNS when resolving servers (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:104 -msgid "The domain part of service discovery DNS query" -msgstr "" - -#: src/config/SSSDConfig.py:105 -msgid "Override GID value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:106 -msgid "Treat usernames as case sensitive" -msgstr "" - -#: src/config/SSSDConfig.py:114 -msgid "IPA domain" -msgstr "" - -#: src/config/SSSDConfig.py:115 -msgid "IPA server address" -msgstr "" - -#: src/config/SSSDConfig.py:116 -msgid "IPA client hostname" -msgstr "" - -#: src/config/SSSDConfig.py:117 -msgid "Whether to automatically update the client's DNS entry in FreeIPA" -msgstr "" - -#: src/config/SSSDConfig.py:118 -msgid "The interface whose IP should be used for dynamic DNS updates" -msgstr "" - -#: src/config/SSSDConfig.py:119 -msgid "Search base for HBAC related objects" -msgstr "" - -#: src/config/SSSDConfig.py:120 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server" -msgstr "" - -#: src/config/SSSDConfig.py:121 -msgid "If DENY rules are present, either DENY_ALL or IGNORE" -msgstr "" - -#: src/config/SSSDConfig.py:122 -msgid "If set to false, host argument given by PAM will be ignored" -msgstr "" - -#: src/config/SSSDConfig.py:123 -msgid "The automounter location this IPA client is using" -msgstr "" - -#: src/config/SSSDConfig.py:126 src/config/SSSDConfig.py:127 -msgid "Kerberos server address" -msgstr "" - -#: src/config/SSSDConfig.py:128 -msgid "Kerberos realm" -msgstr "" - -#: src/config/SSSDConfig.py:129 -msgid "Authentication timeout" -msgstr "" - -#: src/config/SSSDConfig.py:132 -msgid "Directory to store credential caches" -msgstr "" - -#: src/config/SSSDConfig.py:133 -msgid "Location of the user's credential cache" -msgstr "" - -#: src/config/SSSDConfig.py:134 -msgid "Location of the keytab to validate credentials" -msgstr "" - -#: src/config/SSSDConfig.py:135 -msgid "Enable credential validation" -msgstr "" - -#: src/config/SSSDConfig.py:136 -msgid "Store password if offline for later online authentication" -msgstr "" - -#: src/config/SSSDConfig.py:137 -msgid "Renewable lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:138 -msgid "Lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:139 -msgid "Time between two checks for renewal" -msgstr "" - -#: src/config/SSSDConfig.py:140 -msgid "Enables FAST" -msgstr "" - -#: src/config/SSSDConfig.py:141 -msgid "Selects the principal to use for FAST" -msgstr "" - -#: src/config/SSSDConfig.py:142 -msgid "Enables principal canonicalization" -msgstr "" - -#: src/config/SSSDConfig.py:145 -msgid "Server where the change password service is running if not on the KDC" -msgstr "" - -#: src/config/SSSDConfig.py:148 -msgid "ldap_uri, The URI of the LDAP server" -msgstr "" - -#: src/config/SSSDConfig.py:149 -msgid "The default base DN" -msgstr "" - -#: src/config/SSSDConfig.py:150 -msgid "The Schema Type in use on the LDAP server, rfc2307" -msgstr "" - -#: src/config/SSSDConfig.py:151 -msgid "The default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:152 -msgid "The type of the authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:153 -msgid "The authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:154 -msgid "Length of time to attempt connection" -msgstr "" - -#: src/config/SSSDConfig.py:155 -msgid "Length of time to attempt synchronous LDAP operations" -msgstr "" - -#: src/config/SSSDConfig.py:156 -msgid "Length of time between attempts to reconnect while offline" -msgstr "" - -#: src/config/SSSDConfig.py:157 -msgid "Use only the upper case for realm names" -msgstr "" - -#: src/config/SSSDConfig.py:158 -msgid "File that contains CA certificates" -msgstr "" - -#: src/config/SSSDConfig.py:159 -msgid "Path to CA certificate directory" -msgstr "" - -#: src/config/SSSDConfig.py:160 -msgid "File that contains the client certificate" -msgstr "" - -#: src/config/SSSDConfig.py:161 -msgid "File that contains the client key" -msgstr "" - -#: src/config/SSSDConfig.py:162 -msgid "List of possible ciphers suites" -msgstr "" - -#: src/config/SSSDConfig.py:163 -msgid "Require TLS certificate verification" -msgstr "" - -#: src/config/SSSDConfig.py:164 -msgid "Specify the sasl mechanism to use" -msgstr "" - -#: src/config/SSSDConfig.py:165 -msgid "Specify the sasl authorization id to use" -msgstr "" - -#: src/config/SSSDConfig.py:166 -msgid "Specify the sasl authorization realm to use" -msgstr "" - -#: src/config/SSSDConfig.py:167 -msgid "Specify the minimal SSF for LDAP sasl authorization" -msgstr "" - -#: src/config/SSSDConfig.py:168 -msgid "Kerberos service keytab" -msgstr "" - -#: src/config/SSSDConfig.py:169 -msgid "Use Kerberos auth for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:170 -msgid "Follow LDAP referrals" -msgstr "" - -#: src/config/SSSDConfig.py:171 -msgid "Lifetime of TGT for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:172 -msgid "How to dereference aliases" -msgstr "" - -#: src/config/SSSDConfig.py:173 -msgid "Service name for DNS service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:174 -msgid "The number of records to retrieve in a single LDAP query" -msgstr "" - -#: src/config/SSSDConfig.py:175 -msgid "The number of members that must be missing to trigger a full deref" -msgstr "" - -#: src/config/SSSDConfig.py:176 -msgid "" -"Whether the LDAP library should perform a reverse lookup to canonicalize the " -"host name during a SASL bind" -msgstr "" - -#: src/config/SSSDConfig.py:178 -msgid "entryUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:179 -msgid "lastUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:181 -msgid "How long to retain a connection to the LDAP server before disconnecting" -msgstr "" - -#: src/config/SSSDConfig.py:183 -msgid "Disable the LDAP paging control" -msgstr "" - -#: src/config/SSSDConfig.py:186 -msgid "Length of time to wait for a search request" -msgstr "" - -#: src/config/SSSDConfig.py:187 -msgid "Length of time to wait for a enumeration request" -msgstr "" - -#: src/config/SSSDConfig.py:188 -msgid "Length of time between enumeration updates" -msgstr "" - -#: src/config/SSSDConfig.py:189 -msgid "Length of time between cache cleanups" -msgstr "" - -#: src/config/SSSDConfig.py:190 -msgid "Require TLS for ID lookups" -msgstr "" - -#: src/config/SSSDConfig.py:191 -msgid "Base DN for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:192 -msgid "Scope of user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:193 -msgid "Filter for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:194 -msgid "Objectclass for users" -msgstr "" - -#: src/config/SSSDConfig.py:195 -msgid "Username attribute" -msgstr "" - -#: src/config/SSSDConfig.py:197 -msgid "UID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:198 -msgid "Primary GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:199 -msgid "GECOS attribute" -msgstr "" - -#: src/config/SSSDConfig.py:200 -msgid "Home directory attribute" -msgstr "" - -#: src/config/SSSDConfig.py:201 -msgid "Shell attribute" -msgstr "" - -#: src/config/SSSDConfig.py:202 -msgid "UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:203 -msgid "User principal attribute (for Kerberos)" -msgstr "" - -#: src/config/SSSDConfig.py:204 -msgid "Full Name" -msgstr "" - -#: src/config/SSSDConfig.py:205 -msgid "memberOf attribute" -msgstr "" - -#: src/config/SSSDConfig.py:206 -msgid "Modification time attribute" -msgstr "" - -#: src/config/SSSDConfig.py:208 -msgid "shadowLastChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:209 -msgid "shadowMin attribute" -msgstr "" - -#: src/config/SSSDConfig.py:210 -msgid "shadowMax attribute" -msgstr "" - -#: src/config/SSSDConfig.py:211 -msgid "shadowWarning attribute" -msgstr "" - -#: src/config/SSSDConfig.py:212 -msgid "shadowInactive attribute" -msgstr "" - -#: src/config/SSSDConfig.py:213 -msgid "shadowExpire attribute" -msgstr "" - -#: src/config/SSSDConfig.py:214 -msgid "shadowFlag attribute" -msgstr "" - -#: src/config/SSSDConfig.py:215 -msgid "Attribute listing authorized PAM services" -msgstr "" - -#: src/config/SSSDConfig.py:216 -msgid "Attribute listing authorized server hosts" -msgstr "" - -#: src/config/SSSDConfig.py:217 -msgid "krbLastPwdChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:218 -msgid "krbPasswordExpiration attribute" -msgstr "" - -#: src/config/SSSDConfig.py:219 -msgid "Attribute indicating that server side password policies are active" -msgstr "" - -#: src/config/SSSDConfig.py:220 -msgid "accountExpires attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:221 -msgid "userAccountControl attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:222 -msgid "nsAccountLock attribute" -msgstr "" - -#: src/config/SSSDConfig.py:223 -msgid "loginDisabled attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:224 -msgid "loginExpirationTime attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:225 -msgid "loginAllowedTimeMap attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:226 -msgid "SSH public key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:228 -msgid "Base DN for group lookups" -msgstr "" - -#: src/config/SSSDConfig.py:231 -msgid "Objectclass for groups" -msgstr "" - -#: src/config/SSSDConfig.py:232 -msgid "Group name" -msgstr "" - -#: src/config/SSSDConfig.py:233 -msgid "Group password" -msgstr "" - -#: src/config/SSSDConfig.py:234 -msgid "GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:235 -msgid "Group member attribute" -msgstr "" - -#: src/config/SSSDConfig.py:236 -msgid "Group UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:237 -msgid "Modification time attribute for groups" -msgstr "" - -#: src/config/SSSDConfig.py:239 -msgid "Maximum nesting level SSSd will follow" -msgstr "" - -#: src/config/SSSDConfig.py:241 -msgid "Base DN for netgroup lookups" -msgstr "" - -#: src/config/SSSDConfig.py:242 -msgid "Objectclass for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:243 -msgid "Netgroup name" -msgstr "" - -#: src/config/SSSDConfig.py:244 -msgid "Netgroups members attribute" -msgstr "" - -#: src/config/SSSDConfig.py:245 -msgid "Netgroup triple attribute" -msgstr "" - -#: src/config/SSSDConfig.py:246 -msgid "Netgroup UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:247 -msgid "Modification time attribute for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:249 -msgid "Base DN for service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:250 -msgid "Objectclass for services" -msgstr "" - -#: src/config/SSSDConfig.py:251 -msgid "Service name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:252 -msgid "Service port attribute" -msgstr "" - -#: src/config/SSSDConfig.py:253 -msgid "Service protocol attribute" -msgstr "" - -#: src/config/SSSDConfig.py:257 -msgid "Policy to evaluate the password expiration" -msgstr "" - -#: src/config/SSSDConfig.py:260 -msgid "LDAP filter to determine access privileges" -msgstr "" - -#: src/config/SSSDConfig.py:261 -msgid "Which attributes shall be used to evaluate if an account is expired" -msgstr "" - -#: src/config/SSSDConfig.py:262 -msgid "Which rules should be used to evaluate access control" -msgstr "" - -#: src/config/SSSDConfig.py:265 -msgid "URI of an LDAP server where password changes are allowed" -msgstr "" - -#: src/config/SSSDConfig.py:266 -msgid "DNS service name for LDAP password change server" -msgstr "" - -#: src/config/SSSDConfig.py:269 -msgid "Base DN for sudo rules lookups" -msgstr "" - -#: src/config/SSSDConfig.py:270 -msgid "Enable periodical update of all sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:271 -msgid "Length of time between rules updates" -msgstr "" - -#: src/config/SSSDConfig.py:272 -msgid "Object class for sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:273 -msgid "Sudo rule name" -msgstr "" - -#: src/config/SSSDConfig.py:274 -msgid "Sudo rule command attribute" -msgstr "" - -#: src/config/SSSDConfig.py:275 -msgid "Sudo rule host attribute" -msgstr "" - -#: src/config/SSSDConfig.py:276 -msgid "Sudo rule user attribute" -msgstr "" - -#: src/config/SSSDConfig.py:277 -msgid "Sudo rule option attribute" -msgstr "" - -#: src/config/SSSDConfig.py:278 -msgid "Sudo rule runasuser attribute" -msgstr "" - -#: src/config/SSSDConfig.py:279 -msgid "Sudo rule runasgroup attribute" -msgstr "" - -#: src/config/SSSDConfig.py:280 -msgid "Sudo rule notbefore attribute" -msgstr "" - -#: src/config/SSSDConfig.py:281 -msgid "Sudo rule notafter attribute" -msgstr "" - -#: src/config/SSSDConfig.py:282 -msgid "Sudo rule order attribute" -msgstr "" - -#: src/config/SSSDConfig.py:285 -msgid "Object class for automounter maps" -msgstr "" - -#: src/config/SSSDConfig.py:286 -msgid "Automounter map name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:287 -msgid "Object class for automounter map entries" -msgstr "" - -#: src/config/SSSDConfig.py:288 -msgid "Automounter map entry key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:289 -msgid "Automounter map entry value attribute" -msgstr "" - -#: src/config/SSSDConfig.py:290 -msgid "Base DN for automounter map lookups" -msgstr "" - -#: src/config/SSSDConfig.py:293 -msgid "Comma separated list of allowed users" -msgstr "" - -#: src/config/SSSDConfig.py:294 -msgid "Comma separated list of prohibited users" -msgstr "" - -#: src/config/SSSDConfig.py:297 -msgid "Default shell, /bin/bash" -msgstr "" - -#: src/config/SSSDConfig.py:298 -msgid "Base for home directories" -msgstr "" - -#: src/config/SSSDConfig.py:301 -msgid "The name of the NSS library to use" -msgstr "" - -#: src/config/SSSDConfig.py:304 -msgid "PAM stack to use" -msgstr "" - -#: src/monitor/monitor.c:2379 -msgid "Become a daemon (default)" -msgstr "" - -#: src/monitor/monitor.c:2381 -msgid "Run interactive (not a daemon)" -msgstr "" - -#: src/monitor/monitor.c:2383 src/tools/sss_debuglevel.c:77 -msgid "Specify a non-default config file" -msgstr "" - -#: src/monitor/monitor.c:2385 -msgid "Print version number and exit" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1575 src/providers/ldap/ldap_child.c:381 -#: src/util/util.h:89 -msgid "Debug level" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1577 src/providers/ldap/ldap_child.c:383 -#: src/util/util.h:93 -msgid "Add debug timestamps" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1579 src/providers/ldap/ldap_child.c:385 -#: src/util/util.h:95 -msgid "Show timestamps with microseconds" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1581 src/providers/ldap/ldap_child.c:387 -msgid "An open file descriptor for the debug logs" -msgstr "" - -#: src/providers/data_provider_be.c:1938 -msgid "Domain of the information provider (mandatory)" -msgstr "" - -#: src/sss_client/common.c:878 -msgid "Privileged socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:881 -msgid "Public socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:884 -msgid "Unexpected format of the server credential message." -msgstr "" - -#: src/sss_client/common.c:887 -msgid "SSSD is not run by root." -msgstr "" - -#: src/sss_client/common.c:892 -msgid "An error occurred, but no description can be found." -msgstr "" - -#: src/sss_client/common.c:898 -msgid "Unexpected error while looking for an error description" -msgstr "" - -#: src/sss_client/pam_sss.c:378 -msgid "Passwords do not match" -msgstr "" - -#: src/sss_client/pam_sss.c:571 -msgid "Password reset by root is not supported." -msgstr "" - -#: src/sss_client/pam_sss.c:612 -msgid "Authenticated with cached credentials" -msgstr "" - -#: src/sss_client/pam_sss.c:613 -msgid ", your cached password will expire at: " -msgstr "" - -#: src/sss_client/pam_sss.c:643 -#, c-format -msgid "Your password has expired. You have %d grace login(s) remaining." -msgstr "" - -#: src/sss_client/pam_sss.c:689 -#, c-format -msgid "Your password will expire in %d %s." -msgstr "" - -#: src/sss_client/pam_sss.c:738 -msgid "Authentication is denied until: " -msgstr "" - -#: src/sss_client/pam_sss.c:759 -msgid "System is offline, password change not possible" -msgstr "" - -#: src/sss_client/pam_sss.c:789 src/sss_client/pam_sss.c:802 -msgid "Password change failed. " -msgstr "" - -#: src/sss_client/pam_sss.c:792 src/sss_client/pam_sss.c:803 -msgid "Server message: " -msgstr "" - -#: src/sss_client/pam_sss.c:1286 -msgid "New Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1287 -msgid "Reenter new Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1373 -msgid "Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1405 -msgid "Current Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1552 -msgid "Password expired. Change your password now." -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:40 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:211 src/tools/sss_useradd.c:48 -#: src/tools/sss_groupadd.c:41 src/tools/sss_groupdel.c:43 -#: src/tools/sss_groupmod.c:42 src/tools/sss_groupshow.c:615 -#: src/tools/sss_userdel.c:131 src/tools/sss_usermod.c:47 -#: src/tools/sss_cache.c:260 src/tools/sss_debuglevel.c:75 -msgid "The debug level to run with" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:42 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:215 -msgid "The SSSD domain to use" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:58 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:229 src/tools/sss_useradd.c:71 -#: src/tools/sss_groupadd.c:56 src/tools/sss_groupdel.c:52 -#: src/tools/sss_groupmod.c:63 src/tools/sss_groupshow.c:626 -#: src/tools/sss_userdel.c:148 src/tools/sss_usermod.c:72 -#: src/tools/sss_cache.c:281 -msgid "Error setting the locale\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:65 -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:91 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:236 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:269 -msgid "Not enough memory\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:84 -msgid "User not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:104 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:282 -msgid "Error looking up public keys\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:94 -msgid "Failed to open a socket\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:104 -msgid "Failed to connect to the server\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:195 -msgid "Failed to execute proxy command\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:213 -msgid "The port to use to connect to the host" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:255 -msgid "Host not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:261 -msgid "The path to the proxy command must be absolute\n" -msgstr "" - -#: src/tools/sss_useradd.c:49 src/tools/sss_usermod.c:48 -msgid "The UID of the user" -msgstr "" - -#: src/tools/sss_useradd.c:50 src/tools/sss_usermod.c:50 -msgid "The comment string" -msgstr "" - -#: src/tools/sss_useradd.c:51 src/tools/sss_usermod.c:51 -msgid "Home directory" -msgstr "" - -#: src/tools/sss_useradd.c:52 src/tools/sss_usermod.c:52 -msgid "Login shell" -msgstr "" - -#: src/tools/sss_useradd.c:53 -msgid "Groups" -msgstr "" - -#: src/tools/sss_useradd.c:54 -msgid "Create user's directory if it does not exist" -msgstr "" - -#: src/tools/sss_useradd.c:55 -msgid "Never create user's directory, overrides config" -msgstr "" - -#: src/tools/sss_useradd.c:56 -msgid "Specify an alternative skeleton directory" -msgstr "" - -#: src/tools/sss_useradd.c:57 src/tools/sss_usermod.c:57 -msgid "The SELinux user for user's login" -msgstr "" - -#: src/tools/sss_useradd.c:84 src/tools/sss_groupmod.c:76 -#: src/tools/sss_usermod.c:85 -msgid "Specify group to add to\n" -msgstr "" - -#: src/tools/sss_useradd.c:108 -msgid "Specify user to add\n" -msgstr "" - -#: src/tools/sss_useradd.c:117 src/tools/sss_groupadd.c:82 -#: src/tools/sss_groupdel.c:77 src/tools/sss_groupmod.c:109 -#: src/tools/sss_groupshow.c:659 src/tools/sss_userdel.c:193 -#: src/tools/sss_usermod.c:126 -msgid "Error initializing the tools - no local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:119 src/tools/sss_groupadd.c:84 -#: src/tools/sss_groupdel.c:79 src/tools/sss_groupmod.c:111 -#: src/tools/sss_groupshow.c:661 src/tools/sss_userdel.c:195 -#: src/tools/sss_usermod.c:128 -msgid "Error initializing the tools\n" -msgstr "" - -#: src/tools/sss_useradd.c:128 src/tools/sss_groupadd.c:93 -#: src/tools/sss_groupdel.c:88 src/tools/sss_groupmod.c:119 -#: src/tools/sss_groupshow.c:670 src/tools/sss_userdel.c:204 -#: src/tools/sss_usermod.c:137 -msgid "Invalid domain specified in FQDN\n" -msgstr "" - -#: src/tools/sss_useradd.c:137 src/tools/sss_groupmod.c:139 -#: src/tools/sss_groupmod.c:166 src/tools/sss_usermod.c:160 -#: src/tools/sss_usermod.c:187 -msgid "Internal error while parsing parameters\n" -msgstr "" - -#: src/tools/sss_useradd.c:145 src/tools/sss_usermod.c:168 -#: src/tools/sss_usermod.c:195 -msgid "Groups must be in the same domain as user\n" -msgstr "" - -#: src/tools/sss_useradd.c:153 -#, c-format -msgid "Cannot find group %s in local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:168 src/tools/sss_userdel.c:214 -msgid "Cannot set default values\n" -msgstr "" - -#: src/tools/sss_useradd.c:175 src/tools/sss_usermod.c:151 -msgid "The selected UID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_useradd.c:202 src/tools/sss_usermod.c:236 -msgid "Cannot set SELinux login context\n" -msgstr "" - -#: src/tools/sss_useradd.c:217 -msgid "Cannot get info about the user\n" -msgstr "" - -#: src/tools/sss_useradd.c:229 -msgid "User's home directory already exists, not copying data from skeldir\n" -msgstr "" - -#: src/tools/sss_useradd.c:232 -#, c-format -msgid "Cannot create user's home directory: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:243 -#, c-format -msgid "Cannot create user's mail spool: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:255 -msgid "Could not allocate ID for the user - domain full?\n" -msgstr "" - -#: src/tools/sss_useradd.c:259 -msgid "A user or group with the same name or ID already exists\n" -msgstr "" - -#: src/tools/sss_useradd.c:265 -msgid "Transaction error. Could not add user.\n" -msgstr "" - -#: src/tools/sss_groupadd.c:43 src/tools/sss_groupmod.c:48 -msgid "The GID of the group" -msgstr "" - -#: src/tools/sss_groupadd.c:73 -msgid "Specify group to add\n" -msgstr "" - -#: src/tools/sss_groupadd.c:102 src/tools/sss_groupmod.c:190 -msgid "The selected GID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_groupadd.c:127 -msgid "Could not allocate ID for the group - domain full?\n" -msgstr "" - -#: src/tools/sss_groupadd.c:131 -msgid "A group with the same name or GID already exists\n" -msgstr "" - -#: src/tools/sss_groupadd.c:136 -msgid "Transaction error. Could not add group.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:68 -msgid "Specify group to delete\n" -msgstr "" - -#: src/tools/sss_groupdel.c:101 -#, c-format -msgid "Group %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_groupdel.c:115 -msgid "" -"No such group in local domain. Removing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:120 -msgid "Internal error. Could not remove group.\n" -msgstr "" - -#: src/tools/sss_groupmod.c:44 -msgid "Groups to add this group to" -msgstr "" - -#: src/tools/sss_groupmod.c:46 -msgid "Groups to remove this group from" -msgstr "" - -#: src/tools/sss_groupmod.c:84 src/tools/sss_usermod.c:93 -msgid "Specify group to remove from\n" -msgstr "" - -#: src/tools/sss_groupmod.c:98 -msgid "Specify group to modify\n" -msgstr "" - -#: src/tools/sss_groupmod.c:126 -msgid "" -"Cannot find group in local domain, modifying groups is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_groupmod.c:147 src/tools/sss_groupmod.c:174 -msgid "Member groups must be in the same domain as parent group\n" -msgstr "" - -#: src/tools/sss_groupmod.c:155 src/tools/sss_groupmod.c:182 -#: src/tools/sss_usermod.c:176 src/tools/sss_usermod.c:203 -#, c-format -msgid "" -"Cannot find group %s in local domain, only groups in local domain are " -"allowed\n" -msgstr "" - -#: src/tools/sss_groupmod.c:216 -msgid "Could not modify group - check if member group names are correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:220 -msgid "Could not modify group - check if groupname is correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:224 -msgid "Transaction error. Could not modify group.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:562 -#, c-format -msgid "%s%sGroup: %s\n" -msgstr "" - -#: src/tools/sss_groupshow.c:563 -msgid "Magic Private " -msgstr "" - -#: src/tools/sss_groupshow.c:565 -#, c-format -msgid "%sGID number: %d\n" -msgstr "" - -#: src/tools/sss_groupshow.c:567 -#, c-format -msgid "%sMember users: " -msgstr "" - -#: src/tools/sss_groupshow.c:574 -#, c-format -msgid "" -"\n" -"%sIs a member of: " -msgstr "" - -#: src/tools/sss_groupshow.c:581 -#, c-format -msgid "" -"\n" -"%sMember groups: " -msgstr "" - -#: src/tools/sss_groupshow.c:617 -msgid "Print indirect group members recursively" -msgstr "" - -#: src/tools/sss_groupshow.c:650 -msgid "Specify group to show\n" -msgstr "" - -#: src/tools/sss_groupshow.c:689 -msgid "" -"No such group in local domain. Printing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:694 -msgid "Internal error. Could not print group.\n" -msgstr "" - -#: src/tools/sss_userdel.c:133 -msgid "Remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:135 -msgid "Do not remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:137 -msgid "Force removal of files not owned by the user" -msgstr "" - -#: src/tools/sss_userdel.c:139 -msgid "Kill users' processes before removing him" -msgstr "" - -#: src/tools/sss_userdel.c:184 -msgid "Specify user to delete\n" -msgstr "" - -#: src/tools/sss_userdel.c:230 -#, c-format -msgid "User %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_userdel.c:255 -msgid "Cannot reset SELinux login context\n" -msgstr "" - -#: src/tools/sss_userdel.c:267 -#, c-format -msgid "WARNING: The user (uid %lu) was still logged in when deleted.\n" -msgstr "" - -#: src/tools/sss_userdel.c:272 -msgid "Cannot determine if the user was logged in on this platform" -msgstr "" - -#: src/tools/sss_userdel.c:277 -msgid "Error while checking if the user was logged in\n" -msgstr "" - -#: src/tools/sss_userdel.c:284 -#, c-format -msgid "The post-delete command failed: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:296 -msgid "Not removing home dir - not owned by user\n" -msgstr "" - -#: src/tools/sss_userdel.c:298 -#, c-format -msgid "Cannot remove homedir: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:309 -msgid "" -"No such user in local domain. Removing users only allowed in local domain.\n" -msgstr "" - -#: src/tools/sss_userdel.c:314 -msgid "Internal error. Could not remove user.\n" -msgstr "" - -#: src/tools/sss_usermod.c:49 -msgid "The GID of the user" -msgstr "" - -#: src/tools/sss_usermod.c:53 -msgid "Groups to add this user to" -msgstr "" - -#: src/tools/sss_usermod.c:54 -msgid "Groups to remove this user from" -msgstr "" - -#: src/tools/sss_usermod.c:55 -msgid "Lock the account" -msgstr "" - -#: src/tools/sss_usermod.c:56 -msgid "Unlock the account" -msgstr "" - -#: src/tools/sss_usermod.c:117 -msgid "Specify user to modify\n" -msgstr "" - -#: src/tools/sss_usermod.c:144 -msgid "" -"Cannot find user in local domain, modifying users is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_usermod.c:246 -msgid "Could not modify user - check if group names are correct\n" -msgstr "" - -#: src/tools/sss_usermod.c:250 -msgid "Could not modify user - user already member of groups?\n" -msgstr "" - -#: src/tools/sss_usermod.c:254 -msgid "Transaction error. Could not modify user.\n" -msgstr "" - -#: src/tools/sss_cache.c:132 -#, c-format -msgid "Couldn't invalidate %s" -msgstr "" - -#: src/tools/sss_cache.c:138 -#, c-format -msgid "Couldn't invalidate %s %s" -msgstr "" - -#: src/tools/sss_cache.c:262 -msgid "Invalidate particular user" -msgstr "" - -#: src/tools/sss_cache.c:264 -msgid "Invalidate all users" -msgstr "" - -#: src/tools/sss_cache.c:266 -msgid "Invalidate particular group" -msgstr "" - -#: src/tools/sss_cache.c:268 -msgid "Invalidate all groups" -msgstr "" - -#: src/tools/sss_cache.c:270 -msgid "Invalidate particular netgroup" -msgstr "" - -#: src/tools/sss_cache.c:272 -msgid "Invalidate all netgroups" -msgstr "" - -#: src/tools/sss_cache.c:274 -msgid "Only invalidate entries from a particular domain" -msgstr "" - -#: src/tools/sss_debuglevel.c:43 -msgid "\n" -msgstr "" - -#: src/tools/sss_debuglevel.c:102 -msgid "Specify debug level you want to set\n" -msgstr "" - -#: src/tools/tools_util.c:286 -msgid "Out of memory\n" -msgstr "" - -#: src/tools/tools_util.h:40 -#, c-format -msgid "%s must be run as root\n" -msgstr "" - -#: src/util/util.h:91 -msgid "Send the debug output to files instead of stderr" -msgstr "" diff --git a/po/uk.po b/po/uk.po index 360310284..d0afe03b4 100644 --- a/po/uk.po +++ b/po/uk.po @@ -4,13 +4,13 @@ # # Translators: # sgallagh , 2011. -# Yuri Chornoivan , 2011. +# Yuri Chornoivan , 2011, 2012. msgid "" msgstr "" "Project-Id-Version: SSSD\n" "Report-Msgid-Bugs-To: sssd-devel@lists.fedorahosted.org\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2011-12-21 10:11+0000\n" +"POT-Creation-Date: 2012-03-12 16:26-0400\n" +"PO-Revision-Date: 2012-03-08 11:41+0000\n" "Last-Translator: Yuri Chornoivan \n" "Language-Team: Ukrainian \n" "Language: uk\n" @@ -164,14 +164,15 @@ msgstr "" #: src/config/SSSDConfig.py:77 msgid "Whether to evaluate the time-based attributes in sudo rules" msgstr "" +"Визначає, чи слід обробляти атрибути правил sudo, пов’язані з часовими " +"обмеженнями" #: src/config/SSSDConfig.py:78 -#, fuzzy msgid "" "How many seconds to keep sudorules cached before asking the provider again" msgstr "" -"Тривалість (у секундах) зберігання даних щодо розпізнавання у кеші для " -"запитів PAM" +"Тривалість зберігання правил sudo у кеші. Щойно сплине цей проміжок часу, " +"запит до служби буде надіслано знову." #: src/config/SSSDConfig.py:84 msgid "Identity provider" @@ -190,24 +191,20 @@ msgid "Password change provider" msgstr "Служба зміни паролів" #: src/config/SSSDConfig.py:88 -#, fuzzy msgid "SUDO provider" -msgstr "Служба профілів" +msgstr "Служба SUDO" #: src/config/SSSDConfig.py:89 -#, fuzzy msgid "Autofs provider" -msgstr "Служба розпізнавання" +msgstr "Служба автоматизації файлових систем" #: src/config/SSSDConfig.py:90 -#, fuzzy msgid "Session-loading provider" -msgstr "Служба керування доступом" +msgstr "Служба завантаження сеансів" #: src/config/SSSDConfig.py:91 -#, fuzzy msgid "Host identity provider" -msgstr "Служба профілів" +msgstr "Служба профілів вузлів" #: src/config/SSSDConfig.py:94 msgid "Minimum user ID" @@ -316,7 +313,7 @@ msgstr "" #: src/config/SSSDConfig.py:123 msgid "The automounter location this IPA client is using" -msgstr "" +msgstr "Адреса автоматичного монтування, яку використовує цей клієнт IPA" #: src/config/SSSDConfig.py:126 src/config/SSSDConfig.py:127 msgid "Kerberos server address" @@ -519,7 +516,7 @@ msgstr "Тривалість підтримування з’єднання з #: src/config/SSSDConfig.py:183 msgid "Disable the LDAP paging control" -msgstr "" +msgstr "Вимкнути контроль сторінок у LDAP" #: src/config/SSSDConfig.py:186 msgid "Length of time to wait for a search request" @@ -675,9 +672,8 @@ msgid "loginAllowedTimeMap attribute of NDS" msgstr "Атрибут loginAllowedTimeMap NDS" #: src/config/SSSDConfig.py:226 -#, fuzzy msgid "SSH public key attribute" -msgstr "Атрибут домашнього каталогу" +msgstr "Атрибут відкритого ключа SSH" #: src/config/SSSDConfig.py:228 msgid "Base DN for group lookups" @@ -744,29 +740,24 @@ msgid "Modification time attribute for netgroups" msgstr "Атрибут часу зміни для мережевих груп" #: src/config/SSSDConfig.py:249 -#, fuzzy msgid "Base DN for service lookups" -msgstr "Базова назва домену для пошуків користувачів" +msgstr "Базова сервер назв домену для пошуку служб" #: src/config/SSSDConfig.py:250 -#, fuzzy msgid "Objectclass for services" -msgstr "Клас об’єктів для користувачів" +msgstr "Клас об’єктів для служб" #: src/config/SSSDConfig.py:251 -#, fuzzy msgid "Service name attribute" -msgstr "Атрибут імені користувача" +msgstr "Атрибут назви служби" #: src/config/SSSDConfig.py:252 -#, fuzzy msgid "Service port attribute" -msgstr "Атрибут домашнього каталогу" +msgstr "Атрибут порту служби" #: src/config/SSSDConfig.py:253 -#, fuzzy msgid "Service protocol attribute" -msgstr "Атрибут оболонки" +msgstr "Атрибут протоколу служби" #: src/config/SSSDConfig.py:257 msgid "Policy to evaluate the password expiration" @@ -795,102 +786,85 @@ msgid "DNS service name for LDAP password change server" msgstr "Назва у службі DNS сервера зміни паролів LDAP" #: src/config/SSSDConfig.py:269 -#, fuzzy msgid "Base DN for sudo rules lookups" -msgstr "Базова назва домену для пошуків користувачів" +msgstr "Базова назва домену для пошуків правил sudo" #: src/config/SSSDConfig.py:270 msgid "Enable periodical update of all sudo rules" -msgstr "" +msgstr "Увімкнути періодичні оновлення всіх правил sudo" #: src/config/SSSDConfig.py:271 -#, fuzzy msgid "Length of time between rules updates" -msgstr "Проміжок часу між оновленнями нумерації" +msgstr "Проміжок часу між оновленнями правил" #: src/config/SSSDConfig.py:272 -#, fuzzy msgid "Object class for sudo rules" -msgstr "Клас об’єктів для користувачів" +msgstr "Клас об’єктів для правил sudo" #: src/config/SSSDConfig.py:273 msgid "Sudo rule name" -msgstr "" +msgstr "Назва правила sudo" #: src/config/SSSDConfig.py:274 -#, fuzzy msgid "Sudo rule command attribute" -msgstr "Атрибут домашнього каталогу" +msgstr "Атрибут команди правила sudo" #: src/config/SSSDConfig.py:275 -#, fuzzy msgid "Sudo rule host attribute" -msgstr "Атрибут lastUSN" +msgstr "Атрибут вузла правила sudo" #: src/config/SSSDConfig.py:276 -#, fuzzy msgid "Sudo rule user attribute" -msgstr "Атрибут членства у групі" +msgstr "Атрибут користувача правила sudo" #: src/config/SSSDConfig.py:277 -#, fuzzy msgid "Sudo rule option attribute" -msgstr "Атрибут домашнього каталогу" +msgstr "Атрибут параметрів правила sudo" #: src/config/SSSDConfig.py:278 -#, fuzzy msgid "Sudo rule runasuser attribute" -msgstr "Атрибут імені користувача" +msgstr "" +"Атрибут користувача, від імені якого виконуватиметься запуск, правила sudo" #: src/config/SSSDConfig.py:279 -#, fuzzy msgid "Sudo rule runasgroup attribute" -msgstr "Атрибут UUID груп у мережі" +msgstr "Атрибут групи, від імені якої виконуватиметься запуск, правила sudo" #: src/config/SSSDConfig.py:280 -#, fuzzy msgid "Sudo rule notbefore attribute" -msgstr "Атрибут домашнього каталогу" +msgstr "Атрибут граничного часу початку дії правила sudo" #: src/config/SSSDConfig.py:281 -#, fuzzy msgid "Sudo rule notafter attribute" -msgstr "Атрибут домашнього каталогу" +msgstr "Атрибут граничного часу завершення дії правила sudo" #: src/config/SSSDConfig.py:282 -#, fuzzy msgid "Sudo rule order attribute" -msgstr "Атрибут домашнього каталогу" +msgstr "Атрибут порядку правила sudo" #: src/config/SSSDConfig.py:285 -#, fuzzy msgid "Object class for automounter maps" -msgstr "Клас об’єктів для користувачів" +msgstr "Клас об’єктів для карт автоматичного монтування" #: src/config/SSSDConfig.py:286 -#, fuzzy msgid "Automounter map name attribute" -msgstr "Атрибут імені користувача" +msgstr "Атрибут назви карти автоматичного монтування" #: src/config/SSSDConfig.py:287 -#, fuzzy msgid "Object class for automounter map entries" -msgstr "Клас об’єктів для користувачів" +msgstr "Клас об’єктів для записів карт автоматичного монтування" #: src/config/SSSDConfig.py:288 -#, fuzzy msgid "Automounter map entry key attribute" -msgstr "Атрибут домашнього каталогу" +msgstr "Атрибут ключа запису карти автоматичного монтування" #: src/config/SSSDConfig.py:289 -#, fuzzy msgid "Automounter map entry value attribute" -msgstr "Атрибут трійки груп у мережі" +msgstr "Атрибут значення запису карти автоматичного монтування" #: src/config/SSSDConfig.py:290 -#, fuzzy msgid "Base DN for automounter map lookups" -msgstr "Базова назва домену для пошуків користувачів" +msgstr "Базовий сервер назв домену для пошуків карти автоматичного монтування" #: src/config/SSSDConfig.py:293 msgid "Comma separated list of allowed users" @@ -951,7 +925,7 @@ msgstr "Показувати мікросекунди у часових позн msgid "An open file descriptor for the debug logs" msgstr "Дескриптор відкритого файла для запису журналів діагностики" -#: src/providers/data_provider_be.c:1938 +#: src/providers/data_provider_be.c:2022 msgid "Domain of the information provider (mandatory)" msgstr "Домен надання відомостей (обов’язковий)" @@ -1052,9 +1026,8 @@ msgstr "Рівень діагностики під час запуску" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:42 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:215 -#, fuzzy msgid "The SSSD domain to use" -msgstr "Домени SSSD, які слід запустити" +msgstr "Домен SSSD, який слід використовувати" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:58 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:229 src/tools/sss_useradd.c:71 @@ -1069,42 +1042,41 @@ msgstr "Помилка під час спроби встановити лока #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:91 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:236 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:269 -#, fuzzy msgid "Not enough memory\n" -msgstr "Не вистачає пам'яті\n" +msgstr "Недостатньо пам’яті\n" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:84 msgid "User not specified\n" -msgstr "" +msgstr "Не вказано користувача\n" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:104 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:282 msgid "Error looking up public keys\n" -msgstr "" +msgstr "Помилка під час спроби пошуку відкритих ключів\n" #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:94 msgid "Failed to open a socket\n" -msgstr "" +msgstr "Не вдалося відкрити сокет\n" #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:104 msgid "Failed to connect to the server\n" -msgstr "" +msgstr "Не вдалося встановити з’єднання з сервером\n" #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:195 msgid "Failed to execute proxy command\n" -msgstr "" +msgstr "Не вдалося виконати команду проксі-сервера\n" #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:213 msgid "The port to use to connect to the host" -msgstr "" +msgstr "Порт, яким слід користуватися для встановлення з’єднань з вузлом" #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:255 msgid "Host not specified\n" -msgstr "" +msgstr "Не вказано вузол\n" #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:261 msgid "The path to the proxy command must be absolute\n" -msgstr "" +msgstr "Має бути вказано абсолютний шлях до команди проксі-сервера\n" #: src/tools/sss_useradd.c:49 src/tools/sss_usermod.c:48 msgid "The UID of the user" @@ -1514,49 +1486,48 @@ msgstr "" #: src/tools/sss_cache.c:132 #, c-format msgid "Couldn't invalidate %s" -msgstr "" +msgstr "Не вдалося скасувати визначення %s" #: src/tools/sss_cache.c:138 #, c-format msgid "Couldn't invalidate %s %s" -msgstr "" +msgstr "Не вдалося скасувати визначення %s %s" #: src/tools/sss_cache.c:262 msgid "Invalidate particular user" -msgstr "" +msgstr "Скасувати визначення певного користувача" #: src/tools/sss_cache.c:264 msgid "Invalidate all users" -msgstr "" +msgstr "Скасувати визначення всіх користувачів" #: src/tools/sss_cache.c:266 msgid "Invalidate particular group" -msgstr "" +msgstr "Скасувати визначення певної групи" #: src/tools/sss_cache.c:268 msgid "Invalidate all groups" -msgstr "" +msgstr "Скасувати визначення всіх груп" #: src/tools/sss_cache.c:270 msgid "Invalidate particular netgroup" -msgstr "" +msgstr "Скасувати визначення певної мережевої групи" #: src/tools/sss_cache.c:272 msgid "Invalidate all netgroups" -msgstr "" +msgstr "Скасувати визначення всіх мережевих груп" #: src/tools/sss_cache.c:274 msgid "Only invalidate entries from a particular domain" -msgstr "" +msgstr "Скасувати визначення лише записів з певного домену" #: src/tools/sss_debuglevel.c:43 msgid "\n" -msgstr "" +msgstr "\n" #: src/tools/sss_debuglevel.c:102 -#, fuzzy msgid "Specify debug level you want to set\n" -msgstr "Рівень діагностики під час запуску" +msgstr "Вкажіть рівень діагностики, який ви бажаєте встановити\n" #: src/tools/tools_util.c:286 msgid "Out of memory\n" diff --git a/po/vi.po b/po/vi.po deleted file mode 100644 index 1035ca1a5..000000000 --- a/po/vi.po +++ /dev/null @@ -1,1463 +0,0 @@ -# SOME DESCRIPTIVE TITLE. -# Copyright (C) YEAR Red Hat, Inc. -# This file is distributed under the same license as the PACKAGE package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@lists.fedorahosted.org\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-11-30 04:10+0000\n" -"Last-Translator: FULL NAME \n" -"Language-Team: Vietnamese (http://www.transifex.net/projects/p/fedora/team/" -"vi/)\n" -"Language: vi\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=1; plural=0\n" - -#: src/config/SSSDConfig.py:39 -msgid "Set the verbosity of the debug logging" -msgstr "" - -#: src/config/SSSDConfig.py:40 -msgid "Include timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:41 -msgid "Include microseconds in timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:42 -msgid "Write debug messages to logfiles" -msgstr "" - -#: src/config/SSSDConfig.py:43 -msgid "Ping timeout before restarting service" -msgstr "" - -#: src/config/SSSDConfig.py:44 -msgid "Command to start service" -msgstr "" - -#: src/config/SSSDConfig.py:45 -msgid "Number of times to attempt connection to Data Providers" -msgstr "" - -#: src/config/SSSDConfig.py:48 -msgid "SSSD Services to start" -msgstr "" - -#: src/config/SSSDConfig.py:49 -msgid "SSSD Domains to start" -msgstr "" - -#: src/config/SSSDConfig.py:50 -msgid "Timeout for messages sent over the SBUS" -msgstr "" - -#: src/config/SSSDConfig.py:51 -msgid "Regex to parse username and domain" -msgstr "" - -#: src/config/SSSDConfig.py:52 -msgid "Printf-compatible format for displaying fully-qualified names" -msgstr "" - -#: src/config/SSSDConfig.py:53 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#: src/config/SSSDConfig.py:56 -msgid "Enumeration cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:57 -msgid "Entry cache background update timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:58 src/config/SSSDConfig.py:81 -msgid "Negative cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:59 -msgid "Users that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:60 -msgid "Groups that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:61 -msgid "Should filtered users appear in groups" -msgstr "" - -#: src/config/SSSDConfig.py:62 -msgid "The value of the password field the NSS provider should return" -msgstr "" - -#: src/config/SSSDConfig.py:63 -msgid "Override homedir value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:64 -msgid "The list of shells users are allowed to log in with" -msgstr "" - -#: src/config/SSSDConfig.py:65 -msgid "" -"The list of shells that will be vetoed, and replaced with the fallback shell" -msgstr "" - -#: src/config/SSSDConfig.py:66 -msgid "" -"If a shell stored in central directory is allowed but not available, use " -"this fallback" -msgstr "" - -#: src/config/SSSDConfig.py:69 -msgid "How long to allow cached logins between online logins (days)" -msgstr "" - -#: src/config/SSSDConfig.py:70 -msgid "How many failed logins attempts are allowed when offline" -msgstr "" - -#: src/config/SSSDConfig.py:71 -msgid "" -"How long (minutes) to deny login after offline_failed_login_attempts has " -"been reached" -msgstr "" - -#: src/config/SSSDConfig.py:72 -msgid "What kind of messages are displayed to the user during authentication" -msgstr "" - -#: src/config/SSSDConfig.py:73 -msgid "How many seconds to keep identity information cached for PAM requests" -msgstr "" - -#: src/config/SSSDConfig.py:74 -msgid "How many days before password expiration a warning should be displayed" -msgstr "" - -#: src/config/SSSDConfig.py:77 -msgid "Whether to evaluate the time-based attributes in sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:78 -msgid "" -"How many seconds to keep sudorules cached before asking the provider again" -msgstr "" - -#: src/config/SSSDConfig.py:84 -msgid "Identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:85 -msgid "Authentication provider" -msgstr "" - -#: src/config/SSSDConfig.py:86 -msgid "Access control provider" -msgstr "" - -#: src/config/SSSDConfig.py:87 -msgid "Password change provider" -msgstr "" - -#: src/config/SSSDConfig.py:88 -msgid "SUDO provider" -msgstr "" - -#: src/config/SSSDConfig.py:89 -msgid "Autofs provider" -msgstr "" - -#: src/config/SSSDConfig.py:90 -msgid "Session-loading provider" -msgstr "" - -#: src/config/SSSDConfig.py:91 -msgid "Host identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:94 -msgid "Minimum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:95 -msgid "Maximum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:96 -msgid "Enable enumerating all users/groups" -msgstr "" - -#: src/config/SSSDConfig.py:97 -msgid "Cache credentials for offline login" -msgstr "" - -#: src/config/SSSDConfig.py:98 -msgid "Store password hashes" -msgstr "" - -#: src/config/SSSDConfig.py:99 -msgid "Display users/groups in fully-qualified form" -msgstr "" - -#: src/config/SSSDConfig.py:100 src/config/SSSDConfig.py:107 -#: src/config/SSSDConfig.py:108 src/config/SSSDConfig.py:109 -#: src/config/SSSDConfig.py:110 src/config/SSSDConfig.py:111 -msgid "Entry cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:101 -msgid "" -"Restrict or prefer a specific address family when performing DNS lookups" -msgstr "" - -#: src/config/SSSDConfig.py:102 -msgid "How long to keep cached entries after last successful login (days)" -msgstr "" - -#: src/config/SSSDConfig.py:103 -msgid "How long to wait for replies from DNS when resolving servers (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:104 -msgid "The domain part of service discovery DNS query" -msgstr "" - -#: src/config/SSSDConfig.py:105 -msgid "Override GID value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:106 -msgid "Treat usernames as case sensitive" -msgstr "" - -#: src/config/SSSDConfig.py:114 -msgid "IPA domain" -msgstr "" - -#: src/config/SSSDConfig.py:115 -msgid "IPA server address" -msgstr "" - -#: src/config/SSSDConfig.py:116 -msgid "IPA client hostname" -msgstr "" - -#: src/config/SSSDConfig.py:117 -msgid "Whether to automatically update the client's DNS entry in FreeIPA" -msgstr "" - -#: src/config/SSSDConfig.py:118 -msgid "The interface whose IP should be used for dynamic DNS updates" -msgstr "" - -#: src/config/SSSDConfig.py:119 -msgid "Search base for HBAC related objects" -msgstr "" - -#: src/config/SSSDConfig.py:120 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server" -msgstr "" - -#: src/config/SSSDConfig.py:121 -msgid "If DENY rules are present, either DENY_ALL or IGNORE" -msgstr "" - -#: src/config/SSSDConfig.py:122 -msgid "If set to false, host argument given by PAM will be ignored" -msgstr "" - -#: src/config/SSSDConfig.py:123 -msgid "The automounter location this IPA client is using" -msgstr "" - -#: src/config/SSSDConfig.py:126 src/config/SSSDConfig.py:127 -msgid "Kerberos server address" -msgstr "" - -#: src/config/SSSDConfig.py:128 -msgid "Kerberos realm" -msgstr "" - -#: src/config/SSSDConfig.py:129 -msgid "Authentication timeout" -msgstr "" - -#: src/config/SSSDConfig.py:132 -msgid "Directory to store credential caches" -msgstr "" - -#: src/config/SSSDConfig.py:133 -msgid "Location of the user's credential cache" -msgstr "" - -#: src/config/SSSDConfig.py:134 -msgid "Location of the keytab to validate credentials" -msgstr "" - -#: src/config/SSSDConfig.py:135 -msgid "Enable credential validation" -msgstr "" - -#: src/config/SSSDConfig.py:136 -msgid "Store password if offline for later online authentication" -msgstr "" - -#: src/config/SSSDConfig.py:137 -msgid "Renewable lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:138 -msgid "Lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:139 -msgid "Time between two checks for renewal" -msgstr "" - -#: src/config/SSSDConfig.py:140 -msgid "Enables FAST" -msgstr "" - -#: src/config/SSSDConfig.py:141 -msgid "Selects the principal to use for FAST" -msgstr "" - -#: src/config/SSSDConfig.py:142 -msgid "Enables principal canonicalization" -msgstr "" - -#: src/config/SSSDConfig.py:145 -msgid "Server where the change password service is running if not on the KDC" -msgstr "" - -#: src/config/SSSDConfig.py:148 -msgid "ldap_uri, The URI of the LDAP server" -msgstr "" - -#: src/config/SSSDConfig.py:149 -msgid "The default base DN" -msgstr "" - -#: src/config/SSSDConfig.py:150 -msgid "The Schema Type in use on the LDAP server, rfc2307" -msgstr "" - -#: src/config/SSSDConfig.py:151 -msgid "The default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:152 -msgid "The type of the authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:153 -msgid "The authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:154 -msgid "Length of time to attempt connection" -msgstr "" - -#: src/config/SSSDConfig.py:155 -msgid "Length of time to attempt synchronous LDAP operations" -msgstr "" - -#: src/config/SSSDConfig.py:156 -msgid "Length of time between attempts to reconnect while offline" -msgstr "" - -#: src/config/SSSDConfig.py:157 -msgid "Use only the upper case for realm names" -msgstr "" - -#: src/config/SSSDConfig.py:158 -msgid "File that contains CA certificates" -msgstr "" - -#: src/config/SSSDConfig.py:159 -msgid "Path to CA certificate directory" -msgstr "" - -#: src/config/SSSDConfig.py:160 -msgid "File that contains the client certificate" -msgstr "" - -#: src/config/SSSDConfig.py:161 -msgid "File that contains the client key" -msgstr "" - -#: src/config/SSSDConfig.py:162 -msgid "List of possible ciphers suites" -msgstr "" - -#: src/config/SSSDConfig.py:163 -msgid "Require TLS certificate verification" -msgstr "" - -#: src/config/SSSDConfig.py:164 -msgid "Specify the sasl mechanism to use" -msgstr "" - -#: src/config/SSSDConfig.py:165 -msgid "Specify the sasl authorization id to use" -msgstr "" - -#: src/config/SSSDConfig.py:166 -msgid "Specify the sasl authorization realm to use" -msgstr "" - -#: src/config/SSSDConfig.py:167 -msgid "Specify the minimal SSF for LDAP sasl authorization" -msgstr "" - -#: src/config/SSSDConfig.py:168 -msgid "Kerberos service keytab" -msgstr "" - -#: src/config/SSSDConfig.py:169 -msgid "Use Kerberos auth for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:170 -msgid "Follow LDAP referrals" -msgstr "" - -#: src/config/SSSDConfig.py:171 -msgid "Lifetime of TGT for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:172 -msgid "How to dereference aliases" -msgstr "" - -#: src/config/SSSDConfig.py:173 -msgid "Service name for DNS service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:174 -msgid "The number of records to retrieve in a single LDAP query" -msgstr "" - -#: src/config/SSSDConfig.py:175 -msgid "The number of members that must be missing to trigger a full deref" -msgstr "" - -#: src/config/SSSDConfig.py:176 -msgid "" -"Whether the LDAP library should perform a reverse lookup to canonicalize the " -"host name during a SASL bind" -msgstr "" - -#: src/config/SSSDConfig.py:178 -msgid "entryUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:179 -msgid "lastUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:181 -msgid "How long to retain a connection to the LDAP server before disconnecting" -msgstr "" - -#: src/config/SSSDConfig.py:183 -msgid "Disable the LDAP paging control" -msgstr "" - -#: src/config/SSSDConfig.py:186 -msgid "Length of time to wait for a search request" -msgstr "" - -#: src/config/SSSDConfig.py:187 -msgid "Length of time to wait for a enumeration request" -msgstr "" - -#: src/config/SSSDConfig.py:188 -msgid "Length of time between enumeration updates" -msgstr "" - -#: src/config/SSSDConfig.py:189 -msgid "Length of time between cache cleanups" -msgstr "" - -#: src/config/SSSDConfig.py:190 -msgid "Require TLS for ID lookups" -msgstr "" - -#: src/config/SSSDConfig.py:191 -msgid "Base DN for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:192 -msgid "Scope of user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:193 -msgid "Filter for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:194 -msgid "Objectclass for users" -msgstr "" - -#: src/config/SSSDConfig.py:195 -msgid "Username attribute" -msgstr "" - -#: src/config/SSSDConfig.py:197 -msgid "UID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:198 -msgid "Primary GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:199 -msgid "GECOS attribute" -msgstr "" - -#: src/config/SSSDConfig.py:200 -msgid "Home directory attribute" -msgstr "" - -#: src/config/SSSDConfig.py:201 -msgid "Shell attribute" -msgstr "" - -#: src/config/SSSDConfig.py:202 -msgid "UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:203 -msgid "User principal attribute (for Kerberos)" -msgstr "" - -#: src/config/SSSDConfig.py:204 -msgid "Full Name" -msgstr "" - -#: src/config/SSSDConfig.py:205 -msgid "memberOf attribute" -msgstr "" - -#: src/config/SSSDConfig.py:206 -msgid "Modification time attribute" -msgstr "" - -#: src/config/SSSDConfig.py:208 -msgid "shadowLastChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:209 -msgid "shadowMin attribute" -msgstr "" - -#: src/config/SSSDConfig.py:210 -msgid "shadowMax attribute" -msgstr "" - -#: src/config/SSSDConfig.py:211 -msgid "shadowWarning attribute" -msgstr "" - -#: src/config/SSSDConfig.py:212 -msgid "shadowInactive attribute" -msgstr "" - -#: src/config/SSSDConfig.py:213 -msgid "shadowExpire attribute" -msgstr "" - -#: src/config/SSSDConfig.py:214 -msgid "shadowFlag attribute" -msgstr "" - -#: src/config/SSSDConfig.py:215 -msgid "Attribute listing authorized PAM services" -msgstr "" - -#: src/config/SSSDConfig.py:216 -msgid "Attribute listing authorized server hosts" -msgstr "" - -#: src/config/SSSDConfig.py:217 -msgid "krbLastPwdChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:218 -msgid "krbPasswordExpiration attribute" -msgstr "" - -#: src/config/SSSDConfig.py:219 -msgid "Attribute indicating that server side password policies are active" -msgstr "" - -#: src/config/SSSDConfig.py:220 -msgid "accountExpires attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:221 -msgid "userAccountControl attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:222 -msgid "nsAccountLock attribute" -msgstr "" - -#: src/config/SSSDConfig.py:223 -msgid "loginDisabled attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:224 -msgid "loginExpirationTime attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:225 -msgid "loginAllowedTimeMap attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:226 -msgid "SSH public key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:228 -msgid "Base DN for group lookups" -msgstr "" - -#: src/config/SSSDConfig.py:231 -msgid "Objectclass for groups" -msgstr "" - -#: src/config/SSSDConfig.py:232 -msgid "Group name" -msgstr "" - -#: src/config/SSSDConfig.py:233 -msgid "Group password" -msgstr "" - -#: src/config/SSSDConfig.py:234 -msgid "GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:235 -msgid "Group member attribute" -msgstr "" - -#: src/config/SSSDConfig.py:236 -msgid "Group UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:237 -msgid "Modification time attribute for groups" -msgstr "" - -#: src/config/SSSDConfig.py:239 -msgid "Maximum nesting level SSSd will follow" -msgstr "" - -#: src/config/SSSDConfig.py:241 -msgid "Base DN for netgroup lookups" -msgstr "" - -#: src/config/SSSDConfig.py:242 -msgid "Objectclass for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:243 -msgid "Netgroup name" -msgstr "" - -#: src/config/SSSDConfig.py:244 -msgid "Netgroups members attribute" -msgstr "" - -#: src/config/SSSDConfig.py:245 -msgid "Netgroup triple attribute" -msgstr "" - -#: src/config/SSSDConfig.py:246 -msgid "Netgroup UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:247 -msgid "Modification time attribute for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:249 -msgid "Base DN for service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:250 -msgid "Objectclass for services" -msgstr "" - -#: src/config/SSSDConfig.py:251 -msgid "Service name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:252 -msgid "Service port attribute" -msgstr "" - -#: src/config/SSSDConfig.py:253 -msgid "Service protocol attribute" -msgstr "" - -#: src/config/SSSDConfig.py:257 -msgid "Policy to evaluate the password expiration" -msgstr "" - -#: src/config/SSSDConfig.py:260 -msgid "LDAP filter to determine access privileges" -msgstr "" - -#: src/config/SSSDConfig.py:261 -msgid "Which attributes shall be used to evaluate if an account is expired" -msgstr "" - -#: src/config/SSSDConfig.py:262 -msgid "Which rules should be used to evaluate access control" -msgstr "" - -#: src/config/SSSDConfig.py:265 -msgid "URI of an LDAP server where password changes are allowed" -msgstr "" - -#: src/config/SSSDConfig.py:266 -msgid "DNS service name for LDAP password change server" -msgstr "" - -#: src/config/SSSDConfig.py:269 -msgid "Base DN for sudo rules lookups" -msgstr "" - -#: src/config/SSSDConfig.py:270 -msgid "Enable periodical update of all sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:271 -msgid "Length of time between rules updates" -msgstr "" - -#: src/config/SSSDConfig.py:272 -msgid "Object class for sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:273 -msgid "Sudo rule name" -msgstr "" - -#: src/config/SSSDConfig.py:274 -msgid "Sudo rule command attribute" -msgstr "" - -#: src/config/SSSDConfig.py:275 -msgid "Sudo rule host attribute" -msgstr "" - -#: src/config/SSSDConfig.py:276 -msgid "Sudo rule user attribute" -msgstr "" - -#: src/config/SSSDConfig.py:277 -msgid "Sudo rule option attribute" -msgstr "" - -#: src/config/SSSDConfig.py:278 -msgid "Sudo rule runasuser attribute" -msgstr "" - -#: src/config/SSSDConfig.py:279 -msgid "Sudo rule runasgroup attribute" -msgstr "" - -#: src/config/SSSDConfig.py:280 -msgid "Sudo rule notbefore attribute" -msgstr "" - -#: src/config/SSSDConfig.py:281 -msgid "Sudo rule notafter attribute" -msgstr "" - -#: src/config/SSSDConfig.py:282 -msgid "Sudo rule order attribute" -msgstr "" - -#: src/config/SSSDConfig.py:285 -msgid "Object class for automounter maps" -msgstr "" - -#: src/config/SSSDConfig.py:286 -msgid "Automounter map name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:287 -msgid "Object class for automounter map entries" -msgstr "" - -#: src/config/SSSDConfig.py:288 -msgid "Automounter map entry key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:289 -msgid "Automounter map entry value attribute" -msgstr "" - -#: src/config/SSSDConfig.py:290 -msgid "Base DN for automounter map lookups" -msgstr "" - -#: src/config/SSSDConfig.py:293 -msgid "Comma separated list of allowed users" -msgstr "" - -#: src/config/SSSDConfig.py:294 -msgid "Comma separated list of prohibited users" -msgstr "" - -#: src/config/SSSDConfig.py:297 -msgid "Default shell, /bin/bash" -msgstr "" - -#: src/config/SSSDConfig.py:298 -msgid "Base for home directories" -msgstr "" - -#: src/config/SSSDConfig.py:301 -msgid "The name of the NSS library to use" -msgstr "" - -#: src/config/SSSDConfig.py:304 -msgid "PAM stack to use" -msgstr "" - -#: src/monitor/monitor.c:2379 -msgid "Become a daemon (default)" -msgstr "" - -#: src/monitor/monitor.c:2381 -msgid "Run interactive (not a daemon)" -msgstr "" - -#: src/monitor/monitor.c:2383 src/tools/sss_debuglevel.c:77 -msgid "Specify a non-default config file" -msgstr "" - -#: src/monitor/monitor.c:2385 -msgid "Print version number and exit" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1575 src/providers/ldap/ldap_child.c:381 -#: src/util/util.h:89 -msgid "Debug level" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1577 src/providers/ldap/ldap_child.c:383 -#: src/util/util.h:93 -msgid "Add debug timestamps" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1579 src/providers/ldap/ldap_child.c:385 -#: src/util/util.h:95 -msgid "Show timestamps with microseconds" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1581 src/providers/ldap/ldap_child.c:387 -msgid "An open file descriptor for the debug logs" -msgstr "" - -#: src/providers/data_provider_be.c:1938 -msgid "Domain of the information provider (mandatory)" -msgstr "" - -#: src/sss_client/common.c:878 -msgid "Privileged socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:881 -msgid "Public socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:884 -msgid "Unexpected format of the server credential message." -msgstr "" - -#: src/sss_client/common.c:887 -msgid "SSSD is not run by root." -msgstr "" - -#: src/sss_client/common.c:892 -msgid "An error occurred, but no description can be found." -msgstr "" - -#: src/sss_client/common.c:898 -msgid "Unexpected error while looking for an error description" -msgstr "" - -#: src/sss_client/pam_sss.c:378 -msgid "Passwords do not match" -msgstr "" - -#: src/sss_client/pam_sss.c:571 -msgid "Password reset by root is not supported." -msgstr "" - -#: src/sss_client/pam_sss.c:612 -msgid "Authenticated with cached credentials" -msgstr "" - -#: src/sss_client/pam_sss.c:613 -msgid ", your cached password will expire at: " -msgstr "" - -#: src/sss_client/pam_sss.c:643 -#, c-format -msgid "Your password has expired. You have %d grace login(s) remaining." -msgstr "" - -#: src/sss_client/pam_sss.c:689 -#, c-format -msgid "Your password will expire in %d %s." -msgstr "" - -#: src/sss_client/pam_sss.c:738 -msgid "Authentication is denied until: " -msgstr "" - -#: src/sss_client/pam_sss.c:759 -msgid "System is offline, password change not possible" -msgstr "" - -#: src/sss_client/pam_sss.c:789 src/sss_client/pam_sss.c:802 -msgid "Password change failed. " -msgstr "" - -#: src/sss_client/pam_sss.c:792 src/sss_client/pam_sss.c:803 -msgid "Server message: " -msgstr "" - -#: src/sss_client/pam_sss.c:1286 -msgid "New Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1287 -msgid "Reenter new Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1373 -msgid "Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1405 -msgid "Current Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1552 -msgid "Password expired. Change your password now." -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:40 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:211 src/tools/sss_useradd.c:48 -#: src/tools/sss_groupadd.c:41 src/tools/sss_groupdel.c:43 -#: src/tools/sss_groupmod.c:42 src/tools/sss_groupshow.c:615 -#: src/tools/sss_userdel.c:131 src/tools/sss_usermod.c:47 -#: src/tools/sss_cache.c:260 src/tools/sss_debuglevel.c:75 -msgid "The debug level to run with" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:42 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:215 -msgid "The SSSD domain to use" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:58 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:229 src/tools/sss_useradd.c:71 -#: src/tools/sss_groupadd.c:56 src/tools/sss_groupdel.c:52 -#: src/tools/sss_groupmod.c:63 src/tools/sss_groupshow.c:626 -#: src/tools/sss_userdel.c:148 src/tools/sss_usermod.c:72 -#: src/tools/sss_cache.c:281 -msgid "Error setting the locale\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:65 -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:91 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:236 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:269 -msgid "Not enough memory\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:84 -msgid "User not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:104 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:282 -msgid "Error looking up public keys\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:94 -msgid "Failed to open a socket\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:104 -msgid "Failed to connect to the server\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:195 -msgid "Failed to execute proxy command\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:213 -msgid "The port to use to connect to the host" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:255 -msgid "Host not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:261 -msgid "The path to the proxy command must be absolute\n" -msgstr "" - -#: src/tools/sss_useradd.c:49 src/tools/sss_usermod.c:48 -msgid "The UID of the user" -msgstr "" - -#: src/tools/sss_useradd.c:50 src/tools/sss_usermod.c:50 -msgid "The comment string" -msgstr "" - -#: src/tools/sss_useradd.c:51 src/tools/sss_usermod.c:51 -msgid "Home directory" -msgstr "" - -#: src/tools/sss_useradd.c:52 src/tools/sss_usermod.c:52 -msgid "Login shell" -msgstr "" - -#: src/tools/sss_useradd.c:53 -msgid "Groups" -msgstr "" - -#: src/tools/sss_useradd.c:54 -msgid "Create user's directory if it does not exist" -msgstr "" - -#: src/tools/sss_useradd.c:55 -msgid "Never create user's directory, overrides config" -msgstr "" - -#: src/tools/sss_useradd.c:56 -msgid "Specify an alternative skeleton directory" -msgstr "" - -#: src/tools/sss_useradd.c:57 src/tools/sss_usermod.c:57 -msgid "The SELinux user for user's login" -msgstr "" - -#: src/tools/sss_useradd.c:84 src/tools/sss_groupmod.c:76 -#: src/tools/sss_usermod.c:85 -msgid "Specify group to add to\n" -msgstr "" - -#: src/tools/sss_useradd.c:108 -msgid "Specify user to add\n" -msgstr "" - -#: src/tools/sss_useradd.c:117 src/tools/sss_groupadd.c:82 -#: src/tools/sss_groupdel.c:77 src/tools/sss_groupmod.c:109 -#: src/tools/sss_groupshow.c:659 src/tools/sss_userdel.c:193 -#: src/tools/sss_usermod.c:126 -msgid "Error initializing the tools - no local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:119 src/tools/sss_groupadd.c:84 -#: src/tools/sss_groupdel.c:79 src/tools/sss_groupmod.c:111 -#: src/tools/sss_groupshow.c:661 src/tools/sss_userdel.c:195 -#: src/tools/sss_usermod.c:128 -msgid "Error initializing the tools\n" -msgstr "" - -#: src/tools/sss_useradd.c:128 src/tools/sss_groupadd.c:93 -#: src/tools/sss_groupdel.c:88 src/tools/sss_groupmod.c:119 -#: src/tools/sss_groupshow.c:670 src/tools/sss_userdel.c:204 -#: src/tools/sss_usermod.c:137 -msgid "Invalid domain specified in FQDN\n" -msgstr "" - -#: src/tools/sss_useradd.c:137 src/tools/sss_groupmod.c:139 -#: src/tools/sss_groupmod.c:166 src/tools/sss_usermod.c:160 -#: src/tools/sss_usermod.c:187 -msgid "Internal error while parsing parameters\n" -msgstr "" - -#: src/tools/sss_useradd.c:145 src/tools/sss_usermod.c:168 -#: src/tools/sss_usermod.c:195 -msgid "Groups must be in the same domain as user\n" -msgstr "" - -#: src/tools/sss_useradd.c:153 -#, c-format -msgid "Cannot find group %s in local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:168 src/tools/sss_userdel.c:214 -msgid "Cannot set default values\n" -msgstr "" - -#: src/tools/sss_useradd.c:175 src/tools/sss_usermod.c:151 -msgid "The selected UID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_useradd.c:202 src/tools/sss_usermod.c:236 -msgid "Cannot set SELinux login context\n" -msgstr "" - -#: src/tools/sss_useradd.c:217 -msgid "Cannot get info about the user\n" -msgstr "" - -#: src/tools/sss_useradd.c:229 -msgid "User's home directory already exists, not copying data from skeldir\n" -msgstr "" - -#: src/tools/sss_useradd.c:232 -#, c-format -msgid "Cannot create user's home directory: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:243 -#, c-format -msgid "Cannot create user's mail spool: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:255 -msgid "Could not allocate ID for the user - domain full?\n" -msgstr "" - -#: src/tools/sss_useradd.c:259 -msgid "A user or group with the same name or ID already exists\n" -msgstr "" - -#: src/tools/sss_useradd.c:265 -msgid "Transaction error. Could not add user.\n" -msgstr "" - -#: src/tools/sss_groupadd.c:43 src/tools/sss_groupmod.c:48 -msgid "The GID of the group" -msgstr "" - -#: src/tools/sss_groupadd.c:73 -msgid "Specify group to add\n" -msgstr "" - -#: src/tools/sss_groupadd.c:102 src/tools/sss_groupmod.c:190 -msgid "The selected GID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_groupadd.c:127 -msgid "Could not allocate ID for the group - domain full?\n" -msgstr "" - -#: src/tools/sss_groupadd.c:131 -msgid "A group with the same name or GID already exists\n" -msgstr "" - -#: src/tools/sss_groupadd.c:136 -msgid "Transaction error. Could not add group.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:68 -msgid "Specify group to delete\n" -msgstr "" - -#: src/tools/sss_groupdel.c:101 -#, c-format -msgid "Group %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_groupdel.c:115 -msgid "" -"No such group in local domain. Removing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:120 -msgid "Internal error. Could not remove group.\n" -msgstr "" - -#: src/tools/sss_groupmod.c:44 -msgid "Groups to add this group to" -msgstr "" - -#: src/tools/sss_groupmod.c:46 -msgid "Groups to remove this group from" -msgstr "" - -#: src/tools/sss_groupmod.c:84 src/tools/sss_usermod.c:93 -msgid "Specify group to remove from\n" -msgstr "" - -#: src/tools/sss_groupmod.c:98 -msgid "Specify group to modify\n" -msgstr "" - -#: src/tools/sss_groupmod.c:126 -msgid "" -"Cannot find group in local domain, modifying groups is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_groupmod.c:147 src/tools/sss_groupmod.c:174 -msgid "Member groups must be in the same domain as parent group\n" -msgstr "" - -#: src/tools/sss_groupmod.c:155 src/tools/sss_groupmod.c:182 -#: src/tools/sss_usermod.c:176 src/tools/sss_usermod.c:203 -#, c-format -msgid "" -"Cannot find group %s in local domain, only groups in local domain are " -"allowed\n" -msgstr "" - -#: src/tools/sss_groupmod.c:216 -msgid "Could not modify group - check if member group names are correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:220 -msgid "Could not modify group - check if groupname is correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:224 -msgid "Transaction error. Could not modify group.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:562 -#, c-format -msgid "%s%sGroup: %s\n" -msgstr "" - -#: src/tools/sss_groupshow.c:563 -msgid "Magic Private " -msgstr "" - -#: src/tools/sss_groupshow.c:565 -#, c-format -msgid "%sGID number: %d\n" -msgstr "" - -#: src/tools/sss_groupshow.c:567 -#, c-format -msgid "%sMember users: " -msgstr "" - -#: src/tools/sss_groupshow.c:574 -#, c-format -msgid "" -"\n" -"%sIs a member of: " -msgstr "" - -#: src/tools/sss_groupshow.c:581 -#, c-format -msgid "" -"\n" -"%sMember groups: " -msgstr "" - -#: src/tools/sss_groupshow.c:617 -msgid "Print indirect group members recursively" -msgstr "" - -#: src/tools/sss_groupshow.c:650 -msgid "Specify group to show\n" -msgstr "" - -#: src/tools/sss_groupshow.c:689 -msgid "" -"No such group in local domain. Printing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:694 -msgid "Internal error. Could not print group.\n" -msgstr "" - -#: src/tools/sss_userdel.c:133 -msgid "Remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:135 -msgid "Do not remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:137 -msgid "Force removal of files not owned by the user" -msgstr "" - -#: src/tools/sss_userdel.c:139 -msgid "Kill users' processes before removing him" -msgstr "" - -#: src/tools/sss_userdel.c:184 -msgid "Specify user to delete\n" -msgstr "" - -#: src/tools/sss_userdel.c:230 -#, c-format -msgid "User %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_userdel.c:255 -msgid "Cannot reset SELinux login context\n" -msgstr "" - -#: src/tools/sss_userdel.c:267 -#, c-format -msgid "WARNING: The user (uid %lu) was still logged in when deleted.\n" -msgstr "" - -#: src/tools/sss_userdel.c:272 -msgid "Cannot determine if the user was logged in on this platform" -msgstr "" - -#: src/tools/sss_userdel.c:277 -msgid "Error while checking if the user was logged in\n" -msgstr "" - -#: src/tools/sss_userdel.c:284 -#, c-format -msgid "The post-delete command failed: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:296 -msgid "Not removing home dir - not owned by user\n" -msgstr "" - -#: src/tools/sss_userdel.c:298 -#, c-format -msgid "Cannot remove homedir: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:309 -msgid "" -"No such user in local domain. Removing users only allowed in local domain.\n" -msgstr "" - -#: src/tools/sss_userdel.c:314 -msgid "Internal error. Could not remove user.\n" -msgstr "" - -#: src/tools/sss_usermod.c:49 -msgid "The GID of the user" -msgstr "" - -#: src/tools/sss_usermod.c:53 -msgid "Groups to add this user to" -msgstr "" - -#: src/tools/sss_usermod.c:54 -msgid "Groups to remove this user from" -msgstr "" - -#: src/tools/sss_usermod.c:55 -msgid "Lock the account" -msgstr "" - -#: src/tools/sss_usermod.c:56 -msgid "Unlock the account" -msgstr "" - -#: src/tools/sss_usermod.c:117 -msgid "Specify user to modify\n" -msgstr "" - -#: src/tools/sss_usermod.c:144 -msgid "" -"Cannot find user in local domain, modifying users is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_usermod.c:246 -msgid "Could not modify user - check if group names are correct\n" -msgstr "" - -#: src/tools/sss_usermod.c:250 -msgid "Could not modify user - user already member of groups?\n" -msgstr "" - -#: src/tools/sss_usermod.c:254 -msgid "Transaction error. Could not modify user.\n" -msgstr "" - -#: src/tools/sss_cache.c:132 -#, c-format -msgid "Couldn't invalidate %s" -msgstr "" - -#: src/tools/sss_cache.c:138 -#, c-format -msgid "Couldn't invalidate %s %s" -msgstr "" - -#: src/tools/sss_cache.c:262 -msgid "Invalidate particular user" -msgstr "" - -#: src/tools/sss_cache.c:264 -msgid "Invalidate all users" -msgstr "" - -#: src/tools/sss_cache.c:266 -msgid "Invalidate particular group" -msgstr "" - -#: src/tools/sss_cache.c:268 -msgid "Invalidate all groups" -msgstr "" - -#: src/tools/sss_cache.c:270 -msgid "Invalidate particular netgroup" -msgstr "" - -#: src/tools/sss_cache.c:272 -msgid "Invalidate all netgroups" -msgstr "" - -#: src/tools/sss_cache.c:274 -msgid "Only invalidate entries from a particular domain" -msgstr "" - -#: src/tools/sss_debuglevel.c:43 -msgid "\n" -msgstr "" - -#: src/tools/sss_debuglevel.c:102 -msgid "Specify debug level you want to set\n" -msgstr "" - -#: src/tools/tools_util.c:286 -msgid "Out of memory\n" -msgstr "" - -#: src/tools/tools_util.h:40 -#, c-format -msgid "%s must be run as root\n" -msgstr "" - -#: src/util/util.h:91 -msgid "Send the debug output to files instead of stderr" -msgstr "" diff --git a/po/zh_CN.po b/po/zh_CN.po deleted file mode 100644 index 2891f80fe..000000000 --- a/po/zh_CN.po +++ /dev/null @@ -1,1463 +0,0 @@ -# SOME DESCRIPTIVE TITLE. -# Copyright (C) YEAR Red Hat, Inc. -# This file is distributed under the same license as the PACKAGE package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@lists.fedorahosted.org\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-11-30 04:10+0000\n" -"Last-Translator: FULL NAME \n" -"Language-Team: Chinese (China) (http://www.transifex.net/projects/p/fedora/" -"team/zh_CN/)\n" -"Language: zh_CN\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=1; plural=0\n" - -#: src/config/SSSDConfig.py:39 -msgid "Set the verbosity of the debug logging" -msgstr "" - -#: src/config/SSSDConfig.py:40 -msgid "Include timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:41 -msgid "Include microseconds in timestamps in debug logs" -msgstr "" - -#: src/config/SSSDConfig.py:42 -msgid "Write debug messages to logfiles" -msgstr "" - -#: src/config/SSSDConfig.py:43 -msgid "Ping timeout before restarting service" -msgstr "" - -#: src/config/SSSDConfig.py:44 -msgid "Command to start service" -msgstr "" - -#: src/config/SSSDConfig.py:45 -msgid "Number of times to attempt connection to Data Providers" -msgstr "" - -#: src/config/SSSDConfig.py:48 -msgid "SSSD Services to start" -msgstr "" - -#: src/config/SSSDConfig.py:49 -msgid "SSSD Domains to start" -msgstr "" - -#: src/config/SSSDConfig.py:50 -msgid "Timeout for messages sent over the SBUS" -msgstr "" - -#: src/config/SSSDConfig.py:51 -msgid "Regex to parse username and domain" -msgstr "" - -#: src/config/SSSDConfig.py:52 -msgid "Printf-compatible format for displaying fully-qualified names" -msgstr "" - -#: src/config/SSSDConfig.py:53 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#: src/config/SSSDConfig.py:56 -msgid "Enumeration cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:57 -msgid "Entry cache background update timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:58 src/config/SSSDConfig.py:81 -msgid "Negative cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:59 -msgid "Users that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:60 -msgid "Groups that SSSD should explicitly ignore" -msgstr "" - -#: src/config/SSSDConfig.py:61 -msgid "Should filtered users appear in groups" -msgstr "" - -#: src/config/SSSDConfig.py:62 -msgid "The value of the password field the NSS provider should return" -msgstr "" - -#: src/config/SSSDConfig.py:63 -msgid "Override homedir value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:64 -msgid "The list of shells users are allowed to log in with" -msgstr "" - -#: src/config/SSSDConfig.py:65 -msgid "" -"The list of shells that will be vetoed, and replaced with the fallback shell" -msgstr "" - -#: src/config/SSSDConfig.py:66 -msgid "" -"If a shell stored in central directory is allowed but not available, use " -"this fallback" -msgstr "" - -#: src/config/SSSDConfig.py:69 -msgid "How long to allow cached logins between online logins (days)" -msgstr "" - -#: src/config/SSSDConfig.py:70 -msgid "How many failed logins attempts are allowed when offline" -msgstr "" - -#: src/config/SSSDConfig.py:71 -msgid "" -"How long (minutes) to deny login after offline_failed_login_attempts has " -"been reached" -msgstr "" - -#: src/config/SSSDConfig.py:72 -msgid "What kind of messages are displayed to the user during authentication" -msgstr "" - -#: src/config/SSSDConfig.py:73 -msgid "How many seconds to keep identity information cached for PAM requests" -msgstr "" - -#: src/config/SSSDConfig.py:74 -msgid "How many days before password expiration a warning should be displayed" -msgstr "" - -#: src/config/SSSDConfig.py:77 -msgid "Whether to evaluate the time-based attributes in sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:78 -msgid "" -"How many seconds to keep sudorules cached before asking the provider again" -msgstr "" - -#: src/config/SSSDConfig.py:84 -msgid "Identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:85 -msgid "Authentication provider" -msgstr "" - -#: src/config/SSSDConfig.py:86 -msgid "Access control provider" -msgstr "" - -#: src/config/SSSDConfig.py:87 -msgid "Password change provider" -msgstr "" - -#: src/config/SSSDConfig.py:88 -msgid "SUDO provider" -msgstr "" - -#: src/config/SSSDConfig.py:89 -msgid "Autofs provider" -msgstr "" - -#: src/config/SSSDConfig.py:90 -msgid "Session-loading provider" -msgstr "" - -#: src/config/SSSDConfig.py:91 -msgid "Host identity provider" -msgstr "" - -#: src/config/SSSDConfig.py:94 -msgid "Minimum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:95 -msgid "Maximum user ID" -msgstr "" - -#: src/config/SSSDConfig.py:96 -msgid "Enable enumerating all users/groups" -msgstr "" - -#: src/config/SSSDConfig.py:97 -msgid "Cache credentials for offline login" -msgstr "" - -#: src/config/SSSDConfig.py:98 -msgid "Store password hashes" -msgstr "" - -#: src/config/SSSDConfig.py:99 -msgid "Display users/groups in fully-qualified form" -msgstr "" - -#: src/config/SSSDConfig.py:100 src/config/SSSDConfig.py:107 -#: src/config/SSSDConfig.py:108 src/config/SSSDConfig.py:109 -#: src/config/SSSDConfig.py:110 src/config/SSSDConfig.py:111 -msgid "Entry cache timeout length (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:101 -msgid "" -"Restrict or prefer a specific address family when performing DNS lookups" -msgstr "" - -#: src/config/SSSDConfig.py:102 -msgid "How long to keep cached entries after last successful login (days)" -msgstr "" - -#: src/config/SSSDConfig.py:103 -msgid "How long to wait for replies from DNS when resolving servers (seconds)" -msgstr "" - -#: src/config/SSSDConfig.py:104 -msgid "The domain part of service discovery DNS query" -msgstr "" - -#: src/config/SSSDConfig.py:105 -msgid "Override GID value from the identity provider with this value" -msgstr "" - -#: src/config/SSSDConfig.py:106 -msgid "Treat usernames as case sensitive" -msgstr "" - -#: src/config/SSSDConfig.py:114 -msgid "IPA domain" -msgstr "" - -#: src/config/SSSDConfig.py:115 -msgid "IPA server address" -msgstr "" - -#: src/config/SSSDConfig.py:116 -msgid "IPA client hostname" -msgstr "" - -#: src/config/SSSDConfig.py:117 -msgid "Whether to automatically update the client's DNS entry in FreeIPA" -msgstr "" - -#: src/config/SSSDConfig.py:118 -msgid "The interface whose IP should be used for dynamic DNS updates" -msgstr "" - -#: src/config/SSSDConfig.py:119 -msgid "Search base for HBAC related objects" -msgstr "" - -#: src/config/SSSDConfig.py:120 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server" -msgstr "" - -#: src/config/SSSDConfig.py:121 -msgid "If DENY rules are present, either DENY_ALL or IGNORE" -msgstr "" - -#: src/config/SSSDConfig.py:122 -msgid "If set to false, host argument given by PAM will be ignored" -msgstr "" - -#: src/config/SSSDConfig.py:123 -msgid "The automounter location this IPA client is using" -msgstr "" - -#: src/config/SSSDConfig.py:126 src/config/SSSDConfig.py:127 -msgid "Kerberos server address" -msgstr "" - -#: src/config/SSSDConfig.py:128 -msgid "Kerberos realm" -msgstr "" - -#: src/config/SSSDConfig.py:129 -msgid "Authentication timeout" -msgstr "" - -#: src/config/SSSDConfig.py:132 -msgid "Directory to store credential caches" -msgstr "" - -#: src/config/SSSDConfig.py:133 -msgid "Location of the user's credential cache" -msgstr "" - -#: src/config/SSSDConfig.py:134 -msgid "Location of the keytab to validate credentials" -msgstr "" - -#: src/config/SSSDConfig.py:135 -msgid "Enable credential validation" -msgstr "" - -#: src/config/SSSDConfig.py:136 -msgid "Store password if offline for later online authentication" -msgstr "" - -#: src/config/SSSDConfig.py:137 -msgid "Renewable lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:138 -msgid "Lifetime of the TGT" -msgstr "" - -#: src/config/SSSDConfig.py:139 -msgid "Time between two checks for renewal" -msgstr "" - -#: src/config/SSSDConfig.py:140 -msgid "Enables FAST" -msgstr "" - -#: src/config/SSSDConfig.py:141 -msgid "Selects the principal to use for FAST" -msgstr "" - -#: src/config/SSSDConfig.py:142 -msgid "Enables principal canonicalization" -msgstr "" - -#: src/config/SSSDConfig.py:145 -msgid "Server where the change password service is running if not on the KDC" -msgstr "" - -#: src/config/SSSDConfig.py:148 -msgid "ldap_uri, The URI of the LDAP server" -msgstr "" - -#: src/config/SSSDConfig.py:149 -msgid "The default base DN" -msgstr "" - -#: src/config/SSSDConfig.py:150 -msgid "The Schema Type in use on the LDAP server, rfc2307" -msgstr "" - -#: src/config/SSSDConfig.py:151 -msgid "The default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:152 -msgid "The type of the authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:153 -msgid "The authentication token of the default bind DN" -msgstr "" - -#: src/config/SSSDConfig.py:154 -msgid "Length of time to attempt connection" -msgstr "" - -#: src/config/SSSDConfig.py:155 -msgid "Length of time to attempt synchronous LDAP operations" -msgstr "" - -#: src/config/SSSDConfig.py:156 -msgid "Length of time between attempts to reconnect while offline" -msgstr "" - -#: src/config/SSSDConfig.py:157 -msgid "Use only the upper case for realm names" -msgstr "" - -#: src/config/SSSDConfig.py:158 -msgid "File that contains CA certificates" -msgstr "" - -#: src/config/SSSDConfig.py:159 -msgid "Path to CA certificate directory" -msgstr "" - -#: src/config/SSSDConfig.py:160 -msgid "File that contains the client certificate" -msgstr "" - -#: src/config/SSSDConfig.py:161 -msgid "File that contains the client key" -msgstr "" - -#: src/config/SSSDConfig.py:162 -msgid "List of possible ciphers suites" -msgstr "" - -#: src/config/SSSDConfig.py:163 -msgid "Require TLS certificate verification" -msgstr "" - -#: src/config/SSSDConfig.py:164 -msgid "Specify the sasl mechanism to use" -msgstr "" - -#: src/config/SSSDConfig.py:165 -msgid "Specify the sasl authorization id to use" -msgstr "" - -#: src/config/SSSDConfig.py:166 -msgid "Specify the sasl authorization realm to use" -msgstr "" - -#: src/config/SSSDConfig.py:167 -msgid "Specify the minimal SSF for LDAP sasl authorization" -msgstr "" - -#: src/config/SSSDConfig.py:168 -msgid "Kerberos service keytab" -msgstr "" - -#: src/config/SSSDConfig.py:169 -msgid "Use Kerberos auth for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:170 -msgid "Follow LDAP referrals" -msgstr "" - -#: src/config/SSSDConfig.py:171 -msgid "Lifetime of TGT for LDAP connection" -msgstr "" - -#: src/config/SSSDConfig.py:172 -msgid "How to dereference aliases" -msgstr "" - -#: src/config/SSSDConfig.py:173 -msgid "Service name for DNS service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:174 -msgid "The number of records to retrieve in a single LDAP query" -msgstr "" - -#: src/config/SSSDConfig.py:175 -msgid "The number of members that must be missing to trigger a full deref" -msgstr "" - -#: src/config/SSSDConfig.py:176 -msgid "" -"Whether the LDAP library should perform a reverse lookup to canonicalize the " -"host name during a SASL bind" -msgstr "" - -#: src/config/SSSDConfig.py:178 -msgid "entryUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:179 -msgid "lastUSN attribute" -msgstr "" - -#: src/config/SSSDConfig.py:181 -msgid "How long to retain a connection to the LDAP server before disconnecting" -msgstr "" - -#: src/config/SSSDConfig.py:183 -msgid "Disable the LDAP paging control" -msgstr "" - -#: src/config/SSSDConfig.py:186 -msgid "Length of time to wait for a search request" -msgstr "" - -#: src/config/SSSDConfig.py:187 -msgid "Length of time to wait for a enumeration request" -msgstr "" - -#: src/config/SSSDConfig.py:188 -msgid "Length of time between enumeration updates" -msgstr "" - -#: src/config/SSSDConfig.py:189 -msgid "Length of time between cache cleanups" -msgstr "" - -#: src/config/SSSDConfig.py:190 -msgid "Require TLS for ID lookups" -msgstr "" - -#: src/config/SSSDConfig.py:191 -msgid "Base DN for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:192 -msgid "Scope of user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:193 -msgid "Filter for user lookups" -msgstr "" - -#: src/config/SSSDConfig.py:194 -msgid "Objectclass for users" -msgstr "" - -#: src/config/SSSDConfig.py:195 -msgid "Username attribute" -msgstr "" - -#: src/config/SSSDConfig.py:197 -msgid "UID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:198 -msgid "Primary GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:199 -msgid "GECOS attribute" -msgstr "" - -#: src/config/SSSDConfig.py:200 -msgid "Home directory attribute" -msgstr "" - -#: src/config/SSSDConfig.py:201 -msgid "Shell attribute" -msgstr "" - -#: src/config/SSSDConfig.py:202 -msgid "UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:203 -msgid "User principal attribute (for Kerberos)" -msgstr "" - -#: src/config/SSSDConfig.py:204 -msgid "Full Name" -msgstr "" - -#: src/config/SSSDConfig.py:205 -msgid "memberOf attribute" -msgstr "" - -#: src/config/SSSDConfig.py:206 -msgid "Modification time attribute" -msgstr "" - -#: src/config/SSSDConfig.py:208 -msgid "shadowLastChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:209 -msgid "shadowMin attribute" -msgstr "" - -#: src/config/SSSDConfig.py:210 -msgid "shadowMax attribute" -msgstr "" - -#: src/config/SSSDConfig.py:211 -msgid "shadowWarning attribute" -msgstr "" - -#: src/config/SSSDConfig.py:212 -msgid "shadowInactive attribute" -msgstr "" - -#: src/config/SSSDConfig.py:213 -msgid "shadowExpire attribute" -msgstr "" - -#: src/config/SSSDConfig.py:214 -msgid "shadowFlag attribute" -msgstr "" - -#: src/config/SSSDConfig.py:215 -msgid "Attribute listing authorized PAM services" -msgstr "" - -#: src/config/SSSDConfig.py:216 -msgid "Attribute listing authorized server hosts" -msgstr "" - -#: src/config/SSSDConfig.py:217 -msgid "krbLastPwdChange attribute" -msgstr "" - -#: src/config/SSSDConfig.py:218 -msgid "krbPasswordExpiration attribute" -msgstr "" - -#: src/config/SSSDConfig.py:219 -msgid "Attribute indicating that server side password policies are active" -msgstr "" - -#: src/config/SSSDConfig.py:220 -msgid "accountExpires attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:221 -msgid "userAccountControl attribute of AD" -msgstr "" - -#: src/config/SSSDConfig.py:222 -msgid "nsAccountLock attribute" -msgstr "" - -#: src/config/SSSDConfig.py:223 -msgid "loginDisabled attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:224 -msgid "loginExpirationTime attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:225 -msgid "loginAllowedTimeMap attribute of NDS" -msgstr "" - -#: src/config/SSSDConfig.py:226 -msgid "SSH public key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:228 -msgid "Base DN for group lookups" -msgstr "" - -#: src/config/SSSDConfig.py:231 -msgid "Objectclass for groups" -msgstr "" - -#: src/config/SSSDConfig.py:232 -msgid "Group name" -msgstr "" - -#: src/config/SSSDConfig.py:233 -msgid "Group password" -msgstr "" - -#: src/config/SSSDConfig.py:234 -msgid "GID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:235 -msgid "Group member attribute" -msgstr "" - -#: src/config/SSSDConfig.py:236 -msgid "Group UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:237 -msgid "Modification time attribute for groups" -msgstr "" - -#: src/config/SSSDConfig.py:239 -msgid "Maximum nesting level SSSd will follow" -msgstr "" - -#: src/config/SSSDConfig.py:241 -msgid "Base DN for netgroup lookups" -msgstr "" - -#: src/config/SSSDConfig.py:242 -msgid "Objectclass for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:243 -msgid "Netgroup name" -msgstr "" - -#: src/config/SSSDConfig.py:244 -msgid "Netgroups members attribute" -msgstr "" - -#: src/config/SSSDConfig.py:245 -msgid "Netgroup triple attribute" -msgstr "" - -#: src/config/SSSDConfig.py:246 -msgid "Netgroup UUID attribute" -msgstr "" - -#: src/config/SSSDConfig.py:247 -msgid "Modification time attribute for netgroups" -msgstr "" - -#: src/config/SSSDConfig.py:249 -msgid "Base DN for service lookups" -msgstr "" - -#: src/config/SSSDConfig.py:250 -msgid "Objectclass for services" -msgstr "" - -#: src/config/SSSDConfig.py:251 -msgid "Service name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:252 -msgid "Service port attribute" -msgstr "" - -#: src/config/SSSDConfig.py:253 -msgid "Service protocol attribute" -msgstr "" - -#: src/config/SSSDConfig.py:257 -msgid "Policy to evaluate the password expiration" -msgstr "" - -#: src/config/SSSDConfig.py:260 -msgid "LDAP filter to determine access privileges" -msgstr "" - -#: src/config/SSSDConfig.py:261 -msgid "Which attributes shall be used to evaluate if an account is expired" -msgstr "" - -#: src/config/SSSDConfig.py:262 -msgid "Which rules should be used to evaluate access control" -msgstr "" - -#: src/config/SSSDConfig.py:265 -msgid "URI of an LDAP server where password changes are allowed" -msgstr "" - -#: src/config/SSSDConfig.py:266 -msgid "DNS service name for LDAP password change server" -msgstr "" - -#: src/config/SSSDConfig.py:269 -msgid "Base DN for sudo rules lookups" -msgstr "" - -#: src/config/SSSDConfig.py:270 -msgid "Enable periodical update of all sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:271 -msgid "Length of time between rules updates" -msgstr "" - -#: src/config/SSSDConfig.py:272 -msgid "Object class for sudo rules" -msgstr "" - -#: src/config/SSSDConfig.py:273 -msgid "Sudo rule name" -msgstr "" - -#: src/config/SSSDConfig.py:274 -msgid "Sudo rule command attribute" -msgstr "" - -#: src/config/SSSDConfig.py:275 -msgid "Sudo rule host attribute" -msgstr "" - -#: src/config/SSSDConfig.py:276 -msgid "Sudo rule user attribute" -msgstr "" - -#: src/config/SSSDConfig.py:277 -msgid "Sudo rule option attribute" -msgstr "" - -#: src/config/SSSDConfig.py:278 -msgid "Sudo rule runasuser attribute" -msgstr "" - -#: src/config/SSSDConfig.py:279 -msgid "Sudo rule runasgroup attribute" -msgstr "" - -#: src/config/SSSDConfig.py:280 -msgid "Sudo rule notbefore attribute" -msgstr "" - -#: src/config/SSSDConfig.py:281 -msgid "Sudo rule notafter attribute" -msgstr "" - -#: src/config/SSSDConfig.py:282 -msgid "Sudo rule order attribute" -msgstr "" - -#: src/config/SSSDConfig.py:285 -msgid "Object class for automounter maps" -msgstr "" - -#: src/config/SSSDConfig.py:286 -msgid "Automounter map name attribute" -msgstr "" - -#: src/config/SSSDConfig.py:287 -msgid "Object class for automounter map entries" -msgstr "" - -#: src/config/SSSDConfig.py:288 -msgid "Automounter map entry key attribute" -msgstr "" - -#: src/config/SSSDConfig.py:289 -msgid "Automounter map entry value attribute" -msgstr "" - -#: src/config/SSSDConfig.py:290 -msgid "Base DN for automounter map lookups" -msgstr "" - -#: src/config/SSSDConfig.py:293 -msgid "Comma separated list of allowed users" -msgstr "" - -#: src/config/SSSDConfig.py:294 -msgid "Comma separated list of prohibited users" -msgstr "" - -#: src/config/SSSDConfig.py:297 -msgid "Default shell, /bin/bash" -msgstr "" - -#: src/config/SSSDConfig.py:298 -msgid "Base for home directories" -msgstr "" - -#: src/config/SSSDConfig.py:301 -msgid "The name of the NSS library to use" -msgstr "" - -#: src/config/SSSDConfig.py:304 -msgid "PAM stack to use" -msgstr "" - -#: src/monitor/monitor.c:2379 -msgid "Become a daemon (default)" -msgstr "" - -#: src/monitor/monitor.c:2381 -msgid "Run interactive (not a daemon)" -msgstr "" - -#: src/monitor/monitor.c:2383 src/tools/sss_debuglevel.c:77 -msgid "Specify a non-default config file" -msgstr "" - -#: src/monitor/monitor.c:2385 -msgid "Print version number and exit" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1575 src/providers/ldap/ldap_child.c:381 -#: src/util/util.h:89 -msgid "Debug level" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1577 src/providers/ldap/ldap_child.c:383 -#: src/util/util.h:93 -msgid "Add debug timestamps" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1579 src/providers/ldap/ldap_child.c:385 -#: src/util/util.h:95 -msgid "Show timestamps with microseconds" -msgstr "" - -#: src/providers/krb5/krb5_child.c:1581 src/providers/ldap/ldap_child.c:387 -msgid "An open file descriptor for the debug logs" -msgstr "" - -#: src/providers/data_provider_be.c:1938 -msgid "Domain of the information provider (mandatory)" -msgstr "" - -#: src/sss_client/common.c:878 -msgid "Privileged socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:881 -msgid "Public socket has wrong ownership or permissions." -msgstr "" - -#: src/sss_client/common.c:884 -msgid "Unexpected format of the server credential message." -msgstr "" - -#: src/sss_client/common.c:887 -msgid "SSSD is not run by root." -msgstr "" - -#: src/sss_client/common.c:892 -msgid "An error occurred, but no description can be found." -msgstr "" - -#: src/sss_client/common.c:898 -msgid "Unexpected error while looking for an error description" -msgstr "" - -#: src/sss_client/pam_sss.c:378 -msgid "Passwords do not match" -msgstr "" - -#: src/sss_client/pam_sss.c:571 -msgid "Password reset by root is not supported." -msgstr "" - -#: src/sss_client/pam_sss.c:612 -msgid "Authenticated with cached credentials" -msgstr "" - -#: src/sss_client/pam_sss.c:613 -msgid ", your cached password will expire at: " -msgstr "" - -#: src/sss_client/pam_sss.c:643 -#, c-format -msgid "Your password has expired. You have %d grace login(s) remaining." -msgstr "" - -#: src/sss_client/pam_sss.c:689 -#, c-format -msgid "Your password will expire in %d %s." -msgstr "" - -#: src/sss_client/pam_sss.c:738 -msgid "Authentication is denied until: " -msgstr "" - -#: src/sss_client/pam_sss.c:759 -msgid "System is offline, password change not possible" -msgstr "" - -#: src/sss_client/pam_sss.c:789 src/sss_client/pam_sss.c:802 -msgid "Password change failed. " -msgstr "" - -#: src/sss_client/pam_sss.c:792 src/sss_client/pam_sss.c:803 -msgid "Server message: " -msgstr "" - -#: src/sss_client/pam_sss.c:1286 -msgid "New Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1287 -msgid "Reenter new Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1373 -msgid "Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1405 -msgid "Current Password: " -msgstr "" - -#: src/sss_client/pam_sss.c:1552 -msgid "Password expired. Change your password now." -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:40 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:211 src/tools/sss_useradd.c:48 -#: src/tools/sss_groupadd.c:41 src/tools/sss_groupdel.c:43 -#: src/tools/sss_groupmod.c:42 src/tools/sss_groupshow.c:615 -#: src/tools/sss_userdel.c:131 src/tools/sss_usermod.c:47 -#: src/tools/sss_cache.c:260 src/tools/sss_debuglevel.c:75 -msgid "The debug level to run with" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:42 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:215 -msgid "The SSSD domain to use" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:58 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:229 src/tools/sss_useradd.c:71 -#: src/tools/sss_groupadd.c:56 src/tools/sss_groupdel.c:52 -#: src/tools/sss_groupmod.c:63 src/tools/sss_groupshow.c:626 -#: src/tools/sss_userdel.c:148 src/tools/sss_usermod.c:72 -#: src/tools/sss_cache.c:281 -msgid "Error setting the locale\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:65 -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:91 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:236 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:269 -msgid "Not enough memory\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:84 -msgid "User not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_authorizedkeys.c:104 -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:282 -msgid "Error looking up public keys\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:94 -msgid "Failed to open a socket\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:104 -msgid "Failed to connect to the server\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:195 -msgid "Failed to execute proxy command\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:213 -msgid "The port to use to connect to the host" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:255 -msgid "Host not specified\n" -msgstr "" - -#: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:261 -msgid "The path to the proxy command must be absolute\n" -msgstr "" - -#: src/tools/sss_useradd.c:49 src/tools/sss_usermod.c:48 -msgid "The UID of the user" -msgstr "" - -#: src/tools/sss_useradd.c:50 src/tools/sss_usermod.c:50 -msgid "The comment string" -msgstr "" - -#: src/tools/sss_useradd.c:51 src/tools/sss_usermod.c:51 -msgid "Home directory" -msgstr "" - -#: src/tools/sss_useradd.c:52 src/tools/sss_usermod.c:52 -msgid "Login shell" -msgstr "" - -#: src/tools/sss_useradd.c:53 -msgid "Groups" -msgstr "" - -#: src/tools/sss_useradd.c:54 -msgid "Create user's directory if it does not exist" -msgstr "" - -#: src/tools/sss_useradd.c:55 -msgid "Never create user's directory, overrides config" -msgstr "" - -#: src/tools/sss_useradd.c:56 -msgid "Specify an alternative skeleton directory" -msgstr "" - -#: src/tools/sss_useradd.c:57 src/tools/sss_usermod.c:57 -msgid "The SELinux user for user's login" -msgstr "" - -#: src/tools/sss_useradd.c:84 src/tools/sss_groupmod.c:76 -#: src/tools/sss_usermod.c:85 -msgid "Specify group to add to\n" -msgstr "" - -#: src/tools/sss_useradd.c:108 -msgid "Specify user to add\n" -msgstr "" - -#: src/tools/sss_useradd.c:117 src/tools/sss_groupadd.c:82 -#: src/tools/sss_groupdel.c:77 src/tools/sss_groupmod.c:109 -#: src/tools/sss_groupshow.c:659 src/tools/sss_userdel.c:193 -#: src/tools/sss_usermod.c:126 -msgid "Error initializing the tools - no local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:119 src/tools/sss_groupadd.c:84 -#: src/tools/sss_groupdel.c:79 src/tools/sss_groupmod.c:111 -#: src/tools/sss_groupshow.c:661 src/tools/sss_userdel.c:195 -#: src/tools/sss_usermod.c:128 -msgid "Error initializing the tools\n" -msgstr "" - -#: src/tools/sss_useradd.c:128 src/tools/sss_groupadd.c:93 -#: src/tools/sss_groupdel.c:88 src/tools/sss_groupmod.c:119 -#: src/tools/sss_groupshow.c:670 src/tools/sss_userdel.c:204 -#: src/tools/sss_usermod.c:137 -msgid "Invalid domain specified in FQDN\n" -msgstr "" - -#: src/tools/sss_useradd.c:137 src/tools/sss_groupmod.c:139 -#: src/tools/sss_groupmod.c:166 src/tools/sss_usermod.c:160 -#: src/tools/sss_usermod.c:187 -msgid "Internal error while parsing parameters\n" -msgstr "" - -#: src/tools/sss_useradd.c:145 src/tools/sss_usermod.c:168 -#: src/tools/sss_usermod.c:195 -msgid "Groups must be in the same domain as user\n" -msgstr "" - -#: src/tools/sss_useradd.c:153 -#, c-format -msgid "Cannot find group %s in local domain\n" -msgstr "" - -#: src/tools/sss_useradd.c:168 src/tools/sss_userdel.c:214 -msgid "Cannot set default values\n" -msgstr "" - -#: src/tools/sss_useradd.c:175 src/tools/sss_usermod.c:151 -msgid "The selected UID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_useradd.c:202 src/tools/sss_usermod.c:236 -msgid "Cannot set SELinux login context\n" -msgstr "" - -#: src/tools/sss_useradd.c:217 -msgid "Cannot get info about the user\n" -msgstr "" - -#: src/tools/sss_useradd.c:229 -msgid "User's home directory already exists, not copying data from skeldir\n" -msgstr "" - -#: src/tools/sss_useradd.c:232 -#, c-format -msgid "Cannot create user's home directory: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:243 -#, c-format -msgid "Cannot create user's mail spool: %s\n" -msgstr "" - -#: src/tools/sss_useradd.c:255 -msgid "Could not allocate ID for the user - domain full?\n" -msgstr "" - -#: src/tools/sss_useradd.c:259 -msgid "A user or group with the same name or ID already exists\n" -msgstr "" - -#: src/tools/sss_useradd.c:265 -msgid "Transaction error. Could not add user.\n" -msgstr "" - -#: src/tools/sss_groupadd.c:43 src/tools/sss_groupmod.c:48 -msgid "The GID of the group" -msgstr "" - -#: src/tools/sss_groupadd.c:73 -msgid "Specify group to add\n" -msgstr "" - -#: src/tools/sss_groupadd.c:102 src/tools/sss_groupmod.c:190 -msgid "The selected GID is outside the allowed range\n" -msgstr "" - -#: src/tools/sss_groupadd.c:127 -msgid "Could not allocate ID for the group - domain full?\n" -msgstr "" - -#: src/tools/sss_groupadd.c:131 -msgid "A group with the same name or GID already exists\n" -msgstr "" - -#: src/tools/sss_groupadd.c:136 -msgid "Transaction error. Could not add group.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:68 -msgid "Specify group to delete\n" -msgstr "" - -#: src/tools/sss_groupdel.c:101 -#, c-format -msgid "Group %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_groupdel.c:115 -msgid "" -"No such group in local domain. Removing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupdel.c:120 -msgid "Internal error. Could not remove group.\n" -msgstr "" - -#: src/tools/sss_groupmod.c:44 -msgid "Groups to add this group to" -msgstr "" - -#: src/tools/sss_groupmod.c:46 -msgid "Groups to remove this group from" -msgstr "" - -#: src/tools/sss_groupmod.c:84 src/tools/sss_usermod.c:93 -msgid "Specify group to remove from\n" -msgstr "" - -#: src/tools/sss_groupmod.c:98 -msgid "Specify group to modify\n" -msgstr "" - -#: src/tools/sss_groupmod.c:126 -msgid "" -"Cannot find group in local domain, modifying groups is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_groupmod.c:147 src/tools/sss_groupmod.c:174 -msgid "Member groups must be in the same domain as parent group\n" -msgstr "" - -#: src/tools/sss_groupmod.c:155 src/tools/sss_groupmod.c:182 -#: src/tools/sss_usermod.c:176 src/tools/sss_usermod.c:203 -#, c-format -msgid "" -"Cannot find group %s in local domain, only groups in local domain are " -"allowed\n" -msgstr "" - -#: src/tools/sss_groupmod.c:216 -msgid "Could not modify group - check if member group names are correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:220 -msgid "Could not modify group - check if groupname is correct\n" -msgstr "" - -#: src/tools/sss_groupmod.c:224 -msgid "Transaction error. Could not modify group.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:562 -#, c-format -msgid "%s%sGroup: %s\n" -msgstr "" - -#: src/tools/sss_groupshow.c:563 -msgid "Magic Private " -msgstr "" - -#: src/tools/sss_groupshow.c:565 -#, c-format -msgid "%sGID number: %d\n" -msgstr "" - -#: src/tools/sss_groupshow.c:567 -#, c-format -msgid "%sMember users: " -msgstr "" - -#: src/tools/sss_groupshow.c:574 -#, c-format -msgid "" -"\n" -"%sIs a member of: " -msgstr "" - -#: src/tools/sss_groupshow.c:581 -#, c-format -msgid "" -"\n" -"%sMember groups: " -msgstr "" - -#: src/tools/sss_groupshow.c:617 -msgid "Print indirect group members recursively" -msgstr "" - -#: src/tools/sss_groupshow.c:650 -msgid "Specify group to show\n" -msgstr "" - -#: src/tools/sss_groupshow.c:689 -msgid "" -"No such group in local domain. Printing groups only allowed in local " -"domain.\n" -msgstr "" - -#: src/tools/sss_groupshow.c:694 -msgid "Internal error. Could not print group.\n" -msgstr "" - -#: src/tools/sss_userdel.c:133 -msgid "Remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:135 -msgid "Do not remove home directory and mail spool" -msgstr "" - -#: src/tools/sss_userdel.c:137 -msgid "Force removal of files not owned by the user" -msgstr "" - -#: src/tools/sss_userdel.c:139 -msgid "Kill users' processes before removing him" -msgstr "" - -#: src/tools/sss_userdel.c:184 -msgid "Specify user to delete\n" -msgstr "" - -#: src/tools/sss_userdel.c:230 -#, c-format -msgid "User %s is outside the defined ID range for domain\n" -msgstr "" - -#: src/tools/sss_userdel.c:255 -msgid "Cannot reset SELinux login context\n" -msgstr "" - -#: src/tools/sss_userdel.c:267 -#, c-format -msgid "WARNING: The user (uid %lu) was still logged in when deleted.\n" -msgstr "" - -#: src/tools/sss_userdel.c:272 -msgid "Cannot determine if the user was logged in on this platform" -msgstr "" - -#: src/tools/sss_userdel.c:277 -msgid "Error while checking if the user was logged in\n" -msgstr "" - -#: src/tools/sss_userdel.c:284 -#, c-format -msgid "The post-delete command failed: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:296 -msgid "Not removing home dir - not owned by user\n" -msgstr "" - -#: src/tools/sss_userdel.c:298 -#, c-format -msgid "Cannot remove homedir: %s\n" -msgstr "" - -#: src/tools/sss_userdel.c:309 -msgid "" -"No such user in local domain. Removing users only allowed in local domain.\n" -msgstr "" - -#: src/tools/sss_userdel.c:314 -msgid "Internal error. Could not remove user.\n" -msgstr "" - -#: src/tools/sss_usermod.c:49 -msgid "The GID of the user" -msgstr "" - -#: src/tools/sss_usermod.c:53 -msgid "Groups to add this user to" -msgstr "" - -#: src/tools/sss_usermod.c:54 -msgid "Groups to remove this user from" -msgstr "" - -#: src/tools/sss_usermod.c:55 -msgid "Lock the account" -msgstr "" - -#: src/tools/sss_usermod.c:56 -msgid "Unlock the account" -msgstr "" - -#: src/tools/sss_usermod.c:117 -msgid "Specify user to modify\n" -msgstr "" - -#: src/tools/sss_usermod.c:144 -msgid "" -"Cannot find user in local domain, modifying users is allowed only in local " -"domain\n" -msgstr "" - -#: src/tools/sss_usermod.c:246 -msgid "Could not modify user - check if group names are correct\n" -msgstr "" - -#: src/tools/sss_usermod.c:250 -msgid "Could not modify user - user already member of groups?\n" -msgstr "" - -#: src/tools/sss_usermod.c:254 -msgid "Transaction error. Could not modify user.\n" -msgstr "" - -#: src/tools/sss_cache.c:132 -#, c-format -msgid "Couldn't invalidate %s" -msgstr "" - -#: src/tools/sss_cache.c:138 -#, c-format -msgid "Couldn't invalidate %s %s" -msgstr "" - -#: src/tools/sss_cache.c:262 -msgid "Invalidate particular user" -msgstr "" - -#: src/tools/sss_cache.c:264 -msgid "Invalidate all users" -msgstr "" - -#: src/tools/sss_cache.c:266 -msgid "Invalidate particular group" -msgstr "" - -#: src/tools/sss_cache.c:268 -msgid "Invalidate all groups" -msgstr "" - -#: src/tools/sss_cache.c:270 -msgid "Invalidate particular netgroup" -msgstr "" - -#: src/tools/sss_cache.c:272 -msgid "Invalidate all netgroups" -msgstr "" - -#: src/tools/sss_cache.c:274 -msgid "Only invalidate entries from a particular domain" -msgstr "" - -#: src/tools/sss_debuglevel.c:43 -msgid "\n" -msgstr "" - -#: src/tools/sss_debuglevel.c:102 -msgid "Specify debug level you want to set\n" -msgstr "" - -#: src/tools/tools_util.c:286 -msgid "Out of memory\n" -msgstr "" - -#: src/tools/tools_util.h:40 -#, c-format -msgid "%s must be run as root\n" -msgstr "" - -#: src/util/util.h:91 -msgid "Send the debug output to files instead of stderr" -msgstr "" diff --git a/po/zh_TW.po b/po/zh_TW.po index d483698e7..90ddadddd 100644 --- a/po/zh_TW.po +++ b/po/zh_TW.po @@ -7,8 +7,8 @@ msgid "" msgstr "" "Project-Id-Version: SSSD\n" "Report-Msgid-Bugs-To: sssd-devel@lists.fedorahosted.org\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2011-12-21 10:10+0000\n" +"POT-Creation-Date: 2012-03-12 16:26-0400\n" +"PO-Revision-Date: 2012-03-08 11:41+0000\n" "Last-Translator: sgallagh \n" "Language-Team: Chinese (Taiwan) \n" "Language: zh_TW\n" @@ -170,24 +170,20 @@ msgid "Password change provider" msgstr "密碼變更提供者" #: src/config/SSSDConfig.py:88 -#, fuzzy msgid "SUDO provider" -msgstr "身分提供者" +msgstr "" #: src/config/SSSDConfig.py:89 -#, fuzzy msgid "Autofs provider" -msgstr "認證提供者" +msgstr "" #: src/config/SSSDConfig.py:90 -#, fuzzy msgid "Session-loading provider" -msgstr "存取控制提供者" +msgstr "" #: src/config/SSSDConfig.py:91 -#, fuzzy msgid "Host identity provider" -msgstr "身分提供者" +msgstr "" #: src/config/SSSDConfig.py:94 msgid "Minimum user ID" @@ -752,9 +748,8 @@ msgid "Enable periodical update of all sudo rules" msgstr "" #: src/config/SSSDConfig.py:271 -#, fuzzy msgid "Length of time between rules updates" -msgstr "搜尋請求的等候時間長度" +msgstr "" #: src/config/SSSDConfig.py:272 msgid "Object class for sudo rules" @@ -883,7 +878,7 @@ msgstr "" msgid "An open file descriptor for the debug logs" msgstr "" -#: src/providers/data_provider_be.c:1938 +#: src/providers/data_provider_be.c:2022 msgid "Domain of the information provider (mandatory)" msgstr "" @@ -984,9 +979,8 @@ msgstr "" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:42 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:215 -#, fuzzy msgid "The SSSD domain to use" -msgstr "要啟動的 SSSD 網域" +msgstr "" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:58 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:229 src/tools/sss_useradd.c:71 @@ -1001,9 +995,8 @@ msgstr "設定區域設置時發生錯誤\n" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:91 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:236 #: src/sss_client/ssh/sss_ssh_knownhostsproxy.c:269 -#, fuzzy msgid "Not enough memory\n" -msgstr "記憶體耗盡\n" +msgstr "" #: src/sss_client/ssh/sss_ssh_authorizedkeys.c:84 msgid "User not specified\n" @@ -1452,9 +1445,8 @@ msgid "\n" msgstr "" #: src/tools/sss_debuglevel.c:102 -#, fuzzy msgid "Specify debug level you want to set\n" -msgstr "指定要刪除的群組\n" +msgstr "" #: src/tools/tools_util.c:286 msgid "Out of memory\n" diff --git a/src/man/po/as.po b/src/man/po/as.po deleted file mode 100644 index 76bab076c..000000000 --- a/src/man/po/as.po +++ /dev/null @@ -1,6748 +0,0 @@ -# SOME DESCRIPTIVE TITLE -# Copyright (C) YEAR Red Hat -# This file is distributed under the same license as the sssd-docs package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@redhat.com\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-12-23 15:35+0000\n" -"Last-Translator: FULL NAME \n" -"Language-Team: Assamese (http://www.transifex.net/projects/p/fedora/team/" -"as/)\n" -"Language: as\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=2; plural=(n != 1)\n" - -#. type: Content of: -#: sss_groupmod.8.xml:5 sssd.conf.5.xml:5 sssd-ldap.5.xml:5 pam_sss.8.xml:5 -#: sssd_krb5_locator_plugin.8.xml:5 sssd-simple.5.xml:5 sssd-ipa.5.xml:5 -#: sssd.8.xml:5 sss_obfuscate.8.xml:5 sss_useradd.8.xml:5 sssd-krb5.5.xml:5 -#: sss_groupadd.8.xml:5 sss_userdel.8.xml:5 sss_groupdel.8.xml:5 -#: sss_groupshow.8.xml:5 sss_usermod.8.xml:5 sss_cache.8.xml:5 -#: sss_debuglevel.8.xml:5 sss_ssh_authorizedkeys.1.xml:5 -#: sss_ssh_knownhostsproxy.1.xml:5 -msgid "SSSD Manual pages" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupmod.8.xml:10 sss_groupmod.8.xml:15 -msgid "sss_groupmod" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_groupmod.8.xml:11 pam_sss.8.xml:14 sssd_krb5_locator_plugin.8.xml:11 -#: sssd.8.xml:11 sss_obfuscate.8.xml:11 sss_useradd.8.xml:11 -#: sss_groupadd.8.xml:11 sss_userdel.8.xml:11 sss_groupdel.8.xml:11 -#: sss_groupshow.8.xml:11 sss_usermod.8.xml:11 sss_cache.8.xml:11 -#: sss_debuglevel.8.xml:11 -msgid "8" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupmod.8.xml:16 -msgid "modify a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupmod.8.xml:21 -msgid "" -"<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:30 sssd-ldap.5.xml:21 pam_sss.8.xml:44 -#: sssd_krb5_locator_plugin.8.xml:20 sssd-simple.5.xml:22 sssd-ipa.5.xml:21 -#: sssd.8.xml:29 sss_obfuscate.8.xml:30 sss_useradd.8.xml:30 -#: sssd-krb5.5.xml:21 sss_groupadd.8.xml:30 sss_userdel.8.xml:30 -#: sss_groupdel.8.xml:30 sss_groupshow.8.xml:30 sss_usermod.8.xml:30 -#: sss_cache.8.xml:29 sss_debuglevel.8.xml:30 sss_ssh_authorizedkeys.1.xml:30 -#: sss_ssh_knownhostsproxy.1.xml:31 -msgid "DESCRIPTION" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:32 -msgid "" -"<command>sss_groupmod</command> modifies the group to reflect the changes " -"that are specified on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:39 pam_sss.8.xml:51 sssd.8.xml:42 sss_obfuscate.8.xml:58 -#: sss_useradd.8.xml:39 sss_groupadd.8.xml:39 sss_userdel.8.xml:39 -#: sss_groupdel.8.xml:39 sss_groupshow.8.xml:39 sss_usermod.8.xml:39 -#: sss_cache.8.xml:38 sss_debuglevel.8.xml:38 sss_ssh_authorizedkeys.1.xml:78 -#: sss_ssh_knownhostsproxy.1.xml:65 -msgid "OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:43 sss_usermod.8.xml:77 -msgid "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:48 -msgid "" -"Append this group to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:57 sss_usermod.8.xml:91 -msgid "" -"<option>-r</option>,<option>--remove-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:62 -msgid "" -"Remove this group from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:72 sssd.conf.5.xml:1331 sssd-ldap.5.xml:2096 -#: pam_sss.8.xml:139 sssd_krb5_locator_plugin.8.xml:75 sssd-simple.5.xml:143 -#: sssd-ipa.5.xml:562 sssd.8.xml:191 sss_obfuscate.8.xml:103 -#: sss_useradd.8.xml:167 sssd-krb5.5.xml:451 sss_groupadd.8.xml:58 -#: sss_userdel.8.xml:93 sss_groupdel.8.xml:46 sss_groupshow.8.xml:58 -#: sss_usermod.8.xml:138 sss_ssh_authorizedkeys.1.xml:96 -#: sss_ssh_knownhostsproxy.1.xml:95 -msgid "SEE ALSO" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:74 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.conf.5.xml:10 sssd.conf.5.xml:16 -msgid "sssd.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sssd.conf.5.xml:11 sssd-ldap.5.xml:11 sssd-simple.5.xml:11 -#: sssd-ipa.5.xml:11 sssd-krb5.5.xml:11 -msgid "5" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><refmiscinfo> -#: sssd.conf.5.xml:12 sssd-ldap.5.xml:12 sssd-simple.5.xml:12 -#: sssd-ipa.5.xml:12 sssd-krb5.5.xml:12 -msgid "File Formats and Conventions" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.conf.5.xml:17 sssd-ldap.5.xml:17 sssd_krb5_locator_plugin.8.xml:16 -#: sssd-ipa.5.xml:17 sssd-krb5.5.xml:17 -msgid "the configuration file for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:21 -msgid "FILE FORMAT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:29 -#, no-wrap -msgid "" -" <replaceable>[section]</replaceable>\n" -" <replaceable>key</replaceable> = <replaceable>value</replaceable>\n" -" <replaceable>key2</replaceable> = <replaceable>value2,value3</replaceable>\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:24 -msgid "" -"The file has an ini-style syntax and consists of sections and parameters. A " -"section begins with the name of the section in square brackets and continues " -"until the next section begins. An example of section with single and multi-" -"valued parameters: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:36 -msgid "" -"The data types used are string (no quotes needed), integer and bool (with " -"values of <quote>TRUE/FALSE</quote>)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:41 -msgid "" -"A line comment starts with a hash sign (<quote>#</quote>) or a semicolon " -"(<quote>;</quote>)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:46 -msgid "" -"All sections can have an optional <replaceable>description</replaceable> " -"parameter. Its function is only as a label for the section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:52 -msgid "" -"<filename>sssd.conf</filename> must be a regular file, owned by root and " -"only root may read from or write to the file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:58 -msgid "SPECIAL SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:61 -msgid "The [sssd] section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><title> -#: sssd.conf.5.xml:70 sssd.conf.5.xml:1177 -msgid "Section parameters" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:72 -msgid "config_file_version (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:75 -msgid "" -"Indicates what is the syntax of the config file. SSSD 0.6.0 and later use " -"version 2." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:81 -msgid "services" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:84 -msgid "" -"Comma separated list of services that are started when sssd itself starts." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:88 -msgid "" -"Supported services: nss, pam <phrase condition=\"with_sudo\">, sudo</phrase>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:94 sssd.conf.5.xml:257 -msgid "reconnection_retries (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:97 sssd.conf.5.xml:260 -msgid "" -"Number of times services should attempt to reconnect in the event of a Data " -"Provider crash or restart before they give up" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:102 sssd.conf.5.xml:265 -msgid "Default: 3" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:107 -msgid "domains" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:110 -msgid "" -"A domain is a database containing user information. SSSD can use more " -"domains at the same time, but at least one must be configured or SSSD won't " -"start. This parameter described the list of domains in the order you want " -"them to be queried." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:120 -msgid "re_expression (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:123 -msgid "" -"Regular expression that describes how to parse the string containing user " -"name and domain into these components." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:127 -msgid "" -"Default: <quote>(?P<name>[^@]+)@?(?P<domain>[^@]*$)</quote> " -"which translates to \"the name is everything up to the <quote>@</quote> " -"sign, the domain everything after that\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:132 -msgid "" -"PLEASE NOTE: the support for non-unique named subpatterns is not available " -"on all platforms (e.g. RHEL5 and SLES10). Only platforms with libpcre " -"version 7 or higher can support non-unique named subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:139 -msgid "" -"PLEASE NOTE ALSO: older version of libpcre only support the Python syntax (?" -"P<name>) to label subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:146 -msgid "full_name_format (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:149 -msgid "" -"A <citerefentry> <refentrytitle>printf</refentrytitle> <manvolnum>3</" -"manvolnum> </citerefentry>-compatible format that describes how to translate " -"a (name, domain) tuple into a fully qualified name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:157 -msgid "Default: <quote>%1$s@%2$s</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:162 -msgid "try_inotify (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:165 -msgid "" -"SSSD monitors the state of resolv.conf to identify when it needs to update " -"its internal DNS resolver. By default, we will attempt to use inotify for " -"this, and will fall back to polling resolv.conf every five seconds if " -"inotify cannot be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:173 -msgid "" -"There are some limited situations where it is preferred that we should skip " -"even trying to use inotify. In these rare cases, this option should be set " -"to 'false'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:179 -msgid "" -"Default: true on platforms where inotify is supported. False on other " -"platforms." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:183 -msgid "" -"Note: this option will have no effect on platforms where inotify is " -"unavailable. On these platforms, polling will always be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:190 -msgid "krb5_rcache_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:193 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:197 -msgid "" -"This option accepts a special value __LIBKRB5_DEFAULTS__ that will instruct " -"SSSD to let libkrb5 decide the appropriate location for the replay cache." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:203 -msgid "" -"Default: Distribution-specific and specified at build-time. " -"(__LIBKRB5_DEFAULTS__ if not configured)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:63 -msgid "" -"Individual pieces of SSSD functionality are provided by special SSSD " -"services that are started and stopped together with SSSD. The services are " -"managed by a special service frequently called <quote>monitor</quote>. The " -"<quote>[sssd]</quote> section is used to configure the monitor as well as " -"some other important options like the identity domains. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:216 -msgid "SERVICES SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:218 -msgid "" -"Settings that can be used to configure different services are described in " -"this section. They should reside in the [<replaceable>$NAME</replaceable>] " -"section, for example, for NSS service, the section would be <quote>[nss]</" -"quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:225 -msgid "General service configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:227 -msgid "These options can be used to configure any service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:231 -msgid "debug_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:235 -msgid "debug_timestamps (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:238 -msgid "Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:241 sssd.conf.5.xml:376 sssd-ldap.5.xml:1328 -#: sssd-ldap.5.xml:1446 sssd-ipa.5.xml:206 sssd-ipa.5.xml:241 -msgid "Default: true" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:246 -msgid "debug_microseconds (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:249 -msgid "Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:252 sssd.conf.5.xml:641 sssd-ldap.5.xml:602 -#: sssd-ldap.5.xml:1260 sssd-ldap.5.xml:1397 sssd-ldap.5.xml:1795 -#: sssd-ipa.5.xml:123 sssd-ipa.5.xml:301 sssd-krb5.5.xml:235 -#: sssd-krb5.5.xml:269 sssd-krb5.5.xml:418 -msgid "Default: false" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:270 -msgid "command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:273 -msgid "" -"By default, the executable representing this service is called <command>sssd_" -"${service_name}</command>. This directive allows to change the executable " -"name for the service. In the vast majority of configurations, the default " -"values should suffice." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:281 -msgid "Default: <command>sssd_${service_name}</command>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:289 -msgid "NSS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:291 -msgid "" -"These options can be used to configure the Name Service Switch (NSS) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:296 -msgid "enum_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:299 -msgid "" -"How many seconds should nss_sss cache enumerations (requests for info about " -"all users)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:303 -msgid "Default: 120" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:308 -msgid "entry_cache_nowait_percentage (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:311 -msgid "" -"The entry cache can be set to automatically update entries in the background " -"if they are requested beyond a percentage of the entry_cache_timeout value " -"for the domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:317 -msgid "" -"For example, if the domain's entry_cache_timeout is set to 30s and " -"entry_cache_nowait_percentage is set to 50 (percent), entries that come in " -"after 15 seconds past the last cache update will be returned immediately, " -"but the SSSD will go and update the cache on its own, so that future " -"requests will not need to block waiting for a cache update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:327 -msgid "" -"Valid values for this option are 0-99 and represent a percentage of the " -"entry_cache_timeout for each domain. For performance reasons, this " -"percentage will never reduce the nowait timeout to less than 10 seconds. (0 " -"disables this feature)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:335 -msgid "Default: 50" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:340 -msgid "entry_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:343 -msgid "" -"Specifies for how many seconds nss_sss should cache negative cache hits " -"(that is, queries for invalid database entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:349 sssd.conf.5.xml:669 sssd-krb5.5.xml:223 -msgid "Default: 15" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:354 -msgid "filter_users, filter_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:357 -msgid "" -"Exclude certain users from being fetched from the sss NSS database. This is " -"particularly useful for system accounts. This option can also be set per-" -"domain or include fully-qualified names to filter only users from the " -"particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:364 -msgid "Default: root" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:369 -msgid "filter_users_in_groups (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:372 -msgid "" -"If you want filtered user still be group members set this option to false." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:381 -msgid "override_homedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:390 sssd-krb5.5.xml:166 -msgid "%u" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:391 sssd-krb5.5.xml:167 -msgid "login name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:394 sssd-krb5.5.xml:170 -msgid "%U" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:395 -msgid "UID number" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:398 sssd-krb5.5.xml:188 -msgid "%d" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:399 -msgid "domain name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:402 -msgid "%f" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:403 -msgid "fully qualified user name (user@domain)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:406 sssd-krb5.5.xml:200 -msgid "%%" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:407 sssd-krb5.5.xml:201 -msgid "a literal '%'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:384 -msgid "" -"Override the user's home directory. You can either provide an absolute value " -"or a template. In the template, the following sequences are substituted: " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:413 -msgid "This option can also be set per-domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:418 -msgid "allowed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:421 -msgid "" -"Restrict user shell to one of the listed values. The order of evaluation is:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:424 -msgid "1. If the shell is present in <quote>/etc/shells</quote>, it is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:428 -msgid "" -"2. If the shell is in the allowed_shells list but not in <quote>/etc/shells</" -"quote>, use the value of the shell_fallback parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:433 -msgid "" -"3. If the shell is not in the allowed_shells list and not in <quote>/etc/" -"shells</quote>, a nologin shell is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:438 -msgid "An empty string for shell is passed as-is to libc." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:441 -msgid "" -"The <quote>/etc/shells</quote> is only read on SSSD start up, which means " -"that a restart of the SSSD is required in case a new shell is installed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:445 -msgid "Default: Not set. The user shell is automatically used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:450 -msgid "vetoed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:453 -msgid "Replace any instance of these shells with the shell_fallback" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:458 -msgid "shell_fallback (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:461 -msgid "" -"The default shell to use if an allowed shell is not installed on the machine." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:465 -msgid "Default: /bin/sh" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:472 -msgid "PAM configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:474 -msgid "" -"These options can be used to configure the Pluggable Authentication Module " -"(PAM) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:479 -msgid "offline_credentials_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:482 -msgid "" -"If the authentication provider is offline, how long should we allow cached " -"logins (in days since the last successful online login)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:487 sssd.conf.5.xml:500 -msgid "Default: 0 (No limit)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:493 -msgid "offline_failed_login_attempts (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:496 -msgid "" -"If the authentication provider is offline, how many failed login attempts " -"are allowed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:506 -msgid "offline_failed_login_delay (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:509 -msgid "" -"The time in minutes which has to pass after offline_failed_login_attempts " -"has been reached before a new login attempt is possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:514 -msgid "" -"If set to 0 the user cannot authenticate offline if " -"offline_failed_login_attempts has been reached. Only a successful online " -"authentication can enable offline authentication again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:520 sssd.conf.5.xml:573 sssd.conf.5.xml:1093 -msgid "Default: 5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:526 -msgid "pam_verbosity (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:529 -msgid "" -"Controls what kind of messages are shown to the user during authentication. " -"The higher the number to more messages are displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:534 -msgid "Currently sssd supports the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:537 -msgid "<emphasis>0</emphasis>: do not show any message" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:540 -msgid "<emphasis>1</emphasis>: show only important messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:544 -msgid "<emphasis>2</emphasis>: show informational messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:547 -msgid "<emphasis>3</emphasis>: show all messages and debug information" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:551 sssd.8.xml:63 -msgid "Default: 1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:556 -msgid "pam_id_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:559 -msgid "" -"For any PAM request while SSSD is online, the SSSD will attempt to " -"immediately update the cached identity information for the user in order to " -"ensure that authentication takes place with the latest information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:565 -msgid "" -"A complete PAM conversation may perform multiple PAM requests, such as " -"account management and session opening. This option controls (on a per-" -"client-application basis) how long (in seconds) we can cache the identity " -"information to avoid excessive round-trips to the identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:579 -msgid "pam_pwd_expiration_warning (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:582 -msgid "Display a warning N days before the password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:585 -msgid "" -"Please note that the backend server has to provide information about the " -"expiration time of the password. If this information is missing, sssd " -"cannot display a warning." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:591 -msgid "Default: 7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:599 -msgid "SUDO configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:601 -msgid "These options can be used to configure the sudo service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:608 -msgid "sudo_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:611 -msgid "" -"For any sudo request that comes while SSSD is online, the SSSD will attempt " -"to update the cached rules in order to ensure that sudo has the latest " -"ruleset." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:617 -msgid "" -"The user may, however, run a couple of sudo commands successively, which " -"would trigger multiple LDAP requests. In order to speed up this use-case, " -"the sudo service maintains an in-memory cache that would be used for " -"performing fast replies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:624 -msgid "" -"This option controls how long (in seconds) can the sudo service cache rules " -"for a user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:628 -msgid "Default: 180" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:633 -msgid "sudo_timed (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:636 -msgid "" -"Whether or not to evaluate the sudoNotBefore and sudoNotAfter attributes " -"that implement time-dependent sudoers entries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:649 -msgid "AUTOFS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:651 -msgid "These options can be used to configure the autofs service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:659 -msgid "autofs_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:662 -msgid "" -"Specifies for how many seconds should the autofs responder negative cache " -"hits (that is, queries for invalid map entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:679 -msgid "DOMAIN SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:686 -msgid "min_id,max_id (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:689 -msgid "" -"UID and GID limits for the domain. If a domain contains an entry that is " -"outside these limits, it is ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:694 -msgid "" -"For users, this affects the primary GID limit. The user will not be returned " -"to NSS if either the UID or the primary GID is outside the range. For non-" -"primary group memberships, those that are in range will be reported as " -"expected." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:701 -msgid "Default: 1 for min_id, 0 (no limit) for max_id" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:707 -msgid "timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:710 -msgid "" -"Timeout in seconds between heartbeats for this domain. This is used to " -"ensure that the backend process is alive and capable of answering requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:715 sssd-ldap.5.xml:1131 -msgid "Default: 10" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:721 -msgid "enumerate (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:724 -msgid "" -"Determines if a domain can be enumerated. This parameter can have one of the " -"following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:728 -msgid "TRUE = Users and groups are enumerated" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:731 -msgid "FALSE = No enumerations for this domain" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:734 sssd.conf.5.xml:839 sssd.conf.5.xml:893 -msgid "Default: FALSE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:737 -msgid "" -"Note: Enabling enumeration has a moderate performance impact on SSSD while " -"enumeration is running. It may take up to several minutes after SSSD startup " -"to fully complete enumerations. During this time, individual requests for " -"information will go directly to LDAP, though it may be slow, due to the " -"heavy enumeration processing." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:747 -msgid "" -"While the first enumeration is running, requests for the complete user or " -"group lists may return no results until it completes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:752 -msgid "" -"Further, enabling enumeration may increase the time necessary to detect " -"network disconnection, as longer timeouts are required to ensure that " -"enumeration lookups are completed successfully. For more information, refer " -"to the man pages for the specific id_provider in use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:763 -msgid "entry_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:766 -msgid "" -"How many seconds should nss_sss consider entries valid before asking the " -"backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:770 -msgid "Default: 5400" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:776 -msgid "entry_cache_user_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:779 -msgid "" -"How many seconds should nss_sss consider user entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:783 sssd.conf.5.xml:796 sssd.conf.5.xml:809 -#: sssd.conf.5.xml:822 -msgid "Default: entry_cache_timeout" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:789 -msgid "entry_cache_group_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:792 -msgid "" -"How many seconds should nss_sss consider group entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:802 -msgid "entry_cache_netgroup_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:805 -msgid "" -"How many seconds should nss_sss consider netgroup entries valid before " -"asking the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:815 -msgid "entry_cache_service_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:818 -msgid "" -"How many seconds should nss_sss consider service entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:828 -msgid "cache_credentials (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:831 -msgid "Determines if user credentials are also cached in the local LDB cache" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:835 -msgid "User credentials are stored in a SHA512 hash, not in plaintext" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:844 -msgid "account_cache_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:847 -msgid "" -"Number of days entries are left in cache after last successful login before " -"being removed during a cleanup of the cache. 0 means keep forever. The " -"value of this parameter must be greater than or equal to " -"offline_credentials_expiration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:854 -msgid "Default: 0 (unlimited)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:860 -msgid "id_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:863 -msgid "The Data Provider identity backend to use for this domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:867 -msgid "Supported backends:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:870 -msgid "proxy: Support a legacy NSS provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:873 -msgid "local: SSSD internal local provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:876 -msgid "ldap: LDAP provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:882 -msgid "use_fully_qualified_names (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:885 -msgid "" -"If set to TRUE, all requests to this domain must use fully qualified names. " -"For example, if used in LOCAL domain that contains a \"test\" user, " -"<command>getent passwd test</command> wouldn't find the user while " -"<command>getent passwd test@LOCAL</command> would." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:898 -msgid "auth_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:901 -msgid "" -"The authentication provider used for the domain. Supported auth providers " -"are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:905 -msgid "" -"<quote>ldap</quote> for native LDAP authentication. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:912 -msgid "" -"<quote>krb5</quote> for Kerberos authentication. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:919 -msgid "" -"<quote>proxy</quote> for relaying authentication to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:922 -msgid "<quote>none</quote> disables authentication explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:925 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"authentication requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:931 -msgid "access_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:934 -msgid "" -"The access control provider used for the domain. There are two built-in " -"access providers (in addition to any included in installed backends) " -"Internal special providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:940 -msgid "<quote>permit</quote> always allow access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:943 -msgid "<quote>deny</quote> always deny access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:946 -msgid "" -"<quote>simple</quote> access control based on access or deny lists. See " -"<citerefentry> <refentrytitle>sssd-simple</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry> for more information on configuring the simple " -"access module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:953 -msgid "Default: <quote>permit</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:958 -msgid "chpass_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:961 -msgid "" -"The provider which should handle change password operations for the domain. " -"Supported change password providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:966 -msgid "" -"<quote>ipa</quote> to change a password stored in an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:974 -msgid "" -"<quote>ldap</quote> to change a password stored in a LDAP server. See " -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:982 -msgid "" -"<quote>krb5</quote> to change the Kerberos password. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:990 -msgid "" -"<quote>proxy</quote> for relaying password changes to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:994 -msgid "<quote>none</quote> disallows password changes explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:997 -msgid "" -"Default: <quote>auth_provider</quote> is used if it is set and can handle " -"change password requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1004 -msgid "sudo_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1010 -msgid "The SUDO provider used for the domain. Supported SUDO providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1014 -msgid "" -"<quote>ldap</quote> for rules stored in LDAP. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1021 -msgid "<quote>none</quote> disables SUDO explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1024 -msgid "Default: The value of <quote>id_provider</quote> is used if it is set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1030 -msgid "session_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1033 -msgid "" -"The provider which should handle loading of session settings. Supported " -"session providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1038 -msgid "" -"<quote>ipa</quote> to load session settings from an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1046 -msgid "<quote>none</quote> disallows fetching session settings explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1049 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"session loading requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1056 -msgid "lookup_family_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1059 -msgid "" -"Provides the ability to select preferred address family to use when " -"performing DNS lookups." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1063 -msgid "Supported values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1066 -msgid "ipv4_first: Try looking up IPv4 address, if that fails, try IPv6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1069 -msgid "ipv4_only: Only attempt to resolve hostnames to IPv4 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1072 -msgid "ipv6_first: Try looking up IPv6 address, if that fails, try IPv4" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1075 -msgid "ipv6_only: Only attempt to resolve hostnames to IPv6 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1078 -msgid "Default: ipv4_first" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1084 -msgid "dns_resolver_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1087 -msgid "" -"Defines the amount of time (in seconds) to wait for a reply from the DNS " -"resolver before assuming that it is unreachable. If this timeout is reached, " -"the domain will continue to operate in offline mode." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1099 -msgid "dns_discovery_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1102 -msgid "" -"If service discovery is used in the back end, specifies the domain part of " -"the service discovery DNS query." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1106 -msgid "Default: Use the domain part of machine's hostname" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1112 -msgid "override_gid (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1115 -msgid "Override the primary GID value with the one specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1121 -msgid "case_sensitive (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1124 -msgid "" -"Treat user and group names as case sensitive. At the moment, this option is " -"not supported in the local provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1129 -msgid "Default: True" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:681 -msgid "" -"These configuration options can be present in a domain configuration " -"section, that is, in a section called <quote>[domain/<replaceable>NAME</" -"replaceable>]</quote> <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1141 -msgid "proxy_pam_target (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1144 -msgid "The proxy target PAM proxies to." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1147 -msgid "" -"Default: not set by default, you have to take an existing pam configuration " -"or create a new one and add the service name here." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1155 -msgid "proxy_lib_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1158 -msgid "" -"The name of the NSS library to use in proxy domains. The NSS functions " -"searched for in the library are in the form of _nss_$(libName)_$(function), " -"for example _nss_files_getpwent." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1137 -msgid "" -"Options valid for proxy domains. <placeholder type=\"variablelist\" id=" -"\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:1170 -msgid "The local domain section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:1172 -msgid "" -"This section contains settings for domain that stores users and groups in " -"SSSD native database, that is, a domain that uses " -"<replaceable>id_provider=local</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1179 -msgid "default_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1182 -msgid "The default shell for users created with SSSD userspace tools." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1186 -msgid "Default: <filename>/bin/bash</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1191 -msgid "base_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1194 -msgid "" -"The tools append the login name to <replaceable>base_directory</replaceable> " -"and use that as the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1199 -msgid "Default: <filename>/home</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1204 -msgid "create_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1207 -msgid "" -"Indicate if a home directory should be created by default for new users. " -"Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1211 sssd.conf.5.xml:1223 -msgid "Default: TRUE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1216 -msgid "remove_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1219 -msgid "" -"Indicate if a home directory should be removed by default for deleted " -"users. Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1228 -msgid "homedir_umask (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1231 -msgid "" -"Used by <citerefentry> <refentrytitle>sss_useradd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry> to specify the default permissions " -"on a newly created home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1239 -msgid "Default: 077" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1244 -msgid "skel_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1247 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<citerefentry> <refentrytitle>sss_useradd</refentrytitle> <manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1257 -msgid "Default: <filename>/etc/skel</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1262 -msgid "mail_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1265 -msgid "" -"The mail spool directory. This is needed to manipulate the mailbox when its " -"corresponding user account is modified or deleted. If not specified, a " -"default value is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1272 -msgid "Default: <filename>/var/mail</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1277 -msgid "userdel_cmd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1280 -msgid "" -"The command that is run after a user is removed. The command us passed the " -"username of the user being removed as the first and only parameter. The " -"return code of the command is not taken into account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1286 -msgid "Default: None, no command is run" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:1296 sssd-ldap.5.xml:2064 sssd-simple.5.xml:126 -#: sssd-ipa.5.xml:544 sssd-krb5.5.xml:432 -msgid "EXAMPLE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:1302 -#, no-wrap -msgid "" -"[sssd]\n" -"domains = LDAP\n" -"services = nss, pam\n" -"config_file_version = 2\n" -"\n" -"[nss]\n" -"filter_groups = root\n" -"filter_users = root\n" -"\n" -"[pam]\n" -"\n" -"[domain/LDAP]\n" -"id_provider = ldap\n" -"ldap_uri = ldap://ldap.example.com\n" -"ldap_search_base = dc=example,dc=com\n" -"\n" -"auth_provider = krb5\n" -"krb5_server = kerberos.example.com\n" -"krb5_realm = EXAMPLE.COM\n" -"cache_credentials = true\n" -"\n" -"min_id = 10000\n" -"max_id = 20000\n" -"enumerate = False\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1298 -msgid "" -"The following example shows a typical SSSD config. It does not describe " -"configuration of the domains themselves - refer to documentation on " -"configuring domains for more details. <placeholder type=\"programlisting\" " -"id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1333 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>pam_sss</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ldap.5.xml:10 sssd-ldap.5.xml:16 -msgid "sssd-ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:23 -msgid "" -"This manual page describes the configuration of LDAP domains for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. Refer to the <quote>FILE FORMAT</quote> section of the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for detailed syntax information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:35 -msgid "You can configure SSSD to use more than one LDAP domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:38 -msgid "" -"LDAP back end supports id, auth, access and chpass providers. If you want to " -"authenticate against an LDAP server either TLS/SSL or LDAPS is required. " -"<command>sssd</command> <emphasis>does not</emphasis> support authentication " -"over an unencrypted channel. If the LDAP server is used only as an identity " -"provider, an encrypted channel is not needed. Please refer to " -"<quote>ldap_access_filter</quote> config option for more information about " -"using LDAP as an access provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:49 sssd-simple.5.xml:69 sssd-ipa.5.xml:64 -#: sssd-krb5.5.xml:63 -msgid "CONFIGURATION OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:60 -msgid "ldap_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:63 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference. Refer to the <quote>FAILOVER</" -"quote> section for more information on failover and server redundancy. If " -"not specified, service discovery is enabled. For more information, refer to " -"the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:70 -msgid "The format of the URI must match the format defined in RFC 2732:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:73 -msgid "ldap[s]://<host>[:port]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:76 -msgid "" -"For explicit IPv6 addresses, <host> must be enclosed in brackets []" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:79 -msgid "example: ldap://[fc00::126:25]:389" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:85 -msgid "ldap_chpass_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:88 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference to change the password of a user. " -"Refer to the <quote>FAILOVER</quote> section for more information on " -"failover and server redundancy." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:95 -msgid "To enable service discovery ldap_chpass_dns_service_name must be set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:99 -msgid "Default: empty, i.e. ldap_uri is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:105 -msgid "ldap_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:108 -msgid "The default base DN to use for performing LDAP user operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:112 -msgid "" -"Starting with SSSD 1.7.0, SSSD supports multiple search bases using the " -"syntax:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:116 -msgid "search_base[?scope?[filter][?search_base?scope?[filter]]*]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:119 -msgid "The scope can be one of \"base\", \"onelevel\" or \"subtree\"." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:122 -msgid "" -"The filter must be a valid LDAP search filter as specified by http://www." -"ietf.org/rfc/rfc2254.txt" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:126 -msgid "Examples:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:129 -msgid "" -"ldap_search_base = dc=example,dc=com (which is equivalent to) " -"ldap_search_base = dc=example,dc=com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:134 -msgid "" -"ldap_search_base = cn=host_specific,dc=example,dc=com?subtree?" -"(host=thishost)?dc=example.com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:137 -msgid "" -"Note: It is unsupported to have multiple search bases which reference " -"identically-named objects (for example, groups with the same name in two " -"different search bases). This will lead to unpredictable behavior on client " -"machines." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:144 -msgid "" -"Default: If not set, the value of the defaultNamingContext or namingContexts " -"attribute from the RootDSE of the LDAP server is used. If " -"defaultNamingContext does not exists or has an empty value namingContexts is " -"used. The namingContexts attribute must have a single value with the DN of " -"the search base of the LDAP server to make this work. Multiple values are " -"are not supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:158 -msgid "ldap_schema (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:161 -msgid "" -"Specifies the Schema Type in use on the target LDAP server. Depending on " -"the selected schema, the default attribute names retrieved from the servers " -"may vary. The way that some attributes are handled may also differ. Three " -"schema types are currently supported: rfc2307 rfc2307bis IPA The main " -"difference between these schema types is how group memberships are recorded " -"in the server. With rfc2307, group members are listed by name in the " -"<emphasis>memberUid</emphasis> attribute. With rfc2307bis and IPA, group " -"members are listed by DN and stored in the <emphasis>member</emphasis> " -"attribute." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:180 -msgid "Default: rfc2307" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:186 -msgid "ldap_default_bind_dn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:189 -msgid "The default bind DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:196 -msgid "ldap_default_authtok_type (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:199 -msgid "The type of the authentication token of the default bind DN." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:203 -msgid "The two mechanisms currently supported are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:206 -msgid "password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:209 -msgid "obfuscated_password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:212 -msgid "Default: password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:218 -msgid "ldap_default_authtok (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:221 -msgid "" -"The authentication token of the default bind DN. Only clear text passwords " -"are currently supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:228 -msgid "ldap_user_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:231 -msgid "The object class of a user entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:234 -msgid "Default: posixAccount" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:240 -msgid "ldap_user_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:243 -msgid "The LDAP attribute that corresponds to the user's login name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:247 -msgid "Default: uid" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:253 -msgid "ldap_user_uid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:256 -msgid "The LDAP attribute that corresponds to the user's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:260 -msgid "Default: uidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:266 -msgid "ldap_user_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:269 -msgid "The LDAP attribute that corresponds to the user's primary group id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:273 sssd-ldap.5.xml:740 -msgid "Default: gidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:279 -msgid "ldap_user_gecos (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:282 -msgid "The LDAP attribute that corresponds to the user's gecos field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:286 -msgid "Default: gecos" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:292 -msgid "ldap_user_home_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:295 -msgid "The LDAP attribute that contains the name of the user's home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:299 -msgid "Default: homeDirectory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:305 -msgid "ldap_user_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:308 -msgid "The LDAP attribute that contains the path to the user's default shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:312 -msgid "Default: loginShell" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:318 -msgid "ldap_user_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:321 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP user object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:325 sssd-ldap.5.xml:766 sssd-ldap.5.xml:878 -msgid "Default: nsUniqueId" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:331 -msgid "ldap_user_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:334 sssd-ldap.5.xml:775 sssd-ldap.5.xml:887 -msgid "" -"The LDAP attribute that contains timestamp of the last modification of the " -"parent object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:338 sssd-ldap.5.xml:779 sssd-ldap.5.xml:894 -msgid "Default: modifyTimestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:344 -msgid "ldap_user_shadow_last_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:347 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (date of " -"the last password change)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:357 -msgid "Default: shadowLastChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:363 -msgid "ldap_user_shadow_min (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:366 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (minimum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:375 -msgid "Default: shadowMin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:381 -msgid "ldap_user_shadow_max (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:384 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (maximum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:393 -msgid "Default: shadowMax" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:399 -msgid "ldap_user_shadow_warning (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:402 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password warning period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:412 -msgid "Default: shadowWarning" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:418 -msgid "ldap_user_shadow_inactive (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:421 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password inactivity period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:431 -msgid "Default: shadowInactive" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:437 -msgid "ldap_user_shadow_expire (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:440 -msgid "" -"When using ldap_pwd_policy=shadow or ldap_account_expire_policy=shadow, this " -"parameter contains the name of an LDAP attribute corresponding to its " -"<citerefentry> <refentrytitle>shadow</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> counterpart (account expiration date)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:450 -msgid "Default: shadowExpire" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:456 -msgid "ldap_user_krb_last_pwd_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:459 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time of last password change in " -"kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:465 -msgid "Default: krbLastPwdChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:471 -msgid "ldap_user_krb_password_expiration (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:474 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time when current password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:480 -msgid "Default: krbPasswordExpiration" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:486 -msgid "ldap_user_ad_account_expires (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:489 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the expiration time of the account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:494 -msgid "Default: accountExpires" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:500 -msgid "ldap_user_ad_user_account_control (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:503 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the user account control bit field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:508 -msgid "Default: userAccountControl" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:514 -msgid "ldap_ns_account_lock (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:517 -msgid "" -"When using ldap_account_expire_policy=rhds or equivalent, this parameter " -"determines if access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:522 -msgid "Default: nsAccountLock" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:528 -msgid "ldap_user_nds_login_disabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:531 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines if " -"access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:535 sssd-ldap.5.xml:549 -msgid "Default: loginDisabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:541 -msgid "ldap_user_nds_login_expiration_time (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:544 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines until " -"which date access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:555 -msgid "ldap_user_nds_login_allowed_time_map (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:558 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines the " -"hours of a day in a week when access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:563 -msgid "Default: loginAllowedTimeMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:569 -msgid "ldap_user_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:572 -msgid "" -"The LDAP attribute that contains the user's Kerberos User Principal Name " -"(UPN)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:576 -msgid "Default: krbPrincipalName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:582 -msgid "ldap_user_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:585 -msgid "The LDAP attribute that contains the user's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:592 -msgid "ldap_force_upper_case_realm (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:595 -msgid "" -"Some directory servers, for example Active Directory, might deliver the " -"realm part of the UPN in lower case, which might cause the authentication to " -"fail. Set this option to a non-zero value if you want to use an upper-case " -"realm." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:608 -msgid "ldap_enumeration_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:611 -msgid "" -"Specifies how many seconds SSSD has to wait before refreshing its cache of " -"enumerated records." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:616 sssd-ldap.5.xml:1808 -msgid "Default: 300" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:622 -msgid "ldap_purge_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:625 -msgid "" -"Determine how often to check the cache for inactive entries (such as groups " -"with no members and users who have never logged in) and remove them to save " -"space." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:631 -msgid "Setting this option to zero will disable the cache cleanup operation." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:635 -msgid "Default: 10800 (12 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:641 -msgid "ldap_user_fullname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:644 -msgid "The LDAP attribute that corresponds to the user's full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:648 sssd-ldap.5.xml:727 sssd-ldap.5.xml:828 -#: sssd-ldap.5.xml:919 sssd-ldap.5.xml:1663 sssd-ldap.5.xml:1881 -#: sssd-ipa.5.xml:422 -msgid "Default: cn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:654 -msgid "ldap_user_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:657 -msgid "The LDAP attribute that lists the user's group memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:661 sssd-ipa.5.xml:326 -msgid "Default: memberOf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:667 -msgid "ldap_user_authorized_service (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:670 -msgid "" -"If access_provider=ldap and ldap_access_order=authorized_service, SSSD will " -"use the presence of the authorizedService attribute in the user's LDAP entry " -"to determine access privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:677 -msgid "" -"An explicit deny (!svc) is resolved first. Second, SSSD searches for " -"explicit allow (svc) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:682 -msgid "Default: authorizedService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:688 -msgid "ldap_user_authorized_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:691 -msgid "" -"If access_provider=ldap and ldap_access_order=host, SSSD will use the " -"presence of the host attribute in the user's LDAP entry to determine access " -"privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:697 -msgid "" -"An explicit deny (!host) is resolved first. Second, SSSD searches for " -"explicit allow (host) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:702 -msgid "Default: host" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:708 -msgid "ldap_group_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:711 -msgid "The object class of a group entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:714 -msgid "Default: posixGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:720 -msgid "ldap_group_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:723 -msgid "The LDAP attribute that corresponds to the group name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:733 -msgid "ldap_group_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:736 -msgid "The LDAP attribute that corresponds to the group's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:746 -msgid "ldap_group_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:749 -msgid "The LDAP attribute that contains the names of the group's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:753 -msgid "Default: memberuid (rfc2307) / member (rfc2307bis)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:759 -msgid "ldap_group_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:762 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP group object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:772 -msgid "ldap_group_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:785 -msgid "ldap_group_nesting_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:788 -msgid "" -"If ldap_schema is set to a schema format that supports nested groups (e.g. " -"RFC2307bis), then this option controls how many levels of nesting SSSD will " -"follow. This option has no effect on the RFC2307 schema." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:795 -msgid "Default: 2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:801 -msgid "ldap_netgroup_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:804 -msgid "The object class of a netgroup entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:807 -msgid "In IPA provider, ipa_netgroup_object_class should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:811 -msgid "Default: nisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:817 -msgid "ldap_netgroup_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:820 -msgid "The LDAP attribute that corresponds to the netgroup name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:824 -msgid "In IPA provider, ipa_netgroup_name should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:834 -msgid "ldap_netgroup_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:837 -msgid "The LDAP attribute that contains the names of the netgroup's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:841 -msgid "In IPA provider, ipa_netgroup_member should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:845 -msgid "Default: memberNisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:851 -msgid "ldap_netgroup_triple (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:854 -msgid "" -"The LDAP attribute that contains the (host, user, domain) netgroup triples." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:858 sssd-ldap.5.xml:891 -msgid "This option is not available in IPA provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:861 -msgid "Default: nisNetgroupTriple" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:867 -msgid "ldap_netgroup_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:870 -msgid "" -"The LDAP attribute that contains the UUID/GUID of an LDAP netgroup object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:874 -msgid "In IPA provider, ipa_netgroup_uuid should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:884 -msgid "ldap_netgroup_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:900 -msgid "ldap_service_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:903 -msgid "The object class of a service entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:906 -msgid "Default: ipService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:912 -msgid "ldap_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:915 -msgid "" -"The LDAP attribute that contains the name of service attributes and their " -"aliases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:925 -msgid "ldap_service_port (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:928 -msgid "The LDAP attribute that contains the port managed by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:932 -msgid "Default: ipServicePort" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:938 -msgid "ldap_service_proto (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:941 -msgid "" -"The LDAP attribute that contains the protocols understood by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:945 -msgid "Default: ipServiceProtocol" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:951 -msgid "ldap_service_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:954 -msgid "An optional base DN to restrict service searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:958 sssd-ldap.5.xml:1918 sssd-ldap.5.xml:1937 -#: sssd-ldap.5.xml:1956 sssd-ldap.5.xml:2019 sssd-ldap.5.xml:2041 -#: sssd-ipa.5.xml:163 sssd-ipa.5.xml:187 -msgid "" -"See <quote>ldap_search_base</quote> for information about configuring " -"multiple search bases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:963 sssd-ldap.5.xml:1923 sssd-ldap.5.xml:1942 -#: sssd-ldap.5.xml:1961 sssd-ldap.5.xml:2024 sssd-ldap.5.xml:2046 -#: sssd-ipa.5.xml:173 sssd-ipa.5.xml:192 -msgid "Default: the value of <emphasis>ldap_search_base</emphasis>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:970 -msgid "ldap_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:973 -msgid "" -"Specifies the timeout (in seconds) that ldap searches are allowed to run " -"before they are cancelled and cached results are returned (and offline mode " -"is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:979 -msgid "" -"Note: this option is subject to change in future versions of the SSSD. It " -"will likely be replaced at some point by a series of timeouts for specific " -"lookup types." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:985 sssd-ldap.5.xml:1027 sssd-ldap.5.xml:1042 -msgid "Default: 6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:991 -msgid "ldap_enumeration_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:994 -msgid "" -"Specifies the timeout (in seconds) that ldap searches for user and group " -"enumerations are allowed to run before they are cancelled and cached results " -"are returned (and offline mode is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1001 -msgid "Default: 60" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1007 -msgid "ldap_network_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1010 -msgid "" -"Specifies the timeout (in seconds) after which the <citerefentry> " -"<refentrytitle>poll</refentrytitle> <manvolnum>2</manvolnum> </citerefentry>/" -"<citerefentry> <refentrytitle>select</refentrytitle> <manvolnum>2</" -"manvolnum> </citerefentry> following a <citerefentry> " -"<refentrytitle>connect</refentrytitle> <manvolnum>2</manvolnum> </" -"citerefentry> returns in case of no activity." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1033 -msgid "ldap_opt_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1036 -msgid "" -"Specifies a timeout (in seconds) after which calls to synchronous LDAP APIs " -"will abort if no response is received. Also controls the timeout when " -"communicating with the KDC in case of SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1048 -msgid "ldap_connection_expire_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1051 -msgid "" -"Specifies a timeout (in seconds) that a connection to an LDAP server will be " -"maintained. After this time, the connection will be re-established. If used " -"in parallel with SASL/GSSAPI, the sooner of the two values (this value vs. " -"the TGT lifetime) will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1059 -msgid "Default: 900 (15 minutes)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1065 -msgid "ldap_page_size (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1068 -msgid "" -"Specify the number of records to retrieve from LDAP in a single request. " -"Some LDAP servers enforce a maximum limit per-request." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1073 -msgid "Default: 1000" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1079 -msgid "ldap_disable_paging" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1082 -msgid "" -"Disable the LDAP paging control. This option should be used if the LDAP " -"server reports that it supports the LDAP paging control in its RootDSE but " -"it is not enabled or does not behave properly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1088 -msgid "" -"Example: OpenLDAP servers with the paging control module installed on the " -"server but not enabled will report it in the RootDSE but be unable to use it." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1094 -msgid "" -"Example: 389 DS has a bug where it can only support a one paging control at " -"a time on a single connection. On busy clients, this can result in some " -"requests being denied." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1103 -msgid "ldap_deref_threshold (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1106 -msgid "" -"Specify the number of group members that must be missing from the internal " -"cache in order to trigger a dereference lookup. If less members are missing, " -"they are looked up individually." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1112 -msgid "" -"You can turn off dereference lookups completely by setting the value to 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1116 -msgid "" -"A dereference lookup is a means of fetching all group members in a single " -"LDAP call. Different LDAP servers may implement different dereference " -"methods. The currently supported servers are 389/RHDS, OpenLDAP and Active " -"Directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1124 -msgid "" -"<emphasis>Note:</emphasis> If any of the search bases specifies a search " -"filter, then the dereference lookup performance enhancement will be disabled " -"regardless of this setting." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1137 -msgid "ldap_tls_reqcert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1140 -msgid "" -"Specifies what checks to perform on server certificates in a TLS session, if " -"any. It can be specified as one of the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1146 -msgid "" -"<emphasis>never</emphasis> = The client will not request or check any server " -"certificate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1150 -msgid "" -"<emphasis>allow</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, it will be ignored and the session proceeds normally." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1157 -msgid "" -"<emphasis>try</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, the session is immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1163 -msgid "" -"<emphasis>demand</emphasis> = The server certificate is requested. If no " -"certificate is provided, or a bad certificate is provided, the session is " -"immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1169 -msgid "<emphasis>hard</emphasis> = Same as <quote>demand</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1173 -msgid "Default: hard" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1179 -msgid "ldap_tls_cacert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1182 -msgid "" -"Specifies the file that contains certificates for all of the Certificate " -"Authorities that <command>sssd</command> will recognize." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1187 sssd-ldap.5.xml:1205 sssd-ldap.5.xml:1246 -msgid "" -"Default: use OpenLDAP defaults, typically in <filename>/etc/openldap/ldap." -"conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1194 -msgid "ldap_tls_cacertdir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1197 -msgid "" -"Specifies the path of a directory that contains Certificate Authority " -"certificates in separate individual files. Typically the file names need to " -"be the hash of the certificate followed by '.0'. If available, " -"<command>cacertdir_rehash</command> can be used to create the correct names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1212 -msgid "ldap_tls_cert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1215 -msgid "Specifies the file that contains the certificate for the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1219 sssd-ldap.5.xml:1231 sssd-ldap.5.xml:1979 -#: sssd-ldap.5.xml:2006 sssd-krb5.5.xml:359 -msgid "Default: not set" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1225 -msgid "ldap_tls_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1228 -msgid "Specifies the file that contains the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1237 -msgid "ldap_tls_cipher_suite (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1240 -msgid "" -"Specifies acceptable cipher suites. Typically this is a colon sperated " -"list. See <citerefentry><refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> for format." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1253 -msgid "ldap_id_use_start_tls (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1256 -msgid "" -"Specifies that the id_provider connection must also use <systemitem class=" -"\"protocol\">tls</systemitem> to protect the channel." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1266 -msgid "ldap_sasl_mech (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1269 -msgid "" -"Specify the SASL mechanism to use. Currently only GSSAPI is tested and " -"supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1273 sssd-ldap.5.xml:1428 -msgid "Default: none" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1279 -msgid "ldap_sasl_authid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1282 -msgid "" -"Specify the SASL authorization id to use. When GSSAPI is used, this " -"represents the Kerberos principal used for authentication to the directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1287 -msgid "Default: host/machine.fqdn@REALM" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1293 -msgid "ldap_sasl_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1296 -msgid "" -"If set to true, the LDAP library would perform a reverse lookup to " -"canonicalize the host name during a SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1301 -msgid "Default: false;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1307 -msgid "ldap_krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1310 -msgid "Specify the keytab to use when using SASL/GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1313 -msgid "Default: System keytab, normally <filename>/etc/krb5.keytab</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1319 -msgid "ldap_krb5_init_creds (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1322 -msgid "" -"Specifies that the id_provider should init Kerberos credentials (TGT). This " -"action is performed only if SASL is used and the mechanism selected is " -"GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1334 -msgid "ldap_krb5_ticket_lifetime (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1337 -msgid "Specifies the lifetime in seconds of the TGT if GSSAPI is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1341 -msgid "Default: 86400 (24 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1347 sssd-krb5.5.xml:74 -msgid "krb5_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1350 sssd-krb5.5.xml:77 -msgid "" -"Specifies the comma-separated list of IP addresses or hostnames of the " -"Kerberos servers to which SSSD should connect in the order of preference. " -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. An optional port number (preceded by a " -"colon) may be appended to the addresses or hostnames. If empty, service " -"discovery is enabled - for more information, refer to the <quote>SERVICE " -"DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1362 sssd-krb5.5.xml:89 -msgid "" -"When using service discovery for KDC or kpasswd servers, SSSD first searches " -"for DNS entries that specify _udp as the protocol and falls back to _tcp if " -"none are found." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1367 sssd-krb5.5.xml:94 -msgid "" -"This option was named <quote>krb5_kdcip</quote> in earlier releases of SSSD. " -"While the legacy name is recognized for the time being, users are advised to " -"migrate their config files to use <quote>krb5_server</quote> instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1376 sssd-ipa.5.xml:216 sssd-krb5.5.xml:103 -msgid "krb5_realm (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1379 -msgid "Specify the Kerberos REALM (for SASL/GSSAPI auth)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1382 -msgid "Default: System defaults, see <filename>/etc/krb5.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1388 sssd-ipa.5.xml:231 sssd-krb5.5.xml:409 -msgid "krb5_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1391 -msgid "" -"Specifies if the host principal should be canonicalized when connecting to " -"LDAP server. This feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1403 -msgid "ldap_pwd_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1406 -msgid "" -"Select the policy to evaluate the password expiration on the client side. " -"The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1411 -msgid "" -"<emphasis>none</emphasis> - No evaluation on the client side. This option " -"cannot disable server-side password policies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1416 -msgid "" -"<emphasis>shadow</emphasis> - Use <citerefentry><refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum></citerefentry> style attributes to " -"evaluate if the password has expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1422 -msgid "" -"<emphasis>mit_kerberos</emphasis> - Use the attributes used by MIT Kerberos " -"to determine if the password has expired. Use chpass_provider=krb5 to update " -"these attributes when the password is changed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1434 -msgid "ldap_referrals (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1437 -msgid "Specifies whether automatic referral chasing should be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1441 -msgid "" -"Please note that sssd only supports referral chasing when it is compiled " -"with OpenLDAP version 2.4.13 or higher." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1452 -msgid "ldap_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1455 -msgid "Specifies the service name to use when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1459 -msgid "Default: ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1465 -msgid "ldap_chpass_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1468 -msgid "" -"Specifies the service name to use to find an LDAP server which allows " -"password changes when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1473 -msgid "Default: not set, i.e. service discovery is disabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1479 -msgid "ldap_access_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1482 -msgid "" -"If using access_provider = ldap, this option is mandatory. It specifies an " -"LDAP search filter criteria that must be met for the user to be granted " -"access on this host. If access_provider = ldap and this option is not set, " -"it will result in all users being denied access. Use access_provider = allow " -"to change this default behavior." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1492 sssd-ldap.5.xml:1982 -msgid "Example:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1495 -#, no-wrap -msgid "" -"access_provider = ldap\n" -"ldap_access_filter = memberOf=cn=allowedusers,ou=Groups,dc=example,dc=com\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1499 -msgid "" -"This example means that access to this host is restricted to members of the " -"\"allowedusers\" group in ldap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1504 -msgid "" -"Offline caching for this feature is limited to determining whether the " -"user's last online login was granted access permission. If they were granted " -"access during their last login, they will continue to be granted access " -"while offline and vice-versa." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1512 sssd-ldap.5.xml:1562 -msgid "Default: Empty" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1518 -msgid "ldap_account_expire_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1521 -msgid "" -"With this option a client side evaluation of access control attributes can " -"be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1525 -msgid "" -"Please note that it is always recommended to use server side access control, " -"i.e. the LDAP server should deny the bind request with a suitable error code " -"even if the password is correct." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1532 -msgid "The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1535 -msgid "" -"<emphasis>shadow</emphasis>: use the value of ldap_user_shadow_expire to " -"determine if the account is expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1540 -msgid "" -"<emphasis>ad</emphasis>: use the value of the 32bit field " -"ldap_user_ad_user_account_control and allow access if the second bit is not " -"set. If the attribute is missing access is granted. Also the expiration time " -"of the account is checked." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1547 -msgid "" -"<emphasis>rhds</emphasis>, <emphasis>ipa</emphasis>, <emphasis>389ds</" -"emphasis>: use the value of ldap_ns_account_lock to check if access is " -"allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1553 -msgid "" -"<emphasis>nds</emphasis>: the values of " -"ldap_user_nds_login_allowed_time_map, ldap_user_nds_login_disabled and " -"ldap_user_nds_login_expiration_time are used to check if access is allowed. " -"If both attributes are missing access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1568 -msgid "ldap_access_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1571 -msgid "Comma separated list of access control options. Allowed values are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1575 -msgid "<emphasis>filter</emphasis>: use ldap_access_filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1578 -msgid "<emphasis>expire</emphasis>: use ldap_account_expire_policy" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1582 -msgid "" -"<emphasis>authorized_service</emphasis>: use the authorizedService attribute " -"to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1587 -msgid "<emphasis>host</emphasis>: use the host attribute to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1591 -msgid "Default: filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1594 -msgid "" -"Please note that it is a configuration error if a value is used more than " -"once." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1601 -msgid "ldap_deref (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1604 -msgid "" -"Specifies how alias dereferencing is done when performing a search. The " -"following options are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1609 -msgid "<emphasis>never</emphasis>: Aliases are never dereferenced." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1613 -msgid "" -"<emphasis>searching</emphasis>: Aliases are dereferenced in subordinates of " -"the base object, but not in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1618 -msgid "" -"<emphasis>finding</emphasis>: Aliases are only dereferenced when locating " -"the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1623 -msgid "" -"<emphasis>always</emphasis>: Aliases are dereferenced both in searching and " -"in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1628 -msgid "" -"Default: Empty (this is handled as <emphasis>never</emphasis> by the LDAP " -"client libraries)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:51 -msgid "" -"All of the common configuration options that apply to SSSD domains also " -"apply to LDAP domains. Refer to the <quote>DOMAIN SECTIONS</quote> section " -"of the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for full details. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1639 -msgid "SUDO OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1644 -msgid "ldap_sudorule_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1647 -msgid "The object class of a sudo rule entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1650 -msgid "Default: sudoRole" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1656 -msgid "ldap_sudorule_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1659 -msgid "The LDAP attribute that corresponds to the sudo rule name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1669 -msgid "ldap_sudorule_command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1672 -msgid "The LDAP attribute that corresponds to the command name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1676 -msgid "Default: sudoCommand" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1682 -msgid "ldap_sudorule_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1685 -msgid "" -"The LDAP attribute that corresponds to the host name (or host IP address, " -"host IP network, or host netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1690 -msgid "Default: sudoHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1696 -msgid "ldap_sudorule_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1699 -msgid "" -"The LDAP attribute that corresponds to the user name (or UID, group name or " -"user's netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1703 -msgid "Default: sudoUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1709 -msgid "ldap_sudorule_option (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1712 -msgid "The LDAP attribute that corresponds to the sudo options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1716 -msgid "Default: sudoOption" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1722 -msgid "ldap_sudorule_runasuser (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1725 -msgid "" -"The LDAP attribute that corresponds to the user name that commands may be " -"run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1729 -msgid "Default: sudoRunAsUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1735 -msgid "ldap_sudorule_runasgroup (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1738 -msgid "" -"The LDAP attribute that corresponds to the group name or group GID that " -"commands may be run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1742 -msgid "Default: sudoRunAsGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1748 -msgid "ldap_sudorule_notbefore (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1751 -msgid "" -"The LDAP attribute that corresponds to the start date/time for when the sudo " -"rule is valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1755 -msgid "Default: sudoNotBefore" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1761 -msgid "ldap_sudorule_notafter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1764 -msgid "" -"The LDAP attribute that corresponds to the expiration date/time, after which " -"the sudo rule will no longer be valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1769 -msgid "Default: sudoNotAfter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1775 -msgid "ldap_sudorule_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1778 -msgid "The LDAP attribute that corresponds to the ordering index of the rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1782 -msgid "Default: sudoOrder" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1788 -msgid "ldap_sudo_refresh_enabled (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1791 -msgid "" -"Enables periodical download of all sudo rules. The cache is purged before " -"each update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1801 -msgid "ldap_sudo_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1804 -msgid "" -"How many seconds SSSD has to wait before refreshing its cache of sudo rules." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1642 -msgid "<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1815 -msgid "" -"This manual page only describes attribute name mapping. For detailed " -"explanation of sudo related attribute semantics, see <citerefentry> " -"<refentrytitle>sudoers.ldap</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1825 -msgid "AUTOFS OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1827 -msgid "" -"Please note that the default values correspond to the default schema which " -"is RFC2307." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1834 -msgid "ldap_autofs_map_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1837 sssd-ldap.5.xml:1863 -msgid "The object class of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1840 sssd-ldap.5.xml:1867 -msgid "Default: automountMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1847 -msgid "ldap_autofs_map_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1850 -msgid "The name of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1853 -msgid "Default: ou" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1860 -msgid "ldap_autofs_entry_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1874 -msgid "ldap_autofs_entry_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1877 sssd-ldap.5.xml:1891 -msgid "" -"The key of an automount entry in LDAP. The entry usually corresponds to a " -"mount point." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1888 -msgid "ldap_autofs_entry_value (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1895 -msgid "Default: automountInformation" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1832 -msgid "" -"<placeholder type=\"variablelist\" id=\"0\"/> <placeholder type=" -"\"variablelist\" id=\"1\"/> <placeholder type=\"variablelist\" id=\"2\"/> " -"<placeholder type=\"variablelist\" id=\"3\"/> <placeholder type=" -"\"variablelist\" id=\"4\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1904 -msgid "ADVANCED OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1911 -msgid "ldap_netgroup_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1914 -msgid "" -"An optional base DN to restrict netgroup searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1930 -msgid "ldap_user_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1933 -msgid "An optional base DN to restrict user searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1949 -msgid "ldap_group_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1952 -msgid "An optional base DN to restrict group searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1968 -msgid "ldap_user_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1971 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict user searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1975 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_user_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1985 -#, no-wrap -msgid "" -" ldap_user_search_filter = (loginShell=/bin/tcsh)\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1988 -msgid "" -"This filter would restrict user searches to users that have their shell set " -"to /bin/tcsh." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1995 -msgid "ldap_group_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1998 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict group searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2002 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_group_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2012 -msgid "ldap_sudo_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2015 -msgid "" -"An optional base DN to restrict sudo rules searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2034 -msgid "ldap_autofs_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2037 -msgid "" -"An optional base DN to restrict automounter searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1906 -msgid "" -"These options are supported by LDAP domains, but they should be used with " -"caution. Please include them in your configuration only if you know what you " -"are doing. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2066 -msgid "" -"The following example assumes that SSSD is correctly configured and LDAP is " -"set to one of the domains in the <replaceable>[domains]</replaceable> " -"section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ldap.5.xml:2072 -#, no-wrap -msgid "" -" [domain/LDAP]\n" -" id_provider = ldap\n" -" auth_provider = ldap\n" -" ldap_uri = ldap://ldap.mydomain.org\n" -" ldap_search_base = dc=mydomain,dc=org\n" -" ldap_tls_reqcert = demand\n" -" cache_credentials = true\n" -" enumerate = true\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2071 sssd-simple.5.xml:134 sssd-ipa.5.xml:552 -#: sssd-krb5.5.xml:441 -msgid "<placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:2085 sssd_krb5_locator_plugin.8.xml:61 -msgid "NOTES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2087 -msgid "" -"The descriptions of some of the configuration options in this manual page " -"are based on the <citerefentry> <refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page from the OpenLDAP 2.4 " -"distribution." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2098 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <refentryinfo> -#: pam_sss.8.xml:8 include/upstream.xml:2 -msgid "" -"<productname>SSSD</productname> <orgname>The SSSD upstream - http://" -"fedorahosted.org/sssd</orgname>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: pam_sss.8.xml:13 pam_sss.8.xml:18 -msgid "pam_sss" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: pam_sss.8.xml:19 -msgid "PAM module for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: pam_sss.8.xml:24 -msgid "" -"<command>pam_sss.so</command> <arg choice='opt'> <replaceable>quiet</" -"replaceable> </arg> <arg choice='opt'> <replaceable>forward_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_first_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_authtok</" -"replaceable> </arg> <arg choice='opt'> <replaceable>retry=N</replaceable> </" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:45 -msgid "" -"<command>pam_sss.so</command> is the PAM interface to the System Security " -"Services daemon (SSSD). Errors and results are logged through <command>syslog" -"(3)</command> with the LOG_AUTHPRIV facility." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:55 -msgid "<option>quiet</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:58 -msgid "Suppress log messages for unknown users." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:63 -msgid "<option>forward_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:66 -msgid "" -"If <option>forward_pass</option> is set the entered password is put on the " -"stack for other PAM modules to use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:73 -msgid "<option>use_first_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:76 -msgid "" -"The argument use_first_pass forces the module to use a previous stacked " -"modules password and will never prompt the user - if no password is " -"available or the password is not appropriate, the user will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:84 -msgid "<option>use_authtok</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:87 -msgid "" -"When password changing enforce the module to set the new password to the one " -"provided by a previously stacked password module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:94 -msgid "<option>retry=N</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:97 -msgid "" -"If specified the user is asked another N times for a password if " -"authentication fails. Default is 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:99 -msgid "" -"Please note that this option might not work as expected if the application " -"calling PAM handles the user dialog on its own. A typical example is " -"<command>sshd</command> with <option>PasswordAuthentication</option>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:110 -msgid "MODULE TYPES PROVIDED" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:111 -msgid "" -"All module types (<option>account</option>, <option>auth</option>, " -"<option>password</option> and <option>session</option>) are provided." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:117 -msgid "FILES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:118 -msgid "" -"If a password reset by root fails, because the corresponding SSSD provider " -"does not support password resets, an individual message can be displayed. " -"This message can e.g. contain instructions about how to reset a password." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:123 -msgid "" -"The message is read from the file <filename>pam_sss_pw_reset_message.LOC</" -"filename> where LOC stands for a locale string returned by <citerefentry> " -"<refentrytitle>setlocale</refentrytitle><manvolnum>3</manvolnum> </" -"citerefentry>. If there is no matching file the content of " -"<filename>pam_sss_pw_reset_message.txt</filename> is displayed. Root must be " -"the owner of the files and only root may have read and write permissions " -"while all other users must have only read permissions." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:133 -msgid "" -"These files are searched in the directory <filename>/etc/sssd/customize/" -"DOMAIN_NAME/</filename>. If no matching file is present a generic message is " -"displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:141 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd_krb5_locator_plugin.8.xml:10 sssd_krb5_locator_plugin.8.xml:15 -msgid "sssd_krb5_locator_plugin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:22 -msgid "" -"The Kerberos locator plugin <command>sssd_krb5_locator_plugin</command> is " -"used by the Kerberos provider of <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry> to tell the Kerberos " -"libraries what Realm and which KDC to use. Typically this is done in " -"<citerefentry> <refentrytitle>krb5.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> which is always read by the Kerberos libraries. " -"To simplify the configuration the Realm and the KDC can be defined in " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> as described in <citerefentry> " -"<refentrytitle>sssd-krb5.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry> puts the Realm and the name or IP address of the KDC into " -"the environment variables SSSD_KRB5_REALM and SSSD_KRB5_KDC respectively. " -"When <command>sssd_krb5_locator_plugin</command> is called by the kerberos " -"libraries it reads and evaluates these variables and returns them to the " -"libraries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:63 -msgid "" -"Not all Kerberos implementations support the use of plugins. If " -"<command>sssd_krb5_locator_plugin</command> is not available on your system " -"you have to edit /etc/krb5.conf to reflect your Kerberos setup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:69 -msgid "" -"If the environment variable SSSD_KRB5_LOCATOR_DEBUG is set to any value " -"debug messages will be sent to stderr." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:77 -msgid "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-simple.5.xml:10 sssd-simple.5.xml:16 -msgid "sssd-simple" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd-simple.5.xml:17 -msgid "the configuration file for SSSD's 'simple' access-control provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:24 -msgid "" -"This manual page describes the configuration of the simple access-control " -"provider for <citerefentry> <refentrytitle>sssd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry>. For a detailed syntax reference, " -"refer to the <quote>FILE FORMAT</quote> section of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:38 -msgid "" -"The simple access provider grants or denies access based on an access or " -"deny list of user or group names. The following rules apply:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:43 -msgid "If all lists are empty, access is granted" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:47 -msgid "" -"If any list is provided, the order of evaluation is allow,deny. This means " -"that any matching deny rule will supersede any matched allow rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:54 -msgid "" -"If either or both \"allow\" lists are provided, all users are denied unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:60 -msgid "" -"If only \"deny\" lists are provided, all users are granted access unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:78 -msgid "simple_allow_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:81 -msgid "Comma separated list of users who are allowed to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:88 -msgid "simple_deny_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:91 -msgid "Comma separated list of users who are explicitly denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:97 -msgid "simple_allow_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:100 -msgid "" -"Comma separated list of groups that are allowed to log in. This applies only " -"to groups within this SSSD domain. Local groups are not evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:108 -msgid "simple_deny_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:111 -msgid "" -"Comma separated list of groups that are explicitly denied access. This " -"applies only to groups within this SSSD domain. Local groups are not " -"evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:70 sssd-ipa.5.xml:65 -msgid "" -"Refer to the section <quote>DOMAIN SECTIONS</quote> of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page for details on the configuration of an SSSD " -"domain. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:120 -msgid "" -"Please note that it is an configuration error if both, simple_allow_users " -"and simple_deny_users, are defined." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:128 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the simple access provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-simple.5.xml:135 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" access_provider = simple\n" -" simple_allow_users = user1, user2\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:145 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ipa.5.xml:10 sssd-ipa.5.xml:16 -msgid "sssd-ipa" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:23 -msgid "" -"This manual page describes the configuration of the IPA provider for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. For a detailed syntax reference, refer to the <quote>FILE " -"FORMAT</quote> section of the <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:36 -msgid "" -"The IPA provider is a back end used to connect to an IPA server. (Refer to " -"the freeipa.org web site for information about IPA servers.) This provider " -"requires that the machine be joined to the IPA domain; configuration is " -"almost entirely self-discovered and obtained directly from the server." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:43 -msgid "" -"The IPA provider accepts the same options used by the <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> identity provider and the <citerefentry> <refentrytitle>sssd-" -"krb5</refentrytitle> <manvolnum>5</manvolnum> </citerefentry> authentication " -"provider with some exceptions described below." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:55 -msgid "" -"However, it is neither necessary nor recommended to set these options. IPA " -"provider can also be used as an access and chpass provider. As an access " -"provider it uses HBAC (host-based access control) rules. Please refer to " -"freeipa.org for more information about HBAC. No configuration of access " -"provider is required on the client side." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:72 -msgid "ipa_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:75 -msgid "" -"Specifies the name of the IPA domain. This is optional. If not provided, " -"the configuration domain name is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:83 -msgid "ipa_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:86 -msgid "" -"The comma-separated list of IP addresses or hostnames of the IPA servers to " -"which SSSD should connect in the order of preference. For more information " -"on failover and server redundancy, see the <quote>FAILOVER</quote> section. " -"This is optional if autodiscovery is enabled. For more information on " -"service discovery, refer to the the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:99 -msgid "ipa_hostname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:102 -msgid "" -"Optional. May be set on machines where the hostname(5) does not reflect the " -"fully qualified name used in the IPA domain to identify this host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:110 -msgid "ipa_dyndns_update (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:113 -msgid "" -"Optional. This option tells SSSD to automatically update the DNS server " -"built into FreeIPA v2 with the IP address of this client." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:118 -msgid "" -"NOTE: On older systems (such as RHEL 5), for this behavior to work reliably, " -"the default Kerberos realm must be set properly in /etc/krb5.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:129 -msgid "ipa_dyndns_iface (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:132 -msgid "" -"Optional. Applicable only when ipa_dyndns_update is true. Choose the " -"interface whose IP address should be used for dynamic DNS updates." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:137 -msgid "Default: Use the IP address of the IPA LDAP connection" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:143 -msgid "ipa_hbac_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:146 -msgid "Optional. Use the given string as search base for HBAC related objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:150 -msgid "Default: Use base DN" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:156 -msgid "ipa_host_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:159 -msgid "Optional. Use the given string as search base for host objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:168 -msgid "" -"If filter is given in any of search bases and " -"<emphasis>ipa_hbac_support_srchost</emphasis> is set to False, the filter " -"will be ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:180 -msgid "ipa_selinux_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:183 -msgid "Optional. Use the given string as search base for SELinux user maps." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:199 sssd-krb5.5.xml:229 -msgid "krb5_validate (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:202 sssd-krb5.5.xml:232 -msgid "" -"Verify with the help of krb5_keytab that the TGT obtained has not been " -"spoofed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:209 -msgid "" -"Note that this default differs from the traditional Kerberos provider back " -"end." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:219 -msgid "" -"The name of the Kerberos realm. This is optional and defaults to the value " -"of <quote>ipa_domain</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:223 -msgid "" -"The name of the Kerberos realm has a special meaning in IPA - it is " -"converted into the base DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:234 -msgid "" -"Specifies if the host and user principal should be canonicalized when " -"connecting to IPA LDAP and also for AS requests. This feature is available " -"with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:247 -msgid "ipa_hbac_refresh (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:250 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server. " -"This will reduce the latency and load on the IPA server if there are many " -"access-control requests made in a short period." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:257 -msgid "Default: 5 (seconds)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:262 -msgid "ipa_hbac_treat_deny_as (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:265 -msgid "" -"This option specifies how to treat the deprecated DENY-type HBAC rules. As " -"of FreeIPA v2.1, DENY rules are no longer supported on the server. All users " -"of FreeIPA will need to migrate their rules to use only the ALLOW rules. The " -"client will support two modes of operation during this transition period:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:274 -msgid "" -"<emphasis>DENY_ALL</emphasis>: If any HBAC DENY rules are detected, all " -"users will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:279 -msgid "" -"<emphasis>IGNORE</emphasis>: SSSD will ignore any DENY rules. Be very " -"careful with this option, as it may result in opening unintended access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:284 -msgid "Default: DENY_ALL" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:289 -msgid "ipa_hbac_support_srchost (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:292 -msgid "" -"If this is set to false, then srchost as given to SSSD by PAM will be " -"ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:296 -msgid "" -"Note that if set to <emphasis>False</emphasis>, this option casuses filters " -"given in <emphasis>ipa_host_search_base</emphasis> to be ignored;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:307 -msgid "ipa_automount_location (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:310 -msgid "The automounter location this IPA client will be using" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:313 -msgid "Default: The location named \"default\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:319 -msgid "ipa_netgroup_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:322 -msgid "The LDAP attribute that lists netgroup's memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:331 -msgid "ipa_netgroup_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:334 -msgid "" -"The LDAP attribute that lists system users and groups that are direct " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:339 sssd-ipa.5.xml:434 -msgid "Default: memberUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:344 -msgid "ipa_netgroup_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:347 -msgid "" -"The LDAP attribute that lists hosts and host groups that are direct members " -"of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:351 sssd-ipa.5.xml:446 -msgid "Default: memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:356 -msgid "ipa_netgroup_member_ext_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:359 -msgid "" -"The LDAP attribute that lists FQDNs of hosts and host groups that are " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:363 -msgid "Default: externalHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:368 -msgid "ipa_netgroup_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:371 -msgid "The LDAP attribute that contains NIS domain name of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:375 -msgid "Default: nisDomainName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:381 -msgid "ipa_host_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:384 sssd-ipa.5.xml:407 -msgid "The object class of a host entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:387 sssd-ipa.5.xml:410 -msgid "Default: ipaHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:392 -msgid "ipa_host_fqdn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:395 -msgid "The LDAP attribute that contains FQDN of the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:398 -msgid "Default: fqdn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:404 -msgid "ipa_selinux_usermap_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:415 -msgid "ipa_selinux_usermap_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:418 -msgid "The LDAP attribute that contains the name of SELinux usermap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:427 -msgid "ipa_selinux_usermap_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:430 -msgid "" -"The LDAP attribute that contains all users / groups this rule match against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:439 -msgid "ipa_selinux_usermap_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:442 -msgid "" -"The LDAP attribute that contains all hosts / hostgroups this rule match " -"against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:451 -msgid "ipa_selinux_usermap_see_also (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:454 -msgid "" -"The LDAP attribute that contains DN of HBAC rule which can be used for " -"matching instead of memberUser and memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:459 -msgid "Default: seeAlso" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:464 -msgid "ipa_selinux_usermap_selinux_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:467 -msgid "The LDAP attribute that contains SELinux user string itself." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:471 -msgid "Default: ipaSELinuxUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:476 -msgid "ipa_selinux_usermap_enabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:479 -msgid "" -"The LDAP attribute that contains whether or not is user map enabled for " -"usage." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:483 -msgid "Default: ipaEnabledFlag" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:488 -msgid "ipa_selinux_usermap_user_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:491 -msgid "The LDAP attribute that contains user category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:495 -msgid "Default: userCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:500 -msgid "ipa_selinux_usermap_host_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:503 -msgid "The LDAP attribute that contains host category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:507 -msgid "Default: hostCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:512 -msgid "ipa_selinux_usermap_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:515 -msgid "The LDAP attribute that contains unique ID of the user map." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:519 -msgid "Default: ipaUniqueID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:524 -msgid "ipa_host_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:527 -msgid "The LDAP attribute that contains the host's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:531 -msgid "Default: ipaSshPubKey" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:546 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the ipa provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ipa.5.xml:553 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" id_provider = ipa\n" -" ipa_server = ipaserver.example.com\n" -" ipa_hostname = myhost.example.com\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:564 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.8.xml:10 sssd.8.xml:15 -msgid "sssd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.8.xml:16 -msgid "System Security Services Daemon" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sssd.8.xml:21 -msgid "" -"<command>sssd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:31 -msgid "" -"<command>SSSD</command> provides a set of daemons to manage access to remote " -"directories and authentication mechanisms. It provides an NSS and PAM " -"interface toward the system and a pluggable backend system to connect to " -"multiple different account sources as well as D-Bus interface. It is also " -"the basis to provide client auditing and policy services for projects like " -"FreeIPA. It provides a more robust database to store local users as well as " -"extended user data." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:46 -msgid "" -"<option>-d</option>,<option>--debug-level</option> <replaceable>LEVEL</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:53 -msgid "<option>--debug-timestamps=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:57 -msgid "<emphasis>1</emphasis>: Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:60 -msgid "<emphasis>0</emphasis>: Disable timestamp in the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:69 -msgid "<option>--debug-microseconds=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:73 -msgid "" -"<emphasis>1</emphasis>: Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:76 -msgid "<emphasis>0</emphasis>: Disable microseconds in timestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:79 -msgid "Default: 0" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:85 -msgid "<option>-f</option>,<option>--debug-to-files</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:89 -msgid "" -"Send the debug output to files instead of stderr. By default, the log files " -"are stored in <filename>/var/log/sssd</filename> and there are separate log " -"files for every SSSD service and domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:97 -msgid "<option>-D</option>,<option>--daemon</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:101 -msgid "Become a daemon after starting up." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:107 -msgid "<option>-i</option>,<option>--interactive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:111 -msgid "Run in the foreground, don't become a daemon." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:117 sss_debuglevel.8.xml:42 -msgid "<option>-c</option>,<option>--config</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:121 sss_debuglevel.8.xml:46 -msgid "" -"Specify a non-default config file. The default is <filename>/etc/sssd/sssd." -"conf</filename>. For reference on the config file syntax and options, " -"consult the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:135 -msgid "<option>--version</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:139 -msgid "Print version number and exit." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.8.xml:147 -msgid "Signals" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:150 -msgid "SIGTERM/SIGINT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:153 -msgid "" -"Informs the SSSD to gracefully terminate all of its child processes and then " -"shut down the monitor." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:159 -msgid "SIGHUP" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:162 -msgid "" -"Tells the SSSD to stop writing to its current debug file descriptors and to " -"close and reopen them. This is meant to facilitate log rolling with programs " -"like logrotate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:170 -msgid "SIGUSR1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:173 -msgid "" -"Tells the SSSD to simulate offline operation for one minute. This is mostly " -"useful for testing purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:179 -msgid "SIGUSR2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:182 -msgid "" -"Tells the SSSD to go online immediately. This is mostly useful for testing " -"purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:193 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_obfuscate.8.xml:10 sss_obfuscate.8.xml:15 -msgid "sss_obfuscate" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_obfuscate.8.xml:16 -msgid "obfuscate a clear text password" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_obfuscate.8.xml:21 -msgid "" -"<command>sss_obfuscate</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>[PASSWORD]</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:32 -msgid "" -"<command>sss_obfuscate</command> converts a given password into human-" -"unreadable format and places it into appropriate domain section of the SSSD " -"config file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:37 -msgid "" -"The cleartext password is read from standard input or entered " -"interactively. The obfuscated password is put into " -"<quote>ldap_default_authtok</quote> parameter of a given SSSD domain and the " -"<quote>ldap_default_authtok_type</quote> parameter is set to " -"<quote>obfuscated_password</quote>. Refer to <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more details on these parameters." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:49 -msgid "" -"Please note that obfuscating the password provides <emphasis>no real " -"security benefit</emphasis> as it is still possible for an attacker to " -"reverse-engineer the password back. Using better authentication mechanisms " -"such as client side certificates or GSSAPI is <emphasis>strongly</emphasis> " -"advised." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:63 -msgid "<option>-s</option>,<option>--stdin</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:67 -msgid "The password to obfuscate will be read from standard input." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:74 sss_ssh_authorizedkeys.1.xml:82 -#: sss_ssh_knownhostsproxy.1.xml:81 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>DOMAIN</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:79 -msgid "" -"The SSSD domain to use the password in. The default name is <quote>default</" -"quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:86 -msgid "" -"<option>-f</option>,<option>--file</option> <replaceable>FILE</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:91 -msgid "Read the config file specified by the positional parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:95 -msgid "Default: <filename>/etc/sssd/sssd.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:105 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_useradd.8.xml:10 sss_useradd.8.xml:15 -msgid "sss_useradd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_useradd.8.xml:16 -msgid "create a new user" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_useradd.8.xml:21 -msgid "" -"<command>sss_useradd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:32 -msgid "" -"<command>sss_useradd</command> creates a new user account using the values " -"specified on the command line plus the default values from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:43 -msgid "" -"<option>-u</option>,<option>--uid</option> <replaceable>UID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:48 -msgid "" -"Set the UID of the user to the value of <replaceable>UID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:55 sss_usermod.8.xml:43 -msgid "" -"<option>-c</option>,<option>--gecos</option> <replaceable>COMMENT</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:60 sss_usermod.8.xml:48 -msgid "" -"Any text string describing the user. Often used as the field for the user's " -"full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:67 sss_usermod.8.xml:55 -msgid "" -"<option>-h</option>,<option>--home</option> <replaceable>HOME_DIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:72 -msgid "" -"The home directory of the user account. The default is to append the " -"<replaceable>LOGIN</replaceable> name to <filename>/home</filename> and use " -"that as the home directory. The base that is prepended before " -"<replaceable>LOGIN</replaceable> is tunable with <quote>user_defaults/" -"baseDirectory</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:82 sss_usermod.8.xml:66 -msgid "" -"<option>-s</option>,<option>--shell</option> <replaceable>SHELL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:87 -msgid "" -"The user's login shell. The default is currently <filename>/bin/bash</" -"filename>. The default can be changed with <quote>user_defaults/" -"defaultShell</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:96 -msgid "" -"<option>-G</option>,<option>--groups</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:101 -msgid "A list of existing groups this user is also a member of." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:107 -msgid "<option>-m</option>,<option>--create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:111 -msgid "" -"Create the user's home directory if it does not exist. The files and " -"directories contained in the skeleton directory (which can be defined with " -"the -k option or in the config file) will be copied to the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:121 -msgid "<option>-M</option>,<option>--no-create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:125 -msgid "" -"Do not create the user's home directory. Overrides configuration settings." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:132 -msgid "" -"<option>-k</option>,<option>--skel</option> <replaceable>SKELDIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:137 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<command>sss_useradd</command>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:143 -msgid "" -"This option is only valid if the <option>-m</option> (or <option>--create-" -"home</option>) option is specified, or creation of home directories is set " -"to TRUE in the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:152 sss_usermod.8.xml:124 -msgid "" -"<option>-Z</option>,<option>--selinux-user</option> " -"<replaceable>SELINUX_USER</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:157 -msgid "" -"The SELinux user for the user's login. If not specified, the system default " -"will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:169 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-krb5.5.xml:10 sssd-krb5.5.xml:16 -msgid "sssd-krb5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:23 -msgid "" -"This manual page describes the configuration of the Kerberos 5 " -"authentication backend for <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry>. For a detailed " -"syntax reference, please refer to the <quote>FILE FORMAT</quote> section of " -"the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:36 -msgid "" -"The Kerberos 5 authentication backend contains auth and chpass providers. It " -"must be paired with identity provider in order to function properly (for " -"example, id_provider = ldap). Some information required by the Kerberos 5 " -"authentication backend must be provided by the identity provider, such as " -"the user's Kerberos Principal Name (UPN). The configuration of the identity " -"provider should have an entry to specify the UPN. Please refer to the man " -"page for the applicable identity provider for details on how to configure " -"this." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:47 -msgid "" -"This backend also provides access control based on the .k5login file in the " -"home directory of the user. See <citerefentry> <refentrytitle>.k5login</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry> for more details. " -"Please note that an empty .k5login file will deny all access to this user. " -"To activate this feature use 'access_provider = krb5' in your sssd " -"configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:55 -msgid "" -"In the case where the UPN is not available in the identity backend " -"<command>sssd</command> will construct a UPN using the format " -"<replaceable>username</replaceable>@<replaceable>krb5_realm</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:106 -msgid "" -"The name of the Kerberos realm. This option is required and must be " -"specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:113 -msgid "krb5_kpasswd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:116 -msgid "" -"If the change password service is not running on the KDC alternative servers " -"can be defined here. An optional port number (preceded by a colon) may be " -"appended to the addresses or hostnames." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:122 -msgid "" -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. Please note that even if there are no more " -"kpasswd servers to try the back end is not switch to offline if " -"authentication against the KDC is still possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:129 -msgid "Default: Use the KDC" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:135 -msgid "krb5_ccachedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:138 -msgid "" -"Directory to store credential caches. All the substitution sequences of " -"krb5_ccname_template can be used here, too, except %d and %P. If the " -"directory does not exist it will be created. If %u, %U, %p or %h are used a " -"private directory belonging to the user is created. Otherwise a public " -"directory with restricted deletion flag (aka sticky bit, see <citerefentry> " -"<refentrytitle>chmod</refentrytitle> <manvolnum>1</manvolnum> </" -"citerefentry> for details) is created." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:151 -msgid "Default: /tmp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:157 -msgid "krb5_ccname_template (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:171 -msgid "login UID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:174 -msgid "%p" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:175 -msgid "principal name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:179 -msgid "%r" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:180 -msgid "realm name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:183 -msgid "%h" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:184 -msgid "home directory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:189 -msgid "value of krb5ccache_dir" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:194 -msgid "%P" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:195 -msgid "the process ID of the sssd client" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:160 -msgid "" -"Location of the user's credential cache. Currently only file based " -"credential caches are supported. In the template the following sequences are " -"substituted: <placeholder type=\"variablelist\" id=\"0\"/> If the template " -"ends with 'XXXXXX' mkstemp(3) is used to create a unique filename in a safe " -"way." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:209 -msgid "Default: FILE:%d/krb5cc_%U_XXXXXX" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:215 -msgid "krb5_auth_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:218 -msgid "" -"Timeout in seconds after an online authentication or change password request " -"is aborted. If possible the authentication request is continued offline." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:241 -msgid "krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:244 -msgid "" -"The location of the keytab to use when validating credentials obtained from " -"KDCs." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:248 -msgid "Default: /etc/krb5.keytab" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:254 -msgid "krb5_store_password_if_offline (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:257 -msgid "" -"Store the password of the user if the provider is offline and use it to " -"request a TGT when the provider gets online again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:262 -msgid "" -"Please note that this feature currently only available on a Linux platform. " -"Passwords stored in this way are kept in plaintext in the kernel keyring and " -"are potentially accessible by the root user (with difficulty)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:275 -msgid "krb5_renewable_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:278 -msgid "" -"Request a renewable ticket with a total lifetime given by an integer " -"immediately followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:283 sssd-krb5.5.xml:319 -msgid "<emphasis>s</emphasis> seconds" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:286 sssd-krb5.5.xml:322 -msgid "<emphasis>m</emphasis> minutes" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:289 sssd-krb5.5.xml:325 -msgid "<emphasis>h</emphasis> hours" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:292 sssd-krb5.5.xml:328 -msgid "<emphasis>d</emphasis> days." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:295 sssd-krb5.5.xml:331 -msgid "If there is no delimiter <emphasis>s</emphasis> is assumed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:299 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"renewable lifetime to one and a half hours please use '90m' instead of " -"'1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:305 -msgid "Default: not set, i.e. the TGT is not renewable" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:311 -msgid "krb5_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:314 -msgid "" -"Request ticket with a with a lifetime given by an integer immediately " -"followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:335 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"lifetime to one and a half hours please use '90m' instead of '1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:340 -msgid "" -"Default: not set, i.e. the default ticket lifetime configured on the KDC." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:347 -msgid "krb5_renew_interval (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:350 -msgid "" -"The time in seconds between two checks if the TGT should be renewed. TGTs " -"are renewed if about half of their lifetime is exceeded." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:355 -msgid "If this option is not set or 0 the automatic renewal is disabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:365 -msgid "krb5_use_fast (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:368 -msgid "" -"Enables flexible authentication secure tunneling (FAST) for Kerberos pre-" -"authentication. The following options are supported:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:373 -msgid "" -"<emphasis>never</emphasis> use FAST, this is equivalent to not set this " -"option at all." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:377 -msgid "" -"<emphasis>try</emphasis> to use FAST, if the server does not support fast " -"continue without." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:381 -msgid "" -"<emphasis>demand</emphasis> to use FAST, fail if the server does not require " -"fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:385 -msgid "Default: not set, i.e. FAST is not used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:388 -msgid "Please note that a keytab is required to use fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:391 -msgid "" -"Please note also that sssd supports fast only with MIT Kerberos version 1.8 " -"and above. If sssd used with an older version using this option is a " -"configuration error." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:400 -msgid "krb5_fast_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:403 -msgid "Specifies the server principal to use for FAST." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:412 -msgid "" -"Specifies if the host and user principal should be canonicalized. This " -"feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:65 -msgid "" -"If the auth-module krb5 is used in a SSSD domain, the following options must " -"be used. See the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page, section <quote>DOMAIN " -"SECTIONS</quote> for details on the configuration of a SSSD domain. " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:434 -msgid "" -"The following example assumes that SSSD is correctly configured and FOO is " -"one of the domains in the <replaceable>[sssd]</replaceable> section. This " -"example shows only configuration of Kerberos authentication, it does not " -"include any identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-krb5.5.xml:442 -#, no-wrap -msgid "" -" [domain/FOO]\n" -" auth_provider = krb5\n" -" krb5_server = 192.168.1.1\n" -" krb5_realm = EXAMPLE.COM\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:453 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupadd.8.xml:10 sss_groupadd.8.xml:15 -msgid "sss_groupadd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupadd.8.xml:16 -msgid "create a new group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupadd.8.xml:21 -msgid "" -"<command>sss_groupadd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:32 -msgid "" -"<command>sss_groupadd</command> creates a new group. These groups are " -"compatible with POSIX groups, with the additional feature that they can " -"contain other groups as members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupadd.8.xml:43 -msgid "" -"<option>-g</option>,<option>--gid</option> <replaceable>GID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupadd.8.xml:48 -msgid "" -"Set the GID of the group to the value of <replaceable>GID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_userdel.8.xml:10 sss_userdel.8.xml:15 -msgid "sss_userdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_userdel.8.xml:16 -msgid "delete a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_userdel.8.xml:21 -msgid "" -"<command>sss_userdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:32 -msgid "" -"<command>sss_userdel</command> deletes a user identified by login name " -"<replaceable>LOGIN</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:44 -msgid "<option>-r</option>,<option>--remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:48 -msgid "" -"Files in the user's home directory will be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:56 -msgid "<option>-R</option>,<option>--no-remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:60 -msgid "" -"Files in the user's home directory will NOT be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:68 -msgid "<option>-f</option>,<option>--force</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:72 -msgid "" -"This option forces <command>sss_userdel</command> to remove the user's home " -"directory and mail spool, even if they are not owned by the specified user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:80 -msgid "<option>-k</option>,<option>--kick</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:84 -msgid "Before actually deleting the user, terminate all his processes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:95 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupdel.8.xml:10 sss_groupdel.8.xml:15 -msgid "sss_groupdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupdel.8.xml:16 -msgid "delete a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupdel.8.xml:21 -msgid "" -"<command>sss_groupdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:32 -msgid "" -"<command>sss_groupdel</command> deletes a group identified by its name " -"<replaceable>GROUP</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupshow.8.xml:10 sss_groupshow.8.xml:15 -msgid "sss_groupshow" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupshow.8.xml:16 -msgid "print properties of a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupshow.8.xml:21 -msgid "" -"<command>sss_groupshow</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:32 -msgid "" -"<command>sss_groupshow</command> displays information about a group " -"identified by its name <replaceable>GROUP</replaceable>. The information " -"includes the group ID number, members of the group and the parent group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupshow.8.xml:43 -msgid "<option>-R</option>,<option>--recursive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupshow.8.xml:47 -msgid "" -"Also print indirect group members in a tree-like hierarchy. Note that this " -"also affects printing parent groups - without <option>R</option>, only the " -"direct parent will be printed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_usermod.8.xml:10 sss_usermod.8.xml:15 -msgid "sss_usermod" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_usermod.8.xml:16 -msgid "modify a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_usermod.8.xml:21 -msgid "" -"<command>sss_usermod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:32 -msgid "" -"<command>sss_usermod</command> modifies the account specified by " -"<replaceable>LOGIN</replaceable> to reflect the changes that are specified " -"on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:60 -msgid "The home directory of the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:71 -msgid "The user's login shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:82 -msgid "" -"Append this user to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:96 -msgid "" -"Remove this user from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:103 -msgid "<option>-l</option>,<option>--lock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:107 -msgid "Lock the user account. The user won't be able to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:114 -msgid "<option>-u</option>,<option>--unlock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:118 -msgid "Unlock the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:129 -msgid "The SELinux user for the user's login." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:140 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_cache.8.xml:10 sss_cache.8.xml:15 -msgid "sss_cache" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_cache.8.xml:16 -msgid "perform cache cleanup" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_cache.8.xml:21 -msgid "" -"<command>sss_cache</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_cache.8.xml:31 -msgid "" -"<command>sss_cache</command> invalidates records in SSSD cache. Invalidated " -"records are forced to be reloaded from server as soon as related SSSD " -"backend is online." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:42 -msgid "" -"<option>-u</option>,<option>--user</option> <replaceable>login</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:47 -msgid "Invalidate specific user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:53 -msgid "<option>-U</option>,<option>--users</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:57 -msgid "" -"Invalidate all user records. This option overrides invalidation of specific " -"user if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:64 -msgid "" -"<option>-g</option>,<option>--group</option> <replaceable>group</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:69 -msgid "Invalidate specific group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:75 -msgid "<option>-G</option>,<option>--groups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:79 -msgid "" -"Invalidate all group records. This option overrides invalidation of specific " -"group if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:86 -msgid "" -"<option>-n</option>,<option>--netgroup</option> <replaceable>netgroup</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:91 -msgid "Invalidate specific netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:97 -msgid "<option>-N</option>,<option>--netgroups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:101 -msgid "" -"Invalidate all netgroup records. This option overrides invalidation of " -"specific netgroup if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:108 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>domain</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:113 -msgid "Restrict invalidation process only to a particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_debuglevel.8.xml:10 sss_debuglevel.8.xml:15 -msgid "sss_debuglevel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_debuglevel.8.xml:16 -msgid "change debug level while SSSD is running" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_debuglevel.8.xml:21 -msgid "" -"<command>sss_debuglevel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>NEW_DEBUG_LEVEL</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_debuglevel.8.xml:32 -msgid "" -"<command>sss_debuglevel</command> changes debug level of SSSD monitor and " -"providers to <replaceable>NEW_DEBUG_LEVEL</replaceable> while SSSD is " -"running." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_debuglevel.8.xml:59 -msgid "<replaceable>NEW_DEBUG_LEVEL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_authorizedkeys.1.xml:10 sss_ssh_authorizedkeys.1.xml:15 -msgid "sss_ssh_authorizedkeys" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_ssh_authorizedkeys.1.xml:11 sss_ssh_knownhostsproxy.1.xml:11 -msgid "1" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_authorizedkeys.1.xml:16 -msgid "get OpenSSH authorized keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_authorizedkeys.1.xml:21 -msgid "" -"<command>sss_ssh_authorizedkeys</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>USER</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:32 -msgid "" -"<command>sss_ssh_authorizedkeys</command> acquires SSH public keys for user " -"<replaceable>USER</replaceable> and outputs them in OpenSSH authorized_keys " -"format (see the <quote>AUTHORIZED_KEYS FILE FORMAT</quote> section of " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> for more information)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:41 -msgid "" -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_authorizedkeys</" -"command> for public key user authentication if it is compiled with support " -"for either <quote>AuthorizedKeysCommand</quote> or <quote>PubkeyAgent</" -"quote> <citerefentry> <refentrytitle>sshd_config</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:58 -#, no-wrap -msgid "AuthorizedKeysCommand /usr/bin/sss_ssh_authorizedkeys\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:51 -msgid "" -"If <quote>AuthorizedKeysCommand</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by putting the following directive " -"in <citerefentry> <refentrytitle>sshd_config</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry>: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:69 -#, no-wrap -msgid "PubKeyAgent /usr/bin/sss_ssh_authorizedkeys %u\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:62 -msgid "" -"If <quote>PubkeyAgent</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by using the following directive " -"for <citerefentry> <refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> configuration: <placeholder type=\"programlisting" -"\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_authorizedkeys.1.xml:87 -msgid "" -"Search for user public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:98 -msgid "" -"<citerefentry> <refentrytitle>sshd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sshd_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_knownhostsproxy</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_knownhostsproxy.1.xml:10 sss_ssh_knownhostsproxy.1.xml:15 -msgid "sss_ssh_knownhostsproxy" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_knownhostsproxy.1.xml:16 -msgid "get OpenSSH host keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_knownhostsproxy.1.xml:21 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>HOST</replaceable></arg> <arg " -"choice='opt'><replaceable>PROXY_COMMAND</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:33 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> acquires SSH host public keys for " -"host <replaceable>HOST</replaceable>, stores them in a custom OpenSSH " -"known_hosts file (see the <quote>SSH_KNOWN_HOSTS FILE FORMAT</quote> section " -"of <citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> for more information) <filename>/var/lib/sss/" -"pubconf/known_hosts</filename> and estabilishes connection to the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:43 -msgid "" -"If <replaceable>PROXY_COMMAND</replaceable> is specified, it is used to " -"create the connection to the host instead of opening a socket." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_knownhostsproxy.1.xml:55 -#, no-wrap -msgid "" -"ProxyCommand /usr/bin/sss_ssh_knownhostsproxy -p %p %h\n" -"GlobalKnownHostsFile2 /var/lib/sss/pubconf/known_hosts\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:48 -msgid "" -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_knownhostsproxy</" -"command> for host key authentication by using the following directives for " -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> configuration: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_ssh_knownhostsproxy.1.xml:69 -msgid "" -"<option>-p</option>,<option>--port</option> <replaceable>PORT</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:74 -msgid "" -"Use port <replaceable>PORT</replaceable> to connect to the host. By " -"default, port 22 is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:86 -msgid "" -"Search for host public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:97 -msgid "" -"<citerefentry> <refentrytitle>ssh</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>ssh_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_authorizedkeys</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/service_discovery.xml:2 -msgid "SERVICE DISCOVERY" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/service_discovery.xml:4 -msgid "" -"The service discovery feature allows back ends to automatically find the " -"appropriate servers to connect to using a special DNS query." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:9 -msgid "Configuration" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:11 -msgid "" -"If no servers are specified, the back end automatically uses service " -"discovery to try to find a server. Optionally, the user may choose to use " -"both fixed server addresses and service discovery by inserting a special " -"keyword, <quote>_srv_</quote>, in the list of servers. The order of " -"preference is maintained. This feature is useful if, for example, the user " -"prefers to use service discovery whenever possible, and fall back to a " -"specific server when no servers can be discovered using DNS." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:23 -msgid "The domain name" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:25 -msgid "" -"Please refer to the <quote>dns_discovery_domain</quote> parameter in the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for more details." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:35 -msgid "The protocol" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:37 -msgid "" -"The queries usually specify _tcp as the protocol. Exceptions are documented " -"in respective option description." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:42 -msgid "See Also" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:44 -msgid "" -"For more information on the service discovery mechanism, refer to RFC 2782." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/upstream.xml:1 -msgid "<placeholder type=\"refentryinfo\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/failover.xml:2 -msgid "FAILOVER" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/failover.xml:4 -msgid "" -"The failover feature allows back ends to automatically switch to a different " -"server if the primary server fails." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:8 -msgid "Failover Syntax" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:10 -msgid "" -"The list of servers is given as a comma-separated list; any number of spaces " -"is allowed around the comma. The servers are listed in order of preference. " -"The list can contain any number of servers." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:17 -msgid "The Failover Mechanism" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:19 -msgid "" -"The failover mechanism distinguishes between a machine and a service. The " -"back end first tries to resolve the hostname of a given machine; if this " -"resolution attempt fails, the machine is considered offline. No further " -"attempts are made to connect to this machine for any other service. If the " -"resolution attempt succeeds, the back end tries to connect to a service on " -"this machine. If the service connection attempt fails, then only this " -"particular service is considered offline and the back end automatically " -"switches over to the next service. The machine is still considered online " -"and might still be tried for another service." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:32 -msgid "" -"Further connection attempts are made to machines or services marked as " -"offline after a specified period of time; this is currently hard coded to 30 " -"seconds." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:37 -msgid "" -"If there are no more machines to try, the back end as a whole switches to " -"offline mode, and then attempts to reconnect every 30 seconds." -msgstr "" - -#. type: Content of: <varlistentry><term> -#: include/param_help.xml:3 -msgid "<option>-h</option>,<option>--help</option>" -msgstr "" - -#. type: Content of: <varlistentry><listitem><para> -#: include/param_help.xml:7 -msgid "Display help message and exit." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:3 -msgid "" -"Bit mask that indicates which debug levels will be visible. 0x0010 is the " -"default value as well as the lowest allowed value, 0xFFF0 is the most " -"verbose mode. This setting overrides the settings from config file." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:8 -msgid "Currently supported debug levels:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:11 -msgid "" -"<emphasis>0x0010</emphasis>: Fatal failures. Anything that would prevent " -"SSSD from starting up or causes it to cease running." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:15 -msgid "" -"<emphasis>0x0020</emphasis>: Critical failures. An error that doesn't kill " -"the SSSD, but one that indicates that at least one major feature is not " -"going to work properly." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:20 -msgid "" -"<emphasis>0x0040</emphasis>: Serious failures. An error announcing that a " -"particular request or operation has failed." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:24 -msgid "" -"<emphasis>0x0080</emphasis>: Minor failures. These are the errors that would " -"percolate down to cause the operation failure of 2." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:28 -msgid "<emphasis>0x0100</emphasis>: Configuration settings." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:31 -msgid "<emphasis>0x0200</emphasis>: Function data." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:34 -msgid "<emphasis>0x0400</emphasis>: Trace messages for operation functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:37 -msgid "" -"<emphasis>0x1000</emphasis>: Trace messages for internal control functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:40 -msgid "" -"<emphasis>0x2000</emphasis>: Contents of function-internal variables that " -"may be interesting." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:43 -msgid "<emphasis>0x4000</emphasis>: Extremely low-level tracing information." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:46 -msgid "" -"To log required debug levels, simply add their numbers together as shown in " -"following examples:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:49 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, critical failures, " -"serious failures and function data use 0x0270." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:53 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, configuration settings, " -"function data, trace messages for internal control functions use 0x1310." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:57 -msgid "" -"<emphasis>Note</emphasis>: This is new format of debug levels introduced in " -"1.7.0. Older format (numbers from 0-10) is compatible but deprecated." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/experimental.xml:1 -msgid "" -"<emphasis> This is an experimental feature, please use http://fedorahosted." -"org/sssd to report any issues. </emphasis>" -msgstr "" diff --git a/src/man/po/bg.po b/src/man/po/bg.po deleted file mode 100644 index a3360b384..000000000 --- a/src/man/po/bg.po +++ /dev/null @@ -1,6747 +0,0 @@ -# SOME DESCRIPTIVE TITLE -# Copyright (C) YEAR Red Hat -# This file is distributed under the same license as the sssd-docs package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@redhat.com\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2012-02-14 13:10+0000\n" -"Last-Translator: sgallagh <sgallagh@redhat.com>\n" -"Language-Team: Bulgarian <trans-bg@lists.fedoraproject.org>\n" -"Language: bg\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=2; plural=(n != 1)\n" - -#. type: Content of: <reference><title> -#: sss_groupmod.8.xml:5 sssd.conf.5.xml:5 sssd-ldap.5.xml:5 pam_sss.8.xml:5 -#: sssd_krb5_locator_plugin.8.xml:5 sssd-simple.5.xml:5 sssd-ipa.5.xml:5 -#: sssd.8.xml:5 sss_obfuscate.8.xml:5 sss_useradd.8.xml:5 sssd-krb5.5.xml:5 -#: sss_groupadd.8.xml:5 sss_userdel.8.xml:5 sss_groupdel.8.xml:5 -#: sss_groupshow.8.xml:5 sss_usermod.8.xml:5 sss_cache.8.xml:5 -#: sss_debuglevel.8.xml:5 sss_ssh_authorizedkeys.1.xml:5 -#: sss_ssh_knownhostsproxy.1.xml:5 -msgid "SSSD Manual pages" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupmod.8.xml:10 sss_groupmod.8.xml:15 -msgid "sss_groupmod" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_groupmod.8.xml:11 pam_sss.8.xml:14 sssd_krb5_locator_plugin.8.xml:11 -#: sssd.8.xml:11 sss_obfuscate.8.xml:11 sss_useradd.8.xml:11 -#: sss_groupadd.8.xml:11 sss_userdel.8.xml:11 sss_groupdel.8.xml:11 -#: sss_groupshow.8.xml:11 sss_usermod.8.xml:11 sss_cache.8.xml:11 -#: sss_debuglevel.8.xml:11 -msgid "8" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupmod.8.xml:16 -msgid "modify a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupmod.8.xml:21 -msgid "" -"<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:30 sssd-ldap.5.xml:21 pam_sss.8.xml:44 -#: sssd_krb5_locator_plugin.8.xml:20 sssd-simple.5.xml:22 sssd-ipa.5.xml:21 -#: sssd.8.xml:29 sss_obfuscate.8.xml:30 sss_useradd.8.xml:30 -#: sssd-krb5.5.xml:21 sss_groupadd.8.xml:30 sss_userdel.8.xml:30 -#: sss_groupdel.8.xml:30 sss_groupshow.8.xml:30 sss_usermod.8.xml:30 -#: sss_cache.8.xml:29 sss_debuglevel.8.xml:30 sss_ssh_authorizedkeys.1.xml:30 -#: sss_ssh_knownhostsproxy.1.xml:31 -msgid "DESCRIPTION" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:32 -msgid "" -"<command>sss_groupmod</command> modifies the group to reflect the changes " -"that are specified on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:39 pam_sss.8.xml:51 sssd.8.xml:42 sss_obfuscate.8.xml:58 -#: sss_useradd.8.xml:39 sss_groupadd.8.xml:39 sss_userdel.8.xml:39 -#: sss_groupdel.8.xml:39 sss_groupshow.8.xml:39 sss_usermod.8.xml:39 -#: sss_cache.8.xml:38 sss_debuglevel.8.xml:38 sss_ssh_authorizedkeys.1.xml:78 -#: sss_ssh_knownhostsproxy.1.xml:65 -msgid "OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:43 sss_usermod.8.xml:77 -msgid "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:48 -msgid "" -"Append this group to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:57 sss_usermod.8.xml:91 -msgid "" -"<option>-r</option>,<option>--remove-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:62 -msgid "" -"Remove this group from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:72 sssd.conf.5.xml:1331 sssd-ldap.5.xml:2096 -#: pam_sss.8.xml:139 sssd_krb5_locator_plugin.8.xml:75 sssd-simple.5.xml:143 -#: sssd-ipa.5.xml:562 sssd.8.xml:191 sss_obfuscate.8.xml:103 -#: sss_useradd.8.xml:167 sssd-krb5.5.xml:451 sss_groupadd.8.xml:58 -#: sss_userdel.8.xml:93 sss_groupdel.8.xml:46 sss_groupshow.8.xml:58 -#: sss_usermod.8.xml:138 sss_ssh_authorizedkeys.1.xml:96 -#: sss_ssh_knownhostsproxy.1.xml:95 -msgid "SEE ALSO" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:74 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.conf.5.xml:10 sssd.conf.5.xml:16 -msgid "sssd.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sssd.conf.5.xml:11 sssd-ldap.5.xml:11 sssd-simple.5.xml:11 -#: sssd-ipa.5.xml:11 sssd-krb5.5.xml:11 -msgid "5" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><refmiscinfo> -#: sssd.conf.5.xml:12 sssd-ldap.5.xml:12 sssd-simple.5.xml:12 -#: sssd-ipa.5.xml:12 sssd-krb5.5.xml:12 -msgid "File Formats and Conventions" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.conf.5.xml:17 sssd-ldap.5.xml:17 sssd_krb5_locator_plugin.8.xml:16 -#: sssd-ipa.5.xml:17 sssd-krb5.5.xml:17 -msgid "the configuration file for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:21 -msgid "FILE FORMAT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:29 -#, no-wrap -msgid "" -" <replaceable>[section]</replaceable>\n" -" <replaceable>key</replaceable> = <replaceable>value</replaceable>\n" -" <replaceable>key2</replaceable> = <replaceable>value2,value3</replaceable>\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:24 -msgid "" -"The file has an ini-style syntax and consists of sections and parameters. A " -"section begins with the name of the section in square brackets and continues " -"until the next section begins. An example of section with single and multi-" -"valued parameters: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:36 -msgid "" -"The data types used are string (no quotes needed), integer and bool (with " -"values of <quote>TRUE/FALSE</quote>)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:41 -msgid "" -"A line comment starts with a hash sign (<quote>#</quote>) or a semicolon " -"(<quote>;</quote>)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:46 -msgid "" -"All sections can have an optional <replaceable>description</replaceable> " -"parameter. Its function is only as a label for the section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:52 -msgid "" -"<filename>sssd.conf</filename> must be a regular file, owned by root and " -"only root may read from or write to the file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:58 -msgid "SPECIAL SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:61 -msgid "The [sssd] section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><title> -#: sssd.conf.5.xml:70 sssd.conf.5.xml:1177 -msgid "Section parameters" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:72 -msgid "config_file_version (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:75 -msgid "" -"Indicates what is the syntax of the config file. SSSD 0.6.0 and later use " -"version 2." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:81 -msgid "services" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:84 -msgid "" -"Comma separated list of services that are started when sssd itself starts." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:88 -msgid "" -"Supported services: nss, pam <phrase condition=\"with_sudo\">, sudo</phrase>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:94 sssd.conf.5.xml:257 -msgid "reconnection_retries (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:97 sssd.conf.5.xml:260 -msgid "" -"Number of times services should attempt to reconnect in the event of a Data " -"Provider crash or restart before they give up" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:102 sssd.conf.5.xml:265 -msgid "Default: 3" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:107 -msgid "domains" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:110 -msgid "" -"A domain is a database containing user information. SSSD can use more " -"domains at the same time, but at least one must be configured or SSSD won't " -"start. This parameter described the list of domains in the order you want " -"them to be queried." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:120 -msgid "re_expression (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:123 -msgid "" -"Regular expression that describes how to parse the string containing user " -"name and domain into these components." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:127 -msgid "" -"Default: <quote>(?P<name>[^@]+)@?(?P<domain>[^@]*$)</quote> " -"which translates to \"the name is everything up to the <quote>@</quote> " -"sign, the domain everything after that\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:132 -msgid "" -"PLEASE NOTE: the support for non-unique named subpatterns is not available " -"on all platforms (e.g. RHEL5 and SLES10). Only platforms with libpcre " -"version 7 or higher can support non-unique named subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:139 -msgid "" -"PLEASE NOTE ALSO: older version of libpcre only support the Python syntax (?" -"P<name>) to label subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:146 -msgid "full_name_format (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:149 -msgid "" -"A <citerefentry> <refentrytitle>printf</refentrytitle> <manvolnum>3</" -"manvolnum> </citerefentry>-compatible format that describes how to translate " -"a (name, domain) tuple into a fully qualified name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:157 -msgid "Default: <quote>%1$s@%2$s</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:162 -msgid "try_inotify (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:165 -msgid "" -"SSSD monitors the state of resolv.conf to identify when it needs to update " -"its internal DNS resolver. By default, we will attempt to use inotify for " -"this, and will fall back to polling resolv.conf every five seconds if " -"inotify cannot be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:173 -msgid "" -"There are some limited situations where it is preferred that we should skip " -"even trying to use inotify. In these rare cases, this option should be set " -"to 'false'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:179 -msgid "" -"Default: true on platforms where inotify is supported. False on other " -"platforms." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:183 -msgid "" -"Note: this option will have no effect on platforms where inotify is " -"unavailable. On these platforms, polling will always be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:190 -msgid "krb5_rcache_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:193 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:197 -msgid "" -"This option accepts a special value __LIBKRB5_DEFAULTS__ that will instruct " -"SSSD to let libkrb5 decide the appropriate location for the replay cache." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:203 -msgid "" -"Default: Distribution-specific and specified at build-time. " -"(__LIBKRB5_DEFAULTS__ if not configured)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:63 -msgid "" -"Individual pieces of SSSD functionality are provided by special SSSD " -"services that are started and stopped together with SSSD. The services are " -"managed by a special service frequently called <quote>monitor</quote>. The " -"<quote>[sssd]</quote> section is used to configure the monitor as well as " -"some other important options like the identity domains. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:216 -msgid "SERVICES SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:218 -msgid "" -"Settings that can be used to configure different services are described in " -"this section. They should reside in the [<replaceable>$NAME</replaceable>] " -"section, for example, for NSS service, the section would be <quote>[nss]</" -"quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:225 -msgid "General service configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:227 -msgid "These options can be used to configure any service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:231 -msgid "debug_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:235 -msgid "debug_timestamps (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:238 -msgid "Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:241 sssd.conf.5.xml:376 sssd-ldap.5.xml:1328 -#: sssd-ldap.5.xml:1446 sssd-ipa.5.xml:206 sssd-ipa.5.xml:241 -msgid "Default: true" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:246 -msgid "debug_microseconds (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:249 -msgid "Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:252 sssd.conf.5.xml:641 sssd-ldap.5.xml:602 -#: sssd-ldap.5.xml:1260 sssd-ldap.5.xml:1397 sssd-ldap.5.xml:1795 -#: sssd-ipa.5.xml:123 sssd-ipa.5.xml:301 sssd-krb5.5.xml:235 -#: sssd-krb5.5.xml:269 sssd-krb5.5.xml:418 -msgid "Default: false" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:270 -msgid "command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:273 -msgid "" -"By default, the executable representing this service is called <command>sssd_" -"${service_name}</command>. This directive allows to change the executable " -"name for the service. In the vast majority of configurations, the default " -"values should suffice." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:281 -msgid "Default: <command>sssd_${service_name}</command>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:289 -msgid "NSS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:291 -msgid "" -"These options can be used to configure the Name Service Switch (NSS) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:296 -msgid "enum_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:299 -msgid "" -"How many seconds should nss_sss cache enumerations (requests for info about " -"all users)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:303 -msgid "Default: 120" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:308 -msgid "entry_cache_nowait_percentage (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:311 -msgid "" -"The entry cache can be set to automatically update entries in the background " -"if they are requested beyond a percentage of the entry_cache_timeout value " -"for the domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:317 -msgid "" -"For example, if the domain's entry_cache_timeout is set to 30s and " -"entry_cache_nowait_percentage is set to 50 (percent), entries that come in " -"after 15 seconds past the last cache update will be returned immediately, " -"but the SSSD will go and update the cache on its own, so that future " -"requests will not need to block waiting for a cache update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:327 -msgid "" -"Valid values for this option are 0-99 and represent a percentage of the " -"entry_cache_timeout for each domain. For performance reasons, this " -"percentage will never reduce the nowait timeout to less than 10 seconds. (0 " -"disables this feature)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:335 -msgid "Default: 50" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:340 -msgid "entry_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:343 -msgid "" -"Specifies for how many seconds nss_sss should cache negative cache hits " -"(that is, queries for invalid database entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:349 sssd.conf.5.xml:669 sssd-krb5.5.xml:223 -msgid "Default: 15" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:354 -msgid "filter_users, filter_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:357 -msgid "" -"Exclude certain users from being fetched from the sss NSS database. This is " -"particularly useful for system accounts. This option can also be set per-" -"domain or include fully-qualified names to filter only users from the " -"particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:364 -msgid "Default: root" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:369 -msgid "filter_users_in_groups (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:372 -msgid "" -"If you want filtered user still be group members set this option to false." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:381 -msgid "override_homedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:390 sssd-krb5.5.xml:166 -msgid "%u" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:391 sssd-krb5.5.xml:167 -msgid "login name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:394 sssd-krb5.5.xml:170 -msgid "%U" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:395 -msgid "UID number" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:398 sssd-krb5.5.xml:188 -msgid "%d" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:399 -msgid "domain name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:402 -msgid "%f" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:403 -msgid "fully qualified user name (user@domain)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:406 sssd-krb5.5.xml:200 -msgid "%%" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:407 sssd-krb5.5.xml:201 -msgid "a literal '%'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:384 -msgid "" -"Override the user's home directory. You can either provide an absolute value " -"or a template. In the template, the following sequences are substituted: " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:413 -msgid "This option can also be set per-domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:418 -msgid "allowed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:421 -msgid "" -"Restrict user shell to one of the listed values. The order of evaluation is:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:424 -msgid "1. If the shell is present in <quote>/etc/shells</quote>, it is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:428 -msgid "" -"2. If the shell is in the allowed_shells list but not in <quote>/etc/shells</" -"quote>, use the value of the shell_fallback parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:433 -msgid "" -"3. If the shell is not in the allowed_shells list and not in <quote>/etc/" -"shells</quote>, a nologin shell is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:438 -msgid "An empty string for shell is passed as-is to libc." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:441 -msgid "" -"The <quote>/etc/shells</quote> is only read on SSSD start up, which means " -"that a restart of the SSSD is required in case a new shell is installed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:445 -msgid "Default: Not set. The user shell is automatically used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:450 -msgid "vetoed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:453 -msgid "Replace any instance of these shells with the shell_fallback" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:458 -msgid "shell_fallback (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:461 -msgid "" -"The default shell to use if an allowed shell is not installed on the machine." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:465 -msgid "Default: /bin/sh" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:472 -msgid "PAM configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:474 -msgid "" -"These options can be used to configure the Pluggable Authentication Module " -"(PAM) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:479 -msgid "offline_credentials_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:482 -msgid "" -"If the authentication provider is offline, how long should we allow cached " -"logins (in days since the last successful online login)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:487 sssd.conf.5.xml:500 -msgid "Default: 0 (No limit)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:493 -msgid "offline_failed_login_attempts (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:496 -msgid "" -"If the authentication provider is offline, how many failed login attempts " -"are allowed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:506 -msgid "offline_failed_login_delay (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:509 -msgid "" -"The time in minutes which has to pass after offline_failed_login_attempts " -"has been reached before a new login attempt is possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:514 -msgid "" -"If set to 0 the user cannot authenticate offline if " -"offline_failed_login_attempts has been reached. Only a successful online " -"authentication can enable offline authentication again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:520 sssd.conf.5.xml:573 sssd.conf.5.xml:1093 -msgid "Default: 5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:526 -msgid "pam_verbosity (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:529 -msgid "" -"Controls what kind of messages are shown to the user during authentication. " -"The higher the number to more messages are displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:534 -msgid "Currently sssd supports the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:537 -msgid "<emphasis>0</emphasis>: do not show any message" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:540 -msgid "<emphasis>1</emphasis>: show only important messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:544 -msgid "<emphasis>2</emphasis>: show informational messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:547 -msgid "<emphasis>3</emphasis>: show all messages and debug information" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:551 sssd.8.xml:63 -msgid "Default: 1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:556 -msgid "pam_id_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:559 -msgid "" -"For any PAM request while SSSD is online, the SSSD will attempt to " -"immediately update the cached identity information for the user in order to " -"ensure that authentication takes place with the latest information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:565 -msgid "" -"A complete PAM conversation may perform multiple PAM requests, such as " -"account management and session opening. This option controls (on a per-" -"client-application basis) how long (in seconds) we can cache the identity " -"information to avoid excessive round-trips to the identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:579 -msgid "pam_pwd_expiration_warning (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:582 -msgid "Display a warning N days before the password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:585 -msgid "" -"Please note that the backend server has to provide information about the " -"expiration time of the password. If this information is missing, sssd " -"cannot display a warning." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:591 -msgid "Default: 7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:599 -msgid "SUDO configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:601 -msgid "These options can be used to configure the sudo service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:608 -msgid "sudo_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:611 -msgid "" -"For any sudo request that comes while SSSD is online, the SSSD will attempt " -"to update the cached rules in order to ensure that sudo has the latest " -"ruleset." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:617 -msgid "" -"The user may, however, run a couple of sudo commands successively, which " -"would trigger multiple LDAP requests. In order to speed up this use-case, " -"the sudo service maintains an in-memory cache that would be used for " -"performing fast replies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:624 -msgid "" -"This option controls how long (in seconds) can the sudo service cache rules " -"for a user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:628 -msgid "Default: 180" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:633 -msgid "sudo_timed (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:636 -msgid "" -"Whether or not to evaluate the sudoNotBefore and sudoNotAfter attributes " -"that implement time-dependent sudoers entries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:649 -msgid "AUTOFS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:651 -msgid "These options can be used to configure the autofs service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:659 -msgid "autofs_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:662 -msgid "" -"Specifies for how many seconds should the autofs responder negative cache " -"hits (that is, queries for invalid map entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:679 -msgid "DOMAIN SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:686 -msgid "min_id,max_id (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:689 -msgid "" -"UID and GID limits for the domain. If a domain contains an entry that is " -"outside these limits, it is ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:694 -msgid "" -"For users, this affects the primary GID limit. The user will not be returned " -"to NSS if either the UID or the primary GID is outside the range. For non-" -"primary group memberships, those that are in range will be reported as " -"expected." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:701 -msgid "Default: 1 for min_id, 0 (no limit) for max_id" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:707 -msgid "timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:710 -msgid "" -"Timeout in seconds between heartbeats for this domain. This is used to " -"ensure that the backend process is alive and capable of answering requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:715 sssd-ldap.5.xml:1131 -msgid "Default: 10" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:721 -msgid "enumerate (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:724 -msgid "" -"Determines if a domain can be enumerated. This parameter can have one of the " -"following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:728 -msgid "TRUE = Users and groups are enumerated" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:731 -msgid "FALSE = No enumerations for this domain" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:734 sssd.conf.5.xml:839 sssd.conf.5.xml:893 -msgid "Default: FALSE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:737 -msgid "" -"Note: Enabling enumeration has a moderate performance impact on SSSD while " -"enumeration is running. It may take up to several minutes after SSSD startup " -"to fully complete enumerations. During this time, individual requests for " -"information will go directly to LDAP, though it may be slow, due to the " -"heavy enumeration processing." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:747 -msgid "" -"While the first enumeration is running, requests for the complete user or " -"group lists may return no results until it completes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:752 -msgid "" -"Further, enabling enumeration may increase the time necessary to detect " -"network disconnection, as longer timeouts are required to ensure that " -"enumeration lookups are completed successfully. For more information, refer " -"to the man pages for the specific id_provider in use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:763 -msgid "entry_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:766 -msgid "" -"How many seconds should nss_sss consider entries valid before asking the " -"backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:770 -msgid "Default: 5400" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:776 -msgid "entry_cache_user_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:779 -msgid "" -"How many seconds should nss_sss consider user entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:783 sssd.conf.5.xml:796 sssd.conf.5.xml:809 -#: sssd.conf.5.xml:822 -msgid "Default: entry_cache_timeout" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:789 -msgid "entry_cache_group_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:792 -msgid "" -"How many seconds should nss_sss consider group entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:802 -msgid "entry_cache_netgroup_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:805 -msgid "" -"How many seconds should nss_sss consider netgroup entries valid before " -"asking the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:815 -msgid "entry_cache_service_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:818 -msgid "" -"How many seconds should nss_sss consider service entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:828 -msgid "cache_credentials (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:831 -msgid "Determines if user credentials are also cached in the local LDB cache" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:835 -msgid "User credentials are stored in a SHA512 hash, not in plaintext" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:844 -msgid "account_cache_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:847 -msgid "" -"Number of days entries are left in cache after last successful login before " -"being removed during a cleanup of the cache. 0 means keep forever. The " -"value of this parameter must be greater than or equal to " -"offline_credentials_expiration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:854 -msgid "Default: 0 (unlimited)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:860 -msgid "id_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:863 -msgid "The Data Provider identity backend to use for this domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:867 -msgid "Supported backends:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:870 -msgid "proxy: Support a legacy NSS provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:873 -msgid "local: SSSD internal local provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:876 -msgid "ldap: LDAP provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:882 -msgid "use_fully_qualified_names (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:885 -msgid "" -"If set to TRUE, all requests to this domain must use fully qualified names. " -"For example, if used in LOCAL domain that contains a \"test\" user, " -"<command>getent passwd test</command> wouldn't find the user while " -"<command>getent passwd test@LOCAL</command> would." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:898 -msgid "auth_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:901 -msgid "" -"The authentication provider used for the domain. Supported auth providers " -"are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:905 -msgid "" -"<quote>ldap</quote> for native LDAP authentication. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:912 -msgid "" -"<quote>krb5</quote> for Kerberos authentication. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:919 -msgid "" -"<quote>proxy</quote> for relaying authentication to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:922 -msgid "<quote>none</quote> disables authentication explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:925 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"authentication requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:931 -msgid "access_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:934 -msgid "" -"The access control provider used for the domain. There are two built-in " -"access providers (in addition to any included in installed backends) " -"Internal special providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:940 -msgid "<quote>permit</quote> always allow access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:943 -msgid "<quote>deny</quote> always deny access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:946 -msgid "" -"<quote>simple</quote> access control based on access or deny lists. See " -"<citerefentry> <refentrytitle>sssd-simple</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry> for more information on configuring the simple " -"access module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:953 -msgid "Default: <quote>permit</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:958 -msgid "chpass_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:961 -msgid "" -"The provider which should handle change password operations for the domain. " -"Supported change password providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:966 -msgid "" -"<quote>ipa</quote> to change a password stored in an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:974 -msgid "" -"<quote>ldap</quote> to change a password stored in a LDAP server. See " -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:982 -msgid "" -"<quote>krb5</quote> to change the Kerberos password. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:990 -msgid "" -"<quote>proxy</quote> for relaying password changes to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:994 -msgid "<quote>none</quote> disallows password changes explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:997 -msgid "" -"Default: <quote>auth_provider</quote> is used if it is set and can handle " -"change password requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1004 -msgid "sudo_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1010 -msgid "The SUDO provider used for the domain. Supported SUDO providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1014 -msgid "" -"<quote>ldap</quote> for rules stored in LDAP. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1021 -msgid "<quote>none</quote> disables SUDO explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1024 -msgid "Default: The value of <quote>id_provider</quote> is used if it is set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1030 -msgid "session_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1033 -msgid "" -"The provider which should handle loading of session settings. Supported " -"session providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1038 -msgid "" -"<quote>ipa</quote> to load session settings from an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1046 -msgid "<quote>none</quote> disallows fetching session settings explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1049 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"session loading requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1056 -msgid "lookup_family_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1059 -msgid "" -"Provides the ability to select preferred address family to use when " -"performing DNS lookups." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1063 -msgid "Supported values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1066 -msgid "ipv4_first: Try looking up IPv4 address, if that fails, try IPv6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1069 -msgid "ipv4_only: Only attempt to resolve hostnames to IPv4 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1072 -msgid "ipv6_first: Try looking up IPv6 address, if that fails, try IPv4" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1075 -msgid "ipv6_only: Only attempt to resolve hostnames to IPv6 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1078 -msgid "Default: ipv4_first" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1084 -msgid "dns_resolver_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1087 -msgid "" -"Defines the amount of time (in seconds) to wait for a reply from the DNS " -"resolver before assuming that it is unreachable. If this timeout is reached, " -"the domain will continue to operate in offline mode." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1099 -msgid "dns_discovery_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1102 -msgid "" -"If service discovery is used in the back end, specifies the domain part of " -"the service discovery DNS query." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1106 -msgid "Default: Use the domain part of machine's hostname" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1112 -msgid "override_gid (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1115 -msgid "Override the primary GID value with the one specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1121 -msgid "case_sensitive (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1124 -msgid "" -"Treat user and group names as case sensitive. At the moment, this option is " -"not supported in the local provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1129 -msgid "Default: True" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:681 -msgid "" -"These configuration options can be present in a domain configuration " -"section, that is, in a section called <quote>[domain/<replaceable>NAME</" -"replaceable>]</quote> <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1141 -msgid "proxy_pam_target (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1144 -msgid "The proxy target PAM proxies to." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1147 -msgid "" -"Default: not set by default, you have to take an existing pam configuration " -"or create a new one and add the service name here." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1155 -msgid "proxy_lib_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1158 -msgid "" -"The name of the NSS library to use in proxy domains. The NSS functions " -"searched for in the library are in the form of _nss_$(libName)_$(function), " -"for example _nss_files_getpwent." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1137 -msgid "" -"Options valid for proxy domains. <placeholder type=\"variablelist\" id=" -"\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:1170 -msgid "The local domain section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:1172 -msgid "" -"This section contains settings for domain that stores users and groups in " -"SSSD native database, that is, a domain that uses " -"<replaceable>id_provider=local</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1179 -msgid "default_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1182 -msgid "The default shell for users created with SSSD userspace tools." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1186 -msgid "Default: <filename>/bin/bash</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1191 -msgid "base_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1194 -msgid "" -"The tools append the login name to <replaceable>base_directory</replaceable> " -"and use that as the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1199 -msgid "Default: <filename>/home</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1204 -msgid "create_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1207 -msgid "" -"Indicate if a home directory should be created by default for new users. " -"Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1211 sssd.conf.5.xml:1223 -msgid "Default: TRUE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1216 -msgid "remove_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1219 -msgid "" -"Indicate if a home directory should be removed by default for deleted " -"users. Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1228 -msgid "homedir_umask (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1231 -msgid "" -"Used by <citerefentry> <refentrytitle>sss_useradd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry> to specify the default permissions " -"on a newly created home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1239 -msgid "Default: 077" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1244 -msgid "skel_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1247 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<citerefentry> <refentrytitle>sss_useradd</refentrytitle> <manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1257 -msgid "Default: <filename>/etc/skel</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1262 -msgid "mail_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1265 -msgid "" -"The mail spool directory. This is needed to manipulate the mailbox when its " -"corresponding user account is modified or deleted. If not specified, a " -"default value is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1272 -msgid "Default: <filename>/var/mail</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1277 -msgid "userdel_cmd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1280 -msgid "" -"The command that is run after a user is removed. The command us passed the " -"username of the user being removed as the first and only parameter. The " -"return code of the command is not taken into account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1286 -msgid "Default: None, no command is run" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:1296 sssd-ldap.5.xml:2064 sssd-simple.5.xml:126 -#: sssd-ipa.5.xml:544 sssd-krb5.5.xml:432 -msgid "EXAMPLE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:1302 -#, no-wrap -msgid "" -"[sssd]\n" -"domains = LDAP\n" -"services = nss, pam\n" -"config_file_version = 2\n" -"\n" -"[nss]\n" -"filter_groups = root\n" -"filter_users = root\n" -"\n" -"[pam]\n" -"\n" -"[domain/LDAP]\n" -"id_provider = ldap\n" -"ldap_uri = ldap://ldap.example.com\n" -"ldap_search_base = dc=example,dc=com\n" -"\n" -"auth_provider = krb5\n" -"krb5_server = kerberos.example.com\n" -"krb5_realm = EXAMPLE.COM\n" -"cache_credentials = true\n" -"\n" -"min_id = 10000\n" -"max_id = 20000\n" -"enumerate = False\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1298 -msgid "" -"The following example shows a typical SSSD config. It does not describe " -"configuration of the domains themselves - refer to documentation on " -"configuring domains for more details. <placeholder type=\"programlisting\" " -"id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1333 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>pam_sss</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ldap.5.xml:10 sssd-ldap.5.xml:16 -msgid "sssd-ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:23 -msgid "" -"This manual page describes the configuration of LDAP domains for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. Refer to the <quote>FILE FORMAT</quote> section of the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for detailed syntax information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:35 -msgid "You can configure SSSD to use more than one LDAP domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:38 -msgid "" -"LDAP back end supports id, auth, access and chpass providers. If you want to " -"authenticate against an LDAP server either TLS/SSL or LDAPS is required. " -"<command>sssd</command> <emphasis>does not</emphasis> support authentication " -"over an unencrypted channel. If the LDAP server is used only as an identity " -"provider, an encrypted channel is not needed. Please refer to " -"<quote>ldap_access_filter</quote> config option for more information about " -"using LDAP as an access provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:49 sssd-simple.5.xml:69 sssd-ipa.5.xml:64 -#: sssd-krb5.5.xml:63 -msgid "CONFIGURATION OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:60 -msgid "ldap_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:63 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference. Refer to the <quote>FAILOVER</" -"quote> section for more information on failover and server redundancy. If " -"not specified, service discovery is enabled. For more information, refer to " -"the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:70 -msgid "The format of the URI must match the format defined in RFC 2732:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:73 -msgid "ldap[s]://<host>[:port]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:76 -msgid "" -"For explicit IPv6 addresses, <host> must be enclosed in brackets []" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:79 -msgid "example: ldap://[fc00::126:25]:389" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:85 -msgid "ldap_chpass_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:88 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference to change the password of a user. " -"Refer to the <quote>FAILOVER</quote> section for more information on " -"failover and server redundancy." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:95 -msgid "To enable service discovery ldap_chpass_dns_service_name must be set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:99 -msgid "Default: empty, i.e. ldap_uri is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:105 -msgid "ldap_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:108 -msgid "The default base DN to use for performing LDAP user operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:112 -msgid "" -"Starting with SSSD 1.7.0, SSSD supports multiple search bases using the " -"syntax:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:116 -msgid "search_base[?scope?[filter][?search_base?scope?[filter]]*]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:119 -msgid "The scope can be one of \"base\", \"onelevel\" or \"subtree\"." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:122 -msgid "" -"The filter must be a valid LDAP search filter as specified by http://www." -"ietf.org/rfc/rfc2254.txt" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:126 -msgid "Examples:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:129 -msgid "" -"ldap_search_base = dc=example,dc=com (which is equivalent to) " -"ldap_search_base = dc=example,dc=com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:134 -msgid "" -"ldap_search_base = cn=host_specific,dc=example,dc=com?subtree?" -"(host=thishost)?dc=example.com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:137 -msgid "" -"Note: It is unsupported to have multiple search bases which reference " -"identically-named objects (for example, groups with the same name in two " -"different search bases). This will lead to unpredictable behavior on client " -"machines." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:144 -msgid "" -"Default: If not set, the value of the defaultNamingContext or namingContexts " -"attribute from the RootDSE of the LDAP server is used. If " -"defaultNamingContext does not exists or has an empty value namingContexts is " -"used. The namingContexts attribute must have a single value with the DN of " -"the search base of the LDAP server to make this work. Multiple values are " -"are not supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:158 -msgid "ldap_schema (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:161 -msgid "" -"Specifies the Schema Type in use on the target LDAP server. Depending on " -"the selected schema, the default attribute names retrieved from the servers " -"may vary. The way that some attributes are handled may also differ. Three " -"schema types are currently supported: rfc2307 rfc2307bis IPA The main " -"difference between these schema types is how group memberships are recorded " -"in the server. With rfc2307, group members are listed by name in the " -"<emphasis>memberUid</emphasis> attribute. With rfc2307bis and IPA, group " -"members are listed by DN and stored in the <emphasis>member</emphasis> " -"attribute." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:180 -msgid "Default: rfc2307" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:186 -msgid "ldap_default_bind_dn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:189 -msgid "The default bind DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:196 -msgid "ldap_default_authtok_type (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:199 -msgid "The type of the authentication token of the default bind DN." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:203 -msgid "The two mechanisms currently supported are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:206 -msgid "password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:209 -msgid "obfuscated_password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:212 -msgid "Default: password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:218 -msgid "ldap_default_authtok (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:221 -msgid "" -"The authentication token of the default bind DN. Only clear text passwords " -"are currently supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:228 -msgid "ldap_user_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:231 -msgid "The object class of a user entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:234 -msgid "Default: posixAccount" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:240 -msgid "ldap_user_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:243 -msgid "The LDAP attribute that corresponds to the user's login name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:247 -msgid "Default: uid" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:253 -msgid "ldap_user_uid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:256 -msgid "The LDAP attribute that corresponds to the user's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:260 -msgid "Default: uidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:266 -msgid "ldap_user_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:269 -msgid "The LDAP attribute that corresponds to the user's primary group id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:273 sssd-ldap.5.xml:740 -msgid "Default: gidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:279 -msgid "ldap_user_gecos (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:282 -msgid "The LDAP attribute that corresponds to the user's gecos field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:286 -msgid "Default: gecos" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:292 -msgid "ldap_user_home_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:295 -msgid "The LDAP attribute that contains the name of the user's home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:299 -msgid "Default: homeDirectory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:305 -msgid "ldap_user_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:308 -msgid "The LDAP attribute that contains the path to the user's default shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:312 -msgid "Default: loginShell" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:318 -msgid "ldap_user_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:321 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP user object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:325 sssd-ldap.5.xml:766 sssd-ldap.5.xml:878 -msgid "Default: nsUniqueId" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:331 -msgid "ldap_user_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:334 sssd-ldap.5.xml:775 sssd-ldap.5.xml:887 -msgid "" -"The LDAP attribute that contains timestamp of the last modification of the " -"parent object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:338 sssd-ldap.5.xml:779 sssd-ldap.5.xml:894 -msgid "Default: modifyTimestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:344 -msgid "ldap_user_shadow_last_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:347 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (date of " -"the last password change)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:357 -msgid "Default: shadowLastChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:363 -msgid "ldap_user_shadow_min (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:366 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (minimum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:375 -msgid "Default: shadowMin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:381 -msgid "ldap_user_shadow_max (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:384 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (maximum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:393 -msgid "Default: shadowMax" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:399 -msgid "ldap_user_shadow_warning (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:402 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password warning period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:412 -msgid "Default: shadowWarning" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:418 -msgid "ldap_user_shadow_inactive (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:421 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password inactivity period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:431 -msgid "Default: shadowInactive" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:437 -msgid "ldap_user_shadow_expire (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:440 -msgid "" -"When using ldap_pwd_policy=shadow or ldap_account_expire_policy=shadow, this " -"parameter contains the name of an LDAP attribute corresponding to its " -"<citerefentry> <refentrytitle>shadow</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> counterpart (account expiration date)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:450 -msgid "Default: shadowExpire" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:456 -msgid "ldap_user_krb_last_pwd_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:459 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time of last password change in " -"kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:465 -msgid "Default: krbLastPwdChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:471 -msgid "ldap_user_krb_password_expiration (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:474 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time when current password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:480 -msgid "Default: krbPasswordExpiration" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:486 -msgid "ldap_user_ad_account_expires (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:489 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the expiration time of the account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:494 -msgid "Default: accountExpires" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:500 -msgid "ldap_user_ad_user_account_control (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:503 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the user account control bit field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:508 -msgid "Default: userAccountControl" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:514 -msgid "ldap_ns_account_lock (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:517 -msgid "" -"When using ldap_account_expire_policy=rhds or equivalent, this parameter " -"determines if access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:522 -msgid "Default: nsAccountLock" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:528 -msgid "ldap_user_nds_login_disabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:531 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines if " -"access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:535 sssd-ldap.5.xml:549 -msgid "Default: loginDisabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:541 -msgid "ldap_user_nds_login_expiration_time (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:544 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines until " -"which date access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:555 -msgid "ldap_user_nds_login_allowed_time_map (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:558 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines the " -"hours of a day in a week when access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:563 -msgid "Default: loginAllowedTimeMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:569 -msgid "ldap_user_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:572 -msgid "" -"The LDAP attribute that contains the user's Kerberos User Principal Name " -"(UPN)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:576 -msgid "Default: krbPrincipalName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:582 -msgid "ldap_user_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:585 -msgid "The LDAP attribute that contains the user's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:592 -msgid "ldap_force_upper_case_realm (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:595 -msgid "" -"Some directory servers, for example Active Directory, might deliver the " -"realm part of the UPN in lower case, which might cause the authentication to " -"fail. Set this option to a non-zero value if you want to use an upper-case " -"realm." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:608 -msgid "ldap_enumeration_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:611 -msgid "" -"Specifies how many seconds SSSD has to wait before refreshing its cache of " -"enumerated records." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:616 sssd-ldap.5.xml:1808 -msgid "Default: 300" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:622 -msgid "ldap_purge_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:625 -msgid "" -"Determine how often to check the cache for inactive entries (such as groups " -"with no members and users who have never logged in) and remove them to save " -"space." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:631 -msgid "Setting this option to zero will disable the cache cleanup operation." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:635 -msgid "Default: 10800 (12 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:641 -msgid "ldap_user_fullname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:644 -msgid "The LDAP attribute that corresponds to the user's full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:648 sssd-ldap.5.xml:727 sssd-ldap.5.xml:828 -#: sssd-ldap.5.xml:919 sssd-ldap.5.xml:1663 sssd-ldap.5.xml:1881 -#: sssd-ipa.5.xml:422 -msgid "Default: cn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:654 -msgid "ldap_user_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:657 -msgid "The LDAP attribute that lists the user's group memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:661 sssd-ipa.5.xml:326 -msgid "Default: memberOf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:667 -msgid "ldap_user_authorized_service (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:670 -msgid "" -"If access_provider=ldap and ldap_access_order=authorized_service, SSSD will " -"use the presence of the authorizedService attribute in the user's LDAP entry " -"to determine access privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:677 -msgid "" -"An explicit deny (!svc) is resolved first. Second, SSSD searches for " -"explicit allow (svc) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:682 -msgid "Default: authorizedService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:688 -msgid "ldap_user_authorized_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:691 -msgid "" -"If access_provider=ldap and ldap_access_order=host, SSSD will use the " -"presence of the host attribute in the user's LDAP entry to determine access " -"privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:697 -msgid "" -"An explicit deny (!host) is resolved first. Second, SSSD searches for " -"explicit allow (host) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:702 -msgid "Default: host" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:708 -msgid "ldap_group_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:711 -msgid "The object class of a group entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:714 -msgid "Default: posixGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:720 -msgid "ldap_group_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:723 -msgid "The LDAP attribute that corresponds to the group name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:733 -msgid "ldap_group_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:736 -msgid "The LDAP attribute that corresponds to the group's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:746 -msgid "ldap_group_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:749 -msgid "The LDAP attribute that contains the names of the group's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:753 -msgid "Default: memberuid (rfc2307) / member (rfc2307bis)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:759 -msgid "ldap_group_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:762 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP group object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:772 -msgid "ldap_group_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:785 -msgid "ldap_group_nesting_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:788 -msgid "" -"If ldap_schema is set to a schema format that supports nested groups (e.g. " -"RFC2307bis), then this option controls how many levels of nesting SSSD will " -"follow. This option has no effect on the RFC2307 schema." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:795 -msgid "Default: 2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:801 -msgid "ldap_netgroup_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:804 -msgid "The object class of a netgroup entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:807 -msgid "In IPA provider, ipa_netgroup_object_class should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:811 -msgid "Default: nisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:817 -msgid "ldap_netgroup_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:820 -msgid "The LDAP attribute that corresponds to the netgroup name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:824 -msgid "In IPA provider, ipa_netgroup_name should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:834 -msgid "ldap_netgroup_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:837 -msgid "The LDAP attribute that contains the names of the netgroup's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:841 -msgid "In IPA provider, ipa_netgroup_member should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:845 -msgid "Default: memberNisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:851 -msgid "ldap_netgroup_triple (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:854 -msgid "" -"The LDAP attribute that contains the (host, user, domain) netgroup triples." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:858 sssd-ldap.5.xml:891 -msgid "This option is not available in IPA provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:861 -msgid "Default: nisNetgroupTriple" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:867 -msgid "ldap_netgroup_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:870 -msgid "" -"The LDAP attribute that contains the UUID/GUID of an LDAP netgroup object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:874 -msgid "In IPA provider, ipa_netgroup_uuid should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:884 -msgid "ldap_netgroup_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:900 -msgid "ldap_service_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:903 -msgid "The object class of a service entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:906 -msgid "Default: ipService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:912 -msgid "ldap_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:915 -msgid "" -"The LDAP attribute that contains the name of service attributes and their " -"aliases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:925 -msgid "ldap_service_port (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:928 -msgid "The LDAP attribute that contains the port managed by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:932 -msgid "Default: ipServicePort" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:938 -msgid "ldap_service_proto (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:941 -msgid "" -"The LDAP attribute that contains the protocols understood by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:945 -msgid "Default: ipServiceProtocol" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:951 -msgid "ldap_service_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:954 -msgid "An optional base DN to restrict service searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:958 sssd-ldap.5.xml:1918 sssd-ldap.5.xml:1937 -#: sssd-ldap.5.xml:1956 sssd-ldap.5.xml:2019 sssd-ldap.5.xml:2041 -#: sssd-ipa.5.xml:163 sssd-ipa.5.xml:187 -msgid "" -"See <quote>ldap_search_base</quote> for information about configuring " -"multiple search bases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:963 sssd-ldap.5.xml:1923 sssd-ldap.5.xml:1942 -#: sssd-ldap.5.xml:1961 sssd-ldap.5.xml:2024 sssd-ldap.5.xml:2046 -#: sssd-ipa.5.xml:173 sssd-ipa.5.xml:192 -msgid "Default: the value of <emphasis>ldap_search_base</emphasis>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:970 -msgid "ldap_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:973 -msgid "" -"Specifies the timeout (in seconds) that ldap searches are allowed to run " -"before they are cancelled and cached results are returned (and offline mode " -"is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:979 -msgid "" -"Note: this option is subject to change in future versions of the SSSD. It " -"will likely be replaced at some point by a series of timeouts for specific " -"lookup types." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:985 sssd-ldap.5.xml:1027 sssd-ldap.5.xml:1042 -msgid "Default: 6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:991 -msgid "ldap_enumeration_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:994 -msgid "" -"Specifies the timeout (in seconds) that ldap searches for user and group " -"enumerations are allowed to run before they are cancelled and cached results " -"are returned (and offline mode is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1001 -msgid "Default: 60" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1007 -msgid "ldap_network_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1010 -msgid "" -"Specifies the timeout (in seconds) after which the <citerefentry> " -"<refentrytitle>poll</refentrytitle> <manvolnum>2</manvolnum> </citerefentry>/" -"<citerefentry> <refentrytitle>select</refentrytitle> <manvolnum>2</" -"manvolnum> </citerefentry> following a <citerefentry> " -"<refentrytitle>connect</refentrytitle> <manvolnum>2</manvolnum> </" -"citerefentry> returns in case of no activity." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1033 -msgid "ldap_opt_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1036 -msgid "" -"Specifies a timeout (in seconds) after which calls to synchronous LDAP APIs " -"will abort if no response is received. Also controls the timeout when " -"communicating with the KDC in case of SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1048 -msgid "ldap_connection_expire_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1051 -msgid "" -"Specifies a timeout (in seconds) that a connection to an LDAP server will be " -"maintained. After this time, the connection will be re-established. If used " -"in parallel with SASL/GSSAPI, the sooner of the two values (this value vs. " -"the TGT lifetime) will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1059 -msgid "Default: 900 (15 minutes)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1065 -msgid "ldap_page_size (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1068 -msgid "" -"Specify the number of records to retrieve from LDAP in a single request. " -"Some LDAP servers enforce a maximum limit per-request." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1073 -msgid "Default: 1000" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1079 -msgid "ldap_disable_paging" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1082 -msgid "" -"Disable the LDAP paging control. This option should be used if the LDAP " -"server reports that it supports the LDAP paging control in its RootDSE but " -"it is not enabled or does not behave properly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1088 -msgid "" -"Example: OpenLDAP servers with the paging control module installed on the " -"server but not enabled will report it in the RootDSE but be unable to use it." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1094 -msgid "" -"Example: 389 DS has a bug where it can only support a one paging control at " -"a time on a single connection. On busy clients, this can result in some " -"requests being denied." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1103 -msgid "ldap_deref_threshold (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1106 -msgid "" -"Specify the number of group members that must be missing from the internal " -"cache in order to trigger a dereference lookup. If less members are missing, " -"they are looked up individually." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1112 -msgid "" -"You can turn off dereference lookups completely by setting the value to 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1116 -msgid "" -"A dereference lookup is a means of fetching all group members in a single " -"LDAP call. Different LDAP servers may implement different dereference " -"methods. The currently supported servers are 389/RHDS, OpenLDAP and Active " -"Directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1124 -msgid "" -"<emphasis>Note:</emphasis> If any of the search bases specifies a search " -"filter, then the dereference lookup performance enhancement will be disabled " -"regardless of this setting." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1137 -msgid "ldap_tls_reqcert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1140 -msgid "" -"Specifies what checks to perform on server certificates in a TLS session, if " -"any. It can be specified as one of the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1146 -msgid "" -"<emphasis>never</emphasis> = The client will not request or check any server " -"certificate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1150 -msgid "" -"<emphasis>allow</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, it will be ignored and the session proceeds normally." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1157 -msgid "" -"<emphasis>try</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, the session is immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1163 -msgid "" -"<emphasis>demand</emphasis> = The server certificate is requested. If no " -"certificate is provided, or a bad certificate is provided, the session is " -"immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1169 -msgid "<emphasis>hard</emphasis> = Same as <quote>demand</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1173 -msgid "Default: hard" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1179 -msgid "ldap_tls_cacert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1182 -msgid "" -"Specifies the file that contains certificates for all of the Certificate " -"Authorities that <command>sssd</command> will recognize." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1187 sssd-ldap.5.xml:1205 sssd-ldap.5.xml:1246 -msgid "" -"Default: use OpenLDAP defaults, typically in <filename>/etc/openldap/ldap." -"conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1194 -msgid "ldap_tls_cacertdir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1197 -msgid "" -"Specifies the path of a directory that contains Certificate Authority " -"certificates in separate individual files. Typically the file names need to " -"be the hash of the certificate followed by '.0'. If available, " -"<command>cacertdir_rehash</command> can be used to create the correct names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1212 -msgid "ldap_tls_cert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1215 -msgid "Specifies the file that contains the certificate for the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1219 sssd-ldap.5.xml:1231 sssd-ldap.5.xml:1979 -#: sssd-ldap.5.xml:2006 sssd-krb5.5.xml:359 -msgid "Default: not set" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1225 -msgid "ldap_tls_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1228 -msgid "Specifies the file that contains the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1237 -msgid "ldap_tls_cipher_suite (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1240 -msgid "" -"Specifies acceptable cipher suites. Typically this is a colon sperated " -"list. See <citerefentry><refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> for format." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1253 -msgid "ldap_id_use_start_tls (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1256 -msgid "" -"Specifies that the id_provider connection must also use <systemitem class=" -"\"protocol\">tls</systemitem> to protect the channel." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1266 -msgid "ldap_sasl_mech (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1269 -msgid "" -"Specify the SASL mechanism to use. Currently only GSSAPI is tested and " -"supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1273 sssd-ldap.5.xml:1428 -msgid "Default: none" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1279 -msgid "ldap_sasl_authid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1282 -msgid "" -"Specify the SASL authorization id to use. When GSSAPI is used, this " -"represents the Kerberos principal used for authentication to the directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1287 -msgid "Default: host/machine.fqdn@REALM" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1293 -msgid "ldap_sasl_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1296 -msgid "" -"If set to true, the LDAP library would perform a reverse lookup to " -"canonicalize the host name during a SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1301 -msgid "Default: false;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1307 -msgid "ldap_krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1310 -msgid "Specify the keytab to use when using SASL/GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1313 -msgid "Default: System keytab, normally <filename>/etc/krb5.keytab</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1319 -msgid "ldap_krb5_init_creds (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1322 -msgid "" -"Specifies that the id_provider should init Kerberos credentials (TGT). This " -"action is performed only if SASL is used and the mechanism selected is " -"GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1334 -msgid "ldap_krb5_ticket_lifetime (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1337 -msgid "Specifies the lifetime in seconds of the TGT if GSSAPI is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1341 -msgid "Default: 86400 (24 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1347 sssd-krb5.5.xml:74 -msgid "krb5_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1350 sssd-krb5.5.xml:77 -msgid "" -"Specifies the comma-separated list of IP addresses or hostnames of the " -"Kerberos servers to which SSSD should connect in the order of preference. " -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. An optional port number (preceded by a " -"colon) may be appended to the addresses or hostnames. If empty, service " -"discovery is enabled - for more information, refer to the <quote>SERVICE " -"DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1362 sssd-krb5.5.xml:89 -msgid "" -"When using service discovery for KDC or kpasswd servers, SSSD first searches " -"for DNS entries that specify _udp as the protocol and falls back to _tcp if " -"none are found." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1367 sssd-krb5.5.xml:94 -msgid "" -"This option was named <quote>krb5_kdcip</quote> in earlier releases of SSSD. " -"While the legacy name is recognized for the time being, users are advised to " -"migrate their config files to use <quote>krb5_server</quote> instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1376 sssd-ipa.5.xml:216 sssd-krb5.5.xml:103 -msgid "krb5_realm (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1379 -msgid "Specify the Kerberos REALM (for SASL/GSSAPI auth)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1382 -msgid "Default: System defaults, see <filename>/etc/krb5.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1388 sssd-ipa.5.xml:231 sssd-krb5.5.xml:409 -msgid "krb5_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1391 -msgid "" -"Specifies if the host principal should be canonicalized when connecting to " -"LDAP server. This feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1403 -msgid "ldap_pwd_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1406 -msgid "" -"Select the policy to evaluate the password expiration on the client side. " -"The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1411 -msgid "" -"<emphasis>none</emphasis> - No evaluation on the client side. This option " -"cannot disable server-side password policies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1416 -msgid "" -"<emphasis>shadow</emphasis> - Use <citerefentry><refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum></citerefentry> style attributes to " -"evaluate if the password has expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1422 -msgid "" -"<emphasis>mit_kerberos</emphasis> - Use the attributes used by MIT Kerberos " -"to determine if the password has expired. Use chpass_provider=krb5 to update " -"these attributes when the password is changed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1434 -msgid "ldap_referrals (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1437 -msgid "Specifies whether automatic referral chasing should be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1441 -msgid "" -"Please note that sssd only supports referral chasing when it is compiled " -"with OpenLDAP version 2.4.13 or higher." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1452 -msgid "ldap_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1455 -msgid "Specifies the service name to use when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1459 -msgid "Default: ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1465 -msgid "ldap_chpass_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1468 -msgid "" -"Specifies the service name to use to find an LDAP server which allows " -"password changes when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1473 -msgid "Default: not set, i.e. service discovery is disabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1479 -msgid "ldap_access_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1482 -msgid "" -"If using access_provider = ldap, this option is mandatory. It specifies an " -"LDAP search filter criteria that must be met for the user to be granted " -"access on this host. If access_provider = ldap and this option is not set, " -"it will result in all users being denied access. Use access_provider = allow " -"to change this default behavior." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1492 sssd-ldap.5.xml:1982 -msgid "Example:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1495 -#, no-wrap -msgid "" -"access_provider = ldap\n" -"ldap_access_filter = memberOf=cn=allowedusers,ou=Groups,dc=example,dc=com\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1499 -msgid "" -"This example means that access to this host is restricted to members of the " -"\"allowedusers\" group in ldap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1504 -msgid "" -"Offline caching for this feature is limited to determining whether the " -"user's last online login was granted access permission. If they were granted " -"access during their last login, they will continue to be granted access " -"while offline and vice-versa." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1512 sssd-ldap.5.xml:1562 -msgid "Default: Empty" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1518 -msgid "ldap_account_expire_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1521 -msgid "" -"With this option a client side evaluation of access control attributes can " -"be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1525 -msgid "" -"Please note that it is always recommended to use server side access control, " -"i.e. the LDAP server should deny the bind request with a suitable error code " -"even if the password is correct." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1532 -msgid "The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1535 -msgid "" -"<emphasis>shadow</emphasis>: use the value of ldap_user_shadow_expire to " -"determine if the account is expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1540 -msgid "" -"<emphasis>ad</emphasis>: use the value of the 32bit field " -"ldap_user_ad_user_account_control and allow access if the second bit is not " -"set. If the attribute is missing access is granted. Also the expiration time " -"of the account is checked." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1547 -msgid "" -"<emphasis>rhds</emphasis>, <emphasis>ipa</emphasis>, <emphasis>389ds</" -"emphasis>: use the value of ldap_ns_account_lock to check if access is " -"allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1553 -msgid "" -"<emphasis>nds</emphasis>: the values of " -"ldap_user_nds_login_allowed_time_map, ldap_user_nds_login_disabled and " -"ldap_user_nds_login_expiration_time are used to check if access is allowed. " -"If both attributes are missing access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1568 -msgid "ldap_access_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1571 -msgid "Comma separated list of access control options. Allowed values are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1575 -msgid "<emphasis>filter</emphasis>: use ldap_access_filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1578 -msgid "<emphasis>expire</emphasis>: use ldap_account_expire_policy" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1582 -msgid "" -"<emphasis>authorized_service</emphasis>: use the authorizedService attribute " -"to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1587 -msgid "<emphasis>host</emphasis>: use the host attribute to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1591 -msgid "Default: filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1594 -msgid "" -"Please note that it is a configuration error if a value is used more than " -"once." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1601 -msgid "ldap_deref (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1604 -msgid "" -"Specifies how alias dereferencing is done when performing a search. The " -"following options are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1609 -msgid "<emphasis>never</emphasis>: Aliases are never dereferenced." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1613 -msgid "" -"<emphasis>searching</emphasis>: Aliases are dereferenced in subordinates of " -"the base object, but not in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1618 -msgid "" -"<emphasis>finding</emphasis>: Aliases are only dereferenced when locating " -"the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1623 -msgid "" -"<emphasis>always</emphasis>: Aliases are dereferenced both in searching and " -"in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1628 -msgid "" -"Default: Empty (this is handled as <emphasis>never</emphasis> by the LDAP " -"client libraries)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:51 -msgid "" -"All of the common configuration options that apply to SSSD domains also " -"apply to LDAP domains. Refer to the <quote>DOMAIN SECTIONS</quote> section " -"of the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for full details. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1639 -msgid "SUDO OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1644 -msgid "ldap_sudorule_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1647 -msgid "The object class of a sudo rule entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1650 -msgid "Default: sudoRole" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1656 -msgid "ldap_sudorule_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1659 -msgid "The LDAP attribute that corresponds to the sudo rule name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1669 -msgid "ldap_sudorule_command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1672 -msgid "The LDAP attribute that corresponds to the command name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1676 -msgid "Default: sudoCommand" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1682 -msgid "ldap_sudorule_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1685 -msgid "" -"The LDAP attribute that corresponds to the host name (or host IP address, " -"host IP network, or host netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1690 -msgid "Default: sudoHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1696 -msgid "ldap_sudorule_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1699 -msgid "" -"The LDAP attribute that corresponds to the user name (or UID, group name or " -"user's netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1703 -msgid "Default: sudoUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1709 -msgid "ldap_sudorule_option (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1712 -msgid "The LDAP attribute that corresponds to the sudo options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1716 -msgid "Default: sudoOption" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1722 -msgid "ldap_sudorule_runasuser (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1725 -msgid "" -"The LDAP attribute that corresponds to the user name that commands may be " -"run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1729 -msgid "Default: sudoRunAsUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1735 -msgid "ldap_sudorule_runasgroup (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1738 -msgid "" -"The LDAP attribute that corresponds to the group name or group GID that " -"commands may be run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1742 -msgid "Default: sudoRunAsGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1748 -msgid "ldap_sudorule_notbefore (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1751 -msgid "" -"The LDAP attribute that corresponds to the start date/time for when the sudo " -"rule is valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1755 -msgid "Default: sudoNotBefore" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1761 -msgid "ldap_sudorule_notafter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1764 -msgid "" -"The LDAP attribute that corresponds to the expiration date/time, after which " -"the sudo rule will no longer be valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1769 -msgid "Default: sudoNotAfter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1775 -msgid "ldap_sudorule_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1778 -msgid "The LDAP attribute that corresponds to the ordering index of the rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1782 -msgid "Default: sudoOrder" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1788 -msgid "ldap_sudo_refresh_enabled (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1791 -msgid "" -"Enables periodical download of all sudo rules. The cache is purged before " -"each update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1801 -msgid "ldap_sudo_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1804 -msgid "" -"How many seconds SSSD has to wait before refreshing its cache of sudo rules." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1642 -msgid "<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1815 -msgid "" -"This manual page only describes attribute name mapping. For detailed " -"explanation of sudo related attribute semantics, see <citerefentry> " -"<refentrytitle>sudoers.ldap</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1825 -msgid "AUTOFS OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1827 -msgid "" -"Please note that the default values correspond to the default schema which " -"is RFC2307." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1834 -msgid "ldap_autofs_map_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1837 sssd-ldap.5.xml:1863 -msgid "The object class of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1840 sssd-ldap.5.xml:1867 -msgid "Default: automountMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1847 -msgid "ldap_autofs_map_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1850 -msgid "The name of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1853 -msgid "Default: ou" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1860 -msgid "ldap_autofs_entry_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1874 -msgid "ldap_autofs_entry_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1877 sssd-ldap.5.xml:1891 -msgid "" -"The key of an automount entry in LDAP. The entry usually corresponds to a " -"mount point." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1888 -msgid "ldap_autofs_entry_value (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1895 -msgid "Default: automountInformation" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1832 -msgid "" -"<placeholder type=\"variablelist\" id=\"0\"/> <placeholder type=" -"\"variablelist\" id=\"1\"/> <placeholder type=\"variablelist\" id=\"2\"/> " -"<placeholder type=\"variablelist\" id=\"3\"/> <placeholder type=" -"\"variablelist\" id=\"4\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1904 -msgid "ADVANCED OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1911 -msgid "ldap_netgroup_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1914 -msgid "" -"An optional base DN to restrict netgroup searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1930 -msgid "ldap_user_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1933 -msgid "An optional base DN to restrict user searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1949 -msgid "ldap_group_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1952 -msgid "An optional base DN to restrict group searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1968 -msgid "ldap_user_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1971 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict user searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1975 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_user_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1985 -#, no-wrap -msgid "" -" ldap_user_search_filter = (loginShell=/bin/tcsh)\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1988 -msgid "" -"This filter would restrict user searches to users that have their shell set " -"to /bin/tcsh." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1995 -msgid "ldap_group_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1998 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict group searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2002 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_group_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2012 -msgid "ldap_sudo_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2015 -msgid "" -"An optional base DN to restrict sudo rules searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2034 -msgid "ldap_autofs_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2037 -msgid "" -"An optional base DN to restrict automounter searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1906 -msgid "" -"These options are supported by LDAP domains, but they should be used with " -"caution. Please include them in your configuration only if you know what you " -"are doing. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2066 -msgid "" -"The following example assumes that SSSD is correctly configured and LDAP is " -"set to one of the domains in the <replaceable>[domains]</replaceable> " -"section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ldap.5.xml:2072 -#, no-wrap -msgid "" -" [domain/LDAP]\n" -" id_provider = ldap\n" -" auth_provider = ldap\n" -" ldap_uri = ldap://ldap.mydomain.org\n" -" ldap_search_base = dc=mydomain,dc=org\n" -" ldap_tls_reqcert = demand\n" -" cache_credentials = true\n" -" enumerate = true\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2071 sssd-simple.5.xml:134 sssd-ipa.5.xml:552 -#: sssd-krb5.5.xml:441 -msgid "<placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:2085 sssd_krb5_locator_plugin.8.xml:61 -msgid "NOTES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2087 -msgid "" -"The descriptions of some of the configuration options in this manual page " -"are based on the <citerefentry> <refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page from the OpenLDAP 2.4 " -"distribution." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2098 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <refentryinfo> -#: pam_sss.8.xml:8 include/upstream.xml:2 -msgid "" -"<productname>SSSD</productname> <orgname>The SSSD upstream - http://" -"fedorahosted.org/sssd</orgname>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: pam_sss.8.xml:13 pam_sss.8.xml:18 -msgid "pam_sss" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: pam_sss.8.xml:19 -msgid "PAM module for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: pam_sss.8.xml:24 -msgid "" -"<command>pam_sss.so</command> <arg choice='opt'> <replaceable>quiet</" -"replaceable> </arg> <arg choice='opt'> <replaceable>forward_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_first_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_authtok</" -"replaceable> </arg> <arg choice='opt'> <replaceable>retry=N</replaceable> </" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:45 -msgid "" -"<command>pam_sss.so</command> is the PAM interface to the System Security " -"Services daemon (SSSD). Errors and results are logged through <command>syslog" -"(3)</command> with the LOG_AUTHPRIV facility." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:55 -msgid "<option>quiet</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:58 -msgid "Suppress log messages for unknown users." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:63 -msgid "<option>forward_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:66 -msgid "" -"If <option>forward_pass</option> is set the entered password is put on the " -"stack for other PAM modules to use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:73 -msgid "<option>use_first_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:76 -msgid "" -"The argument use_first_pass forces the module to use a previous stacked " -"modules password and will never prompt the user - if no password is " -"available or the password is not appropriate, the user will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:84 -msgid "<option>use_authtok</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:87 -msgid "" -"When password changing enforce the module to set the new password to the one " -"provided by a previously stacked password module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:94 -msgid "<option>retry=N</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:97 -msgid "" -"If specified the user is asked another N times for a password if " -"authentication fails. Default is 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:99 -msgid "" -"Please note that this option might not work as expected if the application " -"calling PAM handles the user dialog on its own. A typical example is " -"<command>sshd</command> with <option>PasswordAuthentication</option>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:110 -msgid "MODULE TYPES PROVIDED" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:111 -msgid "" -"All module types (<option>account</option>, <option>auth</option>, " -"<option>password</option> and <option>session</option>) are provided." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:117 -msgid "FILES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:118 -msgid "" -"If a password reset by root fails, because the corresponding SSSD provider " -"does not support password resets, an individual message can be displayed. " -"This message can e.g. contain instructions about how to reset a password." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:123 -msgid "" -"The message is read from the file <filename>pam_sss_pw_reset_message.LOC</" -"filename> where LOC stands for a locale string returned by <citerefentry> " -"<refentrytitle>setlocale</refentrytitle><manvolnum>3</manvolnum> </" -"citerefentry>. If there is no matching file the content of " -"<filename>pam_sss_pw_reset_message.txt</filename> is displayed. Root must be " -"the owner of the files and only root may have read and write permissions " -"while all other users must have only read permissions." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:133 -msgid "" -"These files are searched in the directory <filename>/etc/sssd/customize/" -"DOMAIN_NAME/</filename>. If no matching file is present a generic message is " -"displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:141 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd_krb5_locator_plugin.8.xml:10 sssd_krb5_locator_plugin.8.xml:15 -msgid "sssd_krb5_locator_plugin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:22 -msgid "" -"The Kerberos locator plugin <command>sssd_krb5_locator_plugin</command> is " -"used by the Kerberos provider of <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry> to tell the Kerberos " -"libraries what Realm and which KDC to use. Typically this is done in " -"<citerefentry> <refentrytitle>krb5.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> which is always read by the Kerberos libraries. " -"To simplify the configuration the Realm and the KDC can be defined in " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> as described in <citerefentry> " -"<refentrytitle>sssd-krb5.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry> puts the Realm and the name or IP address of the KDC into " -"the environment variables SSSD_KRB5_REALM and SSSD_KRB5_KDC respectively. " -"When <command>sssd_krb5_locator_plugin</command> is called by the kerberos " -"libraries it reads and evaluates these variables and returns them to the " -"libraries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:63 -msgid "" -"Not all Kerberos implementations support the use of plugins. If " -"<command>sssd_krb5_locator_plugin</command> is not available on your system " -"you have to edit /etc/krb5.conf to reflect your Kerberos setup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:69 -msgid "" -"If the environment variable SSSD_KRB5_LOCATOR_DEBUG is set to any value " -"debug messages will be sent to stderr." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:77 -msgid "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-simple.5.xml:10 sssd-simple.5.xml:16 -msgid "sssd-simple" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd-simple.5.xml:17 -msgid "the configuration file for SSSD's 'simple' access-control provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:24 -msgid "" -"This manual page describes the configuration of the simple access-control " -"provider for <citerefentry> <refentrytitle>sssd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry>. For a detailed syntax reference, " -"refer to the <quote>FILE FORMAT</quote> section of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:38 -msgid "" -"The simple access provider grants or denies access based on an access or " -"deny list of user or group names. The following rules apply:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:43 -msgid "If all lists are empty, access is granted" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:47 -msgid "" -"If any list is provided, the order of evaluation is allow,deny. This means " -"that any matching deny rule will supersede any matched allow rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:54 -msgid "" -"If either or both \"allow\" lists are provided, all users are denied unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:60 -msgid "" -"If only \"deny\" lists are provided, all users are granted access unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:78 -msgid "simple_allow_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:81 -msgid "Comma separated list of users who are allowed to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:88 -msgid "simple_deny_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:91 -msgid "Comma separated list of users who are explicitly denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:97 -msgid "simple_allow_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:100 -msgid "" -"Comma separated list of groups that are allowed to log in. This applies only " -"to groups within this SSSD domain. Local groups are not evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:108 -msgid "simple_deny_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:111 -msgid "" -"Comma separated list of groups that are explicitly denied access. This " -"applies only to groups within this SSSD domain. Local groups are not " -"evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:70 sssd-ipa.5.xml:65 -msgid "" -"Refer to the section <quote>DOMAIN SECTIONS</quote> of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page for details on the configuration of an SSSD " -"domain. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:120 -msgid "" -"Please note that it is an configuration error if both, simple_allow_users " -"and simple_deny_users, are defined." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:128 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the simple access provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-simple.5.xml:135 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" access_provider = simple\n" -" simple_allow_users = user1, user2\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:145 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ipa.5.xml:10 sssd-ipa.5.xml:16 -msgid "sssd-ipa" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:23 -msgid "" -"This manual page describes the configuration of the IPA provider for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. For a detailed syntax reference, refer to the <quote>FILE " -"FORMAT</quote> section of the <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:36 -msgid "" -"The IPA provider is a back end used to connect to an IPA server. (Refer to " -"the freeipa.org web site for information about IPA servers.) This provider " -"requires that the machine be joined to the IPA domain; configuration is " -"almost entirely self-discovered and obtained directly from the server." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:43 -msgid "" -"The IPA provider accepts the same options used by the <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> identity provider and the <citerefentry> <refentrytitle>sssd-" -"krb5</refentrytitle> <manvolnum>5</manvolnum> </citerefentry> authentication " -"provider with some exceptions described below." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:55 -msgid "" -"However, it is neither necessary nor recommended to set these options. IPA " -"provider can also be used as an access and chpass provider. As an access " -"provider it uses HBAC (host-based access control) rules. Please refer to " -"freeipa.org for more information about HBAC. No configuration of access " -"provider is required on the client side." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:72 -msgid "ipa_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:75 -msgid "" -"Specifies the name of the IPA domain. This is optional. If not provided, " -"the configuration domain name is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:83 -msgid "ipa_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:86 -msgid "" -"The comma-separated list of IP addresses or hostnames of the IPA servers to " -"which SSSD should connect in the order of preference. For more information " -"on failover and server redundancy, see the <quote>FAILOVER</quote> section. " -"This is optional if autodiscovery is enabled. For more information on " -"service discovery, refer to the the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:99 -msgid "ipa_hostname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:102 -msgid "" -"Optional. May be set on machines where the hostname(5) does not reflect the " -"fully qualified name used in the IPA domain to identify this host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:110 -msgid "ipa_dyndns_update (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:113 -msgid "" -"Optional. This option tells SSSD to automatically update the DNS server " -"built into FreeIPA v2 with the IP address of this client." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:118 -msgid "" -"NOTE: On older systems (such as RHEL 5), for this behavior to work reliably, " -"the default Kerberos realm must be set properly in /etc/krb5.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:129 -msgid "ipa_dyndns_iface (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:132 -msgid "" -"Optional. Applicable only when ipa_dyndns_update is true. Choose the " -"interface whose IP address should be used for dynamic DNS updates." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:137 -msgid "Default: Use the IP address of the IPA LDAP connection" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:143 -msgid "ipa_hbac_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:146 -msgid "Optional. Use the given string as search base for HBAC related objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:150 -msgid "Default: Use base DN" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:156 -msgid "ipa_host_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:159 -msgid "Optional. Use the given string as search base for host objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:168 -msgid "" -"If filter is given in any of search bases and " -"<emphasis>ipa_hbac_support_srchost</emphasis> is set to False, the filter " -"will be ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:180 -msgid "ipa_selinux_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:183 -msgid "Optional. Use the given string as search base for SELinux user maps." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:199 sssd-krb5.5.xml:229 -msgid "krb5_validate (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:202 sssd-krb5.5.xml:232 -msgid "" -"Verify with the help of krb5_keytab that the TGT obtained has not been " -"spoofed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:209 -msgid "" -"Note that this default differs from the traditional Kerberos provider back " -"end." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:219 -msgid "" -"The name of the Kerberos realm. This is optional and defaults to the value " -"of <quote>ipa_domain</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:223 -msgid "" -"The name of the Kerberos realm has a special meaning in IPA - it is " -"converted into the base DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:234 -msgid "" -"Specifies if the host and user principal should be canonicalized when " -"connecting to IPA LDAP and also for AS requests. This feature is available " -"with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:247 -msgid "ipa_hbac_refresh (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:250 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server. " -"This will reduce the latency and load on the IPA server if there are many " -"access-control requests made in a short period." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:257 -msgid "Default: 5 (seconds)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:262 -msgid "ipa_hbac_treat_deny_as (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:265 -msgid "" -"This option specifies how to treat the deprecated DENY-type HBAC rules. As " -"of FreeIPA v2.1, DENY rules are no longer supported on the server. All users " -"of FreeIPA will need to migrate their rules to use only the ALLOW rules. The " -"client will support two modes of operation during this transition period:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:274 -msgid "" -"<emphasis>DENY_ALL</emphasis>: If any HBAC DENY rules are detected, all " -"users will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:279 -msgid "" -"<emphasis>IGNORE</emphasis>: SSSD will ignore any DENY rules. Be very " -"careful with this option, as it may result in opening unintended access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:284 -msgid "Default: DENY_ALL" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:289 -msgid "ipa_hbac_support_srchost (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:292 -msgid "" -"If this is set to false, then srchost as given to SSSD by PAM will be " -"ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:296 -msgid "" -"Note that if set to <emphasis>False</emphasis>, this option casuses filters " -"given in <emphasis>ipa_host_search_base</emphasis> to be ignored;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:307 -msgid "ipa_automount_location (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:310 -msgid "The automounter location this IPA client will be using" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:313 -msgid "Default: The location named \"default\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:319 -msgid "ipa_netgroup_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:322 -msgid "The LDAP attribute that lists netgroup's memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:331 -msgid "ipa_netgroup_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:334 -msgid "" -"The LDAP attribute that lists system users and groups that are direct " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:339 sssd-ipa.5.xml:434 -msgid "Default: memberUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:344 -msgid "ipa_netgroup_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:347 -msgid "" -"The LDAP attribute that lists hosts and host groups that are direct members " -"of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:351 sssd-ipa.5.xml:446 -msgid "Default: memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:356 -msgid "ipa_netgroup_member_ext_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:359 -msgid "" -"The LDAP attribute that lists FQDNs of hosts and host groups that are " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:363 -msgid "Default: externalHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:368 -msgid "ipa_netgroup_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:371 -msgid "The LDAP attribute that contains NIS domain name of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:375 -msgid "Default: nisDomainName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:381 -msgid "ipa_host_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:384 sssd-ipa.5.xml:407 -msgid "The object class of a host entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:387 sssd-ipa.5.xml:410 -msgid "Default: ipaHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:392 -msgid "ipa_host_fqdn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:395 -msgid "The LDAP attribute that contains FQDN of the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:398 -msgid "Default: fqdn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:404 -msgid "ipa_selinux_usermap_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:415 -msgid "ipa_selinux_usermap_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:418 -msgid "The LDAP attribute that contains the name of SELinux usermap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:427 -msgid "ipa_selinux_usermap_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:430 -msgid "" -"The LDAP attribute that contains all users / groups this rule match against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:439 -msgid "ipa_selinux_usermap_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:442 -msgid "" -"The LDAP attribute that contains all hosts / hostgroups this rule match " -"against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:451 -msgid "ipa_selinux_usermap_see_also (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:454 -msgid "" -"The LDAP attribute that contains DN of HBAC rule which can be used for " -"matching instead of memberUser and memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:459 -msgid "Default: seeAlso" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:464 -msgid "ipa_selinux_usermap_selinux_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:467 -msgid "The LDAP attribute that contains SELinux user string itself." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:471 -msgid "Default: ipaSELinuxUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:476 -msgid "ipa_selinux_usermap_enabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:479 -msgid "" -"The LDAP attribute that contains whether or not is user map enabled for " -"usage." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:483 -msgid "Default: ipaEnabledFlag" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:488 -msgid "ipa_selinux_usermap_user_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:491 -msgid "The LDAP attribute that contains user category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:495 -msgid "Default: userCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:500 -msgid "ipa_selinux_usermap_host_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:503 -msgid "The LDAP attribute that contains host category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:507 -msgid "Default: hostCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:512 -msgid "ipa_selinux_usermap_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:515 -msgid "The LDAP attribute that contains unique ID of the user map." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:519 -msgid "Default: ipaUniqueID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:524 -msgid "ipa_host_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:527 -msgid "The LDAP attribute that contains the host's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:531 -msgid "Default: ipaSshPubKey" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:546 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the ipa provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ipa.5.xml:553 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" id_provider = ipa\n" -" ipa_server = ipaserver.example.com\n" -" ipa_hostname = myhost.example.com\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:564 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.8.xml:10 sssd.8.xml:15 -msgid "sssd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.8.xml:16 -msgid "System Security Services Daemon" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sssd.8.xml:21 -msgid "" -"<command>sssd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:31 -msgid "" -"<command>SSSD</command> provides a set of daemons to manage access to remote " -"directories and authentication mechanisms. It provides an NSS and PAM " -"interface toward the system and a pluggable backend system to connect to " -"multiple different account sources as well as D-Bus interface. It is also " -"the basis to provide client auditing and policy services for projects like " -"FreeIPA. It provides a more robust database to store local users as well as " -"extended user data." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:46 -msgid "" -"<option>-d</option>,<option>--debug-level</option> <replaceable>LEVEL</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:53 -msgid "<option>--debug-timestamps=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:57 -msgid "<emphasis>1</emphasis>: Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:60 -msgid "<emphasis>0</emphasis>: Disable timestamp in the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:69 -msgid "<option>--debug-microseconds=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:73 -msgid "" -"<emphasis>1</emphasis>: Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:76 -msgid "<emphasis>0</emphasis>: Disable microseconds in timestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:79 -msgid "Default: 0" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:85 -msgid "<option>-f</option>,<option>--debug-to-files</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:89 -msgid "" -"Send the debug output to files instead of stderr. By default, the log files " -"are stored in <filename>/var/log/sssd</filename> and there are separate log " -"files for every SSSD service and domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:97 -msgid "<option>-D</option>,<option>--daemon</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:101 -msgid "Become a daemon after starting up." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:107 -msgid "<option>-i</option>,<option>--interactive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:111 -msgid "Run in the foreground, don't become a daemon." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:117 sss_debuglevel.8.xml:42 -msgid "<option>-c</option>,<option>--config</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:121 sss_debuglevel.8.xml:46 -msgid "" -"Specify a non-default config file. The default is <filename>/etc/sssd/sssd." -"conf</filename>. For reference on the config file syntax and options, " -"consult the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:135 -msgid "<option>--version</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:139 -msgid "Print version number and exit." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.8.xml:147 -msgid "Signals" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:150 -msgid "SIGTERM/SIGINT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:153 -msgid "" -"Informs the SSSD to gracefully terminate all of its child processes and then " -"shut down the monitor." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:159 -msgid "SIGHUP" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:162 -msgid "" -"Tells the SSSD to stop writing to its current debug file descriptors and to " -"close and reopen them. This is meant to facilitate log rolling with programs " -"like logrotate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:170 -msgid "SIGUSR1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:173 -msgid "" -"Tells the SSSD to simulate offline operation for one minute. This is mostly " -"useful for testing purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:179 -msgid "SIGUSR2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:182 -msgid "" -"Tells the SSSD to go online immediately. This is mostly useful for testing " -"purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:193 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_obfuscate.8.xml:10 sss_obfuscate.8.xml:15 -msgid "sss_obfuscate" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_obfuscate.8.xml:16 -msgid "obfuscate a clear text password" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_obfuscate.8.xml:21 -msgid "" -"<command>sss_obfuscate</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>[PASSWORD]</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:32 -msgid "" -"<command>sss_obfuscate</command> converts a given password into human-" -"unreadable format and places it into appropriate domain section of the SSSD " -"config file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:37 -msgid "" -"The cleartext password is read from standard input or entered " -"interactively. The obfuscated password is put into " -"<quote>ldap_default_authtok</quote> parameter of a given SSSD domain and the " -"<quote>ldap_default_authtok_type</quote> parameter is set to " -"<quote>obfuscated_password</quote>. Refer to <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more details on these parameters." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:49 -msgid "" -"Please note that obfuscating the password provides <emphasis>no real " -"security benefit</emphasis> as it is still possible for an attacker to " -"reverse-engineer the password back. Using better authentication mechanisms " -"such as client side certificates or GSSAPI is <emphasis>strongly</emphasis> " -"advised." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:63 -msgid "<option>-s</option>,<option>--stdin</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:67 -msgid "The password to obfuscate will be read from standard input." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:74 sss_ssh_authorizedkeys.1.xml:82 -#: sss_ssh_knownhostsproxy.1.xml:81 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>DOMAIN</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:79 -msgid "" -"The SSSD domain to use the password in. The default name is <quote>default</" -"quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:86 -msgid "" -"<option>-f</option>,<option>--file</option> <replaceable>FILE</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:91 -msgid "Read the config file specified by the positional parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:95 -msgid "Default: <filename>/etc/sssd/sssd.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:105 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_useradd.8.xml:10 sss_useradd.8.xml:15 -msgid "sss_useradd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_useradd.8.xml:16 -msgid "create a new user" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_useradd.8.xml:21 -msgid "" -"<command>sss_useradd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:32 -msgid "" -"<command>sss_useradd</command> creates a new user account using the values " -"specified on the command line plus the default values from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:43 -msgid "" -"<option>-u</option>,<option>--uid</option> <replaceable>UID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:48 -msgid "" -"Set the UID of the user to the value of <replaceable>UID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:55 sss_usermod.8.xml:43 -msgid "" -"<option>-c</option>,<option>--gecos</option> <replaceable>COMMENT</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:60 sss_usermod.8.xml:48 -msgid "" -"Any text string describing the user. Often used as the field for the user's " -"full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:67 sss_usermod.8.xml:55 -msgid "" -"<option>-h</option>,<option>--home</option> <replaceable>HOME_DIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:72 -msgid "" -"The home directory of the user account. The default is to append the " -"<replaceable>LOGIN</replaceable> name to <filename>/home</filename> and use " -"that as the home directory. The base that is prepended before " -"<replaceable>LOGIN</replaceable> is tunable with <quote>user_defaults/" -"baseDirectory</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:82 sss_usermod.8.xml:66 -msgid "" -"<option>-s</option>,<option>--shell</option> <replaceable>SHELL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:87 -msgid "" -"The user's login shell. The default is currently <filename>/bin/bash</" -"filename>. The default can be changed with <quote>user_defaults/" -"defaultShell</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:96 -msgid "" -"<option>-G</option>,<option>--groups</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:101 -msgid "A list of existing groups this user is also a member of." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:107 -msgid "<option>-m</option>,<option>--create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:111 -msgid "" -"Create the user's home directory if it does not exist. The files and " -"directories contained in the skeleton directory (which can be defined with " -"the -k option or in the config file) will be copied to the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:121 -msgid "<option>-M</option>,<option>--no-create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:125 -msgid "" -"Do not create the user's home directory. Overrides configuration settings." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:132 -msgid "" -"<option>-k</option>,<option>--skel</option> <replaceable>SKELDIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:137 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<command>sss_useradd</command>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:143 -msgid "" -"This option is only valid if the <option>-m</option> (or <option>--create-" -"home</option>) option is specified, or creation of home directories is set " -"to TRUE in the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:152 sss_usermod.8.xml:124 -msgid "" -"<option>-Z</option>,<option>--selinux-user</option> " -"<replaceable>SELINUX_USER</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:157 -msgid "" -"The SELinux user for the user's login. If not specified, the system default " -"will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:169 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-krb5.5.xml:10 sssd-krb5.5.xml:16 -msgid "sssd-krb5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:23 -msgid "" -"This manual page describes the configuration of the Kerberos 5 " -"authentication backend for <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry>. For a detailed " -"syntax reference, please refer to the <quote>FILE FORMAT</quote> section of " -"the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:36 -msgid "" -"The Kerberos 5 authentication backend contains auth and chpass providers. It " -"must be paired with identity provider in order to function properly (for " -"example, id_provider = ldap). Some information required by the Kerberos 5 " -"authentication backend must be provided by the identity provider, such as " -"the user's Kerberos Principal Name (UPN). The configuration of the identity " -"provider should have an entry to specify the UPN. Please refer to the man " -"page for the applicable identity provider for details on how to configure " -"this." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:47 -msgid "" -"This backend also provides access control based on the .k5login file in the " -"home directory of the user. See <citerefentry> <refentrytitle>.k5login</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry> for more details. " -"Please note that an empty .k5login file will deny all access to this user. " -"To activate this feature use 'access_provider = krb5' in your sssd " -"configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:55 -msgid "" -"In the case where the UPN is not available in the identity backend " -"<command>sssd</command> will construct a UPN using the format " -"<replaceable>username</replaceable>@<replaceable>krb5_realm</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:106 -msgid "" -"The name of the Kerberos realm. This option is required and must be " -"specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:113 -msgid "krb5_kpasswd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:116 -msgid "" -"If the change password service is not running on the KDC alternative servers " -"can be defined here. An optional port number (preceded by a colon) may be " -"appended to the addresses or hostnames." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:122 -msgid "" -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. Please note that even if there are no more " -"kpasswd servers to try the back end is not switch to offline if " -"authentication against the KDC is still possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:129 -msgid "Default: Use the KDC" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:135 -msgid "krb5_ccachedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:138 -msgid "" -"Directory to store credential caches. All the substitution sequences of " -"krb5_ccname_template can be used here, too, except %d and %P. If the " -"directory does not exist it will be created. If %u, %U, %p or %h are used a " -"private directory belonging to the user is created. Otherwise a public " -"directory with restricted deletion flag (aka sticky bit, see <citerefentry> " -"<refentrytitle>chmod</refentrytitle> <manvolnum>1</manvolnum> </" -"citerefentry> for details) is created." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:151 -msgid "Default: /tmp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:157 -msgid "krb5_ccname_template (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:171 -msgid "login UID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:174 -msgid "%p" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:175 -msgid "principal name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:179 -msgid "%r" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:180 -msgid "realm name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:183 -msgid "%h" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:184 -msgid "home directory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:189 -msgid "value of krb5ccache_dir" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:194 -msgid "%P" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:195 -msgid "the process ID of the sssd client" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:160 -msgid "" -"Location of the user's credential cache. Currently only file based " -"credential caches are supported. In the template the following sequences are " -"substituted: <placeholder type=\"variablelist\" id=\"0\"/> If the template " -"ends with 'XXXXXX' mkstemp(3) is used to create a unique filename in a safe " -"way." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:209 -msgid "Default: FILE:%d/krb5cc_%U_XXXXXX" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:215 -msgid "krb5_auth_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:218 -msgid "" -"Timeout in seconds after an online authentication or change password request " -"is aborted. If possible the authentication request is continued offline." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:241 -msgid "krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:244 -msgid "" -"The location of the keytab to use when validating credentials obtained from " -"KDCs." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:248 -msgid "Default: /etc/krb5.keytab" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:254 -msgid "krb5_store_password_if_offline (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:257 -msgid "" -"Store the password of the user if the provider is offline and use it to " -"request a TGT when the provider gets online again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:262 -msgid "" -"Please note that this feature currently only available on a Linux platform. " -"Passwords stored in this way are kept in plaintext in the kernel keyring and " -"are potentially accessible by the root user (with difficulty)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:275 -msgid "krb5_renewable_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:278 -msgid "" -"Request a renewable ticket with a total lifetime given by an integer " -"immediately followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:283 sssd-krb5.5.xml:319 -msgid "<emphasis>s</emphasis> seconds" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:286 sssd-krb5.5.xml:322 -msgid "<emphasis>m</emphasis> minutes" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:289 sssd-krb5.5.xml:325 -msgid "<emphasis>h</emphasis> hours" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:292 sssd-krb5.5.xml:328 -msgid "<emphasis>d</emphasis> days." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:295 sssd-krb5.5.xml:331 -msgid "If there is no delimiter <emphasis>s</emphasis> is assumed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:299 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"renewable lifetime to one and a half hours please use '90m' instead of " -"'1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:305 -msgid "Default: not set, i.e. the TGT is not renewable" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:311 -msgid "krb5_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:314 -msgid "" -"Request ticket with a with a lifetime given by an integer immediately " -"followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:335 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"lifetime to one and a half hours please use '90m' instead of '1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:340 -msgid "" -"Default: not set, i.e. the default ticket lifetime configured on the KDC." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:347 -msgid "krb5_renew_interval (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:350 -msgid "" -"The time in seconds between two checks if the TGT should be renewed. TGTs " -"are renewed if about half of their lifetime is exceeded." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:355 -msgid "If this option is not set or 0 the automatic renewal is disabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:365 -msgid "krb5_use_fast (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:368 -msgid "" -"Enables flexible authentication secure tunneling (FAST) for Kerberos pre-" -"authentication. The following options are supported:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:373 -msgid "" -"<emphasis>never</emphasis> use FAST, this is equivalent to not set this " -"option at all." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:377 -msgid "" -"<emphasis>try</emphasis> to use FAST, if the server does not support fast " -"continue without." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:381 -msgid "" -"<emphasis>demand</emphasis> to use FAST, fail if the server does not require " -"fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:385 -msgid "Default: not set, i.e. FAST is not used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:388 -msgid "Please note that a keytab is required to use fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:391 -msgid "" -"Please note also that sssd supports fast only with MIT Kerberos version 1.8 " -"and above. If sssd used with an older version using this option is a " -"configuration error." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:400 -msgid "krb5_fast_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:403 -msgid "Specifies the server principal to use for FAST." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:412 -msgid "" -"Specifies if the host and user principal should be canonicalized. This " -"feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:65 -msgid "" -"If the auth-module krb5 is used in a SSSD domain, the following options must " -"be used. See the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page, section <quote>DOMAIN " -"SECTIONS</quote> for details on the configuration of a SSSD domain. " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:434 -msgid "" -"The following example assumes that SSSD is correctly configured and FOO is " -"one of the domains in the <replaceable>[sssd]</replaceable> section. This " -"example shows only configuration of Kerberos authentication, it does not " -"include any identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-krb5.5.xml:442 -#, no-wrap -msgid "" -" [domain/FOO]\n" -" auth_provider = krb5\n" -" krb5_server = 192.168.1.1\n" -" krb5_realm = EXAMPLE.COM\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:453 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupadd.8.xml:10 sss_groupadd.8.xml:15 -msgid "sss_groupadd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupadd.8.xml:16 -msgid "create a new group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupadd.8.xml:21 -msgid "" -"<command>sss_groupadd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:32 -msgid "" -"<command>sss_groupadd</command> creates a new group. These groups are " -"compatible with POSIX groups, with the additional feature that they can " -"contain other groups as members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupadd.8.xml:43 -msgid "" -"<option>-g</option>,<option>--gid</option> <replaceable>GID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupadd.8.xml:48 -msgid "" -"Set the GID of the group to the value of <replaceable>GID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_userdel.8.xml:10 sss_userdel.8.xml:15 -msgid "sss_userdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_userdel.8.xml:16 -msgid "delete a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_userdel.8.xml:21 -msgid "" -"<command>sss_userdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:32 -msgid "" -"<command>sss_userdel</command> deletes a user identified by login name " -"<replaceable>LOGIN</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:44 -msgid "<option>-r</option>,<option>--remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:48 -msgid "" -"Files in the user's home directory will be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:56 -msgid "<option>-R</option>,<option>--no-remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:60 -msgid "" -"Files in the user's home directory will NOT be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:68 -msgid "<option>-f</option>,<option>--force</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:72 -msgid "" -"This option forces <command>sss_userdel</command> to remove the user's home " -"directory and mail spool, even if they are not owned by the specified user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:80 -msgid "<option>-k</option>,<option>--kick</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:84 -msgid "Before actually deleting the user, terminate all his processes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:95 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupdel.8.xml:10 sss_groupdel.8.xml:15 -msgid "sss_groupdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupdel.8.xml:16 -msgid "delete a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupdel.8.xml:21 -msgid "" -"<command>sss_groupdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:32 -msgid "" -"<command>sss_groupdel</command> deletes a group identified by its name " -"<replaceable>GROUP</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupshow.8.xml:10 sss_groupshow.8.xml:15 -msgid "sss_groupshow" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupshow.8.xml:16 -msgid "print properties of a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupshow.8.xml:21 -msgid "" -"<command>sss_groupshow</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:32 -msgid "" -"<command>sss_groupshow</command> displays information about a group " -"identified by its name <replaceable>GROUP</replaceable>. The information " -"includes the group ID number, members of the group and the parent group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupshow.8.xml:43 -msgid "<option>-R</option>,<option>--recursive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupshow.8.xml:47 -msgid "" -"Also print indirect group members in a tree-like hierarchy. Note that this " -"also affects printing parent groups - without <option>R</option>, only the " -"direct parent will be printed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_usermod.8.xml:10 sss_usermod.8.xml:15 -msgid "sss_usermod" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_usermod.8.xml:16 -msgid "modify a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_usermod.8.xml:21 -msgid "" -"<command>sss_usermod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:32 -msgid "" -"<command>sss_usermod</command> modifies the account specified by " -"<replaceable>LOGIN</replaceable> to reflect the changes that are specified " -"on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:60 -msgid "The home directory of the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:71 -msgid "The user's login shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:82 -msgid "" -"Append this user to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:96 -msgid "" -"Remove this user from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:103 -msgid "<option>-l</option>,<option>--lock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:107 -msgid "Lock the user account. The user won't be able to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:114 -msgid "<option>-u</option>,<option>--unlock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:118 -msgid "Unlock the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:129 -msgid "The SELinux user for the user's login." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:140 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_cache.8.xml:10 sss_cache.8.xml:15 -msgid "sss_cache" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_cache.8.xml:16 -msgid "perform cache cleanup" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_cache.8.xml:21 -msgid "" -"<command>sss_cache</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_cache.8.xml:31 -msgid "" -"<command>sss_cache</command> invalidates records in SSSD cache. Invalidated " -"records are forced to be reloaded from server as soon as related SSSD " -"backend is online." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:42 -msgid "" -"<option>-u</option>,<option>--user</option> <replaceable>login</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:47 -msgid "Invalidate specific user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:53 -msgid "<option>-U</option>,<option>--users</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:57 -msgid "" -"Invalidate all user records. This option overrides invalidation of specific " -"user if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:64 -msgid "" -"<option>-g</option>,<option>--group</option> <replaceable>group</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:69 -msgid "Invalidate specific group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:75 -msgid "<option>-G</option>,<option>--groups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:79 -msgid "" -"Invalidate all group records. This option overrides invalidation of specific " -"group if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:86 -msgid "" -"<option>-n</option>,<option>--netgroup</option> <replaceable>netgroup</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:91 -msgid "Invalidate specific netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:97 -msgid "<option>-N</option>,<option>--netgroups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:101 -msgid "" -"Invalidate all netgroup records. This option overrides invalidation of " -"specific netgroup if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:108 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>domain</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:113 -msgid "Restrict invalidation process only to a particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_debuglevel.8.xml:10 sss_debuglevel.8.xml:15 -msgid "sss_debuglevel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_debuglevel.8.xml:16 -msgid "change debug level while SSSD is running" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_debuglevel.8.xml:21 -msgid "" -"<command>sss_debuglevel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>NEW_DEBUG_LEVEL</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_debuglevel.8.xml:32 -msgid "" -"<command>sss_debuglevel</command> changes debug level of SSSD monitor and " -"providers to <replaceable>NEW_DEBUG_LEVEL</replaceable> while SSSD is " -"running." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_debuglevel.8.xml:59 -msgid "<replaceable>NEW_DEBUG_LEVEL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_authorizedkeys.1.xml:10 sss_ssh_authorizedkeys.1.xml:15 -msgid "sss_ssh_authorizedkeys" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_ssh_authorizedkeys.1.xml:11 sss_ssh_knownhostsproxy.1.xml:11 -msgid "1" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_authorizedkeys.1.xml:16 -msgid "get OpenSSH authorized keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_authorizedkeys.1.xml:21 -msgid "" -"<command>sss_ssh_authorizedkeys</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>USER</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:32 -msgid "" -"<command>sss_ssh_authorizedkeys</command> acquires SSH public keys for user " -"<replaceable>USER</replaceable> and outputs them in OpenSSH authorized_keys " -"format (see the <quote>AUTHORIZED_KEYS FILE FORMAT</quote> section of " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> for more information)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:41 -msgid "" -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_authorizedkeys</" -"command> for public key user authentication if it is compiled with support " -"for either <quote>AuthorizedKeysCommand</quote> or <quote>PubkeyAgent</" -"quote> <citerefentry> <refentrytitle>sshd_config</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:58 -#, no-wrap -msgid "AuthorizedKeysCommand /usr/bin/sss_ssh_authorizedkeys\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:51 -msgid "" -"If <quote>AuthorizedKeysCommand</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by putting the following directive " -"in <citerefentry> <refentrytitle>sshd_config</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry>: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:69 -#, no-wrap -msgid "PubKeyAgent /usr/bin/sss_ssh_authorizedkeys %u\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:62 -msgid "" -"If <quote>PubkeyAgent</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by using the following directive " -"for <citerefentry> <refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> configuration: <placeholder type=\"programlisting" -"\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_authorizedkeys.1.xml:87 -msgid "" -"Search for user public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:98 -msgid "" -"<citerefentry> <refentrytitle>sshd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sshd_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_knownhostsproxy</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_knownhostsproxy.1.xml:10 sss_ssh_knownhostsproxy.1.xml:15 -msgid "sss_ssh_knownhostsproxy" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_knownhostsproxy.1.xml:16 -msgid "get OpenSSH host keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_knownhostsproxy.1.xml:21 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>HOST</replaceable></arg> <arg " -"choice='opt'><replaceable>PROXY_COMMAND</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:33 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> acquires SSH host public keys for " -"host <replaceable>HOST</replaceable>, stores them in a custom OpenSSH " -"known_hosts file (see the <quote>SSH_KNOWN_HOSTS FILE FORMAT</quote> section " -"of <citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> for more information) <filename>/var/lib/sss/" -"pubconf/known_hosts</filename> and estabilishes connection to the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:43 -msgid "" -"If <replaceable>PROXY_COMMAND</replaceable> is specified, it is used to " -"create the connection to the host instead of opening a socket." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_knownhostsproxy.1.xml:55 -#, no-wrap -msgid "" -"ProxyCommand /usr/bin/sss_ssh_knownhostsproxy -p %p %h\n" -"GlobalKnownHostsFile2 /var/lib/sss/pubconf/known_hosts\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:48 -msgid "" -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_knownhostsproxy</" -"command> for host key authentication by using the following directives for " -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> configuration: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_ssh_knownhostsproxy.1.xml:69 -msgid "" -"<option>-p</option>,<option>--port</option> <replaceable>PORT</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:74 -msgid "" -"Use port <replaceable>PORT</replaceable> to connect to the host. By " -"default, port 22 is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:86 -msgid "" -"Search for host public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:97 -msgid "" -"<citerefentry> <refentrytitle>ssh</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>ssh_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_authorizedkeys</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/service_discovery.xml:2 -msgid "SERVICE DISCOVERY" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/service_discovery.xml:4 -msgid "" -"The service discovery feature allows back ends to automatically find the " -"appropriate servers to connect to using a special DNS query." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:9 -msgid "Configuration" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:11 -msgid "" -"If no servers are specified, the back end automatically uses service " -"discovery to try to find a server. Optionally, the user may choose to use " -"both fixed server addresses and service discovery by inserting a special " -"keyword, <quote>_srv_</quote>, in the list of servers. The order of " -"preference is maintained. This feature is useful if, for example, the user " -"prefers to use service discovery whenever possible, and fall back to a " -"specific server when no servers can be discovered using DNS." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:23 -msgid "The domain name" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:25 -msgid "" -"Please refer to the <quote>dns_discovery_domain</quote> parameter in the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for more details." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:35 -msgid "The protocol" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:37 -msgid "" -"The queries usually specify _tcp as the protocol. Exceptions are documented " -"in respective option description." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:42 -msgid "See Also" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:44 -msgid "" -"For more information on the service discovery mechanism, refer to RFC 2782." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/upstream.xml:1 -msgid "<placeholder type=\"refentryinfo\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/failover.xml:2 -msgid "FAILOVER" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/failover.xml:4 -msgid "" -"The failover feature allows back ends to automatically switch to a different " -"server if the primary server fails." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:8 -msgid "Failover Syntax" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:10 -msgid "" -"The list of servers is given as a comma-separated list; any number of spaces " -"is allowed around the comma. The servers are listed in order of preference. " -"The list can contain any number of servers." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:17 -msgid "The Failover Mechanism" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:19 -msgid "" -"The failover mechanism distinguishes between a machine and a service. The " -"back end first tries to resolve the hostname of a given machine; if this " -"resolution attempt fails, the machine is considered offline. No further " -"attempts are made to connect to this machine for any other service. If the " -"resolution attempt succeeds, the back end tries to connect to a service on " -"this machine. If the service connection attempt fails, then only this " -"particular service is considered offline and the back end automatically " -"switches over to the next service. The machine is still considered online " -"and might still be tried for another service." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:32 -msgid "" -"Further connection attempts are made to machines or services marked as " -"offline after a specified period of time; this is currently hard coded to 30 " -"seconds." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:37 -msgid "" -"If there are no more machines to try, the back end as a whole switches to " -"offline mode, and then attempts to reconnect every 30 seconds." -msgstr "" - -#. type: Content of: <varlistentry><term> -#: include/param_help.xml:3 -msgid "<option>-h</option>,<option>--help</option>" -msgstr "" - -#. type: Content of: <varlistentry><listitem><para> -#: include/param_help.xml:7 -msgid "Display help message and exit." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:3 -msgid "" -"Bit mask that indicates which debug levels will be visible. 0x0010 is the " -"default value as well as the lowest allowed value, 0xFFF0 is the most " -"verbose mode. This setting overrides the settings from config file." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:8 -msgid "Currently supported debug levels:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:11 -msgid "" -"<emphasis>0x0010</emphasis>: Fatal failures. Anything that would prevent " -"SSSD from starting up or causes it to cease running." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:15 -msgid "" -"<emphasis>0x0020</emphasis>: Critical failures. An error that doesn't kill " -"the SSSD, but one that indicates that at least one major feature is not " -"going to work properly." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:20 -msgid "" -"<emphasis>0x0040</emphasis>: Serious failures. An error announcing that a " -"particular request or operation has failed." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:24 -msgid "" -"<emphasis>0x0080</emphasis>: Minor failures. These are the errors that would " -"percolate down to cause the operation failure of 2." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:28 -msgid "<emphasis>0x0100</emphasis>: Configuration settings." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:31 -msgid "<emphasis>0x0200</emphasis>: Function data." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:34 -msgid "<emphasis>0x0400</emphasis>: Trace messages for operation functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:37 -msgid "" -"<emphasis>0x1000</emphasis>: Trace messages for internal control functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:40 -msgid "" -"<emphasis>0x2000</emphasis>: Contents of function-internal variables that " -"may be interesting." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:43 -msgid "<emphasis>0x4000</emphasis>: Extremely low-level tracing information." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:46 -msgid "" -"To log required debug levels, simply add their numbers together as shown in " -"following examples:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:49 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, critical failures, " -"serious failures and function data use 0x0270." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:53 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, configuration settings, " -"function data, trace messages for internal control functions use 0x1310." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:57 -msgid "" -"<emphasis>Note</emphasis>: This is new format of debug levels introduced in " -"1.7.0. Older format (numbers from 0-10) is compatible but deprecated." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/experimental.xml:1 -msgid "" -"<emphasis> This is an experimental feature, please use http://fedorahosted." -"org/sssd to report any issues. </emphasis>" -msgstr "" diff --git a/src/man/po/bn.po b/src/man/po/bn.po deleted file mode 100644 index b8fa4a9c6..000000000 --- a/src/man/po/bn.po +++ /dev/null @@ -1,6747 +0,0 @@ -# SOME DESCRIPTIVE TITLE -# Copyright (C) YEAR Red Hat -# This file is distributed under the same license as the sssd-docs package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@redhat.com\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-12-23 15:35+0000\n" -"Last-Translator: FULL NAME <EMAIL@ADDRESS>\n" -"Language-Team: Bengali <info@ankur.org.bd>\n" -"Language: bn\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=2; plural=(n != 1)\n" - -#. type: Content of: <reference><title> -#: sss_groupmod.8.xml:5 sssd.conf.5.xml:5 sssd-ldap.5.xml:5 pam_sss.8.xml:5 -#: sssd_krb5_locator_plugin.8.xml:5 sssd-simple.5.xml:5 sssd-ipa.5.xml:5 -#: sssd.8.xml:5 sss_obfuscate.8.xml:5 sss_useradd.8.xml:5 sssd-krb5.5.xml:5 -#: sss_groupadd.8.xml:5 sss_userdel.8.xml:5 sss_groupdel.8.xml:5 -#: sss_groupshow.8.xml:5 sss_usermod.8.xml:5 sss_cache.8.xml:5 -#: sss_debuglevel.8.xml:5 sss_ssh_authorizedkeys.1.xml:5 -#: sss_ssh_knownhostsproxy.1.xml:5 -msgid "SSSD Manual pages" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupmod.8.xml:10 sss_groupmod.8.xml:15 -msgid "sss_groupmod" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_groupmod.8.xml:11 pam_sss.8.xml:14 sssd_krb5_locator_plugin.8.xml:11 -#: sssd.8.xml:11 sss_obfuscate.8.xml:11 sss_useradd.8.xml:11 -#: sss_groupadd.8.xml:11 sss_userdel.8.xml:11 sss_groupdel.8.xml:11 -#: sss_groupshow.8.xml:11 sss_usermod.8.xml:11 sss_cache.8.xml:11 -#: sss_debuglevel.8.xml:11 -msgid "8" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupmod.8.xml:16 -msgid "modify a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupmod.8.xml:21 -msgid "" -"<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:30 sssd-ldap.5.xml:21 pam_sss.8.xml:44 -#: sssd_krb5_locator_plugin.8.xml:20 sssd-simple.5.xml:22 sssd-ipa.5.xml:21 -#: sssd.8.xml:29 sss_obfuscate.8.xml:30 sss_useradd.8.xml:30 -#: sssd-krb5.5.xml:21 sss_groupadd.8.xml:30 sss_userdel.8.xml:30 -#: sss_groupdel.8.xml:30 sss_groupshow.8.xml:30 sss_usermod.8.xml:30 -#: sss_cache.8.xml:29 sss_debuglevel.8.xml:30 sss_ssh_authorizedkeys.1.xml:30 -#: sss_ssh_knownhostsproxy.1.xml:31 -msgid "DESCRIPTION" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:32 -msgid "" -"<command>sss_groupmod</command> modifies the group to reflect the changes " -"that are specified on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:39 pam_sss.8.xml:51 sssd.8.xml:42 sss_obfuscate.8.xml:58 -#: sss_useradd.8.xml:39 sss_groupadd.8.xml:39 sss_userdel.8.xml:39 -#: sss_groupdel.8.xml:39 sss_groupshow.8.xml:39 sss_usermod.8.xml:39 -#: sss_cache.8.xml:38 sss_debuglevel.8.xml:38 sss_ssh_authorizedkeys.1.xml:78 -#: sss_ssh_knownhostsproxy.1.xml:65 -msgid "OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:43 sss_usermod.8.xml:77 -msgid "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:48 -msgid "" -"Append this group to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:57 sss_usermod.8.xml:91 -msgid "" -"<option>-r</option>,<option>--remove-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:62 -msgid "" -"Remove this group from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:72 sssd.conf.5.xml:1331 sssd-ldap.5.xml:2096 -#: pam_sss.8.xml:139 sssd_krb5_locator_plugin.8.xml:75 sssd-simple.5.xml:143 -#: sssd-ipa.5.xml:562 sssd.8.xml:191 sss_obfuscate.8.xml:103 -#: sss_useradd.8.xml:167 sssd-krb5.5.xml:451 sss_groupadd.8.xml:58 -#: sss_userdel.8.xml:93 sss_groupdel.8.xml:46 sss_groupshow.8.xml:58 -#: sss_usermod.8.xml:138 sss_ssh_authorizedkeys.1.xml:96 -#: sss_ssh_knownhostsproxy.1.xml:95 -msgid "SEE ALSO" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:74 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.conf.5.xml:10 sssd.conf.5.xml:16 -msgid "sssd.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sssd.conf.5.xml:11 sssd-ldap.5.xml:11 sssd-simple.5.xml:11 -#: sssd-ipa.5.xml:11 sssd-krb5.5.xml:11 -msgid "5" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><refmiscinfo> -#: sssd.conf.5.xml:12 sssd-ldap.5.xml:12 sssd-simple.5.xml:12 -#: sssd-ipa.5.xml:12 sssd-krb5.5.xml:12 -msgid "File Formats and Conventions" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.conf.5.xml:17 sssd-ldap.5.xml:17 sssd_krb5_locator_plugin.8.xml:16 -#: sssd-ipa.5.xml:17 sssd-krb5.5.xml:17 -msgid "the configuration file for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:21 -msgid "FILE FORMAT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:29 -#, no-wrap -msgid "" -" <replaceable>[section]</replaceable>\n" -" <replaceable>key</replaceable> = <replaceable>value</replaceable>\n" -" <replaceable>key2</replaceable> = <replaceable>value2,value3</replaceable>\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:24 -msgid "" -"The file has an ini-style syntax and consists of sections and parameters. A " -"section begins with the name of the section in square brackets and continues " -"until the next section begins. An example of section with single and multi-" -"valued parameters: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:36 -msgid "" -"The data types used are string (no quotes needed), integer and bool (with " -"values of <quote>TRUE/FALSE</quote>)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:41 -msgid "" -"A line comment starts with a hash sign (<quote>#</quote>) or a semicolon " -"(<quote>;</quote>)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:46 -msgid "" -"All sections can have an optional <replaceable>description</replaceable> " -"parameter. Its function is only as a label for the section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:52 -msgid "" -"<filename>sssd.conf</filename> must be a regular file, owned by root and " -"only root may read from or write to the file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:58 -msgid "SPECIAL SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:61 -msgid "The [sssd] section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><title> -#: sssd.conf.5.xml:70 sssd.conf.5.xml:1177 -msgid "Section parameters" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:72 -msgid "config_file_version (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:75 -msgid "" -"Indicates what is the syntax of the config file. SSSD 0.6.0 and later use " -"version 2." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:81 -msgid "services" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:84 -msgid "" -"Comma separated list of services that are started when sssd itself starts." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:88 -msgid "" -"Supported services: nss, pam <phrase condition=\"with_sudo\">, sudo</phrase>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:94 sssd.conf.5.xml:257 -msgid "reconnection_retries (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:97 sssd.conf.5.xml:260 -msgid "" -"Number of times services should attempt to reconnect in the event of a Data " -"Provider crash or restart before they give up" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:102 sssd.conf.5.xml:265 -msgid "Default: 3" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:107 -msgid "domains" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:110 -msgid "" -"A domain is a database containing user information. SSSD can use more " -"domains at the same time, but at least one must be configured or SSSD won't " -"start. This parameter described the list of domains in the order you want " -"them to be queried." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:120 -msgid "re_expression (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:123 -msgid "" -"Regular expression that describes how to parse the string containing user " -"name and domain into these components." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:127 -msgid "" -"Default: <quote>(?P<name>[^@]+)@?(?P<domain>[^@]*$)</quote> " -"which translates to \"the name is everything up to the <quote>@</quote> " -"sign, the domain everything after that\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:132 -msgid "" -"PLEASE NOTE: the support for non-unique named subpatterns is not available " -"on all platforms (e.g. RHEL5 and SLES10). Only platforms with libpcre " -"version 7 or higher can support non-unique named subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:139 -msgid "" -"PLEASE NOTE ALSO: older version of libpcre only support the Python syntax (?" -"P<name>) to label subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:146 -msgid "full_name_format (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:149 -msgid "" -"A <citerefentry> <refentrytitle>printf</refentrytitle> <manvolnum>3</" -"manvolnum> </citerefentry>-compatible format that describes how to translate " -"a (name, domain) tuple into a fully qualified name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:157 -msgid "Default: <quote>%1$s@%2$s</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:162 -msgid "try_inotify (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:165 -msgid "" -"SSSD monitors the state of resolv.conf to identify when it needs to update " -"its internal DNS resolver. By default, we will attempt to use inotify for " -"this, and will fall back to polling resolv.conf every five seconds if " -"inotify cannot be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:173 -msgid "" -"There are some limited situations where it is preferred that we should skip " -"even trying to use inotify. In these rare cases, this option should be set " -"to 'false'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:179 -msgid "" -"Default: true on platforms where inotify is supported. False on other " -"platforms." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:183 -msgid "" -"Note: this option will have no effect on platforms where inotify is " -"unavailable. On these platforms, polling will always be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:190 -msgid "krb5_rcache_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:193 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:197 -msgid "" -"This option accepts a special value __LIBKRB5_DEFAULTS__ that will instruct " -"SSSD to let libkrb5 decide the appropriate location for the replay cache." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:203 -msgid "" -"Default: Distribution-specific and specified at build-time. " -"(__LIBKRB5_DEFAULTS__ if not configured)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:63 -msgid "" -"Individual pieces of SSSD functionality are provided by special SSSD " -"services that are started and stopped together with SSSD. The services are " -"managed by a special service frequently called <quote>monitor</quote>. The " -"<quote>[sssd]</quote> section is used to configure the monitor as well as " -"some other important options like the identity domains. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:216 -msgid "SERVICES SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:218 -msgid "" -"Settings that can be used to configure different services are described in " -"this section. They should reside in the [<replaceable>$NAME</replaceable>] " -"section, for example, for NSS service, the section would be <quote>[nss]</" -"quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:225 -msgid "General service configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:227 -msgid "These options can be used to configure any service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:231 -msgid "debug_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:235 -msgid "debug_timestamps (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:238 -msgid "Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:241 sssd.conf.5.xml:376 sssd-ldap.5.xml:1328 -#: sssd-ldap.5.xml:1446 sssd-ipa.5.xml:206 sssd-ipa.5.xml:241 -msgid "Default: true" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:246 -msgid "debug_microseconds (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:249 -msgid "Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:252 sssd.conf.5.xml:641 sssd-ldap.5.xml:602 -#: sssd-ldap.5.xml:1260 sssd-ldap.5.xml:1397 sssd-ldap.5.xml:1795 -#: sssd-ipa.5.xml:123 sssd-ipa.5.xml:301 sssd-krb5.5.xml:235 -#: sssd-krb5.5.xml:269 sssd-krb5.5.xml:418 -msgid "Default: false" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:270 -msgid "command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:273 -msgid "" -"By default, the executable representing this service is called <command>sssd_" -"${service_name}</command>. This directive allows to change the executable " -"name for the service. In the vast majority of configurations, the default " -"values should suffice." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:281 -msgid "Default: <command>sssd_${service_name}</command>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:289 -msgid "NSS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:291 -msgid "" -"These options can be used to configure the Name Service Switch (NSS) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:296 -msgid "enum_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:299 -msgid "" -"How many seconds should nss_sss cache enumerations (requests for info about " -"all users)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:303 -msgid "Default: 120" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:308 -msgid "entry_cache_nowait_percentage (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:311 -msgid "" -"The entry cache can be set to automatically update entries in the background " -"if they are requested beyond a percentage of the entry_cache_timeout value " -"for the domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:317 -msgid "" -"For example, if the domain's entry_cache_timeout is set to 30s and " -"entry_cache_nowait_percentage is set to 50 (percent), entries that come in " -"after 15 seconds past the last cache update will be returned immediately, " -"but the SSSD will go and update the cache on its own, so that future " -"requests will not need to block waiting for a cache update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:327 -msgid "" -"Valid values for this option are 0-99 and represent a percentage of the " -"entry_cache_timeout for each domain. For performance reasons, this " -"percentage will never reduce the nowait timeout to less than 10 seconds. (0 " -"disables this feature)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:335 -msgid "Default: 50" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:340 -msgid "entry_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:343 -msgid "" -"Specifies for how many seconds nss_sss should cache negative cache hits " -"(that is, queries for invalid database entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:349 sssd.conf.5.xml:669 sssd-krb5.5.xml:223 -msgid "Default: 15" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:354 -msgid "filter_users, filter_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:357 -msgid "" -"Exclude certain users from being fetched from the sss NSS database. This is " -"particularly useful for system accounts. This option can also be set per-" -"domain or include fully-qualified names to filter only users from the " -"particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:364 -msgid "Default: root" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:369 -msgid "filter_users_in_groups (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:372 -msgid "" -"If you want filtered user still be group members set this option to false." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:381 -msgid "override_homedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:390 sssd-krb5.5.xml:166 -msgid "%u" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:391 sssd-krb5.5.xml:167 -msgid "login name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:394 sssd-krb5.5.xml:170 -msgid "%U" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:395 -msgid "UID number" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:398 sssd-krb5.5.xml:188 -msgid "%d" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:399 -msgid "domain name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:402 -msgid "%f" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:403 -msgid "fully qualified user name (user@domain)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:406 sssd-krb5.5.xml:200 -msgid "%%" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:407 sssd-krb5.5.xml:201 -msgid "a literal '%'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:384 -msgid "" -"Override the user's home directory. You can either provide an absolute value " -"or a template. In the template, the following sequences are substituted: " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:413 -msgid "This option can also be set per-domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:418 -msgid "allowed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:421 -msgid "" -"Restrict user shell to one of the listed values. The order of evaluation is:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:424 -msgid "1. If the shell is present in <quote>/etc/shells</quote>, it is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:428 -msgid "" -"2. If the shell is in the allowed_shells list but not in <quote>/etc/shells</" -"quote>, use the value of the shell_fallback parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:433 -msgid "" -"3. If the shell is not in the allowed_shells list and not in <quote>/etc/" -"shells</quote>, a nologin shell is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:438 -msgid "An empty string for shell is passed as-is to libc." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:441 -msgid "" -"The <quote>/etc/shells</quote> is only read on SSSD start up, which means " -"that a restart of the SSSD is required in case a new shell is installed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:445 -msgid "Default: Not set. The user shell is automatically used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:450 -msgid "vetoed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:453 -msgid "Replace any instance of these shells with the shell_fallback" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:458 -msgid "shell_fallback (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:461 -msgid "" -"The default shell to use if an allowed shell is not installed on the machine." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:465 -msgid "Default: /bin/sh" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:472 -msgid "PAM configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:474 -msgid "" -"These options can be used to configure the Pluggable Authentication Module " -"(PAM) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:479 -msgid "offline_credentials_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:482 -msgid "" -"If the authentication provider is offline, how long should we allow cached " -"logins (in days since the last successful online login)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:487 sssd.conf.5.xml:500 -msgid "Default: 0 (No limit)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:493 -msgid "offline_failed_login_attempts (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:496 -msgid "" -"If the authentication provider is offline, how many failed login attempts " -"are allowed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:506 -msgid "offline_failed_login_delay (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:509 -msgid "" -"The time in minutes which has to pass after offline_failed_login_attempts " -"has been reached before a new login attempt is possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:514 -msgid "" -"If set to 0 the user cannot authenticate offline if " -"offline_failed_login_attempts has been reached. Only a successful online " -"authentication can enable offline authentication again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:520 sssd.conf.5.xml:573 sssd.conf.5.xml:1093 -msgid "Default: 5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:526 -msgid "pam_verbosity (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:529 -msgid "" -"Controls what kind of messages are shown to the user during authentication. " -"The higher the number to more messages are displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:534 -msgid "Currently sssd supports the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:537 -msgid "<emphasis>0</emphasis>: do not show any message" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:540 -msgid "<emphasis>1</emphasis>: show only important messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:544 -msgid "<emphasis>2</emphasis>: show informational messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:547 -msgid "<emphasis>3</emphasis>: show all messages and debug information" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:551 sssd.8.xml:63 -msgid "Default: 1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:556 -msgid "pam_id_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:559 -msgid "" -"For any PAM request while SSSD is online, the SSSD will attempt to " -"immediately update the cached identity information for the user in order to " -"ensure that authentication takes place with the latest information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:565 -msgid "" -"A complete PAM conversation may perform multiple PAM requests, such as " -"account management and session opening. This option controls (on a per-" -"client-application basis) how long (in seconds) we can cache the identity " -"information to avoid excessive round-trips to the identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:579 -msgid "pam_pwd_expiration_warning (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:582 -msgid "Display a warning N days before the password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:585 -msgid "" -"Please note that the backend server has to provide information about the " -"expiration time of the password. If this information is missing, sssd " -"cannot display a warning." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:591 -msgid "Default: 7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:599 -msgid "SUDO configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:601 -msgid "These options can be used to configure the sudo service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:608 -msgid "sudo_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:611 -msgid "" -"For any sudo request that comes while SSSD is online, the SSSD will attempt " -"to update the cached rules in order to ensure that sudo has the latest " -"ruleset." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:617 -msgid "" -"The user may, however, run a couple of sudo commands successively, which " -"would trigger multiple LDAP requests. In order to speed up this use-case, " -"the sudo service maintains an in-memory cache that would be used for " -"performing fast replies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:624 -msgid "" -"This option controls how long (in seconds) can the sudo service cache rules " -"for a user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:628 -msgid "Default: 180" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:633 -msgid "sudo_timed (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:636 -msgid "" -"Whether or not to evaluate the sudoNotBefore and sudoNotAfter attributes " -"that implement time-dependent sudoers entries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:649 -msgid "AUTOFS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:651 -msgid "These options can be used to configure the autofs service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:659 -msgid "autofs_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:662 -msgid "" -"Specifies for how many seconds should the autofs responder negative cache " -"hits (that is, queries for invalid map entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:679 -msgid "DOMAIN SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:686 -msgid "min_id,max_id (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:689 -msgid "" -"UID and GID limits for the domain. If a domain contains an entry that is " -"outside these limits, it is ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:694 -msgid "" -"For users, this affects the primary GID limit. The user will not be returned " -"to NSS if either the UID or the primary GID is outside the range. For non-" -"primary group memberships, those that are in range will be reported as " -"expected." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:701 -msgid "Default: 1 for min_id, 0 (no limit) for max_id" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:707 -msgid "timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:710 -msgid "" -"Timeout in seconds between heartbeats for this domain. This is used to " -"ensure that the backend process is alive and capable of answering requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:715 sssd-ldap.5.xml:1131 -msgid "Default: 10" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:721 -msgid "enumerate (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:724 -msgid "" -"Determines if a domain can be enumerated. This parameter can have one of the " -"following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:728 -msgid "TRUE = Users and groups are enumerated" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:731 -msgid "FALSE = No enumerations for this domain" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:734 sssd.conf.5.xml:839 sssd.conf.5.xml:893 -msgid "Default: FALSE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:737 -msgid "" -"Note: Enabling enumeration has a moderate performance impact on SSSD while " -"enumeration is running. It may take up to several minutes after SSSD startup " -"to fully complete enumerations. During this time, individual requests for " -"information will go directly to LDAP, though it may be slow, due to the " -"heavy enumeration processing." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:747 -msgid "" -"While the first enumeration is running, requests for the complete user or " -"group lists may return no results until it completes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:752 -msgid "" -"Further, enabling enumeration may increase the time necessary to detect " -"network disconnection, as longer timeouts are required to ensure that " -"enumeration lookups are completed successfully. For more information, refer " -"to the man pages for the specific id_provider in use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:763 -msgid "entry_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:766 -msgid "" -"How many seconds should nss_sss consider entries valid before asking the " -"backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:770 -msgid "Default: 5400" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:776 -msgid "entry_cache_user_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:779 -msgid "" -"How many seconds should nss_sss consider user entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:783 sssd.conf.5.xml:796 sssd.conf.5.xml:809 -#: sssd.conf.5.xml:822 -msgid "Default: entry_cache_timeout" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:789 -msgid "entry_cache_group_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:792 -msgid "" -"How many seconds should nss_sss consider group entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:802 -msgid "entry_cache_netgroup_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:805 -msgid "" -"How many seconds should nss_sss consider netgroup entries valid before " -"asking the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:815 -msgid "entry_cache_service_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:818 -msgid "" -"How many seconds should nss_sss consider service entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:828 -msgid "cache_credentials (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:831 -msgid "Determines if user credentials are also cached in the local LDB cache" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:835 -msgid "User credentials are stored in a SHA512 hash, not in plaintext" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:844 -msgid "account_cache_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:847 -msgid "" -"Number of days entries are left in cache after last successful login before " -"being removed during a cleanup of the cache. 0 means keep forever. The " -"value of this parameter must be greater than or equal to " -"offline_credentials_expiration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:854 -msgid "Default: 0 (unlimited)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:860 -msgid "id_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:863 -msgid "The Data Provider identity backend to use for this domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:867 -msgid "Supported backends:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:870 -msgid "proxy: Support a legacy NSS provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:873 -msgid "local: SSSD internal local provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:876 -msgid "ldap: LDAP provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:882 -msgid "use_fully_qualified_names (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:885 -msgid "" -"If set to TRUE, all requests to this domain must use fully qualified names. " -"For example, if used in LOCAL domain that contains a \"test\" user, " -"<command>getent passwd test</command> wouldn't find the user while " -"<command>getent passwd test@LOCAL</command> would." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:898 -msgid "auth_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:901 -msgid "" -"The authentication provider used for the domain. Supported auth providers " -"are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:905 -msgid "" -"<quote>ldap</quote> for native LDAP authentication. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:912 -msgid "" -"<quote>krb5</quote> for Kerberos authentication. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:919 -msgid "" -"<quote>proxy</quote> for relaying authentication to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:922 -msgid "<quote>none</quote> disables authentication explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:925 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"authentication requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:931 -msgid "access_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:934 -msgid "" -"The access control provider used for the domain. There are two built-in " -"access providers (in addition to any included in installed backends) " -"Internal special providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:940 -msgid "<quote>permit</quote> always allow access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:943 -msgid "<quote>deny</quote> always deny access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:946 -msgid "" -"<quote>simple</quote> access control based on access or deny lists. See " -"<citerefentry> <refentrytitle>sssd-simple</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry> for more information on configuring the simple " -"access module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:953 -msgid "Default: <quote>permit</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:958 -msgid "chpass_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:961 -msgid "" -"The provider which should handle change password operations for the domain. " -"Supported change password providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:966 -msgid "" -"<quote>ipa</quote> to change a password stored in an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:974 -msgid "" -"<quote>ldap</quote> to change a password stored in a LDAP server. See " -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:982 -msgid "" -"<quote>krb5</quote> to change the Kerberos password. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:990 -msgid "" -"<quote>proxy</quote> for relaying password changes to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:994 -msgid "<quote>none</quote> disallows password changes explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:997 -msgid "" -"Default: <quote>auth_provider</quote> is used if it is set and can handle " -"change password requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1004 -msgid "sudo_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1010 -msgid "The SUDO provider used for the domain. Supported SUDO providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1014 -msgid "" -"<quote>ldap</quote> for rules stored in LDAP. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1021 -msgid "<quote>none</quote> disables SUDO explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1024 -msgid "Default: The value of <quote>id_provider</quote> is used if it is set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1030 -msgid "session_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1033 -msgid "" -"The provider which should handle loading of session settings. Supported " -"session providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1038 -msgid "" -"<quote>ipa</quote> to load session settings from an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1046 -msgid "<quote>none</quote> disallows fetching session settings explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1049 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"session loading requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1056 -msgid "lookup_family_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1059 -msgid "" -"Provides the ability to select preferred address family to use when " -"performing DNS lookups." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1063 -msgid "Supported values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1066 -msgid "ipv4_first: Try looking up IPv4 address, if that fails, try IPv6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1069 -msgid "ipv4_only: Only attempt to resolve hostnames to IPv4 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1072 -msgid "ipv6_first: Try looking up IPv6 address, if that fails, try IPv4" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1075 -msgid "ipv6_only: Only attempt to resolve hostnames to IPv6 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1078 -msgid "Default: ipv4_first" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1084 -msgid "dns_resolver_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1087 -msgid "" -"Defines the amount of time (in seconds) to wait for a reply from the DNS " -"resolver before assuming that it is unreachable. If this timeout is reached, " -"the domain will continue to operate in offline mode." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1099 -msgid "dns_discovery_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1102 -msgid "" -"If service discovery is used in the back end, specifies the domain part of " -"the service discovery DNS query." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1106 -msgid "Default: Use the domain part of machine's hostname" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1112 -msgid "override_gid (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1115 -msgid "Override the primary GID value with the one specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1121 -msgid "case_sensitive (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1124 -msgid "" -"Treat user and group names as case sensitive. At the moment, this option is " -"not supported in the local provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1129 -msgid "Default: True" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:681 -msgid "" -"These configuration options can be present in a domain configuration " -"section, that is, in a section called <quote>[domain/<replaceable>NAME</" -"replaceable>]</quote> <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1141 -msgid "proxy_pam_target (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1144 -msgid "The proxy target PAM proxies to." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1147 -msgid "" -"Default: not set by default, you have to take an existing pam configuration " -"or create a new one and add the service name here." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1155 -msgid "proxy_lib_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1158 -msgid "" -"The name of the NSS library to use in proxy domains. The NSS functions " -"searched for in the library are in the form of _nss_$(libName)_$(function), " -"for example _nss_files_getpwent." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1137 -msgid "" -"Options valid for proxy domains. <placeholder type=\"variablelist\" id=" -"\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:1170 -msgid "The local domain section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:1172 -msgid "" -"This section contains settings for domain that stores users and groups in " -"SSSD native database, that is, a domain that uses " -"<replaceable>id_provider=local</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1179 -msgid "default_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1182 -msgid "The default shell for users created with SSSD userspace tools." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1186 -msgid "Default: <filename>/bin/bash</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1191 -msgid "base_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1194 -msgid "" -"The tools append the login name to <replaceable>base_directory</replaceable> " -"and use that as the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1199 -msgid "Default: <filename>/home</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1204 -msgid "create_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1207 -msgid "" -"Indicate if a home directory should be created by default for new users. " -"Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1211 sssd.conf.5.xml:1223 -msgid "Default: TRUE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1216 -msgid "remove_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1219 -msgid "" -"Indicate if a home directory should be removed by default for deleted " -"users. Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1228 -msgid "homedir_umask (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1231 -msgid "" -"Used by <citerefentry> <refentrytitle>sss_useradd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry> to specify the default permissions " -"on a newly created home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1239 -msgid "Default: 077" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1244 -msgid "skel_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1247 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<citerefentry> <refentrytitle>sss_useradd</refentrytitle> <manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1257 -msgid "Default: <filename>/etc/skel</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1262 -msgid "mail_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1265 -msgid "" -"The mail spool directory. This is needed to manipulate the mailbox when its " -"corresponding user account is modified or deleted. If not specified, a " -"default value is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1272 -msgid "Default: <filename>/var/mail</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1277 -msgid "userdel_cmd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1280 -msgid "" -"The command that is run after a user is removed. The command us passed the " -"username of the user being removed as the first and only parameter. The " -"return code of the command is not taken into account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1286 -msgid "Default: None, no command is run" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:1296 sssd-ldap.5.xml:2064 sssd-simple.5.xml:126 -#: sssd-ipa.5.xml:544 sssd-krb5.5.xml:432 -msgid "EXAMPLE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:1302 -#, no-wrap -msgid "" -"[sssd]\n" -"domains = LDAP\n" -"services = nss, pam\n" -"config_file_version = 2\n" -"\n" -"[nss]\n" -"filter_groups = root\n" -"filter_users = root\n" -"\n" -"[pam]\n" -"\n" -"[domain/LDAP]\n" -"id_provider = ldap\n" -"ldap_uri = ldap://ldap.example.com\n" -"ldap_search_base = dc=example,dc=com\n" -"\n" -"auth_provider = krb5\n" -"krb5_server = kerberos.example.com\n" -"krb5_realm = EXAMPLE.COM\n" -"cache_credentials = true\n" -"\n" -"min_id = 10000\n" -"max_id = 20000\n" -"enumerate = False\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1298 -msgid "" -"The following example shows a typical SSSD config. It does not describe " -"configuration of the domains themselves - refer to documentation on " -"configuring domains for more details. <placeholder type=\"programlisting\" " -"id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1333 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>pam_sss</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ldap.5.xml:10 sssd-ldap.5.xml:16 -msgid "sssd-ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:23 -msgid "" -"This manual page describes the configuration of LDAP domains for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. Refer to the <quote>FILE FORMAT</quote> section of the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for detailed syntax information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:35 -msgid "You can configure SSSD to use more than one LDAP domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:38 -msgid "" -"LDAP back end supports id, auth, access and chpass providers. If you want to " -"authenticate against an LDAP server either TLS/SSL or LDAPS is required. " -"<command>sssd</command> <emphasis>does not</emphasis> support authentication " -"over an unencrypted channel. If the LDAP server is used only as an identity " -"provider, an encrypted channel is not needed. Please refer to " -"<quote>ldap_access_filter</quote> config option for more information about " -"using LDAP as an access provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:49 sssd-simple.5.xml:69 sssd-ipa.5.xml:64 -#: sssd-krb5.5.xml:63 -msgid "CONFIGURATION OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:60 -msgid "ldap_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:63 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference. Refer to the <quote>FAILOVER</" -"quote> section for more information on failover and server redundancy. If " -"not specified, service discovery is enabled. For more information, refer to " -"the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:70 -msgid "The format of the URI must match the format defined in RFC 2732:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:73 -msgid "ldap[s]://<host>[:port]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:76 -msgid "" -"For explicit IPv6 addresses, <host> must be enclosed in brackets []" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:79 -msgid "example: ldap://[fc00::126:25]:389" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:85 -msgid "ldap_chpass_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:88 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference to change the password of a user. " -"Refer to the <quote>FAILOVER</quote> section for more information on " -"failover and server redundancy." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:95 -msgid "To enable service discovery ldap_chpass_dns_service_name must be set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:99 -msgid "Default: empty, i.e. ldap_uri is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:105 -msgid "ldap_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:108 -msgid "The default base DN to use for performing LDAP user operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:112 -msgid "" -"Starting with SSSD 1.7.0, SSSD supports multiple search bases using the " -"syntax:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:116 -msgid "search_base[?scope?[filter][?search_base?scope?[filter]]*]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:119 -msgid "The scope can be one of \"base\", \"onelevel\" or \"subtree\"." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:122 -msgid "" -"The filter must be a valid LDAP search filter as specified by http://www." -"ietf.org/rfc/rfc2254.txt" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:126 -msgid "Examples:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:129 -msgid "" -"ldap_search_base = dc=example,dc=com (which is equivalent to) " -"ldap_search_base = dc=example,dc=com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:134 -msgid "" -"ldap_search_base = cn=host_specific,dc=example,dc=com?subtree?" -"(host=thishost)?dc=example.com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:137 -msgid "" -"Note: It is unsupported to have multiple search bases which reference " -"identically-named objects (for example, groups with the same name in two " -"different search bases). This will lead to unpredictable behavior on client " -"machines." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:144 -msgid "" -"Default: If not set, the value of the defaultNamingContext or namingContexts " -"attribute from the RootDSE of the LDAP server is used. If " -"defaultNamingContext does not exists or has an empty value namingContexts is " -"used. The namingContexts attribute must have a single value with the DN of " -"the search base of the LDAP server to make this work. Multiple values are " -"are not supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:158 -msgid "ldap_schema (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:161 -msgid "" -"Specifies the Schema Type in use on the target LDAP server. Depending on " -"the selected schema, the default attribute names retrieved from the servers " -"may vary. The way that some attributes are handled may also differ. Three " -"schema types are currently supported: rfc2307 rfc2307bis IPA The main " -"difference between these schema types is how group memberships are recorded " -"in the server. With rfc2307, group members are listed by name in the " -"<emphasis>memberUid</emphasis> attribute. With rfc2307bis and IPA, group " -"members are listed by DN and stored in the <emphasis>member</emphasis> " -"attribute." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:180 -msgid "Default: rfc2307" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:186 -msgid "ldap_default_bind_dn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:189 -msgid "The default bind DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:196 -msgid "ldap_default_authtok_type (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:199 -msgid "The type of the authentication token of the default bind DN." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:203 -msgid "The two mechanisms currently supported are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:206 -msgid "password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:209 -msgid "obfuscated_password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:212 -msgid "Default: password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:218 -msgid "ldap_default_authtok (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:221 -msgid "" -"The authentication token of the default bind DN. Only clear text passwords " -"are currently supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:228 -msgid "ldap_user_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:231 -msgid "The object class of a user entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:234 -msgid "Default: posixAccount" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:240 -msgid "ldap_user_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:243 -msgid "The LDAP attribute that corresponds to the user's login name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:247 -msgid "Default: uid" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:253 -msgid "ldap_user_uid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:256 -msgid "The LDAP attribute that corresponds to the user's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:260 -msgid "Default: uidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:266 -msgid "ldap_user_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:269 -msgid "The LDAP attribute that corresponds to the user's primary group id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:273 sssd-ldap.5.xml:740 -msgid "Default: gidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:279 -msgid "ldap_user_gecos (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:282 -msgid "The LDAP attribute that corresponds to the user's gecos field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:286 -msgid "Default: gecos" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:292 -msgid "ldap_user_home_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:295 -msgid "The LDAP attribute that contains the name of the user's home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:299 -msgid "Default: homeDirectory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:305 -msgid "ldap_user_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:308 -msgid "The LDAP attribute that contains the path to the user's default shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:312 -msgid "Default: loginShell" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:318 -msgid "ldap_user_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:321 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP user object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:325 sssd-ldap.5.xml:766 sssd-ldap.5.xml:878 -msgid "Default: nsUniqueId" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:331 -msgid "ldap_user_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:334 sssd-ldap.5.xml:775 sssd-ldap.5.xml:887 -msgid "" -"The LDAP attribute that contains timestamp of the last modification of the " -"parent object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:338 sssd-ldap.5.xml:779 sssd-ldap.5.xml:894 -msgid "Default: modifyTimestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:344 -msgid "ldap_user_shadow_last_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:347 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (date of " -"the last password change)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:357 -msgid "Default: shadowLastChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:363 -msgid "ldap_user_shadow_min (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:366 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (minimum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:375 -msgid "Default: shadowMin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:381 -msgid "ldap_user_shadow_max (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:384 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (maximum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:393 -msgid "Default: shadowMax" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:399 -msgid "ldap_user_shadow_warning (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:402 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password warning period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:412 -msgid "Default: shadowWarning" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:418 -msgid "ldap_user_shadow_inactive (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:421 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password inactivity period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:431 -msgid "Default: shadowInactive" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:437 -msgid "ldap_user_shadow_expire (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:440 -msgid "" -"When using ldap_pwd_policy=shadow or ldap_account_expire_policy=shadow, this " -"parameter contains the name of an LDAP attribute corresponding to its " -"<citerefentry> <refentrytitle>shadow</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> counterpart (account expiration date)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:450 -msgid "Default: shadowExpire" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:456 -msgid "ldap_user_krb_last_pwd_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:459 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time of last password change in " -"kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:465 -msgid "Default: krbLastPwdChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:471 -msgid "ldap_user_krb_password_expiration (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:474 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time when current password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:480 -msgid "Default: krbPasswordExpiration" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:486 -msgid "ldap_user_ad_account_expires (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:489 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the expiration time of the account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:494 -msgid "Default: accountExpires" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:500 -msgid "ldap_user_ad_user_account_control (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:503 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the user account control bit field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:508 -msgid "Default: userAccountControl" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:514 -msgid "ldap_ns_account_lock (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:517 -msgid "" -"When using ldap_account_expire_policy=rhds or equivalent, this parameter " -"determines if access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:522 -msgid "Default: nsAccountLock" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:528 -msgid "ldap_user_nds_login_disabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:531 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines if " -"access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:535 sssd-ldap.5.xml:549 -msgid "Default: loginDisabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:541 -msgid "ldap_user_nds_login_expiration_time (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:544 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines until " -"which date access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:555 -msgid "ldap_user_nds_login_allowed_time_map (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:558 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines the " -"hours of a day in a week when access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:563 -msgid "Default: loginAllowedTimeMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:569 -msgid "ldap_user_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:572 -msgid "" -"The LDAP attribute that contains the user's Kerberos User Principal Name " -"(UPN)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:576 -msgid "Default: krbPrincipalName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:582 -msgid "ldap_user_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:585 -msgid "The LDAP attribute that contains the user's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:592 -msgid "ldap_force_upper_case_realm (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:595 -msgid "" -"Some directory servers, for example Active Directory, might deliver the " -"realm part of the UPN in lower case, which might cause the authentication to " -"fail. Set this option to a non-zero value if you want to use an upper-case " -"realm." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:608 -msgid "ldap_enumeration_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:611 -msgid "" -"Specifies how many seconds SSSD has to wait before refreshing its cache of " -"enumerated records." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:616 sssd-ldap.5.xml:1808 -msgid "Default: 300" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:622 -msgid "ldap_purge_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:625 -msgid "" -"Determine how often to check the cache for inactive entries (such as groups " -"with no members and users who have never logged in) and remove them to save " -"space." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:631 -msgid "Setting this option to zero will disable the cache cleanup operation." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:635 -msgid "Default: 10800 (12 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:641 -msgid "ldap_user_fullname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:644 -msgid "The LDAP attribute that corresponds to the user's full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:648 sssd-ldap.5.xml:727 sssd-ldap.5.xml:828 -#: sssd-ldap.5.xml:919 sssd-ldap.5.xml:1663 sssd-ldap.5.xml:1881 -#: sssd-ipa.5.xml:422 -msgid "Default: cn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:654 -msgid "ldap_user_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:657 -msgid "The LDAP attribute that lists the user's group memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:661 sssd-ipa.5.xml:326 -msgid "Default: memberOf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:667 -msgid "ldap_user_authorized_service (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:670 -msgid "" -"If access_provider=ldap and ldap_access_order=authorized_service, SSSD will " -"use the presence of the authorizedService attribute in the user's LDAP entry " -"to determine access privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:677 -msgid "" -"An explicit deny (!svc) is resolved first. Second, SSSD searches for " -"explicit allow (svc) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:682 -msgid "Default: authorizedService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:688 -msgid "ldap_user_authorized_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:691 -msgid "" -"If access_provider=ldap and ldap_access_order=host, SSSD will use the " -"presence of the host attribute in the user's LDAP entry to determine access " -"privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:697 -msgid "" -"An explicit deny (!host) is resolved first. Second, SSSD searches for " -"explicit allow (host) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:702 -msgid "Default: host" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:708 -msgid "ldap_group_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:711 -msgid "The object class of a group entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:714 -msgid "Default: posixGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:720 -msgid "ldap_group_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:723 -msgid "The LDAP attribute that corresponds to the group name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:733 -msgid "ldap_group_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:736 -msgid "The LDAP attribute that corresponds to the group's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:746 -msgid "ldap_group_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:749 -msgid "The LDAP attribute that contains the names of the group's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:753 -msgid "Default: memberuid (rfc2307) / member (rfc2307bis)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:759 -msgid "ldap_group_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:762 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP group object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:772 -msgid "ldap_group_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:785 -msgid "ldap_group_nesting_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:788 -msgid "" -"If ldap_schema is set to a schema format that supports nested groups (e.g. " -"RFC2307bis), then this option controls how many levels of nesting SSSD will " -"follow. This option has no effect on the RFC2307 schema." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:795 -msgid "Default: 2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:801 -msgid "ldap_netgroup_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:804 -msgid "The object class of a netgroup entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:807 -msgid "In IPA provider, ipa_netgroup_object_class should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:811 -msgid "Default: nisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:817 -msgid "ldap_netgroup_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:820 -msgid "The LDAP attribute that corresponds to the netgroup name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:824 -msgid "In IPA provider, ipa_netgroup_name should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:834 -msgid "ldap_netgroup_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:837 -msgid "The LDAP attribute that contains the names of the netgroup's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:841 -msgid "In IPA provider, ipa_netgroup_member should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:845 -msgid "Default: memberNisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:851 -msgid "ldap_netgroup_triple (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:854 -msgid "" -"The LDAP attribute that contains the (host, user, domain) netgroup triples." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:858 sssd-ldap.5.xml:891 -msgid "This option is not available in IPA provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:861 -msgid "Default: nisNetgroupTriple" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:867 -msgid "ldap_netgroup_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:870 -msgid "" -"The LDAP attribute that contains the UUID/GUID of an LDAP netgroup object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:874 -msgid "In IPA provider, ipa_netgroup_uuid should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:884 -msgid "ldap_netgroup_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:900 -msgid "ldap_service_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:903 -msgid "The object class of a service entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:906 -msgid "Default: ipService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:912 -msgid "ldap_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:915 -msgid "" -"The LDAP attribute that contains the name of service attributes and their " -"aliases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:925 -msgid "ldap_service_port (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:928 -msgid "The LDAP attribute that contains the port managed by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:932 -msgid "Default: ipServicePort" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:938 -msgid "ldap_service_proto (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:941 -msgid "" -"The LDAP attribute that contains the protocols understood by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:945 -msgid "Default: ipServiceProtocol" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:951 -msgid "ldap_service_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:954 -msgid "An optional base DN to restrict service searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:958 sssd-ldap.5.xml:1918 sssd-ldap.5.xml:1937 -#: sssd-ldap.5.xml:1956 sssd-ldap.5.xml:2019 sssd-ldap.5.xml:2041 -#: sssd-ipa.5.xml:163 sssd-ipa.5.xml:187 -msgid "" -"See <quote>ldap_search_base</quote> for information about configuring " -"multiple search bases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:963 sssd-ldap.5.xml:1923 sssd-ldap.5.xml:1942 -#: sssd-ldap.5.xml:1961 sssd-ldap.5.xml:2024 sssd-ldap.5.xml:2046 -#: sssd-ipa.5.xml:173 sssd-ipa.5.xml:192 -msgid "Default: the value of <emphasis>ldap_search_base</emphasis>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:970 -msgid "ldap_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:973 -msgid "" -"Specifies the timeout (in seconds) that ldap searches are allowed to run " -"before they are cancelled and cached results are returned (and offline mode " -"is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:979 -msgid "" -"Note: this option is subject to change in future versions of the SSSD. It " -"will likely be replaced at some point by a series of timeouts for specific " -"lookup types." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:985 sssd-ldap.5.xml:1027 sssd-ldap.5.xml:1042 -msgid "Default: 6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:991 -msgid "ldap_enumeration_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:994 -msgid "" -"Specifies the timeout (in seconds) that ldap searches for user and group " -"enumerations are allowed to run before they are cancelled and cached results " -"are returned (and offline mode is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1001 -msgid "Default: 60" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1007 -msgid "ldap_network_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1010 -msgid "" -"Specifies the timeout (in seconds) after which the <citerefentry> " -"<refentrytitle>poll</refentrytitle> <manvolnum>2</manvolnum> </citerefentry>/" -"<citerefentry> <refentrytitle>select</refentrytitle> <manvolnum>2</" -"manvolnum> </citerefentry> following a <citerefentry> " -"<refentrytitle>connect</refentrytitle> <manvolnum>2</manvolnum> </" -"citerefentry> returns in case of no activity." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1033 -msgid "ldap_opt_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1036 -msgid "" -"Specifies a timeout (in seconds) after which calls to synchronous LDAP APIs " -"will abort if no response is received. Also controls the timeout when " -"communicating with the KDC in case of SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1048 -msgid "ldap_connection_expire_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1051 -msgid "" -"Specifies a timeout (in seconds) that a connection to an LDAP server will be " -"maintained. After this time, the connection will be re-established. If used " -"in parallel with SASL/GSSAPI, the sooner of the two values (this value vs. " -"the TGT lifetime) will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1059 -msgid "Default: 900 (15 minutes)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1065 -msgid "ldap_page_size (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1068 -msgid "" -"Specify the number of records to retrieve from LDAP in a single request. " -"Some LDAP servers enforce a maximum limit per-request." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1073 -msgid "Default: 1000" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1079 -msgid "ldap_disable_paging" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1082 -msgid "" -"Disable the LDAP paging control. This option should be used if the LDAP " -"server reports that it supports the LDAP paging control in its RootDSE but " -"it is not enabled or does not behave properly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1088 -msgid "" -"Example: OpenLDAP servers with the paging control module installed on the " -"server but not enabled will report it in the RootDSE but be unable to use it." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1094 -msgid "" -"Example: 389 DS has a bug where it can only support a one paging control at " -"a time on a single connection. On busy clients, this can result in some " -"requests being denied." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1103 -msgid "ldap_deref_threshold (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1106 -msgid "" -"Specify the number of group members that must be missing from the internal " -"cache in order to trigger a dereference lookup. If less members are missing, " -"they are looked up individually." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1112 -msgid "" -"You can turn off dereference lookups completely by setting the value to 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1116 -msgid "" -"A dereference lookup is a means of fetching all group members in a single " -"LDAP call. Different LDAP servers may implement different dereference " -"methods. The currently supported servers are 389/RHDS, OpenLDAP and Active " -"Directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1124 -msgid "" -"<emphasis>Note:</emphasis> If any of the search bases specifies a search " -"filter, then the dereference lookup performance enhancement will be disabled " -"regardless of this setting." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1137 -msgid "ldap_tls_reqcert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1140 -msgid "" -"Specifies what checks to perform on server certificates in a TLS session, if " -"any. It can be specified as one of the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1146 -msgid "" -"<emphasis>never</emphasis> = The client will not request or check any server " -"certificate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1150 -msgid "" -"<emphasis>allow</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, it will be ignored and the session proceeds normally." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1157 -msgid "" -"<emphasis>try</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, the session is immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1163 -msgid "" -"<emphasis>demand</emphasis> = The server certificate is requested. If no " -"certificate is provided, or a bad certificate is provided, the session is " -"immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1169 -msgid "<emphasis>hard</emphasis> = Same as <quote>demand</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1173 -msgid "Default: hard" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1179 -msgid "ldap_tls_cacert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1182 -msgid "" -"Specifies the file that contains certificates for all of the Certificate " -"Authorities that <command>sssd</command> will recognize." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1187 sssd-ldap.5.xml:1205 sssd-ldap.5.xml:1246 -msgid "" -"Default: use OpenLDAP defaults, typically in <filename>/etc/openldap/ldap." -"conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1194 -msgid "ldap_tls_cacertdir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1197 -msgid "" -"Specifies the path of a directory that contains Certificate Authority " -"certificates in separate individual files. Typically the file names need to " -"be the hash of the certificate followed by '.0'. If available, " -"<command>cacertdir_rehash</command> can be used to create the correct names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1212 -msgid "ldap_tls_cert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1215 -msgid "Specifies the file that contains the certificate for the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1219 sssd-ldap.5.xml:1231 sssd-ldap.5.xml:1979 -#: sssd-ldap.5.xml:2006 sssd-krb5.5.xml:359 -msgid "Default: not set" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1225 -msgid "ldap_tls_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1228 -msgid "Specifies the file that contains the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1237 -msgid "ldap_tls_cipher_suite (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1240 -msgid "" -"Specifies acceptable cipher suites. Typically this is a colon sperated " -"list. See <citerefentry><refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> for format." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1253 -msgid "ldap_id_use_start_tls (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1256 -msgid "" -"Specifies that the id_provider connection must also use <systemitem class=" -"\"protocol\">tls</systemitem> to protect the channel." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1266 -msgid "ldap_sasl_mech (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1269 -msgid "" -"Specify the SASL mechanism to use. Currently only GSSAPI is tested and " -"supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1273 sssd-ldap.5.xml:1428 -msgid "Default: none" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1279 -msgid "ldap_sasl_authid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1282 -msgid "" -"Specify the SASL authorization id to use. When GSSAPI is used, this " -"represents the Kerberos principal used for authentication to the directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1287 -msgid "Default: host/machine.fqdn@REALM" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1293 -msgid "ldap_sasl_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1296 -msgid "" -"If set to true, the LDAP library would perform a reverse lookup to " -"canonicalize the host name during a SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1301 -msgid "Default: false;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1307 -msgid "ldap_krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1310 -msgid "Specify the keytab to use when using SASL/GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1313 -msgid "Default: System keytab, normally <filename>/etc/krb5.keytab</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1319 -msgid "ldap_krb5_init_creds (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1322 -msgid "" -"Specifies that the id_provider should init Kerberos credentials (TGT). This " -"action is performed only if SASL is used and the mechanism selected is " -"GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1334 -msgid "ldap_krb5_ticket_lifetime (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1337 -msgid "Specifies the lifetime in seconds of the TGT if GSSAPI is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1341 -msgid "Default: 86400 (24 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1347 sssd-krb5.5.xml:74 -msgid "krb5_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1350 sssd-krb5.5.xml:77 -msgid "" -"Specifies the comma-separated list of IP addresses or hostnames of the " -"Kerberos servers to which SSSD should connect in the order of preference. " -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. An optional port number (preceded by a " -"colon) may be appended to the addresses or hostnames. If empty, service " -"discovery is enabled - for more information, refer to the <quote>SERVICE " -"DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1362 sssd-krb5.5.xml:89 -msgid "" -"When using service discovery for KDC or kpasswd servers, SSSD first searches " -"for DNS entries that specify _udp as the protocol and falls back to _tcp if " -"none are found." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1367 sssd-krb5.5.xml:94 -msgid "" -"This option was named <quote>krb5_kdcip</quote> in earlier releases of SSSD. " -"While the legacy name is recognized for the time being, users are advised to " -"migrate their config files to use <quote>krb5_server</quote> instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1376 sssd-ipa.5.xml:216 sssd-krb5.5.xml:103 -msgid "krb5_realm (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1379 -msgid "Specify the Kerberos REALM (for SASL/GSSAPI auth)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1382 -msgid "Default: System defaults, see <filename>/etc/krb5.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1388 sssd-ipa.5.xml:231 sssd-krb5.5.xml:409 -msgid "krb5_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1391 -msgid "" -"Specifies if the host principal should be canonicalized when connecting to " -"LDAP server. This feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1403 -msgid "ldap_pwd_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1406 -msgid "" -"Select the policy to evaluate the password expiration on the client side. " -"The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1411 -msgid "" -"<emphasis>none</emphasis> - No evaluation on the client side. This option " -"cannot disable server-side password policies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1416 -msgid "" -"<emphasis>shadow</emphasis> - Use <citerefentry><refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum></citerefentry> style attributes to " -"evaluate if the password has expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1422 -msgid "" -"<emphasis>mit_kerberos</emphasis> - Use the attributes used by MIT Kerberos " -"to determine if the password has expired. Use chpass_provider=krb5 to update " -"these attributes when the password is changed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1434 -msgid "ldap_referrals (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1437 -msgid "Specifies whether automatic referral chasing should be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1441 -msgid "" -"Please note that sssd only supports referral chasing when it is compiled " -"with OpenLDAP version 2.4.13 or higher." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1452 -msgid "ldap_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1455 -msgid "Specifies the service name to use when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1459 -msgid "Default: ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1465 -msgid "ldap_chpass_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1468 -msgid "" -"Specifies the service name to use to find an LDAP server which allows " -"password changes when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1473 -msgid "Default: not set, i.e. service discovery is disabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1479 -msgid "ldap_access_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1482 -msgid "" -"If using access_provider = ldap, this option is mandatory. It specifies an " -"LDAP search filter criteria that must be met for the user to be granted " -"access on this host. If access_provider = ldap and this option is not set, " -"it will result in all users being denied access. Use access_provider = allow " -"to change this default behavior." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1492 sssd-ldap.5.xml:1982 -msgid "Example:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1495 -#, no-wrap -msgid "" -"access_provider = ldap\n" -"ldap_access_filter = memberOf=cn=allowedusers,ou=Groups,dc=example,dc=com\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1499 -msgid "" -"This example means that access to this host is restricted to members of the " -"\"allowedusers\" group in ldap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1504 -msgid "" -"Offline caching for this feature is limited to determining whether the " -"user's last online login was granted access permission. If they were granted " -"access during their last login, they will continue to be granted access " -"while offline and vice-versa." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1512 sssd-ldap.5.xml:1562 -msgid "Default: Empty" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1518 -msgid "ldap_account_expire_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1521 -msgid "" -"With this option a client side evaluation of access control attributes can " -"be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1525 -msgid "" -"Please note that it is always recommended to use server side access control, " -"i.e. the LDAP server should deny the bind request with a suitable error code " -"even if the password is correct." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1532 -msgid "The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1535 -msgid "" -"<emphasis>shadow</emphasis>: use the value of ldap_user_shadow_expire to " -"determine if the account is expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1540 -msgid "" -"<emphasis>ad</emphasis>: use the value of the 32bit field " -"ldap_user_ad_user_account_control and allow access if the second bit is not " -"set. If the attribute is missing access is granted. Also the expiration time " -"of the account is checked." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1547 -msgid "" -"<emphasis>rhds</emphasis>, <emphasis>ipa</emphasis>, <emphasis>389ds</" -"emphasis>: use the value of ldap_ns_account_lock to check if access is " -"allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1553 -msgid "" -"<emphasis>nds</emphasis>: the values of " -"ldap_user_nds_login_allowed_time_map, ldap_user_nds_login_disabled and " -"ldap_user_nds_login_expiration_time are used to check if access is allowed. " -"If both attributes are missing access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1568 -msgid "ldap_access_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1571 -msgid "Comma separated list of access control options. Allowed values are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1575 -msgid "<emphasis>filter</emphasis>: use ldap_access_filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1578 -msgid "<emphasis>expire</emphasis>: use ldap_account_expire_policy" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1582 -msgid "" -"<emphasis>authorized_service</emphasis>: use the authorizedService attribute " -"to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1587 -msgid "<emphasis>host</emphasis>: use the host attribute to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1591 -msgid "Default: filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1594 -msgid "" -"Please note that it is a configuration error if a value is used more than " -"once." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1601 -msgid "ldap_deref (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1604 -msgid "" -"Specifies how alias dereferencing is done when performing a search. The " -"following options are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1609 -msgid "<emphasis>never</emphasis>: Aliases are never dereferenced." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1613 -msgid "" -"<emphasis>searching</emphasis>: Aliases are dereferenced in subordinates of " -"the base object, but not in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1618 -msgid "" -"<emphasis>finding</emphasis>: Aliases are only dereferenced when locating " -"the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1623 -msgid "" -"<emphasis>always</emphasis>: Aliases are dereferenced both in searching and " -"in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1628 -msgid "" -"Default: Empty (this is handled as <emphasis>never</emphasis> by the LDAP " -"client libraries)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:51 -msgid "" -"All of the common configuration options that apply to SSSD domains also " -"apply to LDAP domains. Refer to the <quote>DOMAIN SECTIONS</quote> section " -"of the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for full details. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1639 -msgid "SUDO OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1644 -msgid "ldap_sudorule_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1647 -msgid "The object class of a sudo rule entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1650 -msgid "Default: sudoRole" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1656 -msgid "ldap_sudorule_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1659 -msgid "The LDAP attribute that corresponds to the sudo rule name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1669 -msgid "ldap_sudorule_command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1672 -msgid "The LDAP attribute that corresponds to the command name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1676 -msgid "Default: sudoCommand" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1682 -msgid "ldap_sudorule_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1685 -msgid "" -"The LDAP attribute that corresponds to the host name (or host IP address, " -"host IP network, or host netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1690 -msgid "Default: sudoHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1696 -msgid "ldap_sudorule_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1699 -msgid "" -"The LDAP attribute that corresponds to the user name (or UID, group name or " -"user's netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1703 -msgid "Default: sudoUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1709 -msgid "ldap_sudorule_option (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1712 -msgid "The LDAP attribute that corresponds to the sudo options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1716 -msgid "Default: sudoOption" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1722 -msgid "ldap_sudorule_runasuser (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1725 -msgid "" -"The LDAP attribute that corresponds to the user name that commands may be " -"run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1729 -msgid "Default: sudoRunAsUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1735 -msgid "ldap_sudorule_runasgroup (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1738 -msgid "" -"The LDAP attribute that corresponds to the group name or group GID that " -"commands may be run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1742 -msgid "Default: sudoRunAsGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1748 -msgid "ldap_sudorule_notbefore (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1751 -msgid "" -"The LDAP attribute that corresponds to the start date/time for when the sudo " -"rule is valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1755 -msgid "Default: sudoNotBefore" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1761 -msgid "ldap_sudorule_notafter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1764 -msgid "" -"The LDAP attribute that corresponds to the expiration date/time, after which " -"the sudo rule will no longer be valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1769 -msgid "Default: sudoNotAfter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1775 -msgid "ldap_sudorule_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1778 -msgid "The LDAP attribute that corresponds to the ordering index of the rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1782 -msgid "Default: sudoOrder" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1788 -msgid "ldap_sudo_refresh_enabled (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1791 -msgid "" -"Enables periodical download of all sudo rules. The cache is purged before " -"each update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1801 -msgid "ldap_sudo_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1804 -msgid "" -"How many seconds SSSD has to wait before refreshing its cache of sudo rules." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1642 -msgid "<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1815 -msgid "" -"This manual page only describes attribute name mapping. For detailed " -"explanation of sudo related attribute semantics, see <citerefentry> " -"<refentrytitle>sudoers.ldap</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1825 -msgid "AUTOFS OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1827 -msgid "" -"Please note that the default values correspond to the default schema which " -"is RFC2307." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1834 -msgid "ldap_autofs_map_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1837 sssd-ldap.5.xml:1863 -msgid "The object class of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1840 sssd-ldap.5.xml:1867 -msgid "Default: automountMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1847 -msgid "ldap_autofs_map_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1850 -msgid "The name of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1853 -msgid "Default: ou" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1860 -msgid "ldap_autofs_entry_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1874 -msgid "ldap_autofs_entry_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1877 sssd-ldap.5.xml:1891 -msgid "" -"The key of an automount entry in LDAP. The entry usually corresponds to a " -"mount point." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1888 -msgid "ldap_autofs_entry_value (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1895 -msgid "Default: automountInformation" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1832 -msgid "" -"<placeholder type=\"variablelist\" id=\"0\"/> <placeholder type=" -"\"variablelist\" id=\"1\"/> <placeholder type=\"variablelist\" id=\"2\"/> " -"<placeholder type=\"variablelist\" id=\"3\"/> <placeholder type=" -"\"variablelist\" id=\"4\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1904 -msgid "ADVANCED OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1911 -msgid "ldap_netgroup_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1914 -msgid "" -"An optional base DN to restrict netgroup searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1930 -msgid "ldap_user_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1933 -msgid "An optional base DN to restrict user searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1949 -msgid "ldap_group_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1952 -msgid "An optional base DN to restrict group searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1968 -msgid "ldap_user_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1971 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict user searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1975 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_user_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1985 -#, no-wrap -msgid "" -" ldap_user_search_filter = (loginShell=/bin/tcsh)\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1988 -msgid "" -"This filter would restrict user searches to users that have their shell set " -"to /bin/tcsh." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1995 -msgid "ldap_group_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1998 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict group searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2002 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_group_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2012 -msgid "ldap_sudo_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2015 -msgid "" -"An optional base DN to restrict sudo rules searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2034 -msgid "ldap_autofs_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2037 -msgid "" -"An optional base DN to restrict automounter searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1906 -msgid "" -"These options are supported by LDAP domains, but they should be used with " -"caution. Please include them in your configuration only if you know what you " -"are doing. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2066 -msgid "" -"The following example assumes that SSSD is correctly configured and LDAP is " -"set to one of the domains in the <replaceable>[domains]</replaceable> " -"section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ldap.5.xml:2072 -#, no-wrap -msgid "" -" [domain/LDAP]\n" -" id_provider = ldap\n" -" auth_provider = ldap\n" -" ldap_uri = ldap://ldap.mydomain.org\n" -" ldap_search_base = dc=mydomain,dc=org\n" -" ldap_tls_reqcert = demand\n" -" cache_credentials = true\n" -" enumerate = true\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2071 sssd-simple.5.xml:134 sssd-ipa.5.xml:552 -#: sssd-krb5.5.xml:441 -msgid "<placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:2085 sssd_krb5_locator_plugin.8.xml:61 -msgid "NOTES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2087 -msgid "" -"The descriptions of some of the configuration options in this manual page " -"are based on the <citerefentry> <refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page from the OpenLDAP 2.4 " -"distribution." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2098 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <refentryinfo> -#: pam_sss.8.xml:8 include/upstream.xml:2 -msgid "" -"<productname>SSSD</productname> <orgname>The SSSD upstream - http://" -"fedorahosted.org/sssd</orgname>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: pam_sss.8.xml:13 pam_sss.8.xml:18 -msgid "pam_sss" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: pam_sss.8.xml:19 -msgid "PAM module for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: pam_sss.8.xml:24 -msgid "" -"<command>pam_sss.so</command> <arg choice='opt'> <replaceable>quiet</" -"replaceable> </arg> <arg choice='opt'> <replaceable>forward_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_first_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_authtok</" -"replaceable> </arg> <arg choice='opt'> <replaceable>retry=N</replaceable> </" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:45 -msgid "" -"<command>pam_sss.so</command> is the PAM interface to the System Security " -"Services daemon (SSSD). Errors and results are logged through <command>syslog" -"(3)</command> with the LOG_AUTHPRIV facility." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:55 -msgid "<option>quiet</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:58 -msgid "Suppress log messages for unknown users." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:63 -msgid "<option>forward_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:66 -msgid "" -"If <option>forward_pass</option> is set the entered password is put on the " -"stack for other PAM modules to use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:73 -msgid "<option>use_first_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:76 -msgid "" -"The argument use_first_pass forces the module to use a previous stacked " -"modules password and will never prompt the user - if no password is " -"available or the password is not appropriate, the user will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:84 -msgid "<option>use_authtok</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:87 -msgid "" -"When password changing enforce the module to set the new password to the one " -"provided by a previously stacked password module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:94 -msgid "<option>retry=N</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:97 -msgid "" -"If specified the user is asked another N times for a password if " -"authentication fails. Default is 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:99 -msgid "" -"Please note that this option might not work as expected if the application " -"calling PAM handles the user dialog on its own. A typical example is " -"<command>sshd</command> with <option>PasswordAuthentication</option>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:110 -msgid "MODULE TYPES PROVIDED" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:111 -msgid "" -"All module types (<option>account</option>, <option>auth</option>, " -"<option>password</option> and <option>session</option>) are provided." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:117 -msgid "FILES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:118 -msgid "" -"If a password reset by root fails, because the corresponding SSSD provider " -"does not support password resets, an individual message can be displayed. " -"This message can e.g. contain instructions about how to reset a password." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:123 -msgid "" -"The message is read from the file <filename>pam_sss_pw_reset_message.LOC</" -"filename> where LOC stands for a locale string returned by <citerefentry> " -"<refentrytitle>setlocale</refentrytitle><manvolnum>3</manvolnum> </" -"citerefentry>. If there is no matching file the content of " -"<filename>pam_sss_pw_reset_message.txt</filename> is displayed. Root must be " -"the owner of the files and only root may have read and write permissions " -"while all other users must have only read permissions." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:133 -msgid "" -"These files are searched in the directory <filename>/etc/sssd/customize/" -"DOMAIN_NAME/</filename>. If no matching file is present a generic message is " -"displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:141 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd_krb5_locator_plugin.8.xml:10 sssd_krb5_locator_plugin.8.xml:15 -msgid "sssd_krb5_locator_plugin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:22 -msgid "" -"The Kerberos locator plugin <command>sssd_krb5_locator_plugin</command> is " -"used by the Kerberos provider of <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry> to tell the Kerberos " -"libraries what Realm and which KDC to use. Typically this is done in " -"<citerefentry> <refentrytitle>krb5.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> which is always read by the Kerberos libraries. " -"To simplify the configuration the Realm and the KDC can be defined in " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> as described in <citerefentry> " -"<refentrytitle>sssd-krb5.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry> puts the Realm and the name or IP address of the KDC into " -"the environment variables SSSD_KRB5_REALM and SSSD_KRB5_KDC respectively. " -"When <command>sssd_krb5_locator_plugin</command> is called by the kerberos " -"libraries it reads and evaluates these variables and returns them to the " -"libraries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:63 -msgid "" -"Not all Kerberos implementations support the use of plugins. If " -"<command>sssd_krb5_locator_plugin</command> is not available on your system " -"you have to edit /etc/krb5.conf to reflect your Kerberos setup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:69 -msgid "" -"If the environment variable SSSD_KRB5_LOCATOR_DEBUG is set to any value " -"debug messages will be sent to stderr." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:77 -msgid "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-simple.5.xml:10 sssd-simple.5.xml:16 -msgid "sssd-simple" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd-simple.5.xml:17 -msgid "the configuration file for SSSD's 'simple' access-control provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:24 -msgid "" -"This manual page describes the configuration of the simple access-control " -"provider for <citerefentry> <refentrytitle>sssd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry>. For a detailed syntax reference, " -"refer to the <quote>FILE FORMAT</quote> section of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:38 -msgid "" -"The simple access provider grants or denies access based on an access or " -"deny list of user or group names. The following rules apply:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:43 -msgid "If all lists are empty, access is granted" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:47 -msgid "" -"If any list is provided, the order of evaluation is allow,deny. This means " -"that any matching deny rule will supersede any matched allow rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:54 -msgid "" -"If either or both \"allow\" lists are provided, all users are denied unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:60 -msgid "" -"If only \"deny\" lists are provided, all users are granted access unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:78 -msgid "simple_allow_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:81 -msgid "Comma separated list of users who are allowed to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:88 -msgid "simple_deny_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:91 -msgid "Comma separated list of users who are explicitly denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:97 -msgid "simple_allow_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:100 -msgid "" -"Comma separated list of groups that are allowed to log in. This applies only " -"to groups within this SSSD domain. Local groups are not evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:108 -msgid "simple_deny_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:111 -msgid "" -"Comma separated list of groups that are explicitly denied access. This " -"applies only to groups within this SSSD domain. Local groups are not " -"evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:70 sssd-ipa.5.xml:65 -msgid "" -"Refer to the section <quote>DOMAIN SECTIONS</quote> of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page for details on the configuration of an SSSD " -"domain. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:120 -msgid "" -"Please note that it is an configuration error if both, simple_allow_users " -"and simple_deny_users, are defined." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:128 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the simple access provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-simple.5.xml:135 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" access_provider = simple\n" -" simple_allow_users = user1, user2\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:145 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ipa.5.xml:10 sssd-ipa.5.xml:16 -msgid "sssd-ipa" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:23 -msgid "" -"This manual page describes the configuration of the IPA provider for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. For a detailed syntax reference, refer to the <quote>FILE " -"FORMAT</quote> section of the <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:36 -msgid "" -"The IPA provider is a back end used to connect to an IPA server. (Refer to " -"the freeipa.org web site for information about IPA servers.) This provider " -"requires that the machine be joined to the IPA domain; configuration is " -"almost entirely self-discovered and obtained directly from the server." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:43 -msgid "" -"The IPA provider accepts the same options used by the <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> identity provider and the <citerefentry> <refentrytitle>sssd-" -"krb5</refentrytitle> <manvolnum>5</manvolnum> </citerefentry> authentication " -"provider with some exceptions described below." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:55 -msgid "" -"However, it is neither necessary nor recommended to set these options. IPA " -"provider can also be used as an access and chpass provider. As an access " -"provider it uses HBAC (host-based access control) rules. Please refer to " -"freeipa.org for more information about HBAC. No configuration of access " -"provider is required on the client side." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:72 -msgid "ipa_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:75 -msgid "" -"Specifies the name of the IPA domain. This is optional. If not provided, " -"the configuration domain name is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:83 -msgid "ipa_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:86 -msgid "" -"The comma-separated list of IP addresses or hostnames of the IPA servers to " -"which SSSD should connect in the order of preference. For more information " -"on failover and server redundancy, see the <quote>FAILOVER</quote> section. " -"This is optional if autodiscovery is enabled. For more information on " -"service discovery, refer to the the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:99 -msgid "ipa_hostname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:102 -msgid "" -"Optional. May be set on machines where the hostname(5) does not reflect the " -"fully qualified name used in the IPA domain to identify this host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:110 -msgid "ipa_dyndns_update (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:113 -msgid "" -"Optional. This option tells SSSD to automatically update the DNS server " -"built into FreeIPA v2 with the IP address of this client." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:118 -msgid "" -"NOTE: On older systems (such as RHEL 5), for this behavior to work reliably, " -"the default Kerberos realm must be set properly in /etc/krb5.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:129 -msgid "ipa_dyndns_iface (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:132 -msgid "" -"Optional. Applicable only when ipa_dyndns_update is true. Choose the " -"interface whose IP address should be used for dynamic DNS updates." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:137 -msgid "Default: Use the IP address of the IPA LDAP connection" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:143 -msgid "ipa_hbac_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:146 -msgid "Optional. Use the given string as search base for HBAC related objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:150 -msgid "Default: Use base DN" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:156 -msgid "ipa_host_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:159 -msgid "Optional. Use the given string as search base for host objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:168 -msgid "" -"If filter is given in any of search bases and " -"<emphasis>ipa_hbac_support_srchost</emphasis> is set to False, the filter " -"will be ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:180 -msgid "ipa_selinux_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:183 -msgid "Optional. Use the given string as search base for SELinux user maps." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:199 sssd-krb5.5.xml:229 -msgid "krb5_validate (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:202 sssd-krb5.5.xml:232 -msgid "" -"Verify with the help of krb5_keytab that the TGT obtained has not been " -"spoofed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:209 -msgid "" -"Note that this default differs from the traditional Kerberos provider back " -"end." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:219 -msgid "" -"The name of the Kerberos realm. This is optional and defaults to the value " -"of <quote>ipa_domain</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:223 -msgid "" -"The name of the Kerberos realm has a special meaning in IPA - it is " -"converted into the base DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:234 -msgid "" -"Specifies if the host and user principal should be canonicalized when " -"connecting to IPA LDAP and also for AS requests. This feature is available " -"with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:247 -msgid "ipa_hbac_refresh (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:250 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server. " -"This will reduce the latency and load on the IPA server if there are many " -"access-control requests made in a short period." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:257 -msgid "Default: 5 (seconds)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:262 -msgid "ipa_hbac_treat_deny_as (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:265 -msgid "" -"This option specifies how to treat the deprecated DENY-type HBAC rules. As " -"of FreeIPA v2.1, DENY rules are no longer supported on the server. All users " -"of FreeIPA will need to migrate their rules to use only the ALLOW rules. The " -"client will support two modes of operation during this transition period:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:274 -msgid "" -"<emphasis>DENY_ALL</emphasis>: If any HBAC DENY rules are detected, all " -"users will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:279 -msgid "" -"<emphasis>IGNORE</emphasis>: SSSD will ignore any DENY rules. Be very " -"careful with this option, as it may result in opening unintended access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:284 -msgid "Default: DENY_ALL" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:289 -msgid "ipa_hbac_support_srchost (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:292 -msgid "" -"If this is set to false, then srchost as given to SSSD by PAM will be " -"ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:296 -msgid "" -"Note that if set to <emphasis>False</emphasis>, this option casuses filters " -"given in <emphasis>ipa_host_search_base</emphasis> to be ignored;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:307 -msgid "ipa_automount_location (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:310 -msgid "The automounter location this IPA client will be using" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:313 -msgid "Default: The location named \"default\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:319 -msgid "ipa_netgroup_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:322 -msgid "The LDAP attribute that lists netgroup's memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:331 -msgid "ipa_netgroup_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:334 -msgid "" -"The LDAP attribute that lists system users and groups that are direct " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:339 sssd-ipa.5.xml:434 -msgid "Default: memberUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:344 -msgid "ipa_netgroup_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:347 -msgid "" -"The LDAP attribute that lists hosts and host groups that are direct members " -"of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:351 sssd-ipa.5.xml:446 -msgid "Default: memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:356 -msgid "ipa_netgroup_member_ext_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:359 -msgid "" -"The LDAP attribute that lists FQDNs of hosts and host groups that are " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:363 -msgid "Default: externalHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:368 -msgid "ipa_netgroup_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:371 -msgid "The LDAP attribute that contains NIS domain name of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:375 -msgid "Default: nisDomainName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:381 -msgid "ipa_host_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:384 sssd-ipa.5.xml:407 -msgid "The object class of a host entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:387 sssd-ipa.5.xml:410 -msgid "Default: ipaHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:392 -msgid "ipa_host_fqdn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:395 -msgid "The LDAP attribute that contains FQDN of the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:398 -msgid "Default: fqdn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:404 -msgid "ipa_selinux_usermap_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:415 -msgid "ipa_selinux_usermap_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:418 -msgid "The LDAP attribute that contains the name of SELinux usermap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:427 -msgid "ipa_selinux_usermap_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:430 -msgid "" -"The LDAP attribute that contains all users / groups this rule match against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:439 -msgid "ipa_selinux_usermap_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:442 -msgid "" -"The LDAP attribute that contains all hosts / hostgroups this rule match " -"against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:451 -msgid "ipa_selinux_usermap_see_also (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:454 -msgid "" -"The LDAP attribute that contains DN of HBAC rule which can be used for " -"matching instead of memberUser and memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:459 -msgid "Default: seeAlso" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:464 -msgid "ipa_selinux_usermap_selinux_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:467 -msgid "The LDAP attribute that contains SELinux user string itself." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:471 -msgid "Default: ipaSELinuxUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:476 -msgid "ipa_selinux_usermap_enabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:479 -msgid "" -"The LDAP attribute that contains whether or not is user map enabled for " -"usage." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:483 -msgid "Default: ipaEnabledFlag" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:488 -msgid "ipa_selinux_usermap_user_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:491 -msgid "The LDAP attribute that contains user category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:495 -msgid "Default: userCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:500 -msgid "ipa_selinux_usermap_host_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:503 -msgid "The LDAP attribute that contains host category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:507 -msgid "Default: hostCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:512 -msgid "ipa_selinux_usermap_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:515 -msgid "The LDAP attribute that contains unique ID of the user map." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:519 -msgid "Default: ipaUniqueID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:524 -msgid "ipa_host_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:527 -msgid "The LDAP attribute that contains the host's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:531 -msgid "Default: ipaSshPubKey" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:546 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the ipa provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ipa.5.xml:553 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" id_provider = ipa\n" -" ipa_server = ipaserver.example.com\n" -" ipa_hostname = myhost.example.com\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:564 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.8.xml:10 sssd.8.xml:15 -msgid "sssd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.8.xml:16 -msgid "System Security Services Daemon" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sssd.8.xml:21 -msgid "" -"<command>sssd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:31 -msgid "" -"<command>SSSD</command> provides a set of daemons to manage access to remote " -"directories and authentication mechanisms. It provides an NSS and PAM " -"interface toward the system and a pluggable backend system to connect to " -"multiple different account sources as well as D-Bus interface. It is also " -"the basis to provide client auditing and policy services for projects like " -"FreeIPA. It provides a more robust database to store local users as well as " -"extended user data." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:46 -msgid "" -"<option>-d</option>,<option>--debug-level</option> <replaceable>LEVEL</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:53 -msgid "<option>--debug-timestamps=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:57 -msgid "<emphasis>1</emphasis>: Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:60 -msgid "<emphasis>0</emphasis>: Disable timestamp in the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:69 -msgid "<option>--debug-microseconds=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:73 -msgid "" -"<emphasis>1</emphasis>: Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:76 -msgid "<emphasis>0</emphasis>: Disable microseconds in timestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:79 -msgid "Default: 0" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:85 -msgid "<option>-f</option>,<option>--debug-to-files</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:89 -msgid "" -"Send the debug output to files instead of stderr. By default, the log files " -"are stored in <filename>/var/log/sssd</filename> and there are separate log " -"files for every SSSD service and domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:97 -msgid "<option>-D</option>,<option>--daemon</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:101 -msgid "Become a daemon after starting up." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:107 -msgid "<option>-i</option>,<option>--interactive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:111 -msgid "Run in the foreground, don't become a daemon." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:117 sss_debuglevel.8.xml:42 -msgid "<option>-c</option>,<option>--config</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:121 sss_debuglevel.8.xml:46 -msgid "" -"Specify a non-default config file. The default is <filename>/etc/sssd/sssd." -"conf</filename>. For reference on the config file syntax and options, " -"consult the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:135 -msgid "<option>--version</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:139 -msgid "Print version number and exit." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.8.xml:147 -msgid "Signals" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:150 -msgid "SIGTERM/SIGINT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:153 -msgid "" -"Informs the SSSD to gracefully terminate all of its child processes and then " -"shut down the monitor." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:159 -msgid "SIGHUP" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:162 -msgid "" -"Tells the SSSD to stop writing to its current debug file descriptors and to " -"close and reopen them. This is meant to facilitate log rolling with programs " -"like logrotate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:170 -msgid "SIGUSR1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:173 -msgid "" -"Tells the SSSD to simulate offline operation for one minute. This is mostly " -"useful for testing purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:179 -msgid "SIGUSR2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:182 -msgid "" -"Tells the SSSD to go online immediately. This is mostly useful for testing " -"purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:193 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_obfuscate.8.xml:10 sss_obfuscate.8.xml:15 -msgid "sss_obfuscate" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_obfuscate.8.xml:16 -msgid "obfuscate a clear text password" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_obfuscate.8.xml:21 -msgid "" -"<command>sss_obfuscate</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>[PASSWORD]</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:32 -msgid "" -"<command>sss_obfuscate</command> converts a given password into human-" -"unreadable format and places it into appropriate domain section of the SSSD " -"config file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:37 -msgid "" -"The cleartext password is read from standard input or entered " -"interactively. The obfuscated password is put into " -"<quote>ldap_default_authtok</quote> parameter of a given SSSD domain and the " -"<quote>ldap_default_authtok_type</quote> parameter is set to " -"<quote>obfuscated_password</quote>. Refer to <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more details on these parameters." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:49 -msgid "" -"Please note that obfuscating the password provides <emphasis>no real " -"security benefit</emphasis> as it is still possible for an attacker to " -"reverse-engineer the password back. Using better authentication mechanisms " -"such as client side certificates or GSSAPI is <emphasis>strongly</emphasis> " -"advised." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:63 -msgid "<option>-s</option>,<option>--stdin</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:67 -msgid "The password to obfuscate will be read from standard input." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:74 sss_ssh_authorizedkeys.1.xml:82 -#: sss_ssh_knownhostsproxy.1.xml:81 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>DOMAIN</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:79 -msgid "" -"The SSSD domain to use the password in. The default name is <quote>default</" -"quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:86 -msgid "" -"<option>-f</option>,<option>--file</option> <replaceable>FILE</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:91 -msgid "Read the config file specified by the positional parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:95 -msgid "Default: <filename>/etc/sssd/sssd.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:105 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_useradd.8.xml:10 sss_useradd.8.xml:15 -msgid "sss_useradd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_useradd.8.xml:16 -msgid "create a new user" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_useradd.8.xml:21 -msgid "" -"<command>sss_useradd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:32 -msgid "" -"<command>sss_useradd</command> creates a new user account using the values " -"specified on the command line plus the default values from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:43 -msgid "" -"<option>-u</option>,<option>--uid</option> <replaceable>UID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:48 -msgid "" -"Set the UID of the user to the value of <replaceable>UID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:55 sss_usermod.8.xml:43 -msgid "" -"<option>-c</option>,<option>--gecos</option> <replaceable>COMMENT</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:60 sss_usermod.8.xml:48 -msgid "" -"Any text string describing the user. Often used as the field for the user's " -"full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:67 sss_usermod.8.xml:55 -msgid "" -"<option>-h</option>,<option>--home</option> <replaceable>HOME_DIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:72 -msgid "" -"The home directory of the user account. The default is to append the " -"<replaceable>LOGIN</replaceable> name to <filename>/home</filename> and use " -"that as the home directory. The base that is prepended before " -"<replaceable>LOGIN</replaceable> is tunable with <quote>user_defaults/" -"baseDirectory</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:82 sss_usermod.8.xml:66 -msgid "" -"<option>-s</option>,<option>--shell</option> <replaceable>SHELL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:87 -msgid "" -"The user's login shell. The default is currently <filename>/bin/bash</" -"filename>. The default can be changed with <quote>user_defaults/" -"defaultShell</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:96 -msgid "" -"<option>-G</option>,<option>--groups</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:101 -msgid "A list of existing groups this user is also a member of." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:107 -msgid "<option>-m</option>,<option>--create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:111 -msgid "" -"Create the user's home directory if it does not exist. The files and " -"directories contained in the skeleton directory (which can be defined with " -"the -k option or in the config file) will be copied to the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:121 -msgid "<option>-M</option>,<option>--no-create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:125 -msgid "" -"Do not create the user's home directory. Overrides configuration settings." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:132 -msgid "" -"<option>-k</option>,<option>--skel</option> <replaceable>SKELDIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:137 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<command>sss_useradd</command>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:143 -msgid "" -"This option is only valid if the <option>-m</option> (or <option>--create-" -"home</option>) option is specified, or creation of home directories is set " -"to TRUE in the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:152 sss_usermod.8.xml:124 -msgid "" -"<option>-Z</option>,<option>--selinux-user</option> " -"<replaceable>SELINUX_USER</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:157 -msgid "" -"The SELinux user for the user's login. If not specified, the system default " -"will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:169 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-krb5.5.xml:10 sssd-krb5.5.xml:16 -msgid "sssd-krb5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:23 -msgid "" -"This manual page describes the configuration of the Kerberos 5 " -"authentication backend for <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry>. For a detailed " -"syntax reference, please refer to the <quote>FILE FORMAT</quote> section of " -"the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:36 -msgid "" -"The Kerberos 5 authentication backend contains auth and chpass providers. It " -"must be paired with identity provider in order to function properly (for " -"example, id_provider = ldap). Some information required by the Kerberos 5 " -"authentication backend must be provided by the identity provider, such as " -"the user's Kerberos Principal Name (UPN). The configuration of the identity " -"provider should have an entry to specify the UPN. Please refer to the man " -"page for the applicable identity provider for details on how to configure " -"this." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:47 -msgid "" -"This backend also provides access control based on the .k5login file in the " -"home directory of the user. See <citerefentry> <refentrytitle>.k5login</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry> for more details. " -"Please note that an empty .k5login file will deny all access to this user. " -"To activate this feature use 'access_provider = krb5' in your sssd " -"configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:55 -msgid "" -"In the case where the UPN is not available in the identity backend " -"<command>sssd</command> will construct a UPN using the format " -"<replaceable>username</replaceable>@<replaceable>krb5_realm</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:106 -msgid "" -"The name of the Kerberos realm. This option is required and must be " -"specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:113 -msgid "krb5_kpasswd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:116 -msgid "" -"If the change password service is not running on the KDC alternative servers " -"can be defined here. An optional port number (preceded by a colon) may be " -"appended to the addresses or hostnames." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:122 -msgid "" -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. Please note that even if there are no more " -"kpasswd servers to try the back end is not switch to offline if " -"authentication against the KDC is still possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:129 -msgid "Default: Use the KDC" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:135 -msgid "krb5_ccachedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:138 -msgid "" -"Directory to store credential caches. All the substitution sequences of " -"krb5_ccname_template can be used here, too, except %d and %P. If the " -"directory does not exist it will be created. If %u, %U, %p or %h are used a " -"private directory belonging to the user is created. Otherwise a public " -"directory with restricted deletion flag (aka sticky bit, see <citerefentry> " -"<refentrytitle>chmod</refentrytitle> <manvolnum>1</manvolnum> </" -"citerefentry> for details) is created." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:151 -msgid "Default: /tmp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:157 -msgid "krb5_ccname_template (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:171 -msgid "login UID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:174 -msgid "%p" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:175 -msgid "principal name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:179 -msgid "%r" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:180 -msgid "realm name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:183 -msgid "%h" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:184 -msgid "home directory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:189 -msgid "value of krb5ccache_dir" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:194 -msgid "%P" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:195 -msgid "the process ID of the sssd client" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:160 -msgid "" -"Location of the user's credential cache. Currently only file based " -"credential caches are supported. In the template the following sequences are " -"substituted: <placeholder type=\"variablelist\" id=\"0\"/> If the template " -"ends with 'XXXXXX' mkstemp(3) is used to create a unique filename in a safe " -"way." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:209 -msgid "Default: FILE:%d/krb5cc_%U_XXXXXX" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:215 -msgid "krb5_auth_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:218 -msgid "" -"Timeout in seconds after an online authentication or change password request " -"is aborted. If possible the authentication request is continued offline." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:241 -msgid "krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:244 -msgid "" -"The location of the keytab to use when validating credentials obtained from " -"KDCs." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:248 -msgid "Default: /etc/krb5.keytab" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:254 -msgid "krb5_store_password_if_offline (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:257 -msgid "" -"Store the password of the user if the provider is offline and use it to " -"request a TGT when the provider gets online again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:262 -msgid "" -"Please note that this feature currently only available on a Linux platform. " -"Passwords stored in this way are kept in plaintext in the kernel keyring and " -"are potentially accessible by the root user (with difficulty)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:275 -msgid "krb5_renewable_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:278 -msgid "" -"Request a renewable ticket with a total lifetime given by an integer " -"immediately followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:283 sssd-krb5.5.xml:319 -msgid "<emphasis>s</emphasis> seconds" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:286 sssd-krb5.5.xml:322 -msgid "<emphasis>m</emphasis> minutes" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:289 sssd-krb5.5.xml:325 -msgid "<emphasis>h</emphasis> hours" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:292 sssd-krb5.5.xml:328 -msgid "<emphasis>d</emphasis> days." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:295 sssd-krb5.5.xml:331 -msgid "If there is no delimiter <emphasis>s</emphasis> is assumed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:299 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"renewable lifetime to one and a half hours please use '90m' instead of " -"'1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:305 -msgid "Default: not set, i.e. the TGT is not renewable" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:311 -msgid "krb5_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:314 -msgid "" -"Request ticket with a with a lifetime given by an integer immediately " -"followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:335 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"lifetime to one and a half hours please use '90m' instead of '1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:340 -msgid "" -"Default: not set, i.e. the default ticket lifetime configured on the KDC." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:347 -msgid "krb5_renew_interval (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:350 -msgid "" -"The time in seconds between two checks if the TGT should be renewed. TGTs " -"are renewed if about half of their lifetime is exceeded." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:355 -msgid "If this option is not set or 0 the automatic renewal is disabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:365 -msgid "krb5_use_fast (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:368 -msgid "" -"Enables flexible authentication secure tunneling (FAST) for Kerberos pre-" -"authentication. The following options are supported:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:373 -msgid "" -"<emphasis>never</emphasis> use FAST, this is equivalent to not set this " -"option at all." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:377 -msgid "" -"<emphasis>try</emphasis> to use FAST, if the server does not support fast " -"continue without." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:381 -msgid "" -"<emphasis>demand</emphasis> to use FAST, fail if the server does not require " -"fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:385 -msgid "Default: not set, i.e. FAST is not used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:388 -msgid "Please note that a keytab is required to use fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:391 -msgid "" -"Please note also that sssd supports fast only with MIT Kerberos version 1.8 " -"and above. If sssd used with an older version using this option is a " -"configuration error." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:400 -msgid "krb5_fast_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:403 -msgid "Specifies the server principal to use for FAST." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:412 -msgid "" -"Specifies if the host and user principal should be canonicalized. This " -"feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:65 -msgid "" -"If the auth-module krb5 is used in a SSSD domain, the following options must " -"be used. See the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page, section <quote>DOMAIN " -"SECTIONS</quote> for details on the configuration of a SSSD domain. " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:434 -msgid "" -"The following example assumes that SSSD is correctly configured and FOO is " -"one of the domains in the <replaceable>[sssd]</replaceable> section. This " -"example shows only configuration of Kerberos authentication, it does not " -"include any identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-krb5.5.xml:442 -#, no-wrap -msgid "" -" [domain/FOO]\n" -" auth_provider = krb5\n" -" krb5_server = 192.168.1.1\n" -" krb5_realm = EXAMPLE.COM\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:453 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupadd.8.xml:10 sss_groupadd.8.xml:15 -msgid "sss_groupadd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupadd.8.xml:16 -msgid "create a new group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupadd.8.xml:21 -msgid "" -"<command>sss_groupadd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:32 -msgid "" -"<command>sss_groupadd</command> creates a new group. These groups are " -"compatible with POSIX groups, with the additional feature that they can " -"contain other groups as members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupadd.8.xml:43 -msgid "" -"<option>-g</option>,<option>--gid</option> <replaceable>GID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupadd.8.xml:48 -msgid "" -"Set the GID of the group to the value of <replaceable>GID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_userdel.8.xml:10 sss_userdel.8.xml:15 -msgid "sss_userdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_userdel.8.xml:16 -msgid "delete a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_userdel.8.xml:21 -msgid "" -"<command>sss_userdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:32 -msgid "" -"<command>sss_userdel</command> deletes a user identified by login name " -"<replaceable>LOGIN</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:44 -msgid "<option>-r</option>,<option>--remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:48 -msgid "" -"Files in the user's home directory will be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:56 -msgid "<option>-R</option>,<option>--no-remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:60 -msgid "" -"Files in the user's home directory will NOT be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:68 -msgid "<option>-f</option>,<option>--force</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:72 -msgid "" -"This option forces <command>sss_userdel</command> to remove the user's home " -"directory and mail spool, even if they are not owned by the specified user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:80 -msgid "<option>-k</option>,<option>--kick</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:84 -msgid "Before actually deleting the user, terminate all his processes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:95 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupdel.8.xml:10 sss_groupdel.8.xml:15 -msgid "sss_groupdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupdel.8.xml:16 -msgid "delete a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupdel.8.xml:21 -msgid "" -"<command>sss_groupdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:32 -msgid "" -"<command>sss_groupdel</command> deletes a group identified by its name " -"<replaceable>GROUP</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupshow.8.xml:10 sss_groupshow.8.xml:15 -msgid "sss_groupshow" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupshow.8.xml:16 -msgid "print properties of a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupshow.8.xml:21 -msgid "" -"<command>sss_groupshow</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:32 -msgid "" -"<command>sss_groupshow</command> displays information about a group " -"identified by its name <replaceable>GROUP</replaceable>. The information " -"includes the group ID number, members of the group and the parent group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupshow.8.xml:43 -msgid "<option>-R</option>,<option>--recursive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupshow.8.xml:47 -msgid "" -"Also print indirect group members in a tree-like hierarchy. Note that this " -"also affects printing parent groups - without <option>R</option>, only the " -"direct parent will be printed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_usermod.8.xml:10 sss_usermod.8.xml:15 -msgid "sss_usermod" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_usermod.8.xml:16 -msgid "modify a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_usermod.8.xml:21 -msgid "" -"<command>sss_usermod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:32 -msgid "" -"<command>sss_usermod</command> modifies the account specified by " -"<replaceable>LOGIN</replaceable> to reflect the changes that are specified " -"on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:60 -msgid "The home directory of the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:71 -msgid "The user's login shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:82 -msgid "" -"Append this user to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:96 -msgid "" -"Remove this user from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:103 -msgid "<option>-l</option>,<option>--lock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:107 -msgid "Lock the user account. The user won't be able to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:114 -msgid "<option>-u</option>,<option>--unlock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:118 -msgid "Unlock the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:129 -msgid "The SELinux user for the user's login." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:140 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_cache.8.xml:10 sss_cache.8.xml:15 -msgid "sss_cache" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_cache.8.xml:16 -msgid "perform cache cleanup" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_cache.8.xml:21 -msgid "" -"<command>sss_cache</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_cache.8.xml:31 -msgid "" -"<command>sss_cache</command> invalidates records in SSSD cache. Invalidated " -"records are forced to be reloaded from server as soon as related SSSD " -"backend is online." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:42 -msgid "" -"<option>-u</option>,<option>--user</option> <replaceable>login</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:47 -msgid "Invalidate specific user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:53 -msgid "<option>-U</option>,<option>--users</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:57 -msgid "" -"Invalidate all user records. This option overrides invalidation of specific " -"user if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:64 -msgid "" -"<option>-g</option>,<option>--group</option> <replaceable>group</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:69 -msgid "Invalidate specific group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:75 -msgid "<option>-G</option>,<option>--groups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:79 -msgid "" -"Invalidate all group records. This option overrides invalidation of specific " -"group if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:86 -msgid "" -"<option>-n</option>,<option>--netgroup</option> <replaceable>netgroup</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:91 -msgid "Invalidate specific netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:97 -msgid "<option>-N</option>,<option>--netgroups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:101 -msgid "" -"Invalidate all netgroup records. This option overrides invalidation of " -"specific netgroup if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:108 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>domain</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:113 -msgid "Restrict invalidation process only to a particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_debuglevel.8.xml:10 sss_debuglevel.8.xml:15 -msgid "sss_debuglevel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_debuglevel.8.xml:16 -msgid "change debug level while SSSD is running" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_debuglevel.8.xml:21 -msgid "" -"<command>sss_debuglevel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>NEW_DEBUG_LEVEL</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_debuglevel.8.xml:32 -msgid "" -"<command>sss_debuglevel</command> changes debug level of SSSD monitor and " -"providers to <replaceable>NEW_DEBUG_LEVEL</replaceable> while SSSD is " -"running." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_debuglevel.8.xml:59 -msgid "<replaceable>NEW_DEBUG_LEVEL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_authorizedkeys.1.xml:10 sss_ssh_authorizedkeys.1.xml:15 -msgid "sss_ssh_authorizedkeys" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_ssh_authorizedkeys.1.xml:11 sss_ssh_knownhostsproxy.1.xml:11 -msgid "1" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_authorizedkeys.1.xml:16 -msgid "get OpenSSH authorized keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_authorizedkeys.1.xml:21 -msgid "" -"<command>sss_ssh_authorizedkeys</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>USER</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:32 -msgid "" -"<command>sss_ssh_authorizedkeys</command> acquires SSH public keys for user " -"<replaceable>USER</replaceable> and outputs them in OpenSSH authorized_keys " -"format (see the <quote>AUTHORIZED_KEYS FILE FORMAT</quote> section of " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> for more information)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:41 -msgid "" -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_authorizedkeys</" -"command> for public key user authentication if it is compiled with support " -"for either <quote>AuthorizedKeysCommand</quote> or <quote>PubkeyAgent</" -"quote> <citerefentry> <refentrytitle>sshd_config</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:58 -#, no-wrap -msgid "AuthorizedKeysCommand /usr/bin/sss_ssh_authorizedkeys\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:51 -msgid "" -"If <quote>AuthorizedKeysCommand</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by putting the following directive " -"in <citerefentry> <refentrytitle>sshd_config</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry>: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:69 -#, no-wrap -msgid "PubKeyAgent /usr/bin/sss_ssh_authorizedkeys %u\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:62 -msgid "" -"If <quote>PubkeyAgent</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by using the following directive " -"for <citerefentry> <refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> configuration: <placeholder type=\"programlisting" -"\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_authorizedkeys.1.xml:87 -msgid "" -"Search for user public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:98 -msgid "" -"<citerefentry> <refentrytitle>sshd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sshd_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_knownhostsproxy</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_knownhostsproxy.1.xml:10 sss_ssh_knownhostsproxy.1.xml:15 -msgid "sss_ssh_knownhostsproxy" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_knownhostsproxy.1.xml:16 -msgid "get OpenSSH host keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_knownhostsproxy.1.xml:21 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>HOST</replaceable></arg> <arg " -"choice='opt'><replaceable>PROXY_COMMAND</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:33 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> acquires SSH host public keys for " -"host <replaceable>HOST</replaceable>, stores them in a custom OpenSSH " -"known_hosts file (see the <quote>SSH_KNOWN_HOSTS FILE FORMAT</quote> section " -"of <citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> for more information) <filename>/var/lib/sss/" -"pubconf/known_hosts</filename> and estabilishes connection to the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:43 -msgid "" -"If <replaceable>PROXY_COMMAND</replaceable> is specified, it is used to " -"create the connection to the host instead of opening a socket." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_knownhostsproxy.1.xml:55 -#, no-wrap -msgid "" -"ProxyCommand /usr/bin/sss_ssh_knownhostsproxy -p %p %h\n" -"GlobalKnownHostsFile2 /var/lib/sss/pubconf/known_hosts\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:48 -msgid "" -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_knownhostsproxy</" -"command> for host key authentication by using the following directives for " -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> configuration: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_ssh_knownhostsproxy.1.xml:69 -msgid "" -"<option>-p</option>,<option>--port</option> <replaceable>PORT</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:74 -msgid "" -"Use port <replaceable>PORT</replaceable> to connect to the host. By " -"default, port 22 is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:86 -msgid "" -"Search for host public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:97 -msgid "" -"<citerefentry> <refentrytitle>ssh</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>ssh_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_authorizedkeys</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/service_discovery.xml:2 -msgid "SERVICE DISCOVERY" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/service_discovery.xml:4 -msgid "" -"The service discovery feature allows back ends to automatically find the " -"appropriate servers to connect to using a special DNS query." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:9 -msgid "Configuration" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:11 -msgid "" -"If no servers are specified, the back end automatically uses service " -"discovery to try to find a server. Optionally, the user may choose to use " -"both fixed server addresses and service discovery by inserting a special " -"keyword, <quote>_srv_</quote>, in the list of servers. The order of " -"preference is maintained. This feature is useful if, for example, the user " -"prefers to use service discovery whenever possible, and fall back to a " -"specific server when no servers can be discovered using DNS." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:23 -msgid "The domain name" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:25 -msgid "" -"Please refer to the <quote>dns_discovery_domain</quote> parameter in the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for more details." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:35 -msgid "The protocol" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:37 -msgid "" -"The queries usually specify _tcp as the protocol. Exceptions are documented " -"in respective option description." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:42 -msgid "See Also" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:44 -msgid "" -"For more information on the service discovery mechanism, refer to RFC 2782." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/upstream.xml:1 -msgid "<placeholder type=\"refentryinfo\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/failover.xml:2 -msgid "FAILOVER" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/failover.xml:4 -msgid "" -"The failover feature allows back ends to automatically switch to a different " -"server if the primary server fails." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:8 -msgid "Failover Syntax" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:10 -msgid "" -"The list of servers is given as a comma-separated list; any number of spaces " -"is allowed around the comma. The servers are listed in order of preference. " -"The list can contain any number of servers." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:17 -msgid "The Failover Mechanism" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:19 -msgid "" -"The failover mechanism distinguishes between a machine and a service. The " -"back end first tries to resolve the hostname of a given machine; if this " -"resolution attempt fails, the machine is considered offline. No further " -"attempts are made to connect to this machine for any other service. If the " -"resolution attempt succeeds, the back end tries to connect to a service on " -"this machine. If the service connection attempt fails, then only this " -"particular service is considered offline and the back end automatically " -"switches over to the next service. The machine is still considered online " -"and might still be tried for another service." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:32 -msgid "" -"Further connection attempts are made to machines or services marked as " -"offline after a specified period of time; this is currently hard coded to 30 " -"seconds." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:37 -msgid "" -"If there are no more machines to try, the back end as a whole switches to " -"offline mode, and then attempts to reconnect every 30 seconds." -msgstr "" - -#. type: Content of: <varlistentry><term> -#: include/param_help.xml:3 -msgid "<option>-h</option>,<option>--help</option>" -msgstr "" - -#. type: Content of: <varlistentry><listitem><para> -#: include/param_help.xml:7 -msgid "Display help message and exit." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:3 -msgid "" -"Bit mask that indicates which debug levels will be visible. 0x0010 is the " -"default value as well as the lowest allowed value, 0xFFF0 is the most " -"verbose mode. This setting overrides the settings from config file." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:8 -msgid "Currently supported debug levels:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:11 -msgid "" -"<emphasis>0x0010</emphasis>: Fatal failures. Anything that would prevent " -"SSSD from starting up or causes it to cease running." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:15 -msgid "" -"<emphasis>0x0020</emphasis>: Critical failures. An error that doesn't kill " -"the SSSD, but one that indicates that at least one major feature is not " -"going to work properly." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:20 -msgid "" -"<emphasis>0x0040</emphasis>: Serious failures. An error announcing that a " -"particular request or operation has failed." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:24 -msgid "" -"<emphasis>0x0080</emphasis>: Minor failures. These are the errors that would " -"percolate down to cause the operation failure of 2." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:28 -msgid "<emphasis>0x0100</emphasis>: Configuration settings." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:31 -msgid "<emphasis>0x0200</emphasis>: Function data." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:34 -msgid "<emphasis>0x0400</emphasis>: Trace messages for operation functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:37 -msgid "" -"<emphasis>0x1000</emphasis>: Trace messages for internal control functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:40 -msgid "" -"<emphasis>0x2000</emphasis>: Contents of function-internal variables that " -"may be interesting." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:43 -msgid "<emphasis>0x4000</emphasis>: Extremely low-level tracing information." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:46 -msgid "" -"To log required debug levels, simply add their numbers together as shown in " -"following examples:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:49 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, critical failures, " -"serious failures and function data use 0x0270." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:53 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, configuration settings, " -"function data, trace messages for internal control functions use 0x1310." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:57 -msgid "" -"<emphasis>Note</emphasis>: This is new format of debug levels introduced in " -"1.7.0. Older format (numbers from 0-10) is compatible but deprecated." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/experimental.xml:1 -msgid "" -"<emphasis> This is an experimental feature, please use http://fedorahosted." -"org/sssd to report any issues. </emphasis>" -msgstr "" diff --git a/src/man/po/bn_IN.po b/src/man/po/bn_IN.po deleted file mode 100644 index c2fc038d3..000000000 --- a/src/man/po/bn_IN.po +++ /dev/null @@ -1,6747 +0,0 @@ -# SOME DESCRIPTIVE TITLE -# Copyright (C) YEAR Red Hat -# This file is distributed under the same license as the sssd-docs package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@redhat.com\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2012-02-14 13:10+0000\n" -"Last-Translator: sgallagh <sgallagh@redhat.com>\n" -"Language-Team: Bengali (India) <anubad@lists.ankur.org.in>\n" -"Language: bn_IN\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=2; plural=(n != 1)\n" - -#. type: Content of: <reference><title> -#: sss_groupmod.8.xml:5 sssd.conf.5.xml:5 sssd-ldap.5.xml:5 pam_sss.8.xml:5 -#: sssd_krb5_locator_plugin.8.xml:5 sssd-simple.5.xml:5 sssd-ipa.5.xml:5 -#: sssd.8.xml:5 sss_obfuscate.8.xml:5 sss_useradd.8.xml:5 sssd-krb5.5.xml:5 -#: sss_groupadd.8.xml:5 sss_userdel.8.xml:5 sss_groupdel.8.xml:5 -#: sss_groupshow.8.xml:5 sss_usermod.8.xml:5 sss_cache.8.xml:5 -#: sss_debuglevel.8.xml:5 sss_ssh_authorizedkeys.1.xml:5 -#: sss_ssh_knownhostsproxy.1.xml:5 -msgid "SSSD Manual pages" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupmod.8.xml:10 sss_groupmod.8.xml:15 -msgid "sss_groupmod" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_groupmod.8.xml:11 pam_sss.8.xml:14 sssd_krb5_locator_plugin.8.xml:11 -#: sssd.8.xml:11 sss_obfuscate.8.xml:11 sss_useradd.8.xml:11 -#: sss_groupadd.8.xml:11 sss_userdel.8.xml:11 sss_groupdel.8.xml:11 -#: sss_groupshow.8.xml:11 sss_usermod.8.xml:11 sss_cache.8.xml:11 -#: sss_debuglevel.8.xml:11 -msgid "8" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupmod.8.xml:16 -msgid "modify a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupmod.8.xml:21 -msgid "" -"<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:30 sssd-ldap.5.xml:21 pam_sss.8.xml:44 -#: sssd_krb5_locator_plugin.8.xml:20 sssd-simple.5.xml:22 sssd-ipa.5.xml:21 -#: sssd.8.xml:29 sss_obfuscate.8.xml:30 sss_useradd.8.xml:30 -#: sssd-krb5.5.xml:21 sss_groupadd.8.xml:30 sss_userdel.8.xml:30 -#: sss_groupdel.8.xml:30 sss_groupshow.8.xml:30 sss_usermod.8.xml:30 -#: sss_cache.8.xml:29 sss_debuglevel.8.xml:30 sss_ssh_authorizedkeys.1.xml:30 -#: sss_ssh_knownhostsproxy.1.xml:31 -msgid "DESCRIPTION" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:32 -msgid "" -"<command>sss_groupmod</command> modifies the group to reflect the changes " -"that are specified on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:39 pam_sss.8.xml:51 sssd.8.xml:42 sss_obfuscate.8.xml:58 -#: sss_useradd.8.xml:39 sss_groupadd.8.xml:39 sss_userdel.8.xml:39 -#: sss_groupdel.8.xml:39 sss_groupshow.8.xml:39 sss_usermod.8.xml:39 -#: sss_cache.8.xml:38 sss_debuglevel.8.xml:38 sss_ssh_authorizedkeys.1.xml:78 -#: sss_ssh_knownhostsproxy.1.xml:65 -msgid "OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:43 sss_usermod.8.xml:77 -msgid "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:48 -msgid "" -"Append this group to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:57 sss_usermod.8.xml:91 -msgid "" -"<option>-r</option>,<option>--remove-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:62 -msgid "" -"Remove this group from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:72 sssd.conf.5.xml:1331 sssd-ldap.5.xml:2096 -#: pam_sss.8.xml:139 sssd_krb5_locator_plugin.8.xml:75 sssd-simple.5.xml:143 -#: sssd-ipa.5.xml:562 sssd.8.xml:191 sss_obfuscate.8.xml:103 -#: sss_useradd.8.xml:167 sssd-krb5.5.xml:451 sss_groupadd.8.xml:58 -#: sss_userdel.8.xml:93 sss_groupdel.8.xml:46 sss_groupshow.8.xml:58 -#: sss_usermod.8.xml:138 sss_ssh_authorizedkeys.1.xml:96 -#: sss_ssh_knownhostsproxy.1.xml:95 -msgid "SEE ALSO" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:74 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.conf.5.xml:10 sssd.conf.5.xml:16 -msgid "sssd.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sssd.conf.5.xml:11 sssd-ldap.5.xml:11 sssd-simple.5.xml:11 -#: sssd-ipa.5.xml:11 sssd-krb5.5.xml:11 -msgid "5" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><refmiscinfo> -#: sssd.conf.5.xml:12 sssd-ldap.5.xml:12 sssd-simple.5.xml:12 -#: sssd-ipa.5.xml:12 sssd-krb5.5.xml:12 -msgid "File Formats and Conventions" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.conf.5.xml:17 sssd-ldap.5.xml:17 sssd_krb5_locator_plugin.8.xml:16 -#: sssd-ipa.5.xml:17 sssd-krb5.5.xml:17 -msgid "the configuration file for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:21 -msgid "FILE FORMAT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:29 -#, no-wrap -msgid "" -" <replaceable>[section]</replaceable>\n" -" <replaceable>key</replaceable> = <replaceable>value</replaceable>\n" -" <replaceable>key2</replaceable> = <replaceable>value2,value3</replaceable>\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:24 -msgid "" -"The file has an ini-style syntax and consists of sections and parameters. A " -"section begins with the name of the section in square brackets and continues " -"until the next section begins. An example of section with single and multi-" -"valued parameters: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:36 -msgid "" -"The data types used are string (no quotes needed), integer and bool (with " -"values of <quote>TRUE/FALSE</quote>)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:41 -msgid "" -"A line comment starts with a hash sign (<quote>#</quote>) or a semicolon " -"(<quote>;</quote>)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:46 -msgid "" -"All sections can have an optional <replaceable>description</replaceable> " -"parameter. Its function is only as a label for the section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:52 -msgid "" -"<filename>sssd.conf</filename> must be a regular file, owned by root and " -"only root may read from or write to the file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:58 -msgid "SPECIAL SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:61 -msgid "The [sssd] section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><title> -#: sssd.conf.5.xml:70 sssd.conf.5.xml:1177 -msgid "Section parameters" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:72 -msgid "config_file_version (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:75 -msgid "" -"Indicates what is the syntax of the config file. SSSD 0.6.0 and later use " -"version 2." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:81 -msgid "services" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:84 -msgid "" -"Comma separated list of services that are started when sssd itself starts." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:88 -msgid "" -"Supported services: nss, pam <phrase condition=\"with_sudo\">, sudo</phrase>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:94 sssd.conf.5.xml:257 -msgid "reconnection_retries (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:97 sssd.conf.5.xml:260 -msgid "" -"Number of times services should attempt to reconnect in the event of a Data " -"Provider crash or restart before they give up" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:102 sssd.conf.5.xml:265 -msgid "Default: 3" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:107 -msgid "domains" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:110 -msgid "" -"A domain is a database containing user information. SSSD can use more " -"domains at the same time, but at least one must be configured or SSSD won't " -"start. This parameter described the list of domains in the order you want " -"them to be queried." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:120 -msgid "re_expression (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:123 -msgid "" -"Regular expression that describes how to parse the string containing user " -"name and domain into these components." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:127 -msgid "" -"Default: <quote>(?P<name>[^@]+)@?(?P<domain>[^@]*$)</quote> " -"which translates to \"the name is everything up to the <quote>@</quote> " -"sign, the domain everything after that\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:132 -msgid "" -"PLEASE NOTE: the support for non-unique named subpatterns is not available " -"on all platforms (e.g. RHEL5 and SLES10). Only platforms with libpcre " -"version 7 or higher can support non-unique named subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:139 -msgid "" -"PLEASE NOTE ALSO: older version of libpcre only support the Python syntax (?" -"P<name>) to label subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:146 -msgid "full_name_format (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:149 -msgid "" -"A <citerefentry> <refentrytitle>printf</refentrytitle> <manvolnum>3</" -"manvolnum> </citerefentry>-compatible format that describes how to translate " -"a (name, domain) tuple into a fully qualified name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:157 -msgid "Default: <quote>%1$s@%2$s</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:162 -msgid "try_inotify (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:165 -msgid "" -"SSSD monitors the state of resolv.conf to identify when it needs to update " -"its internal DNS resolver. By default, we will attempt to use inotify for " -"this, and will fall back to polling resolv.conf every five seconds if " -"inotify cannot be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:173 -msgid "" -"There are some limited situations where it is preferred that we should skip " -"even trying to use inotify. In these rare cases, this option should be set " -"to 'false'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:179 -msgid "" -"Default: true on platforms where inotify is supported. False on other " -"platforms." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:183 -msgid "" -"Note: this option will have no effect on platforms where inotify is " -"unavailable. On these platforms, polling will always be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:190 -msgid "krb5_rcache_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:193 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:197 -msgid "" -"This option accepts a special value __LIBKRB5_DEFAULTS__ that will instruct " -"SSSD to let libkrb5 decide the appropriate location for the replay cache." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:203 -msgid "" -"Default: Distribution-specific and specified at build-time. " -"(__LIBKRB5_DEFAULTS__ if not configured)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:63 -msgid "" -"Individual pieces of SSSD functionality are provided by special SSSD " -"services that are started and stopped together with SSSD. The services are " -"managed by a special service frequently called <quote>monitor</quote>. The " -"<quote>[sssd]</quote> section is used to configure the monitor as well as " -"some other important options like the identity domains. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:216 -msgid "SERVICES SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:218 -msgid "" -"Settings that can be used to configure different services are described in " -"this section. They should reside in the [<replaceable>$NAME</replaceable>] " -"section, for example, for NSS service, the section would be <quote>[nss]</" -"quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:225 -msgid "General service configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:227 -msgid "These options can be used to configure any service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:231 -msgid "debug_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:235 -msgid "debug_timestamps (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:238 -msgid "Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:241 sssd.conf.5.xml:376 sssd-ldap.5.xml:1328 -#: sssd-ldap.5.xml:1446 sssd-ipa.5.xml:206 sssd-ipa.5.xml:241 -msgid "Default: true" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:246 -msgid "debug_microseconds (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:249 -msgid "Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:252 sssd.conf.5.xml:641 sssd-ldap.5.xml:602 -#: sssd-ldap.5.xml:1260 sssd-ldap.5.xml:1397 sssd-ldap.5.xml:1795 -#: sssd-ipa.5.xml:123 sssd-ipa.5.xml:301 sssd-krb5.5.xml:235 -#: sssd-krb5.5.xml:269 sssd-krb5.5.xml:418 -msgid "Default: false" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:270 -msgid "command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:273 -msgid "" -"By default, the executable representing this service is called <command>sssd_" -"${service_name}</command>. This directive allows to change the executable " -"name for the service. In the vast majority of configurations, the default " -"values should suffice." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:281 -msgid "Default: <command>sssd_${service_name}</command>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:289 -msgid "NSS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:291 -msgid "" -"These options can be used to configure the Name Service Switch (NSS) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:296 -msgid "enum_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:299 -msgid "" -"How many seconds should nss_sss cache enumerations (requests for info about " -"all users)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:303 -msgid "Default: 120" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:308 -msgid "entry_cache_nowait_percentage (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:311 -msgid "" -"The entry cache can be set to automatically update entries in the background " -"if they are requested beyond a percentage of the entry_cache_timeout value " -"for the domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:317 -msgid "" -"For example, if the domain's entry_cache_timeout is set to 30s and " -"entry_cache_nowait_percentage is set to 50 (percent), entries that come in " -"after 15 seconds past the last cache update will be returned immediately, " -"but the SSSD will go and update the cache on its own, so that future " -"requests will not need to block waiting for a cache update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:327 -msgid "" -"Valid values for this option are 0-99 and represent a percentage of the " -"entry_cache_timeout for each domain. For performance reasons, this " -"percentage will never reduce the nowait timeout to less than 10 seconds. (0 " -"disables this feature)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:335 -msgid "Default: 50" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:340 -msgid "entry_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:343 -msgid "" -"Specifies for how many seconds nss_sss should cache negative cache hits " -"(that is, queries for invalid database entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:349 sssd.conf.5.xml:669 sssd-krb5.5.xml:223 -msgid "Default: 15" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:354 -msgid "filter_users, filter_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:357 -msgid "" -"Exclude certain users from being fetched from the sss NSS database. This is " -"particularly useful for system accounts. This option can also be set per-" -"domain or include fully-qualified names to filter only users from the " -"particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:364 -msgid "Default: root" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:369 -msgid "filter_users_in_groups (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:372 -msgid "" -"If you want filtered user still be group members set this option to false." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:381 -msgid "override_homedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:390 sssd-krb5.5.xml:166 -msgid "%u" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:391 sssd-krb5.5.xml:167 -msgid "login name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:394 sssd-krb5.5.xml:170 -msgid "%U" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:395 -msgid "UID number" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:398 sssd-krb5.5.xml:188 -msgid "%d" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:399 -msgid "domain name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:402 -msgid "%f" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:403 -msgid "fully qualified user name (user@domain)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:406 sssd-krb5.5.xml:200 -msgid "%%" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:407 sssd-krb5.5.xml:201 -msgid "a literal '%'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:384 -msgid "" -"Override the user's home directory. You can either provide an absolute value " -"or a template. In the template, the following sequences are substituted: " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:413 -msgid "This option can also be set per-domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:418 -msgid "allowed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:421 -msgid "" -"Restrict user shell to one of the listed values. The order of evaluation is:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:424 -msgid "1. If the shell is present in <quote>/etc/shells</quote>, it is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:428 -msgid "" -"2. If the shell is in the allowed_shells list but not in <quote>/etc/shells</" -"quote>, use the value of the shell_fallback parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:433 -msgid "" -"3. If the shell is not in the allowed_shells list and not in <quote>/etc/" -"shells</quote>, a nologin shell is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:438 -msgid "An empty string for shell is passed as-is to libc." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:441 -msgid "" -"The <quote>/etc/shells</quote> is only read on SSSD start up, which means " -"that a restart of the SSSD is required in case a new shell is installed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:445 -msgid "Default: Not set. The user shell is automatically used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:450 -msgid "vetoed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:453 -msgid "Replace any instance of these shells with the shell_fallback" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:458 -msgid "shell_fallback (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:461 -msgid "" -"The default shell to use if an allowed shell is not installed on the machine." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:465 -msgid "Default: /bin/sh" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:472 -msgid "PAM configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:474 -msgid "" -"These options can be used to configure the Pluggable Authentication Module " -"(PAM) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:479 -msgid "offline_credentials_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:482 -msgid "" -"If the authentication provider is offline, how long should we allow cached " -"logins (in days since the last successful online login)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:487 sssd.conf.5.xml:500 -msgid "Default: 0 (No limit)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:493 -msgid "offline_failed_login_attempts (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:496 -msgid "" -"If the authentication provider is offline, how many failed login attempts " -"are allowed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:506 -msgid "offline_failed_login_delay (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:509 -msgid "" -"The time in minutes which has to pass after offline_failed_login_attempts " -"has been reached before a new login attempt is possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:514 -msgid "" -"If set to 0 the user cannot authenticate offline if " -"offline_failed_login_attempts has been reached. Only a successful online " -"authentication can enable offline authentication again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:520 sssd.conf.5.xml:573 sssd.conf.5.xml:1093 -msgid "Default: 5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:526 -msgid "pam_verbosity (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:529 -msgid "" -"Controls what kind of messages are shown to the user during authentication. " -"The higher the number to more messages are displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:534 -msgid "Currently sssd supports the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:537 -msgid "<emphasis>0</emphasis>: do not show any message" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:540 -msgid "<emphasis>1</emphasis>: show only important messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:544 -msgid "<emphasis>2</emphasis>: show informational messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:547 -msgid "<emphasis>3</emphasis>: show all messages and debug information" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:551 sssd.8.xml:63 -msgid "Default: 1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:556 -msgid "pam_id_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:559 -msgid "" -"For any PAM request while SSSD is online, the SSSD will attempt to " -"immediately update the cached identity information for the user in order to " -"ensure that authentication takes place with the latest information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:565 -msgid "" -"A complete PAM conversation may perform multiple PAM requests, such as " -"account management and session opening. This option controls (on a per-" -"client-application basis) how long (in seconds) we can cache the identity " -"information to avoid excessive round-trips to the identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:579 -msgid "pam_pwd_expiration_warning (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:582 -msgid "Display a warning N days before the password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:585 -msgid "" -"Please note that the backend server has to provide information about the " -"expiration time of the password. If this information is missing, sssd " -"cannot display a warning." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:591 -msgid "Default: 7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:599 -msgid "SUDO configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:601 -msgid "These options can be used to configure the sudo service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:608 -msgid "sudo_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:611 -msgid "" -"For any sudo request that comes while SSSD is online, the SSSD will attempt " -"to update the cached rules in order to ensure that sudo has the latest " -"ruleset." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:617 -msgid "" -"The user may, however, run a couple of sudo commands successively, which " -"would trigger multiple LDAP requests. In order to speed up this use-case, " -"the sudo service maintains an in-memory cache that would be used for " -"performing fast replies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:624 -msgid "" -"This option controls how long (in seconds) can the sudo service cache rules " -"for a user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:628 -msgid "Default: 180" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:633 -msgid "sudo_timed (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:636 -msgid "" -"Whether or not to evaluate the sudoNotBefore and sudoNotAfter attributes " -"that implement time-dependent sudoers entries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:649 -msgid "AUTOFS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:651 -msgid "These options can be used to configure the autofs service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:659 -msgid "autofs_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:662 -msgid "" -"Specifies for how many seconds should the autofs responder negative cache " -"hits (that is, queries for invalid map entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:679 -msgid "DOMAIN SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:686 -msgid "min_id,max_id (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:689 -msgid "" -"UID and GID limits for the domain. If a domain contains an entry that is " -"outside these limits, it is ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:694 -msgid "" -"For users, this affects the primary GID limit. The user will not be returned " -"to NSS if either the UID or the primary GID is outside the range. For non-" -"primary group memberships, those that are in range will be reported as " -"expected." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:701 -msgid "Default: 1 for min_id, 0 (no limit) for max_id" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:707 -msgid "timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:710 -msgid "" -"Timeout in seconds between heartbeats for this domain. This is used to " -"ensure that the backend process is alive and capable of answering requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:715 sssd-ldap.5.xml:1131 -msgid "Default: 10" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:721 -msgid "enumerate (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:724 -msgid "" -"Determines if a domain can be enumerated. This parameter can have one of the " -"following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:728 -msgid "TRUE = Users and groups are enumerated" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:731 -msgid "FALSE = No enumerations for this domain" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:734 sssd.conf.5.xml:839 sssd.conf.5.xml:893 -msgid "Default: FALSE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:737 -msgid "" -"Note: Enabling enumeration has a moderate performance impact on SSSD while " -"enumeration is running. It may take up to several minutes after SSSD startup " -"to fully complete enumerations. During this time, individual requests for " -"information will go directly to LDAP, though it may be slow, due to the " -"heavy enumeration processing." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:747 -msgid "" -"While the first enumeration is running, requests for the complete user or " -"group lists may return no results until it completes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:752 -msgid "" -"Further, enabling enumeration may increase the time necessary to detect " -"network disconnection, as longer timeouts are required to ensure that " -"enumeration lookups are completed successfully. For more information, refer " -"to the man pages for the specific id_provider in use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:763 -msgid "entry_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:766 -msgid "" -"How many seconds should nss_sss consider entries valid before asking the " -"backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:770 -msgid "Default: 5400" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:776 -msgid "entry_cache_user_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:779 -msgid "" -"How many seconds should nss_sss consider user entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:783 sssd.conf.5.xml:796 sssd.conf.5.xml:809 -#: sssd.conf.5.xml:822 -msgid "Default: entry_cache_timeout" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:789 -msgid "entry_cache_group_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:792 -msgid "" -"How many seconds should nss_sss consider group entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:802 -msgid "entry_cache_netgroup_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:805 -msgid "" -"How many seconds should nss_sss consider netgroup entries valid before " -"asking the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:815 -msgid "entry_cache_service_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:818 -msgid "" -"How many seconds should nss_sss consider service entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:828 -msgid "cache_credentials (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:831 -msgid "Determines if user credentials are also cached in the local LDB cache" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:835 -msgid "User credentials are stored in a SHA512 hash, not in plaintext" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:844 -msgid "account_cache_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:847 -msgid "" -"Number of days entries are left in cache after last successful login before " -"being removed during a cleanup of the cache. 0 means keep forever. The " -"value of this parameter must be greater than or equal to " -"offline_credentials_expiration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:854 -msgid "Default: 0 (unlimited)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:860 -msgid "id_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:863 -msgid "The Data Provider identity backend to use for this domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:867 -msgid "Supported backends:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:870 -msgid "proxy: Support a legacy NSS provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:873 -msgid "local: SSSD internal local provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:876 -msgid "ldap: LDAP provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:882 -msgid "use_fully_qualified_names (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:885 -msgid "" -"If set to TRUE, all requests to this domain must use fully qualified names. " -"For example, if used in LOCAL domain that contains a \"test\" user, " -"<command>getent passwd test</command> wouldn't find the user while " -"<command>getent passwd test@LOCAL</command> would." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:898 -msgid "auth_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:901 -msgid "" -"The authentication provider used for the domain. Supported auth providers " -"are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:905 -msgid "" -"<quote>ldap</quote> for native LDAP authentication. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:912 -msgid "" -"<quote>krb5</quote> for Kerberos authentication. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:919 -msgid "" -"<quote>proxy</quote> for relaying authentication to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:922 -msgid "<quote>none</quote> disables authentication explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:925 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"authentication requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:931 -msgid "access_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:934 -msgid "" -"The access control provider used for the domain. There are two built-in " -"access providers (in addition to any included in installed backends) " -"Internal special providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:940 -msgid "<quote>permit</quote> always allow access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:943 -msgid "<quote>deny</quote> always deny access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:946 -msgid "" -"<quote>simple</quote> access control based on access or deny lists. See " -"<citerefentry> <refentrytitle>sssd-simple</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry> for more information on configuring the simple " -"access module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:953 -msgid "Default: <quote>permit</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:958 -msgid "chpass_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:961 -msgid "" -"The provider which should handle change password operations for the domain. " -"Supported change password providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:966 -msgid "" -"<quote>ipa</quote> to change a password stored in an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:974 -msgid "" -"<quote>ldap</quote> to change a password stored in a LDAP server. See " -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:982 -msgid "" -"<quote>krb5</quote> to change the Kerberos password. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:990 -msgid "" -"<quote>proxy</quote> for relaying password changes to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:994 -msgid "<quote>none</quote> disallows password changes explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:997 -msgid "" -"Default: <quote>auth_provider</quote> is used if it is set and can handle " -"change password requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1004 -msgid "sudo_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1010 -msgid "The SUDO provider used for the domain. Supported SUDO providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1014 -msgid "" -"<quote>ldap</quote> for rules stored in LDAP. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1021 -msgid "<quote>none</quote> disables SUDO explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1024 -msgid "Default: The value of <quote>id_provider</quote> is used if it is set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1030 -msgid "session_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1033 -msgid "" -"The provider which should handle loading of session settings. Supported " -"session providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1038 -msgid "" -"<quote>ipa</quote> to load session settings from an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1046 -msgid "<quote>none</quote> disallows fetching session settings explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1049 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"session loading requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1056 -msgid "lookup_family_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1059 -msgid "" -"Provides the ability to select preferred address family to use when " -"performing DNS lookups." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1063 -msgid "Supported values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1066 -msgid "ipv4_first: Try looking up IPv4 address, if that fails, try IPv6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1069 -msgid "ipv4_only: Only attempt to resolve hostnames to IPv4 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1072 -msgid "ipv6_first: Try looking up IPv6 address, if that fails, try IPv4" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1075 -msgid "ipv6_only: Only attempt to resolve hostnames to IPv6 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1078 -msgid "Default: ipv4_first" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1084 -msgid "dns_resolver_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1087 -msgid "" -"Defines the amount of time (in seconds) to wait for a reply from the DNS " -"resolver before assuming that it is unreachable. If this timeout is reached, " -"the domain will continue to operate in offline mode." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1099 -msgid "dns_discovery_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1102 -msgid "" -"If service discovery is used in the back end, specifies the domain part of " -"the service discovery DNS query." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1106 -msgid "Default: Use the domain part of machine's hostname" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1112 -msgid "override_gid (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1115 -msgid "Override the primary GID value with the one specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1121 -msgid "case_sensitive (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1124 -msgid "" -"Treat user and group names as case sensitive. At the moment, this option is " -"not supported in the local provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1129 -msgid "Default: True" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:681 -msgid "" -"These configuration options can be present in a domain configuration " -"section, that is, in a section called <quote>[domain/<replaceable>NAME</" -"replaceable>]</quote> <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1141 -msgid "proxy_pam_target (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1144 -msgid "The proxy target PAM proxies to." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1147 -msgid "" -"Default: not set by default, you have to take an existing pam configuration " -"or create a new one and add the service name here." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1155 -msgid "proxy_lib_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1158 -msgid "" -"The name of the NSS library to use in proxy domains. The NSS functions " -"searched for in the library are in the form of _nss_$(libName)_$(function), " -"for example _nss_files_getpwent." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1137 -msgid "" -"Options valid for proxy domains. <placeholder type=\"variablelist\" id=" -"\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:1170 -msgid "The local domain section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:1172 -msgid "" -"This section contains settings for domain that stores users and groups in " -"SSSD native database, that is, a domain that uses " -"<replaceable>id_provider=local</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1179 -msgid "default_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1182 -msgid "The default shell for users created with SSSD userspace tools." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1186 -msgid "Default: <filename>/bin/bash</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1191 -msgid "base_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1194 -msgid "" -"The tools append the login name to <replaceable>base_directory</replaceable> " -"and use that as the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1199 -msgid "Default: <filename>/home</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1204 -msgid "create_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1207 -msgid "" -"Indicate if a home directory should be created by default for new users. " -"Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1211 sssd.conf.5.xml:1223 -msgid "Default: TRUE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1216 -msgid "remove_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1219 -msgid "" -"Indicate if a home directory should be removed by default for deleted " -"users. Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1228 -msgid "homedir_umask (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1231 -msgid "" -"Used by <citerefentry> <refentrytitle>sss_useradd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry> to specify the default permissions " -"on a newly created home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1239 -msgid "Default: 077" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1244 -msgid "skel_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1247 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<citerefentry> <refentrytitle>sss_useradd</refentrytitle> <manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1257 -msgid "Default: <filename>/etc/skel</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1262 -msgid "mail_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1265 -msgid "" -"The mail spool directory. This is needed to manipulate the mailbox when its " -"corresponding user account is modified or deleted. If not specified, a " -"default value is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1272 -msgid "Default: <filename>/var/mail</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1277 -msgid "userdel_cmd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1280 -msgid "" -"The command that is run after a user is removed. The command us passed the " -"username of the user being removed as the first and only parameter. The " -"return code of the command is not taken into account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1286 -msgid "Default: None, no command is run" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:1296 sssd-ldap.5.xml:2064 sssd-simple.5.xml:126 -#: sssd-ipa.5.xml:544 sssd-krb5.5.xml:432 -msgid "EXAMPLE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:1302 -#, no-wrap -msgid "" -"[sssd]\n" -"domains = LDAP\n" -"services = nss, pam\n" -"config_file_version = 2\n" -"\n" -"[nss]\n" -"filter_groups = root\n" -"filter_users = root\n" -"\n" -"[pam]\n" -"\n" -"[domain/LDAP]\n" -"id_provider = ldap\n" -"ldap_uri = ldap://ldap.example.com\n" -"ldap_search_base = dc=example,dc=com\n" -"\n" -"auth_provider = krb5\n" -"krb5_server = kerberos.example.com\n" -"krb5_realm = EXAMPLE.COM\n" -"cache_credentials = true\n" -"\n" -"min_id = 10000\n" -"max_id = 20000\n" -"enumerate = False\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1298 -msgid "" -"The following example shows a typical SSSD config. It does not describe " -"configuration of the domains themselves - refer to documentation on " -"configuring domains for more details. <placeholder type=\"programlisting\" " -"id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1333 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>pam_sss</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ldap.5.xml:10 sssd-ldap.5.xml:16 -msgid "sssd-ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:23 -msgid "" -"This manual page describes the configuration of LDAP domains for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. Refer to the <quote>FILE FORMAT</quote> section of the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for detailed syntax information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:35 -msgid "You can configure SSSD to use more than one LDAP domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:38 -msgid "" -"LDAP back end supports id, auth, access and chpass providers. If you want to " -"authenticate against an LDAP server either TLS/SSL or LDAPS is required. " -"<command>sssd</command> <emphasis>does not</emphasis> support authentication " -"over an unencrypted channel. If the LDAP server is used only as an identity " -"provider, an encrypted channel is not needed. Please refer to " -"<quote>ldap_access_filter</quote> config option for more information about " -"using LDAP as an access provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:49 sssd-simple.5.xml:69 sssd-ipa.5.xml:64 -#: sssd-krb5.5.xml:63 -msgid "CONFIGURATION OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:60 -msgid "ldap_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:63 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference. Refer to the <quote>FAILOVER</" -"quote> section for more information on failover and server redundancy. If " -"not specified, service discovery is enabled. For more information, refer to " -"the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:70 -msgid "The format of the URI must match the format defined in RFC 2732:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:73 -msgid "ldap[s]://<host>[:port]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:76 -msgid "" -"For explicit IPv6 addresses, <host> must be enclosed in brackets []" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:79 -msgid "example: ldap://[fc00::126:25]:389" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:85 -msgid "ldap_chpass_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:88 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference to change the password of a user. " -"Refer to the <quote>FAILOVER</quote> section for more information on " -"failover and server redundancy." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:95 -msgid "To enable service discovery ldap_chpass_dns_service_name must be set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:99 -msgid "Default: empty, i.e. ldap_uri is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:105 -msgid "ldap_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:108 -msgid "The default base DN to use for performing LDAP user operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:112 -msgid "" -"Starting with SSSD 1.7.0, SSSD supports multiple search bases using the " -"syntax:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:116 -msgid "search_base[?scope?[filter][?search_base?scope?[filter]]*]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:119 -msgid "The scope can be one of \"base\", \"onelevel\" or \"subtree\"." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:122 -msgid "" -"The filter must be a valid LDAP search filter as specified by http://www." -"ietf.org/rfc/rfc2254.txt" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:126 -msgid "Examples:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:129 -msgid "" -"ldap_search_base = dc=example,dc=com (which is equivalent to) " -"ldap_search_base = dc=example,dc=com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:134 -msgid "" -"ldap_search_base = cn=host_specific,dc=example,dc=com?subtree?" -"(host=thishost)?dc=example.com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:137 -msgid "" -"Note: It is unsupported to have multiple search bases which reference " -"identically-named objects (for example, groups with the same name in two " -"different search bases). This will lead to unpredictable behavior on client " -"machines." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:144 -msgid "" -"Default: If not set, the value of the defaultNamingContext or namingContexts " -"attribute from the RootDSE of the LDAP server is used. If " -"defaultNamingContext does not exists or has an empty value namingContexts is " -"used. The namingContexts attribute must have a single value with the DN of " -"the search base of the LDAP server to make this work. Multiple values are " -"are not supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:158 -msgid "ldap_schema (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:161 -msgid "" -"Specifies the Schema Type in use on the target LDAP server. Depending on " -"the selected schema, the default attribute names retrieved from the servers " -"may vary. The way that some attributes are handled may also differ. Three " -"schema types are currently supported: rfc2307 rfc2307bis IPA The main " -"difference between these schema types is how group memberships are recorded " -"in the server. With rfc2307, group members are listed by name in the " -"<emphasis>memberUid</emphasis> attribute. With rfc2307bis and IPA, group " -"members are listed by DN and stored in the <emphasis>member</emphasis> " -"attribute." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:180 -msgid "Default: rfc2307" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:186 -msgid "ldap_default_bind_dn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:189 -msgid "The default bind DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:196 -msgid "ldap_default_authtok_type (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:199 -msgid "The type of the authentication token of the default bind DN." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:203 -msgid "The two mechanisms currently supported are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:206 -msgid "password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:209 -msgid "obfuscated_password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:212 -msgid "Default: password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:218 -msgid "ldap_default_authtok (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:221 -msgid "" -"The authentication token of the default bind DN. Only clear text passwords " -"are currently supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:228 -msgid "ldap_user_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:231 -msgid "The object class of a user entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:234 -msgid "Default: posixAccount" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:240 -msgid "ldap_user_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:243 -msgid "The LDAP attribute that corresponds to the user's login name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:247 -msgid "Default: uid" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:253 -msgid "ldap_user_uid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:256 -msgid "The LDAP attribute that corresponds to the user's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:260 -msgid "Default: uidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:266 -msgid "ldap_user_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:269 -msgid "The LDAP attribute that corresponds to the user's primary group id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:273 sssd-ldap.5.xml:740 -msgid "Default: gidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:279 -msgid "ldap_user_gecos (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:282 -msgid "The LDAP attribute that corresponds to the user's gecos field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:286 -msgid "Default: gecos" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:292 -msgid "ldap_user_home_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:295 -msgid "The LDAP attribute that contains the name of the user's home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:299 -msgid "Default: homeDirectory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:305 -msgid "ldap_user_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:308 -msgid "The LDAP attribute that contains the path to the user's default shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:312 -msgid "Default: loginShell" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:318 -msgid "ldap_user_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:321 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP user object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:325 sssd-ldap.5.xml:766 sssd-ldap.5.xml:878 -msgid "Default: nsUniqueId" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:331 -msgid "ldap_user_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:334 sssd-ldap.5.xml:775 sssd-ldap.5.xml:887 -msgid "" -"The LDAP attribute that contains timestamp of the last modification of the " -"parent object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:338 sssd-ldap.5.xml:779 sssd-ldap.5.xml:894 -msgid "Default: modifyTimestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:344 -msgid "ldap_user_shadow_last_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:347 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (date of " -"the last password change)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:357 -msgid "Default: shadowLastChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:363 -msgid "ldap_user_shadow_min (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:366 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (minimum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:375 -msgid "Default: shadowMin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:381 -msgid "ldap_user_shadow_max (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:384 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (maximum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:393 -msgid "Default: shadowMax" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:399 -msgid "ldap_user_shadow_warning (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:402 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password warning period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:412 -msgid "Default: shadowWarning" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:418 -msgid "ldap_user_shadow_inactive (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:421 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password inactivity period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:431 -msgid "Default: shadowInactive" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:437 -msgid "ldap_user_shadow_expire (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:440 -msgid "" -"When using ldap_pwd_policy=shadow or ldap_account_expire_policy=shadow, this " -"parameter contains the name of an LDAP attribute corresponding to its " -"<citerefentry> <refentrytitle>shadow</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> counterpart (account expiration date)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:450 -msgid "Default: shadowExpire" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:456 -msgid "ldap_user_krb_last_pwd_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:459 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time of last password change in " -"kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:465 -msgid "Default: krbLastPwdChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:471 -msgid "ldap_user_krb_password_expiration (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:474 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time when current password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:480 -msgid "Default: krbPasswordExpiration" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:486 -msgid "ldap_user_ad_account_expires (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:489 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the expiration time of the account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:494 -msgid "Default: accountExpires" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:500 -msgid "ldap_user_ad_user_account_control (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:503 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the user account control bit field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:508 -msgid "Default: userAccountControl" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:514 -msgid "ldap_ns_account_lock (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:517 -msgid "" -"When using ldap_account_expire_policy=rhds or equivalent, this parameter " -"determines if access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:522 -msgid "Default: nsAccountLock" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:528 -msgid "ldap_user_nds_login_disabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:531 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines if " -"access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:535 sssd-ldap.5.xml:549 -msgid "Default: loginDisabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:541 -msgid "ldap_user_nds_login_expiration_time (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:544 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines until " -"which date access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:555 -msgid "ldap_user_nds_login_allowed_time_map (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:558 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines the " -"hours of a day in a week when access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:563 -msgid "Default: loginAllowedTimeMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:569 -msgid "ldap_user_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:572 -msgid "" -"The LDAP attribute that contains the user's Kerberos User Principal Name " -"(UPN)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:576 -msgid "Default: krbPrincipalName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:582 -msgid "ldap_user_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:585 -msgid "The LDAP attribute that contains the user's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:592 -msgid "ldap_force_upper_case_realm (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:595 -msgid "" -"Some directory servers, for example Active Directory, might deliver the " -"realm part of the UPN in lower case, which might cause the authentication to " -"fail. Set this option to a non-zero value if you want to use an upper-case " -"realm." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:608 -msgid "ldap_enumeration_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:611 -msgid "" -"Specifies how many seconds SSSD has to wait before refreshing its cache of " -"enumerated records." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:616 sssd-ldap.5.xml:1808 -msgid "Default: 300" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:622 -msgid "ldap_purge_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:625 -msgid "" -"Determine how often to check the cache for inactive entries (such as groups " -"with no members and users who have never logged in) and remove them to save " -"space." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:631 -msgid "Setting this option to zero will disable the cache cleanup operation." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:635 -msgid "Default: 10800 (12 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:641 -msgid "ldap_user_fullname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:644 -msgid "The LDAP attribute that corresponds to the user's full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:648 sssd-ldap.5.xml:727 sssd-ldap.5.xml:828 -#: sssd-ldap.5.xml:919 sssd-ldap.5.xml:1663 sssd-ldap.5.xml:1881 -#: sssd-ipa.5.xml:422 -msgid "Default: cn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:654 -msgid "ldap_user_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:657 -msgid "The LDAP attribute that lists the user's group memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:661 sssd-ipa.5.xml:326 -msgid "Default: memberOf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:667 -msgid "ldap_user_authorized_service (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:670 -msgid "" -"If access_provider=ldap and ldap_access_order=authorized_service, SSSD will " -"use the presence of the authorizedService attribute in the user's LDAP entry " -"to determine access privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:677 -msgid "" -"An explicit deny (!svc) is resolved first. Second, SSSD searches for " -"explicit allow (svc) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:682 -msgid "Default: authorizedService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:688 -msgid "ldap_user_authorized_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:691 -msgid "" -"If access_provider=ldap and ldap_access_order=host, SSSD will use the " -"presence of the host attribute in the user's LDAP entry to determine access " -"privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:697 -msgid "" -"An explicit deny (!host) is resolved first. Second, SSSD searches for " -"explicit allow (host) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:702 -msgid "Default: host" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:708 -msgid "ldap_group_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:711 -msgid "The object class of a group entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:714 -msgid "Default: posixGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:720 -msgid "ldap_group_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:723 -msgid "The LDAP attribute that corresponds to the group name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:733 -msgid "ldap_group_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:736 -msgid "The LDAP attribute that corresponds to the group's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:746 -msgid "ldap_group_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:749 -msgid "The LDAP attribute that contains the names of the group's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:753 -msgid "Default: memberuid (rfc2307) / member (rfc2307bis)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:759 -msgid "ldap_group_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:762 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP group object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:772 -msgid "ldap_group_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:785 -msgid "ldap_group_nesting_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:788 -msgid "" -"If ldap_schema is set to a schema format that supports nested groups (e.g. " -"RFC2307bis), then this option controls how many levels of nesting SSSD will " -"follow. This option has no effect on the RFC2307 schema." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:795 -msgid "Default: 2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:801 -msgid "ldap_netgroup_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:804 -msgid "The object class of a netgroup entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:807 -msgid "In IPA provider, ipa_netgroup_object_class should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:811 -msgid "Default: nisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:817 -msgid "ldap_netgroup_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:820 -msgid "The LDAP attribute that corresponds to the netgroup name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:824 -msgid "In IPA provider, ipa_netgroup_name should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:834 -msgid "ldap_netgroup_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:837 -msgid "The LDAP attribute that contains the names of the netgroup's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:841 -msgid "In IPA provider, ipa_netgroup_member should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:845 -msgid "Default: memberNisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:851 -msgid "ldap_netgroup_triple (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:854 -msgid "" -"The LDAP attribute that contains the (host, user, domain) netgroup triples." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:858 sssd-ldap.5.xml:891 -msgid "This option is not available in IPA provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:861 -msgid "Default: nisNetgroupTriple" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:867 -msgid "ldap_netgroup_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:870 -msgid "" -"The LDAP attribute that contains the UUID/GUID of an LDAP netgroup object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:874 -msgid "In IPA provider, ipa_netgroup_uuid should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:884 -msgid "ldap_netgroup_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:900 -msgid "ldap_service_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:903 -msgid "The object class of a service entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:906 -msgid "Default: ipService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:912 -msgid "ldap_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:915 -msgid "" -"The LDAP attribute that contains the name of service attributes and their " -"aliases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:925 -msgid "ldap_service_port (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:928 -msgid "The LDAP attribute that contains the port managed by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:932 -msgid "Default: ipServicePort" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:938 -msgid "ldap_service_proto (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:941 -msgid "" -"The LDAP attribute that contains the protocols understood by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:945 -msgid "Default: ipServiceProtocol" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:951 -msgid "ldap_service_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:954 -msgid "An optional base DN to restrict service searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:958 sssd-ldap.5.xml:1918 sssd-ldap.5.xml:1937 -#: sssd-ldap.5.xml:1956 sssd-ldap.5.xml:2019 sssd-ldap.5.xml:2041 -#: sssd-ipa.5.xml:163 sssd-ipa.5.xml:187 -msgid "" -"See <quote>ldap_search_base</quote> for information about configuring " -"multiple search bases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:963 sssd-ldap.5.xml:1923 sssd-ldap.5.xml:1942 -#: sssd-ldap.5.xml:1961 sssd-ldap.5.xml:2024 sssd-ldap.5.xml:2046 -#: sssd-ipa.5.xml:173 sssd-ipa.5.xml:192 -msgid "Default: the value of <emphasis>ldap_search_base</emphasis>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:970 -msgid "ldap_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:973 -msgid "" -"Specifies the timeout (in seconds) that ldap searches are allowed to run " -"before they are cancelled and cached results are returned (and offline mode " -"is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:979 -msgid "" -"Note: this option is subject to change in future versions of the SSSD. It " -"will likely be replaced at some point by a series of timeouts for specific " -"lookup types." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:985 sssd-ldap.5.xml:1027 sssd-ldap.5.xml:1042 -msgid "Default: 6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:991 -msgid "ldap_enumeration_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:994 -msgid "" -"Specifies the timeout (in seconds) that ldap searches for user and group " -"enumerations are allowed to run before they are cancelled and cached results " -"are returned (and offline mode is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1001 -msgid "Default: 60" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1007 -msgid "ldap_network_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1010 -msgid "" -"Specifies the timeout (in seconds) after which the <citerefentry> " -"<refentrytitle>poll</refentrytitle> <manvolnum>2</manvolnum> </citerefentry>/" -"<citerefentry> <refentrytitle>select</refentrytitle> <manvolnum>2</" -"manvolnum> </citerefentry> following a <citerefentry> " -"<refentrytitle>connect</refentrytitle> <manvolnum>2</manvolnum> </" -"citerefentry> returns in case of no activity." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1033 -msgid "ldap_opt_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1036 -msgid "" -"Specifies a timeout (in seconds) after which calls to synchronous LDAP APIs " -"will abort if no response is received. Also controls the timeout when " -"communicating with the KDC in case of SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1048 -msgid "ldap_connection_expire_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1051 -msgid "" -"Specifies a timeout (in seconds) that a connection to an LDAP server will be " -"maintained. After this time, the connection will be re-established. If used " -"in parallel with SASL/GSSAPI, the sooner of the two values (this value vs. " -"the TGT lifetime) will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1059 -msgid "Default: 900 (15 minutes)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1065 -msgid "ldap_page_size (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1068 -msgid "" -"Specify the number of records to retrieve from LDAP in a single request. " -"Some LDAP servers enforce a maximum limit per-request." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1073 -msgid "Default: 1000" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1079 -msgid "ldap_disable_paging" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1082 -msgid "" -"Disable the LDAP paging control. This option should be used if the LDAP " -"server reports that it supports the LDAP paging control in its RootDSE but " -"it is not enabled or does not behave properly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1088 -msgid "" -"Example: OpenLDAP servers with the paging control module installed on the " -"server but not enabled will report it in the RootDSE but be unable to use it." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1094 -msgid "" -"Example: 389 DS has a bug where it can only support a one paging control at " -"a time on a single connection. On busy clients, this can result in some " -"requests being denied." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1103 -msgid "ldap_deref_threshold (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1106 -msgid "" -"Specify the number of group members that must be missing from the internal " -"cache in order to trigger a dereference lookup. If less members are missing, " -"they are looked up individually." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1112 -msgid "" -"You can turn off dereference lookups completely by setting the value to 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1116 -msgid "" -"A dereference lookup is a means of fetching all group members in a single " -"LDAP call. Different LDAP servers may implement different dereference " -"methods. The currently supported servers are 389/RHDS, OpenLDAP and Active " -"Directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1124 -msgid "" -"<emphasis>Note:</emphasis> If any of the search bases specifies a search " -"filter, then the dereference lookup performance enhancement will be disabled " -"regardless of this setting." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1137 -msgid "ldap_tls_reqcert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1140 -msgid "" -"Specifies what checks to perform on server certificates in a TLS session, if " -"any. It can be specified as one of the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1146 -msgid "" -"<emphasis>never</emphasis> = The client will not request or check any server " -"certificate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1150 -msgid "" -"<emphasis>allow</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, it will be ignored and the session proceeds normally." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1157 -msgid "" -"<emphasis>try</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, the session is immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1163 -msgid "" -"<emphasis>demand</emphasis> = The server certificate is requested. If no " -"certificate is provided, or a bad certificate is provided, the session is " -"immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1169 -msgid "<emphasis>hard</emphasis> = Same as <quote>demand</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1173 -msgid "Default: hard" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1179 -msgid "ldap_tls_cacert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1182 -msgid "" -"Specifies the file that contains certificates for all of the Certificate " -"Authorities that <command>sssd</command> will recognize." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1187 sssd-ldap.5.xml:1205 sssd-ldap.5.xml:1246 -msgid "" -"Default: use OpenLDAP defaults, typically in <filename>/etc/openldap/ldap." -"conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1194 -msgid "ldap_tls_cacertdir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1197 -msgid "" -"Specifies the path of a directory that contains Certificate Authority " -"certificates in separate individual files. Typically the file names need to " -"be the hash of the certificate followed by '.0'. If available, " -"<command>cacertdir_rehash</command> can be used to create the correct names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1212 -msgid "ldap_tls_cert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1215 -msgid "Specifies the file that contains the certificate for the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1219 sssd-ldap.5.xml:1231 sssd-ldap.5.xml:1979 -#: sssd-ldap.5.xml:2006 sssd-krb5.5.xml:359 -msgid "Default: not set" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1225 -msgid "ldap_tls_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1228 -msgid "Specifies the file that contains the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1237 -msgid "ldap_tls_cipher_suite (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1240 -msgid "" -"Specifies acceptable cipher suites. Typically this is a colon sperated " -"list. See <citerefentry><refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> for format." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1253 -msgid "ldap_id_use_start_tls (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1256 -msgid "" -"Specifies that the id_provider connection must also use <systemitem class=" -"\"protocol\">tls</systemitem> to protect the channel." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1266 -msgid "ldap_sasl_mech (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1269 -msgid "" -"Specify the SASL mechanism to use. Currently only GSSAPI is tested and " -"supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1273 sssd-ldap.5.xml:1428 -msgid "Default: none" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1279 -msgid "ldap_sasl_authid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1282 -msgid "" -"Specify the SASL authorization id to use. When GSSAPI is used, this " -"represents the Kerberos principal used for authentication to the directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1287 -msgid "Default: host/machine.fqdn@REALM" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1293 -msgid "ldap_sasl_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1296 -msgid "" -"If set to true, the LDAP library would perform a reverse lookup to " -"canonicalize the host name during a SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1301 -msgid "Default: false;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1307 -msgid "ldap_krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1310 -msgid "Specify the keytab to use when using SASL/GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1313 -msgid "Default: System keytab, normally <filename>/etc/krb5.keytab</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1319 -msgid "ldap_krb5_init_creds (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1322 -msgid "" -"Specifies that the id_provider should init Kerberos credentials (TGT). This " -"action is performed only if SASL is used and the mechanism selected is " -"GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1334 -msgid "ldap_krb5_ticket_lifetime (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1337 -msgid "Specifies the lifetime in seconds of the TGT if GSSAPI is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1341 -msgid "Default: 86400 (24 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1347 sssd-krb5.5.xml:74 -msgid "krb5_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1350 sssd-krb5.5.xml:77 -msgid "" -"Specifies the comma-separated list of IP addresses or hostnames of the " -"Kerberos servers to which SSSD should connect in the order of preference. " -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. An optional port number (preceded by a " -"colon) may be appended to the addresses or hostnames. If empty, service " -"discovery is enabled - for more information, refer to the <quote>SERVICE " -"DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1362 sssd-krb5.5.xml:89 -msgid "" -"When using service discovery for KDC or kpasswd servers, SSSD first searches " -"for DNS entries that specify _udp as the protocol and falls back to _tcp if " -"none are found." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1367 sssd-krb5.5.xml:94 -msgid "" -"This option was named <quote>krb5_kdcip</quote> in earlier releases of SSSD. " -"While the legacy name is recognized for the time being, users are advised to " -"migrate their config files to use <quote>krb5_server</quote> instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1376 sssd-ipa.5.xml:216 sssd-krb5.5.xml:103 -msgid "krb5_realm (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1379 -msgid "Specify the Kerberos REALM (for SASL/GSSAPI auth)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1382 -msgid "Default: System defaults, see <filename>/etc/krb5.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1388 sssd-ipa.5.xml:231 sssd-krb5.5.xml:409 -msgid "krb5_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1391 -msgid "" -"Specifies if the host principal should be canonicalized when connecting to " -"LDAP server. This feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1403 -msgid "ldap_pwd_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1406 -msgid "" -"Select the policy to evaluate the password expiration on the client side. " -"The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1411 -msgid "" -"<emphasis>none</emphasis> - No evaluation on the client side. This option " -"cannot disable server-side password policies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1416 -msgid "" -"<emphasis>shadow</emphasis> - Use <citerefentry><refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum></citerefentry> style attributes to " -"evaluate if the password has expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1422 -msgid "" -"<emphasis>mit_kerberos</emphasis> - Use the attributes used by MIT Kerberos " -"to determine if the password has expired. Use chpass_provider=krb5 to update " -"these attributes when the password is changed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1434 -msgid "ldap_referrals (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1437 -msgid "Specifies whether automatic referral chasing should be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1441 -msgid "" -"Please note that sssd only supports referral chasing when it is compiled " -"with OpenLDAP version 2.4.13 or higher." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1452 -msgid "ldap_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1455 -msgid "Specifies the service name to use when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1459 -msgid "Default: ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1465 -msgid "ldap_chpass_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1468 -msgid "" -"Specifies the service name to use to find an LDAP server which allows " -"password changes when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1473 -msgid "Default: not set, i.e. service discovery is disabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1479 -msgid "ldap_access_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1482 -msgid "" -"If using access_provider = ldap, this option is mandatory. It specifies an " -"LDAP search filter criteria that must be met for the user to be granted " -"access on this host. If access_provider = ldap and this option is not set, " -"it will result in all users being denied access. Use access_provider = allow " -"to change this default behavior." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1492 sssd-ldap.5.xml:1982 -msgid "Example:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1495 -#, no-wrap -msgid "" -"access_provider = ldap\n" -"ldap_access_filter = memberOf=cn=allowedusers,ou=Groups,dc=example,dc=com\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1499 -msgid "" -"This example means that access to this host is restricted to members of the " -"\"allowedusers\" group in ldap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1504 -msgid "" -"Offline caching for this feature is limited to determining whether the " -"user's last online login was granted access permission. If they were granted " -"access during their last login, they will continue to be granted access " -"while offline and vice-versa." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1512 sssd-ldap.5.xml:1562 -msgid "Default: Empty" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1518 -msgid "ldap_account_expire_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1521 -msgid "" -"With this option a client side evaluation of access control attributes can " -"be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1525 -msgid "" -"Please note that it is always recommended to use server side access control, " -"i.e. the LDAP server should deny the bind request with a suitable error code " -"even if the password is correct." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1532 -msgid "The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1535 -msgid "" -"<emphasis>shadow</emphasis>: use the value of ldap_user_shadow_expire to " -"determine if the account is expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1540 -msgid "" -"<emphasis>ad</emphasis>: use the value of the 32bit field " -"ldap_user_ad_user_account_control and allow access if the second bit is not " -"set. If the attribute is missing access is granted. Also the expiration time " -"of the account is checked." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1547 -msgid "" -"<emphasis>rhds</emphasis>, <emphasis>ipa</emphasis>, <emphasis>389ds</" -"emphasis>: use the value of ldap_ns_account_lock to check if access is " -"allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1553 -msgid "" -"<emphasis>nds</emphasis>: the values of " -"ldap_user_nds_login_allowed_time_map, ldap_user_nds_login_disabled and " -"ldap_user_nds_login_expiration_time are used to check if access is allowed. " -"If both attributes are missing access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1568 -msgid "ldap_access_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1571 -msgid "Comma separated list of access control options. Allowed values are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1575 -msgid "<emphasis>filter</emphasis>: use ldap_access_filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1578 -msgid "<emphasis>expire</emphasis>: use ldap_account_expire_policy" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1582 -msgid "" -"<emphasis>authorized_service</emphasis>: use the authorizedService attribute " -"to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1587 -msgid "<emphasis>host</emphasis>: use the host attribute to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1591 -msgid "Default: filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1594 -msgid "" -"Please note that it is a configuration error if a value is used more than " -"once." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1601 -msgid "ldap_deref (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1604 -msgid "" -"Specifies how alias dereferencing is done when performing a search. The " -"following options are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1609 -msgid "<emphasis>never</emphasis>: Aliases are never dereferenced." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1613 -msgid "" -"<emphasis>searching</emphasis>: Aliases are dereferenced in subordinates of " -"the base object, but not in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1618 -msgid "" -"<emphasis>finding</emphasis>: Aliases are only dereferenced when locating " -"the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1623 -msgid "" -"<emphasis>always</emphasis>: Aliases are dereferenced both in searching and " -"in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1628 -msgid "" -"Default: Empty (this is handled as <emphasis>never</emphasis> by the LDAP " -"client libraries)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:51 -msgid "" -"All of the common configuration options that apply to SSSD domains also " -"apply to LDAP domains. Refer to the <quote>DOMAIN SECTIONS</quote> section " -"of the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for full details. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1639 -msgid "SUDO OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1644 -msgid "ldap_sudorule_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1647 -msgid "The object class of a sudo rule entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1650 -msgid "Default: sudoRole" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1656 -msgid "ldap_sudorule_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1659 -msgid "The LDAP attribute that corresponds to the sudo rule name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1669 -msgid "ldap_sudorule_command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1672 -msgid "The LDAP attribute that corresponds to the command name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1676 -msgid "Default: sudoCommand" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1682 -msgid "ldap_sudorule_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1685 -msgid "" -"The LDAP attribute that corresponds to the host name (or host IP address, " -"host IP network, or host netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1690 -msgid "Default: sudoHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1696 -msgid "ldap_sudorule_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1699 -msgid "" -"The LDAP attribute that corresponds to the user name (or UID, group name or " -"user's netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1703 -msgid "Default: sudoUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1709 -msgid "ldap_sudorule_option (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1712 -msgid "The LDAP attribute that corresponds to the sudo options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1716 -msgid "Default: sudoOption" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1722 -msgid "ldap_sudorule_runasuser (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1725 -msgid "" -"The LDAP attribute that corresponds to the user name that commands may be " -"run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1729 -msgid "Default: sudoRunAsUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1735 -msgid "ldap_sudorule_runasgroup (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1738 -msgid "" -"The LDAP attribute that corresponds to the group name or group GID that " -"commands may be run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1742 -msgid "Default: sudoRunAsGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1748 -msgid "ldap_sudorule_notbefore (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1751 -msgid "" -"The LDAP attribute that corresponds to the start date/time for when the sudo " -"rule is valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1755 -msgid "Default: sudoNotBefore" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1761 -msgid "ldap_sudorule_notafter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1764 -msgid "" -"The LDAP attribute that corresponds to the expiration date/time, after which " -"the sudo rule will no longer be valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1769 -msgid "Default: sudoNotAfter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1775 -msgid "ldap_sudorule_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1778 -msgid "The LDAP attribute that corresponds to the ordering index of the rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1782 -msgid "Default: sudoOrder" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1788 -msgid "ldap_sudo_refresh_enabled (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1791 -msgid "" -"Enables periodical download of all sudo rules. The cache is purged before " -"each update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1801 -msgid "ldap_sudo_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1804 -msgid "" -"How many seconds SSSD has to wait before refreshing its cache of sudo rules." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1642 -msgid "<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1815 -msgid "" -"This manual page only describes attribute name mapping. For detailed " -"explanation of sudo related attribute semantics, see <citerefentry> " -"<refentrytitle>sudoers.ldap</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1825 -msgid "AUTOFS OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1827 -msgid "" -"Please note that the default values correspond to the default schema which " -"is RFC2307." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1834 -msgid "ldap_autofs_map_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1837 sssd-ldap.5.xml:1863 -msgid "The object class of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1840 sssd-ldap.5.xml:1867 -msgid "Default: automountMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1847 -msgid "ldap_autofs_map_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1850 -msgid "The name of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1853 -msgid "Default: ou" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1860 -msgid "ldap_autofs_entry_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1874 -msgid "ldap_autofs_entry_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1877 sssd-ldap.5.xml:1891 -msgid "" -"The key of an automount entry in LDAP. The entry usually corresponds to a " -"mount point." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1888 -msgid "ldap_autofs_entry_value (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1895 -msgid "Default: automountInformation" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1832 -msgid "" -"<placeholder type=\"variablelist\" id=\"0\"/> <placeholder type=" -"\"variablelist\" id=\"1\"/> <placeholder type=\"variablelist\" id=\"2\"/> " -"<placeholder type=\"variablelist\" id=\"3\"/> <placeholder type=" -"\"variablelist\" id=\"4\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1904 -msgid "ADVANCED OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1911 -msgid "ldap_netgroup_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1914 -msgid "" -"An optional base DN to restrict netgroup searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1930 -msgid "ldap_user_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1933 -msgid "An optional base DN to restrict user searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1949 -msgid "ldap_group_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1952 -msgid "An optional base DN to restrict group searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1968 -msgid "ldap_user_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1971 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict user searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1975 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_user_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1985 -#, no-wrap -msgid "" -" ldap_user_search_filter = (loginShell=/bin/tcsh)\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1988 -msgid "" -"This filter would restrict user searches to users that have their shell set " -"to /bin/tcsh." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1995 -msgid "ldap_group_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1998 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict group searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2002 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_group_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2012 -msgid "ldap_sudo_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2015 -msgid "" -"An optional base DN to restrict sudo rules searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2034 -msgid "ldap_autofs_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2037 -msgid "" -"An optional base DN to restrict automounter searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1906 -msgid "" -"These options are supported by LDAP domains, but they should be used with " -"caution. Please include them in your configuration only if you know what you " -"are doing. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2066 -msgid "" -"The following example assumes that SSSD is correctly configured and LDAP is " -"set to one of the domains in the <replaceable>[domains]</replaceable> " -"section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ldap.5.xml:2072 -#, no-wrap -msgid "" -" [domain/LDAP]\n" -" id_provider = ldap\n" -" auth_provider = ldap\n" -" ldap_uri = ldap://ldap.mydomain.org\n" -" ldap_search_base = dc=mydomain,dc=org\n" -" ldap_tls_reqcert = demand\n" -" cache_credentials = true\n" -" enumerate = true\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2071 sssd-simple.5.xml:134 sssd-ipa.5.xml:552 -#: sssd-krb5.5.xml:441 -msgid "<placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:2085 sssd_krb5_locator_plugin.8.xml:61 -msgid "NOTES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2087 -msgid "" -"The descriptions of some of the configuration options in this manual page " -"are based on the <citerefentry> <refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page from the OpenLDAP 2.4 " -"distribution." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2098 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <refentryinfo> -#: pam_sss.8.xml:8 include/upstream.xml:2 -msgid "" -"<productname>SSSD</productname> <orgname>The SSSD upstream - http://" -"fedorahosted.org/sssd</orgname>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: pam_sss.8.xml:13 pam_sss.8.xml:18 -msgid "pam_sss" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: pam_sss.8.xml:19 -msgid "PAM module for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: pam_sss.8.xml:24 -msgid "" -"<command>pam_sss.so</command> <arg choice='opt'> <replaceable>quiet</" -"replaceable> </arg> <arg choice='opt'> <replaceable>forward_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_first_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_authtok</" -"replaceable> </arg> <arg choice='opt'> <replaceable>retry=N</replaceable> </" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:45 -msgid "" -"<command>pam_sss.so</command> is the PAM interface to the System Security " -"Services daemon (SSSD). Errors and results are logged through <command>syslog" -"(3)</command> with the LOG_AUTHPRIV facility." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:55 -msgid "<option>quiet</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:58 -msgid "Suppress log messages for unknown users." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:63 -msgid "<option>forward_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:66 -msgid "" -"If <option>forward_pass</option> is set the entered password is put on the " -"stack for other PAM modules to use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:73 -msgid "<option>use_first_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:76 -msgid "" -"The argument use_first_pass forces the module to use a previous stacked " -"modules password and will never prompt the user - if no password is " -"available or the password is not appropriate, the user will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:84 -msgid "<option>use_authtok</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:87 -msgid "" -"When password changing enforce the module to set the new password to the one " -"provided by a previously stacked password module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:94 -msgid "<option>retry=N</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:97 -msgid "" -"If specified the user is asked another N times for a password if " -"authentication fails. Default is 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:99 -msgid "" -"Please note that this option might not work as expected if the application " -"calling PAM handles the user dialog on its own. A typical example is " -"<command>sshd</command> with <option>PasswordAuthentication</option>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:110 -msgid "MODULE TYPES PROVIDED" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:111 -msgid "" -"All module types (<option>account</option>, <option>auth</option>, " -"<option>password</option> and <option>session</option>) are provided." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:117 -msgid "FILES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:118 -msgid "" -"If a password reset by root fails, because the corresponding SSSD provider " -"does not support password resets, an individual message can be displayed. " -"This message can e.g. contain instructions about how to reset a password." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:123 -msgid "" -"The message is read from the file <filename>pam_sss_pw_reset_message.LOC</" -"filename> where LOC stands for a locale string returned by <citerefentry> " -"<refentrytitle>setlocale</refentrytitle><manvolnum>3</manvolnum> </" -"citerefentry>. If there is no matching file the content of " -"<filename>pam_sss_pw_reset_message.txt</filename> is displayed. Root must be " -"the owner of the files and only root may have read and write permissions " -"while all other users must have only read permissions." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:133 -msgid "" -"These files are searched in the directory <filename>/etc/sssd/customize/" -"DOMAIN_NAME/</filename>. If no matching file is present a generic message is " -"displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:141 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd_krb5_locator_plugin.8.xml:10 sssd_krb5_locator_plugin.8.xml:15 -msgid "sssd_krb5_locator_plugin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:22 -msgid "" -"The Kerberos locator plugin <command>sssd_krb5_locator_plugin</command> is " -"used by the Kerberos provider of <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry> to tell the Kerberos " -"libraries what Realm and which KDC to use. Typically this is done in " -"<citerefentry> <refentrytitle>krb5.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> which is always read by the Kerberos libraries. " -"To simplify the configuration the Realm and the KDC can be defined in " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> as described in <citerefentry> " -"<refentrytitle>sssd-krb5.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry> puts the Realm and the name or IP address of the KDC into " -"the environment variables SSSD_KRB5_REALM and SSSD_KRB5_KDC respectively. " -"When <command>sssd_krb5_locator_plugin</command> is called by the kerberos " -"libraries it reads and evaluates these variables and returns them to the " -"libraries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:63 -msgid "" -"Not all Kerberos implementations support the use of plugins. If " -"<command>sssd_krb5_locator_plugin</command> is not available on your system " -"you have to edit /etc/krb5.conf to reflect your Kerberos setup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:69 -msgid "" -"If the environment variable SSSD_KRB5_LOCATOR_DEBUG is set to any value " -"debug messages will be sent to stderr." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:77 -msgid "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-simple.5.xml:10 sssd-simple.5.xml:16 -msgid "sssd-simple" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd-simple.5.xml:17 -msgid "the configuration file for SSSD's 'simple' access-control provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:24 -msgid "" -"This manual page describes the configuration of the simple access-control " -"provider for <citerefentry> <refentrytitle>sssd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry>. For a detailed syntax reference, " -"refer to the <quote>FILE FORMAT</quote> section of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:38 -msgid "" -"The simple access provider grants or denies access based on an access or " -"deny list of user or group names. The following rules apply:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:43 -msgid "If all lists are empty, access is granted" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:47 -msgid "" -"If any list is provided, the order of evaluation is allow,deny. This means " -"that any matching deny rule will supersede any matched allow rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:54 -msgid "" -"If either or both \"allow\" lists are provided, all users are denied unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:60 -msgid "" -"If only \"deny\" lists are provided, all users are granted access unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:78 -msgid "simple_allow_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:81 -msgid "Comma separated list of users who are allowed to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:88 -msgid "simple_deny_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:91 -msgid "Comma separated list of users who are explicitly denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:97 -msgid "simple_allow_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:100 -msgid "" -"Comma separated list of groups that are allowed to log in. This applies only " -"to groups within this SSSD domain. Local groups are not evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:108 -msgid "simple_deny_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:111 -msgid "" -"Comma separated list of groups that are explicitly denied access. This " -"applies only to groups within this SSSD domain. Local groups are not " -"evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:70 sssd-ipa.5.xml:65 -msgid "" -"Refer to the section <quote>DOMAIN SECTIONS</quote> of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page for details on the configuration of an SSSD " -"domain. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:120 -msgid "" -"Please note that it is an configuration error if both, simple_allow_users " -"and simple_deny_users, are defined." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:128 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the simple access provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-simple.5.xml:135 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" access_provider = simple\n" -" simple_allow_users = user1, user2\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:145 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ipa.5.xml:10 sssd-ipa.5.xml:16 -msgid "sssd-ipa" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:23 -msgid "" -"This manual page describes the configuration of the IPA provider for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. For a detailed syntax reference, refer to the <quote>FILE " -"FORMAT</quote> section of the <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:36 -msgid "" -"The IPA provider is a back end used to connect to an IPA server. (Refer to " -"the freeipa.org web site for information about IPA servers.) This provider " -"requires that the machine be joined to the IPA domain; configuration is " -"almost entirely self-discovered and obtained directly from the server." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:43 -msgid "" -"The IPA provider accepts the same options used by the <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> identity provider and the <citerefentry> <refentrytitle>sssd-" -"krb5</refentrytitle> <manvolnum>5</manvolnum> </citerefentry> authentication " -"provider with some exceptions described below." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:55 -msgid "" -"However, it is neither necessary nor recommended to set these options. IPA " -"provider can also be used as an access and chpass provider. As an access " -"provider it uses HBAC (host-based access control) rules. Please refer to " -"freeipa.org for more information about HBAC. No configuration of access " -"provider is required on the client side." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:72 -msgid "ipa_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:75 -msgid "" -"Specifies the name of the IPA domain. This is optional. If not provided, " -"the configuration domain name is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:83 -msgid "ipa_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:86 -msgid "" -"The comma-separated list of IP addresses or hostnames of the IPA servers to " -"which SSSD should connect in the order of preference. For more information " -"on failover and server redundancy, see the <quote>FAILOVER</quote> section. " -"This is optional if autodiscovery is enabled. For more information on " -"service discovery, refer to the the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:99 -msgid "ipa_hostname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:102 -msgid "" -"Optional. May be set on machines where the hostname(5) does not reflect the " -"fully qualified name used in the IPA domain to identify this host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:110 -msgid "ipa_dyndns_update (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:113 -msgid "" -"Optional. This option tells SSSD to automatically update the DNS server " -"built into FreeIPA v2 with the IP address of this client." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:118 -msgid "" -"NOTE: On older systems (such as RHEL 5), for this behavior to work reliably, " -"the default Kerberos realm must be set properly in /etc/krb5.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:129 -msgid "ipa_dyndns_iface (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:132 -msgid "" -"Optional. Applicable only when ipa_dyndns_update is true. Choose the " -"interface whose IP address should be used for dynamic DNS updates." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:137 -msgid "Default: Use the IP address of the IPA LDAP connection" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:143 -msgid "ipa_hbac_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:146 -msgid "Optional. Use the given string as search base for HBAC related objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:150 -msgid "Default: Use base DN" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:156 -msgid "ipa_host_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:159 -msgid "Optional. Use the given string as search base for host objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:168 -msgid "" -"If filter is given in any of search bases and " -"<emphasis>ipa_hbac_support_srchost</emphasis> is set to False, the filter " -"will be ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:180 -msgid "ipa_selinux_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:183 -msgid "Optional. Use the given string as search base for SELinux user maps." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:199 sssd-krb5.5.xml:229 -msgid "krb5_validate (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:202 sssd-krb5.5.xml:232 -msgid "" -"Verify with the help of krb5_keytab that the TGT obtained has not been " -"spoofed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:209 -msgid "" -"Note that this default differs from the traditional Kerberos provider back " -"end." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:219 -msgid "" -"The name of the Kerberos realm. This is optional and defaults to the value " -"of <quote>ipa_domain</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:223 -msgid "" -"The name of the Kerberos realm has a special meaning in IPA - it is " -"converted into the base DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:234 -msgid "" -"Specifies if the host and user principal should be canonicalized when " -"connecting to IPA LDAP and also for AS requests. This feature is available " -"with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:247 -msgid "ipa_hbac_refresh (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:250 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server. " -"This will reduce the latency and load on the IPA server if there are many " -"access-control requests made in a short period." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:257 -msgid "Default: 5 (seconds)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:262 -msgid "ipa_hbac_treat_deny_as (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:265 -msgid "" -"This option specifies how to treat the deprecated DENY-type HBAC rules. As " -"of FreeIPA v2.1, DENY rules are no longer supported on the server. All users " -"of FreeIPA will need to migrate their rules to use only the ALLOW rules. The " -"client will support two modes of operation during this transition period:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:274 -msgid "" -"<emphasis>DENY_ALL</emphasis>: If any HBAC DENY rules are detected, all " -"users will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:279 -msgid "" -"<emphasis>IGNORE</emphasis>: SSSD will ignore any DENY rules. Be very " -"careful with this option, as it may result in opening unintended access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:284 -msgid "Default: DENY_ALL" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:289 -msgid "ipa_hbac_support_srchost (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:292 -msgid "" -"If this is set to false, then srchost as given to SSSD by PAM will be " -"ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:296 -msgid "" -"Note that if set to <emphasis>False</emphasis>, this option casuses filters " -"given in <emphasis>ipa_host_search_base</emphasis> to be ignored;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:307 -msgid "ipa_automount_location (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:310 -msgid "The automounter location this IPA client will be using" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:313 -msgid "Default: The location named \"default\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:319 -msgid "ipa_netgroup_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:322 -msgid "The LDAP attribute that lists netgroup's memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:331 -msgid "ipa_netgroup_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:334 -msgid "" -"The LDAP attribute that lists system users and groups that are direct " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:339 sssd-ipa.5.xml:434 -msgid "Default: memberUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:344 -msgid "ipa_netgroup_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:347 -msgid "" -"The LDAP attribute that lists hosts and host groups that are direct members " -"of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:351 sssd-ipa.5.xml:446 -msgid "Default: memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:356 -msgid "ipa_netgroup_member_ext_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:359 -msgid "" -"The LDAP attribute that lists FQDNs of hosts and host groups that are " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:363 -msgid "Default: externalHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:368 -msgid "ipa_netgroup_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:371 -msgid "The LDAP attribute that contains NIS domain name of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:375 -msgid "Default: nisDomainName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:381 -msgid "ipa_host_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:384 sssd-ipa.5.xml:407 -msgid "The object class of a host entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:387 sssd-ipa.5.xml:410 -msgid "Default: ipaHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:392 -msgid "ipa_host_fqdn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:395 -msgid "The LDAP attribute that contains FQDN of the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:398 -msgid "Default: fqdn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:404 -msgid "ipa_selinux_usermap_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:415 -msgid "ipa_selinux_usermap_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:418 -msgid "The LDAP attribute that contains the name of SELinux usermap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:427 -msgid "ipa_selinux_usermap_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:430 -msgid "" -"The LDAP attribute that contains all users / groups this rule match against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:439 -msgid "ipa_selinux_usermap_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:442 -msgid "" -"The LDAP attribute that contains all hosts / hostgroups this rule match " -"against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:451 -msgid "ipa_selinux_usermap_see_also (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:454 -msgid "" -"The LDAP attribute that contains DN of HBAC rule which can be used for " -"matching instead of memberUser and memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:459 -msgid "Default: seeAlso" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:464 -msgid "ipa_selinux_usermap_selinux_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:467 -msgid "The LDAP attribute that contains SELinux user string itself." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:471 -msgid "Default: ipaSELinuxUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:476 -msgid "ipa_selinux_usermap_enabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:479 -msgid "" -"The LDAP attribute that contains whether or not is user map enabled for " -"usage." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:483 -msgid "Default: ipaEnabledFlag" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:488 -msgid "ipa_selinux_usermap_user_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:491 -msgid "The LDAP attribute that contains user category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:495 -msgid "Default: userCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:500 -msgid "ipa_selinux_usermap_host_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:503 -msgid "The LDAP attribute that contains host category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:507 -msgid "Default: hostCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:512 -msgid "ipa_selinux_usermap_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:515 -msgid "The LDAP attribute that contains unique ID of the user map." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:519 -msgid "Default: ipaUniqueID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:524 -msgid "ipa_host_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:527 -msgid "The LDAP attribute that contains the host's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:531 -msgid "Default: ipaSshPubKey" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:546 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the ipa provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ipa.5.xml:553 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" id_provider = ipa\n" -" ipa_server = ipaserver.example.com\n" -" ipa_hostname = myhost.example.com\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:564 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.8.xml:10 sssd.8.xml:15 -msgid "sssd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.8.xml:16 -msgid "System Security Services Daemon" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sssd.8.xml:21 -msgid "" -"<command>sssd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:31 -msgid "" -"<command>SSSD</command> provides a set of daemons to manage access to remote " -"directories and authentication mechanisms. It provides an NSS and PAM " -"interface toward the system and a pluggable backend system to connect to " -"multiple different account sources as well as D-Bus interface. It is also " -"the basis to provide client auditing and policy services for projects like " -"FreeIPA. It provides a more robust database to store local users as well as " -"extended user data." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:46 -msgid "" -"<option>-d</option>,<option>--debug-level</option> <replaceable>LEVEL</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:53 -msgid "<option>--debug-timestamps=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:57 -msgid "<emphasis>1</emphasis>: Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:60 -msgid "<emphasis>0</emphasis>: Disable timestamp in the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:69 -msgid "<option>--debug-microseconds=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:73 -msgid "" -"<emphasis>1</emphasis>: Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:76 -msgid "<emphasis>0</emphasis>: Disable microseconds in timestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:79 -msgid "Default: 0" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:85 -msgid "<option>-f</option>,<option>--debug-to-files</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:89 -msgid "" -"Send the debug output to files instead of stderr. By default, the log files " -"are stored in <filename>/var/log/sssd</filename> and there are separate log " -"files for every SSSD service and domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:97 -msgid "<option>-D</option>,<option>--daemon</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:101 -msgid "Become a daemon after starting up." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:107 -msgid "<option>-i</option>,<option>--interactive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:111 -msgid "Run in the foreground, don't become a daemon." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:117 sss_debuglevel.8.xml:42 -msgid "<option>-c</option>,<option>--config</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:121 sss_debuglevel.8.xml:46 -msgid "" -"Specify a non-default config file. The default is <filename>/etc/sssd/sssd." -"conf</filename>. For reference on the config file syntax and options, " -"consult the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:135 -msgid "<option>--version</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:139 -msgid "Print version number and exit." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.8.xml:147 -msgid "Signals" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:150 -msgid "SIGTERM/SIGINT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:153 -msgid "" -"Informs the SSSD to gracefully terminate all of its child processes and then " -"shut down the monitor." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:159 -msgid "SIGHUP" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:162 -msgid "" -"Tells the SSSD to stop writing to its current debug file descriptors and to " -"close and reopen them. This is meant to facilitate log rolling with programs " -"like logrotate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:170 -msgid "SIGUSR1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:173 -msgid "" -"Tells the SSSD to simulate offline operation for one minute. This is mostly " -"useful for testing purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:179 -msgid "SIGUSR2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:182 -msgid "" -"Tells the SSSD to go online immediately. This is mostly useful for testing " -"purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:193 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_obfuscate.8.xml:10 sss_obfuscate.8.xml:15 -msgid "sss_obfuscate" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_obfuscate.8.xml:16 -msgid "obfuscate a clear text password" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_obfuscate.8.xml:21 -msgid "" -"<command>sss_obfuscate</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>[PASSWORD]</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:32 -msgid "" -"<command>sss_obfuscate</command> converts a given password into human-" -"unreadable format and places it into appropriate domain section of the SSSD " -"config file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:37 -msgid "" -"The cleartext password is read from standard input or entered " -"interactively. The obfuscated password is put into " -"<quote>ldap_default_authtok</quote> parameter of a given SSSD domain and the " -"<quote>ldap_default_authtok_type</quote> parameter is set to " -"<quote>obfuscated_password</quote>. Refer to <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more details on these parameters." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:49 -msgid "" -"Please note that obfuscating the password provides <emphasis>no real " -"security benefit</emphasis> as it is still possible for an attacker to " -"reverse-engineer the password back. Using better authentication mechanisms " -"such as client side certificates or GSSAPI is <emphasis>strongly</emphasis> " -"advised." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:63 -msgid "<option>-s</option>,<option>--stdin</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:67 -msgid "The password to obfuscate will be read from standard input." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:74 sss_ssh_authorizedkeys.1.xml:82 -#: sss_ssh_knownhostsproxy.1.xml:81 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>DOMAIN</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:79 -msgid "" -"The SSSD domain to use the password in. The default name is <quote>default</" -"quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:86 -msgid "" -"<option>-f</option>,<option>--file</option> <replaceable>FILE</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:91 -msgid "Read the config file specified by the positional parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:95 -msgid "Default: <filename>/etc/sssd/sssd.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:105 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_useradd.8.xml:10 sss_useradd.8.xml:15 -msgid "sss_useradd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_useradd.8.xml:16 -msgid "create a new user" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_useradd.8.xml:21 -msgid "" -"<command>sss_useradd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:32 -msgid "" -"<command>sss_useradd</command> creates a new user account using the values " -"specified on the command line plus the default values from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:43 -msgid "" -"<option>-u</option>,<option>--uid</option> <replaceable>UID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:48 -msgid "" -"Set the UID of the user to the value of <replaceable>UID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:55 sss_usermod.8.xml:43 -msgid "" -"<option>-c</option>,<option>--gecos</option> <replaceable>COMMENT</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:60 sss_usermod.8.xml:48 -msgid "" -"Any text string describing the user. Often used as the field for the user's " -"full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:67 sss_usermod.8.xml:55 -msgid "" -"<option>-h</option>,<option>--home</option> <replaceable>HOME_DIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:72 -msgid "" -"The home directory of the user account. The default is to append the " -"<replaceable>LOGIN</replaceable> name to <filename>/home</filename> and use " -"that as the home directory. The base that is prepended before " -"<replaceable>LOGIN</replaceable> is tunable with <quote>user_defaults/" -"baseDirectory</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:82 sss_usermod.8.xml:66 -msgid "" -"<option>-s</option>,<option>--shell</option> <replaceable>SHELL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:87 -msgid "" -"The user's login shell. The default is currently <filename>/bin/bash</" -"filename>. The default can be changed with <quote>user_defaults/" -"defaultShell</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:96 -msgid "" -"<option>-G</option>,<option>--groups</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:101 -msgid "A list of existing groups this user is also a member of." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:107 -msgid "<option>-m</option>,<option>--create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:111 -msgid "" -"Create the user's home directory if it does not exist. The files and " -"directories contained in the skeleton directory (which can be defined with " -"the -k option or in the config file) will be copied to the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:121 -msgid "<option>-M</option>,<option>--no-create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:125 -msgid "" -"Do not create the user's home directory. Overrides configuration settings." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:132 -msgid "" -"<option>-k</option>,<option>--skel</option> <replaceable>SKELDIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:137 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<command>sss_useradd</command>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:143 -msgid "" -"This option is only valid if the <option>-m</option> (or <option>--create-" -"home</option>) option is specified, or creation of home directories is set " -"to TRUE in the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:152 sss_usermod.8.xml:124 -msgid "" -"<option>-Z</option>,<option>--selinux-user</option> " -"<replaceable>SELINUX_USER</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:157 -msgid "" -"The SELinux user for the user's login. If not specified, the system default " -"will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:169 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-krb5.5.xml:10 sssd-krb5.5.xml:16 -msgid "sssd-krb5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:23 -msgid "" -"This manual page describes the configuration of the Kerberos 5 " -"authentication backend for <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry>. For a detailed " -"syntax reference, please refer to the <quote>FILE FORMAT</quote> section of " -"the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:36 -msgid "" -"The Kerberos 5 authentication backend contains auth and chpass providers. It " -"must be paired with identity provider in order to function properly (for " -"example, id_provider = ldap). Some information required by the Kerberos 5 " -"authentication backend must be provided by the identity provider, such as " -"the user's Kerberos Principal Name (UPN). The configuration of the identity " -"provider should have an entry to specify the UPN. Please refer to the man " -"page for the applicable identity provider for details on how to configure " -"this." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:47 -msgid "" -"This backend also provides access control based on the .k5login file in the " -"home directory of the user. See <citerefentry> <refentrytitle>.k5login</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry> for more details. " -"Please note that an empty .k5login file will deny all access to this user. " -"To activate this feature use 'access_provider = krb5' in your sssd " -"configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:55 -msgid "" -"In the case where the UPN is not available in the identity backend " -"<command>sssd</command> will construct a UPN using the format " -"<replaceable>username</replaceable>@<replaceable>krb5_realm</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:106 -msgid "" -"The name of the Kerberos realm. This option is required and must be " -"specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:113 -msgid "krb5_kpasswd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:116 -msgid "" -"If the change password service is not running on the KDC alternative servers " -"can be defined here. An optional port number (preceded by a colon) may be " -"appended to the addresses or hostnames." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:122 -msgid "" -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. Please note that even if there are no more " -"kpasswd servers to try the back end is not switch to offline if " -"authentication against the KDC is still possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:129 -msgid "Default: Use the KDC" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:135 -msgid "krb5_ccachedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:138 -msgid "" -"Directory to store credential caches. All the substitution sequences of " -"krb5_ccname_template can be used here, too, except %d and %P. If the " -"directory does not exist it will be created. If %u, %U, %p or %h are used a " -"private directory belonging to the user is created. Otherwise a public " -"directory with restricted deletion flag (aka sticky bit, see <citerefentry> " -"<refentrytitle>chmod</refentrytitle> <manvolnum>1</manvolnum> </" -"citerefentry> for details) is created." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:151 -msgid "Default: /tmp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:157 -msgid "krb5_ccname_template (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:171 -msgid "login UID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:174 -msgid "%p" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:175 -msgid "principal name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:179 -msgid "%r" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:180 -msgid "realm name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:183 -msgid "%h" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:184 -msgid "home directory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:189 -msgid "value of krb5ccache_dir" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:194 -msgid "%P" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:195 -msgid "the process ID of the sssd client" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:160 -msgid "" -"Location of the user's credential cache. Currently only file based " -"credential caches are supported. In the template the following sequences are " -"substituted: <placeholder type=\"variablelist\" id=\"0\"/> If the template " -"ends with 'XXXXXX' mkstemp(3) is used to create a unique filename in a safe " -"way." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:209 -msgid "Default: FILE:%d/krb5cc_%U_XXXXXX" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:215 -msgid "krb5_auth_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:218 -msgid "" -"Timeout in seconds after an online authentication or change password request " -"is aborted. If possible the authentication request is continued offline." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:241 -msgid "krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:244 -msgid "" -"The location of the keytab to use when validating credentials obtained from " -"KDCs." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:248 -msgid "Default: /etc/krb5.keytab" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:254 -msgid "krb5_store_password_if_offline (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:257 -msgid "" -"Store the password of the user if the provider is offline and use it to " -"request a TGT when the provider gets online again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:262 -msgid "" -"Please note that this feature currently only available on a Linux platform. " -"Passwords stored in this way are kept in plaintext in the kernel keyring and " -"are potentially accessible by the root user (with difficulty)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:275 -msgid "krb5_renewable_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:278 -msgid "" -"Request a renewable ticket with a total lifetime given by an integer " -"immediately followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:283 sssd-krb5.5.xml:319 -msgid "<emphasis>s</emphasis> seconds" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:286 sssd-krb5.5.xml:322 -msgid "<emphasis>m</emphasis> minutes" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:289 sssd-krb5.5.xml:325 -msgid "<emphasis>h</emphasis> hours" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:292 sssd-krb5.5.xml:328 -msgid "<emphasis>d</emphasis> days." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:295 sssd-krb5.5.xml:331 -msgid "If there is no delimiter <emphasis>s</emphasis> is assumed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:299 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"renewable lifetime to one and a half hours please use '90m' instead of " -"'1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:305 -msgid "Default: not set, i.e. the TGT is not renewable" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:311 -msgid "krb5_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:314 -msgid "" -"Request ticket with a with a lifetime given by an integer immediately " -"followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:335 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"lifetime to one and a half hours please use '90m' instead of '1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:340 -msgid "" -"Default: not set, i.e. the default ticket lifetime configured on the KDC." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:347 -msgid "krb5_renew_interval (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:350 -msgid "" -"The time in seconds between two checks if the TGT should be renewed. TGTs " -"are renewed if about half of their lifetime is exceeded." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:355 -msgid "If this option is not set or 0 the automatic renewal is disabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:365 -msgid "krb5_use_fast (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:368 -msgid "" -"Enables flexible authentication secure tunneling (FAST) for Kerberos pre-" -"authentication. The following options are supported:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:373 -msgid "" -"<emphasis>never</emphasis> use FAST, this is equivalent to not set this " -"option at all." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:377 -msgid "" -"<emphasis>try</emphasis> to use FAST, if the server does not support fast " -"continue without." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:381 -msgid "" -"<emphasis>demand</emphasis> to use FAST, fail if the server does not require " -"fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:385 -msgid "Default: not set, i.e. FAST is not used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:388 -msgid "Please note that a keytab is required to use fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:391 -msgid "" -"Please note also that sssd supports fast only with MIT Kerberos version 1.8 " -"and above. If sssd used with an older version using this option is a " -"configuration error." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:400 -msgid "krb5_fast_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:403 -msgid "Specifies the server principal to use for FAST." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:412 -msgid "" -"Specifies if the host and user principal should be canonicalized. This " -"feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:65 -msgid "" -"If the auth-module krb5 is used in a SSSD domain, the following options must " -"be used. See the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page, section <quote>DOMAIN " -"SECTIONS</quote> for details on the configuration of a SSSD domain. " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:434 -msgid "" -"The following example assumes that SSSD is correctly configured and FOO is " -"one of the domains in the <replaceable>[sssd]</replaceable> section. This " -"example shows only configuration of Kerberos authentication, it does not " -"include any identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-krb5.5.xml:442 -#, no-wrap -msgid "" -" [domain/FOO]\n" -" auth_provider = krb5\n" -" krb5_server = 192.168.1.1\n" -" krb5_realm = EXAMPLE.COM\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:453 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupadd.8.xml:10 sss_groupadd.8.xml:15 -msgid "sss_groupadd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupadd.8.xml:16 -msgid "create a new group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupadd.8.xml:21 -msgid "" -"<command>sss_groupadd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:32 -msgid "" -"<command>sss_groupadd</command> creates a new group. These groups are " -"compatible with POSIX groups, with the additional feature that they can " -"contain other groups as members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupadd.8.xml:43 -msgid "" -"<option>-g</option>,<option>--gid</option> <replaceable>GID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupadd.8.xml:48 -msgid "" -"Set the GID of the group to the value of <replaceable>GID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_userdel.8.xml:10 sss_userdel.8.xml:15 -msgid "sss_userdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_userdel.8.xml:16 -msgid "delete a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_userdel.8.xml:21 -msgid "" -"<command>sss_userdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:32 -msgid "" -"<command>sss_userdel</command> deletes a user identified by login name " -"<replaceable>LOGIN</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:44 -msgid "<option>-r</option>,<option>--remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:48 -msgid "" -"Files in the user's home directory will be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:56 -msgid "<option>-R</option>,<option>--no-remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:60 -msgid "" -"Files in the user's home directory will NOT be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:68 -msgid "<option>-f</option>,<option>--force</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:72 -msgid "" -"This option forces <command>sss_userdel</command> to remove the user's home " -"directory and mail spool, even if they are not owned by the specified user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:80 -msgid "<option>-k</option>,<option>--kick</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:84 -msgid "Before actually deleting the user, terminate all his processes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:95 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupdel.8.xml:10 sss_groupdel.8.xml:15 -msgid "sss_groupdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupdel.8.xml:16 -msgid "delete a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupdel.8.xml:21 -msgid "" -"<command>sss_groupdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:32 -msgid "" -"<command>sss_groupdel</command> deletes a group identified by its name " -"<replaceable>GROUP</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupshow.8.xml:10 sss_groupshow.8.xml:15 -msgid "sss_groupshow" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupshow.8.xml:16 -msgid "print properties of a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupshow.8.xml:21 -msgid "" -"<command>sss_groupshow</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:32 -msgid "" -"<command>sss_groupshow</command> displays information about a group " -"identified by its name <replaceable>GROUP</replaceable>. The information " -"includes the group ID number, members of the group and the parent group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupshow.8.xml:43 -msgid "<option>-R</option>,<option>--recursive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupshow.8.xml:47 -msgid "" -"Also print indirect group members in a tree-like hierarchy. Note that this " -"also affects printing parent groups - without <option>R</option>, only the " -"direct parent will be printed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_usermod.8.xml:10 sss_usermod.8.xml:15 -msgid "sss_usermod" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_usermod.8.xml:16 -msgid "modify a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_usermod.8.xml:21 -msgid "" -"<command>sss_usermod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:32 -msgid "" -"<command>sss_usermod</command> modifies the account specified by " -"<replaceable>LOGIN</replaceable> to reflect the changes that are specified " -"on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:60 -msgid "The home directory of the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:71 -msgid "The user's login shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:82 -msgid "" -"Append this user to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:96 -msgid "" -"Remove this user from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:103 -msgid "<option>-l</option>,<option>--lock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:107 -msgid "Lock the user account. The user won't be able to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:114 -msgid "<option>-u</option>,<option>--unlock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:118 -msgid "Unlock the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:129 -msgid "The SELinux user for the user's login." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:140 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_cache.8.xml:10 sss_cache.8.xml:15 -msgid "sss_cache" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_cache.8.xml:16 -msgid "perform cache cleanup" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_cache.8.xml:21 -msgid "" -"<command>sss_cache</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_cache.8.xml:31 -msgid "" -"<command>sss_cache</command> invalidates records in SSSD cache. Invalidated " -"records are forced to be reloaded from server as soon as related SSSD " -"backend is online." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:42 -msgid "" -"<option>-u</option>,<option>--user</option> <replaceable>login</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:47 -msgid "Invalidate specific user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:53 -msgid "<option>-U</option>,<option>--users</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:57 -msgid "" -"Invalidate all user records. This option overrides invalidation of specific " -"user if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:64 -msgid "" -"<option>-g</option>,<option>--group</option> <replaceable>group</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:69 -msgid "Invalidate specific group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:75 -msgid "<option>-G</option>,<option>--groups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:79 -msgid "" -"Invalidate all group records. This option overrides invalidation of specific " -"group if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:86 -msgid "" -"<option>-n</option>,<option>--netgroup</option> <replaceable>netgroup</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:91 -msgid "Invalidate specific netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:97 -msgid "<option>-N</option>,<option>--netgroups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:101 -msgid "" -"Invalidate all netgroup records. This option overrides invalidation of " -"specific netgroup if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:108 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>domain</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:113 -msgid "Restrict invalidation process only to a particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_debuglevel.8.xml:10 sss_debuglevel.8.xml:15 -msgid "sss_debuglevel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_debuglevel.8.xml:16 -msgid "change debug level while SSSD is running" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_debuglevel.8.xml:21 -msgid "" -"<command>sss_debuglevel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>NEW_DEBUG_LEVEL</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_debuglevel.8.xml:32 -msgid "" -"<command>sss_debuglevel</command> changes debug level of SSSD monitor and " -"providers to <replaceable>NEW_DEBUG_LEVEL</replaceable> while SSSD is " -"running." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_debuglevel.8.xml:59 -msgid "<replaceable>NEW_DEBUG_LEVEL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_authorizedkeys.1.xml:10 sss_ssh_authorizedkeys.1.xml:15 -msgid "sss_ssh_authorizedkeys" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_ssh_authorizedkeys.1.xml:11 sss_ssh_knownhostsproxy.1.xml:11 -msgid "1" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_authorizedkeys.1.xml:16 -msgid "get OpenSSH authorized keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_authorizedkeys.1.xml:21 -msgid "" -"<command>sss_ssh_authorizedkeys</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>USER</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:32 -msgid "" -"<command>sss_ssh_authorizedkeys</command> acquires SSH public keys for user " -"<replaceable>USER</replaceable> and outputs them in OpenSSH authorized_keys " -"format (see the <quote>AUTHORIZED_KEYS FILE FORMAT</quote> section of " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> for more information)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:41 -msgid "" -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_authorizedkeys</" -"command> for public key user authentication if it is compiled with support " -"for either <quote>AuthorizedKeysCommand</quote> or <quote>PubkeyAgent</" -"quote> <citerefentry> <refentrytitle>sshd_config</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:58 -#, no-wrap -msgid "AuthorizedKeysCommand /usr/bin/sss_ssh_authorizedkeys\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:51 -msgid "" -"If <quote>AuthorizedKeysCommand</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by putting the following directive " -"in <citerefentry> <refentrytitle>sshd_config</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry>: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:69 -#, no-wrap -msgid "PubKeyAgent /usr/bin/sss_ssh_authorizedkeys %u\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:62 -msgid "" -"If <quote>PubkeyAgent</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by using the following directive " -"for <citerefentry> <refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> configuration: <placeholder type=\"programlisting" -"\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_authorizedkeys.1.xml:87 -msgid "" -"Search for user public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:98 -msgid "" -"<citerefentry> <refentrytitle>sshd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sshd_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_knownhostsproxy</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_knownhostsproxy.1.xml:10 sss_ssh_knownhostsproxy.1.xml:15 -msgid "sss_ssh_knownhostsproxy" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_knownhostsproxy.1.xml:16 -msgid "get OpenSSH host keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_knownhostsproxy.1.xml:21 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>HOST</replaceable></arg> <arg " -"choice='opt'><replaceable>PROXY_COMMAND</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:33 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> acquires SSH host public keys for " -"host <replaceable>HOST</replaceable>, stores them in a custom OpenSSH " -"known_hosts file (see the <quote>SSH_KNOWN_HOSTS FILE FORMAT</quote> section " -"of <citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> for more information) <filename>/var/lib/sss/" -"pubconf/known_hosts</filename> and estabilishes connection to the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:43 -msgid "" -"If <replaceable>PROXY_COMMAND</replaceable> is specified, it is used to " -"create the connection to the host instead of opening a socket." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_knownhostsproxy.1.xml:55 -#, no-wrap -msgid "" -"ProxyCommand /usr/bin/sss_ssh_knownhostsproxy -p %p %h\n" -"GlobalKnownHostsFile2 /var/lib/sss/pubconf/known_hosts\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:48 -msgid "" -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_knownhostsproxy</" -"command> for host key authentication by using the following directives for " -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> configuration: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_ssh_knownhostsproxy.1.xml:69 -msgid "" -"<option>-p</option>,<option>--port</option> <replaceable>PORT</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:74 -msgid "" -"Use port <replaceable>PORT</replaceable> to connect to the host. By " -"default, port 22 is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:86 -msgid "" -"Search for host public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:97 -msgid "" -"<citerefentry> <refentrytitle>ssh</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>ssh_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_authorizedkeys</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/service_discovery.xml:2 -msgid "SERVICE DISCOVERY" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/service_discovery.xml:4 -msgid "" -"The service discovery feature allows back ends to automatically find the " -"appropriate servers to connect to using a special DNS query." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:9 -msgid "Configuration" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:11 -msgid "" -"If no servers are specified, the back end automatically uses service " -"discovery to try to find a server. Optionally, the user may choose to use " -"both fixed server addresses and service discovery by inserting a special " -"keyword, <quote>_srv_</quote>, in the list of servers. The order of " -"preference is maintained. This feature is useful if, for example, the user " -"prefers to use service discovery whenever possible, and fall back to a " -"specific server when no servers can be discovered using DNS." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:23 -msgid "The domain name" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:25 -msgid "" -"Please refer to the <quote>dns_discovery_domain</quote> parameter in the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for more details." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:35 -msgid "The protocol" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:37 -msgid "" -"The queries usually specify _tcp as the protocol. Exceptions are documented " -"in respective option description." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:42 -msgid "See Also" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:44 -msgid "" -"For more information on the service discovery mechanism, refer to RFC 2782." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/upstream.xml:1 -msgid "<placeholder type=\"refentryinfo\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/failover.xml:2 -msgid "FAILOVER" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/failover.xml:4 -msgid "" -"The failover feature allows back ends to automatically switch to a different " -"server if the primary server fails." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:8 -msgid "Failover Syntax" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:10 -msgid "" -"The list of servers is given as a comma-separated list; any number of spaces " -"is allowed around the comma. The servers are listed in order of preference. " -"The list can contain any number of servers." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:17 -msgid "The Failover Mechanism" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:19 -msgid "" -"The failover mechanism distinguishes between a machine and a service. The " -"back end first tries to resolve the hostname of a given machine; if this " -"resolution attempt fails, the machine is considered offline. No further " -"attempts are made to connect to this machine for any other service. If the " -"resolution attempt succeeds, the back end tries to connect to a service on " -"this machine. If the service connection attempt fails, then only this " -"particular service is considered offline and the back end automatically " -"switches over to the next service. The machine is still considered online " -"and might still be tried for another service." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:32 -msgid "" -"Further connection attempts are made to machines or services marked as " -"offline after a specified period of time; this is currently hard coded to 30 " -"seconds." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:37 -msgid "" -"If there are no more machines to try, the back end as a whole switches to " -"offline mode, and then attempts to reconnect every 30 seconds." -msgstr "" - -#. type: Content of: <varlistentry><term> -#: include/param_help.xml:3 -msgid "<option>-h</option>,<option>--help</option>" -msgstr "" - -#. type: Content of: <varlistentry><listitem><para> -#: include/param_help.xml:7 -msgid "Display help message and exit." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:3 -msgid "" -"Bit mask that indicates which debug levels will be visible. 0x0010 is the " -"default value as well as the lowest allowed value, 0xFFF0 is the most " -"verbose mode. This setting overrides the settings from config file." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:8 -msgid "Currently supported debug levels:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:11 -msgid "" -"<emphasis>0x0010</emphasis>: Fatal failures. Anything that would prevent " -"SSSD from starting up or causes it to cease running." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:15 -msgid "" -"<emphasis>0x0020</emphasis>: Critical failures. An error that doesn't kill " -"the SSSD, but one that indicates that at least one major feature is not " -"going to work properly." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:20 -msgid "" -"<emphasis>0x0040</emphasis>: Serious failures. An error announcing that a " -"particular request or operation has failed." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:24 -msgid "" -"<emphasis>0x0080</emphasis>: Minor failures. These are the errors that would " -"percolate down to cause the operation failure of 2." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:28 -msgid "<emphasis>0x0100</emphasis>: Configuration settings." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:31 -msgid "<emphasis>0x0200</emphasis>: Function data." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:34 -msgid "<emphasis>0x0400</emphasis>: Trace messages for operation functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:37 -msgid "" -"<emphasis>0x1000</emphasis>: Trace messages for internal control functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:40 -msgid "" -"<emphasis>0x2000</emphasis>: Contents of function-internal variables that " -"may be interesting." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:43 -msgid "<emphasis>0x4000</emphasis>: Extremely low-level tracing information." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:46 -msgid "" -"To log required debug levels, simply add their numbers together as shown in " -"following examples:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:49 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, critical failures, " -"serious failures and function data use 0x0270." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:53 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, configuration settings, " -"function data, trace messages for internal control functions use 0x1310." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:57 -msgid "" -"<emphasis>Note</emphasis>: This is new format of debug levels introduced in " -"1.7.0. Older format (numbers from 0-10) is compatible but deprecated." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/experimental.xml:1 -msgid "" -"<emphasis> This is an experimental feature, please use http://fedorahosted." -"org/sssd to report any issues. </emphasis>" -msgstr "" diff --git a/src/man/po/bs.po b/src/man/po/bs.po deleted file mode 100644 index a48797c98..000000000 --- a/src/man/po/bs.po +++ /dev/null @@ -1,6749 +0,0 @@ -# SOME DESCRIPTIVE TITLE -# Copyright (C) YEAR Red Hat -# This file is distributed under the same license as the sssd-docs package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@redhat.com\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-12-23 15:35+0000\n" -"Last-Translator: FULL NAME <EMAIL@ADDRESS>\n" -"Language-Team: Bosnian (http://www.transifex.net/projects/p/fedora/team/" -"bs/)\n" -"Language: bs\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=3; plural=(n%10==1 && n%100!=11 ? 0 : n%10>=2 && n" -"%10<=4 && (n%100<10 || n%100>=20) ? 1 : 2)\n" - -#. type: Content of: <reference><title> -#: sss_groupmod.8.xml:5 sssd.conf.5.xml:5 sssd-ldap.5.xml:5 pam_sss.8.xml:5 -#: sssd_krb5_locator_plugin.8.xml:5 sssd-simple.5.xml:5 sssd-ipa.5.xml:5 -#: sssd.8.xml:5 sss_obfuscate.8.xml:5 sss_useradd.8.xml:5 sssd-krb5.5.xml:5 -#: sss_groupadd.8.xml:5 sss_userdel.8.xml:5 sss_groupdel.8.xml:5 -#: sss_groupshow.8.xml:5 sss_usermod.8.xml:5 sss_cache.8.xml:5 -#: sss_debuglevel.8.xml:5 sss_ssh_authorizedkeys.1.xml:5 -#: sss_ssh_knownhostsproxy.1.xml:5 -msgid "SSSD Manual pages" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupmod.8.xml:10 sss_groupmod.8.xml:15 -msgid "sss_groupmod" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_groupmod.8.xml:11 pam_sss.8.xml:14 sssd_krb5_locator_plugin.8.xml:11 -#: sssd.8.xml:11 sss_obfuscate.8.xml:11 sss_useradd.8.xml:11 -#: sss_groupadd.8.xml:11 sss_userdel.8.xml:11 sss_groupdel.8.xml:11 -#: sss_groupshow.8.xml:11 sss_usermod.8.xml:11 sss_cache.8.xml:11 -#: sss_debuglevel.8.xml:11 -msgid "8" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupmod.8.xml:16 -msgid "modify a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupmod.8.xml:21 -msgid "" -"<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:30 sssd-ldap.5.xml:21 pam_sss.8.xml:44 -#: sssd_krb5_locator_plugin.8.xml:20 sssd-simple.5.xml:22 sssd-ipa.5.xml:21 -#: sssd.8.xml:29 sss_obfuscate.8.xml:30 sss_useradd.8.xml:30 -#: sssd-krb5.5.xml:21 sss_groupadd.8.xml:30 sss_userdel.8.xml:30 -#: sss_groupdel.8.xml:30 sss_groupshow.8.xml:30 sss_usermod.8.xml:30 -#: sss_cache.8.xml:29 sss_debuglevel.8.xml:30 sss_ssh_authorizedkeys.1.xml:30 -#: sss_ssh_knownhostsproxy.1.xml:31 -msgid "DESCRIPTION" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:32 -msgid "" -"<command>sss_groupmod</command> modifies the group to reflect the changes " -"that are specified on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:39 pam_sss.8.xml:51 sssd.8.xml:42 sss_obfuscate.8.xml:58 -#: sss_useradd.8.xml:39 sss_groupadd.8.xml:39 sss_userdel.8.xml:39 -#: sss_groupdel.8.xml:39 sss_groupshow.8.xml:39 sss_usermod.8.xml:39 -#: sss_cache.8.xml:38 sss_debuglevel.8.xml:38 sss_ssh_authorizedkeys.1.xml:78 -#: sss_ssh_knownhostsproxy.1.xml:65 -msgid "OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:43 sss_usermod.8.xml:77 -msgid "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:48 -msgid "" -"Append this group to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:57 sss_usermod.8.xml:91 -msgid "" -"<option>-r</option>,<option>--remove-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:62 -msgid "" -"Remove this group from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:72 sssd.conf.5.xml:1331 sssd-ldap.5.xml:2096 -#: pam_sss.8.xml:139 sssd_krb5_locator_plugin.8.xml:75 sssd-simple.5.xml:143 -#: sssd-ipa.5.xml:562 sssd.8.xml:191 sss_obfuscate.8.xml:103 -#: sss_useradd.8.xml:167 sssd-krb5.5.xml:451 sss_groupadd.8.xml:58 -#: sss_userdel.8.xml:93 sss_groupdel.8.xml:46 sss_groupshow.8.xml:58 -#: sss_usermod.8.xml:138 sss_ssh_authorizedkeys.1.xml:96 -#: sss_ssh_knownhostsproxy.1.xml:95 -msgid "SEE ALSO" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:74 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.conf.5.xml:10 sssd.conf.5.xml:16 -msgid "sssd.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sssd.conf.5.xml:11 sssd-ldap.5.xml:11 sssd-simple.5.xml:11 -#: sssd-ipa.5.xml:11 sssd-krb5.5.xml:11 -msgid "5" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><refmiscinfo> -#: sssd.conf.5.xml:12 sssd-ldap.5.xml:12 sssd-simple.5.xml:12 -#: sssd-ipa.5.xml:12 sssd-krb5.5.xml:12 -msgid "File Formats and Conventions" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.conf.5.xml:17 sssd-ldap.5.xml:17 sssd_krb5_locator_plugin.8.xml:16 -#: sssd-ipa.5.xml:17 sssd-krb5.5.xml:17 -msgid "the configuration file for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:21 -msgid "FILE FORMAT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:29 -#, no-wrap -msgid "" -" <replaceable>[section]</replaceable>\n" -" <replaceable>key</replaceable> = <replaceable>value</replaceable>\n" -" <replaceable>key2</replaceable> = <replaceable>value2,value3</replaceable>\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:24 -msgid "" -"The file has an ini-style syntax and consists of sections and parameters. A " -"section begins with the name of the section in square brackets and continues " -"until the next section begins. An example of section with single and multi-" -"valued parameters: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:36 -msgid "" -"The data types used are string (no quotes needed), integer and bool (with " -"values of <quote>TRUE/FALSE</quote>)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:41 -msgid "" -"A line comment starts with a hash sign (<quote>#</quote>) or a semicolon " -"(<quote>;</quote>)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:46 -msgid "" -"All sections can have an optional <replaceable>description</replaceable> " -"parameter. Its function is only as a label for the section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:52 -msgid "" -"<filename>sssd.conf</filename> must be a regular file, owned by root and " -"only root may read from or write to the file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:58 -msgid "SPECIAL SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:61 -msgid "The [sssd] section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><title> -#: sssd.conf.5.xml:70 sssd.conf.5.xml:1177 -msgid "Section parameters" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:72 -msgid "config_file_version (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:75 -msgid "" -"Indicates what is the syntax of the config file. SSSD 0.6.0 and later use " -"version 2." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:81 -msgid "services" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:84 -msgid "" -"Comma separated list of services that are started when sssd itself starts." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:88 -msgid "" -"Supported services: nss, pam <phrase condition=\"with_sudo\">, sudo</phrase>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:94 sssd.conf.5.xml:257 -msgid "reconnection_retries (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:97 sssd.conf.5.xml:260 -msgid "" -"Number of times services should attempt to reconnect in the event of a Data " -"Provider crash or restart before they give up" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:102 sssd.conf.5.xml:265 -msgid "Default: 3" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:107 -msgid "domains" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:110 -msgid "" -"A domain is a database containing user information. SSSD can use more " -"domains at the same time, but at least one must be configured or SSSD won't " -"start. This parameter described the list of domains in the order you want " -"them to be queried." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:120 -msgid "re_expression (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:123 -msgid "" -"Regular expression that describes how to parse the string containing user " -"name and domain into these components." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:127 -msgid "" -"Default: <quote>(?P<name>[^@]+)@?(?P<domain>[^@]*$)</quote> " -"which translates to \"the name is everything up to the <quote>@</quote> " -"sign, the domain everything after that\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:132 -msgid "" -"PLEASE NOTE: the support for non-unique named subpatterns is not available " -"on all platforms (e.g. RHEL5 and SLES10). Only platforms with libpcre " -"version 7 or higher can support non-unique named subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:139 -msgid "" -"PLEASE NOTE ALSO: older version of libpcre only support the Python syntax (?" -"P<name>) to label subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:146 -msgid "full_name_format (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:149 -msgid "" -"A <citerefentry> <refentrytitle>printf</refentrytitle> <manvolnum>3</" -"manvolnum> </citerefentry>-compatible format that describes how to translate " -"a (name, domain) tuple into a fully qualified name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:157 -msgid "Default: <quote>%1$s@%2$s</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:162 -msgid "try_inotify (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:165 -msgid "" -"SSSD monitors the state of resolv.conf to identify when it needs to update " -"its internal DNS resolver. By default, we will attempt to use inotify for " -"this, and will fall back to polling resolv.conf every five seconds if " -"inotify cannot be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:173 -msgid "" -"There are some limited situations where it is preferred that we should skip " -"even trying to use inotify. In these rare cases, this option should be set " -"to 'false'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:179 -msgid "" -"Default: true on platforms where inotify is supported. False on other " -"platforms." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:183 -msgid "" -"Note: this option will have no effect on platforms where inotify is " -"unavailable. On these platforms, polling will always be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:190 -msgid "krb5_rcache_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:193 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:197 -msgid "" -"This option accepts a special value __LIBKRB5_DEFAULTS__ that will instruct " -"SSSD to let libkrb5 decide the appropriate location for the replay cache." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:203 -msgid "" -"Default: Distribution-specific and specified at build-time. " -"(__LIBKRB5_DEFAULTS__ if not configured)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:63 -msgid "" -"Individual pieces of SSSD functionality are provided by special SSSD " -"services that are started and stopped together with SSSD. The services are " -"managed by a special service frequently called <quote>monitor</quote>. The " -"<quote>[sssd]</quote> section is used to configure the monitor as well as " -"some other important options like the identity domains. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:216 -msgid "SERVICES SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:218 -msgid "" -"Settings that can be used to configure different services are described in " -"this section. They should reside in the [<replaceable>$NAME</replaceable>] " -"section, for example, for NSS service, the section would be <quote>[nss]</" -"quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:225 -msgid "General service configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:227 -msgid "These options can be used to configure any service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:231 -msgid "debug_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:235 -msgid "debug_timestamps (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:238 -msgid "Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:241 sssd.conf.5.xml:376 sssd-ldap.5.xml:1328 -#: sssd-ldap.5.xml:1446 sssd-ipa.5.xml:206 sssd-ipa.5.xml:241 -msgid "Default: true" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:246 -msgid "debug_microseconds (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:249 -msgid "Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:252 sssd.conf.5.xml:641 sssd-ldap.5.xml:602 -#: sssd-ldap.5.xml:1260 sssd-ldap.5.xml:1397 sssd-ldap.5.xml:1795 -#: sssd-ipa.5.xml:123 sssd-ipa.5.xml:301 sssd-krb5.5.xml:235 -#: sssd-krb5.5.xml:269 sssd-krb5.5.xml:418 -msgid "Default: false" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:270 -msgid "command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:273 -msgid "" -"By default, the executable representing this service is called <command>sssd_" -"${service_name}</command>. This directive allows to change the executable " -"name for the service. In the vast majority of configurations, the default " -"values should suffice." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:281 -msgid "Default: <command>sssd_${service_name}</command>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:289 -msgid "NSS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:291 -msgid "" -"These options can be used to configure the Name Service Switch (NSS) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:296 -msgid "enum_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:299 -msgid "" -"How many seconds should nss_sss cache enumerations (requests for info about " -"all users)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:303 -msgid "Default: 120" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:308 -msgid "entry_cache_nowait_percentage (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:311 -msgid "" -"The entry cache can be set to automatically update entries in the background " -"if they are requested beyond a percentage of the entry_cache_timeout value " -"for the domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:317 -msgid "" -"For example, if the domain's entry_cache_timeout is set to 30s and " -"entry_cache_nowait_percentage is set to 50 (percent), entries that come in " -"after 15 seconds past the last cache update will be returned immediately, " -"but the SSSD will go and update the cache on its own, so that future " -"requests will not need to block waiting for a cache update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:327 -msgid "" -"Valid values for this option are 0-99 and represent a percentage of the " -"entry_cache_timeout for each domain. For performance reasons, this " -"percentage will never reduce the nowait timeout to less than 10 seconds. (0 " -"disables this feature)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:335 -msgid "Default: 50" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:340 -msgid "entry_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:343 -msgid "" -"Specifies for how many seconds nss_sss should cache negative cache hits " -"(that is, queries for invalid database entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:349 sssd.conf.5.xml:669 sssd-krb5.5.xml:223 -msgid "Default: 15" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:354 -msgid "filter_users, filter_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:357 -msgid "" -"Exclude certain users from being fetched from the sss NSS database. This is " -"particularly useful for system accounts. This option can also be set per-" -"domain or include fully-qualified names to filter only users from the " -"particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:364 -msgid "Default: root" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:369 -msgid "filter_users_in_groups (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:372 -msgid "" -"If you want filtered user still be group members set this option to false." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:381 -msgid "override_homedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:390 sssd-krb5.5.xml:166 -msgid "%u" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:391 sssd-krb5.5.xml:167 -msgid "login name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:394 sssd-krb5.5.xml:170 -msgid "%U" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:395 -msgid "UID number" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:398 sssd-krb5.5.xml:188 -msgid "%d" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:399 -msgid "domain name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:402 -msgid "%f" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:403 -msgid "fully qualified user name (user@domain)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:406 sssd-krb5.5.xml:200 -msgid "%%" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:407 sssd-krb5.5.xml:201 -msgid "a literal '%'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:384 -msgid "" -"Override the user's home directory. You can either provide an absolute value " -"or a template. In the template, the following sequences are substituted: " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:413 -msgid "This option can also be set per-domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:418 -msgid "allowed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:421 -msgid "" -"Restrict user shell to one of the listed values. The order of evaluation is:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:424 -msgid "1. If the shell is present in <quote>/etc/shells</quote>, it is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:428 -msgid "" -"2. If the shell is in the allowed_shells list but not in <quote>/etc/shells</" -"quote>, use the value of the shell_fallback parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:433 -msgid "" -"3. If the shell is not in the allowed_shells list and not in <quote>/etc/" -"shells</quote>, a nologin shell is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:438 -msgid "An empty string for shell is passed as-is to libc." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:441 -msgid "" -"The <quote>/etc/shells</quote> is only read on SSSD start up, which means " -"that a restart of the SSSD is required in case a new shell is installed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:445 -msgid "Default: Not set. The user shell is automatically used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:450 -msgid "vetoed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:453 -msgid "Replace any instance of these shells with the shell_fallback" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:458 -msgid "shell_fallback (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:461 -msgid "" -"The default shell to use if an allowed shell is not installed on the machine." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:465 -msgid "Default: /bin/sh" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:472 -msgid "PAM configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:474 -msgid "" -"These options can be used to configure the Pluggable Authentication Module " -"(PAM) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:479 -msgid "offline_credentials_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:482 -msgid "" -"If the authentication provider is offline, how long should we allow cached " -"logins (in days since the last successful online login)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:487 sssd.conf.5.xml:500 -msgid "Default: 0 (No limit)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:493 -msgid "offline_failed_login_attempts (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:496 -msgid "" -"If the authentication provider is offline, how many failed login attempts " -"are allowed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:506 -msgid "offline_failed_login_delay (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:509 -msgid "" -"The time in minutes which has to pass after offline_failed_login_attempts " -"has been reached before a new login attempt is possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:514 -msgid "" -"If set to 0 the user cannot authenticate offline if " -"offline_failed_login_attempts has been reached. Only a successful online " -"authentication can enable offline authentication again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:520 sssd.conf.5.xml:573 sssd.conf.5.xml:1093 -msgid "Default: 5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:526 -msgid "pam_verbosity (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:529 -msgid "" -"Controls what kind of messages are shown to the user during authentication. " -"The higher the number to more messages are displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:534 -msgid "Currently sssd supports the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:537 -msgid "<emphasis>0</emphasis>: do not show any message" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:540 -msgid "<emphasis>1</emphasis>: show only important messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:544 -msgid "<emphasis>2</emphasis>: show informational messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:547 -msgid "<emphasis>3</emphasis>: show all messages and debug information" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:551 sssd.8.xml:63 -msgid "Default: 1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:556 -msgid "pam_id_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:559 -msgid "" -"For any PAM request while SSSD is online, the SSSD will attempt to " -"immediately update the cached identity information for the user in order to " -"ensure that authentication takes place with the latest information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:565 -msgid "" -"A complete PAM conversation may perform multiple PAM requests, such as " -"account management and session opening. This option controls (on a per-" -"client-application basis) how long (in seconds) we can cache the identity " -"information to avoid excessive round-trips to the identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:579 -msgid "pam_pwd_expiration_warning (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:582 -msgid "Display a warning N days before the password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:585 -msgid "" -"Please note that the backend server has to provide information about the " -"expiration time of the password. If this information is missing, sssd " -"cannot display a warning." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:591 -msgid "Default: 7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:599 -msgid "SUDO configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:601 -msgid "These options can be used to configure the sudo service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:608 -msgid "sudo_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:611 -msgid "" -"For any sudo request that comes while SSSD is online, the SSSD will attempt " -"to update the cached rules in order to ensure that sudo has the latest " -"ruleset." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:617 -msgid "" -"The user may, however, run a couple of sudo commands successively, which " -"would trigger multiple LDAP requests. In order to speed up this use-case, " -"the sudo service maintains an in-memory cache that would be used for " -"performing fast replies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:624 -msgid "" -"This option controls how long (in seconds) can the sudo service cache rules " -"for a user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:628 -msgid "Default: 180" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:633 -msgid "sudo_timed (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:636 -msgid "" -"Whether or not to evaluate the sudoNotBefore and sudoNotAfter attributes " -"that implement time-dependent sudoers entries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:649 -msgid "AUTOFS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:651 -msgid "These options can be used to configure the autofs service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:659 -msgid "autofs_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:662 -msgid "" -"Specifies for how many seconds should the autofs responder negative cache " -"hits (that is, queries for invalid map entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:679 -msgid "DOMAIN SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:686 -msgid "min_id,max_id (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:689 -msgid "" -"UID and GID limits for the domain. If a domain contains an entry that is " -"outside these limits, it is ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:694 -msgid "" -"For users, this affects the primary GID limit. The user will not be returned " -"to NSS if either the UID or the primary GID is outside the range. For non-" -"primary group memberships, those that are in range will be reported as " -"expected." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:701 -msgid "Default: 1 for min_id, 0 (no limit) for max_id" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:707 -msgid "timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:710 -msgid "" -"Timeout in seconds between heartbeats for this domain. This is used to " -"ensure that the backend process is alive and capable of answering requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:715 sssd-ldap.5.xml:1131 -msgid "Default: 10" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:721 -msgid "enumerate (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:724 -msgid "" -"Determines if a domain can be enumerated. This parameter can have one of the " -"following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:728 -msgid "TRUE = Users and groups are enumerated" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:731 -msgid "FALSE = No enumerations for this domain" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:734 sssd.conf.5.xml:839 sssd.conf.5.xml:893 -msgid "Default: FALSE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:737 -msgid "" -"Note: Enabling enumeration has a moderate performance impact on SSSD while " -"enumeration is running. It may take up to several minutes after SSSD startup " -"to fully complete enumerations. During this time, individual requests for " -"information will go directly to LDAP, though it may be slow, due to the " -"heavy enumeration processing." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:747 -msgid "" -"While the first enumeration is running, requests for the complete user or " -"group lists may return no results until it completes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:752 -msgid "" -"Further, enabling enumeration may increase the time necessary to detect " -"network disconnection, as longer timeouts are required to ensure that " -"enumeration lookups are completed successfully. For more information, refer " -"to the man pages for the specific id_provider in use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:763 -msgid "entry_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:766 -msgid "" -"How many seconds should nss_sss consider entries valid before asking the " -"backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:770 -msgid "Default: 5400" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:776 -msgid "entry_cache_user_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:779 -msgid "" -"How many seconds should nss_sss consider user entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:783 sssd.conf.5.xml:796 sssd.conf.5.xml:809 -#: sssd.conf.5.xml:822 -msgid "Default: entry_cache_timeout" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:789 -msgid "entry_cache_group_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:792 -msgid "" -"How many seconds should nss_sss consider group entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:802 -msgid "entry_cache_netgroup_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:805 -msgid "" -"How many seconds should nss_sss consider netgroup entries valid before " -"asking the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:815 -msgid "entry_cache_service_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:818 -msgid "" -"How many seconds should nss_sss consider service entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:828 -msgid "cache_credentials (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:831 -msgid "Determines if user credentials are also cached in the local LDB cache" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:835 -msgid "User credentials are stored in a SHA512 hash, not in plaintext" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:844 -msgid "account_cache_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:847 -msgid "" -"Number of days entries are left in cache after last successful login before " -"being removed during a cleanup of the cache. 0 means keep forever. The " -"value of this parameter must be greater than or equal to " -"offline_credentials_expiration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:854 -msgid "Default: 0 (unlimited)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:860 -msgid "id_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:863 -msgid "The Data Provider identity backend to use for this domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:867 -msgid "Supported backends:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:870 -msgid "proxy: Support a legacy NSS provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:873 -msgid "local: SSSD internal local provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:876 -msgid "ldap: LDAP provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:882 -msgid "use_fully_qualified_names (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:885 -msgid "" -"If set to TRUE, all requests to this domain must use fully qualified names. " -"For example, if used in LOCAL domain that contains a \"test\" user, " -"<command>getent passwd test</command> wouldn't find the user while " -"<command>getent passwd test@LOCAL</command> would." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:898 -msgid "auth_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:901 -msgid "" -"The authentication provider used for the domain. Supported auth providers " -"are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:905 -msgid "" -"<quote>ldap</quote> for native LDAP authentication. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:912 -msgid "" -"<quote>krb5</quote> for Kerberos authentication. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:919 -msgid "" -"<quote>proxy</quote> for relaying authentication to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:922 -msgid "<quote>none</quote> disables authentication explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:925 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"authentication requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:931 -msgid "access_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:934 -msgid "" -"The access control provider used for the domain. There are two built-in " -"access providers (in addition to any included in installed backends) " -"Internal special providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:940 -msgid "<quote>permit</quote> always allow access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:943 -msgid "<quote>deny</quote> always deny access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:946 -msgid "" -"<quote>simple</quote> access control based on access or deny lists. See " -"<citerefentry> <refentrytitle>sssd-simple</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry> for more information on configuring the simple " -"access module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:953 -msgid "Default: <quote>permit</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:958 -msgid "chpass_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:961 -msgid "" -"The provider which should handle change password operations for the domain. " -"Supported change password providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:966 -msgid "" -"<quote>ipa</quote> to change a password stored in an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:974 -msgid "" -"<quote>ldap</quote> to change a password stored in a LDAP server. See " -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:982 -msgid "" -"<quote>krb5</quote> to change the Kerberos password. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:990 -msgid "" -"<quote>proxy</quote> for relaying password changes to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:994 -msgid "<quote>none</quote> disallows password changes explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:997 -msgid "" -"Default: <quote>auth_provider</quote> is used if it is set and can handle " -"change password requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1004 -msgid "sudo_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1010 -msgid "The SUDO provider used for the domain. Supported SUDO providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1014 -msgid "" -"<quote>ldap</quote> for rules stored in LDAP. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1021 -msgid "<quote>none</quote> disables SUDO explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1024 -msgid "Default: The value of <quote>id_provider</quote> is used if it is set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1030 -msgid "session_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1033 -msgid "" -"The provider which should handle loading of session settings. Supported " -"session providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1038 -msgid "" -"<quote>ipa</quote> to load session settings from an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1046 -msgid "<quote>none</quote> disallows fetching session settings explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1049 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"session loading requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1056 -msgid "lookup_family_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1059 -msgid "" -"Provides the ability to select preferred address family to use when " -"performing DNS lookups." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1063 -msgid "Supported values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1066 -msgid "ipv4_first: Try looking up IPv4 address, if that fails, try IPv6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1069 -msgid "ipv4_only: Only attempt to resolve hostnames to IPv4 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1072 -msgid "ipv6_first: Try looking up IPv6 address, if that fails, try IPv4" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1075 -msgid "ipv6_only: Only attempt to resolve hostnames to IPv6 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1078 -msgid "Default: ipv4_first" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1084 -msgid "dns_resolver_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1087 -msgid "" -"Defines the amount of time (in seconds) to wait for a reply from the DNS " -"resolver before assuming that it is unreachable. If this timeout is reached, " -"the domain will continue to operate in offline mode." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1099 -msgid "dns_discovery_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1102 -msgid "" -"If service discovery is used in the back end, specifies the domain part of " -"the service discovery DNS query." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1106 -msgid "Default: Use the domain part of machine's hostname" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1112 -msgid "override_gid (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1115 -msgid "Override the primary GID value with the one specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1121 -msgid "case_sensitive (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1124 -msgid "" -"Treat user and group names as case sensitive. At the moment, this option is " -"not supported in the local provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1129 -msgid "Default: True" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:681 -msgid "" -"These configuration options can be present in a domain configuration " -"section, that is, in a section called <quote>[domain/<replaceable>NAME</" -"replaceable>]</quote> <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1141 -msgid "proxy_pam_target (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1144 -msgid "The proxy target PAM proxies to." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1147 -msgid "" -"Default: not set by default, you have to take an existing pam configuration " -"or create a new one and add the service name here." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1155 -msgid "proxy_lib_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1158 -msgid "" -"The name of the NSS library to use in proxy domains. The NSS functions " -"searched for in the library are in the form of _nss_$(libName)_$(function), " -"for example _nss_files_getpwent." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1137 -msgid "" -"Options valid for proxy domains. <placeholder type=\"variablelist\" id=" -"\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:1170 -msgid "The local domain section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:1172 -msgid "" -"This section contains settings for domain that stores users and groups in " -"SSSD native database, that is, a domain that uses " -"<replaceable>id_provider=local</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1179 -msgid "default_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1182 -msgid "The default shell for users created with SSSD userspace tools." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1186 -msgid "Default: <filename>/bin/bash</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1191 -msgid "base_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1194 -msgid "" -"The tools append the login name to <replaceable>base_directory</replaceable> " -"and use that as the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1199 -msgid "Default: <filename>/home</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1204 -msgid "create_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1207 -msgid "" -"Indicate if a home directory should be created by default for new users. " -"Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1211 sssd.conf.5.xml:1223 -msgid "Default: TRUE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1216 -msgid "remove_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1219 -msgid "" -"Indicate if a home directory should be removed by default for deleted " -"users. Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1228 -msgid "homedir_umask (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1231 -msgid "" -"Used by <citerefentry> <refentrytitle>sss_useradd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry> to specify the default permissions " -"on a newly created home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1239 -msgid "Default: 077" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1244 -msgid "skel_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1247 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<citerefentry> <refentrytitle>sss_useradd</refentrytitle> <manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1257 -msgid "Default: <filename>/etc/skel</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1262 -msgid "mail_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1265 -msgid "" -"The mail spool directory. This is needed to manipulate the mailbox when its " -"corresponding user account is modified or deleted. If not specified, a " -"default value is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1272 -msgid "Default: <filename>/var/mail</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1277 -msgid "userdel_cmd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1280 -msgid "" -"The command that is run after a user is removed. The command us passed the " -"username of the user being removed as the first and only parameter. The " -"return code of the command is not taken into account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1286 -msgid "Default: None, no command is run" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:1296 sssd-ldap.5.xml:2064 sssd-simple.5.xml:126 -#: sssd-ipa.5.xml:544 sssd-krb5.5.xml:432 -msgid "EXAMPLE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:1302 -#, no-wrap -msgid "" -"[sssd]\n" -"domains = LDAP\n" -"services = nss, pam\n" -"config_file_version = 2\n" -"\n" -"[nss]\n" -"filter_groups = root\n" -"filter_users = root\n" -"\n" -"[pam]\n" -"\n" -"[domain/LDAP]\n" -"id_provider = ldap\n" -"ldap_uri = ldap://ldap.example.com\n" -"ldap_search_base = dc=example,dc=com\n" -"\n" -"auth_provider = krb5\n" -"krb5_server = kerberos.example.com\n" -"krb5_realm = EXAMPLE.COM\n" -"cache_credentials = true\n" -"\n" -"min_id = 10000\n" -"max_id = 20000\n" -"enumerate = False\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1298 -msgid "" -"The following example shows a typical SSSD config. It does not describe " -"configuration of the domains themselves - refer to documentation on " -"configuring domains for more details. <placeholder type=\"programlisting\" " -"id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1333 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>pam_sss</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ldap.5.xml:10 sssd-ldap.5.xml:16 -msgid "sssd-ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:23 -msgid "" -"This manual page describes the configuration of LDAP domains for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. Refer to the <quote>FILE FORMAT</quote> section of the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for detailed syntax information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:35 -msgid "You can configure SSSD to use more than one LDAP domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:38 -msgid "" -"LDAP back end supports id, auth, access and chpass providers. If you want to " -"authenticate against an LDAP server either TLS/SSL or LDAPS is required. " -"<command>sssd</command> <emphasis>does not</emphasis> support authentication " -"over an unencrypted channel. If the LDAP server is used only as an identity " -"provider, an encrypted channel is not needed. Please refer to " -"<quote>ldap_access_filter</quote> config option for more information about " -"using LDAP as an access provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:49 sssd-simple.5.xml:69 sssd-ipa.5.xml:64 -#: sssd-krb5.5.xml:63 -msgid "CONFIGURATION OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:60 -msgid "ldap_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:63 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference. Refer to the <quote>FAILOVER</" -"quote> section for more information on failover and server redundancy. If " -"not specified, service discovery is enabled. For more information, refer to " -"the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:70 -msgid "The format of the URI must match the format defined in RFC 2732:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:73 -msgid "ldap[s]://<host>[:port]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:76 -msgid "" -"For explicit IPv6 addresses, <host> must be enclosed in brackets []" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:79 -msgid "example: ldap://[fc00::126:25]:389" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:85 -msgid "ldap_chpass_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:88 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference to change the password of a user. " -"Refer to the <quote>FAILOVER</quote> section for more information on " -"failover and server redundancy." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:95 -msgid "To enable service discovery ldap_chpass_dns_service_name must be set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:99 -msgid "Default: empty, i.e. ldap_uri is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:105 -msgid "ldap_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:108 -msgid "The default base DN to use for performing LDAP user operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:112 -msgid "" -"Starting with SSSD 1.7.0, SSSD supports multiple search bases using the " -"syntax:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:116 -msgid "search_base[?scope?[filter][?search_base?scope?[filter]]*]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:119 -msgid "The scope can be one of \"base\", \"onelevel\" or \"subtree\"." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:122 -msgid "" -"The filter must be a valid LDAP search filter as specified by http://www." -"ietf.org/rfc/rfc2254.txt" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:126 -msgid "Examples:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:129 -msgid "" -"ldap_search_base = dc=example,dc=com (which is equivalent to) " -"ldap_search_base = dc=example,dc=com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:134 -msgid "" -"ldap_search_base = cn=host_specific,dc=example,dc=com?subtree?" -"(host=thishost)?dc=example.com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:137 -msgid "" -"Note: It is unsupported to have multiple search bases which reference " -"identically-named objects (for example, groups with the same name in two " -"different search bases). This will lead to unpredictable behavior on client " -"machines." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:144 -msgid "" -"Default: If not set, the value of the defaultNamingContext or namingContexts " -"attribute from the RootDSE of the LDAP server is used. If " -"defaultNamingContext does not exists or has an empty value namingContexts is " -"used. The namingContexts attribute must have a single value with the DN of " -"the search base of the LDAP server to make this work. Multiple values are " -"are not supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:158 -msgid "ldap_schema (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:161 -msgid "" -"Specifies the Schema Type in use on the target LDAP server. Depending on " -"the selected schema, the default attribute names retrieved from the servers " -"may vary. The way that some attributes are handled may also differ. Three " -"schema types are currently supported: rfc2307 rfc2307bis IPA The main " -"difference between these schema types is how group memberships are recorded " -"in the server. With rfc2307, group members are listed by name in the " -"<emphasis>memberUid</emphasis> attribute. With rfc2307bis and IPA, group " -"members are listed by DN and stored in the <emphasis>member</emphasis> " -"attribute." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:180 -msgid "Default: rfc2307" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:186 -msgid "ldap_default_bind_dn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:189 -msgid "The default bind DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:196 -msgid "ldap_default_authtok_type (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:199 -msgid "The type of the authentication token of the default bind DN." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:203 -msgid "The two mechanisms currently supported are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:206 -msgid "password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:209 -msgid "obfuscated_password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:212 -msgid "Default: password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:218 -msgid "ldap_default_authtok (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:221 -msgid "" -"The authentication token of the default bind DN. Only clear text passwords " -"are currently supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:228 -msgid "ldap_user_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:231 -msgid "The object class of a user entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:234 -msgid "Default: posixAccount" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:240 -msgid "ldap_user_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:243 -msgid "The LDAP attribute that corresponds to the user's login name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:247 -msgid "Default: uid" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:253 -msgid "ldap_user_uid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:256 -msgid "The LDAP attribute that corresponds to the user's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:260 -msgid "Default: uidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:266 -msgid "ldap_user_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:269 -msgid "The LDAP attribute that corresponds to the user's primary group id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:273 sssd-ldap.5.xml:740 -msgid "Default: gidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:279 -msgid "ldap_user_gecos (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:282 -msgid "The LDAP attribute that corresponds to the user's gecos field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:286 -msgid "Default: gecos" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:292 -msgid "ldap_user_home_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:295 -msgid "The LDAP attribute that contains the name of the user's home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:299 -msgid "Default: homeDirectory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:305 -msgid "ldap_user_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:308 -msgid "The LDAP attribute that contains the path to the user's default shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:312 -msgid "Default: loginShell" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:318 -msgid "ldap_user_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:321 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP user object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:325 sssd-ldap.5.xml:766 sssd-ldap.5.xml:878 -msgid "Default: nsUniqueId" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:331 -msgid "ldap_user_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:334 sssd-ldap.5.xml:775 sssd-ldap.5.xml:887 -msgid "" -"The LDAP attribute that contains timestamp of the last modification of the " -"parent object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:338 sssd-ldap.5.xml:779 sssd-ldap.5.xml:894 -msgid "Default: modifyTimestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:344 -msgid "ldap_user_shadow_last_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:347 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (date of " -"the last password change)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:357 -msgid "Default: shadowLastChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:363 -msgid "ldap_user_shadow_min (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:366 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (minimum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:375 -msgid "Default: shadowMin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:381 -msgid "ldap_user_shadow_max (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:384 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (maximum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:393 -msgid "Default: shadowMax" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:399 -msgid "ldap_user_shadow_warning (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:402 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password warning period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:412 -msgid "Default: shadowWarning" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:418 -msgid "ldap_user_shadow_inactive (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:421 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password inactivity period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:431 -msgid "Default: shadowInactive" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:437 -msgid "ldap_user_shadow_expire (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:440 -msgid "" -"When using ldap_pwd_policy=shadow or ldap_account_expire_policy=shadow, this " -"parameter contains the name of an LDAP attribute corresponding to its " -"<citerefentry> <refentrytitle>shadow</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> counterpart (account expiration date)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:450 -msgid "Default: shadowExpire" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:456 -msgid "ldap_user_krb_last_pwd_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:459 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time of last password change in " -"kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:465 -msgid "Default: krbLastPwdChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:471 -msgid "ldap_user_krb_password_expiration (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:474 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time when current password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:480 -msgid "Default: krbPasswordExpiration" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:486 -msgid "ldap_user_ad_account_expires (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:489 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the expiration time of the account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:494 -msgid "Default: accountExpires" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:500 -msgid "ldap_user_ad_user_account_control (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:503 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the user account control bit field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:508 -msgid "Default: userAccountControl" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:514 -msgid "ldap_ns_account_lock (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:517 -msgid "" -"When using ldap_account_expire_policy=rhds or equivalent, this parameter " -"determines if access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:522 -msgid "Default: nsAccountLock" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:528 -msgid "ldap_user_nds_login_disabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:531 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines if " -"access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:535 sssd-ldap.5.xml:549 -msgid "Default: loginDisabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:541 -msgid "ldap_user_nds_login_expiration_time (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:544 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines until " -"which date access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:555 -msgid "ldap_user_nds_login_allowed_time_map (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:558 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines the " -"hours of a day in a week when access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:563 -msgid "Default: loginAllowedTimeMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:569 -msgid "ldap_user_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:572 -msgid "" -"The LDAP attribute that contains the user's Kerberos User Principal Name " -"(UPN)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:576 -msgid "Default: krbPrincipalName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:582 -msgid "ldap_user_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:585 -msgid "The LDAP attribute that contains the user's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:592 -msgid "ldap_force_upper_case_realm (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:595 -msgid "" -"Some directory servers, for example Active Directory, might deliver the " -"realm part of the UPN in lower case, which might cause the authentication to " -"fail. Set this option to a non-zero value if you want to use an upper-case " -"realm." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:608 -msgid "ldap_enumeration_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:611 -msgid "" -"Specifies how many seconds SSSD has to wait before refreshing its cache of " -"enumerated records." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:616 sssd-ldap.5.xml:1808 -msgid "Default: 300" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:622 -msgid "ldap_purge_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:625 -msgid "" -"Determine how often to check the cache for inactive entries (such as groups " -"with no members and users who have never logged in) and remove them to save " -"space." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:631 -msgid "Setting this option to zero will disable the cache cleanup operation." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:635 -msgid "Default: 10800 (12 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:641 -msgid "ldap_user_fullname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:644 -msgid "The LDAP attribute that corresponds to the user's full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:648 sssd-ldap.5.xml:727 sssd-ldap.5.xml:828 -#: sssd-ldap.5.xml:919 sssd-ldap.5.xml:1663 sssd-ldap.5.xml:1881 -#: sssd-ipa.5.xml:422 -msgid "Default: cn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:654 -msgid "ldap_user_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:657 -msgid "The LDAP attribute that lists the user's group memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:661 sssd-ipa.5.xml:326 -msgid "Default: memberOf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:667 -msgid "ldap_user_authorized_service (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:670 -msgid "" -"If access_provider=ldap and ldap_access_order=authorized_service, SSSD will " -"use the presence of the authorizedService attribute in the user's LDAP entry " -"to determine access privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:677 -msgid "" -"An explicit deny (!svc) is resolved first. Second, SSSD searches for " -"explicit allow (svc) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:682 -msgid "Default: authorizedService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:688 -msgid "ldap_user_authorized_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:691 -msgid "" -"If access_provider=ldap and ldap_access_order=host, SSSD will use the " -"presence of the host attribute in the user's LDAP entry to determine access " -"privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:697 -msgid "" -"An explicit deny (!host) is resolved first. Second, SSSD searches for " -"explicit allow (host) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:702 -msgid "Default: host" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:708 -msgid "ldap_group_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:711 -msgid "The object class of a group entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:714 -msgid "Default: posixGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:720 -msgid "ldap_group_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:723 -msgid "The LDAP attribute that corresponds to the group name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:733 -msgid "ldap_group_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:736 -msgid "The LDAP attribute that corresponds to the group's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:746 -msgid "ldap_group_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:749 -msgid "The LDAP attribute that contains the names of the group's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:753 -msgid "Default: memberuid (rfc2307) / member (rfc2307bis)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:759 -msgid "ldap_group_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:762 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP group object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:772 -msgid "ldap_group_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:785 -msgid "ldap_group_nesting_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:788 -msgid "" -"If ldap_schema is set to a schema format that supports nested groups (e.g. " -"RFC2307bis), then this option controls how many levels of nesting SSSD will " -"follow. This option has no effect on the RFC2307 schema." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:795 -msgid "Default: 2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:801 -msgid "ldap_netgroup_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:804 -msgid "The object class of a netgroup entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:807 -msgid "In IPA provider, ipa_netgroup_object_class should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:811 -msgid "Default: nisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:817 -msgid "ldap_netgroup_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:820 -msgid "The LDAP attribute that corresponds to the netgroup name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:824 -msgid "In IPA provider, ipa_netgroup_name should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:834 -msgid "ldap_netgroup_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:837 -msgid "The LDAP attribute that contains the names of the netgroup's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:841 -msgid "In IPA provider, ipa_netgroup_member should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:845 -msgid "Default: memberNisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:851 -msgid "ldap_netgroup_triple (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:854 -msgid "" -"The LDAP attribute that contains the (host, user, domain) netgroup triples." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:858 sssd-ldap.5.xml:891 -msgid "This option is not available in IPA provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:861 -msgid "Default: nisNetgroupTriple" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:867 -msgid "ldap_netgroup_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:870 -msgid "" -"The LDAP attribute that contains the UUID/GUID of an LDAP netgroup object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:874 -msgid "In IPA provider, ipa_netgroup_uuid should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:884 -msgid "ldap_netgroup_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:900 -msgid "ldap_service_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:903 -msgid "The object class of a service entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:906 -msgid "Default: ipService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:912 -msgid "ldap_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:915 -msgid "" -"The LDAP attribute that contains the name of service attributes and their " -"aliases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:925 -msgid "ldap_service_port (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:928 -msgid "The LDAP attribute that contains the port managed by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:932 -msgid "Default: ipServicePort" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:938 -msgid "ldap_service_proto (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:941 -msgid "" -"The LDAP attribute that contains the protocols understood by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:945 -msgid "Default: ipServiceProtocol" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:951 -msgid "ldap_service_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:954 -msgid "An optional base DN to restrict service searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:958 sssd-ldap.5.xml:1918 sssd-ldap.5.xml:1937 -#: sssd-ldap.5.xml:1956 sssd-ldap.5.xml:2019 sssd-ldap.5.xml:2041 -#: sssd-ipa.5.xml:163 sssd-ipa.5.xml:187 -msgid "" -"See <quote>ldap_search_base</quote> for information about configuring " -"multiple search bases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:963 sssd-ldap.5.xml:1923 sssd-ldap.5.xml:1942 -#: sssd-ldap.5.xml:1961 sssd-ldap.5.xml:2024 sssd-ldap.5.xml:2046 -#: sssd-ipa.5.xml:173 sssd-ipa.5.xml:192 -msgid "Default: the value of <emphasis>ldap_search_base</emphasis>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:970 -msgid "ldap_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:973 -msgid "" -"Specifies the timeout (in seconds) that ldap searches are allowed to run " -"before they are cancelled and cached results are returned (and offline mode " -"is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:979 -msgid "" -"Note: this option is subject to change in future versions of the SSSD. It " -"will likely be replaced at some point by a series of timeouts for specific " -"lookup types." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:985 sssd-ldap.5.xml:1027 sssd-ldap.5.xml:1042 -msgid "Default: 6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:991 -msgid "ldap_enumeration_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:994 -msgid "" -"Specifies the timeout (in seconds) that ldap searches for user and group " -"enumerations are allowed to run before they are cancelled and cached results " -"are returned (and offline mode is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1001 -msgid "Default: 60" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1007 -msgid "ldap_network_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1010 -msgid "" -"Specifies the timeout (in seconds) after which the <citerefentry> " -"<refentrytitle>poll</refentrytitle> <manvolnum>2</manvolnum> </citerefentry>/" -"<citerefentry> <refentrytitle>select</refentrytitle> <manvolnum>2</" -"manvolnum> </citerefentry> following a <citerefentry> " -"<refentrytitle>connect</refentrytitle> <manvolnum>2</manvolnum> </" -"citerefentry> returns in case of no activity." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1033 -msgid "ldap_opt_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1036 -msgid "" -"Specifies a timeout (in seconds) after which calls to synchronous LDAP APIs " -"will abort if no response is received. Also controls the timeout when " -"communicating with the KDC in case of SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1048 -msgid "ldap_connection_expire_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1051 -msgid "" -"Specifies a timeout (in seconds) that a connection to an LDAP server will be " -"maintained. After this time, the connection will be re-established. If used " -"in parallel with SASL/GSSAPI, the sooner of the two values (this value vs. " -"the TGT lifetime) will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1059 -msgid "Default: 900 (15 minutes)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1065 -msgid "ldap_page_size (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1068 -msgid "" -"Specify the number of records to retrieve from LDAP in a single request. " -"Some LDAP servers enforce a maximum limit per-request." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1073 -msgid "Default: 1000" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1079 -msgid "ldap_disable_paging" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1082 -msgid "" -"Disable the LDAP paging control. This option should be used if the LDAP " -"server reports that it supports the LDAP paging control in its RootDSE but " -"it is not enabled or does not behave properly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1088 -msgid "" -"Example: OpenLDAP servers with the paging control module installed on the " -"server but not enabled will report it in the RootDSE but be unable to use it." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1094 -msgid "" -"Example: 389 DS has a bug where it can only support a one paging control at " -"a time on a single connection. On busy clients, this can result in some " -"requests being denied." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1103 -msgid "ldap_deref_threshold (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1106 -msgid "" -"Specify the number of group members that must be missing from the internal " -"cache in order to trigger a dereference lookup. If less members are missing, " -"they are looked up individually." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1112 -msgid "" -"You can turn off dereference lookups completely by setting the value to 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1116 -msgid "" -"A dereference lookup is a means of fetching all group members in a single " -"LDAP call. Different LDAP servers may implement different dereference " -"methods. The currently supported servers are 389/RHDS, OpenLDAP and Active " -"Directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1124 -msgid "" -"<emphasis>Note:</emphasis> If any of the search bases specifies a search " -"filter, then the dereference lookup performance enhancement will be disabled " -"regardless of this setting." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1137 -msgid "ldap_tls_reqcert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1140 -msgid "" -"Specifies what checks to perform on server certificates in a TLS session, if " -"any. It can be specified as one of the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1146 -msgid "" -"<emphasis>never</emphasis> = The client will not request or check any server " -"certificate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1150 -msgid "" -"<emphasis>allow</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, it will be ignored and the session proceeds normally." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1157 -msgid "" -"<emphasis>try</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, the session is immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1163 -msgid "" -"<emphasis>demand</emphasis> = The server certificate is requested. If no " -"certificate is provided, or a bad certificate is provided, the session is " -"immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1169 -msgid "<emphasis>hard</emphasis> = Same as <quote>demand</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1173 -msgid "Default: hard" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1179 -msgid "ldap_tls_cacert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1182 -msgid "" -"Specifies the file that contains certificates for all of the Certificate " -"Authorities that <command>sssd</command> will recognize." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1187 sssd-ldap.5.xml:1205 sssd-ldap.5.xml:1246 -msgid "" -"Default: use OpenLDAP defaults, typically in <filename>/etc/openldap/ldap." -"conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1194 -msgid "ldap_tls_cacertdir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1197 -msgid "" -"Specifies the path of a directory that contains Certificate Authority " -"certificates in separate individual files. Typically the file names need to " -"be the hash of the certificate followed by '.0'. If available, " -"<command>cacertdir_rehash</command> can be used to create the correct names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1212 -msgid "ldap_tls_cert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1215 -msgid "Specifies the file that contains the certificate for the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1219 sssd-ldap.5.xml:1231 sssd-ldap.5.xml:1979 -#: sssd-ldap.5.xml:2006 sssd-krb5.5.xml:359 -msgid "Default: not set" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1225 -msgid "ldap_tls_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1228 -msgid "Specifies the file that contains the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1237 -msgid "ldap_tls_cipher_suite (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1240 -msgid "" -"Specifies acceptable cipher suites. Typically this is a colon sperated " -"list. See <citerefentry><refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> for format." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1253 -msgid "ldap_id_use_start_tls (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1256 -msgid "" -"Specifies that the id_provider connection must also use <systemitem class=" -"\"protocol\">tls</systemitem> to protect the channel." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1266 -msgid "ldap_sasl_mech (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1269 -msgid "" -"Specify the SASL mechanism to use. Currently only GSSAPI is tested and " -"supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1273 sssd-ldap.5.xml:1428 -msgid "Default: none" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1279 -msgid "ldap_sasl_authid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1282 -msgid "" -"Specify the SASL authorization id to use. When GSSAPI is used, this " -"represents the Kerberos principal used for authentication to the directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1287 -msgid "Default: host/machine.fqdn@REALM" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1293 -msgid "ldap_sasl_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1296 -msgid "" -"If set to true, the LDAP library would perform a reverse lookup to " -"canonicalize the host name during a SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1301 -msgid "Default: false;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1307 -msgid "ldap_krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1310 -msgid "Specify the keytab to use when using SASL/GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1313 -msgid "Default: System keytab, normally <filename>/etc/krb5.keytab</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1319 -msgid "ldap_krb5_init_creds (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1322 -msgid "" -"Specifies that the id_provider should init Kerberos credentials (TGT). This " -"action is performed only if SASL is used and the mechanism selected is " -"GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1334 -msgid "ldap_krb5_ticket_lifetime (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1337 -msgid "Specifies the lifetime in seconds of the TGT if GSSAPI is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1341 -msgid "Default: 86400 (24 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1347 sssd-krb5.5.xml:74 -msgid "krb5_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1350 sssd-krb5.5.xml:77 -msgid "" -"Specifies the comma-separated list of IP addresses or hostnames of the " -"Kerberos servers to which SSSD should connect in the order of preference. " -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. An optional port number (preceded by a " -"colon) may be appended to the addresses or hostnames. If empty, service " -"discovery is enabled - for more information, refer to the <quote>SERVICE " -"DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1362 sssd-krb5.5.xml:89 -msgid "" -"When using service discovery for KDC or kpasswd servers, SSSD first searches " -"for DNS entries that specify _udp as the protocol and falls back to _tcp if " -"none are found." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1367 sssd-krb5.5.xml:94 -msgid "" -"This option was named <quote>krb5_kdcip</quote> in earlier releases of SSSD. " -"While the legacy name is recognized for the time being, users are advised to " -"migrate their config files to use <quote>krb5_server</quote> instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1376 sssd-ipa.5.xml:216 sssd-krb5.5.xml:103 -msgid "krb5_realm (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1379 -msgid "Specify the Kerberos REALM (for SASL/GSSAPI auth)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1382 -msgid "Default: System defaults, see <filename>/etc/krb5.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1388 sssd-ipa.5.xml:231 sssd-krb5.5.xml:409 -msgid "krb5_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1391 -msgid "" -"Specifies if the host principal should be canonicalized when connecting to " -"LDAP server. This feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1403 -msgid "ldap_pwd_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1406 -msgid "" -"Select the policy to evaluate the password expiration on the client side. " -"The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1411 -msgid "" -"<emphasis>none</emphasis> - No evaluation on the client side. This option " -"cannot disable server-side password policies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1416 -msgid "" -"<emphasis>shadow</emphasis> - Use <citerefentry><refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum></citerefentry> style attributes to " -"evaluate if the password has expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1422 -msgid "" -"<emphasis>mit_kerberos</emphasis> - Use the attributes used by MIT Kerberos " -"to determine if the password has expired. Use chpass_provider=krb5 to update " -"these attributes when the password is changed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1434 -msgid "ldap_referrals (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1437 -msgid "Specifies whether automatic referral chasing should be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1441 -msgid "" -"Please note that sssd only supports referral chasing when it is compiled " -"with OpenLDAP version 2.4.13 or higher." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1452 -msgid "ldap_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1455 -msgid "Specifies the service name to use when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1459 -msgid "Default: ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1465 -msgid "ldap_chpass_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1468 -msgid "" -"Specifies the service name to use to find an LDAP server which allows " -"password changes when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1473 -msgid "Default: not set, i.e. service discovery is disabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1479 -msgid "ldap_access_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1482 -msgid "" -"If using access_provider = ldap, this option is mandatory. It specifies an " -"LDAP search filter criteria that must be met for the user to be granted " -"access on this host. If access_provider = ldap and this option is not set, " -"it will result in all users being denied access. Use access_provider = allow " -"to change this default behavior." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1492 sssd-ldap.5.xml:1982 -msgid "Example:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1495 -#, no-wrap -msgid "" -"access_provider = ldap\n" -"ldap_access_filter = memberOf=cn=allowedusers,ou=Groups,dc=example,dc=com\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1499 -msgid "" -"This example means that access to this host is restricted to members of the " -"\"allowedusers\" group in ldap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1504 -msgid "" -"Offline caching for this feature is limited to determining whether the " -"user's last online login was granted access permission. If they were granted " -"access during their last login, they will continue to be granted access " -"while offline and vice-versa." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1512 sssd-ldap.5.xml:1562 -msgid "Default: Empty" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1518 -msgid "ldap_account_expire_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1521 -msgid "" -"With this option a client side evaluation of access control attributes can " -"be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1525 -msgid "" -"Please note that it is always recommended to use server side access control, " -"i.e. the LDAP server should deny the bind request with a suitable error code " -"even if the password is correct." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1532 -msgid "The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1535 -msgid "" -"<emphasis>shadow</emphasis>: use the value of ldap_user_shadow_expire to " -"determine if the account is expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1540 -msgid "" -"<emphasis>ad</emphasis>: use the value of the 32bit field " -"ldap_user_ad_user_account_control and allow access if the second bit is not " -"set. If the attribute is missing access is granted. Also the expiration time " -"of the account is checked." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1547 -msgid "" -"<emphasis>rhds</emphasis>, <emphasis>ipa</emphasis>, <emphasis>389ds</" -"emphasis>: use the value of ldap_ns_account_lock to check if access is " -"allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1553 -msgid "" -"<emphasis>nds</emphasis>: the values of " -"ldap_user_nds_login_allowed_time_map, ldap_user_nds_login_disabled and " -"ldap_user_nds_login_expiration_time are used to check if access is allowed. " -"If both attributes are missing access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1568 -msgid "ldap_access_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1571 -msgid "Comma separated list of access control options. Allowed values are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1575 -msgid "<emphasis>filter</emphasis>: use ldap_access_filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1578 -msgid "<emphasis>expire</emphasis>: use ldap_account_expire_policy" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1582 -msgid "" -"<emphasis>authorized_service</emphasis>: use the authorizedService attribute " -"to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1587 -msgid "<emphasis>host</emphasis>: use the host attribute to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1591 -msgid "Default: filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1594 -msgid "" -"Please note that it is a configuration error if a value is used more than " -"once." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1601 -msgid "ldap_deref (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1604 -msgid "" -"Specifies how alias dereferencing is done when performing a search. The " -"following options are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1609 -msgid "<emphasis>never</emphasis>: Aliases are never dereferenced." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1613 -msgid "" -"<emphasis>searching</emphasis>: Aliases are dereferenced in subordinates of " -"the base object, but not in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1618 -msgid "" -"<emphasis>finding</emphasis>: Aliases are only dereferenced when locating " -"the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1623 -msgid "" -"<emphasis>always</emphasis>: Aliases are dereferenced both in searching and " -"in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1628 -msgid "" -"Default: Empty (this is handled as <emphasis>never</emphasis> by the LDAP " -"client libraries)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:51 -msgid "" -"All of the common configuration options that apply to SSSD domains also " -"apply to LDAP domains. Refer to the <quote>DOMAIN SECTIONS</quote> section " -"of the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for full details. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1639 -msgid "SUDO OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1644 -msgid "ldap_sudorule_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1647 -msgid "The object class of a sudo rule entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1650 -msgid "Default: sudoRole" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1656 -msgid "ldap_sudorule_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1659 -msgid "The LDAP attribute that corresponds to the sudo rule name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1669 -msgid "ldap_sudorule_command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1672 -msgid "The LDAP attribute that corresponds to the command name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1676 -msgid "Default: sudoCommand" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1682 -msgid "ldap_sudorule_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1685 -msgid "" -"The LDAP attribute that corresponds to the host name (or host IP address, " -"host IP network, or host netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1690 -msgid "Default: sudoHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1696 -msgid "ldap_sudorule_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1699 -msgid "" -"The LDAP attribute that corresponds to the user name (or UID, group name or " -"user's netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1703 -msgid "Default: sudoUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1709 -msgid "ldap_sudorule_option (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1712 -msgid "The LDAP attribute that corresponds to the sudo options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1716 -msgid "Default: sudoOption" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1722 -msgid "ldap_sudorule_runasuser (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1725 -msgid "" -"The LDAP attribute that corresponds to the user name that commands may be " -"run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1729 -msgid "Default: sudoRunAsUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1735 -msgid "ldap_sudorule_runasgroup (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1738 -msgid "" -"The LDAP attribute that corresponds to the group name or group GID that " -"commands may be run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1742 -msgid "Default: sudoRunAsGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1748 -msgid "ldap_sudorule_notbefore (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1751 -msgid "" -"The LDAP attribute that corresponds to the start date/time for when the sudo " -"rule is valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1755 -msgid "Default: sudoNotBefore" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1761 -msgid "ldap_sudorule_notafter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1764 -msgid "" -"The LDAP attribute that corresponds to the expiration date/time, after which " -"the sudo rule will no longer be valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1769 -msgid "Default: sudoNotAfter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1775 -msgid "ldap_sudorule_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1778 -msgid "The LDAP attribute that corresponds to the ordering index of the rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1782 -msgid "Default: sudoOrder" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1788 -msgid "ldap_sudo_refresh_enabled (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1791 -msgid "" -"Enables periodical download of all sudo rules. The cache is purged before " -"each update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1801 -msgid "ldap_sudo_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1804 -msgid "" -"How many seconds SSSD has to wait before refreshing its cache of sudo rules." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1642 -msgid "<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1815 -msgid "" -"This manual page only describes attribute name mapping. For detailed " -"explanation of sudo related attribute semantics, see <citerefentry> " -"<refentrytitle>sudoers.ldap</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1825 -msgid "AUTOFS OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1827 -msgid "" -"Please note that the default values correspond to the default schema which " -"is RFC2307." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1834 -msgid "ldap_autofs_map_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1837 sssd-ldap.5.xml:1863 -msgid "The object class of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1840 sssd-ldap.5.xml:1867 -msgid "Default: automountMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1847 -msgid "ldap_autofs_map_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1850 -msgid "The name of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1853 -msgid "Default: ou" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1860 -msgid "ldap_autofs_entry_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1874 -msgid "ldap_autofs_entry_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1877 sssd-ldap.5.xml:1891 -msgid "" -"The key of an automount entry in LDAP. The entry usually corresponds to a " -"mount point." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1888 -msgid "ldap_autofs_entry_value (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1895 -msgid "Default: automountInformation" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1832 -msgid "" -"<placeholder type=\"variablelist\" id=\"0\"/> <placeholder type=" -"\"variablelist\" id=\"1\"/> <placeholder type=\"variablelist\" id=\"2\"/> " -"<placeholder type=\"variablelist\" id=\"3\"/> <placeholder type=" -"\"variablelist\" id=\"4\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1904 -msgid "ADVANCED OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1911 -msgid "ldap_netgroup_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1914 -msgid "" -"An optional base DN to restrict netgroup searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1930 -msgid "ldap_user_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1933 -msgid "An optional base DN to restrict user searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1949 -msgid "ldap_group_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1952 -msgid "An optional base DN to restrict group searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1968 -msgid "ldap_user_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1971 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict user searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1975 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_user_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1985 -#, no-wrap -msgid "" -" ldap_user_search_filter = (loginShell=/bin/tcsh)\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1988 -msgid "" -"This filter would restrict user searches to users that have their shell set " -"to /bin/tcsh." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1995 -msgid "ldap_group_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1998 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict group searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2002 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_group_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2012 -msgid "ldap_sudo_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2015 -msgid "" -"An optional base DN to restrict sudo rules searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2034 -msgid "ldap_autofs_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2037 -msgid "" -"An optional base DN to restrict automounter searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1906 -msgid "" -"These options are supported by LDAP domains, but they should be used with " -"caution. Please include them in your configuration only if you know what you " -"are doing. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2066 -msgid "" -"The following example assumes that SSSD is correctly configured and LDAP is " -"set to one of the domains in the <replaceable>[domains]</replaceable> " -"section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ldap.5.xml:2072 -#, no-wrap -msgid "" -" [domain/LDAP]\n" -" id_provider = ldap\n" -" auth_provider = ldap\n" -" ldap_uri = ldap://ldap.mydomain.org\n" -" ldap_search_base = dc=mydomain,dc=org\n" -" ldap_tls_reqcert = demand\n" -" cache_credentials = true\n" -" enumerate = true\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2071 sssd-simple.5.xml:134 sssd-ipa.5.xml:552 -#: sssd-krb5.5.xml:441 -msgid "<placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:2085 sssd_krb5_locator_plugin.8.xml:61 -msgid "NOTES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2087 -msgid "" -"The descriptions of some of the configuration options in this manual page " -"are based on the <citerefentry> <refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page from the OpenLDAP 2.4 " -"distribution." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2098 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <refentryinfo> -#: pam_sss.8.xml:8 include/upstream.xml:2 -msgid "" -"<productname>SSSD</productname> <orgname>The SSSD upstream - http://" -"fedorahosted.org/sssd</orgname>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: pam_sss.8.xml:13 pam_sss.8.xml:18 -msgid "pam_sss" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: pam_sss.8.xml:19 -msgid "PAM module for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: pam_sss.8.xml:24 -msgid "" -"<command>pam_sss.so</command> <arg choice='opt'> <replaceable>quiet</" -"replaceable> </arg> <arg choice='opt'> <replaceable>forward_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_first_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_authtok</" -"replaceable> </arg> <arg choice='opt'> <replaceable>retry=N</replaceable> </" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:45 -msgid "" -"<command>pam_sss.so</command> is the PAM interface to the System Security " -"Services daemon (SSSD). Errors and results are logged through <command>syslog" -"(3)</command> with the LOG_AUTHPRIV facility." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:55 -msgid "<option>quiet</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:58 -msgid "Suppress log messages for unknown users." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:63 -msgid "<option>forward_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:66 -msgid "" -"If <option>forward_pass</option> is set the entered password is put on the " -"stack for other PAM modules to use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:73 -msgid "<option>use_first_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:76 -msgid "" -"The argument use_first_pass forces the module to use a previous stacked " -"modules password and will never prompt the user - if no password is " -"available or the password is not appropriate, the user will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:84 -msgid "<option>use_authtok</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:87 -msgid "" -"When password changing enforce the module to set the new password to the one " -"provided by a previously stacked password module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:94 -msgid "<option>retry=N</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:97 -msgid "" -"If specified the user is asked another N times for a password if " -"authentication fails. Default is 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:99 -msgid "" -"Please note that this option might not work as expected if the application " -"calling PAM handles the user dialog on its own. A typical example is " -"<command>sshd</command> with <option>PasswordAuthentication</option>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:110 -msgid "MODULE TYPES PROVIDED" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:111 -msgid "" -"All module types (<option>account</option>, <option>auth</option>, " -"<option>password</option> and <option>session</option>) are provided." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:117 -msgid "FILES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:118 -msgid "" -"If a password reset by root fails, because the corresponding SSSD provider " -"does not support password resets, an individual message can be displayed. " -"This message can e.g. contain instructions about how to reset a password." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:123 -msgid "" -"The message is read from the file <filename>pam_sss_pw_reset_message.LOC</" -"filename> where LOC stands for a locale string returned by <citerefentry> " -"<refentrytitle>setlocale</refentrytitle><manvolnum>3</manvolnum> </" -"citerefentry>. If there is no matching file the content of " -"<filename>pam_sss_pw_reset_message.txt</filename> is displayed. Root must be " -"the owner of the files and only root may have read and write permissions " -"while all other users must have only read permissions." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:133 -msgid "" -"These files are searched in the directory <filename>/etc/sssd/customize/" -"DOMAIN_NAME/</filename>. If no matching file is present a generic message is " -"displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:141 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd_krb5_locator_plugin.8.xml:10 sssd_krb5_locator_plugin.8.xml:15 -msgid "sssd_krb5_locator_plugin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:22 -msgid "" -"The Kerberos locator plugin <command>sssd_krb5_locator_plugin</command> is " -"used by the Kerberos provider of <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry> to tell the Kerberos " -"libraries what Realm and which KDC to use. Typically this is done in " -"<citerefentry> <refentrytitle>krb5.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> which is always read by the Kerberos libraries. " -"To simplify the configuration the Realm and the KDC can be defined in " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> as described in <citerefentry> " -"<refentrytitle>sssd-krb5.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry> puts the Realm and the name or IP address of the KDC into " -"the environment variables SSSD_KRB5_REALM and SSSD_KRB5_KDC respectively. " -"When <command>sssd_krb5_locator_plugin</command> is called by the kerberos " -"libraries it reads and evaluates these variables and returns them to the " -"libraries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:63 -msgid "" -"Not all Kerberos implementations support the use of plugins. If " -"<command>sssd_krb5_locator_plugin</command> is not available on your system " -"you have to edit /etc/krb5.conf to reflect your Kerberos setup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:69 -msgid "" -"If the environment variable SSSD_KRB5_LOCATOR_DEBUG is set to any value " -"debug messages will be sent to stderr." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:77 -msgid "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-simple.5.xml:10 sssd-simple.5.xml:16 -msgid "sssd-simple" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd-simple.5.xml:17 -msgid "the configuration file for SSSD's 'simple' access-control provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:24 -msgid "" -"This manual page describes the configuration of the simple access-control " -"provider for <citerefentry> <refentrytitle>sssd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry>. For a detailed syntax reference, " -"refer to the <quote>FILE FORMAT</quote> section of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:38 -msgid "" -"The simple access provider grants or denies access based on an access or " -"deny list of user or group names. The following rules apply:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:43 -msgid "If all lists are empty, access is granted" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:47 -msgid "" -"If any list is provided, the order of evaluation is allow,deny. This means " -"that any matching deny rule will supersede any matched allow rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:54 -msgid "" -"If either or both \"allow\" lists are provided, all users are denied unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:60 -msgid "" -"If only \"deny\" lists are provided, all users are granted access unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:78 -msgid "simple_allow_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:81 -msgid "Comma separated list of users who are allowed to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:88 -msgid "simple_deny_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:91 -msgid "Comma separated list of users who are explicitly denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:97 -msgid "simple_allow_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:100 -msgid "" -"Comma separated list of groups that are allowed to log in. This applies only " -"to groups within this SSSD domain. Local groups are not evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:108 -msgid "simple_deny_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:111 -msgid "" -"Comma separated list of groups that are explicitly denied access. This " -"applies only to groups within this SSSD domain. Local groups are not " -"evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:70 sssd-ipa.5.xml:65 -msgid "" -"Refer to the section <quote>DOMAIN SECTIONS</quote> of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page for details on the configuration of an SSSD " -"domain. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:120 -msgid "" -"Please note that it is an configuration error if both, simple_allow_users " -"and simple_deny_users, are defined." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:128 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the simple access provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-simple.5.xml:135 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" access_provider = simple\n" -" simple_allow_users = user1, user2\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:145 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ipa.5.xml:10 sssd-ipa.5.xml:16 -msgid "sssd-ipa" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:23 -msgid "" -"This manual page describes the configuration of the IPA provider for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. For a detailed syntax reference, refer to the <quote>FILE " -"FORMAT</quote> section of the <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:36 -msgid "" -"The IPA provider is a back end used to connect to an IPA server. (Refer to " -"the freeipa.org web site for information about IPA servers.) This provider " -"requires that the machine be joined to the IPA domain; configuration is " -"almost entirely self-discovered and obtained directly from the server." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:43 -msgid "" -"The IPA provider accepts the same options used by the <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> identity provider and the <citerefentry> <refentrytitle>sssd-" -"krb5</refentrytitle> <manvolnum>5</manvolnum> </citerefentry> authentication " -"provider with some exceptions described below." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:55 -msgid "" -"However, it is neither necessary nor recommended to set these options. IPA " -"provider can also be used as an access and chpass provider. As an access " -"provider it uses HBAC (host-based access control) rules. Please refer to " -"freeipa.org for more information about HBAC. No configuration of access " -"provider is required on the client side." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:72 -msgid "ipa_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:75 -msgid "" -"Specifies the name of the IPA domain. This is optional. If not provided, " -"the configuration domain name is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:83 -msgid "ipa_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:86 -msgid "" -"The comma-separated list of IP addresses or hostnames of the IPA servers to " -"which SSSD should connect in the order of preference. For more information " -"on failover and server redundancy, see the <quote>FAILOVER</quote> section. " -"This is optional if autodiscovery is enabled. For more information on " -"service discovery, refer to the the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:99 -msgid "ipa_hostname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:102 -msgid "" -"Optional. May be set on machines where the hostname(5) does not reflect the " -"fully qualified name used in the IPA domain to identify this host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:110 -msgid "ipa_dyndns_update (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:113 -msgid "" -"Optional. This option tells SSSD to automatically update the DNS server " -"built into FreeIPA v2 with the IP address of this client." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:118 -msgid "" -"NOTE: On older systems (such as RHEL 5), for this behavior to work reliably, " -"the default Kerberos realm must be set properly in /etc/krb5.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:129 -msgid "ipa_dyndns_iface (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:132 -msgid "" -"Optional. Applicable only when ipa_dyndns_update is true. Choose the " -"interface whose IP address should be used for dynamic DNS updates." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:137 -msgid "Default: Use the IP address of the IPA LDAP connection" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:143 -msgid "ipa_hbac_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:146 -msgid "Optional. Use the given string as search base for HBAC related objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:150 -msgid "Default: Use base DN" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:156 -msgid "ipa_host_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:159 -msgid "Optional. Use the given string as search base for host objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:168 -msgid "" -"If filter is given in any of search bases and " -"<emphasis>ipa_hbac_support_srchost</emphasis> is set to False, the filter " -"will be ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:180 -msgid "ipa_selinux_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:183 -msgid "Optional. Use the given string as search base for SELinux user maps." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:199 sssd-krb5.5.xml:229 -msgid "krb5_validate (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:202 sssd-krb5.5.xml:232 -msgid "" -"Verify with the help of krb5_keytab that the TGT obtained has not been " -"spoofed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:209 -msgid "" -"Note that this default differs from the traditional Kerberos provider back " -"end." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:219 -msgid "" -"The name of the Kerberos realm. This is optional and defaults to the value " -"of <quote>ipa_domain</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:223 -msgid "" -"The name of the Kerberos realm has a special meaning in IPA - it is " -"converted into the base DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:234 -msgid "" -"Specifies if the host and user principal should be canonicalized when " -"connecting to IPA LDAP and also for AS requests. This feature is available " -"with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:247 -msgid "ipa_hbac_refresh (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:250 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server. " -"This will reduce the latency and load on the IPA server if there are many " -"access-control requests made in a short period." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:257 -msgid "Default: 5 (seconds)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:262 -msgid "ipa_hbac_treat_deny_as (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:265 -msgid "" -"This option specifies how to treat the deprecated DENY-type HBAC rules. As " -"of FreeIPA v2.1, DENY rules are no longer supported on the server. All users " -"of FreeIPA will need to migrate their rules to use only the ALLOW rules. The " -"client will support two modes of operation during this transition period:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:274 -msgid "" -"<emphasis>DENY_ALL</emphasis>: If any HBAC DENY rules are detected, all " -"users will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:279 -msgid "" -"<emphasis>IGNORE</emphasis>: SSSD will ignore any DENY rules. Be very " -"careful with this option, as it may result in opening unintended access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:284 -msgid "Default: DENY_ALL" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:289 -msgid "ipa_hbac_support_srchost (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:292 -msgid "" -"If this is set to false, then srchost as given to SSSD by PAM will be " -"ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:296 -msgid "" -"Note that if set to <emphasis>False</emphasis>, this option casuses filters " -"given in <emphasis>ipa_host_search_base</emphasis> to be ignored;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:307 -msgid "ipa_automount_location (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:310 -msgid "The automounter location this IPA client will be using" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:313 -msgid "Default: The location named \"default\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:319 -msgid "ipa_netgroup_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:322 -msgid "The LDAP attribute that lists netgroup's memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:331 -msgid "ipa_netgroup_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:334 -msgid "" -"The LDAP attribute that lists system users and groups that are direct " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:339 sssd-ipa.5.xml:434 -msgid "Default: memberUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:344 -msgid "ipa_netgroup_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:347 -msgid "" -"The LDAP attribute that lists hosts and host groups that are direct members " -"of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:351 sssd-ipa.5.xml:446 -msgid "Default: memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:356 -msgid "ipa_netgroup_member_ext_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:359 -msgid "" -"The LDAP attribute that lists FQDNs of hosts and host groups that are " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:363 -msgid "Default: externalHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:368 -msgid "ipa_netgroup_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:371 -msgid "The LDAP attribute that contains NIS domain name of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:375 -msgid "Default: nisDomainName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:381 -msgid "ipa_host_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:384 sssd-ipa.5.xml:407 -msgid "The object class of a host entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:387 sssd-ipa.5.xml:410 -msgid "Default: ipaHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:392 -msgid "ipa_host_fqdn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:395 -msgid "The LDAP attribute that contains FQDN of the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:398 -msgid "Default: fqdn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:404 -msgid "ipa_selinux_usermap_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:415 -msgid "ipa_selinux_usermap_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:418 -msgid "The LDAP attribute that contains the name of SELinux usermap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:427 -msgid "ipa_selinux_usermap_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:430 -msgid "" -"The LDAP attribute that contains all users / groups this rule match against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:439 -msgid "ipa_selinux_usermap_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:442 -msgid "" -"The LDAP attribute that contains all hosts / hostgroups this rule match " -"against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:451 -msgid "ipa_selinux_usermap_see_also (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:454 -msgid "" -"The LDAP attribute that contains DN of HBAC rule which can be used for " -"matching instead of memberUser and memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:459 -msgid "Default: seeAlso" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:464 -msgid "ipa_selinux_usermap_selinux_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:467 -msgid "The LDAP attribute that contains SELinux user string itself." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:471 -msgid "Default: ipaSELinuxUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:476 -msgid "ipa_selinux_usermap_enabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:479 -msgid "" -"The LDAP attribute that contains whether or not is user map enabled for " -"usage." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:483 -msgid "Default: ipaEnabledFlag" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:488 -msgid "ipa_selinux_usermap_user_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:491 -msgid "The LDAP attribute that contains user category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:495 -msgid "Default: userCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:500 -msgid "ipa_selinux_usermap_host_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:503 -msgid "The LDAP attribute that contains host category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:507 -msgid "Default: hostCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:512 -msgid "ipa_selinux_usermap_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:515 -msgid "The LDAP attribute that contains unique ID of the user map." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:519 -msgid "Default: ipaUniqueID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:524 -msgid "ipa_host_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:527 -msgid "The LDAP attribute that contains the host's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:531 -msgid "Default: ipaSshPubKey" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:546 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the ipa provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ipa.5.xml:553 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" id_provider = ipa\n" -" ipa_server = ipaserver.example.com\n" -" ipa_hostname = myhost.example.com\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:564 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.8.xml:10 sssd.8.xml:15 -msgid "sssd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.8.xml:16 -msgid "System Security Services Daemon" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sssd.8.xml:21 -msgid "" -"<command>sssd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:31 -msgid "" -"<command>SSSD</command> provides a set of daemons to manage access to remote " -"directories and authentication mechanisms. It provides an NSS and PAM " -"interface toward the system and a pluggable backend system to connect to " -"multiple different account sources as well as D-Bus interface. It is also " -"the basis to provide client auditing and policy services for projects like " -"FreeIPA. It provides a more robust database to store local users as well as " -"extended user data." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:46 -msgid "" -"<option>-d</option>,<option>--debug-level</option> <replaceable>LEVEL</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:53 -msgid "<option>--debug-timestamps=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:57 -msgid "<emphasis>1</emphasis>: Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:60 -msgid "<emphasis>0</emphasis>: Disable timestamp in the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:69 -msgid "<option>--debug-microseconds=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:73 -msgid "" -"<emphasis>1</emphasis>: Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:76 -msgid "<emphasis>0</emphasis>: Disable microseconds in timestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:79 -msgid "Default: 0" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:85 -msgid "<option>-f</option>,<option>--debug-to-files</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:89 -msgid "" -"Send the debug output to files instead of stderr. By default, the log files " -"are stored in <filename>/var/log/sssd</filename> and there are separate log " -"files for every SSSD service and domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:97 -msgid "<option>-D</option>,<option>--daemon</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:101 -msgid "Become a daemon after starting up." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:107 -msgid "<option>-i</option>,<option>--interactive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:111 -msgid "Run in the foreground, don't become a daemon." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:117 sss_debuglevel.8.xml:42 -msgid "<option>-c</option>,<option>--config</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:121 sss_debuglevel.8.xml:46 -msgid "" -"Specify a non-default config file. The default is <filename>/etc/sssd/sssd." -"conf</filename>. For reference on the config file syntax and options, " -"consult the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:135 -msgid "<option>--version</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:139 -msgid "Print version number and exit." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.8.xml:147 -msgid "Signals" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:150 -msgid "SIGTERM/SIGINT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:153 -msgid "" -"Informs the SSSD to gracefully terminate all of its child processes and then " -"shut down the monitor." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:159 -msgid "SIGHUP" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:162 -msgid "" -"Tells the SSSD to stop writing to its current debug file descriptors and to " -"close and reopen them. This is meant to facilitate log rolling with programs " -"like logrotate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:170 -msgid "SIGUSR1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:173 -msgid "" -"Tells the SSSD to simulate offline operation for one minute. This is mostly " -"useful for testing purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:179 -msgid "SIGUSR2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:182 -msgid "" -"Tells the SSSD to go online immediately. This is mostly useful for testing " -"purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:193 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_obfuscate.8.xml:10 sss_obfuscate.8.xml:15 -msgid "sss_obfuscate" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_obfuscate.8.xml:16 -msgid "obfuscate a clear text password" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_obfuscate.8.xml:21 -msgid "" -"<command>sss_obfuscate</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>[PASSWORD]</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:32 -msgid "" -"<command>sss_obfuscate</command> converts a given password into human-" -"unreadable format and places it into appropriate domain section of the SSSD " -"config file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:37 -msgid "" -"The cleartext password is read from standard input or entered " -"interactively. The obfuscated password is put into " -"<quote>ldap_default_authtok</quote> parameter of a given SSSD domain and the " -"<quote>ldap_default_authtok_type</quote> parameter is set to " -"<quote>obfuscated_password</quote>. Refer to <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more details on these parameters." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:49 -msgid "" -"Please note that obfuscating the password provides <emphasis>no real " -"security benefit</emphasis> as it is still possible for an attacker to " -"reverse-engineer the password back. Using better authentication mechanisms " -"such as client side certificates or GSSAPI is <emphasis>strongly</emphasis> " -"advised." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:63 -msgid "<option>-s</option>,<option>--stdin</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:67 -msgid "The password to obfuscate will be read from standard input." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:74 sss_ssh_authorizedkeys.1.xml:82 -#: sss_ssh_knownhostsproxy.1.xml:81 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>DOMAIN</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:79 -msgid "" -"The SSSD domain to use the password in. The default name is <quote>default</" -"quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:86 -msgid "" -"<option>-f</option>,<option>--file</option> <replaceable>FILE</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:91 -msgid "Read the config file specified by the positional parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:95 -msgid "Default: <filename>/etc/sssd/sssd.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:105 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_useradd.8.xml:10 sss_useradd.8.xml:15 -msgid "sss_useradd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_useradd.8.xml:16 -msgid "create a new user" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_useradd.8.xml:21 -msgid "" -"<command>sss_useradd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:32 -msgid "" -"<command>sss_useradd</command> creates a new user account using the values " -"specified on the command line plus the default values from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:43 -msgid "" -"<option>-u</option>,<option>--uid</option> <replaceable>UID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:48 -msgid "" -"Set the UID of the user to the value of <replaceable>UID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:55 sss_usermod.8.xml:43 -msgid "" -"<option>-c</option>,<option>--gecos</option> <replaceable>COMMENT</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:60 sss_usermod.8.xml:48 -msgid "" -"Any text string describing the user. Often used as the field for the user's " -"full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:67 sss_usermod.8.xml:55 -msgid "" -"<option>-h</option>,<option>--home</option> <replaceable>HOME_DIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:72 -msgid "" -"The home directory of the user account. The default is to append the " -"<replaceable>LOGIN</replaceable> name to <filename>/home</filename> and use " -"that as the home directory. The base that is prepended before " -"<replaceable>LOGIN</replaceable> is tunable with <quote>user_defaults/" -"baseDirectory</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:82 sss_usermod.8.xml:66 -msgid "" -"<option>-s</option>,<option>--shell</option> <replaceable>SHELL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:87 -msgid "" -"The user's login shell. The default is currently <filename>/bin/bash</" -"filename>. The default can be changed with <quote>user_defaults/" -"defaultShell</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:96 -msgid "" -"<option>-G</option>,<option>--groups</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:101 -msgid "A list of existing groups this user is also a member of." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:107 -msgid "<option>-m</option>,<option>--create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:111 -msgid "" -"Create the user's home directory if it does not exist. The files and " -"directories contained in the skeleton directory (which can be defined with " -"the -k option or in the config file) will be copied to the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:121 -msgid "<option>-M</option>,<option>--no-create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:125 -msgid "" -"Do not create the user's home directory. Overrides configuration settings." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:132 -msgid "" -"<option>-k</option>,<option>--skel</option> <replaceable>SKELDIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:137 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<command>sss_useradd</command>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:143 -msgid "" -"This option is only valid if the <option>-m</option> (or <option>--create-" -"home</option>) option is specified, or creation of home directories is set " -"to TRUE in the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:152 sss_usermod.8.xml:124 -msgid "" -"<option>-Z</option>,<option>--selinux-user</option> " -"<replaceable>SELINUX_USER</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:157 -msgid "" -"The SELinux user for the user's login. If not specified, the system default " -"will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:169 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-krb5.5.xml:10 sssd-krb5.5.xml:16 -msgid "sssd-krb5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:23 -msgid "" -"This manual page describes the configuration of the Kerberos 5 " -"authentication backend for <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry>. For a detailed " -"syntax reference, please refer to the <quote>FILE FORMAT</quote> section of " -"the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:36 -msgid "" -"The Kerberos 5 authentication backend contains auth and chpass providers. It " -"must be paired with identity provider in order to function properly (for " -"example, id_provider = ldap). Some information required by the Kerberos 5 " -"authentication backend must be provided by the identity provider, such as " -"the user's Kerberos Principal Name (UPN). The configuration of the identity " -"provider should have an entry to specify the UPN. Please refer to the man " -"page for the applicable identity provider for details on how to configure " -"this." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:47 -msgid "" -"This backend also provides access control based on the .k5login file in the " -"home directory of the user. See <citerefentry> <refentrytitle>.k5login</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry> for more details. " -"Please note that an empty .k5login file will deny all access to this user. " -"To activate this feature use 'access_provider = krb5' in your sssd " -"configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:55 -msgid "" -"In the case where the UPN is not available in the identity backend " -"<command>sssd</command> will construct a UPN using the format " -"<replaceable>username</replaceable>@<replaceable>krb5_realm</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:106 -msgid "" -"The name of the Kerberos realm. This option is required and must be " -"specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:113 -msgid "krb5_kpasswd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:116 -msgid "" -"If the change password service is not running on the KDC alternative servers " -"can be defined here. An optional port number (preceded by a colon) may be " -"appended to the addresses or hostnames." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:122 -msgid "" -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. Please note that even if there are no more " -"kpasswd servers to try the back end is not switch to offline if " -"authentication against the KDC is still possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:129 -msgid "Default: Use the KDC" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:135 -msgid "krb5_ccachedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:138 -msgid "" -"Directory to store credential caches. All the substitution sequences of " -"krb5_ccname_template can be used here, too, except %d and %P. If the " -"directory does not exist it will be created. If %u, %U, %p or %h are used a " -"private directory belonging to the user is created. Otherwise a public " -"directory with restricted deletion flag (aka sticky bit, see <citerefentry> " -"<refentrytitle>chmod</refentrytitle> <manvolnum>1</manvolnum> </" -"citerefentry> for details) is created." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:151 -msgid "Default: /tmp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:157 -msgid "krb5_ccname_template (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:171 -msgid "login UID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:174 -msgid "%p" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:175 -msgid "principal name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:179 -msgid "%r" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:180 -msgid "realm name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:183 -msgid "%h" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:184 -msgid "home directory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:189 -msgid "value of krb5ccache_dir" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:194 -msgid "%P" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:195 -msgid "the process ID of the sssd client" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:160 -msgid "" -"Location of the user's credential cache. Currently only file based " -"credential caches are supported. In the template the following sequences are " -"substituted: <placeholder type=\"variablelist\" id=\"0\"/> If the template " -"ends with 'XXXXXX' mkstemp(3) is used to create a unique filename in a safe " -"way." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:209 -msgid "Default: FILE:%d/krb5cc_%U_XXXXXX" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:215 -msgid "krb5_auth_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:218 -msgid "" -"Timeout in seconds after an online authentication or change password request " -"is aborted. If possible the authentication request is continued offline." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:241 -msgid "krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:244 -msgid "" -"The location of the keytab to use when validating credentials obtained from " -"KDCs." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:248 -msgid "Default: /etc/krb5.keytab" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:254 -msgid "krb5_store_password_if_offline (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:257 -msgid "" -"Store the password of the user if the provider is offline and use it to " -"request a TGT when the provider gets online again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:262 -msgid "" -"Please note that this feature currently only available on a Linux platform. " -"Passwords stored in this way are kept in plaintext in the kernel keyring and " -"are potentially accessible by the root user (with difficulty)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:275 -msgid "krb5_renewable_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:278 -msgid "" -"Request a renewable ticket with a total lifetime given by an integer " -"immediately followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:283 sssd-krb5.5.xml:319 -msgid "<emphasis>s</emphasis> seconds" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:286 sssd-krb5.5.xml:322 -msgid "<emphasis>m</emphasis> minutes" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:289 sssd-krb5.5.xml:325 -msgid "<emphasis>h</emphasis> hours" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:292 sssd-krb5.5.xml:328 -msgid "<emphasis>d</emphasis> days." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:295 sssd-krb5.5.xml:331 -msgid "If there is no delimiter <emphasis>s</emphasis> is assumed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:299 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"renewable lifetime to one and a half hours please use '90m' instead of " -"'1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:305 -msgid "Default: not set, i.e. the TGT is not renewable" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:311 -msgid "krb5_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:314 -msgid "" -"Request ticket with a with a lifetime given by an integer immediately " -"followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:335 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"lifetime to one and a half hours please use '90m' instead of '1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:340 -msgid "" -"Default: not set, i.e. the default ticket lifetime configured on the KDC." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:347 -msgid "krb5_renew_interval (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:350 -msgid "" -"The time in seconds between two checks if the TGT should be renewed. TGTs " -"are renewed if about half of their lifetime is exceeded." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:355 -msgid "If this option is not set or 0 the automatic renewal is disabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:365 -msgid "krb5_use_fast (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:368 -msgid "" -"Enables flexible authentication secure tunneling (FAST) for Kerberos pre-" -"authentication. The following options are supported:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:373 -msgid "" -"<emphasis>never</emphasis> use FAST, this is equivalent to not set this " -"option at all." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:377 -msgid "" -"<emphasis>try</emphasis> to use FAST, if the server does not support fast " -"continue without." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:381 -msgid "" -"<emphasis>demand</emphasis> to use FAST, fail if the server does not require " -"fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:385 -msgid "Default: not set, i.e. FAST is not used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:388 -msgid "Please note that a keytab is required to use fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:391 -msgid "" -"Please note also that sssd supports fast only with MIT Kerberos version 1.8 " -"and above. If sssd used with an older version using this option is a " -"configuration error." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:400 -msgid "krb5_fast_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:403 -msgid "Specifies the server principal to use for FAST." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:412 -msgid "" -"Specifies if the host and user principal should be canonicalized. This " -"feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:65 -msgid "" -"If the auth-module krb5 is used in a SSSD domain, the following options must " -"be used. See the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page, section <quote>DOMAIN " -"SECTIONS</quote> for details on the configuration of a SSSD domain. " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:434 -msgid "" -"The following example assumes that SSSD is correctly configured and FOO is " -"one of the domains in the <replaceable>[sssd]</replaceable> section. This " -"example shows only configuration of Kerberos authentication, it does not " -"include any identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-krb5.5.xml:442 -#, no-wrap -msgid "" -" [domain/FOO]\n" -" auth_provider = krb5\n" -" krb5_server = 192.168.1.1\n" -" krb5_realm = EXAMPLE.COM\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:453 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupadd.8.xml:10 sss_groupadd.8.xml:15 -msgid "sss_groupadd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupadd.8.xml:16 -msgid "create a new group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupadd.8.xml:21 -msgid "" -"<command>sss_groupadd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:32 -msgid "" -"<command>sss_groupadd</command> creates a new group. These groups are " -"compatible with POSIX groups, with the additional feature that they can " -"contain other groups as members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupadd.8.xml:43 -msgid "" -"<option>-g</option>,<option>--gid</option> <replaceable>GID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupadd.8.xml:48 -msgid "" -"Set the GID of the group to the value of <replaceable>GID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_userdel.8.xml:10 sss_userdel.8.xml:15 -msgid "sss_userdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_userdel.8.xml:16 -msgid "delete a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_userdel.8.xml:21 -msgid "" -"<command>sss_userdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:32 -msgid "" -"<command>sss_userdel</command> deletes a user identified by login name " -"<replaceable>LOGIN</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:44 -msgid "<option>-r</option>,<option>--remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:48 -msgid "" -"Files in the user's home directory will be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:56 -msgid "<option>-R</option>,<option>--no-remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:60 -msgid "" -"Files in the user's home directory will NOT be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:68 -msgid "<option>-f</option>,<option>--force</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:72 -msgid "" -"This option forces <command>sss_userdel</command> to remove the user's home " -"directory and mail spool, even if they are not owned by the specified user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:80 -msgid "<option>-k</option>,<option>--kick</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:84 -msgid "Before actually deleting the user, terminate all his processes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:95 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupdel.8.xml:10 sss_groupdel.8.xml:15 -msgid "sss_groupdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupdel.8.xml:16 -msgid "delete a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupdel.8.xml:21 -msgid "" -"<command>sss_groupdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:32 -msgid "" -"<command>sss_groupdel</command> deletes a group identified by its name " -"<replaceable>GROUP</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupshow.8.xml:10 sss_groupshow.8.xml:15 -msgid "sss_groupshow" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupshow.8.xml:16 -msgid "print properties of a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupshow.8.xml:21 -msgid "" -"<command>sss_groupshow</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:32 -msgid "" -"<command>sss_groupshow</command> displays information about a group " -"identified by its name <replaceable>GROUP</replaceable>. The information " -"includes the group ID number, members of the group and the parent group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupshow.8.xml:43 -msgid "<option>-R</option>,<option>--recursive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupshow.8.xml:47 -msgid "" -"Also print indirect group members in a tree-like hierarchy. Note that this " -"also affects printing parent groups - without <option>R</option>, only the " -"direct parent will be printed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_usermod.8.xml:10 sss_usermod.8.xml:15 -msgid "sss_usermod" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_usermod.8.xml:16 -msgid "modify a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_usermod.8.xml:21 -msgid "" -"<command>sss_usermod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:32 -msgid "" -"<command>sss_usermod</command> modifies the account specified by " -"<replaceable>LOGIN</replaceable> to reflect the changes that are specified " -"on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:60 -msgid "The home directory of the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:71 -msgid "The user's login shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:82 -msgid "" -"Append this user to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:96 -msgid "" -"Remove this user from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:103 -msgid "<option>-l</option>,<option>--lock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:107 -msgid "Lock the user account. The user won't be able to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:114 -msgid "<option>-u</option>,<option>--unlock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:118 -msgid "Unlock the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:129 -msgid "The SELinux user for the user's login." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:140 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_cache.8.xml:10 sss_cache.8.xml:15 -msgid "sss_cache" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_cache.8.xml:16 -msgid "perform cache cleanup" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_cache.8.xml:21 -msgid "" -"<command>sss_cache</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_cache.8.xml:31 -msgid "" -"<command>sss_cache</command> invalidates records in SSSD cache. Invalidated " -"records are forced to be reloaded from server as soon as related SSSD " -"backend is online." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:42 -msgid "" -"<option>-u</option>,<option>--user</option> <replaceable>login</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:47 -msgid "Invalidate specific user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:53 -msgid "<option>-U</option>,<option>--users</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:57 -msgid "" -"Invalidate all user records. This option overrides invalidation of specific " -"user if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:64 -msgid "" -"<option>-g</option>,<option>--group</option> <replaceable>group</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:69 -msgid "Invalidate specific group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:75 -msgid "<option>-G</option>,<option>--groups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:79 -msgid "" -"Invalidate all group records. This option overrides invalidation of specific " -"group if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:86 -msgid "" -"<option>-n</option>,<option>--netgroup</option> <replaceable>netgroup</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:91 -msgid "Invalidate specific netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:97 -msgid "<option>-N</option>,<option>--netgroups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:101 -msgid "" -"Invalidate all netgroup records. This option overrides invalidation of " -"specific netgroup if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:108 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>domain</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:113 -msgid "Restrict invalidation process only to a particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_debuglevel.8.xml:10 sss_debuglevel.8.xml:15 -msgid "sss_debuglevel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_debuglevel.8.xml:16 -msgid "change debug level while SSSD is running" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_debuglevel.8.xml:21 -msgid "" -"<command>sss_debuglevel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>NEW_DEBUG_LEVEL</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_debuglevel.8.xml:32 -msgid "" -"<command>sss_debuglevel</command> changes debug level of SSSD monitor and " -"providers to <replaceable>NEW_DEBUG_LEVEL</replaceable> while SSSD is " -"running." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_debuglevel.8.xml:59 -msgid "<replaceable>NEW_DEBUG_LEVEL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_authorizedkeys.1.xml:10 sss_ssh_authorizedkeys.1.xml:15 -msgid "sss_ssh_authorizedkeys" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_ssh_authorizedkeys.1.xml:11 sss_ssh_knownhostsproxy.1.xml:11 -msgid "1" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_authorizedkeys.1.xml:16 -msgid "get OpenSSH authorized keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_authorizedkeys.1.xml:21 -msgid "" -"<command>sss_ssh_authorizedkeys</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>USER</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:32 -msgid "" -"<command>sss_ssh_authorizedkeys</command> acquires SSH public keys for user " -"<replaceable>USER</replaceable> and outputs them in OpenSSH authorized_keys " -"format (see the <quote>AUTHORIZED_KEYS FILE FORMAT</quote> section of " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> for more information)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:41 -msgid "" -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_authorizedkeys</" -"command> for public key user authentication if it is compiled with support " -"for either <quote>AuthorizedKeysCommand</quote> or <quote>PubkeyAgent</" -"quote> <citerefentry> <refentrytitle>sshd_config</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:58 -#, no-wrap -msgid "AuthorizedKeysCommand /usr/bin/sss_ssh_authorizedkeys\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:51 -msgid "" -"If <quote>AuthorizedKeysCommand</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by putting the following directive " -"in <citerefentry> <refentrytitle>sshd_config</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry>: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:69 -#, no-wrap -msgid "PubKeyAgent /usr/bin/sss_ssh_authorizedkeys %u\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:62 -msgid "" -"If <quote>PubkeyAgent</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by using the following directive " -"for <citerefentry> <refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> configuration: <placeholder type=\"programlisting" -"\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_authorizedkeys.1.xml:87 -msgid "" -"Search for user public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:98 -msgid "" -"<citerefentry> <refentrytitle>sshd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sshd_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_knownhostsproxy</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_knownhostsproxy.1.xml:10 sss_ssh_knownhostsproxy.1.xml:15 -msgid "sss_ssh_knownhostsproxy" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_knownhostsproxy.1.xml:16 -msgid "get OpenSSH host keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_knownhostsproxy.1.xml:21 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>HOST</replaceable></arg> <arg " -"choice='opt'><replaceable>PROXY_COMMAND</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:33 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> acquires SSH host public keys for " -"host <replaceable>HOST</replaceable>, stores them in a custom OpenSSH " -"known_hosts file (see the <quote>SSH_KNOWN_HOSTS FILE FORMAT</quote> section " -"of <citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> for more information) <filename>/var/lib/sss/" -"pubconf/known_hosts</filename> and estabilishes connection to the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:43 -msgid "" -"If <replaceable>PROXY_COMMAND</replaceable> is specified, it is used to " -"create the connection to the host instead of opening a socket." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_knownhostsproxy.1.xml:55 -#, no-wrap -msgid "" -"ProxyCommand /usr/bin/sss_ssh_knownhostsproxy -p %p %h\n" -"GlobalKnownHostsFile2 /var/lib/sss/pubconf/known_hosts\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:48 -msgid "" -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_knownhostsproxy</" -"command> for host key authentication by using the following directives for " -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> configuration: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_ssh_knownhostsproxy.1.xml:69 -msgid "" -"<option>-p</option>,<option>--port</option> <replaceable>PORT</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:74 -msgid "" -"Use port <replaceable>PORT</replaceable> to connect to the host. By " -"default, port 22 is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:86 -msgid "" -"Search for host public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:97 -msgid "" -"<citerefentry> <refentrytitle>ssh</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>ssh_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_authorizedkeys</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/service_discovery.xml:2 -msgid "SERVICE DISCOVERY" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/service_discovery.xml:4 -msgid "" -"The service discovery feature allows back ends to automatically find the " -"appropriate servers to connect to using a special DNS query." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:9 -msgid "Configuration" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:11 -msgid "" -"If no servers are specified, the back end automatically uses service " -"discovery to try to find a server. Optionally, the user may choose to use " -"both fixed server addresses and service discovery by inserting a special " -"keyword, <quote>_srv_</quote>, in the list of servers. The order of " -"preference is maintained. This feature is useful if, for example, the user " -"prefers to use service discovery whenever possible, and fall back to a " -"specific server when no servers can be discovered using DNS." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:23 -msgid "The domain name" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:25 -msgid "" -"Please refer to the <quote>dns_discovery_domain</quote> parameter in the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for more details." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:35 -msgid "The protocol" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:37 -msgid "" -"The queries usually specify _tcp as the protocol. Exceptions are documented " -"in respective option description." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:42 -msgid "See Also" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:44 -msgid "" -"For more information on the service discovery mechanism, refer to RFC 2782." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/upstream.xml:1 -msgid "<placeholder type=\"refentryinfo\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/failover.xml:2 -msgid "FAILOVER" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/failover.xml:4 -msgid "" -"The failover feature allows back ends to automatically switch to a different " -"server if the primary server fails." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:8 -msgid "Failover Syntax" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:10 -msgid "" -"The list of servers is given as a comma-separated list; any number of spaces " -"is allowed around the comma. The servers are listed in order of preference. " -"The list can contain any number of servers." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:17 -msgid "The Failover Mechanism" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:19 -msgid "" -"The failover mechanism distinguishes between a machine and a service. The " -"back end first tries to resolve the hostname of a given machine; if this " -"resolution attempt fails, the machine is considered offline. No further " -"attempts are made to connect to this machine for any other service. If the " -"resolution attempt succeeds, the back end tries to connect to a service on " -"this machine. If the service connection attempt fails, then only this " -"particular service is considered offline and the back end automatically " -"switches over to the next service. The machine is still considered online " -"and might still be tried for another service." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:32 -msgid "" -"Further connection attempts are made to machines or services marked as " -"offline after a specified period of time; this is currently hard coded to 30 " -"seconds." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:37 -msgid "" -"If there are no more machines to try, the back end as a whole switches to " -"offline mode, and then attempts to reconnect every 30 seconds." -msgstr "" - -#. type: Content of: <varlistentry><term> -#: include/param_help.xml:3 -msgid "<option>-h</option>,<option>--help</option>" -msgstr "" - -#. type: Content of: <varlistentry><listitem><para> -#: include/param_help.xml:7 -msgid "Display help message and exit." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:3 -msgid "" -"Bit mask that indicates which debug levels will be visible. 0x0010 is the " -"default value as well as the lowest allowed value, 0xFFF0 is the most " -"verbose mode. This setting overrides the settings from config file." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:8 -msgid "Currently supported debug levels:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:11 -msgid "" -"<emphasis>0x0010</emphasis>: Fatal failures. Anything that would prevent " -"SSSD from starting up or causes it to cease running." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:15 -msgid "" -"<emphasis>0x0020</emphasis>: Critical failures. An error that doesn't kill " -"the SSSD, but one that indicates that at least one major feature is not " -"going to work properly." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:20 -msgid "" -"<emphasis>0x0040</emphasis>: Serious failures. An error announcing that a " -"particular request or operation has failed." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:24 -msgid "" -"<emphasis>0x0080</emphasis>: Minor failures. These are the errors that would " -"percolate down to cause the operation failure of 2." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:28 -msgid "<emphasis>0x0100</emphasis>: Configuration settings." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:31 -msgid "<emphasis>0x0200</emphasis>: Function data." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:34 -msgid "<emphasis>0x0400</emphasis>: Trace messages for operation functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:37 -msgid "" -"<emphasis>0x1000</emphasis>: Trace messages for internal control functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:40 -msgid "" -"<emphasis>0x2000</emphasis>: Contents of function-internal variables that " -"may be interesting." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:43 -msgid "<emphasis>0x4000</emphasis>: Extremely low-level tracing information." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:46 -msgid "" -"To log required debug levels, simply add their numbers together as shown in " -"following examples:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:49 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, critical failures, " -"serious failures and function data use 0x0270." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:53 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, configuration settings, " -"function data, trace messages for internal control functions use 0x1310." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:57 -msgid "" -"<emphasis>Note</emphasis>: This is new format of debug levels introduced in " -"1.7.0. Older format (numbers from 0-10) is compatible but deprecated." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/experimental.xml:1 -msgid "" -"<emphasis> This is an experimental feature, please use http://fedorahosted." -"org/sssd to report any issues. </emphasis>" -msgstr "" diff --git a/src/man/po/ca.po b/src/man/po/ca.po deleted file mode 100644 index 0bea56339..000000000 --- a/src/man/po/ca.po +++ /dev/null @@ -1,6747 +0,0 @@ -# SOME DESCRIPTIVE TITLE -# Copyright (C) YEAR Red Hat -# This file is distributed under the same license as the sssd-docs package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@redhat.com\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-12-23 15:35+0000\n" -"Last-Translator: FULL NAME <EMAIL@ADDRESS>\n" -"Language-Team: Catalan <fedora@llistes.softcatala.org>\n" -"Language: ca\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=2; plural=(n != 1)\n" - -#. type: Content of: <reference><title> -#: sss_groupmod.8.xml:5 sssd.conf.5.xml:5 sssd-ldap.5.xml:5 pam_sss.8.xml:5 -#: sssd_krb5_locator_plugin.8.xml:5 sssd-simple.5.xml:5 sssd-ipa.5.xml:5 -#: sssd.8.xml:5 sss_obfuscate.8.xml:5 sss_useradd.8.xml:5 sssd-krb5.5.xml:5 -#: sss_groupadd.8.xml:5 sss_userdel.8.xml:5 sss_groupdel.8.xml:5 -#: sss_groupshow.8.xml:5 sss_usermod.8.xml:5 sss_cache.8.xml:5 -#: sss_debuglevel.8.xml:5 sss_ssh_authorizedkeys.1.xml:5 -#: sss_ssh_knownhostsproxy.1.xml:5 -msgid "SSSD Manual pages" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupmod.8.xml:10 sss_groupmod.8.xml:15 -msgid "sss_groupmod" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_groupmod.8.xml:11 pam_sss.8.xml:14 sssd_krb5_locator_plugin.8.xml:11 -#: sssd.8.xml:11 sss_obfuscate.8.xml:11 sss_useradd.8.xml:11 -#: sss_groupadd.8.xml:11 sss_userdel.8.xml:11 sss_groupdel.8.xml:11 -#: sss_groupshow.8.xml:11 sss_usermod.8.xml:11 sss_cache.8.xml:11 -#: sss_debuglevel.8.xml:11 -msgid "8" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupmod.8.xml:16 -msgid "modify a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupmod.8.xml:21 -msgid "" -"<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:30 sssd-ldap.5.xml:21 pam_sss.8.xml:44 -#: sssd_krb5_locator_plugin.8.xml:20 sssd-simple.5.xml:22 sssd-ipa.5.xml:21 -#: sssd.8.xml:29 sss_obfuscate.8.xml:30 sss_useradd.8.xml:30 -#: sssd-krb5.5.xml:21 sss_groupadd.8.xml:30 sss_userdel.8.xml:30 -#: sss_groupdel.8.xml:30 sss_groupshow.8.xml:30 sss_usermod.8.xml:30 -#: sss_cache.8.xml:29 sss_debuglevel.8.xml:30 sss_ssh_authorizedkeys.1.xml:30 -#: sss_ssh_knownhostsproxy.1.xml:31 -msgid "DESCRIPTION" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:32 -msgid "" -"<command>sss_groupmod</command> modifies the group to reflect the changes " -"that are specified on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:39 pam_sss.8.xml:51 sssd.8.xml:42 sss_obfuscate.8.xml:58 -#: sss_useradd.8.xml:39 sss_groupadd.8.xml:39 sss_userdel.8.xml:39 -#: sss_groupdel.8.xml:39 sss_groupshow.8.xml:39 sss_usermod.8.xml:39 -#: sss_cache.8.xml:38 sss_debuglevel.8.xml:38 sss_ssh_authorizedkeys.1.xml:78 -#: sss_ssh_knownhostsproxy.1.xml:65 -msgid "OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:43 sss_usermod.8.xml:77 -msgid "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:48 -msgid "" -"Append this group to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:57 sss_usermod.8.xml:91 -msgid "" -"<option>-r</option>,<option>--remove-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:62 -msgid "" -"Remove this group from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:72 sssd.conf.5.xml:1331 sssd-ldap.5.xml:2096 -#: pam_sss.8.xml:139 sssd_krb5_locator_plugin.8.xml:75 sssd-simple.5.xml:143 -#: sssd-ipa.5.xml:562 sssd.8.xml:191 sss_obfuscate.8.xml:103 -#: sss_useradd.8.xml:167 sssd-krb5.5.xml:451 sss_groupadd.8.xml:58 -#: sss_userdel.8.xml:93 sss_groupdel.8.xml:46 sss_groupshow.8.xml:58 -#: sss_usermod.8.xml:138 sss_ssh_authorizedkeys.1.xml:96 -#: sss_ssh_knownhostsproxy.1.xml:95 -msgid "SEE ALSO" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:74 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.conf.5.xml:10 sssd.conf.5.xml:16 -msgid "sssd.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sssd.conf.5.xml:11 sssd-ldap.5.xml:11 sssd-simple.5.xml:11 -#: sssd-ipa.5.xml:11 sssd-krb5.5.xml:11 -msgid "5" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><refmiscinfo> -#: sssd.conf.5.xml:12 sssd-ldap.5.xml:12 sssd-simple.5.xml:12 -#: sssd-ipa.5.xml:12 sssd-krb5.5.xml:12 -msgid "File Formats and Conventions" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.conf.5.xml:17 sssd-ldap.5.xml:17 sssd_krb5_locator_plugin.8.xml:16 -#: sssd-ipa.5.xml:17 sssd-krb5.5.xml:17 -msgid "the configuration file for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:21 -msgid "FILE FORMAT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:29 -#, no-wrap -msgid "" -" <replaceable>[section]</replaceable>\n" -" <replaceable>key</replaceable> = <replaceable>value</replaceable>\n" -" <replaceable>key2</replaceable> = <replaceable>value2,value3</replaceable>\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:24 -msgid "" -"The file has an ini-style syntax and consists of sections and parameters. A " -"section begins with the name of the section in square brackets and continues " -"until the next section begins. An example of section with single and multi-" -"valued parameters: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:36 -msgid "" -"The data types used are string (no quotes needed), integer and bool (with " -"values of <quote>TRUE/FALSE</quote>)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:41 -msgid "" -"A line comment starts with a hash sign (<quote>#</quote>) or a semicolon " -"(<quote>;</quote>)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:46 -msgid "" -"All sections can have an optional <replaceable>description</replaceable> " -"parameter. Its function is only as a label for the section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:52 -msgid "" -"<filename>sssd.conf</filename> must be a regular file, owned by root and " -"only root may read from or write to the file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:58 -msgid "SPECIAL SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:61 -msgid "The [sssd] section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><title> -#: sssd.conf.5.xml:70 sssd.conf.5.xml:1177 -msgid "Section parameters" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:72 -msgid "config_file_version (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:75 -msgid "" -"Indicates what is the syntax of the config file. SSSD 0.6.0 and later use " -"version 2." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:81 -msgid "services" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:84 -msgid "" -"Comma separated list of services that are started when sssd itself starts." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:88 -msgid "" -"Supported services: nss, pam <phrase condition=\"with_sudo\">, sudo</phrase>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:94 sssd.conf.5.xml:257 -msgid "reconnection_retries (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:97 sssd.conf.5.xml:260 -msgid "" -"Number of times services should attempt to reconnect in the event of a Data " -"Provider crash or restart before they give up" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:102 sssd.conf.5.xml:265 -msgid "Default: 3" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:107 -msgid "domains" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:110 -msgid "" -"A domain is a database containing user information. SSSD can use more " -"domains at the same time, but at least one must be configured or SSSD won't " -"start. This parameter described the list of domains in the order you want " -"them to be queried." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:120 -msgid "re_expression (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:123 -msgid "" -"Regular expression that describes how to parse the string containing user " -"name and domain into these components." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:127 -msgid "" -"Default: <quote>(?P<name>[^@]+)@?(?P<domain>[^@]*$)</quote> " -"which translates to \"the name is everything up to the <quote>@</quote> " -"sign, the domain everything after that\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:132 -msgid "" -"PLEASE NOTE: the support for non-unique named subpatterns is not available " -"on all platforms (e.g. RHEL5 and SLES10). Only platforms with libpcre " -"version 7 or higher can support non-unique named subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:139 -msgid "" -"PLEASE NOTE ALSO: older version of libpcre only support the Python syntax (?" -"P<name>) to label subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:146 -msgid "full_name_format (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:149 -msgid "" -"A <citerefentry> <refentrytitle>printf</refentrytitle> <manvolnum>3</" -"manvolnum> </citerefentry>-compatible format that describes how to translate " -"a (name, domain) tuple into a fully qualified name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:157 -msgid "Default: <quote>%1$s@%2$s</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:162 -msgid "try_inotify (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:165 -msgid "" -"SSSD monitors the state of resolv.conf to identify when it needs to update " -"its internal DNS resolver. By default, we will attempt to use inotify for " -"this, and will fall back to polling resolv.conf every five seconds if " -"inotify cannot be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:173 -msgid "" -"There are some limited situations where it is preferred that we should skip " -"even trying to use inotify. In these rare cases, this option should be set " -"to 'false'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:179 -msgid "" -"Default: true on platforms where inotify is supported. False on other " -"platforms." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:183 -msgid "" -"Note: this option will have no effect on platforms where inotify is " -"unavailable. On these platforms, polling will always be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:190 -msgid "krb5_rcache_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:193 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:197 -msgid "" -"This option accepts a special value __LIBKRB5_DEFAULTS__ that will instruct " -"SSSD to let libkrb5 decide the appropriate location for the replay cache." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:203 -msgid "" -"Default: Distribution-specific and specified at build-time. " -"(__LIBKRB5_DEFAULTS__ if not configured)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:63 -msgid "" -"Individual pieces of SSSD functionality are provided by special SSSD " -"services that are started and stopped together with SSSD. The services are " -"managed by a special service frequently called <quote>monitor</quote>. The " -"<quote>[sssd]</quote> section is used to configure the monitor as well as " -"some other important options like the identity domains. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:216 -msgid "SERVICES SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:218 -msgid "" -"Settings that can be used to configure different services are described in " -"this section. They should reside in the [<replaceable>$NAME</replaceable>] " -"section, for example, for NSS service, the section would be <quote>[nss]</" -"quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:225 -msgid "General service configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:227 -msgid "These options can be used to configure any service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:231 -msgid "debug_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:235 -msgid "debug_timestamps (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:238 -msgid "Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:241 sssd.conf.5.xml:376 sssd-ldap.5.xml:1328 -#: sssd-ldap.5.xml:1446 sssd-ipa.5.xml:206 sssd-ipa.5.xml:241 -msgid "Default: true" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:246 -msgid "debug_microseconds (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:249 -msgid "Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:252 sssd.conf.5.xml:641 sssd-ldap.5.xml:602 -#: sssd-ldap.5.xml:1260 sssd-ldap.5.xml:1397 sssd-ldap.5.xml:1795 -#: sssd-ipa.5.xml:123 sssd-ipa.5.xml:301 sssd-krb5.5.xml:235 -#: sssd-krb5.5.xml:269 sssd-krb5.5.xml:418 -msgid "Default: false" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:270 -msgid "command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:273 -msgid "" -"By default, the executable representing this service is called <command>sssd_" -"${service_name}</command>. This directive allows to change the executable " -"name for the service. In the vast majority of configurations, the default " -"values should suffice." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:281 -msgid "Default: <command>sssd_${service_name}</command>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:289 -msgid "NSS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:291 -msgid "" -"These options can be used to configure the Name Service Switch (NSS) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:296 -msgid "enum_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:299 -msgid "" -"How many seconds should nss_sss cache enumerations (requests for info about " -"all users)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:303 -msgid "Default: 120" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:308 -msgid "entry_cache_nowait_percentage (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:311 -msgid "" -"The entry cache can be set to automatically update entries in the background " -"if they are requested beyond a percentage of the entry_cache_timeout value " -"for the domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:317 -msgid "" -"For example, if the domain's entry_cache_timeout is set to 30s and " -"entry_cache_nowait_percentage is set to 50 (percent), entries that come in " -"after 15 seconds past the last cache update will be returned immediately, " -"but the SSSD will go and update the cache on its own, so that future " -"requests will not need to block waiting for a cache update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:327 -msgid "" -"Valid values for this option are 0-99 and represent a percentage of the " -"entry_cache_timeout for each domain. For performance reasons, this " -"percentage will never reduce the nowait timeout to less than 10 seconds. (0 " -"disables this feature)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:335 -msgid "Default: 50" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:340 -msgid "entry_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:343 -msgid "" -"Specifies for how many seconds nss_sss should cache negative cache hits " -"(that is, queries for invalid database entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:349 sssd.conf.5.xml:669 sssd-krb5.5.xml:223 -msgid "Default: 15" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:354 -msgid "filter_users, filter_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:357 -msgid "" -"Exclude certain users from being fetched from the sss NSS database. This is " -"particularly useful for system accounts. This option can also be set per-" -"domain or include fully-qualified names to filter only users from the " -"particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:364 -msgid "Default: root" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:369 -msgid "filter_users_in_groups (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:372 -msgid "" -"If you want filtered user still be group members set this option to false." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:381 -msgid "override_homedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:390 sssd-krb5.5.xml:166 -msgid "%u" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:391 sssd-krb5.5.xml:167 -msgid "login name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:394 sssd-krb5.5.xml:170 -msgid "%U" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:395 -msgid "UID number" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:398 sssd-krb5.5.xml:188 -msgid "%d" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:399 -msgid "domain name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:402 -msgid "%f" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:403 -msgid "fully qualified user name (user@domain)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:406 sssd-krb5.5.xml:200 -msgid "%%" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:407 sssd-krb5.5.xml:201 -msgid "a literal '%'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:384 -msgid "" -"Override the user's home directory. You can either provide an absolute value " -"or a template. In the template, the following sequences are substituted: " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:413 -msgid "This option can also be set per-domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:418 -msgid "allowed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:421 -msgid "" -"Restrict user shell to one of the listed values. The order of evaluation is:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:424 -msgid "1. If the shell is present in <quote>/etc/shells</quote>, it is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:428 -msgid "" -"2. If the shell is in the allowed_shells list but not in <quote>/etc/shells</" -"quote>, use the value of the shell_fallback parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:433 -msgid "" -"3. If the shell is not in the allowed_shells list and not in <quote>/etc/" -"shells</quote>, a nologin shell is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:438 -msgid "An empty string for shell is passed as-is to libc." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:441 -msgid "" -"The <quote>/etc/shells</quote> is only read on SSSD start up, which means " -"that a restart of the SSSD is required in case a new shell is installed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:445 -msgid "Default: Not set. The user shell is automatically used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:450 -msgid "vetoed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:453 -msgid "Replace any instance of these shells with the shell_fallback" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:458 -msgid "shell_fallback (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:461 -msgid "" -"The default shell to use if an allowed shell is not installed on the machine." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:465 -msgid "Default: /bin/sh" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:472 -msgid "PAM configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:474 -msgid "" -"These options can be used to configure the Pluggable Authentication Module " -"(PAM) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:479 -msgid "offline_credentials_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:482 -msgid "" -"If the authentication provider is offline, how long should we allow cached " -"logins (in days since the last successful online login)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:487 sssd.conf.5.xml:500 -msgid "Default: 0 (No limit)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:493 -msgid "offline_failed_login_attempts (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:496 -msgid "" -"If the authentication provider is offline, how many failed login attempts " -"are allowed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:506 -msgid "offline_failed_login_delay (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:509 -msgid "" -"The time in minutes which has to pass after offline_failed_login_attempts " -"has been reached before a new login attempt is possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:514 -msgid "" -"If set to 0 the user cannot authenticate offline if " -"offline_failed_login_attempts has been reached. Only a successful online " -"authentication can enable offline authentication again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:520 sssd.conf.5.xml:573 sssd.conf.5.xml:1093 -msgid "Default: 5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:526 -msgid "pam_verbosity (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:529 -msgid "" -"Controls what kind of messages are shown to the user during authentication. " -"The higher the number to more messages are displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:534 -msgid "Currently sssd supports the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:537 -msgid "<emphasis>0</emphasis>: do not show any message" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:540 -msgid "<emphasis>1</emphasis>: show only important messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:544 -msgid "<emphasis>2</emphasis>: show informational messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:547 -msgid "<emphasis>3</emphasis>: show all messages and debug information" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:551 sssd.8.xml:63 -msgid "Default: 1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:556 -msgid "pam_id_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:559 -msgid "" -"For any PAM request while SSSD is online, the SSSD will attempt to " -"immediately update the cached identity information for the user in order to " -"ensure that authentication takes place with the latest information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:565 -msgid "" -"A complete PAM conversation may perform multiple PAM requests, such as " -"account management and session opening. This option controls (on a per-" -"client-application basis) how long (in seconds) we can cache the identity " -"information to avoid excessive round-trips to the identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:579 -msgid "pam_pwd_expiration_warning (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:582 -msgid "Display a warning N days before the password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:585 -msgid "" -"Please note that the backend server has to provide information about the " -"expiration time of the password. If this information is missing, sssd " -"cannot display a warning." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:591 -msgid "Default: 7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:599 -msgid "SUDO configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:601 -msgid "These options can be used to configure the sudo service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:608 -msgid "sudo_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:611 -msgid "" -"For any sudo request that comes while SSSD is online, the SSSD will attempt " -"to update the cached rules in order to ensure that sudo has the latest " -"ruleset." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:617 -msgid "" -"The user may, however, run a couple of sudo commands successively, which " -"would trigger multiple LDAP requests. In order to speed up this use-case, " -"the sudo service maintains an in-memory cache that would be used for " -"performing fast replies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:624 -msgid "" -"This option controls how long (in seconds) can the sudo service cache rules " -"for a user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:628 -msgid "Default: 180" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:633 -msgid "sudo_timed (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:636 -msgid "" -"Whether or not to evaluate the sudoNotBefore and sudoNotAfter attributes " -"that implement time-dependent sudoers entries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:649 -msgid "AUTOFS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:651 -msgid "These options can be used to configure the autofs service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:659 -msgid "autofs_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:662 -msgid "" -"Specifies for how many seconds should the autofs responder negative cache " -"hits (that is, queries for invalid map entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:679 -msgid "DOMAIN SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:686 -msgid "min_id,max_id (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:689 -msgid "" -"UID and GID limits for the domain. If a domain contains an entry that is " -"outside these limits, it is ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:694 -msgid "" -"For users, this affects the primary GID limit. The user will not be returned " -"to NSS if either the UID or the primary GID is outside the range. For non-" -"primary group memberships, those that are in range will be reported as " -"expected." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:701 -msgid "Default: 1 for min_id, 0 (no limit) for max_id" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:707 -msgid "timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:710 -msgid "" -"Timeout in seconds between heartbeats for this domain. This is used to " -"ensure that the backend process is alive and capable of answering requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:715 sssd-ldap.5.xml:1131 -msgid "Default: 10" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:721 -msgid "enumerate (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:724 -msgid "" -"Determines if a domain can be enumerated. This parameter can have one of the " -"following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:728 -msgid "TRUE = Users and groups are enumerated" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:731 -msgid "FALSE = No enumerations for this domain" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:734 sssd.conf.5.xml:839 sssd.conf.5.xml:893 -msgid "Default: FALSE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:737 -msgid "" -"Note: Enabling enumeration has a moderate performance impact on SSSD while " -"enumeration is running. It may take up to several minutes after SSSD startup " -"to fully complete enumerations. During this time, individual requests for " -"information will go directly to LDAP, though it may be slow, due to the " -"heavy enumeration processing." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:747 -msgid "" -"While the first enumeration is running, requests for the complete user or " -"group lists may return no results until it completes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:752 -msgid "" -"Further, enabling enumeration may increase the time necessary to detect " -"network disconnection, as longer timeouts are required to ensure that " -"enumeration lookups are completed successfully. For more information, refer " -"to the man pages for the specific id_provider in use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:763 -msgid "entry_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:766 -msgid "" -"How many seconds should nss_sss consider entries valid before asking the " -"backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:770 -msgid "Default: 5400" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:776 -msgid "entry_cache_user_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:779 -msgid "" -"How many seconds should nss_sss consider user entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:783 sssd.conf.5.xml:796 sssd.conf.5.xml:809 -#: sssd.conf.5.xml:822 -msgid "Default: entry_cache_timeout" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:789 -msgid "entry_cache_group_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:792 -msgid "" -"How many seconds should nss_sss consider group entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:802 -msgid "entry_cache_netgroup_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:805 -msgid "" -"How many seconds should nss_sss consider netgroup entries valid before " -"asking the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:815 -msgid "entry_cache_service_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:818 -msgid "" -"How many seconds should nss_sss consider service entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:828 -msgid "cache_credentials (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:831 -msgid "Determines if user credentials are also cached in the local LDB cache" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:835 -msgid "User credentials are stored in a SHA512 hash, not in plaintext" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:844 -msgid "account_cache_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:847 -msgid "" -"Number of days entries are left in cache after last successful login before " -"being removed during a cleanup of the cache. 0 means keep forever. The " -"value of this parameter must be greater than or equal to " -"offline_credentials_expiration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:854 -msgid "Default: 0 (unlimited)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:860 -msgid "id_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:863 -msgid "The Data Provider identity backend to use for this domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:867 -msgid "Supported backends:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:870 -msgid "proxy: Support a legacy NSS provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:873 -msgid "local: SSSD internal local provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:876 -msgid "ldap: LDAP provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:882 -msgid "use_fully_qualified_names (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:885 -msgid "" -"If set to TRUE, all requests to this domain must use fully qualified names. " -"For example, if used in LOCAL domain that contains a \"test\" user, " -"<command>getent passwd test</command> wouldn't find the user while " -"<command>getent passwd test@LOCAL</command> would." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:898 -msgid "auth_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:901 -msgid "" -"The authentication provider used for the domain. Supported auth providers " -"are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:905 -msgid "" -"<quote>ldap</quote> for native LDAP authentication. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:912 -msgid "" -"<quote>krb5</quote> for Kerberos authentication. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:919 -msgid "" -"<quote>proxy</quote> for relaying authentication to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:922 -msgid "<quote>none</quote> disables authentication explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:925 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"authentication requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:931 -msgid "access_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:934 -msgid "" -"The access control provider used for the domain. There are two built-in " -"access providers (in addition to any included in installed backends) " -"Internal special providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:940 -msgid "<quote>permit</quote> always allow access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:943 -msgid "<quote>deny</quote> always deny access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:946 -msgid "" -"<quote>simple</quote> access control based on access or deny lists. See " -"<citerefentry> <refentrytitle>sssd-simple</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry> for more information on configuring the simple " -"access module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:953 -msgid "Default: <quote>permit</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:958 -msgid "chpass_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:961 -msgid "" -"The provider which should handle change password operations for the domain. " -"Supported change password providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:966 -msgid "" -"<quote>ipa</quote> to change a password stored in an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:974 -msgid "" -"<quote>ldap</quote> to change a password stored in a LDAP server. See " -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:982 -msgid "" -"<quote>krb5</quote> to change the Kerberos password. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:990 -msgid "" -"<quote>proxy</quote> for relaying password changes to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:994 -msgid "<quote>none</quote> disallows password changes explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:997 -msgid "" -"Default: <quote>auth_provider</quote> is used if it is set and can handle " -"change password requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1004 -msgid "sudo_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1010 -msgid "The SUDO provider used for the domain. Supported SUDO providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1014 -msgid "" -"<quote>ldap</quote> for rules stored in LDAP. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1021 -msgid "<quote>none</quote> disables SUDO explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1024 -msgid "Default: The value of <quote>id_provider</quote> is used if it is set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1030 -msgid "session_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1033 -msgid "" -"The provider which should handle loading of session settings. Supported " -"session providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1038 -msgid "" -"<quote>ipa</quote> to load session settings from an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1046 -msgid "<quote>none</quote> disallows fetching session settings explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1049 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"session loading requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1056 -msgid "lookup_family_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1059 -msgid "" -"Provides the ability to select preferred address family to use when " -"performing DNS lookups." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1063 -msgid "Supported values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1066 -msgid "ipv4_first: Try looking up IPv4 address, if that fails, try IPv6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1069 -msgid "ipv4_only: Only attempt to resolve hostnames to IPv4 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1072 -msgid "ipv6_first: Try looking up IPv6 address, if that fails, try IPv4" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1075 -msgid "ipv6_only: Only attempt to resolve hostnames to IPv6 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1078 -msgid "Default: ipv4_first" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1084 -msgid "dns_resolver_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1087 -msgid "" -"Defines the amount of time (in seconds) to wait for a reply from the DNS " -"resolver before assuming that it is unreachable. If this timeout is reached, " -"the domain will continue to operate in offline mode." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1099 -msgid "dns_discovery_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1102 -msgid "" -"If service discovery is used in the back end, specifies the domain part of " -"the service discovery DNS query." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1106 -msgid "Default: Use the domain part of machine's hostname" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1112 -msgid "override_gid (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1115 -msgid "Override the primary GID value with the one specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1121 -msgid "case_sensitive (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1124 -msgid "" -"Treat user and group names as case sensitive. At the moment, this option is " -"not supported in the local provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1129 -msgid "Default: True" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:681 -msgid "" -"These configuration options can be present in a domain configuration " -"section, that is, in a section called <quote>[domain/<replaceable>NAME</" -"replaceable>]</quote> <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1141 -msgid "proxy_pam_target (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1144 -msgid "The proxy target PAM proxies to." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1147 -msgid "" -"Default: not set by default, you have to take an existing pam configuration " -"or create a new one and add the service name here." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1155 -msgid "proxy_lib_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1158 -msgid "" -"The name of the NSS library to use in proxy domains. The NSS functions " -"searched for in the library are in the form of _nss_$(libName)_$(function), " -"for example _nss_files_getpwent." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1137 -msgid "" -"Options valid for proxy domains. <placeholder type=\"variablelist\" id=" -"\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:1170 -msgid "The local domain section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:1172 -msgid "" -"This section contains settings for domain that stores users and groups in " -"SSSD native database, that is, a domain that uses " -"<replaceable>id_provider=local</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1179 -msgid "default_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1182 -msgid "The default shell for users created with SSSD userspace tools." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1186 -msgid "Default: <filename>/bin/bash</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1191 -msgid "base_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1194 -msgid "" -"The tools append the login name to <replaceable>base_directory</replaceable> " -"and use that as the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1199 -msgid "Default: <filename>/home</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1204 -msgid "create_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1207 -msgid "" -"Indicate if a home directory should be created by default for new users. " -"Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1211 sssd.conf.5.xml:1223 -msgid "Default: TRUE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1216 -msgid "remove_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1219 -msgid "" -"Indicate if a home directory should be removed by default for deleted " -"users. Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1228 -msgid "homedir_umask (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1231 -msgid "" -"Used by <citerefentry> <refentrytitle>sss_useradd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry> to specify the default permissions " -"on a newly created home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1239 -msgid "Default: 077" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1244 -msgid "skel_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1247 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<citerefentry> <refentrytitle>sss_useradd</refentrytitle> <manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1257 -msgid "Default: <filename>/etc/skel</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1262 -msgid "mail_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1265 -msgid "" -"The mail spool directory. This is needed to manipulate the mailbox when its " -"corresponding user account is modified or deleted. If not specified, a " -"default value is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1272 -msgid "Default: <filename>/var/mail</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1277 -msgid "userdel_cmd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1280 -msgid "" -"The command that is run after a user is removed. The command us passed the " -"username of the user being removed as the first and only parameter. The " -"return code of the command is not taken into account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1286 -msgid "Default: None, no command is run" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:1296 sssd-ldap.5.xml:2064 sssd-simple.5.xml:126 -#: sssd-ipa.5.xml:544 sssd-krb5.5.xml:432 -msgid "EXAMPLE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:1302 -#, no-wrap -msgid "" -"[sssd]\n" -"domains = LDAP\n" -"services = nss, pam\n" -"config_file_version = 2\n" -"\n" -"[nss]\n" -"filter_groups = root\n" -"filter_users = root\n" -"\n" -"[pam]\n" -"\n" -"[domain/LDAP]\n" -"id_provider = ldap\n" -"ldap_uri = ldap://ldap.example.com\n" -"ldap_search_base = dc=example,dc=com\n" -"\n" -"auth_provider = krb5\n" -"krb5_server = kerberos.example.com\n" -"krb5_realm = EXAMPLE.COM\n" -"cache_credentials = true\n" -"\n" -"min_id = 10000\n" -"max_id = 20000\n" -"enumerate = False\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1298 -msgid "" -"The following example shows a typical SSSD config. It does not describe " -"configuration of the domains themselves - refer to documentation on " -"configuring domains for more details. <placeholder type=\"programlisting\" " -"id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1333 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>pam_sss</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ldap.5.xml:10 sssd-ldap.5.xml:16 -msgid "sssd-ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:23 -msgid "" -"This manual page describes the configuration of LDAP domains for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. Refer to the <quote>FILE FORMAT</quote> section of the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for detailed syntax information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:35 -msgid "You can configure SSSD to use more than one LDAP domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:38 -msgid "" -"LDAP back end supports id, auth, access and chpass providers. If you want to " -"authenticate against an LDAP server either TLS/SSL or LDAPS is required. " -"<command>sssd</command> <emphasis>does not</emphasis> support authentication " -"over an unencrypted channel. If the LDAP server is used only as an identity " -"provider, an encrypted channel is not needed. Please refer to " -"<quote>ldap_access_filter</quote> config option for more information about " -"using LDAP as an access provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:49 sssd-simple.5.xml:69 sssd-ipa.5.xml:64 -#: sssd-krb5.5.xml:63 -msgid "CONFIGURATION OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:60 -msgid "ldap_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:63 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference. Refer to the <quote>FAILOVER</" -"quote> section for more information on failover and server redundancy. If " -"not specified, service discovery is enabled. For more information, refer to " -"the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:70 -msgid "The format of the URI must match the format defined in RFC 2732:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:73 -msgid "ldap[s]://<host>[:port]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:76 -msgid "" -"For explicit IPv6 addresses, <host> must be enclosed in brackets []" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:79 -msgid "example: ldap://[fc00::126:25]:389" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:85 -msgid "ldap_chpass_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:88 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference to change the password of a user. " -"Refer to the <quote>FAILOVER</quote> section for more information on " -"failover and server redundancy." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:95 -msgid "To enable service discovery ldap_chpass_dns_service_name must be set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:99 -msgid "Default: empty, i.e. ldap_uri is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:105 -msgid "ldap_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:108 -msgid "The default base DN to use for performing LDAP user operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:112 -msgid "" -"Starting with SSSD 1.7.0, SSSD supports multiple search bases using the " -"syntax:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:116 -msgid "search_base[?scope?[filter][?search_base?scope?[filter]]*]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:119 -msgid "The scope can be one of \"base\", \"onelevel\" or \"subtree\"." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:122 -msgid "" -"The filter must be a valid LDAP search filter as specified by http://www." -"ietf.org/rfc/rfc2254.txt" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:126 -msgid "Examples:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:129 -msgid "" -"ldap_search_base = dc=example,dc=com (which is equivalent to) " -"ldap_search_base = dc=example,dc=com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:134 -msgid "" -"ldap_search_base = cn=host_specific,dc=example,dc=com?subtree?" -"(host=thishost)?dc=example.com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:137 -msgid "" -"Note: It is unsupported to have multiple search bases which reference " -"identically-named objects (for example, groups with the same name in two " -"different search bases). This will lead to unpredictable behavior on client " -"machines." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:144 -msgid "" -"Default: If not set, the value of the defaultNamingContext or namingContexts " -"attribute from the RootDSE of the LDAP server is used. If " -"defaultNamingContext does not exists or has an empty value namingContexts is " -"used. The namingContexts attribute must have a single value with the DN of " -"the search base of the LDAP server to make this work. Multiple values are " -"are not supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:158 -msgid "ldap_schema (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:161 -msgid "" -"Specifies the Schema Type in use on the target LDAP server. Depending on " -"the selected schema, the default attribute names retrieved from the servers " -"may vary. The way that some attributes are handled may also differ. Three " -"schema types are currently supported: rfc2307 rfc2307bis IPA The main " -"difference between these schema types is how group memberships are recorded " -"in the server. With rfc2307, group members are listed by name in the " -"<emphasis>memberUid</emphasis> attribute. With rfc2307bis and IPA, group " -"members are listed by DN and stored in the <emphasis>member</emphasis> " -"attribute." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:180 -msgid "Default: rfc2307" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:186 -msgid "ldap_default_bind_dn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:189 -msgid "The default bind DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:196 -msgid "ldap_default_authtok_type (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:199 -msgid "The type of the authentication token of the default bind DN." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:203 -msgid "The two mechanisms currently supported are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:206 -msgid "password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:209 -msgid "obfuscated_password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:212 -msgid "Default: password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:218 -msgid "ldap_default_authtok (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:221 -msgid "" -"The authentication token of the default bind DN. Only clear text passwords " -"are currently supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:228 -msgid "ldap_user_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:231 -msgid "The object class of a user entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:234 -msgid "Default: posixAccount" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:240 -msgid "ldap_user_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:243 -msgid "The LDAP attribute that corresponds to the user's login name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:247 -msgid "Default: uid" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:253 -msgid "ldap_user_uid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:256 -msgid "The LDAP attribute that corresponds to the user's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:260 -msgid "Default: uidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:266 -msgid "ldap_user_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:269 -msgid "The LDAP attribute that corresponds to the user's primary group id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:273 sssd-ldap.5.xml:740 -msgid "Default: gidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:279 -msgid "ldap_user_gecos (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:282 -msgid "The LDAP attribute that corresponds to the user's gecos field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:286 -msgid "Default: gecos" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:292 -msgid "ldap_user_home_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:295 -msgid "The LDAP attribute that contains the name of the user's home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:299 -msgid "Default: homeDirectory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:305 -msgid "ldap_user_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:308 -msgid "The LDAP attribute that contains the path to the user's default shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:312 -msgid "Default: loginShell" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:318 -msgid "ldap_user_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:321 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP user object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:325 sssd-ldap.5.xml:766 sssd-ldap.5.xml:878 -msgid "Default: nsUniqueId" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:331 -msgid "ldap_user_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:334 sssd-ldap.5.xml:775 sssd-ldap.5.xml:887 -msgid "" -"The LDAP attribute that contains timestamp of the last modification of the " -"parent object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:338 sssd-ldap.5.xml:779 sssd-ldap.5.xml:894 -msgid "Default: modifyTimestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:344 -msgid "ldap_user_shadow_last_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:347 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (date of " -"the last password change)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:357 -msgid "Default: shadowLastChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:363 -msgid "ldap_user_shadow_min (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:366 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (minimum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:375 -msgid "Default: shadowMin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:381 -msgid "ldap_user_shadow_max (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:384 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (maximum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:393 -msgid "Default: shadowMax" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:399 -msgid "ldap_user_shadow_warning (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:402 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password warning period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:412 -msgid "Default: shadowWarning" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:418 -msgid "ldap_user_shadow_inactive (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:421 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password inactivity period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:431 -msgid "Default: shadowInactive" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:437 -msgid "ldap_user_shadow_expire (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:440 -msgid "" -"When using ldap_pwd_policy=shadow or ldap_account_expire_policy=shadow, this " -"parameter contains the name of an LDAP attribute corresponding to its " -"<citerefentry> <refentrytitle>shadow</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> counterpart (account expiration date)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:450 -msgid "Default: shadowExpire" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:456 -msgid "ldap_user_krb_last_pwd_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:459 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time of last password change in " -"kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:465 -msgid "Default: krbLastPwdChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:471 -msgid "ldap_user_krb_password_expiration (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:474 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time when current password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:480 -msgid "Default: krbPasswordExpiration" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:486 -msgid "ldap_user_ad_account_expires (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:489 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the expiration time of the account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:494 -msgid "Default: accountExpires" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:500 -msgid "ldap_user_ad_user_account_control (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:503 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the user account control bit field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:508 -msgid "Default: userAccountControl" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:514 -msgid "ldap_ns_account_lock (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:517 -msgid "" -"When using ldap_account_expire_policy=rhds or equivalent, this parameter " -"determines if access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:522 -msgid "Default: nsAccountLock" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:528 -msgid "ldap_user_nds_login_disabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:531 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines if " -"access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:535 sssd-ldap.5.xml:549 -msgid "Default: loginDisabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:541 -msgid "ldap_user_nds_login_expiration_time (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:544 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines until " -"which date access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:555 -msgid "ldap_user_nds_login_allowed_time_map (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:558 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines the " -"hours of a day in a week when access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:563 -msgid "Default: loginAllowedTimeMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:569 -msgid "ldap_user_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:572 -msgid "" -"The LDAP attribute that contains the user's Kerberos User Principal Name " -"(UPN)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:576 -msgid "Default: krbPrincipalName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:582 -msgid "ldap_user_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:585 -msgid "The LDAP attribute that contains the user's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:592 -msgid "ldap_force_upper_case_realm (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:595 -msgid "" -"Some directory servers, for example Active Directory, might deliver the " -"realm part of the UPN in lower case, which might cause the authentication to " -"fail. Set this option to a non-zero value if you want to use an upper-case " -"realm." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:608 -msgid "ldap_enumeration_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:611 -msgid "" -"Specifies how many seconds SSSD has to wait before refreshing its cache of " -"enumerated records." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:616 sssd-ldap.5.xml:1808 -msgid "Default: 300" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:622 -msgid "ldap_purge_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:625 -msgid "" -"Determine how often to check the cache for inactive entries (such as groups " -"with no members and users who have never logged in) and remove them to save " -"space." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:631 -msgid "Setting this option to zero will disable the cache cleanup operation." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:635 -msgid "Default: 10800 (12 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:641 -msgid "ldap_user_fullname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:644 -msgid "The LDAP attribute that corresponds to the user's full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:648 sssd-ldap.5.xml:727 sssd-ldap.5.xml:828 -#: sssd-ldap.5.xml:919 sssd-ldap.5.xml:1663 sssd-ldap.5.xml:1881 -#: sssd-ipa.5.xml:422 -msgid "Default: cn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:654 -msgid "ldap_user_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:657 -msgid "The LDAP attribute that lists the user's group memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:661 sssd-ipa.5.xml:326 -msgid "Default: memberOf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:667 -msgid "ldap_user_authorized_service (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:670 -msgid "" -"If access_provider=ldap and ldap_access_order=authorized_service, SSSD will " -"use the presence of the authorizedService attribute in the user's LDAP entry " -"to determine access privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:677 -msgid "" -"An explicit deny (!svc) is resolved first. Second, SSSD searches for " -"explicit allow (svc) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:682 -msgid "Default: authorizedService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:688 -msgid "ldap_user_authorized_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:691 -msgid "" -"If access_provider=ldap and ldap_access_order=host, SSSD will use the " -"presence of the host attribute in the user's LDAP entry to determine access " -"privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:697 -msgid "" -"An explicit deny (!host) is resolved first. Second, SSSD searches for " -"explicit allow (host) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:702 -msgid "Default: host" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:708 -msgid "ldap_group_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:711 -msgid "The object class of a group entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:714 -msgid "Default: posixGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:720 -msgid "ldap_group_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:723 -msgid "The LDAP attribute that corresponds to the group name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:733 -msgid "ldap_group_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:736 -msgid "The LDAP attribute that corresponds to the group's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:746 -msgid "ldap_group_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:749 -msgid "The LDAP attribute that contains the names of the group's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:753 -msgid "Default: memberuid (rfc2307) / member (rfc2307bis)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:759 -msgid "ldap_group_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:762 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP group object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:772 -msgid "ldap_group_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:785 -msgid "ldap_group_nesting_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:788 -msgid "" -"If ldap_schema is set to a schema format that supports nested groups (e.g. " -"RFC2307bis), then this option controls how many levels of nesting SSSD will " -"follow. This option has no effect on the RFC2307 schema." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:795 -msgid "Default: 2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:801 -msgid "ldap_netgroup_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:804 -msgid "The object class of a netgroup entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:807 -msgid "In IPA provider, ipa_netgroup_object_class should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:811 -msgid "Default: nisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:817 -msgid "ldap_netgroup_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:820 -msgid "The LDAP attribute that corresponds to the netgroup name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:824 -msgid "In IPA provider, ipa_netgroup_name should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:834 -msgid "ldap_netgroup_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:837 -msgid "The LDAP attribute that contains the names of the netgroup's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:841 -msgid "In IPA provider, ipa_netgroup_member should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:845 -msgid "Default: memberNisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:851 -msgid "ldap_netgroup_triple (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:854 -msgid "" -"The LDAP attribute that contains the (host, user, domain) netgroup triples." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:858 sssd-ldap.5.xml:891 -msgid "This option is not available in IPA provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:861 -msgid "Default: nisNetgroupTriple" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:867 -msgid "ldap_netgroup_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:870 -msgid "" -"The LDAP attribute that contains the UUID/GUID of an LDAP netgroup object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:874 -msgid "In IPA provider, ipa_netgroup_uuid should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:884 -msgid "ldap_netgroup_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:900 -msgid "ldap_service_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:903 -msgid "The object class of a service entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:906 -msgid "Default: ipService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:912 -msgid "ldap_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:915 -msgid "" -"The LDAP attribute that contains the name of service attributes and their " -"aliases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:925 -msgid "ldap_service_port (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:928 -msgid "The LDAP attribute that contains the port managed by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:932 -msgid "Default: ipServicePort" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:938 -msgid "ldap_service_proto (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:941 -msgid "" -"The LDAP attribute that contains the protocols understood by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:945 -msgid "Default: ipServiceProtocol" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:951 -msgid "ldap_service_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:954 -msgid "An optional base DN to restrict service searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:958 sssd-ldap.5.xml:1918 sssd-ldap.5.xml:1937 -#: sssd-ldap.5.xml:1956 sssd-ldap.5.xml:2019 sssd-ldap.5.xml:2041 -#: sssd-ipa.5.xml:163 sssd-ipa.5.xml:187 -msgid "" -"See <quote>ldap_search_base</quote> for information about configuring " -"multiple search bases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:963 sssd-ldap.5.xml:1923 sssd-ldap.5.xml:1942 -#: sssd-ldap.5.xml:1961 sssd-ldap.5.xml:2024 sssd-ldap.5.xml:2046 -#: sssd-ipa.5.xml:173 sssd-ipa.5.xml:192 -msgid "Default: the value of <emphasis>ldap_search_base</emphasis>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:970 -msgid "ldap_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:973 -msgid "" -"Specifies the timeout (in seconds) that ldap searches are allowed to run " -"before they are cancelled and cached results are returned (and offline mode " -"is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:979 -msgid "" -"Note: this option is subject to change in future versions of the SSSD. It " -"will likely be replaced at some point by a series of timeouts for specific " -"lookup types." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:985 sssd-ldap.5.xml:1027 sssd-ldap.5.xml:1042 -msgid "Default: 6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:991 -msgid "ldap_enumeration_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:994 -msgid "" -"Specifies the timeout (in seconds) that ldap searches for user and group " -"enumerations are allowed to run before they are cancelled and cached results " -"are returned (and offline mode is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1001 -msgid "Default: 60" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1007 -msgid "ldap_network_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1010 -msgid "" -"Specifies the timeout (in seconds) after which the <citerefentry> " -"<refentrytitle>poll</refentrytitle> <manvolnum>2</manvolnum> </citerefentry>/" -"<citerefentry> <refentrytitle>select</refentrytitle> <manvolnum>2</" -"manvolnum> </citerefentry> following a <citerefentry> " -"<refentrytitle>connect</refentrytitle> <manvolnum>2</manvolnum> </" -"citerefentry> returns in case of no activity." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1033 -msgid "ldap_opt_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1036 -msgid "" -"Specifies a timeout (in seconds) after which calls to synchronous LDAP APIs " -"will abort if no response is received. Also controls the timeout when " -"communicating with the KDC in case of SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1048 -msgid "ldap_connection_expire_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1051 -msgid "" -"Specifies a timeout (in seconds) that a connection to an LDAP server will be " -"maintained. After this time, the connection will be re-established. If used " -"in parallel with SASL/GSSAPI, the sooner of the two values (this value vs. " -"the TGT lifetime) will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1059 -msgid "Default: 900 (15 minutes)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1065 -msgid "ldap_page_size (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1068 -msgid "" -"Specify the number of records to retrieve from LDAP in a single request. " -"Some LDAP servers enforce a maximum limit per-request." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1073 -msgid "Default: 1000" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1079 -msgid "ldap_disable_paging" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1082 -msgid "" -"Disable the LDAP paging control. This option should be used if the LDAP " -"server reports that it supports the LDAP paging control in its RootDSE but " -"it is not enabled or does not behave properly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1088 -msgid "" -"Example: OpenLDAP servers with the paging control module installed on the " -"server but not enabled will report it in the RootDSE but be unable to use it." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1094 -msgid "" -"Example: 389 DS has a bug where it can only support a one paging control at " -"a time on a single connection. On busy clients, this can result in some " -"requests being denied." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1103 -msgid "ldap_deref_threshold (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1106 -msgid "" -"Specify the number of group members that must be missing from the internal " -"cache in order to trigger a dereference lookup. If less members are missing, " -"they are looked up individually." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1112 -msgid "" -"You can turn off dereference lookups completely by setting the value to 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1116 -msgid "" -"A dereference lookup is a means of fetching all group members in a single " -"LDAP call. Different LDAP servers may implement different dereference " -"methods. The currently supported servers are 389/RHDS, OpenLDAP and Active " -"Directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1124 -msgid "" -"<emphasis>Note:</emphasis> If any of the search bases specifies a search " -"filter, then the dereference lookup performance enhancement will be disabled " -"regardless of this setting." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1137 -msgid "ldap_tls_reqcert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1140 -msgid "" -"Specifies what checks to perform on server certificates in a TLS session, if " -"any. It can be specified as one of the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1146 -msgid "" -"<emphasis>never</emphasis> = The client will not request or check any server " -"certificate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1150 -msgid "" -"<emphasis>allow</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, it will be ignored and the session proceeds normally." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1157 -msgid "" -"<emphasis>try</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, the session is immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1163 -msgid "" -"<emphasis>demand</emphasis> = The server certificate is requested. If no " -"certificate is provided, or a bad certificate is provided, the session is " -"immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1169 -msgid "<emphasis>hard</emphasis> = Same as <quote>demand</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1173 -msgid "Default: hard" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1179 -msgid "ldap_tls_cacert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1182 -msgid "" -"Specifies the file that contains certificates for all of the Certificate " -"Authorities that <command>sssd</command> will recognize." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1187 sssd-ldap.5.xml:1205 sssd-ldap.5.xml:1246 -msgid "" -"Default: use OpenLDAP defaults, typically in <filename>/etc/openldap/ldap." -"conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1194 -msgid "ldap_tls_cacertdir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1197 -msgid "" -"Specifies the path of a directory that contains Certificate Authority " -"certificates in separate individual files. Typically the file names need to " -"be the hash of the certificate followed by '.0'. If available, " -"<command>cacertdir_rehash</command> can be used to create the correct names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1212 -msgid "ldap_tls_cert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1215 -msgid "Specifies the file that contains the certificate for the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1219 sssd-ldap.5.xml:1231 sssd-ldap.5.xml:1979 -#: sssd-ldap.5.xml:2006 sssd-krb5.5.xml:359 -msgid "Default: not set" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1225 -msgid "ldap_tls_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1228 -msgid "Specifies the file that contains the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1237 -msgid "ldap_tls_cipher_suite (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1240 -msgid "" -"Specifies acceptable cipher suites. Typically this is a colon sperated " -"list. See <citerefentry><refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> for format." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1253 -msgid "ldap_id_use_start_tls (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1256 -msgid "" -"Specifies that the id_provider connection must also use <systemitem class=" -"\"protocol\">tls</systemitem> to protect the channel." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1266 -msgid "ldap_sasl_mech (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1269 -msgid "" -"Specify the SASL mechanism to use. Currently only GSSAPI is tested and " -"supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1273 sssd-ldap.5.xml:1428 -msgid "Default: none" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1279 -msgid "ldap_sasl_authid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1282 -msgid "" -"Specify the SASL authorization id to use. When GSSAPI is used, this " -"represents the Kerberos principal used for authentication to the directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1287 -msgid "Default: host/machine.fqdn@REALM" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1293 -msgid "ldap_sasl_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1296 -msgid "" -"If set to true, the LDAP library would perform a reverse lookup to " -"canonicalize the host name during a SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1301 -msgid "Default: false;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1307 -msgid "ldap_krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1310 -msgid "Specify the keytab to use when using SASL/GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1313 -msgid "Default: System keytab, normally <filename>/etc/krb5.keytab</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1319 -msgid "ldap_krb5_init_creds (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1322 -msgid "" -"Specifies that the id_provider should init Kerberos credentials (TGT). This " -"action is performed only if SASL is used and the mechanism selected is " -"GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1334 -msgid "ldap_krb5_ticket_lifetime (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1337 -msgid "Specifies the lifetime in seconds of the TGT if GSSAPI is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1341 -msgid "Default: 86400 (24 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1347 sssd-krb5.5.xml:74 -msgid "krb5_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1350 sssd-krb5.5.xml:77 -msgid "" -"Specifies the comma-separated list of IP addresses or hostnames of the " -"Kerberos servers to which SSSD should connect in the order of preference. " -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. An optional port number (preceded by a " -"colon) may be appended to the addresses or hostnames. If empty, service " -"discovery is enabled - for more information, refer to the <quote>SERVICE " -"DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1362 sssd-krb5.5.xml:89 -msgid "" -"When using service discovery for KDC or kpasswd servers, SSSD first searches " -"for DNS entries that specify _udp as the protocol and falls back to _tcp if " -"none are found." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1367 sssd-krb5.5.xml:94 -msgid "" -"This option was named <quote>krb5_kdcip</quote> in earlier releases of SSSD. " -"While the legacy name is recognized for the time being, users are advised to " -"migrate their config files to use <quote>krb5_server</quote> instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1376 sssd-ipa.5.xml:216 sssd-krb5.5.xml:103 -msgid "krb5_realm (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1379 -msgid "Specify the Kerberos REALM (for SASL/GSSAPI auth)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1382 -msgid "Default: System defaults, see <filename>/etc/krb5.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1388 sssd-ipa.5.xml:231 sssd-krb5.5.xml:409 -msgid "krb5_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1391 -msgid "" -"Specifies if the host principal should be canonicalized when connecting to " -"LDAP server. This feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1403 -msgid "ldap_pwd_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1406 -msgid "" -"Select the policy to evaluate the password expiration on the client side. " -"The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1411 -msgid "" -"<emphasis>none</emphasis> - No evaluation on the client side. This option " -"cannot disable server-side password policies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1416 -msgid "" -"<emphasis>shadow</emphasis> - Use <citerefentry><refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum></citerefentry> style attributes to " -"evaluate if the password has expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1422 -msgid "" -"<emphasis>mit_kerberos</emphasis> - Use the attributes used by MIT Kerberos " -"to determine if the password has expired. Use chpass_provider=krb5 to update " -"these attributes when the password is changed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1434 -msgid "ldap_referrals (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1437 -msgid "Specifies whether automatic referral chasing should be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1441 -msgid "" -"Please note that sssd only supports referral chasing when it is compiled " -"with OpenLDAP version 2.4.13 or higher." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1452 -msgid "ldap_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1455 -msgid "Specifies the service name to use when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1459 -msgid "Default: ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1465 -msgid "ldap_chpass_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1468 -msgid "" -"Specifies the service name to use to find an LDAP server which allows " -"password changes when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1473 -msgid "Default: not set, i.e. service discovery is disabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1479 -msgid "ldap_access_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1482 -msgid "" -"If using access_provider = ldap, this option is mandatory. It specifies an " -"LDAP search filter criteria that must be met for the user to be granted " -"access on this host. If access_provider = ldap and this option is not set, " -"it will result in all users being denied access. Use access_provider = allow " -"to change this default behavior." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1492 sssd-ldap.5.xml:1982 -msgid "Example:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1495 -#, no-wrap -msgid "" -"access_provider = ldap\n" -"ldap_access_filter = memberOf=cn=allowedusers,ou=Groups,dc=example,dc=com\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1499 -msgid "" -"This example means that access to this host is restricted to members of the " -"\"allowedusers\" group in ldap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1504 -msgid "" -"Offline caching for this feature is limited to determining whether the " -"user's last online login was granted access permission. If they were granted " -"access during their last login, they will continue to be granted access " -"while offline and vice-versa." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1512 sssd-ldap.5.xml:1562 -msgid "Default: Empty" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1518 -msgid "ldap_account_expire_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1521 -msgid "" -"With this option a client side evaluation of access control attributes can " -"be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1525 -msgid "" -"Please note that it is always recommended to use server side access control, " -"i.e. the LDAP server should deny the bind request with a suitable error code " -"even if the password is correct." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1532 -msgid "The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1535 -msgid "" -"<emphasis>shadow</emphasis>: use the value of ldap_user_shadow_expire to " -"determine if the account is expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1540 -msgid "" -"<emphasis>ad</emphasis>: use the value of the 32bit field " -"ldap_user_ad_user_account_control and allow access if the second bit is not " -"set. If the attribute is missing access is granted. Also the expiration time " -"of the account is checked." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1547 -msgid "" -"<emphasis>rhds</emphasis>, <emphasis>ipa</emphasis>, <emphasis>389ds</" -"emphasis>: use the value of ldap_ns_account_lock to check if access is " -"allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1553 -msgid "" -"<emphasis>nds</emphasis>: the values of " -"ldap_user_nds_login_allowed_time_map, ldap_user_nds_login_disabled and " -"ldap_user_nds_login_expiration_time are used to check if access is allowed. " -"If both attributes are missing access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1568 -msgid "ldap_access_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1571 -msgid "Comma separated list of access control options. Allowed values are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1575 -msgid "<emphasis>filter</emphasis>: use ldap_access_filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1578 -msgid "<emphasis>expire</emphasis>: use ldap_account_expire_policy" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1582 -msgid "" -"<emphasis>authorized_service</emphasis>: use the authorizedService attribute " -"to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1587 -msgid "<emphasis>host</emphasis>: use the host attribute to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1591 -msgid "Default: filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1594 -msgid "" -"Please note that it is a configuration error if a value is used more than " -"once." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1601 -msgid "ldap_deref (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1604 -msgid "" -"Specifies how alias dereferencing is done when performing a search. The " -"following options are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1609 -msgid "<emphasis>never</emphasis>: Aliases are never dereferenced." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1613 -msgid "" -"<emphasis>searching</emphasis>: Aliases are dereferenced in subordinates of " -"the base object, but not in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1618 -msgid "" -"<emphasis>finding</emphasis>: Aliases are only dereferenced when locating " -"the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1623 -msgid "" -"<emphasis>always</emphasis>: Aliases are dereferenced both in searching and " -"in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1628 -msgid "" -"Default: Empty (this is handled as <emphasis>never</emphasis> by the LDAP " -"client libraries)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:51 -msgid "" -"All of the common configuration options that apply to SSSD domains also " -"apply to LDAP domains. Refer to the <quote>DOMAIN SECTIONS</quote> section " -"of the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for full details. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1639 -msgid "SUDO OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1644 -msgid "ldap_sudorule_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1647 -msgid "The object class of a sudo rule entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1650 -msgid "Default: sudoRole" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1656 -msgid "ldap_sudorule_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1659 -msgid "The LDAP attribute that corresponds to the sudo rule name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1669 -msgid "ldap_sudorule_command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1672 -msgid "The LDAP attribute that corresponds to the command name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1676 -msgid "Default: sudoCommand" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1682 -msgid "ldap_sudorule_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1685 -msgid "" -"The LDAP attribute that corresponds to the host name (or host IP address, " -"host IP network, or host netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1690 -msgid "Default: sudoHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1696 -msgid "ldap_sudorule_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1699 -msgid "" -"The LDAP attribute that corresponds to the user name (or UID, group name or " -"user's netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1703 -msgid "Default: sudoUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1709 -msgid "ldap_sudorule_option (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1712 -msgid "The LDAP attribute that corresponds to the sudo options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1716 -msgid "Default: sudoOption" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1722 -msgid "ldap_sudorule_runasuser (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1725 -msgid "" -"The LDAP attribute that corresponds to the user name that commands may be " -"run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1729 -msgid "Default: sudoRunAsUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1735 -msgid "ldap_sudorule_runasgroup (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1738 -msgid "" -"The LDAP attribute that corresponds to the group name or group GID that " -"commands may be run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1742 -msgid "Default: sudoRunAsGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1748 -msgid "ldap_sudorule_notbefore (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1751 -msgid "" -"The LDAP attribute that corresponds to the start date/time for when the sudo " -"rule is valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1755 -msgid "Default: sudoNotBefore" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1761 -msgid "ldap_sudorule_notafter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1764 -msgid "" -"The LDAP attribute that corresponds to the expiration date/time, after which " -"the sudo rule will no longer be valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1769 -msgid "Default: sudoNotAfter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1775 -msgid "ldap_sudorule_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1778 -msgid "The LDAP attribute that corresponds to the ordering index of the rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1782 -msgid "Default: sudoOrder" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1788 -msgid "ldap_sudo_refresh_enabled (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1791 -msgid "" -"Enables periodical download of all sudo rules. The cache is purged before " -"each update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1801 -msgid "ldap_sudo_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1804 -msgid "" -"How many seconds SSSD has to wait before refreshing its cache of sudo rules." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1642 -msgid "<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1815 -msgid "" -"This manual page only describes attribute name mapping. For detailed " -"explanation of sudo related attribute semantics, see <citerefentry> " -"<refentrytitle>sudoers.ldap</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1825 -msgid "AUTOFS OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1827 -msgid "" -"Please note that the default values correspond to the default schema which " -"is RFC2307." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1834 -msgid "ldap_autofs_map_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1837 sssd-ldap.5.xml:1863 -msgid "The object class of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1840 sssd-ldap.5.xml:1867 -msgid "Default: automountMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1847 -msgid "ldap_autofs_map_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1850 -msgid "The name of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1853 -msgid "Default: ou" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1860 -msgid "ldap_autofs_entry_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1874 -msgid "ldap_autofs_entry_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1877 sssd-ldap.5.xml:1891 -msgid "" -"The key of an automount entry in LDAP. The entry usually corresponds to a " -"mount point." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1888 -msgid "ldap_autofs_entry_value (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1895 -msgid "Default: automountInformation" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1832 -msgid "" -"<placeholder type=\"variablelist\" id=\"0\"/> <placeholder type=" -"\"variablelist\" id=\"1\"/> <placeholder type=\"variablelist\" id=\"2\"/> " -"<placeholder type=\"variablelist\" id=\"3\"/> <placeholder type=" -"\"variablelist\" id=\"4\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1904 -msgid "ADVANCED OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1911 -msgid "ldap_netgroup_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1914 -msgid "" -"An optional base DN to restrict netgroup searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1930 -msgid "ldap_user_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1933 -msgid "An optional base DN to restrict user searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1949 -msgid "ldap_group_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1952 -msgid "An optional base DN to restrict group searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1968 -msgid "ldap_user_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1971 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict user searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1975 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_user_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1985 -#, no-wrap -msgid "" -" ldap_user_search_filter = (loginShell=/bin/tcsh)\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1988 -msgid "" -"This filter would restrict user searches to users that have their shell set " -"to /bin/tcsh." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1995 -msgid "ldap_group_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1998 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict group searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2002 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_group_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2012 -msgid "ldap_sudo_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2015 -msgid "" -"An optional base DN to restrict sudo rules searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2034 -msgid "ldap_autofs_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2037 -msgid "" -"An optional base DN to restrict automounter searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1906 -msgid "" -"These options are supported by LDAP domains, but they should be used with " -"caution. Please include them in your configuration only if you know what you " -"are doing. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2066 -msgid "" -"The following example assumes that SSSD is correctly configured and LDAP is " -"set to one of the domains in the <replaceable>[domains]</replaceable> " -"section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ldap.5.xml:2072 -#, no-wrap -msgid "" -" [domain/LDAP]\n" -" id_provider = ldap\n" -" auth_provider = ldap\n" -" ldap_uri = ldap://ldap.mydomain.org\n" -" ldap_search_base = dc=mydomain,dc=org\n" -" ldap_tls_reqcert = demand\n" -" cache_credentials = true\n" -" enumerate = true\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2071 sssd-simple.5.xml:134 sssd-ipa.5.xml:552 -#: sssd-krb5.5.xml:441 -msgid "<placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:2085 sssd_krb5_locator_plugin.8.xml:61 -msgid "NOTES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2087 -msgid "" -"The descriptions of some of the configuration options in this manual page " -"are based on the <citerefentry> <refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page from the OpenLDAP 2.4 " -"distribution." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2098 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <refentryinfo> -#: pam_sss.8.xml:8 include/upstream.xml:2 -msgid "" -"<productname>SSSD</productname> <orgname>The SSSD upstream - http://" -"fedorahosted.org/sssd</orgname>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: pam_sss.8.xml:13 pam_sss.8.xml:18 -msgid "pam_sss" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: pam_sss.8.xml:19 -msgid "PAM module for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: pam_sss.8.xml:24 -msgid "" -"<command>pam_sss.so</command> <arg choice='opt'> <replaceable>quiet</" -"replaceable> </arg> <arg choice='opt'> <replaceable>forward_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_first_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_authtok</" -"replaceable> </arg> <arg choice='opt'> <replaceable>retry=N</replaceable> </" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:45 -msgid "" -"<command>pam_sss.so</command> is the PAM interface to the System Security " -"Services daemon (SSSD). Errors and results are logged through <command>syslog" -"(3)</command> with the LOG_AUTHPRIV facility." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:55 -msgid "<option>quiet</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:58 -msgid "Suppress log messages for unknown users." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:63 -msgid "<option>forward_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:66 -msgid "" -"If <option>forward_pass</option> is set the entered password is put on the " -"stack for other PAM modules to use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:73 -msgid "<option>use_first_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:76 -msgid "" -"The argument use_first_pass forces the module to use a previous stacked " -"modules password and will never prompt the user - if no password is " -"available or the password is not appropriate, the user will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:84 -msgid "<option>use_authtok</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:87 -msgid "" -"When password changing enforce the module to set the new password to the one " -"provided by a previously stacked password module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:94 -msgid "<option>retry=N</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:97 -msgid "" -"If specified the user is asked another N times for a password if " -"authentication fails. Default is 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:99 -msgid "" -"Please note that this option might not work as expected if the application " -"calling PAM handles the user dialog on its own. A typical example is " -"<command>sshd</command> with <option>PasswordAuthentication</option>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:110 -msgid "MODULE TYPES PROVIDED" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:111 -msgid "" -"All module types (<option>account</option>, <option>auth</option>, " -"<option>password</option> and <option>session</option>) are provided." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:117 -msgid "FILES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:118 -msgid "" -"If a password reset by root fails, because the corresponding SSSD provider " -"does not support password resets, an individual message can be displayed. " -"This message can e.g. contain instructions about how to reset a password." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:123 -msgid "" -"The message is read from the file <filename>pam_sss_pw_reset_message.LOC</" -"filename> where LOC stands for a locale string returned by <citerefentry> " -"<refentrytitle>setlocale</refentrytitle><manvolnum>3</manvolnum> </" -"citerefentry>. If there is no matching file the content of " -"<filename>pam_sss_pw_reset_message.txt</filename> is displayed. Root must be " -"the owner of the files and only root may have read and write permissions " -"while all other users must have only read permissions." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:133 -msgid "" -"These files are searched in the directory <filename>/etc/sssd/customize/" -"DOMAIN_NAME/</filename>. If no matching file is present a generic message is " -"displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:141 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd_krb5_locator_plugin.8.xml:10 sssd_krb5_locator_plugin.8.xml:15 -msgid "sssd_krb5_locator_plugin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:22 -msgid "" -"The Kerberos locator plugin <command>sssd_krb5_locator_plugin</command> is " -"used by the Kerberos provider of <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry> to tell the Kerberos " -"libraries what Realm and which KDC to use. Typically this is done in " -"<citerefentry> <refentrytitle>krb5.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> which is always read by the Kerberos libraries. " -"To simplify the configuration the Realm and the KDC can be defined in " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> as described in <citerefentry> " -"<refentrytitle>sssd-krb5.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry> puts the Realm and the name or IP address of the KDC into " -"the environment variables SSSD_KRB5_REALM and SSSD_KRB5_KDC respectively. " -"When <command>sssd_krb5_locator_plugin</command> is called by the kerberos " -"libraries it reads and evaluates these variables and returns them to the " -"libraries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:63 -msgid "" -"Not all Kerberos implementations support the use of plugins. If " -"<command>sssd_krb5_locator_plugin</command> is not available on your system " -"you have to edit /etc/krb5.conf to reflect your Kerberos setup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:69 -msgid "" -"If the environment variable SSSD_KRB5_LOCATOR_DEBUG is set to any value " -"debug messages will be sent to stderr." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:77 -msgid "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-simple.5.xml:10 sssd-simple.5.xml:16 -msgid "sssd-simple" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd-simple.5.xml:17 -msgid "the configuration file for SSSD's 'simple' access-control provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:24 -msgid "" -"This manual page describes the configuration of the simple access-control " -"provider for <citerefentry> <refentrytitle>sssd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry>. For a detailed syntax reference, " -"refer to the <quote>FILE FORMAT</quote> section of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:38 -msgid "" -"The simple access provider grants or denies access based on an access or " -"deny list of user or group names. The following rules apply:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:43 -msgid "If all lists are empty, access is granted" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:47 -msgid "" -"If any list is provided, the order of evaluation is allow,deny. This means " -"that any matching deny rule will supersede any matched allow rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:54 -msgid "" -"If either or both \"allow\" lists are provided, all users are denied unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:60 -msgid "" -"If only \"deny\" lists are provided, all users are granted access unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:78 -msgid "simple_allow_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:81 -msgid "Comma separated list of users who are allowed to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:88 -msgid "simple_deny_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:91 -msgid "Comma separated list of users who are explicitly denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:97 -msgid "simple_allow_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:100 -msgid "" -"Comma separated list of groups that are allowed to log in. This applies only " -"to groups within this SSSD domain. Local groups are not evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:108 -msgid "simple_deny_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:111 -msgid "" -"Comma separated list of groups that are explicitly denied access. This " -"applies only to groups within this SSSD domain. Local groups are not " -"evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:70 sssd-ipa.5.xml:65 -msgid "" -"Refer to the section <quote>DOMAIN SECTIONS</quote> of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page for details on the configuration of an SSSD " -"domain. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:120 -msgid "" -"Please note that it is an configuration error if both, simple_allow_users " -"and simple_deny_users, are defined." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:128 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the simple access provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-simple.5.xml:135 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" access_provider = simple\n" -" simple_allow_users = user1, user2\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:145 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ipa.5.xml:10 sssd-ipa.5.xml:16 -msgid "sssd-ipa" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:23 -msgid "" -"This manual page describes the configuration of the IPA provider for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. For a detailed syntax reference, refer to the <quote>FILE " -"FORMAT</quote> section of the <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:36 -msgid "" -"The IPA provider is a back end used to connect to an IPA server. (Refer to " -"the freeipa.org web site for information about IPA servers.) This provider " -"requires that the machine be joined to the IPA domain; configuration is " -"almost entirely self-discovered and obtained directly from the server." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:43 -msgid "" -"The IPA provider accepts the same options used by the <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> identity provider and the <citerefentry> <refentrytitle>sssd-" -"krb5</refentrytitle> <manvolnum>5</manvolnum> </citerefentry> authentication " -"provider with some exceptions described below." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:55 -msgid "" -"However, it is neither necessary nor recommended to set these options. IPA " -"provider can also be used as an access and chpass provider. As an access " -"provider it uses HBAC (host-based access control) rules. Please refer to " -"freeipa.org for more information about HBAC. No configuration of access " -"provider is required on the client side." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:72 -msgid "ipa_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:75 -msgid "" -"Specifies the name of the IPA domain. This is optional. If not provided, " -"the configuration domain name is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:83 -msgid "ipa_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:86 -msgid "" -"The comma-separated list of IP addresses or hostnames of the IPA servers to " -"which SSSD should connect in the order of preference. For more information " -"on failover and server redundancy, see the <quote>FAILOVER</quote> section. " -"This is optional if autodiscovery is enabled. For more information on " -"service discovery, refer to the the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:99 -msgid "ipa_hostname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:102 -msgid "" -"Optional. May be set on machines where the hostname(5) does not reflect the " -"fully qualified name used in the IPA domain to identify this host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:110 -msgid "ipa_dyndns_update (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:113 -msgid "" -"Optional. This option tells SSSD to automatically update the DNS server " -"built into FreeIPA v2 with the IP address of this client." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:118 -msgid "" -"NOTE: On older systems (such as RHEL 5), for this behavior to work reliably, " -"the default Kerberos realm must be set properly in /etc/krb5.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:129 -msgid "ipa_dyndns_iface (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:132 -msgid "" -"Optional. Applicable only when ipa_dyndns_update is true. Choose the " -"interface whose IP address should be used for dynamic DNS updates." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:137 -msgid "Default: Use the IP address of the IPA LDAP connection" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:143 -msgid "ipa_hbac_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:146 -msgid "Optional. Use the given string as search base for HBAC related objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:150 -msgid "Default: Use base DN" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:156 -msgid "ipa_host_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:159 -msgid "Optional. Use the given string as search base for host objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:168 -msgid "" -"If filter is given in any of search bases and " -"<emphasis>ipa_hbac_support_srchost</emphasis> is set to False, the filter " -"will be ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:180 -msgid "ipa_selinux_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:183 -msgid "Optional. Use the given string as search base for SELinux user maps." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:199 sssd-krb5.5.xml:229 -msgid "krb5_validate (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:202 sssd-krb5.5.xml:232 -msgid "" -"Verify with the help of krb5_keytab that the TGT obtained has not been " -"spoofed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:209 -msgid "" -"Note that this default differs from the traditional Kerberos provider back " -"end." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:219 -msgid "" -"The name of the Kerberos realm. This is optional and defaults to the value " -"of <quote>ipa_domain</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:223 -msgid "" -"The name of the Kerberos realm has a special meaning in IPA - it is " -"converted into the base DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:234 -msgid "" -"Specifies if the host and user principal should be canonicalized when " -"connecting to IPA LDAP and also for AS requests. This feature is available " -"with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:247 -msgid "ipa_hbac_refresh (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:250 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server. " -"This will reduce the latency and load on the IPA server if there are many " -"access-control requests made in a short period." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:257 -msgid "Default: 5 (seconds)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:262 -msgid "ipa_hbac_treat_deny_as (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:265 -msgid "" -"This option specifies how to treat the deprecated DENY-type HBAC rules. As " -"of FreeIPA v2.1, DENY rules are no longer supported on the server. All users " -"of FreeIPA will need to migrate their rules to use only the ALLOW rules. The " -"client will support two modes of operation during this transition period:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:274 -msgid "" -"<emphasis>DENY_ALL</emphasis>: If any HBAC DENY rules are detected, all " -"users will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:279 -msgid "" -"<emphasis>IGNORE</emphasis>: SSSD will ignore any DENY rules. Be very " -"careful with this option, as it may result in opening unintended access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:284 -msgid "Default: DENY_ALL" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:289 -msgid "ipa_hbac_support_srchost (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:292 -msgid "" -"If this is set to false, then srchost as given to SSSD by PAM will be " -"ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:296 -msgid "" -"Note that if set to <emphasis>False</emphasis>, this option casuses filters " -"given in <emphasis>ipa_host_search_base</emphasis> to be ignored;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:307 -msgid "ipa_automount_location (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:310 -msgid "The automounter location this IPA client will be using" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:313 -msgid "Default: The location named \"default\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:319 -msgid "ipa_netgroup_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:322 -msgid "The LDAP attribute that lists netgroup's memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:331 -msgid "ipa_netgroup_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:334 -msgid "" -"The LDAP attribute that lists system users and groups that are direct " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:339 sssd-ipa.5.xml:434 -msgid "Default: memberUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:344 -msgid "ipa_netgroup_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:347 -msgid "" -"The LDAP attribute that lists hosts and host groups that are direct members " -"of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:351 sssd-ipa.5.xml:446 -msgid "Default: memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:356 -msgid "ipa_netgroup_member_ext_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:359 -msgid "" -"The LDAP attribute that lists FQDNs of hosts and host groups that are " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:363 -msgid "Default: externalHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:368 -msgid "ipa_netgroup_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:371 -msgid "The LDAP attribute that contains NIS domain name of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:375 -msgid "Default: nisDomainName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:381 -msgid "ipa_host_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:384 sssd-ipa.5.xml:407 -msgid "The object class of a host entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:387 sssd-ipa.5.xml:410 -msgid "Default: ipaHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:392 -msgid "ipa_host_fqdn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:395 -msgid "The LDAP attribute that contains FQDN of the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:398 -msgid "Default: fqdn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:404 -msgid "ipa_selinux_usermap_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:415 -msgid "ipa_selinux_usermap_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:418 -msgid "The LDAP attribute that contains the name of SELinux usermap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:427 -msgid "ipa_selinux_usermap_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:430 -msgid "" -"The LDAP attribute that contains all users / groups this rule match against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:439 -msgid "ipa_selinux_usermap_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:442 -msgid "" -"The LDAP attribute that contains all hosts / hostgroups this rule match " -"against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:451 -msgid "ipa_selinux_usermap_see_also (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:454 -msgid "" -"The LDAP attribute that contains DN of HBAC rule which can be used for " -"matching instead of memberUser and memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:459 -msgid "Default: seeAlso" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:464 -msgid "ipa_selinux_usermap_selinux_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:467 -msgid "The LDAP attribute that contains SELinux user string itself." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:471 -msgid "Default: ipaSELinuxUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:476 -msgid "ipa_selinux_usermap_enabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:479 -msgid "" -"The LDAP attribute that contains whether or not is user map enabled for " -"usage." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:483 -msgid "Default: ipaEnabledFlag" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:488 -msgid "ipa_selinux_usermap_user_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:491 -msgid "The LDAP attribute that contains user category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:495 -msgid "Default: userCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:500 -msgid "ipa_selinux_usermap_host_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:503 -msgid "The LDAP attribute that contains host category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:507 -msgid "Default: hostCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:512 -msgid "ipa_selinux_usermap_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:515 -msgid "The LDAP attribute that contains unique ID of the user map." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:519 -msgid "Default: ipaUniqueID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:524 -msgid "ipa_host_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:527 -msgid "The LDAP attribute that contains the host's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:531 -msgid "Default: ipaSshPubKey" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:546 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the ipa provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ipa.5.xml:553 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" id_provider = ipa\n" -" ipa_server = ipaserver.example.com\n" -" ipa_hostname = myhost.example.com\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:564 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.8.xml:10 sssd.8.xml:15 -msgid "sssd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.8.xml:16 -msgid "System Security Services Daemon" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sssd.8.xml:21 -msgid "" -"<command>sssd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:31 -msgid "" -"<command>SSSD</command> provides a set of daemons to manage access to remote " -"directories and authentication mechanisms. It provides an NSS and PAM " -"interface toward the system and a pluggable backend system to connect to " -"multiple different account sources as well as D-Bus interface. It is also " -"the basis to provide client auditing and policy services for projects like " -"FreeIPA. It provides a more robust database to store local users as well as " -"extended user data." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:46 -msgid "" -"<option>-d</option>,<option>--debug-level</option> <replaceable>LEVEL</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:53 -msgid "<option>--debug-timestamps=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:57 -msgid "<emphasis>1</emphasis>: Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:60 -msgid "<emphasis>0</emphasis>: Disable timestamp in the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:69 -msgid "<option>--debug-microseconds=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:73 -msgid "" -"<emphasis>1</emphasis>: Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:76 -msgid "<emphasis>0</emphasis>: Disable microseconds in timestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:79 -msgid "Default: 0" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:85 -msgid "<option>-f</option>,<option>--debug-to-files</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:89 -msgid "" -"Send the debug output to files instead of stderr. By default, the log files " -"are stored in <filename>/var/log/sssd</filename> and there are separate log " -"files for every SSSD service and domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:97 -msgid "<option>-D</option>,<option>--daemon</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:101 -msgid "Become a daemon after starting up." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:107 -msgid "<option>-i</option>,<option>--interactive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:111 -msgid "Run in the foreground, don't become a daemon." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:117 sss_debuglevel.8.xml:42 -msgid "<option>-c</option>,<option>--config</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:121 sss_debuglevel.8.xml:46 -msgid "" -"Specify a non-default config file. The default is <filename>/etc/sssd/sssd." -"conf</filename>. For reference on the config file syntax and options, " -"consult the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:135 -msgid "<option>--version</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:139 -msgid "Print version number and exit." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.8.xml:147 -msgid "Signals" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:150 -msgid "SIGTERM/SIGINT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:153 -msgid "" -"Informs the SSSD to gracefully terminate all of its child processes and then " -"shut down the monitor." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:159 -msgid "SIGHUP" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:162 -msgid "" -"Tells the SSSD to stop writing to its current debug file descriptors and to " -"close and reopen them. This is meant to facilitate log rolling with programs " -"like logrotate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:170 -msgid "SIGUSR1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:173 -msgid "" -"Tells the SSSD to simulate offline operation for one minute. This is mostly " -"useful for testing purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:179 -msgid "SIGUSR2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:182 -msgid "" -"Tells the SSSD to go online immediately. This is mostly useful for testing " -"purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:193 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_obfuscate.8.xml:10 sss_obfuscate.8.xml:15 -msgid "sss_obfuscate" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_obfuscate.8.xml:16 -msgid "obfuscate a clear text password" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_obfuscate.8.xml:21 -msgid "" -"<command>sss_obfuscate</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>[PASSWORD]</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:32 -msgid "" -"<command>sss_obfuscate</command> converts a given password into human-" -"unreadable format and places it into appropriate domain section of the SSSD " -"config file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:37 -msgid "" -"The cleartext password is read from standard input or entered " -"interactively. The obfuscated password is put into " -"<quote>ldap_default_authtok</quote> parameter of a given SSSD domain and the " -"<quote>ldap_default_authtok_type</quote> parameter is set to " -"<quote>obfuscated_password</quote>. Refer to <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more details on these parameters." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:49 -msgid "" -"Please note that obfuscating the password provides <emphasis>no real " -"security benefit</emphasis> as it is still possible for an attacker to " -"reverse-engineer the password back. Using better authentication mechanisms " -"such as client side certificates or GSSAPI is <emphasis>strongly</emphasis> " -"advised." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:63 -msgid "<option>-s</option>,<option>--stdin</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:67 -msgid "The password to obfuscate will be read from standard input." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:74 sss_ssh_authorizedkeys.1.xml:82 -#: sss_ssh_knownhostsproxy.1.xml:81 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>DOMAIN</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:79 -msgid "" -"The SSSD domain to use the password in. The default name is <quote>default</" -"quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:86 -msgid "" -"<option>-f</option>,<option>--file</option> <replaceable>FILE</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:91 -msgid "Read the config file specified by the positional parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:95 -msgid "Default: <filename>/etc/sssd/sssd.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:105 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_useradd.8.xml:10 sss_useradd.8.xml:15 -msgid "sss_useradd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_useradd.8.xml:16 -msgid "create a new user" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_useradd.8.xml:21 -msgid "" -"<command>sss_useradd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:32 -msgid "" -"<command>sss_useradd</command> creates a new user account using the values " -"specified on the command line plus the default values from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:43 -msgid "" -"<option>-u</option>,<option>--uid</option> <replaceable>UID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:48 -msgid "" -"Set the UID of the user to the value of <replaceable>UID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:55 sss_usermod.8.xml:43 -msgid "" -"<option>-c</option>,<option>--gecos</option> <replaceable>COMMENT</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:60 sss_usermod.8.xml:48 -msgid "" -"Any text string describing the user. Often used as the field for the user's " -"full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:67 sss_usermod.8.xml:55 -msgid "" -"<option>-h</option>,<option>--home</option> <replaceable>HOME_DIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:72 -msgid "" -"The home directory of the user account. The default is to append the " -"<replaceable>LOGIN</replaceable> name to <filename>/home</filename> and use " -"that as the home directory. The base that is prepended before " -"<replaceable>LOGIN</replaceable> is tunable with <quote>user_defaults/" -"baseDirectory</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:82 sss_usermod.8.xml:66 -msgid "" -"<option>-s</option>,<option>--shell</option> <replaceable>SHELL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:87 -msgid "" -"The user's login shell. The default is currently <filename>/bin/bash</" -"filename>. The default can be changed with <quote>user_defaults/" -"defaultShell</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:96 -msgid "" -"<option>-G</option>,<option>--groups</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:101 -msgid "A list of existing groups this user is also a member of." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:107 -msgid "<option>-m</option>,<option>--create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:111 -msgid "" -"Create the user's home directory if it does not exist. The files and " -"directories contained in the skeleton directory (which can be defined with " -"the -k option or in the config file) will be copied to the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:121 -msgid "<option>-M</option>,<option>--no-create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:125 -msgid "" -"Do not create the user's home directory. Overrides configuration settings." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:132 -msgid "" -"<option>-k</option>,<option>--skel</option> <replaceable>SKELDIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:137 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<command>sss_useradd</command>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:143 -msgid "" -"This option is only valid if the <option>-m</option> (or <option>--create-" -"home</option>) option is specified, or creation of home directories is set " -"to TRUE in the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:152 sss_usermod.8.xml:124 -msgid "" -"<option>-Z</option>,<option>--selinux-user</option> " -"<replaceable>SELINUX_USER</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:157 -msgid "" -"The SELinux user for the user's login. If not specified, the system default " -"will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:169 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-krb5.5.xml:10 sssd-krb5.5.xml:16 -msgid "sssd-krb5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:23 -msgid "" -"This manual page describes the configuration of the Kerberos 5 " -"authentication backend for <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry>. For a detailed " -"syntax reference, please refer to the <quote>FILE FORMAT</quote> section of " -"the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:36 -msgid "" -"The Kerberos 5 authentication backend contains auth and chpass providers. It " -"must be paired with identity provider in order to function properly (for " -"example, id_provider = ldap). Some information required by the Kerberos 5 " -"authentication backend must be provided by the identity provider, such as " -"the user's Kerberos Principal Name (UPN). The configuration of the identity " -"provider should have an entry to specify the UPN. Please refer to the man " -"page for the applicable identity provider for details on how to configure " -"this." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:47 -msgid "" -"This backend also provides access control based on the .k5login file in the " -"home directory of the user. See <citerefentry> <refentrytitle>.k5login</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry> for more details. " -"Please note that an empty .k5login file will deny all access to this user. " -"To activate this feature use 'access_provider = krb5' in your sssd " -"configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:55 -msgid "" -"In the case where the UPN is not available in the identity backend " -"<command>sssd</command> will construct a UPN using the format " -"<replaceable>username</replaceable>@<replaceable>krb5_realm</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:106 -msgid "" -"The name of the Kerberos realm. This option is required and must be " -"specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:113 -msgid "krb5_kpasswd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:116 -msgid "" -"If the change password service is not running on the KDC alternative servers " -"can be defined here. An optional port number (preceded by a colon) may be " -"appended to the addresses or hostnames." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:122 -msgid "" -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. Please note that even if there are no more " -"kpasswd servers to try the back end is not switch to offline if " -"authentication against the KDC is still possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:129 -msgid "Default: Use the KDC" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:135 -msgid "krb5_ccachedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:138 -msgid "" -"Directory to store credential caches. All the substitution sequences of " -"krb5_ccname_template can be used here, too, except %d and %P. If the " -"directory does not exist it will be created. If %u, %U, %p or %h are used a " -"private directory belonging to the user is created. Otherwise a public " -"directory with restricted deletion flag (aka sticky bit, see <citerefentry> " -"<refentrytitle>chmod</refentrytitle> <manvolnum>1</manvolnum> </" -"citerefentry> for details) is created." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:151 -msgid "Default: /tmp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:157 -msgid "krb5_ccname_template (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:171 -msgid "login UID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:174 -msgid "%p" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:175 -msgid "principal name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:179 -msgid "%r" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:180 -msgid "realm name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:183 -msgid "%h" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:184 -msgid "home directory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:189 -msgid "value of krb5ccache_dir" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:194 -msgid "%P" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:195 -msgid "the process ID of the sssd client" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:160 -msgid "" -"Location of the user's credential cache. Currently only file based " -"credential caches are supported. In the template the following sequences are " -"substituted: <placeholder type=\"variablelist\" id=\"0\"/> If the template " -"ends with 'XXXXXX' mkstemp(3) is used to create a unique filename in a safe " -"way." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:209 -msgid "Default: FILE:%d/krb5cc_%U_XXXXXX" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:215 -msgid "krb5_auth_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:218 -msgid "" -"Timeout in seconds after an online authentication or change password request " -"is aborted. If possible the authentication request is continued offline." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:241 -msgid "krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:244 -msgid "" -"The location of the keytab to use when validating credentials obtained from " -"KDCs." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:248 -msgid "Default: /etc/krb5.keytab" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:254 -msgid "krb5_store_password_if_offline (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:257 -msgid "" -"Store the password of the user if the provider is offline and use it to " -"request a TGT when the provider gets online again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:262 -msgid "" -"Please note that this feature currently only available on a Linux platform. " -"Passwords stored in this way are kept in plaintext in the kernel keyring and " -"are potentially accessible by the root user (with difficulty)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:275 -msgid "krb5_renewable_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:278 -msgid "" -"Request a renewable ticket with a total lifetime given by an integer " -"immediately followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:283 sssd-krb5.5.xml:319 -msgid "<emphasis>s</emphasis> seconds" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:286 sssd-krb5.5.xml:322 -msgid "<emphasis>m</emphasis> minutes" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:289 sssd-krb5.5.xml:325 -msgid "<emphasis>h</emphasis> hours" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:292 sssd-krb5.5.xml:328 -msgid "<emphasis>d</emphasis> days." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:295 sssd-krb5.5.xml:331 -msgid "If there is no delimiter <emphasis>s</emphasis> is assumed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:299 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"renewable lifetime to one and a half hours please use '90m' instead of " -"'1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:305 -msgid "Default: not set, i.e. the TGT is not renewable" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:311 -msgid "krb5_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:314 -msgid "" -"Request ticket with a with a lifetime given by an integer immediately " -"followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:335 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"lifetime to one and a half hours please use '90m' instead of '1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:340 -msgid "" -"Default: not set, i.e. the default ticket lifetime configured on the KDC." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:347 -msgid "krb5_renew_interval (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:350 -msgid "" -"The time in seconds between two checks if the TGT should be renewed. TGTs " -"are renewed if about half of their lifetime is exceeded." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:355 -msgid "If this option is not set or 0 the automatic renewal is disabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:365 -msgid "krb5_use_fast (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:368 -msgid "" -"Enables flexible authentication secure tunneling (FAST) for Kerberos pre-" -"authentication. The following options are supported:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:373 -msgid "" -"<emphasis>never</emphasis> use FAST, this is equivalent to not set this " -"option at all." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:377 -msgid "" -"<emphasis>try</emphasis> to use FAST, if the server does not support fast " -"continue without." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:381 -msgid "" -"<emphasis>demand</emphasis> to use FAST, fail if the server does not require " -"fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:385 -msgid "Default: not set, i.e. FAST is not used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:388 -msgid "Please note that a keytab is required to use fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:391 -msgid "" -"Please note also that sssd supports fast only with MIT Kerberos version 1.8 " -"and above. If sssd used with an older version using this option is a " -"configuration error." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:400 -msgid "krb5_fast_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:403 -msgid "Specifies the server principal to use for FAST." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:412 -msgid "" -"Specifies if the host and user principal should be canonicalized. This " -"feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:65 -msgid "" -"If the auth-module krb5 is used in a SSSD domain, the following options must " -"be used. See the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page, section <quote>DOMAIN " -"SECTIONS</quote> for details on the configuration of a SSSD domain. " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:434 -msgid "" -"The following example assumes that SSSD is correctly configured and FOO is " -"one of the domains in the <replaceable>[sssd]</replaceable> section. This " -"example shows only configuration of Kerberos authentication, it does not " -"include any identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-krb5.5.xml:442 -#, no-wrap -msgid "" -" [domain/FOO]\n" -" auth_provider = krb5\n" -" krb5_server = 192.168.1.1\n" -" krb5_realm = EXAMPLE.COM\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:453 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupadd.8.xml:10 sss_groupadd.8.xml:15 -msgid "sss_groupadd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupadd.8.xml:16 -msgid "create a new group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupadd.8.xml:21 -msgid "" -"<command>sss_groupadd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:32 -msgid "" -"<command>sss_groupadd</command> creates a new group. These groups are " -"compatible with POSIX groups, with the additional feature that they can " -"contain other groups as members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupadd.8.xml:43 -msgid "" -"<option>-g</option>,<option>--gid</option> <replaceable>GID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupadd.8.xml:48 -msgid "" -"Set the GID of the group to the value of <replaceable>GID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_userdel.8.xml:10 sss_userdel.8.xml:15 -msgid "sss_userdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_userdel.8.xml:16 -msgid "delete a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_userdel.8.xml:21 -msgid "" -"<command>sss_userdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:32 -msgid "" -"<command>sss_userdel</command> deletes a user identified by login name " -"<replaceable>LOGIN</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:44 -msgid "<option>-r</option>,<option>--remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:48 -msgid "" -"Files in the user's home directory will be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:56 -msgid "<option>-R</option>,<option>--no-remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:60 -msgid "" -"Files in the user's home directory will NOT be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:68 -msgid "<option>-f</option>,<option>--force</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:72 -msgid "" -"This option forces <command>sss_userdel</command> to remove the user's home " -"directory and mail spool, even if they are not owned by the specified user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:80 -msgid "<option>-k</option>,<option>--kick</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:84 -msgid "Before actually deleting the user, terminate all his processes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:95 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupdel.8.xml:10 sss_groupdel.8.xml:15 -msgid "sss_groupdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupdel.8.xml:16 -msgid "delete a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupdel.8.xml:21 -msgid "" -"<command>sss_groupdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:32 -msgid "" -"<command>sss_groupdel</command> deletes a group identified by its name " -"<replaceable>GROUP</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupshow.8.xml:10 sss_groupshow.8.xml:15 -msgid "sss_groupshow" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupshow.8.xml:16 -msgid "print properties of a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupshow.8.xml:21 -msgid "" -"<command>sss_groupshow</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:32 -msgid "" -"<command>sss_groupshow</command> displays information about a group " -"identified by its name <replaceable>GROUP</replaceable>. The information " -"includes the group ID number, members of the group and the parent group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupshow.8.xml:43 -msgid "<option>-R</option>,<option>--recursive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupshow.8.xml:47 -msgid "" -"Also print indirect group members in a tree-like hierarchy. Note that this " -"also affects printing parent groups - without <option>R</option>, only the " -"direct parent will be printed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_usermod.8.xml:10 sss_usermod.8.xml:15 -msgid "sss_usermod" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_usermod.8.xml:16 -msgid "modify a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_usermod.8.xml:21 -msgid "" -"<command>sss_usermod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:32 -msgid "" -"<command>sss_usermod</command> modifies the account specified by " -"<replaceable>LOGIN</replaceable> to reflect the changes that are specified " -"on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:60 -msgid "The home directory of the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:71 -msgid "The user's login shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:82 -msgid "" -"Append this user to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:96 -msgid "" -"Remove this user from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:103 -msgid "<option>-l</option>,<option>--lock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:107 -msgid "Lock the user account. The user won't be able to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:114 -msgid "<option>-u</option>,<option>--unlock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:118 -msgid "Unlock the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:129 -msgid "The SELinux user for the user's login." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:140 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_cache.8.xml:10 sss_cache.8.xml:15 -msgid "sss_cache" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_cache.8.xml:16 -msgid "perform cache cleanup" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_cache.8.xml:21 -msgid "" -"<command>sss_cache</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_cache.8.xml:31 -msgid "" -"<command>sss_cache</command> invalidates records in SSSD cache. Invalidated " -"records are forced to be reloaded from server as soon as related SSSD " -"backend is online." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:42 -msgid "" -"<option>-u</option>,<option>--user</option> <replaceable>login</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:47 -msgid "Invalidate specific user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:53 -msgid "<option>-U</option>,<option>--users</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:57 -msgid "" -"Invalidate all user records. This option overrides invalidation of specific " -"user if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:64 -msgid "" -"<option>-g</option>,<option>--group</option> <replaceable>group</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:69 -msgid "Invalidate specific group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:75 -msgid "<option>-G</option>,<option>--groups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:79 -msgid "" -"Invalidate all group records. This option overrides invalidation of specific " -"group if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:86 -msgid "" -"<option>-n</option>,<option>--netgroup</option> <replaceable>netgroup</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:91 -msgid "Invalidate specific netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:97 -msgid "<option>-N</option>,<option>--netgroups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:101 -msgid "" -"Invalidate all netgroup records. This option overrides invalidation of " -"specific netgroup if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:108 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>domain</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:113 -msgid "Restrict invalidation process only to a particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_debuglevel.8.xml:10 sss_debuglevel.8.xml:15 -msgid "sss_debuglevel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_debuglevel.8.xml:16 -msgid "change debug level while SSSD is running" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_debuglevel.8.xml:21 -msgid "" -"<command>sss_debuglevel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>NEW_DEBUG_LEVEL</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_debuglevel.8.xml:32 -msgid "" -"<command>sss_debuglevel</command> changes debug level of SSSD monitor and " -"providers to <replaceable>NEW_DEBUG_LEVEL</replaceable> while SSSD is " -"running." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_debuglevel.8.xml:59 -msgid "<replaceable>NEW_DEBUG_LEVEL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_authorizedkeys.1.xml:10 sss_ssh_authorizedkeys.1.xml:15 -msgid "sss_ssh_authorizedkeys" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_ssh_authorizedkeys.1.xml:11 sss_ssh_knownhostsproxy.1.xml:11 -msgid "1" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_authorizedkeys.1.xml:16 -msgid "get OpenSSH authorized keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_authorizedkeys.1.xml:21 -msgid "" -"<command>sss_ssh_authorizedkeys</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>USER</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:32 -msgid "" -"<command>sss_ssh_authorizedkeys</command> acquires SSH public keys for user " -"<replaceable>USER</replaceable> and outputs them in OpenSSH authorized_keys " -"format (see the <quote>AUTHORIZED_KEYS FILE FORMAT</quote> section of " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> for more information)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:41 -msgid "" -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_authorizedkeys</" -"command> for public key user authentication if it is compiled with support " -"for either <quote>AuthorizedKeysCommand</quote> or <quote>PubkeyAgent</" -"quote> <citerefentry> <refentrytitle>sshd_config</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:58 -#, no-wrap -msgid "AuthorizedKeysCommand /usr/bin/sss_ssh_authorizedkeys\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:51 -msgid "" -"If <quote>AuthorizedKeysCommand</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by putting the following directive " -"in <citerefentry> <refentrytitle>sshd_config</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry>: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:69 -#, no-wrap -msgid "PubKeyAgent /usr/bin/sss_ssh_authorizedkeys %u\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:62 -msgid "" -"If <quote>PubkeyAgent</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by using the following directive " -"for <citerefentry> <refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> configuration: <placeholder type=\"programlisting" -"\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_authorizedkeys.1.xml:87 -msgid "" -"Search for user public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:98 -msgid "" -"<citerefentry> <refentrytitle>sshd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sshd_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_knownhostsproxy</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_knownhostsproxy.1.xml:10 sss_ssh_knownhostsproxy.1.xml:15 -msgid "sss_ssh_knownhostsproxy" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_knownhostsproxy.1.xml:16 -msgid "get OpenSSH host keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_knownhostsproxy.1.xml:21 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>HOST</replaceable></arg> <arg " -"choice='opt'><replaceable>PROXY_COMMAND</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:33 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> acquires SSH host public keys for " -"host <replaceable>HOST</replaceable>, stores them in a custom OpenSSH " -"known_hosts file (see the <quote>SSH_KNOWN_HOSTS FILE FORMAT</quote> section " -"of <citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> for more information) <filename>/var/lib/sss/" -"pubconf/known_hosts</filename> and estabilishes connection to the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:43 -msgid "" -"If <replaceable>PROXY_COMMAND</replaceable> is specified, it is used to " -"create the connection to the host instead of opening a socket." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_knownhostsproxy.1.xml:55 -#, no-wrap -msgid "" -"ProxyCommand /usr/bin/sss_ssh_knownhostsproxy -p %p %h\n" -"GlobalKnownHostsFile2 /var/lib/sss/pubconf/known_hosts\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:48 -msgid "" -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_knownhostsproxy</" -"command> for host key authentication by using the following directives for " -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> configuration: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_ssh_knownhostsproxy.1.xml:69 -msgid "" -"<option>-p</option>,<option>--port</option> <replaceable>PORT</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:74 -msgid "" -"Use port <replaceable>PORT</replaceable> to connect to the host. By " -"default, port 22 is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:86 -msgid "" -"Search for host public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:97 -msgid "" -"<citerefentry> <refentrytitle>ssh</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>ssh_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_authorizedkeys</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/service_discovery.xml:2 -msgid "SERVICE DISCOVERY" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/service_discovery.xml:4 -msgid "" -"The service discovery feature allows back ends to automatically find the " -"appropriate servers to connect to using a special DNS query." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:9 -msgid "Configuration" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:11 -msgid "" -"If no servers are specified, the back end automatically uses service " -"discovery to try to find a server. Optionally, the user may choose to use " -"both fixed server addresses and service discovery by inserting a special " -"keyword, <quote>_srv_</quote>, in the list of servers. The order of " -"preference is maintained. This feature is useful if, for example, the user " -"prefers to use service discovery whenever possible, and fall back to a " -"specific server when no servers can be discovered using DNS." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:23 -msgid "The domain name" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:25 -msgid "" -"Please refer to the <quote>dns_discovery_domain</quote> parameter in the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for more details." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:35 -msgid "The protocol" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:37 -msgid "" -"The queries usually specify _tcp as the protocol. Exceptions are documented " -"in respective option description." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:42 -msgid "See Also" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:44 -msgid "" -"For more information on the service discovery mechanism, refer to RFC 2782." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/upstream.xml:1 -msgid "<placeholder type=\"refentryinfo\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/failover.xml:2 -msgid "FAILOVER" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/failover.xml:4 -msgid "" -"The failover feature allows back ends to automatically switch to a different " -"server if the primary server fails." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:8 -msgid "Failover Syntax" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:10 -msgid "" -"The list of servers is given as a comma-separated list; any number of spaces " -"is allowed around the comma. The servers are listed in order of preference. " -"The list can contain any number of servers." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:17 -msgid "The Failover Mechanism" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:19 -msgid "" -"The failover mechanism distinguishes between a machine and a service. The " -"back end first tries to resolve the hostname of a given machine; if this " -"resolution attempt fails, the machine is considered offline. No further " -"attempts are made to connect to this machine for any other service. If the " -"resolution attempt succeeds, the back end tries to connect to a service on " -"this machine. If the service connection attempt fails, then only this " -"particular service is considered offline and the back end automatically " -"switches over to the next service. The machine is still considered online " -"and might still be tried for another service." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:32 -msgid "" -"Further connection attempts are made to machines or services marked as " -"offline after a specified period of time; this is currently hard coded to 30 " -"seconds." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:37 -msgid "" -"If there are no more machines to try, the back end as a whole switches to " -"offline mode, and then attempts to reconnect every 30 seconds." -msgstr "" - -#. type: Content of: <varlistentry><term> -#: include/param_help.xml:3 -msgid "<option>-h</option>,<option>--help</option>" -msgstr "" - -#. type: Content of: <varlistentry><listitem><para> -#: include/param_help.xml:7 -msgid "Display help message and exit." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:3 -msgid "" -"Bit mask that indicates which debug levels will be visible. 0x0010 is the " -"default value as well as the lowest allowed value, 0xFFF0 is the most " -"verbose mode. This setting overrides the settings from config file." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:8 -msgid "Currently supported debug levels:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:11 -msgid "" -"<emphasis>0x0010</emphasis>: Fatal failures. Anything that would prevent " -"SSSD from starting up or causes it to cease running." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:15 -msgid "" -"<emphasis>0x0020</emphasis>: Critical failures. An error that doesn't kill " -"the SSSD, but one that indicates that at least one major feature is not " -"going to work properly." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:20 -msgid "" -"<emphasis>0x0040</emphasis>: Serious failures. An error announcing that a " -"particular request or operation has failed." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:24 -msgid "" -"<emphasis>0x0080</emphasis>: Minor failures. These are the errors that would " -"percolate down to cause the operation failure of 2." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:28 -msgid "<emphasis>0x0100</emphasis>: Configuration settings." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:31 -msgid "<emphasis>0x0200</emphasis>: Function data." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:34 -msgid "<emphasis>0x0400</emphasis>: Trace messages for operation functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:37 -msgid "" -"<emphasis>0x1000</emphasis>: Trace messages for internal control functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:40 -msgid "" -"<emphasis>0x2000</emphasis>: Contents of function-internal variables that " -"may be interesting." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:43 -msgid "<emphasis>0x4000</emphasis>: Extremely low-level tracing information." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:46 -msgid "" -"To log required debug levels, simply add their numbers together as shown in " -"following examples:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:49 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, critical failures, " -"serious failures and function data use 0x0270." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:53 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, configuration settings, " -"function data, trace messages for internal control functions use 0x1310." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:57 -msgid "" -"<emphasis>Note</emphasis>: This is new format of debug levels introduced in " -"1.7.0. Older format (numbers from 0-10) is compatible but deprecated." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/experimental.xml:1 -msgid "" -"<emphasis> This is an experimental feature, please use http://fedorahosted." -"org/sssd to report any issues. </emphasis>" -msgstr "" diff --git a/src/man/po/cs.po b/src/man/po/cs.po index c80ad2964..36a3a1e19 100644 --- a/src/man/po/cs.po +++ b/src/man/po/cs.po @@ -9,9 +9,10 @@ msgstr "" "Project-Id-Version: SSSD\n" "Report-Msgid-Bugs-To: sssd-devel@redhat.com\n" "POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2011-12-21 10:12+0000\n" +"PO-Revision-Date: 2012-03-08 11:52+0000\n" "Last-Translator: sgallagh <sgallagh@redhat.com>\n" -"Language-Team: Czech (http://www.transifex.net/projects/p/fedora/team/cs/)\n" +"Language-Team: Czech (http://www.transifex.net/projects/p/fedora/language/" +"cs/)\n" "Language: cs\n" "MIME-Version: 1.0\n" "Content-Type: text/plain; charset=UTF-8\n" @@ -3597,10 +3598,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><title> #: sssd-ldap.5.xml:1639 -#, fuzzy -#| msgid "OPTIONS" msgid "SUDO OPTIONS" -msgstr "VOLBY" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1644 @@ -3813,10 +3812,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><title> #: sssd-ldap.5.xml:1825 -#, fuzzy -#| msgid "OPTIONS" msgid "AUTOFS OPTIONS" -msgstr "VOLBY" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para> #: sssd-ldap.5.xml:1827 @@ -6215,18 +6212,10 @@ msgstr "" #. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> #: sss_cache.8.xml:21 -#, fuzzy -#| msgid "" -#| "<command>sss_groupdel</command> <arg choice='opt'> <replaceable>options</" -#| "replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -#| "arg>" msgid "" "<command>sss_cache</command> <arg choice='opt'> <replaceable>options</" "replaceable> </arg>" msgstr "" -"<command>sss_groupdel</command> <arg choice='opt'> <replaceable>volby</" -"replaceable> </arg> <arg choice='plain'><replaceable>SKUPINA</replaceable></" -"arg>" #. type: Content of: <reference><refentry><refsect1><para> #: sss_cache.8.xml:31 @@ -6238,11 +6227,9 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:42 -#, fuzzy -#| msgid "<option>-h</option>,<option>--help</option>" msgid "" "<option>-u</option>,<option>--user</option> <replaceable>login</replaceable>" -msgstr "<option>-h</option>,<option>--help</option>" +msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:47 @@ -6251,10 +6238,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:53 -#, fuzzy -#| msgid "<option>-h</option>,<option>--help</option>" msgid "<option>-U</option>,<option>--users</option>" -msgstr "<option>-h</option>,<option>--help</option>" +msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:57 @@ -6265,11 +6250,9 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:64 -#, fuzzy -#| msgid "<option>-h</option>,<option>--help</option>" msgid "" "<option>-g</option>,<option>--group</option> <replaceable>group</replaceable>" -msgstr "<option>-h</option>,<option>--help</option>" +msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:69 @@ -6278,10 +6261,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:75 -#, fuzzy -#| msgid "<option>-h</option>,<option>--help</option>" msgid "<option>-G</option>,<option>--groups</option>" -msgstr "<option>-h</option>,<option>--help</option>" +msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:79 @@ -6292,12 +6273,10 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:86 -#, fuzzy -#| msgid "<option>-h</option>,<option>--help</option>" msgid "" "<option>-n</option>,<option>--netgroup</option> <replaceable>netgroup</" "replaceable>" -msgstr "<option>-h</option>,<option>--help</option>" +msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:91 @@ -6306,10 +6285,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:97 -#, fuzzy -#| msgid "<option>-h</option>,<option>--help</option>" msgid "<option>-N</option>,<option>--netgroups</option>" -msgstr "<option>-h</option>,<option>--help</option>" +msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:101 @@ -6320,12 +6297,10 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:108 -#, fuzzy -#| msgid "<option>-h</option>,<option>--help</option>" msgid "" "<option>-d</option>,<option>--domain</option> <replaceable>domain</" "replaceable>" -msgstr "<option>-h</option>,<option>--help</option>" +msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:113 @@ -6344,19 +6319,11 @@ msgstr "" #. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> #: sss_debuglevel.8.xml:21 -#, fuzzy -#| msgid "" -#| "<command>sss_groupdel</command> <arg choice='opt'> <replaceable>options</" -#| "replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -#| "arg>" msgid "" "<command>sss_debuglevel</command> <arg choice='opt'> <replaceable>options</" "replaceable> </arg> <arg choice='plain'><replaceable>NEW_DEBUG_LEVEL</" "replaceable></arg>" msgstr "" -"<command>sss_groupdel</command> <arg choice='opt'> <replaceable>volby</" -"replaceable> </arg> <arg choice='plain'><replaceable>SKUPINA</replaceable></" -"arg>" #. type: Content of: <reference><refentry><refsect1><para> #: sss_debuglevel.8.xml:32 @@ -6388,19 +6355,11 @@ msgstr "" #. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> #: sss_ssh_authorizedkeys.1.xml:21 -#, fuzzy -#| msgid "" -#| "<command>sss_groupdel</command> <arg choice='opt'> <replaceable>options</" -#| "replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -#| "arg>" msgid "" "<command>sss_ssh_authorizedkeys</command> <arg choice='opt'> " "<replaceable>options</replaceable> </arg> <arg " "choice='plain'><replaceable>USER</replaceable></arg>" msgstr "" -"<command>sss_groupdel</command> <arg choice='opt'> <replaceable>volby</" -"replaceable> </arg> <arg choice='plain'><replaceable>SKUPINA</replaceable></" -"arg>" #. type: Content of: <reference><refentry><refsect1><para> #: sss_ssh_authorizedkeys.1.xml:32 @@ -6464,17 +6423,6 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para> #: sss_ssh_authorizedkeys.1.xml:98 -#, fuzzy -#| msgid "" -#| "<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -#| "manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -#| "refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -#| "<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -#| "citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -#| "refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -#| "<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -#| "citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -#| "refentrytitle><manvolnum>8</manvolnum> </citerefentry>." msgid "" "<citerefentry> <refentrytitle>sshd</refentrytitle><manvolnum>8</manvolnum> </" "citerefentry>, <citerefentry> <refentrytitle>sshd_config</" @@ -6482,15 +6430,6 @@ msgid "" "<refentrytitle>sss_ssh_knownhostsproxy</refentrytitle><manvolnum>1</" "manvolnum> </citerefentry>." msgstr "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." #. type: Content of: <reference><refentry><refnamediv><refname> #: sss_ssh_knownhostsproxy.1.xml:10 sss_ssh_knownhostsproxy.1.xml:15 @@ -6504,20 +6443,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> #: sss_ssh_knownhostsproxy.1.xml:21 -#, fuzzy -#| msgid "" -#| "<command>sss_groupdel</command> <arg choice='opt'> <replaceable>options</" -#| "replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -#| "arg>" msgid "" "<command>sss_ssh_knownhostsproxy</command> <arg choice='opt'> " "<replaceable>options</replaceable> </arg> <arg " "choice='plain'><replaceable>HOST</replaceable></arg> <arg " "choice='opt'><replaceable>PROXY_COMMAND</replaceable></arg>" msgstr "" -"<command>sss_groupdel</command> <arg choice='opt'> <replaceable>volby</" -"replaceable> </arg> <arg choice='plain'><replaceable>SKUPINA</replaceable></" -"arg>" #. type: Content of: <reference><refentry><refsect1><para> #: sss_ssh_knownhostsproxy.1.xml:33 @@ -6557,11 +6488,9 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_ssh_knownhostsproxy.1.xml:69 -#, fuzzy -#| msgid "<option>-h</option>,<option>--help</option>" msgid "" "<option>-p</option>,<option>--port</option> <replaceable>PORT</replaceable>" -msgstr "<option>-h</option>,<option>--help</option>" +msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_ssh_knownhostsproxy.1.xml:74 @@ -6578,17 +6507,6 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para> #: sss_ssh_knownhostsproxy.1.xml:97 -#, fuzzy -#| msgid "" -#| "<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -#| "manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -#| "refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -#| "<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -#| "citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -#| "refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -#| "<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -#| "citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -#| "refentrytitle><manvolnum>8</manvolnum> </citerefentry>." msgid "" "<citerefentry> <refentrytitle>ssh</refentrytitle><manvolnum>8</manvolnum> </" "citerefentry>, <citerefentry> <refentrytitle>ssh_config</" @@ -6596,15 +6514,6 @@ msgid "" "<refentrytitle>sss_ssh_authorizedkeys</refentrytitle><manvolnum>1</" "manvolnum> </citerefentry>." msgstr "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." #. type: Content of: <refsect1><title> #: include/service_discovery.xml:2 diff --git a/src/man/po/de.po b/src/man/po/de.po deleted file mode 100644 index fbb257921..000000000 --- a/src/man/po/de.po +++ /dev/null @@ -1,6747 +0,0 @@ -# SOME DESCRIPTIVE TITLE -# Copyright (C) YEAR Red Hat -# This file is distributed under the same license as the sssd-docs package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@redhat.com\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-12-23 15:35+0000\n" -"Last-Translator: FULL NAME <EMAIL@ADDRESS>\n" -"Language-Team: German <trans-de@lists.fedoraproject.org>\n" -"Language: de\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=2; plural=(n != 1)\n" - -#. type: Content of: <reference><title> -#: sss_groupmod.8.xml:5 sssd.conf.5.xml:5 sssd-ldap.5.xml:5 pam_sss.8.xml:5 -#: sssd_krb5_locator_plugin.8.xml:5 sssd-simple.5.xml:5 sssd-ipa.5.xml:5 -#: sssd.8.xml:5 sss_obfuscate.8.xml:5 sss_useradd.8.xml:5 sssd-krb5.5.xml:5 -#: sss_groupadd.8.xml:5 sss_userdel.8.xml:5 sss_groupdel.8.xml:5 -#: sss_groupshow.8.xml:5 sss_usermod.8.xml:5 sss_cache.8.xml:5 -#: sss_debuglevel.8.xml:5 sss_ssh_authorizedkeys.1.xml:5 -#: sss_ssh_knownhostsproxy.1.xml:5 -msgid "SSSD Manual pages" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupmod.8.xml:10 sss_groupmod.8.xml:15 -msgid "sss_groupmod" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_groupmod.8.xml:11 pam_sss.8.xml:14 sssd_krb5_locator_plugin.8.xml:11 -#: sssd.8.xml:11 sss_obfuscate.8.xml:11 sss_useradd.8.xml:11 -#: sss_groupadd.8.xml:11 sss_userdel.8.xml:11 sss_groupdel.8.xml:11 -#: sss_groupshow.8.xml:11 sss_usermod.8.xml:11 sss_cache.8.xml:11 -#: sss_debuglevel.8.xml:11 -msgid "8" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupmod.8.xml:16 -msgid "modify a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupmod.8.xml:21 -msgid "" -"<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:30 sssd-ldap.5.xml:21 pam_sss.8.xml:44 -#: sssd_krb5_locator_plugin.8.xml:20 sssd-simple.5.xml:22 sssd-ipa.5.xml:21 -#: sssd.8.xml:29 sss_obfuscate.8.xml:30 sss_useradd.8.xml:30 -#: sssd-krb5.5.xml:21 sss_groupadd.8.xml:30 sss_userdel.8.xml:30 -#: sss_groupdel.8.xml:30 sss_groupshow.8.xml:30 sss_usermod.8.xml:30 -#: sss_cache.8.xml:29 sss_debuglevel.8.xml:30 sss_ssh_authorizedkeys.1.xml:30 -#: sss_ssh_knownhostsproxy.1.xml:31 -msgid "DESCRIPTION" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:32 -msgid "" -"<command>sss_groupmod</command> modifies the group to reflect the changes " -"that are specified on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:39 pam_sss.8.xml:51 sssd.8.xml:42 sss_obfuscate.8.xml:58 -#: sss_useradd.8.xml:39 sss_groupadd.8.xml:39 sss_userdel.8.xml:39 -#: sss_groupdel.8.xml:39 sss_groupshow.8.xml:39 sss_usermod.8.xml:39 -#: sss_cache.8.xml:38 sss_debuglevel.8.xml:38 sss_ssh_authorizedkeys.1.xml:78 -#: sss_ssh_knownhostsproxy.1.xml:65 -msgid "OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:43 sss_usermod.8.xml:77 -msgid "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:48 -msgid "" -"Append this group to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:57 sss_usermod.8.xml:91 -msgid "" -"<option>-r</option>,<option>--remove-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:62 -msgid "" -"Remove this group from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:72 sssd.conf.5.xml:1331 sssd-ldap.5.xml:2096 -#: pam_sss.8.xml:139 sssd_krb5_locator_plugin.8.xml:75 sssd-simple.5.xml:143 -#: sssd-ipa.5.xml:562 sssd.8.xml:191 sss_obfuscate.8.xml:103 -#: sss_useradd.8.xml:167 sssd-krb5.5.xml:451 sss_groupadd.8.xml:58 -#: sss_userdel.8.xml:93 sss_groupdel.8.xml:46 sss_groupshow.8.xml:58 -#: sss_usermod.8.xml:138 sss_ssh_authorizedkeys.1.xml:96 -#: sss_ssh_knownhostsproxy.1.xml:95 -msgid "SEE ALSO" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:74 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.conf.5.xml:10 sssd.conf.5.xml:16 -msgid "sssd.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sssd.conf.5.xml:11 sssd-ldap.5.xml:11 sssd-simple.5.xml:11 -#: sssd-ipa.5.xml:11 sssd-krb5.5.xml:11 -msgid "5" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><refmiscinfo> -#: sssd.conf.5.xml:12 sssd-ldap.5.xml:12 sssd-simple.5.xml:12 -#: sssd-ipa.5.xml:12 sssd-krb5.5.xml:12 -msgid "File Formats and Conventions" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.conf.5.xml:17 sssd-ldap.5.xml:17 sssd_krb5_locator_plugin.8.xml:16 -#: sssd-ipa.5.xml:17 sssd-krb5.5.xml:17 -msgid "the configuration file for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:21 -msgid "FILE FORMAT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:29 -#, no-wrap -msgid "" -" <replaceable>[section]</replaceable>\n" -" <replaceable>key</replaceable> = <replaceable>value</replaceable>\n" -" <replaceable>key2</replaceable> = <replaceable>value2,value3</replaceable>\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:24 -msgid "" -"The file has an ini-style syntax and consists of sections and parameters. A " -"section begins with the name of the section in square brackets and continues " -"until the next section begins. An example of section with single and multi-" -"valued parameters: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:36 -msgid "" -"The data types used are string (no quotes needed), integer and bool (with " -"values of <quote>TRUE/FALSE</quote>)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:41 -msgid "" -"A line comment starts with a hash sign (<quote>#</quote>) or a semicolon " -"(<quote>;</quote>)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:46 -msgid "" -"All sections can have an optional <replaceable>description</replaceable> " -"parameter. Its function is only as a label for the section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:52 -msgid "" -"<filename>sssd.conf</filename> must be a regular file, owned by root and " -"only root may read from or write to the file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:58 -msgid "SPECIAL SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:61 -msgid "The [sssd] section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><title> -#: sssd.conf.5.xml:70 sssd.conf.5.xml:1177 -msgid "Section parameters" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:72 -msgid "config_file_version (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:75 -msgid "" -"Indicates what is the syntax of the config file. SSSD 0.6.0 and later use " -"version 2." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:81 -msgid "services" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:84 -msgid "" -"Comma separated list of services that are started when sssd itself starts." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:88 -msgid "" -"Supported services: nss, pam <phrase condition=\"with_sudo\">, sudo</phrase>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:94 sssd.conf.5.xml:257 -msgid "reconnection_retries (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:97 sssd.conf.5.xml:260 -msgid "" -"Number of times services should attempt to reconnect in the event of a Data " -"Provider crash or restart before they give up" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:102 sssd.conf.5.xml:265 -msgid "Default: 3" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:107 -msgid "domains" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:110 -msgid "" -"A domain is a database containing user information. SSSD can use more " -"domains at the same time, but at least one must be configured or SSSD won't " -"start. This parameter described the list of domains in the order you want " -"them to be queried." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:120 -msgid "re_expression (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:123 -msgid "" -"Regular expression that describes how to parse the string containing user " -"name and domain into these components." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:127 -msgid "" -"Default: <quote>(?P<name>[^@]+)@?(?P<domain>[^@]*$)</quote> " -"which translates to \"the name is everything up to the <quote>@</quote> " -"sign, the domain everything after that\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:132 -msgid "" -"PLEASE NOTE: the support for non-unique named subpatterns is not available " -"on all platforms (e.g. RHEL5 and SLES10). Only platforms with libpcre " -"version 7 or higher can support non-unique named subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:139 -msgid "" -"PLEASE NOTE ALSO: older version of libpcre only support the Python syntax (?" -"P<name>) to label subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:146 -msgid "full_name_format (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:149 -msgid "" -"A <citerefentry> <refentrytitle>printf</refentrytitle> <manvolnum>3</" -"manvolnum> </citerefentry>-compatible format that describes how to translate " -"a (name, domain) tuple into a fully qualified name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:157 -msgid "Default: <quote>%1$s@%2$s</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:162 -msgid "try_inotify (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:165 -msgid "" -"SSSD monitors the state of resolv.conf to identify when it needs to update " -"its internal DNS resolver. By default, we will attempt to use inotify for " -"this, and will fall back to polling resolv.conf every five seconds if " -"inotify cannot be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:173 -msgid "" -"There are some limited situations where it is preferred that we should skip " -"even trying to use inotify. In these rare cases, this option should be set " -"to 'false'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:179 -msgid "" -"Default: true on platforms where inotify is supported. False on other " -"platforms." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:183 -msgid "" -"Note: this option will have no effect on platforms where inotify is " -"unavailable. On these platforms, polling will always be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:190 -msgid "krb5_rcache_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:193 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:197 -msgid "" -"This option accepts a special value __LIBKRB5_DEFAULTS__ that will instruct " -"SSSD to let libkrb5 decide the appropriate location for the replay cache." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:203 -msgid "" -"Default: Distribution-specific and specified at build-time. " -"(__LIBKRB5_DEFAULTS__ if not configured)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:63 -msgid "" -"Individual pieces of SSSD functionality are provided by special SSSD " -"services that are started and stopped together with SSSD. The services are " -"managed by a special service frequently called <quote>monitor</quote>. The " -"<quote>[sssd]</quote> section is used to configure the monitor as well as " -"some other important options like the identity domains. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:216 -msgid "SERVICES SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:218 -msgid "" -"Settings that can be used to configure different services are described in " -"this section. They should reside in the [<replaceable>$NAME</replaceable>] " -"section, for example, for NSS service, the section would be <quote>[nss]</" -"quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:225 -msgid "General service configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:227 -msgid "These options can be used to configure any service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:231 -msgid "debug_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:235 -msgid "debug_timestamps (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:238 -msgid "Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:241 sssd.conf.5.xml:376 sssd-ldap.5.xml:1328 -#: sssd-ldap.5.xml:1446 sssd-ipa.5.xml:206 sssd-ipa.5.xml:241 -msgid "Default: true" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:246 -msgid "debug_microseconds (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:249 -msgid "Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:252 sssd.conf.5.xml:641 sssd-ldap.5.xml:602 -#: sssd-ldap.5.xml:1260 sssd-ldap.5.xml:1397 sssd-ldap.5.xml:1795 -#: sssd-ipa.5.xml:123 sssd-ipa.5.xml:301 sssd-krb5.5.xml:235 -#: sssd-krb5.5.xml:269 sssd-krb5.5.xml:418 -msgid "Default: false" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:270 -msgid "command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:273 -msgid "" -"By default, the executable representing this service is called <command>sssd_" -"${service_name}</command>. This directive allows to change the executable " -"name for the service. In the vast majority of configurations, the default " -"values should suffice." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:281 -msgid "Default: <command>sssd_${service_name}</command>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:289 -msgid "NSS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:291 -msgid "" -"These options can be used to configure the Name Service Switch (NSS) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:296 -msgid "enum_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:299 -msgid "" -"How many seconds should nss_sss cache enumerations (requests for info about " -"all users)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:303 -msgid "Default: 120" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:308 -msgid "entry_cache_nowait_percentage (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:311 -msgid "" -"The entry cache can be set to automatically update entries in the background " -"if they are requested beyond a percentage of the entry_cache_timeout value " -"for the domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:317 -msgid "" -"For example, if the domain's entry_cache_timeout is set to 30s and " -"entry_cache_nowait_percentage is set to 50 (percent), entries that come in " -"after 15 seconds past the last cache update will be returned immediately, " -"but the SSSD will go and update the cache on its own, so that future " -"requests will not need to block waiting for a cache update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:327 -msgid "" -"Valid values for this option are 0-99 and represent a percentage of the " -"entry_cache_timeout for each domain. For performance reasons, this " -"percentage will never reduce the nowait timeout to less than 10 seconds. (0 " -"disables this feature)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:335 -msgid "Default: 50" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:340 -msgid "entry_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:343 -msgid "" -"Specifies for how many seconds nss_sss should cache negative cache hits " -"(that is, queries for invalid database entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:349 sssd.conf.5.xml:669 sssd-krb5.5.xml:223 -msgid "Default: 15" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:354 -msgid "filter_users, filter_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:357 -msgid "" -"Exclude certain users from being fetched from the sss NSS database. This is " -"particularly useful for system accounts. This option can also be set per-" -"domain or include fully-qualified names to filter only users from the " -"particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:364 -msgid "Default: root" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:369 -msgid "filter_users_in_groups (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:372 -msgid "" -"If you want filtered user still be group members set this option to false." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:381 -msgid "override_homedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:390 sssd-krb5.5.xml:166 -msgid "%u" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:391 sssd-krb5.5.xml:167 -msgid "login name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:394 sssd-krb5.5.xml:170 -msgid "%U" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:395 -msgid "UID number" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:398 sssd-krb5.5.xml:188 -msgid "%d" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:399 -msgid "domain name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:402 -msgid "%f" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:403 -msgid "fully qualified user name (user@domain)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:406 sssd-krb5.5.xml:200 -msgid "%%" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:407 sssd-krb5.5.xml:201 -msgid "a literal '%'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:384 -msgid "" -"Override the user's home directory. You can either provide an absolute value " -"or a template. In the template, the following sequences are substituted: " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:413 -msgid "This option can also be set per-domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:418 -msgid "allowed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:421 -msgid "" -"Restrict user shell to one of the listed values. The order of evaluation is:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:424 -msgid "1. If the shell is present in <quote>/etc/shells</quote>, it is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:428 -msgid "" -"2. If the shell is in the allowed_shells list but not in <quote>/etc/shells</" -"quote>, use the value of the shell_fallback parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:433 -msgid "" -"3. If the shell is not in the allowed_shells list and not in <quote>/etc/" -"shells</quote>, a nologin shell is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:438 -msgid "An empty string for shell is passed as-is to libc." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:441 -msgid "" -"The <quote>/etc/shells</quote> is only read on SSSD start up, which means " -"that a restart of the SSSD is required in case a new shell is installed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:445 -msgid "Default: Not set. The user shell is automatically used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:450 -msgid "vetoed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:453 -msgid "Replace any instance of these shells with the shell_fallback" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:458 -msgid "shell_fallback (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:461 -msgid "" -"The default shell to use if an allowed shell is not installed on the machine." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:465 -msgid "Default: /bin/sh" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:472 -msgid "PAM configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:474 -msgid "" -"These options can be used to configure the Pluggable Authentication Module " -"(PAM) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:479 -msgid "offline_credentials_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:482 -msgid "" -"If the authentication provider is offline, how long should we allow cached " -"logins (in days since the last successful online login)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:487 sssd.conf.5.xml:500 -msgid "Default: 0 (No limit)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:493 -msgid "offline_failed_login_attempts (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:496 -msgid "" -"If the authentication provider is offline, how many failed login attempts " -"are allowed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:506 -msgid "offline_failed_login_delay (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:509 -msgid "" -"The time in minutes which has to pass after offline_failed_login_attempts " -"has been reached before a new login attempt is possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:514 -msgid "" -"If set to 0 the user cannot authenticate offline if " -"offline_failed_login_attempts has been reached. Only a successful online " -"authentication can enable offline authentication again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:520 sssd.conf.5.xml:573 sssd.conf.5.xml:1093 -msgid "Default: 5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:526 -msgid "pam_verbosity (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:529 -msgid "" -"Controls what kind of messages are shown to the user during authentication. " -"The higher the number to more messages are displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:534 -msgid "Currently sssd supports the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:537 -msgid "<emphasis>0</emphasis>: do not show any message" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:540 -msgid "<emphasis>1</emphasis>: show only important messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:544 -msgid "<emphasis>2</emphasis>: show informational messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:547 -msgid "<emphasis>3</emphasis>: show all messages and debug information" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:551 sssd.8.xml:63 -msgid "Default: 1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:556 -msgid "pam_id_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:559 -msgid "" -"For any PAM request while SSSD is online, the SSSD will attempt to " -"immediately update the cached identity information for the user in order to " -"ensure that authentication takes place with the latest information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:565 -msgid "" -"A complete PAM conversation may perform multiple PAM requests, such as " -"account management and session opening. This option controls (on a per-" -"client-application basis) how long (in seconds) we can cache the identity " -"information to avoid excessive round-trips to the identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:579 -msgid "pam_pwd_expiration_warning (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:582 -msgid "Display a warning N days before the password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:585 -msgid "" -"Please note that the backend server has to provide information about the " -"expiration time of the password. If this information is missing, sssd " -"cannot display a warning." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:591 -msgid "Default: 7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:599 -msgid "SUDO configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:601 -msgid "These options can be used to configure the sudo service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:608 -msgid "sudo_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:611 -msgid "" -"For any sudo request that comes while SSSD is online, the SSSD will attempt " -"to update the cached rules in order to ensure that sudo has the latest " -"ruleset." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:617 -msgid "" -"The user may, however, run a couple of sudo commands successively, which " -"would trigger multiple LDAP requests. In order to speed up this use-case, " -"the sudo service maintains an in-memory cache that would be used for " -"performing fast replies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:624 -msgid "" -"This option controls how long (in seconds) can the sudo service cache rules " -"for a user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:628 -msgid "Default: 180" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:633 -msgid "sudo_timed (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:636 -msgid "" -"Whether or not to evaluate the sudoNotBefore and sudoNotAfter attributes " -"that implement time-dependent sudoers entries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:649 -msgid "AUTOFS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:651 -msgid "These options can be used to configure the autofs service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:659 -msgid "autofs_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:662 -msgid "" -"Specifies for how many seconds should the autofs responder negative cache " -"hits (that is, queries for invalid map entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:679 -msgid "DOMAIN SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:686 -msgid "min_id,max_id (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:689 -msgid "" -"UID and GID limits for the domain. If a domain contains an entry that is " -"outside these limits, it is ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:694 -msgid "" -"For users, this affects the primary GID limit. The user will not be returned " -"to NSS if either the UID or the primary GID is outside the range. For non-" -"primary group memberships, those that are in range will be reported as " -"expected." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:701 -msgid "Default: 1 for min_id, 0 (no limit) for max_id" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:707 -msgid "timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:710 -msgid "" -"Timeout in seconds between heartbeats for this domain. This is used to " -"ensure that the backend process is alive and capable of answering requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:715 sssd-ldap.5.xml:1131 -msgid "Default: 10" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:721 -msgid "enumerate (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:724 -msgid "" -"Determines if a domain can be enumerated. This parameter can have one of the " -"following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:728 -msgid "TRUE = Users and groups are enumerated" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:731 -msgid "FALSE = No enumerations for this domain" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:734 sssd.conf.5.xml:839 sssd.conf.5.xml:893 -msgid "Default: FALSE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:737 -msgid "" -"Note: Enabling enumeration has a moderate performance impact on SSSD while " -"enumeration is running. It may take up to several minutes after SSSD startup " -"to fully complete enumerations. During this time, individual requests for " -"information will go directly to LDAP, though it may be slow, due to the " -"heavy enumeration processing." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:747 -msgid "" -"While the first enumeration is running, requests for the complete user or " -"group lists may return no results until it completes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:752 -msgid "" -"Further, enabling enumeration may increase the time necessary to detect " -"network disconnection, as longer timeouts are required to ensure that " -"enumeration lookups are completed successfully. For more information, refer " -"to the man pages for the specific id_provider in use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:763 -msgid "entry_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:766 -msgid "" -"How many seconds should nss_sss consider entries valid before asking the " -"backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:770 -msgid "Default: 5400" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:776 -msgid "entry_cache_user_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:779 -msgid "" -"How many seconds should nss_sss consider user entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:783 sssd.conf.5.xml:796 sssd.conf.5.xml:809 -#: sssd.conf.5.xml:822 -msgid "Default: entry_cache_timeout" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:789 -msgid "entry_cache_group_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:792 -msgid "" -"How many seconds should nss_sss consider group entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:802 -msgid "entry_cache_netgroup_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:805 -msgid "" -"How many seconds should nss_sss consider netgroup entries valid before " -"asking the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:815 -msgid "entry_cache_service_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:818 -msgid "" -"How many seconds should nss_sss consider service entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:828 -msgid "cache_credentials (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:831 -msgid "Determines if user credentials are also cached in the local LDB cache" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:835 -msgid "User credentials are stored in a SHA512 hash, not in plaintext" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:844 -msgid "account_cache_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:847 -msgid "" -"Number of days entries are left in cache after last successful login before " -"being removed during a cleanup of the cache. 0 means keep forever. The " -"value of this parameter must be greater than or equal to " -"offline_credentials_expiration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:854 -msgid "Default: 0 (unlimited)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:860 -msgid "id_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:863 -msgid "The Data Provider identity backend to use for this domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:867 -msgid "Supported backends:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:870 -msgid "proxy: Support a legacy NSS provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:873 -msgid "local: SSSD internal local provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:876 -msgid "ldap: LDAP provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:882 -msgid "use_fully_qualified_names (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:885 -msgid "" -"If set to TRUE, all requests to this domain must use fully qualified names. " -"For example, if used in LOCAL domain that contains a \"test\" user, " -"<command>getent passwd test</command> wouldn't find the user while " -"<command>getent passwd test@LOCAL</command> would." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:898 -msgid "auth_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:901 -msgid "" -"The authentication provider used for the domain. Supported auth providers " -"are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:905 -msgid "" -"<quote>ldap</quote> for native LDAP authentication. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:912 -msgid "" -"<quote>krb5</quote> for Kerberos authentication. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:919 -msgid "" -"<quote>proxy</quote> for relaying authentication to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:922 -msgid "<quote>none</quote> disables authentication explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:925 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"authentication requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:931 -msgid "access_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:934 -msgid "" -"The access control provider used for the domain. There are two built-in " -"access providers (in addition to any included in installed backends) " -"Internal special providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:940 -msgid "<quote>permit</quote> always allow access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:943 -msgid "<quote>deny</quote> always deny access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:946 -msgid "" -"<quote>simple</quote> access control based on access or deny lists. See " -"<citerefentry> <refentrytitle>sssd-simple</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry> for more information on configuring the simple " -"access module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:953 -msgid "Default: <quote>permit</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:958 -msgid "chpass_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:961 -msgid "" -"The provider which should handle change password operations for the domain. " -"Supported change password providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:966 -msgid "" -"<quote>ipa</quote> to change a password stored in an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:974 -msgid "" -"<quote>ldap</quote> to change a password stored in a LDAP server. See " -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:982 -msgid "" -"<quote>krb5</quote> to change the Kerberos password. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:990 -msgid "" -"<quote>proxy</quote> for relaying password changes to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:994 -msgid "<quote>none</quote> disallows password changes explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:997 -msgid "" -"Default: <quote>auth_provider</quote> is used if it is set and can handle " -"change password requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1004 -msgid "sudo_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1010 -msgid "The SUDO provider used for the domain. Supported SUDO providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1014 -msgid "" -"<quote>ldap</quote> for rules stored in LDAP. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1021 -msgid "<quote>none</quote> disables SUDO explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1024 -msgid "Default: The value of <quote>id_provider</quote> is used if it is set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1030 -msgid "session_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1033 -msgid "" -"The provider which should handle loading of session settings. Supported " -"session providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1038 -msgid "" -"<quote>ipa</quote> to load session settings from an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1046 -msgid "<quote>none</quote> disallows fetching session settings explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1049 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"session loading requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1056 -msgid "lookup_family_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1059 -msgid "" -"Provides the ability to select preferred address family to use when " -"performing DNS lookups." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1063 -msgid "Supported values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1066 -msgid "ipv4_first: Try looking up IPv4 address, if that fails, try IPv6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1069 -msgid "ipv4_only: Only attempt to resolve hostnames to IPv4 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1072 -msgid "ipv6_first: Try looking up IPv6 address, if that fails, try IPv4" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1075 -msgid "ipv6_only: Only attempt to resolve hostnames to IPv6 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1078 -msgid "Default: ipv4_first" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1084 -msgid "dns_resolver_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1087 -msgid "" -"Defines the amount of time (in seconds) to wait for a reply from the DNS " -"resolver before assuming that it is unreachable. If this timeout is reached, " -"the domain will continue to operate in offline mode." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1099 -msgid "dns_discovery_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1102 -msgid "" -"If service discovery is used in the back end, specifies the domain part of " -"the service discovery DNS query." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1106 -msgid "Default: Use the domain part of machine's hostname" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1112 -msgid "override_gid (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1115 -msgid "Override the primary GID value with the one specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1121 -msgid "case_sensitive (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1124 -msgid "" -"Treat user and group names as case sensitive. At the moment, this option is " -"not supported in the local provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1129 -msgid "Default: True" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:681 -msgid "" -"These configuration options can be present in a domain configuration " -"section, that is, in a section called <quote>[domain/<replaceable>NAME</" -"replaceable>]</quote> <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1141 -msgid "proxy_pam_target (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1144 -msgid "The proxy target PAM proxies to." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1147 -msgid "" -"Default: not set by default, you have to take an existing pam configuration " -"or create a new one and add the service name here." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1155 -msgid "proxy_lib_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1158 -msgid "" -"The name of the NSS library to use in proxy domains. The NSS functions " -"searched for in the library are in the form of _nss_$(libName)_$(function), " -"for example _nss_files_getpwent." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1137 -msgid "" -"Options valid for proxy domains. <placeholder type=\"variablelist\" id=" -"\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:1170 -msgid "The local domain section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:1172 -msgid "" -"This section contains settings for domain that stores users and groups in " -"SSSD native database, that is, a domain that uses " -"<replaceable>id_provider=local</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1179 -msgid "default_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1182 -msgid "The default shell for users created with SSSD userspace tools." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1186 -msgid "Default: <filename>/bin/bash</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1191 -msgid "base_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1194 -msgid "" -"The tools append the login name to <replaceable>base_directory</replaceable> " -"and use that as the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1199 -msgid "Default: <filename>/home</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1204 -msgid "create_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1207 -msgid "" -"Indicate if a home directory should be created by default for new users. " -"Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1211 sssd.conf.5.xml:1223 -msgid "Default: TRUE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1216 -msgid "remove_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1219 -msgid "" -"Indicate if a home directory should be removed by default for deleted " -"users. Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1228 -msgid "homedir_umask (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1231 -msgid "" -"Used by <citerefentry> <refentrytitle>sss_useradd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry> to specify the default permissions " -"on a newly created home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1239 -msgid "Default: 077" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1244 -msgid "skel_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1247 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<citerefentry> <refentrytitle>sss_useradd</refentrytitle> <manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1257 -msgid "Default: <filename>/etc/skel</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1262 -msgid "mail_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1265 -msgid "" -"The mail spool directory. This is needed to manipulate the mailbox when its " -"corresponding user account is modified or deleted. If not specified, a " -"default value is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1272 -msgid "Default: <filename>/var/mail</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1277 -msgid "userdel_cmd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1280 -msgid "" -"The command that is run after a user is removed. The command us passed the " -"username of the user being removed as the first and only parameter. The " -"return code of the command is not taken into account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1286 -msgid "Default: None, no command is run" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:1296 sssd-ldap.5.xml:2064 sssd-simple.5.xml:126 -#: sssd-ipa.5.xml:544 sssd-krb5.5.xml:432 -msgid "EXAMPLE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:1302 -#, no-wrap -msgid "" -"[sssd]\n" -"domains = LDAP\n" -"services = nss, pam\n" -"config_file_version = 2\n" -"\n" -"[nss]\n" -"filter_groups = root\n" -"filter_users = root\n" -"\n" -"[pam]\n" -"\n" -"[domain/LDAP]\n" -"id_provider = ldap\n" -"ldap_uri = ldap://ldap.example.com\n" -"ldap_search_base = dc=example,dc=com\n" -"\n" -"auth_provider = krb5\n" -"krb5_server = kerberos.example.com\n" -"krb5_realm = EXAMPLE.COM\n" -"cache_credentials = true\n" -"\n" -"min_id = 10000\n" -"max_id = 20000\n" -"enumerate = False\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1298 -msgid "" -"The following example shows a typical SSSD config. It does not describe " -"configuration of the domains themselves - refer to documentation on " -"configuring domains for more details. <placeholder type=\"programlisting\" " -"id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1333 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>pam_sss</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ldap.5.xml:10 sssd-ldap.5.xml:16 -msgid "sssd-ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:23 -msgid "" -"This manual page describes the configuration of LDAP domains for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. Refer to the <quote>FILE FORMAT</quote> section of the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for detailed syntax information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:35 -msgid "You can configure SSSD to use more than one LDAP domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:38 -msgid "" -"LDAP back end supports id, auth, access and chpass providers. If you want to " -"authenticate against an LDAP server either TLS/SSL or LDAPS is required. " -"<command>sssd</command> <emphasis>does not</emphasis> support authentication " -"over an unencrypted channel. If the LDAP server is used only as an identity " -"provider, an encrypted channel is not needed. Please refer to " -"<quote>ldap_access_filter</quote> config option for more information about " -"using LDAP as an access provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:49 sssd-simple.5.xml:69 sssd-ipa.5.xml:64 -#: sssd-krb5.5.xml:63 -msgid "CONFIGURATION OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:60 -msgid "ldap_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:63 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference. Refer to the <quote>FAILOVER</" -"quote> section for more information on failover and server redundancy. If " -"not specified, service discovery is enabled. For more information, refer to " -"the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:70 -msgid "The format of the URI must match the format defined in RFC 2732:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:73 -msgid "ldap[s]://<host>[:port]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:76 -msgid "" -"For explicit IPv6 addresses, <host> must be enclosed in brackets []" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:79 -msgid "example: ldap://[fc00::126:25]:389" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:85 -msgid "ldap_chpass_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:88 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference to change the password of a user. " -"Refer to the <quote>FAILOVER</quote> section for more information on " -"failover and server redundancy." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:95 -msgid "To enable service discovery ldap_chpass_dns_service_name must be set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:99 -msgid "Default: empty, i.e. ldap_uri is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:105 -msgid "ldap_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:108 -msgid "The default base DN to use for performing LDAP user operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:112 -msgid "" -"Starting with SSSD 1.7.0, SSSD supports multiple search bases using the " -"syntax:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:116 -msgid "search_base[?scope?[filter][?search_base?scope?[filter]]*]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:119 -msgid "The scope can be one of \"base\", \"onelevel\" or \"subtree\"." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:122 -msgid "" -"The filter must be a valid LDAP search filter as specified by http://www." -"ietf.org/rfc/rfc2254.txt" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:126 -msgid "Examples:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:129 -msgid "" -"ldap_search_base = dc=example,dc=com (which is equivalent to) " -"ldap_search_base = dc=example,dc=com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:134 -msgid "" -"ldap_search_base = cn=host_specific,dc=example,dc=com?subtree?" -"(host=thishost)?dc=example.com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:137 -msgid "" -"Note: It is unsupported to have multiple search bases which reference " -"identically-named objects (for example, groups with the same name in two " -"different search bases). This will lead to unpredictable behavior on client " -"machines." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:144 -msgid "" -"Default: If not set, the value of the defaultNamingContext or namingContexts " -"attribute from the RootDSE of the LDAP server is used. If " -"defaultNamingContext does not exists or has an empty value namingContexts is " -"used. The namingContexts attribute must have a single value with the DN of " -"the search base of the LDAP server to make this work. Multiple values are " -"are not supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:158 -msgid "ldap_schema (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:161 -msgid "" -"Specifies the Schema Type in use on the target LDAP server. Depending on " -"the selected schema, the default attribute names retrieved from the servers " -"may vary. The way that some attributes are handled may also differ. Three " -"schema types are currently supported: rfc2307 rfc2307bis IPA The main " -"difference between these schema types is how group memberships are recorded " -"in the server. With rfc2307, group members are listed by name in the " -"<emphasis>memberUid</emphasis> attribute. With rfc2307bis and IPA, group " -"members are listed by DN and stored in the <emphasis>member</emphasis> " -"attribute." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:180 -msgid "Default: rfc2307" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:186 -msgid "ldap_default_bind_dn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:189 -msgid "The default bind DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:196 -msgid "ldap_default_authtok_type (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:199 -msgid "The type of the authentication token of the default bind DN." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:203 -msgid "The two mechanisms currently supported are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:206 -msgid "password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:209 -msgid "obfuscated_password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:212 -msgid "Default: password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:218 -msgid "ldap_default_authtok (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:221 -msgid "" -"The authentication token of the default bind DN. Only clear text passwords " -"are currently supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:228 -msgid "ldap_user_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:231 -msgid "The object class of a user entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:234 -msgid "Default: posixAccount" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:240 -msgid "ldap_user_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:243 -msgid "The LDAP attribute that corresponds to the user's login name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:247 -msgid "Default: uid" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:253 -msgid "ldap_user_uid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:256 -msgid "The LDAP attribute that corresponds to the user's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:260 -msgid "Default: uidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:266 -msgid "ldap_user_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:269 -msgid "The LDAP attribute that corresponds to the user's primary group id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:273 sssd-ldap.5.xml:740 -msgid "Default: gidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:279 -msgid "ldap_user_gecos (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:282 -msgid "The LDAP attribute that corresponds to the user's gecos field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:286 -msgid "Default: gecos" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:292 -msgid "ldap_user_home_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:295 -msgid "The LDAP attribute that contains the name of the user's home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:299 -msgid "Default: homeDirectory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:305 -msgid "ldap_user_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:308 -msgid "The LDAP attribute that contains the path to the user's default shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:312 -msgid "Default: loginShell" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:318 -msgid "ldap_user_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:321 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP user object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:325 sssd-ldap.5.xml:766 sssd-ldap.5.xml:878 -msgid "Default: nsUniqueId" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:331 -msgid "ldap_user_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:334 sssd-ldap.5.xml:775 sssd-ldap.5.xml:887 -msgid "" -"The LDAP attribute that contains timestamp of the last modification of the " -"parent object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:338 sssd-ldap.5.xml:779 sssd-ldap.5.xml:894 -msgid "Default: modifyTimestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:344 -msgid "ldap_user_shadow_last_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:347 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (date of " -"the last password change)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:357 -msgid "Default: shadowLastChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:363 -msgid "ldap_user_shadow_min (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:366 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (minimum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:375 -msgid "Default: shadowMin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:381 -msgid "ldap_user_shadow_max (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:384 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (maximum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:393 -msgid "Default: shadowMax" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:399 -msgid "ldap_user_shadow_warning (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:402 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password warning period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:412 -msgid "Default: shadowWarning" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:418 -msgid "ldap_user_shadow_inactive (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:421 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password inactivity period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:431 -msgid "Default: shadowInactive" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:437 -msgid "ldap_user_shadow_expire (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:440 -msgid "" -"When using ldap_pwd_policy=shadow or ldap_account_expire_policy=shadow, this " -"parameter contains the name of an LDAP attribute corresponding to its " -"<citerefentry> <refentrytitle>shadow</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> counterpart (account expiration date)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:450 -msgid "Default: shadowExpire" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:456 -msgid "ldap_user_krb_last_pwd_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:459 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time of last password change in " -"kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:465 -msgid "Default: krbLastPwdChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:471 -msgid "ldap_user_krb_password_expiration (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:474 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time when current password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:480 -msgid "Default: krbPasswordExpiration" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:486 -msgid "ldap_user_ad_account_expires (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:489 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the expiration time of the account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:494 -msgid "Default: accountExpires" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:500 -msgid "ldap_user_ad_user_account_control (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:503 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the user account control bit field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:508 -msgid "Default: userAccountControl" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:514 -msgid "ldap_ns_account_lock (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:517 -msgid "" -"When using ldap_account_expire_policy=rhds or equivalent, this parameter " -"determines if access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:522 -msgid "Default: nsAccountLock" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:528 -msgid "ldap_user_nds_login_disabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:531 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines if " -"access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:535 sssd-ldap.5.xml:549 -msgid "Default: loginDisabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:541 -msgid "ldap_user_nds_login_expiration_time (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:544 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines until " -"which date access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:555 -msgid "ldap_user_nds_login_allowed_time_map (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:558 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines the " -"hours of a day in a week when access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:563 -msgid "Default: loginAllowedTimeMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:569 -msgid "ldap_user_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:572 -msgid "" -"The LDAP attribute that contains the user's Kerberos User Principal Name " -"(UPN)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:576 -msgid "Default: krbPrincipalName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:582 -msgid "ldap_user_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:585 -msgid "The LDAP attribute that contains the user's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:592 -msgid "ldap_force_upper_case_realm (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:595 -msgid "" -"Some directory servers, for example Active Directory, might deliver the " -"realm part of the UPN in lower case, which might cause the authentication to " -"fail. Set this option to a non-zero value if you want to use an upper-case " -"realm." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:608 -msgid "ldap_enumeration_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:611 -msgid "" -"Specifies how many seconds SSSD has to wait before refreshing its cache of " -"enumerated records." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:616 sssd-ldap.5.xml:1808 -msgid "Default: 300" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:622 -msgid "ldap_purge_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:625 -msgid "" -"Determine how often to check the cache for inactive entries (such as groups " -"with no members and users who have never logged in) and remove them to save " -"space." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:631 -msgid "Setting this option to zero will disable the cache cleanup operation." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:635 -msgid "Default: 10800 (12 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:641 -msgid "ldap_user_fullname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:644 -msgid "The LDAP attribute that corresponds to the user's full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:648 sssd-ldap.5.xml:727 sssd-ldap.5.xml:828 -#: sssd-ldap.5.xml:919 sssd-ldap.5.xml:1663 sssd-ldap.5.xml:1881 -#: sssd-ipa.5.xml:422 -msgid "Default: cn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:654 -msgid "ldap_user_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:657 -msgid "The LDAP attribute that lists the user's group memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:661 sssd-ipa.5.xml:326 -msgid "Default: memberOf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:667 -msgid "ldap_user_authorized_service (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:670 -msgid "" -"If access_provider=ldap and ldap_access_order=authorized_service, SSSD will " -"use the presence of the authorizedService attribute in the user's LDAP entry " -"to determine access privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:677 -msgid "" -"An explicit deny (!svc) is resolved first. Second, SSSD searches for " -"explicit allow (svc) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:682 -msgid "Default: authorizedService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:688 -msgid "ldap_user_authorized_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:691 -msgid "" -"If access_provider=ldap and ldap_access_order=host, SSSD will use the " -"presence of the host attribute in the user's LDAP entry to determine access " -"privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:697 -msgid "" -"An explicit deny (!host) is resolved first. Second, SSSD searches for " -"explicit allow (host) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:702 -msgid "Default: host" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:708 -msgid "ldap_group_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:711 -msgid "The object class of a group entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:714 -msgid "Default: posixGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:720 -msgid "ldap_group_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:723 -msgid "The LDAP attribute that corresponds to the group name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:733 -msgid "ldap_group_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:736 -msgid "The LDAP attribute that corresponds to the group's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:746 -msgid "ldap_group_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:749 -msgid "The LDAP attribute that contains the names of the group's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:753 -msgid "Default: memberuid (rfc2307) / member (rfc2307bis)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:759 -msgid "ldap_group_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:762 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP group object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:772 -msgid "ldap_group_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:785 -msgid "ldap_group_nesting_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:788 -msgid "" -"If ldap_schema is set to a schema format that supports nested groups (e.g. " -"RFC2307bis), then this option controls how many levels of nesting SSSD will " -"follow. This option has no effect on the RFC2307 schema." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:795 -msgid "Default: 2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:801 -msgid "ldap_netgroup_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:804 -msgid "The object class of a netgroup entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:807 -msgid "In IPA provider, ipa_netgroup_object_class should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:811 -msgid "Default: nisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:817 -msgid "ldap_netgroup_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:820 -msgid "The LDAP attribute that corresponds to the netgroup name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:824 -msgid "In IPA provider, ipa_netgroup_name should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:834 -msgid "ldap_netgroup_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:837 -msgid "The LDAP attribute that contains the names of the netgroup's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:841 -msgid "In IPA provider, ipa_netgroup_member should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:845 -msgid "Default: memberNisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:851 -msgid "ldap_netgroup_triple (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:854 -msgid "" -"The LDAP attribute that contains the (host, user, domain) netgroup triples." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:858 sssd-ldap.5.xml:891 -msgid "This option is not available in IPA provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:861 -msgid "Default: nisNetgroupTriple" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:867 -msgid "ldap_netgroup_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:870 -msgid "" -"The LDAP attribute that contains the UUID/GUID of an LDAP netgroup object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:874 -msgid "In IPA provider, ipa_netgroup_uuid should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:884 -msgid "ldap_netgroup_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:900 -msgid "ldap_service_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:903 -msgid "The object class of a service entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:906 -msgid "Default: ipService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:912 -msgid "ldap_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:915 -msgid "" -"The LDAP attribute that contains the name of service attributes and their " -"aliases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:925 -msgid "ldap_service_port (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:928 -msgid "The LDAP attribute that contains the port managed by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:932 -msgid "Default: ipServicePort" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:938 -msgid "ldap_service_proto (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:941 -msgid "" -"The LDAP attribute that contains the protocols understood by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:945 -msgid "Default: ipServiceProtocol" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:951 -msgid "ldap_service_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:954 -msgid "An optional base DN to restrict service searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:958 sssd-ldap.5.xml:1918 sssd-ldap.5.xml:1937 -#: sssd-ldap.5.xml:1956 sssd-ldap.5.xml:2019 sssd-ldap.5.xml:2041 -#: sssd-ipa.5.xml:163 sssd-ipa.5.xml:187 -msgid "" -"See <quote>ldap_search_base</quote> for information about configuring " -"multiple search bases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:963 sssd-ldap.5.xml:1923 sssd-ldap.5.xml:1942 -#: sssd-ldap.5.xml:1961 sssd-ldap.5.xml:2024 sssd-ldap.5.xml:2046 -#: sssd-ipa.5.xml:173 sssd-ipa.5.xml:192 -msgid "Default: the value of <emphasis>ldap_search_base</emphasis>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:970 -msgid "ldap_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:973 -msgid "" -"Specifies the timeout (in seconds) that ldap searches are allowed to run " -"before they are cancelled and cached results are returned (and offline mode " -"is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:979 -msgid "" -"Note: this option is subject to change in future versions of the SSSD. It " -"will likely be replaced at some point by a series of timeouts for specific " -"lookup types." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:985 sssd-ldap.5.xml:1027 sssd-ldap.5.xml:1042 -msgid "Default: 6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:991 -msgid "ldap_enumeration_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:994 -msgid "" -"Specifies the timeout (in seconds) that ldap searches for user and group " -"enumerations are allowed to run before they are cancelled and cached results " -"are returned (and offline mode is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1001 -msgid "Default: 60" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1007 -msgid "ldap_network_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1010 -msgid "" -"Specifies the timeout (in seconds) after which the <citerefentry> " -"<refentrytitle>poll</refentrytitle> <manvolnum>2</manvolnum> </citerefentry>/" -"<citerefentry> <refentrytitle>select</refentrytitle> <manvolnum>2</" -"manvolnum> </citerefentry> following a <citerefentry> " -"<refentrytitle>connect</refentrytitle> <manvolnum>2</manvolnum> </" -"citerefentry> returns in case of no activity." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1033 -msgid "ldap_opt_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1036 -msgid "" -"Specifies a timeout (in seconds) after which calls to synchronous LDAP APIs " -"will abort if no response is received. Also controls the timeout when " -"communicating with the KDC in case of SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1048 -msgid "ldap_connection_expire_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1051 -msgid "" -"Specifies a timeout (in seconds) that a connection to an LDAP server will be " -"maintained. After this time, the connection will be re-established. If used " -"in parallel with SASL/GSSAPI, the sooner of the two values (this value vs. " -"the TGT lifetime) will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1059 -msgid "Default: 900 (15 minutes)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1065 -msgid "ldap_page_size (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1068 -msgid "" -"Specify the number of records to retrieve from LDAP in a single request. " -"Some LDAP servers enforce a maximum limit per-request." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1073 -msgid "Default: 1000" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1079 -msgid "ldap_disable_paging" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1082 -msgid "" -"Disable the LDAP paging control. This option should be used if the LDAP " -"server reports that it supports the LDAP paging control in its RootDSE but " -"it is not enabled or does not behave properly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1088 -msgid "" -"Example: OpenLDAP servers with the paging control module installed on the " -"server but not enabled will report it in the RootDSE but be unable to use it." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1094 -msgid "" -"Example: 389 DS has a bug where it can only support a one paging control at " -"a time on a single connection. On busy clients, this can result in some " -"requests being denied." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1103 -msgid "ldap_deref_threshold (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1106 -msgid "" -"Specify the number of group members that must be missing from the internal " -"cache in order to trigger a dereference lookup. If less members are missing, " -"they are looked up individually." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1112 -msgid "" -"You can turn off dereference lookups completely by setting the value to 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1116 -msgid "" -"A dereference lookup is a means of fetching all group members in a single " -"LDAP call. Different LDAP servers may implement different dereference " -"methods. The currently supported servers are 389/RHDS, OpenLDAP and Active " -"Directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1124 -msgid "" -"<emphasis>Note:</emphasis> If any of the search bases specifies a search " -"filter, then the dereference lookup performance enhancement will be disabled " -"regardless of this setting." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1137 -msgid "ldap_tls_reqcert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1140 -msgid "" -"Specifies what checks to perform on server certificates in a TLS session, if " -"any. It can be specified as one of the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1146 -msgid "" -"<emphasis>never</emphasis> = The client will not request or check any server " -"certificate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1150 -msgid "" -"<emphasis>allow</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, it will be ignored and the session proceeds normally." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1157 -msgid "" -"<emphasis>try</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, the session is immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1163 -msgid "" -"<emphasis>demand</emphasis> = The server certificate is requested. If no " -"certificate is provided, or a bad certificate is provided, the session is " -"immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1169 -msgid "<emphasis>hard</emphasis> = Same as <quote>demand</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1173 -msgid "Default: hard" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1179 -msgid "ldap_tls_cacert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1182 -msgid "" -"Specifies the file that contains certificates for all of the Certificate " -"Authorities that <command>sssd</command> will recognize." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1187 sssd-ldap.5.xml:1205 sssd-ldap.5.xml:1246 -msgid "" -"Default: use OpenLDAP defaults, typically in <filename>/etc/openldap/ldap." -"conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1194 -msgid "ldap_tls_cacertdir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1197 -msgid "" -"Specifies the path of a directory that contains Certificate Authority " -"certificates in separate individual files. Typically the file names need to " -"be the hash of the certificate followed by '.0'. If available, " -"<command>cacertdir_rehash</command> can be used to create the correct names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1212 -msgid "ldap_tls_cert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1215 -msgid "Specifies the file that contains the certificate for the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1219 sssd-ldap.5.xml:1231 sssd-ldap.5.xml:1979 -#: sssd-ldap.5.xml:2006 sssd-krb5.5.xml:359 -msgid "Default: not set" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1225 -msgid "ldap_tls_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1228 -msgid "Specifies the file that contains the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1237 -msgid "ldap_tls_cipher_suite (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1240 -msgid "" -"Specifies acceptable cipher suites. Typically this is a colon sperated " -"list. See <citerefentry><refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> for format." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1253 -msgid "ldap_id_use_start_tls (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1256 -msgid "" -"Specifies that the id_provider connection must also use <systemitem class=" -"\"protocol\">tls</systemitem> to protect the channel." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1266 -msgid "ldap_sasl_mech (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1269 -msgid "" -"Specify the SASL mechanism to use. Currently only GSSAPI is tested and " -"supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1273 sssd-ldap.5.xml:1428 -msgid "Default: none" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1279 -msgid "ldap_sasl_authid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1282 -msgid "" -"Specify the SASL authorization id to use. When GSSAPI is used, this " -"represents the Kerberos principal used for authentication to the directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1287 -msgid "Default: host/machine.fqdn@REALM" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1293 -msgid "ldap_sasl_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1296 -msgid "" -"If set to true, the LDAP library would perform a reverse lookup to " -"canonicalize the host name during a SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1301 -msgid "Default: false;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1307 -msgid "ldap_krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1310 -msgid "Specify the keytab to use when using SASL/GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1313 -msgid "Default: System keytab, normally <filename>/etc/krb5.keytab</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1319 -msgid "ldap_krb5_init_creds (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1322 -msgid "" -"Specifies that the id_provider should init Kerberos credentials (TGT). This " -"action is performed only if SASL is used and the mechanism selected is " -"GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1334 -msgid "ldap_krb5_ticket_lifetime (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1337 -msgid "Specifies the lifetime in seconds of the TGT if GSSAPI is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1341 -msgid "Default: 86400 (24 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1347 sssd-krb5.5.xml:74 -msgid "krb5_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1350 sssd-krb5.5.xml:77 -msgid "" -"Specifies the comma-separated list of IP addresses or hostnames of the " -"Kerberos servers to which SSSD should connect in the order of preference. " -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. An optional port number (preceded by a " -"colon) may be appended to the addresses or hostnames. If empty, service " -"discovery is enabled - for more information, refer to the <quote>SERVICE " -"DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1362 sssd-krb5.5.xml:89 -msgid "" -"When using service discovery for KDC or kpasswd servers, SSSD first searches " -"for DNS entries that specify _udp as the protocol and falls back to _tcp if " -"none are found." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1367 sssd-krb5.5.xml:94 -msgid "" -"This option was named <quote>krb5_kdcip</quote> in earlier releases of SSSD. " -"While the legacy name is recognized for the time being, users are advised to " -"migrate their config files to use <quote>krb5_server</quote> instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1376 sssd-ipa.5.xml:216 sssd-krb5.5.xml:103 -msgid "krb5_realm (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1379 -msgid "Specify the Kerberos REALM (for SASL/GSSAPI auth)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1382 -msgid "Default: System defaults, see <filename>/etc/krb5.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1388 sssd-ipa.5.xml:231 sssd-krb5.5.xml:409 -msgid "krb5_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1391 -msgid "" -"Specifies if the host principal should be canonicalized when connecting to " -"LDAP server. This feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1403 -msgid "ldap_pwd_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1406 -msgid "" -"Select the policy to evaluate the password expiration on the client side. " -"The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1411 -msgid "" -"<emphasis>none</emphasis> - No evaluation on the client side. This option " -"cannot disable server-side password policies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1416 -msgid "" -"<emphasis>shadow</emphasis> - Use <citerefentry><refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum></citerefentry> style attributes to " -"evaluate if the password has expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1422 -msgid "" -"<emphasis>mit_kerberos</emphasis> - Use the attributes used by MIT Kerberos " -"to determine if the password has expired. Use chpass_provider=krb5 to update " -"these attributes when the password is changed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1434 -msgid "ldap_referrals (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1437 -msgid "Specifies whether automatic referral chasing should be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1441 -msgid "" -"Please note that sssd only supports referral chasing when it is compiled " -"with OpenLDAP version 2.4.13 or higher." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1452 -msgid "ldap_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1455 -msgid "Specifies the service name to use when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1459 -msgid "Default: ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1465 -msgid "ldap_chpass_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1468 -msgid "" -"Specifies the service name to use to find an LDAP server which allows " -"password changes when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1473 -msgid "Default: not set, i.e. service discovery is disabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1479 -msgid "ldap_access_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1482 -msgid "" -"If using access_provider = ldap, this option is mandatory. It specifies an " -"LDAP search filter criteria that must be met for the user to be granted " -"access on this host. If access_provider = ldap and this option is not set, " -"it will result in all users being denied access. Use access_provider = allow " -"to change this default behavior." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1492 sssd-ldap.5.xml:1982 -msgid "Example:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1495 -#, no-wrap -msgid "" -"access_provider = ldap\n" -"ldap_access_filter = memberOf=cn=allowedusers,ou=Groups,dc=example,dc=com\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1499 -msgid "" -"This example means that access to this host is restricted to members of the " -"\"allowedusers\" group in ldap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1504 -msgid "" -"Offline caching for this feature is limited to determining whether the " -"user's last online login was granted access permission. If they were granted " -"access during their last login, they will continue to be granted access " -"while offline and vice-versa." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1512 sssd-ldap.5.xml:1562 -msgid "Default: Empty" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1518 -msgid "ldap_account_expire_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1521 -msgid "" -"With this option a client side evaluation of access control attributes can " -"be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1525 -msgid "" -"Please note that it is always recommended to use server side access control, " -"i.e. the LDAP server should deny the bind request with a suitable error code " -"even if the password is correct." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1532 -msgid "The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1535 -msgid "" -"<emphasis>shadow</emphasis>: use the value of ldap_user_shadow_expire to " -"determine if the account is expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1540 -msgid "" -"<emphasis>ad</emphasis>: use the value of the 32bit field " -"ldap_user_ad_user_account_control and allow access if the second bit is not " -"set. If the attribute is missing access is granted. Also the expiration time " -"of the account is checked." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1547 -msgid "" -"<emphasis>rhds</emphasis>, <emphasis>ipa</emphasis>, <emphasis>389ds</" -"emphasis>: use the value of ldap_ns_account_lock to check if access is " -"allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1553 -msgid "" -"<emphasis>nds</emphasis>: the values of " -"ldap_user_nds_login_allowed_time_map, ldap_user_nds_login_disabled and " -"ldap_user_nds_login_expiration_time are used to check if access is allowed. " -"If both attributes are missing access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1568 -msgid "ldap_access_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1571 -msgid "Comma separated list of access control options. Allowed values are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1575 -msgid "<emphasis>filter</emphasis>: use ldap_access_filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1578 -msgid "<emphasis>expire</emphasis>: use ldap_account_expire_policy" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1582 -msgid "" -"<emphasis>authorized_service</emphasis>: use the authorizedService attribute " -"to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1587 -msgid "<emphasis>host</emphasis>: use the host attribute to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1591 -msgid "Default: filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1594 -msgid "" -"Please note that it is a configuration error if a value is used more than " -"once." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1601 -msgid "ldap_deref (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1604 -msgid "" -"Specifies how alias dereferencing is done when performing a search. The " -"following options are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1609 -msgid "<emphasis>never</emphasis>: Aliases are never dereferenced." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1613 -msgid "" -"<emphasis>searching</emphasis>: Aliases are dereferenced in subordinates of " -"the base object, but not in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1618 -msgid "" -"<emphasis>finding</emphasis>: Aliases are only dereferenced when locating " -"the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1623 -msgid "" -"<emphasis>always</emphasis>: Aliases are dereferenced both in searching and " -"in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1628 -msgid "" -"Default: Empty (this is handled as <emphasis>never</emphasis> by the LDAP " -"client libraries)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:51 -msgid "" -"All of the common configuration options that apply to SSSD domains also " -"apply to LDAP domains. Refer to the <quote>DOMAIN SECTIONS</quote> section " -"of the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for full details. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1639 -msgid "SUDO OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1644 -msgid "ldap_sudorule_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1647 -msgid "The object class of a sudo rule entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1650 -msgid "Default: sudoRole" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1656 -msgid "ldap_sudorule_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1659 -msgid "The LDAP attribute that corresponds to the sudo rule name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1669 -msgid "ldap_sudorule_command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1672 -msgid "The LDAP attribute that corresponds to the command name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1676 -msgid "Default: sudoCommand" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1682 -msgid "ldap_sudorule_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1685 -msgid "" -"The LDAP attribute that corresponds to the host name (or host IP address, " -"host IP network, or host netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1690 -msgid "Default: sudoHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1696 -msgid "ldap_sudorule_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1699 -msgid "" -"The LDAP attribute that corresponds to the user name (or UID, group name or " -"user's netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1703 -msgid "Default: sudoUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1709 -msgid "ldap_sudorule_option (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1712 -msgid "The LDAP attribute that corresponds to the sudo options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1716 -msgid "Default: sudoOption" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1722 -msgid "ldap_sudorule_runasuser (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1725 -msgid "" -"The LDAP attribute that corresponds to the user name that commands may be " -"run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1729 -msgid "Default: sudoRunAsUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1735 -msgid "ldap_sudorule_runasgroup (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1738 -msgid "" -"The LDAP attribute that corresponds to the group name or group GID that " -"commands may be run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1742 -msgid "Default: sudoRunAsGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1748 -msgid "ldap_sudorule_notbefore (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1751 -msgid "" -"The LDAP attribute that corresponds to the start date/time for when the sudo " -"rule is valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1755 -msgid "Default: sudoNotBefore" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1761 -msgid "ldap_sudorule_notafter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1764 -msgid "" -"The LDAP attribute that corresponds to the expiration date/time, after which " -"the sudo rule will no longer be valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1769 -msgid "Default: sudoNotAfter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1775 -msgid "ldap_sudorule_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1778 -msgid "The LDAP attribute that corresponds to the ordering index of the rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1782 -msgid "Default: sudoOrder" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1788 -msgid "ldap_sudo_refresh_enabled (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1791 -msgid "" -"Enables periodical download of all sudo rules. The cache is purged before " -"each update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1801 -msgid "ldap_sudo_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1804 -msgid "" -"How many seconds SSSD has to wait before refreshing its cache of sudo rules." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1642 -msgid "<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1815 -msgid "" -"This manual page only describes attribute name mapping. For detailed " -"explanation of sudo related attribute semantics, see <citerefentry> " -"<refentrytitle>sudoers.ldap</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1825 -msgid "AUTOFS OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1827 -msgid "" -"Please note that the default values correspond to the default schema which " -"is RFC2307." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1834 -msgid "ldap_autofs_map_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1837 sssd-ldap.5.xml:1863 -msgid "The object class of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1840 sssd-ldap.5.xml:1867 -msgid "Default: automountMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1847 -msgid "ldap_autofs_map_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1850 -msgid "The name of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1853 -msgid "Default: ou" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1860 -msgid "ldap_autofs_entry_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1874 -msgid "ldap_autofs_entry_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1877 sssd-ldap.5.xml:1891 -msgid "" -"The key of an automount entry in LDAP. The entry usually corresponds to a " -"mount point." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1888 -msgid "ldap_autofs_entry_value (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1895 -msgid "Default: automountInformation" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1832 -msgid "" -"<placeholder type=\"variablelist\" id=\"0\"/> <placeholder type=" -"\"variablelist\" id=\"1\"/> <placeholder type=\"variablelist\" id=\"2\"/> " -"<placeholder type=\"variablelist\" id=\"3\"/> <placeholder type=" -"\"variablelist\" id=\"4\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1904 -msgid "ADVANCED OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1911 -msgid "ldap_netgroup_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1914 -msgid "" -"An optional base DN to restrict netgroup searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1930 -msgid "ldap_user_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1933 -msgid "An optional base DN to restrict user searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1949 -msgid "ldap_group_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1952 -msgid "An optional base DN to restrict group searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1968 -msgid "ldap_user_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1971 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict user searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1975 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_user_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1985 -#, no-wrap -msgid "" -" ldap_user_search_filter = (loginShell=/bin/tcsh)\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1988 -msgid "" -"This filter would restrict user searches to users that have their shell set " -"to /bin/tcsh." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1995 -msgid "ldap_group_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1998 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict group searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2002 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_group_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2012 -msgid "ldap_sudo_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2015 -msgid "" -"An optional base DN to restrict sudo rules searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2034 -msgid "ldap_autofs_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2037 -msgid "" -"An optional base DN to restrict automounter searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1906 -msgid "" -"These options are supported by LDAP domains, but they should be used with " -"caution. Please include them in your configuration only if you know what you " -"are doing. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2066 -msgid "" -"The following example assumes that SSSD is correctly configured and LDAP is " -"set to one of the domains in the <replaceable>[domains]</replaceable> " -"section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ldap.5.xml:2072 -#, no-wrap -msgid "" -" [domain/LDAP]\n" -" id_provider = ldap\n" -" auth_provider = ldap\n" -" ldap_uri = ldap://ldap.mydomain.org\n" -" ldap_search_base = dc=mydomain,dc=org\n" -" ldap_tls_reqcert = demand\n" -" cache_credentials = true\n" -" enumerate = true\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2071 sssd-simple.5.xml:134 sssd-ipa.5.xml:552 -#: sssd-krb5.5.xml:441 -msgid "<placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:2085 sssd_krb5_locator_plugin.8.xml:61 -msgid "NOTES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2087 -msgid "" -"The descriptions of some of the configuration options in this manual page " -"are based on the <citerefentry> <refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page from the OpenLDAP 2.4 " -"distribution." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2098 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <refentryinfo> -#: pam_sss.8.xml:8 include/upstream.xml:2 -msgid "" -"<productname>SSSD</productname> <orgname>The SSSD upstream - http://" -"fedorahosted.org/sssd</orgname>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: pam_sss.8.xml:13 pam_sss.8.xml:18 -msgid "pam_sss" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: pam_sss.8.xml:19 -msgid "PAM module for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: pam_sss.8.xml:24 -msgid "" -"<command>pam_sss.so</command> <arg choice='opt'> <replaceable>quiet</" -"replaceable> </arg> <arg choice='opt'> <replaceable>forward_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_first_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_authtok</" -"replaceable> </arg> <arg choice='opt'> <replaceable>retry=N</replaceable> </" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:45 -msgid "" -"<command>pam_sss.so</command> is the PAM interface to the System Security " -"Services daemon (SSSD). Errors and results are logged through <command>syslog" -"(3)</command> with the LOG_AUTHPRIV facility." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:55 -msgid "<option>quiet</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:58 -msgid "Suppress log messages for unknown users." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:63 -msgid "<option>forward_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:66 -msgid "" -"If <option>forward_pass</option> is set the entered password is put on the " -"stack for other PAM modules to use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:73 -msgid "<option>use_first_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:76 -msgid "" -"The argument use_first_pass forces the module to use a previous stacked " -"modules password and will never prompt the user - if no password is " -"available or the password is not appropriate, the user will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:84 -msgid "<option>use_authtok</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:87 -msgid "" -"When password changing enforce the module to set the new password to the one " -"provided by a previously stacked password module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:94 -msgid "<option>retry=N</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:97 -msgid "" -"If specified the user is asked another N times for a password if " -"authentication fails. Default is 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:99 -msgid "" -"Please note that this option might not work as expected if the application " -"calling PAM handles the user dialog on its own. A typical example is " -"<command>sshd</command> with <option>PasswordAuthentication</option>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:110 -msgid "MODULE TYPES PROVIDED" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:111 -msgid "" -"All module types (<option>account</option>, <option>auth</option>, " -"<option>password</option> and <option>session</option>) are provided." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:117 -msgid "FILES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:118 -msgid "" -"If a password reset by root fails, because the corresponding SSSD provider " -"does not support password resets, an individual message can be displayed. " -"This message can e.g. contain instructions about how to reset a password." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:123 -msgid "" -"The message is read from the file <filename>pam_sss_pw_reset_message.LOC</" -"filename> where LOC stands for a locale string returned by <citerefentry> " -"<refentrytitle>setlocale</refentrytitle><manvolnum>3</manvolnum> </" -"citerefentry>. If there is no matching file the content of " -"<filename>pam_sss_pw_reset_message.txt</filename> is displayed. Root must be " -"the owner of the files and only root may have read and write permissions " -"while all other users must have only read permissions." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:133 -msgid "" -"These files are searched in the directory <filename>/etc/sssd/customize/" -"DOMAIN_NAME/</filename>. If no matching file is present a generic message is " -"displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:141 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd_krb5_locator_plugin.8.xml:10 sssd_krb5_locator_plugin.8.xml:15 -msgid "sssd_krb5_locator_plugin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:22 -msgid "" -"The Kerberos locator plugin <command>sssd_krb5_locator_plugin</command> is " -"used by the Kerberos provider of <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry> to tell the Kerberos " -"libraries what Realm and which KDC to use. Typically this is done in " -"<citerefentry> <refentrytitle>krb5.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> which is always read by the Kerberos libraries. " -"To simplify the configuration the Realm and the KDC can be defined in " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> as described in <citerefentry> " -"<refentrytitle>sssd-krb5.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry> puts the Realm and the name or IP address of the KDC into " -"the environment variables SSSD_KRB5_REALM and SSSD_KRB5_KDC respectively. " -"When <command>sssd_krb5_locator_plugin</command> is called by the kerberos " -"libraries it reads and evaluates these variables and returns them to the " -"libraries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:63 -msgid "" -"Not all Kerberos implementations support the use of plugins. If " -"<command>sssd_krb5_locator_plugin</command> is not available on your system " -"you have to edit /etc/krb5.conf to reflect your Kerberos setup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:69 -msgid "" -"If the environment variable SSSD_KRB5_LOCATOR_DEBUG is set to any value " -"debug messages will be sent to stderr." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:77 -msgid "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-simple.5.xml:10 sssd-simple.5.xml:16 -msgid "sssd-simple" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd-simple.5.xml:17 -msgid "the configuration file for SSSD's 'simple' access-control provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:24 -msgid "" -"This manual page describes the configuration of the simple access-control " -"provider for <citerefentry> <refentrytitle>sssd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry>. For a detailed syntax reference, " -"refer to the <quote>FILE FORMAT</quote> section of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:38 -msgid "" -"The simple access provider grants or denies access based on an access or " -"deny list of user or group names. The following rules apply:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:43 -msgid "If all lists are empty, access is granted" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:47 -msgid "" -"If any list is provided, the order of evaluation is allow,deny. This means " -"that any matching deny rule will supersede any matched allow rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:54 -msgid "" -"If either or both \"allow\" lists are provided, all users are denied unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:60 -msgid "" -"If only \"deny\" lists are provided, all users are granted access unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:78 -msgid "simple_allow_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:81 -msgid "Comma separated list of users who are allowed to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:88 -msgid "simple_deny_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:91 -msgid "Comma separated list of users who are explicitly denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:97 -msgid "simple_allow_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:100 -msgid "" -"Comma separated list of groups that are allowed to log in. This applies only " -"to groups within this SSSD domain. Local groups are not evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:108 -msgid "simple_deny_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:111 -msgid "" -"Comma separated list of groups that are explicitly denied access. This " -"applies only to groups within this SSSD domain. Local groups are not " -"evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:70 sssd-ipa.5.xml:65 -msgid "" -"Refer to the section <quote>DOMAIN SECTIONS</quote> of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page for details on the configuration of an SSSD " -"domain. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:120 -msgid "" -"Please note that it is an configuration error if both, simple_allow_users " -"and simple_deny_users, are defined." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:128 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the simple access provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-simple.5.xml:135 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" access_provider = simple\n" -" simple_allow_users = user1, user2\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:145 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ipa.5.xml:10 sssd-ipa.5.xml:16 -msgid "sssd-ipa" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:23 -msgid "" -"This manual page describes the configuration of the IPA provider for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. For a detailed syntax reference, refer to the <quote>FILE " -"FORMAT</quote> section of the <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:36 -msgid "" -"The IPA provider is a back end used to connect to an IPA server. (Refer to " -"the freeipa.org web site for information about IPA servers.) This provider " -"requires that the machine be joined to the IPA domain; configuration is " -"almost entirely self-discovered and obtained directly from the server." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:43 -msgid "" -"The IPA provider accepts the same options used by the <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> identity provider and the <citerefentry> <refentrytitle>sssd-" -"krb5</refentrytitle> <manvolnum>5</manvolnum> </citerefentry> authentication " -"provider with some exceptions described below." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:55 -msgid "" -"However, it is neither necessary nor recommended to set these options. IPA " -"provider can also be used as an access and chpass provider. As an access " -"provider it uses HBAC (host-based access control) rules. Please refer to " -"freeipa.org for more information about HBAC. No configuration of access " -"provider is required on the client side." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:72 -msgid "ipa_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:75 -msgid "" -"Specifies the name of the IPA domain. This is optional. If not provided, " -"the configuration domain name is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:83 -msgid "ipa_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:86 -msgid "" -"The comma-separated list of IP addresses or hostnames of the IPA servers to " -"which SSSD should connect in the order of preference. For more information " -"on failover and server redundancy, see the <quote>FAILOVER</quote> section. " -"This is optional if autodiscovery is enabled. For more information on " -"service discovery, refer to the the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:99 -msgid "ipa_hostname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:102 -msgid "" -"Optional. May be set on machines where the hostname(5) does not reflect the " -"fully qualified name used in the IPA domain to identify this host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:110 -msgid "ipa_dyndns_update (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:113 -msgid "" -"Optional. This option tells SSSD to automatically update the DNS server " -"built into FreeIPA v2 with the IP address of this client." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:118 -msgid "" -"NOTE: On older systems (such as RHEL 5), for this behavior to work reliably, " -"the default Kerberos realm must be set properly in /etc/krb5.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:129 -msgid "ipa_dyndns_iface (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:132 -msgid "" -"Optional. Applicable only when ipa_dyndns_update is true. Choose the " -"interface whose IP address should be used for dynamic DNS updates." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:137 -msgid "Default: Use the IP address of the IPA LDAP connection" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:143 -msgid "ipa_hbac_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:146 -msgid "Optional. Use the given string as search base for HBAC related objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:150 -msgid "Default: Use base DN" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:156 -msgid "ipa_host_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:159 -msgid "Optional. Use the given string as search base for host objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:168 -msgid "" -"If filter is given in any of search bases and " -"<emphasis>ipa_hbac_support_srchost</emphasis> is set to False, the filter " -"will be ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:180 -msgid "ipa_selinux_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:183 -msgid "Optional. Use the given string as search base for SELinux user maps." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:199 sssd-krb5.5.xml:229 -msgid "krb5_validate (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:202 sssd-krb5.5.xml:232 -msgid "" -"Verify with the help of krb5_keytab that the TGT obtained has not been " -"spoofed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:209 -msgid "" -"Note that this default differs from the traditional Kerberos provider back " -"end." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:219 -msgid "" -"The name of the Kerberos realm. This is optional and defaults to the value " -"of <quote>ipa_domain</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:223 -msgid "" -"The name of the Kerberos realm has a special meaning in IPA - it is " -"converted into the base DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:234 -msgid "" -"Specifies if the host and user principal should be canonicalized when " -"connecting to IPA LDAP and also for AS requests. This feature is available " -"with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:247 -msgid "ipa_hbac_refresh (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:250 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server. " -"This will reduce the latency and load on the IPA server if there are many " -"access-control requests made in a short period." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:257 -msgid "Default: 5 (seconds)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:262 -msgid "ipa_hbac_treat_deny_as (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:265 -msgid "" -"This option specifies how to treat the deprecated DENY-type HBAC rules. As " -"of FreeIPA v2.1, DENY rules are no longer supported on the server. All users " -"of FreeIPA will need to migrate their rules to use only the ALLOW rules. The " -"client will support two modes of operation during this transition period:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:274 -msgid "" -"<emphasis>DENY_ALL</emphasis>: If any HBAC DENY rules are detected, all " -"users will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:279 -msgid "" -"<emphasis>IGNORE</emphasis>: SSSD will ignore any DENY rules. Be very " -"careful with this option, as it may result in opening unintended access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:284 -msgid "Default: DENY_ALL" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:289 -msgid "ipa_hbac_support_srchost (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:292 -msgid "" -"If this is set to false, then srchost as given to SSSD by PAM will be " -"ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:296 -msgid "" -"Note that if set to <emphasis>False</emphasis>, this option casuses filters " -"given in <emphasis>ipa_host_search_base</emphasis> to be ignored;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:307 -msgid "ipa_automount_location (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:310 -msgid "The automounter location this IPA client will be using" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:313 -msgid "Default: The location named \"default\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:319 -msgid "ipa_netgroup_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:322 -msgid "The LDAP attribute that lists netgroup's memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:331 -msgid "ipa_netgroup_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:334 -msgid "" -"The LDAP attribute that lists system users and groups that are direct " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:339 sssd-ipa.5.xml:434 -msgid "Default: memberUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:344 -msgid "ipa_netgroup_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:347 -msgid "" -"The LDAP attribute that lists hosts and host groups that are direct members " -"of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:351 sssd-ipa.5.xml:446 -msgid "Default: memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:356 -msgid "ipa_netgroup_member_ext_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:359 -msgid "" -"The LDAP attribute that lists FQDNs of hosts and host groups that are " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:363 -msgid "Default: externalHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:368 -msgid "ipa_netgroup_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:371 -msgid "The LDAP attribute that contains NIS domain name of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:375 -msgid "Default: nisDomainName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:381 -msgid "ipa_host_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:384 sssd-ipa.5.xml:407 -msgid "The object class of a host entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:387 sssd-ipa.5.xml:410 -msgid "Default: ipaHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:392 -msgid "ipa_host_fqdn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:395 -msgid "The LDAP attribute that contains FQDN of the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:398 -msgid "Default: fqdn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:404 -msgid "ipa_selinux_usermap_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:415 -msgid "ipa_selinux_usermap_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:418 -msgid "The LDAP attribute that contains the name of SELinux usermap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:427 -msgid "ipa_selinux_usermap_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:430 -msgid "" -"The LDAP attribute that contains all users / groups this rule match against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:439 -msgid "ipa_selinux_usermap_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:442 -msgid "" -"The LDAP attribute that contains all hosts / hostgroups this rule match " -"against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:451 -msgid "ipa_selinux_usermap_see_also (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:454 -msgid "" -"The LDAP attribute that contains DN of HBAC rule which can be used for " -"matching instead of memberUser and memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:459 -msgid "Default: seeAlso" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:464 -msgid "ipa_selinux_usermap_selinux_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:467 -msgid "The LDAP attribute that contains SELinux user string itself." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:471 -msgid "Default: ipaSELinuxUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:476 -msgid "ipa_selinux_usermap_enabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:479 -msgid "" -"The LDAP attribute that contains whether or not is user map enabled for " -"usage." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:483 -msgid "Default: ipaEnabledFlag" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:488 -msgid "ipa_selinux_usermap_user_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:491 -msgid "The LDAP attribute that contains user category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:495 -msgid "Default: userCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:500 -msgid "ipa_selinux_usermap_host_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:503 -msgid "The LDAP attribute that contains host category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:507 -msgid "Default: hostCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:512 -msgid "ipa_selinux_usermap_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:515 -msgid "The LDAP attribute that contains unique ID of the user map." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:519 -msgid "Default: ipaUniqueID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:524 -msgid "ipa_host_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:527 -msgid "The LDAP attribute that contains the host's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:531 -msgid "Default: ipaSshPubKey" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:546 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the ipa provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ipa.5.xml:553 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" id_provider = ipa\n" -" ipa_server = ipaserver.example.com\n" -" ipa_hostname = myhost.example.com\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:564 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.8.xml:10 sssd.8.xml:15 -msgid "sssd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.8.xml:16 -msgid "System Security Services Daemon" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sssd.8.xml:21 -msgid "" -"<command>sssd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:31 -msgid "" -"<command>SSSD</command> provides a set of daemons to manage access to remote " -"directories and authentication mechanisms. It provides an NSS and PAM " -"interface toward the system and a pluggable backend system to connect to " -"multiple different account sources as well as D-Bus interface. It is also " -"the basis to provide client auditing and policy services for projects like " -"FreeIPA. It provides a more robust database to store local users as well as " -"extended user data." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:46 -msgid "" -"<option>-d</option>,<option>--debug-level</option> <replaceable>LEVEL</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:53 -msgid "<option>--debug-timestamps=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:57 -msgid "<emphasis>1</emphasis>: Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:60 -msgid "<emphasis>0</emphasis>: Disable timestamp in the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:69 -msgid "<option>--debug-microseconds=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:73 -msgid "" -"<emphasis>1</emphasis>: Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:76 -msgid "<emphasis>0</emphasis>: Disable microseconds in timestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:79 -msgid "Default: 0" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:85 -msgid "<option>-f</option>,<option>--debug-to-files</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:89 -msgid "" -"Send the debug output to files instead of stderr. By default, the log files " -"are stored in <filename>/var/log/sssd</filename> and there are separate log " -"files for every SSSD service and domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:97 -msgid "<option>-D</option>,<option>--daemon</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:101 -msgid "Become a daemon after starting up." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:107 -msgid "<option>-i</option>,<option>--interactive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:111 -msgid "Run in the foreground, don't become a daemon." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:117 sss_debuglevel.8.xml:42 -msgid "<option>-c</option>,<option>--config</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:121 sss_debuglevel.8.xml:46 -msgid "" -"Specify a non-default config file. The default is <filename>/etc/sssd/sssd." -"conf</filename>. For reference on the config file syntax and options, " -"consult the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:135 -msgid "<option>--version</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:139 -msgid "Print version number and exit." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.8.xml:147 -msgid "Signals" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:150 -msgid "SIGTERM/SIGINT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:153 -msgid "" -"Informs the SSSD to gracefully terminate all of its child processes and then " -"shut down the monitor." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:159 -msgid "SIGHUP" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:162 -msgid "" -"Tells the SSSD to stop writing to its current debug file descriptors and to " -"close and reopen them. This is meant to facilitate log rolling with programs " -"like logrotate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:170 -msgid "SIGUSR1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:173 -msgid "" -"Tells the SSSD to simulate offline operation for one minute. This is mostly " -"useful for testing purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:179 -msgid "SIGUSR2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:182 -msgid "" -"Tells the SSSD to go online immediately. This is mostly useful for testing " -"purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:193 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_obfuscate.8.xml:10 sss_obfuscate.8.xml:15 -msgid "sss_obfuscate" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_obfuscate.8.xml:16 -msgid "obfuscate a clear text password" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_obfuscate.8.xml:21 -msgid "" -"<command>sss_obfuscate</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>[PASSWORD]</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:32 -msgid "" -"<command>sss_obfuscate</command> converts a given password into human-" -"unreadable format and places it into appropriate domain section of the SSSD " -"config file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:37 -msgid "" -"The cleartext password is read from standard input or entered " -"interactively. The obfuscated password is put into " -"<quote>ldap_default_authtok</quote> parameter of a given SSSD domain and the " -"<quote>ldap_default_authtok_type</quote> parameter is set to " -"<quote>obfuscated_password</quote>. Refer to <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more details on these parameters." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:49 -msgid "" -"Please note that obfuscating the password provides <emphasis>no real " -"security benefit</emphasis> as it is still possible for an attacker to " -"reverse-engineer the password back. Using better authentication mechanisms " -"such as client side certificates or GSSAPI is <emphasis>strongly</emphasis> " -"advised." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:63 -msgid "<option>-s</option>,<option>--stdin</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:67 -msgid "The password to obfuscate will be read from standard input." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:74 sss_ssh_authorizedkeys.1.xml:82 -#: sss_ssh_knownhostsproxy.1.xml:81 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>DOMAIN</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:79 -msgid "" -"The SSSD domain to use the password in. The default name is <quote>default</" -"quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:86 -msgid "" -"<option>-f</option>,<option>--file</option> <replaceable>FILE</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:91 -msgid "Read the config file specified by the positional parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:95 -msgid "Default: <filename>/etc/sssd/sssd.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:105 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_useradd.8.xml:10 sss_useradd.8.xml:15 -msgid "sss_useradd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_useradd.8.xml:16 -msgid "create a new user" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_useradd.8.xml:21 -msgid "" -"<command>sss_useradd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:32 -msgid "" -"<command>sss_useradd</command> creates a new user account using the values " -"specified on the command line plus the default values from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:43 -msgid "" -"<option>-u</option>,<option>--uid</option> <replaceable>UID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:48 -msgid "" -"Set the UID of the user to the value of <replaceable>UID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:55 sss_usermod.8.xml:43 -msgid "" -"<option>-c</option>,<option>--gecos</option> <replaceable>COMMENT</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:60 sss_usermod.8.xml:48 -msgid "" -"Any text string describing the user. Often used as the field for the user's " -"full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:67 sss_usermod.8.xml:55 -msgid "" -"<option>-h</option>,<option>--home</option> <replaceable>HOME_DIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:72 -msgid "" -"The home directory of the user account. The default is to append the " -"<replaceable>LOGIN</replaceable> name to <filename>/home</filename> and use " -"that as the home directory. The base that is prepended before " -"<replaceable>LOGIN</replaceable> is tunable with <quote>user_defaults/" -"baseDirectory</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:82 sss_usermod.8.xml:66 -msgid "" -"<option>-s</option>,<option>--shell</option> <replaceable>SHELL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:87 -msgid "" -"The user's login shell. The default is currently <filename>/bin/bash</" -"filename>. The default can be changed with <quote>user_defaults/" -"defaultShell</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:96 -msgid "" -"<option>-G</option>,<option>--groups</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:101 -msgid "A list of existing groups this user is also a member of." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:107 -msgid "<option>-m</option>,<option>--create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:111 -msgid "" -"Create the user's home directory if it does not exist. The files and " -"directories contained in the skeleton directory (which can be defined with " -"the -k option or in the config file) will be copied to the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:121 -msgid "<option>-M</option>,<option>--no-create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:125 -msgid "" -"Do not create the user's home directory. Overrides configuration settings." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:132 -msgid "" -"<option>-k</option>,<option>--skel</option> <replaceable>SKELDIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:137 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<command>sss_useradd</command>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:143 -msgid "" -"This option is only valid if the <option>-m</option> (or <option>--create-" -"home</option>) option is specified, or creation of home directories is set " -"to TRUE in the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:152 sss_usermod.8.xml:124 -msgid "" -"<option>-Z</option>,<option>--selinux-user</option> " -"<replaceable>SELINUX_USER</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:157 -msgid "" -"The SELinux user for the user's login. If not specified, the system default " -"will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:169 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-krb5.5.xml:10 sssd-krb5.5.xml:16 -msgid "sssd-krb5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:23 -msgid "" -"This manual page describes the configuration of the Kerberos 5 " -"authentication backend for <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry>. For a detailed " -"syntax reference, please refer to the <quote>FILE FORMAT</quote> section of " -"the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:36 -msgid "" -"The Kerberos 5 authentication backend contains auth and chpass providers. It " -"must be paired with identity provider in order to function properly (for " -"example, id_provider = ldap). Some information required by the Kerberos 5 " -"authentication backend must be provided by the identity provider, such as " -"the user's Kerberos Principal Name (UPN). The configuration of the identity " -"provider should have an entry to specify the UPN. Please refer to the man " -"page for the applicable identity provider for details on how to configure " -"this." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:47 -msgid "" -"This backend also provides access control based on the .k5login file in the " -"home directory of the user. See <citerefentry> <refentrytitle>.k5login</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry> for more details. " -"Please note that an empty .k5login file will deny all access to this user. " -"To activate this feature use 'access_provider = krb5' in your sssd " -"configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:55 -msgid "" -"In the case where the UPN is not available in the identity backend " -"<command>sssd</command> will construct a UPN using the format " -"<replaceable>username</replaceable>@<replaceable>krb5_realm</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:106 -msgid "" -"The name of the Kerberos realm. This option is required and must be " -"specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:113 -msgid "krb5_kpasswd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:116 -msgid "" -"If the change password service is not running on the KDC alternative servers " -"can be defined here. An optional port number (preceded by a colon) may be " -"appended to the addresses or hostnames." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:122 -msgid "" -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. Please note that even if there are no more " -"kpasswd servers to try the back end is not switch to offline if " -"authentication against the KDC is still possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:129 -msgid "Default: Use the KDC" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:135 -msgid "krb5_ccachedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:138 -msgid "" -"Directory to store credential caches. All the substitution sequences of " -"krb5_ccname_template can be used here, too, except %d and %P. If the " -"directory does not exist it will be created. If %u, %U, %p or %h are used a " -"private directory belonging to the user is created. Otherwise a public " -"directory with restricted deletion flag (aka sticky bit, see <citerefentry> " -"<refentrytitle>chmod</refentrytitle> <manvolnum>1</manvolnum> </" -"citerefentry> for details) is created." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:151 -msgid "Default: /tmp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:157 -msgid "krb5_ccname_template (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:171 -msgid "login UID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:174 -msgid "%p" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:175 -msgid "principal name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:179 -msgid "%r" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:180 -msgid "realm name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:183 -msgid "%h" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:184 -msgid "home directory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:189 -msgid "value of krb5ccache_dir" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:194 -msgid "%P" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:195 -msgid "the process ID of the sssd client" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:160 -msgid "" -"Location of the user's credential cache. Currently only file based " -"credential caches are supported. In the template the following sequences are " -"substituted: <placeholder type=\"variablelist\" id=\"0\"/> If the template " -"ends with 'XXXXXX' mkstemp(3) is used to create a unique filename in a safe " -"way." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:209 -msgid "Default: FILE:%d/krb5cc_%U_XXXXXX" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:215 -msgid "krb5_auth_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:218 -msgid "" -"Timeout in seconds after an online authentication or change password request " -"is aborted. If possible the authentication request is continued offline." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:241 -msgid "krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:244 -msgid "" -"The location of the keytab to use when validating credentials obtained from " -"KDCs." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:248 -msgid "Default: /etc/krb5.keytab" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:254 -msgid "krb5_store_password_if_offline (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:257 -msgid "" -"Store the password of the user if the provider is offline and use it to " -"request a TGT when the provider gets online again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:262 -msgid "" -"Please note that this feature currently only available on a Linux platform. " -"Passwords stored in this way are kept in plaintext in the kernel keyring and " -"are potentially accessible by the root user (with difficulty)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:275 -msgid "krb5_renewable_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:278 -msgid "" -"Request a renewable ticket with a total lifetime given by an integer " -"immediately followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:283 sssd-krb5.5.xml:319 -msgid "<emphasis>s</emphasis> seconds" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:286 sssd-krb5.5.xml:322 -msgid "<emphasis>m</emphasis> minutes" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:289 sssd-krb5.5.xml:325 -msgid "<emphasis>h</emphasis> hours" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:292 sssd-krb5.5.xml:328 -msgid "<emphasis>d</emphasis> days." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:295 sssd-krb5.5.xml:331 -msgid "If there is no delimiter <emphasis>s</emphasis> is assumed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:299 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"renewable lifetime to one and a half hours please use '90m' instead of " -"'1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:305 -msgid "Default: not set, i.e. the TGT is not renewable" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:311 -msgid "krb5_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:314 -msgid "" -"Request ticket with a with a lifetime given by an integer immediately " -"followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:335 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"lifetime to one and a half hours please use '90m' instead of '1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:340 -msgid "" -"Default: not set, i.e. the default ticket lifetime configured on the KDC." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:347 -msgid "krb5_renew_interval (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:350 -msgid "" -"The time in seconds between two checks if the TGT should be renewed. TGTs " -"are renewed if about half of their lifetime is exceeded." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:355 -msgid "If this option is not set or 0 the automatic renewal is disabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:365 -msgid "krb5_use_fast (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:368 -msgid "" -"Enables flexible authentication secure tunneling (FAST) for Kerberos pre-" -"authentication. The following options are supported:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:373 -msgid "" -"<emphasis>never</emphasis> use FAST, this is equivalent to not set this " -"option at all." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:377 -msgid "" -"<emphasis>try</emphasis> to use FAST, if the server does not support fast " -"continue without." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:381 -msgid "" -"<emphasis>demand</emphasis> to use FAST, fail if the server does not require " -"fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:385 -msgid "Default: not set, i.e. FAST is not used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:388 -msgid "Please note that a keytab is required to use fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:391 -msgid "" -"Please note also that sssd supports fast only with MIT Kerberos version 1.8 " -"and above. If sssd used with an older version using this option is a " -"configuration error." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:400 -msgid "krb5_fast_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:403 -msgid "Specifies the server principal to use for FAST." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:412 -msgid "" -"Specifies if the host and user principal should be canonicalized. This " -"feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:65 -msgid "" -"If the auth-module krb5 is used in a SSSD domain, the following options must " -"be used. See the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page, section <quote>DOMAIN " -"SECTIONS</quote> for details on the configuration of a SSSD domain. " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:434 -msgid "" -"The following example assumes that SSSD is correctly configured and FOO is " -"one of the domains in the <replaceable>[sssd]</replaceable> section. This " -"example shows only configuration of Kerberos authentication, it does not " -"include any identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-krb5.5.xml:442 -#, no-wrap -msgid "" -" [domain/FOO]\n" -" auth_provider = krb5\n" -" krb5_server = 192.168.1.1\n" -" krb5_realm = EXAMPLE.COM\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:453 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupadd.8.xml:10 sss_groupadd.8.xml:15 -msgid "sss_groupadd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupadd.8.xml:16 -msgid "create a new group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupadd.8.xml:21 -msgid "" -"<command>sss_groupadd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:32 -msgid "" -"<command>sss_groupadd</command> creates a new group. These groups are " -"compatible with POSIX groups, with the additional feature that they can " -"contain other groups as members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupadd.8.xml:43 -msgid "" -"<option>-g</option>,<option>--gid</option> <replaceable>GID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupadd.8.xml:48 -msgid "" -"Set the GID of the group to the value of <replaceable>GID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_userdel.8.xml:10 sss_userdel.8.xml:15 -msgid "sss_userdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_userdel.8.xml:16 -msgid "delete a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_userdel.8.xml:21 -msgid "" -"<command>sss_userdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:32 -msgid "" -"<command>sss_userdel</command> deletes a user identified by login name " -"<replaceable>LOGIN</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:44 -msgid "<option>-r</option>,<option>--remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:48 -msgid "" -"Files in the user's home directory will be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:56 -msgid "<option>-R</option>,<option>--no-remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:60 -msgid "" -"Files in the user's home directory will NOT be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:68 -msgid "<option>-f</option>,<option>--force</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:72 -msgid "" -"This option forces <command>sss_userdel</command> to remove the user's home " -"directory and mail spool, even if they are not owned by the specified user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:80 -msgid "<option>-k</option>,<option>--kick</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:84 -msgid "Before actually deleting the user, terminate all his processes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:95 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupdel.8.xml:10 sss_groupdel.8.xml:15 -msgid "sss_groupdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupdel.8.xml:16 -msgid "delete a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupdel.8.xml:21 -msgid "" -"<command>sss_groupdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:32 -msgid "" -"<command>sss_groupdel</command> deletes a group identified by its name " -"<replaceable>GROUP</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupshow.8.xml:10 sss_groupshow.8.xml:15 -msgid "sss_groupshow" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupshow.8.xml:16 -msgid "print properties of a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupshow.8.xml:21 -msgid "" -"<command>sss_groupshow</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:32 -msgid "" -"<command>sss_groupshow</command> displays information about a group " -"identified by its name <replaceable>GROUP</replaceable>. The information " -"includes the group ID number, members of the group and the parent group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupshow.8.xml:43 -msgid "<option>-R</option>,<option>--recursive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupshow.8.xml:47 -msgid "" -"Also print indirect group members in a tree-like hierarchy. Note that this " -"also affects printing parent groups - without <option>R</option>, only the " -"direct parent will be printed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_usermod.8.xml:10 sss_usermod.8.xml:15 -msgid "sss_usermod" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_usermod.8.xml:16 -msgid "modify a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_usermod.8.xml:21 -msgid "" -"<command>sss_usermod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:32 -msgid "" -"<command>sss_usermod</command> modifies the account specified by " -"<replaceable>LOGIN</replaceable> to reflect the changes that are specified " -"on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:60 -msgid "The home directory of the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:71 -msgid "The user's login shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:82 -msgid "" -"Append this user to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:96 -msgid "" -"Remove this user from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:103 -msgid "<option>-l</option>,<option>--lock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:107 -msgid "Lock the user account. The user won't be able to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:114 -msgid "<option>-u</option>,<option>--unlock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:118 -msgid "Unlock the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:129 -msgid "The SELinux user for the user's login." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:140 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_cache.8.xml:10 sss_cache.8.xml:15 -msgid "sss_cache" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_cache.8.xml:16 -msgid "perform cache cleanup" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_cache.8.xml:21 -msgid "" -"<command>sss_cache</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_cache.8.xml:31 -msgid "" -"<command>sss_cache</command> invalidates records in SSSD cache. Invalidated " -"records are forced to be reloaded from server as soon as related SSSD " -"backend is online." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:42 -msgid "" -"<option>-u</option>,<option>--user</option> <replaceable>login</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:47 -msgid "Invalidate specific user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:53 -msgid "<option>-U</option>,<option>--users</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:57 -msgid "" -"Invalidate all user records. This option overrides invalidation of specific " -"user if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:64 -msgid "" -"<option>-g</option>,<option>--group</option> <replaceable>group</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:69 -msgid "Invalidate specific group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:75 -msgid "<option>-G</option>,<option>--groups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:79 -msgid "" -"Invalidate all group records. This option overrides invalidation of specific " -"group if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:86 -msgid "" -"<option>-n</option>,<option>--netgroup</option> <replaceable>netgroup</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:91 -msgid "Invalidate specific netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:97 -msgid "<option>-N</option>,<option>--netgroups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:101 -msgid "" -"Invalidate all netgroup records. This option overrides invalidation of " -"specific netgroup if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:108 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>domain</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:113 -msgid "Restrict invalidation process only to a particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_debuglevel.8.xml:10 sss_debuglevel.8.xml:15 -msgid "sss_debuglevel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_debuglevel.8.xml:16 -msgid "change debug level while SSSD is running" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_debuglevel.8.xml:21 -msgid "" -"<command>sss_debuglevel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>NEW_DEBUG_LEVEL</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_debuglevel.8.xml:32 -msgid "" -"<command>sss_debuglevel</command> changes debug level of SSSD monitor and " -"providers to <replaceable>NEW_DEBUG_LEVEL</replaceable> while SSSD is " -"running." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_debuglevel.8.xml:59 -msgid "<replaceable>NEW_DEBUG_LEVEL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_authorizedkeys.1.xml:10 sss_ssh_authorizedkeys.1.xml:15 -msgid "sss_ssh_authorizedkeys" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_ssh_authorizedkeys.1.xml:11 sss_ssh_knownhostsproxy.1.xml:11 -msgid "1" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_authorizedkeys.1.xml:16 -msgid "get OpenSSH authorized keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_authorizedkeys.1.xml:21 -msgid "" -"<command>sss_ssh_authorizedkeys</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>USER</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:32 -msgid "" -"<command>sss_ssh_authorizedkeys</command> acquires SSH public keys for user " -"<replaceable>USER</replaceable> and outputs them in OpenSSH authorized_keys " -"format (see the <quote>AUTHORIZED_KEYS FILE FORMAT</quote> section of " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> for more information)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:41 -msgid "" -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_authorizedkeys</" -"command> for public key user authentication if it is compiled with support " -"for either <quote>AuthorizedKeysCommand</quote> or <quote>PubkeyAgent</" -"quote> <citerefentry> <refentrytitle>sshd_config</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:58 -#, no-wrap -msgid "AuthorizedKeysCommand /usr/bin/sss_ssh_authorizedkeys\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:51 -msgid "" -"If <quote>AuthorizedKeysCommand</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by putting the following directive " -"in <citerefentry> <refentrytitle>sshd_config</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry>: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:69 -#, no-wrap -msgid "PubKeyAgent /usr/bin/sss_ssh_authorizedkeys %u\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:62 -msgid "" -"If <quote>PubkeyAgent</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by using the following directive " -"for <citerefentry> <refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> configuration: <placeholder type=\"programlisting" -"\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_authorizedkeys.1.xml:87 -msgid "" -"Search for user public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:98 -msgid "" -"<citerefentry> <refentrytitle>sshd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sshd_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_knownhostsproxy</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_knownhostsproxy.1.xml:10 sss_ssh_knownhostsproxy.1.xml:15 -msgid "sss_ssh_knownhostsproxy" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_knownhostsproxy.1.xml:16 -msgid "get OpenSSH host keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_knownhostsproxy.1.xml:21 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>HOST</replaceable></arg> <arg " -"choice='opt'><replaceable>PROXY_COMMAND</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:33 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> acquires SSH host public keys for " -"host <replaceable>HOST</replaceable>, stores them in a custom OpenSSH " -"known_hosts file (see the <quote>SSH_KNOWN_HOSTS FILE FORMAT</quote> section " -"of <citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> for more information) <filename>/var/lib/sss/" -"pubconf/known_hosts</filename> and estabilishes connection to the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:43 -msgid "" -"If <replaceable>PROXY_COMMAND</replaceable> is specified, it is used to " -"create the connection to the host instead of opening a socket." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_knownhostsproxy.1.xml:55 -#, no-wrap -msgid "" -"ProxyCommand /usr/bin/sss_ssh_knownhostsproxy -p %p %h\n" -"GlobalKnownHostsFile2 /var/lib/sss/pubconf/known_hosts\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:48 -msgid "" -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_knownhostsproxy</" -"command> for host key authentication by using the following directives for " -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> configuration: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_ssh_knownhostsproxy.1.xml:69 -msgid "" -"<option>-p</option>,<option>--port</option> <replaceable>PORT</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:74 -msgid "" -"Use port <replaceable>PORT</replaceable> to connect to the host. By " -"default, port 22 is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:86 -msgid "" -"Search for host public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:97 -msgid "" -"<citerefentry> <refentrytitle>ssh</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>ssh_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_authorizedkeys</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/service_discovery.xml:2 -msgid "SERVICE DISCOVERY" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/service_discovery.xml:4 -msgid "" -"The service discovery feature allows back ends to automatically find the " -"appropriate servers to connect to using a special DNS query." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:9 -msgid "Configuration" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:11 -msgid "" -"If no servers are specified, the back end automatically uses service " -"discovery to try to find a server. Optionally, the user may choose to use " -"both fixed server addresses and service discovery by inserting a special " -"keyword, <quote>_srv_</quote>, in the list of servers. The order of " -"preference is maintained. This feature is useful if, for example, the user " -"prefers to use service discovery whenever possible, and fall back to a " -"specific server when no servers can be discovered using DNS." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:23 -msgid "The domain name" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:25 -msgid "" -"Please refer to the <quote>dns_discovery_domain</quote> parameter in the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for more details." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:35 -msgid "The protocol" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:37 -msgid "" -"The queries usually specify _tcp as the protocol. Exceptions are documented " -"in respective option description." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:42 -msgid "See Also" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:44 -msgid "" -"For more information on the service discovery mechanism, refer to RFC 2782." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/upstream.xml:1 -msgid "<placeholder type=\"refentryinfo\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/failover.xml:2 -msgid "FAILOVER" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/failover.xml:4 -msgid "" -"The failover feature allows back ends to automatically switch to a different " -"server if the primary server fails." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:8 -msgid "Failover Syntax" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:10 -msgid "" -"The list of servers is given as a comma-separated list; any number of spaces " -"is allowed around the comma. The servers are listed in order of preference. " -"The list can contain any number of servers." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:17 -msgid "The Failover Mechanism" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:19 -msgid "" -"The failover mechanism distinguishes between a machine and a service. The " -"back end first tries to resolve the hostname of a given machine; if this " -"resolution attempt fails, the machine is considered offline. No further " -"attempts are made to connect to this machine for any other service. If the " -"resolution attempt succeeds, the back end tries to connect to a service on " -"this machine. If the service connection attempt fails, then only this " -"particular service is considered offline and the back end automatically " -"switches over to the next service. The machine is still considered online " -"and might still be tried for another service." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:32 -msgid "" -"Further connection attempts are made to machines or services marked as " -"offline after a specified period of time; this is currently hard coded to 30 " -"seconds." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:37 -msgid "" -"If there are no more machines to try, the back end as a whole switches to " -"offline mode, and then attempts to reconnect every 30 seconds." -msgstr "" - -#. type: Content of: <varlistentry><term> -#: include/param_help.xml:3 -msgid "<option>-h</option>,<option>--help</option>" -msgstr "" - -#. type: Content of: <varlistentry><listitem><para> -#: include/param_help.xml:7 -msgid "Display help message and exit." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:3 -msgid "" -"Bit mask that indicates which debug levels will be visible. 0x0010 is the " -"default value as well as the lowest allowed value, 0xFFF0 is the most " -"verbose mode. This setting overrides the settings from config file." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:8 -msgid "Currently supported debug levels:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:11 -msgid "" -"<emphasis>0x0010</emphasis>: Fatal failures. Anything that would prevent " -"SSSD from starting up or causes it to cease running." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:15 -msgid "" -"<emphasis>0x0020</emphasis>: Critical failures. An error that doesn't kill " -"the SSSD, but one that indicates that at least one major feature is not " -"going to work properly." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:20 -msgid "" -"<emphasis>0x0040</emphasis>: Serious failures. An error announcing that a " -"particular request or operation has failed." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:24 -msgid "" -"<emphasis>0x0080</emphasis>: Minor failures. These are the errors that would " -"percolate down to cause the operation failure of 2." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:28 -msgid "<emphasis>0x0100</emphasis>: Configuration settings." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:31 -msgid "<emphasis>0x0200</emphasis>: Function data." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:34 -msgid "<emphasis>0x0400</emphasis>: Trace messages for operation functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:37 -msgid "" -"<emphasis>0x1000</emphasis>: Trace messages for internal control functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:40 -msgid "" -"<emphasis>0x2000</emphasis>: Contents of function-internal variables that " -"may be interesting." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:43 -msgid "<emphasis>0x4000</emphasis>: Extremely low-level tracing information." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:46 -msgid "" -"To log required debug levels, simply add their numbers together as shown in " -"following examples:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:49 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, critical failures, " -"serious failures and function data use 0x0270." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:53 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, configuration settings, " -"function data, trace messages for internal control functions use 0x1310." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:57 -msgid "" -"<emphasis>Note</emphasis>: This is new format of debug levels introduced in " -"1.7.0. Older format (numbers from 0-10) is compatible but deprecated." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/experimental.xml:1 -msgid "" -"<emphasis> This is an experimental feature, please use http://fedorahosted." -"org/sssd to report any issues. </emphasis>" -msgstr "" diff --git a/src/man/po/el.po b/src/man/po/el.po deleted file mode 100644 index 5fa27291e..000000000 --- a/src/man/po/el.po +++ /dev/null @@ -1,6747 +0,0 @@ -# SOME DESCRIPTIVE TITLE -# Copyright (C) YEAR Red Hat -# This file is distributed under the same license as the sssd-docs package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@redhat.com\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-12-23 15:35+0000\n" -"Last-Translator: FULL NAME <EMAIL@ADDRESS>\n" -"Language-Team: Greek <trans-el@lists.fedoraproject.org>\n" -"Language: el\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=2; plural=(n != 1)\n" - -#. type: Content of: <reference><title> -#: sss_groupmod.8.xml:5 sssd.conf.5.xml:5 sssd-ldap.5.xml:5 pam_sss.8.xml:5 -#: sssd_krb5_locator_plugin.8.xml:5 sssd-simple.5.xml:5 sssd-ipa.5.xml:5 -#: sssd.8.xml:5 sss_obfuscate.8.xml:5 sss_useradd.8.xml:5 sssd-krb5.5.xml:5 -#: sss_groupadd.8.xml:5 sss_userdel.8.xml:5 sss_groupdel.8.xml:5 -#: sss_groupshow.8.xml:5 sss_usermod.8.xml:5 sss_cache.8.xml:5 -#: sss_debuglevel.8.xml:5 sss_ssh_authorizedkeys.1.xml:5 -#: sss_ssh_knownhostsproxy.1.xml:5 -msgid "SSSD Manual pages" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupmod.8.xml:10 sss_groupmod.8.xml:15 -msgid "sss_groupmod" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_groupmod.8.xml:11 pam_sss.8.xml:14 sssd_krb5_locator_plugin.8.xml:11 -#: sssd.8.xml:11 sss_obfuscate.8.xml:11 sss_useradd.8.xml:11 -#: sss_groupadd.8.xml:11 sss_userdel.8.xml:11 sss_groupdel.8.xml:11 -#: sss_groupshow.8.xml:11 sss_usermod.8.xml:11 sss_cache.8.xml:11 -#: sss_debuglevel.8.xml:11 -msgid "8" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupmod.8.xml:16 -msgid "modify a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupmod.8.xml:21 -msgid "" -"<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:30 sssd-ldap.5.xml:21 pam_sss.8.xml:44 -#: sssd_krb5_locator_plugin.8.xml:20 sssd-simple.5.xml:22 sssd-ipa.5.xml:21 -#: sssd.8.xml:29 sss_obfuscate.8.xml:30 sss_useradd.8.xml:30 -#: sssd-krb5.5.xml:21 sss_groupadd.8.xml:30 sss_userdel.8.xml:30 -#: sss_groupdel.8.xml:30 sss_groupshow.8.xml:30 sss_usermod.8.xml:30 -#: sss_cache.8.xml:29 sss_debuglevel.8.xml:30 sss_ssh_authorizedkeys.1.xml:30 -#: sss_ssh_knownhostsproxy.1.xml:31 -msgid "DESCRIPTION" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:32 -msgid "" -"<command>sss_groupmod</command> modifies the group to reflect the changes " -"that are specified on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:39 pam_sss.8.xml:51 sssd.8.xml:42 sss_obfuscate.8.xml:58 -#: sss_useradd.8.xml:39 sss_groupadd.8.xml:39 sss_userdel.8.xml:39 -#: sss_groupdel.8.xml:39 sss_groupshow.8.xml:39 sss_usermod.8.xml:39 -#: sss_cache.8.xml:38 sss_debuglevel.8.xml:38 sss_ssh_authorizedkeys.1.xml:78 -#: sss_ssh_knownhostsproxy.1.xml:65 -msgid "OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:43 sss_usermod.8.xml:77 -msgid "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:48 -msgid "" -"Append this group to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:57 sss_usermod.8.xml:91 -msgid "" -"<option>-r</option>,<option>--remove-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:62 -msgid "" -"Remove this group from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:72 sssd.conf.5.xml:1331 sssd-ldap.5.xml:2096 -#: pam_sss.8.xml:139 sssd_krb5_locator_plugin.8.xml:75 sssd-simple.5.xml:143 -#: sssd-ipa.5.xml:562 sssd.8.xml:191 sss_obfuscate.8.xml:103 -#: sss_useradd.8.xml:167 sssd-krb5.5.xml:451 sss_groupadd.8.xml:58 -#: sss_userdel.8.xml:93 sss_groupdel.8.xml:46 sss_groupshow.8.xml:58 -#: sss_usermod.8.xml:138 sss_ssh_authorizedkeys.1.xml:96 -#: sss_ssh_knownhostsproxy.1.xml:95 -msgid "SEE ALSO" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:74 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.conf.5.xml:10 sssd.conf.5.xml:16 -msgid "sssd.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sssd.conf.5.xml:11 sssd-ldap.5.xml:11 sssd-simple.5.xml:11 -#: sssd-ipa.5.xml:11 sssd-krb5.5.xml:11 -msgid "5" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><refmiscinfo> -#: sssd.conf.5.xml:12 sssd-ldap.5.xml:12 sssd-simple.5.xml:12 -#: sssd-ipa.5.xml:12 sssd-krb5.5.xml:12 -msgid "File Formats and Conventions" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.conf.5.xml:17 sssd-ldap.5.xml:17 sssd_krb5_locator_plugin.8.xml:16 -#: sssd-ipa.5.xml:17 sssd-krb5.5.xml:17 -msgid "the configuration file for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:21 -msgid "FILE FORMAT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:29 -#, no-wrap -msgid "" -" <replaceable>[section]</replaceable>\n" -" <replaceable>key</replaceable> = <replaceable>value</replaceable>\n" -" <replaceable>key2</replaceable> = <replaceable>value2,value3</replaceable>\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:24 -msgid "" -"The file has an ini-style syntax and consists of sections and parameters. A " -"section begins with the name of the section in square brackets and continues " -"until the next section begins. An example of section with single and multi-" -"valued parameters: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:36 -msgid "" -"The data types used are string (no quotes needed), integer and bool (with " -"values of <quote>TRUE/FALSE</quote>)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:41 -msgid "" -"A line comment starts with a hash sign (<quote>#</quote>) or a semicolon " -"(<quote>;</quote>)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:46 -msgid "" -"All sections can have an optional <replaceable>description</replaceable> " -"parameter. Its function is only as a label for the section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:52 -msgid "" -"<filename>sssd.conf</filename> must be a regular file, owned by root and " -"only root may read from or write to the file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:58 -msgid "SPECIAL SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:61 -msgid "The [sssd] section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><title> -#: sssd.conf.5.xml:70 sssd.conf.5.xml:1177 -msgid "Section parameters" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:72 -msgid "config_file_version (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:75 -msgid "" -"Indicates what is the syntax of the config file. SSSD 0.6.0 and later use " -"version 2." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:81 -msgid "services" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:84 -msgid "" -"Comma separated list of services that are started when sssd itself starts." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:88 -msgid "" -"Supported services: nss, pam <phrase condition=\"with_sudo\">, sudo</phrase>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:94 sssd.conf.5.xml:257 -msgid "reconnection_retries (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:97 sssd.conf.5.xml:260 -msgid "" -"Number of times services should attempt to reconnect in the event of a Data " -"Provider crash or restart before they give up" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:102 sssd.conf.5.xml:265 -msgid "Default: 3" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:107 -msgid "domains" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:110 -msgid "" -"A domain is a database containing user information. SSSD can use more " -"domains at the same time, but at least one must be configured or SSSD won't " -"start. This parameter described the list of domains in the order you want " -"them to be queried." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:120 -msgid "re_expression (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:123 -msgid "" -"Regular expression that describes how to parse the string containing user " -"name and domain into these components." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:127 -msgid "" -"Default: <quote>(?P<name>[^@]+)@?(?P<domain>[^@]*$)</quote> " -"which translates to \"the name is everything up to the <quote>@</quote> " -"sign, the domain everything after that\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:132 -msgid "" -"PLEASE NOTE: the support for non-unique named subpatterns is not available " -"on all platforms (e.g. RHEL5 and SLES10). Only platforms with libpcre " -"version 7 or higher can support non-unique named subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:139 -msgid "" -"PLEASE NOTE ALSO: older version of libpcre only support the Python syntax (?" -"P<name>) to label subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:146 -msgid "full_name_format (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:149 -msgid "" -"A <citerefentry> <refentrytitle>printf</refentrytitle> <manvolnum>3</" -"manvolnum> </citerefentry>-compatible format that describes how to translate " -"a (name, domain) tuple into a fully qualified name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:157 -msgid "Default: <quote>%1$s@%2$s</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:162 -msgid "try_inotify (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:165 -msgid "" -"SSSD monitors the state of resolv.conf to identify when it needs to update " -"its internal DNS resolver. By default, we will attempt to use inotify for " -"this, and will fall back to polling resolv.conf every five seconds if " -"inotify cannot be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:173 -msgid "" -"There are some limited situations where it is preferred that we should skip " -"even trying to use inotify. In these rare cases, this option should be set " -"to 'false'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:179 -msgid "" -"Default: true on platforms where inotify is supported. False on other " -"platforms." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:183 -msgid "" -"Note: this option will have no effect on platforms where inotify is " -"unavailable. On these platforms, polling will always be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:190 -msgid "krb5_rcache_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:193 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:197 -msgid "" -"This option accepts a special value __LIBKRB5_DEFAULTS__ that will instruct " -"SSSD to let libkrb5 decide the appropriate location for the replay cache." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:203 -msgid "" -"Default: Distribution-specific and specified at build-time. " -"(__LIBKRB5_DEFAULTS__ if not configured)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:63 -msgid "" -"Individual pieces of SSSD functionality are provided by special SSSD " -"services that are started and stopped together with SSSD. The services are " -"managed by a special service frequently called <quote>monitor</quote>. The " -"<quote>[sssd]</quote> section is used to configure the monitor as well as " -"some other important options like the identity domains. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:216 -msgid "SERVICES SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:218 -msgid "" -"Settings that can be used to configure different services are described in " -"this section. They should reside in the [<replaceable>$NAME</replaceable>] " -"section, for example, for NSS service, the section would be <quote>[nss]</" -"quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:225 -msgid "General service configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:227 -msgid "These options can be used to configure any service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:231 -msgid "debug_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:235 -msgid "debug_timestamps (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:238 -msgid "Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:241 sssd.conf.5.xml:376 sssd-ldap.5.xml:1328 -#: sssd-ldap.5.xml:1446 sssd-ipa.5.xml:206 sssd-ipa.5.xml:241 -msgid "Default: true" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:246 -msgid "debug_microseconds (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:249 -msgid "Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:252 sssd.conf.5.xml:641 sssd-ldap.5.xml:602 -#: sssd-ldap.5.xml:1260 sssd-ldap.5.xml:1397 sssd-ldap.5.xml:1795 -#: sssd-ipa.5.xml:123 sssd-ipa.5.xml:301 sssd-krb5.5.xml:235 -#: sssd-krb5.5.xml:269 sssd-krb5.5.xml:418 -msgid "Default: false" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:270 -msgid "command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:273 -msgid "" -"By default, the executable representing this service is called <command>sssd_" -"${service_name}</command>. This directive allows to change the executable " -"name for the service. In the vast majority of configurations, the default " -"values should suffice." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:281 -msgid "Default: <command>sssd_${service_name}</command>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:289 -msgid "NSS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:291 -msgid "" -"These options can be used to configure the Name Service Switch (NSS) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:296 -msgid "enum_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:299 -msgid "" -"How many seconds should nss_sss cache enumerations (requests for info about " -"all users)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:303 -msgid "Default: 120" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:308 -msgid "entry_cache_nowait_percentage (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:311 -msgid "" -"The entry cache can be set to automatically update entries in the background " -"if they are requested beyond a percentage of the entry_cache_timeout value " -"for the domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:317 -msgid "" -"For example, if the domain's entry_cache_timeout is set to 30s and " -"entry_cache_nowait_percentage is set to 50 (percent), entries that come in " -"after 15 seconds past the last cache update will be returned immediately, " -"but the SSSD will go and update the cache on its own, so that future " -"requests will not need to block waiting for a cache update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:327 -msgid "" -"Valid values for this option are 0-99 and represent a percentage of the " -"entry_cache_timeout for each domain. For performance reasons, this " -"percentage will never reduce the nowait timeout to less than 10 seconds. (0 " -"disables this feature)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:335 -msgid "Default: 50" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:340 -msgid "entry_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:343 -msgid "" -"Specifies for how many seconds nss_sss should cache negative cache hits " -"(that is, queries for invalid database entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:349 sssd.conf.5.xml:669 sssd-krb5.5.xml:223 -msgid "Default: 15" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:354 -msgid "filter_users, filter_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:357 -msgid "" -"Exclude certain users from being fetched from the sss NSS database. This is " -"particularly useful for system accounts. This option can also be set per-" -"domain or include fully-qualified names to filter only users from the " -"particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:364 -msgid "Default: root" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:369 -msgid "filter_users_in_groups (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:372 -msgid "" -"If you want filtered user still be group members set this option to false." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:381 -msgid "override_homedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:390 sssd-krb5.5.xml:166 -msgid "%u" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:391 sssd-krb5.5.xml:167 -msgid "login name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:394 sssd-krb5.5.xml:170 -msgid "%U" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:395 -msgid "UID number" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:398 sssd-krb5.5.xml:188 -msgid "%d" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:399 -msgid "domain name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:402 -msgid "%f" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:403 -msgid "fully qualified user name (user@domain)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:406 sssd-krb5.5.xml:200 -msgid "%%" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:407 sssd-krb5.5.xml:201 -msgid "a literal '%'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:384 -msgid "" -"Override the user's home directory. You can either provide an absolute value " -"or a template. In the template, the following sequences are substituted: " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:413 -msgid "This option can also be set per-domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:418 -msgid "allowed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:421 -msgid "" -"Restrict user shell to one of the listed values. The order of evaluation is:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:424 -msgid "1. If the shell is present in <quote>/etc/shells</quote>, it is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:428 -msgid "" -"2. If the shell is in the allowed_shells list but not in <quote>/etc/shells</" -"quote>, use the value of the shell_fallback parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:433 -msgid "" -"3. If the shell is not in the allowed_shells list and not in <quote>/etc/" -"shells</quote>, a nologin shell is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:438 -msgid "An empty string for shell is passed as-is to libc." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:441 -msgid "" -"The <quote>/etc/shells</quote> is only read on SSSD start up, which means " -"that a restart of the SSSD is required in case a new shell is installed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:445 -msgid "Default: Not set. The user shell is automatically used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:450 -msgid "vetoed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:453 -msgid "Replace any instance of these shells with the shell_fallback" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:458 -msgid "shell_fallback (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:461 -msgid "" -"The default shell to use if an allowed shell is not installed on the machine." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:465 -msgid "Default: /bin/sh" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:472 -msgid "PAM configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:474 -msgid "" -"These options can be used to configure the Pluggable Authentication Module " -"(PAM) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:479 -msgid "offline_credentials_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:482 -msgid "" -"If the authentication provider is offline, how long should we allow cached " -"logins (in days since the last successful online login)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:487 sssd.conf.5.xml:500 -msgid "Default: 0 (No limit)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:493 -msgid "offline_failed_login_attempts (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:496 -msgid "" -"If the authentication provider is offline, how many failed login attempts " -"are allowed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:506 -msgid "offline_failed_login_delay (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:509 -msgid "" -"The time in minutes which has to pass after offline_failed_login_attempts " -"has been reached before a new login attempt is possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:514 -msgid "" -"If set to 0 the user cannot authenticate offline if " -"offline_failed_login_attempts has been reached. Only a successful online " -"authentication can enable offline authentication again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:520 sssd.conf.5.xml:573 sssd.conf.5.xml:1093 -msgid "Default: 5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:526 -msgid "pam_verbosity (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:529 -msgid "" -"Controls what kind of messages are shown to the user during authentication. " -"The higher the number to more messages are displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:534 -msgid "Currently sssd supports the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:537 -msgid "<emphasis>0</emphasis>: do not show any message" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:540 -msgid "<emphasis>1</emphasis>: show only important messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:544 -msgid "<emphasis>2</emphasis>: show informational messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:547 -msgid "<emphasis>3</emphasis>: show all messages and debug information" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:551 sssd.8.xml:63 -msgid "Default: 1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:556 -msgid "pam_id_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:559 -msgid "" -"For any PAM request while SSSD is online, the SSSD will attempt to " -"immediately update the cached identity information for the user in order to " -"ensure that authentication takes place with the latest information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:565 -msgid "" -"A complete PAM conversation may perform multiple PAM requests, such as " -"account management and session opening. This option controls (on a per-" -"client-application basis) how long (in seconds) we can cache the identity " -"information to avoid excessive round-trips to the identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:579 -msgid "pam_pwd_expiration_warning (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:582 -msgid "Display a warning N days before the password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:585 -msgid "" -"Please note that the backend server has to provide information about the " -"expiration time of the password. If this information is missing, sssd " -"cannot display a warning." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:591 -msgid "Default: 7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:599 -msgid "SUDO configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:601 -msgid "These options can be used to configure the sudo service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:608 -msgid "sudo_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:611 -msgid "" -"For any sudo request that comes while SSSD is online, the SSSD will attempt " -"to update the cached rules in order to ensure that sudo has the latest " -"ruleset." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:617 -msgid "" -"The user may, however, run a couple of sudo commands successively, which " -"would trigger multiple LDAP requests. In order to speed up this use-case, " -"the sudo service maintains an in-memory cache that would be used for " -"performing fast replies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:624 -msgid "" -"This option controls how long (in seconds) can the sudo service cache rules " -"for a user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:628 -msgid "Default: 180" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:633 -msgid "sudo_timed (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:636 -msgid "" -"Whether or not to evaluate the sudoNotBefore and sudoNotAfter attributes " -"that implement time-dependent sudoers entries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:649 -msgid "AUTOFS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:651 -msgid "These options can be used to configure the autofs service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:659 -msgid "autofs_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:662 -msgid "" -"Specifies for how many seconds should the autofs responder negative cache " -"hits (that is, queries for invalid map entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:679 -msgid "DOMAIN SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:686 -msgid "min_id,max_id (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:689 -msgid "" -"UID and GID limits for the domain. If a domain contains an entry that is " -"outside these limits, it is ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:694 -msgid "" -"For users, this affects the primary GID limit. The user will not be returned " -"to NSS if either the UID or the primary GID is outside the range. For non-" -"primary group memberships, those that are in range will be reported as " -"expected." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:701 -msgid "Default: 1 for min_id, 0 (no limit) for max_id" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:707 -msgid "timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:710 -msgid "" -"Timeout in seconds between heartbeats for this domain. This is used to " -"ensure that the backend process is alive and capable of answering requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:715 sssd-ldap.5.xml:1131 -msgid "Default: 10" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:721 -msgid "enumerate (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:724 -msgid "" -"Determines if a domain can be enumerated. This parameter can have one of the " -"following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:728 -msgid "TRUE = Users and groups are enumerated" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:731 -msgid "FALSE = No enumerations for this domain" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:734 sssd.conf.5.xml:839 sssd.conf.5.xml:893 -msgid "Default: FALSE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:737 -msgid "" -"Note: Enabling enumeration has a moderate performance impact on SSSD while " -"enumeration is running. It may take up to several minutes after SSSD startup " -"to fully complete enumerations. During this time, individual requests for " -"information will go directly to LDAP, though it may be slow, due to the " -"heavy enumeration processing." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:747 -msgid "" -"While the first enumeration is running, requests for the complete user or " -"group lists may return no results until it completes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:752 -msgid "" -"Further, enabling enumeration may increase the time necessary to detect " -"network disconnection, as longer timeouts are required to ensure that " -"enumeration lookups are completed successfully. For more information, refer " -"to the man pages for the specific id_provider in use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:763 -msgid "entry_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:766 -msgid "" -"How many seconds should nss_sss consider entries valid before asking the " -"backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:770 -msgid "Default: 5400" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:776 -msgid "entry_cache_user_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:779 -msgid "" -"How many seconds should nss_sss consider user entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:783 sssd.conf.5.xml:796 sssd.conf.5.xml:809 -#: sssd.conf.5.xml:822 -msgid "Default: entry_cache_timeout" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:789 -msgid "entry_cache_group_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:792 -msgid "" -"How many seconds should nss_sss consider group entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:802 -msgid "entry_cache_netgroup_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:805 -msgid "" -"How many seconds should nss_sss consider netgroup entries valid before " -"asking the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:815 -msgid "entry_cache_service_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:818 -msgid "" -"How many seconds should nss_sss consider service entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:828 -msgid "cache_credentials (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:831 -msgid "Determines if user credentials are also cached in the local LDB cache" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:835 -msgid "User credentials are stored in a SHA512 hash, not in plaintext" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:844 -msgid "account_cache_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:847 -msgid "" -"Number of days entries are left in cache after last successful login before " -"being removed during a cleanup of the cache. 0 means keep forever. The " -"value of this parameter must be greater than or equal to " -"offline_credentials_expiration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:854 -msgid "Default: 0 (unlimited)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:860 -msgid "id_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:863 -msgid "The Data Provider identity backend to use for this domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:867 -msgid "Supported backends:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:870 -msgid "proxy: Support a legacy NSS provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:873 -msgid "local: SSSD internal local provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:876 -msgid "ldap: LDAP provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:882 -msgid "use_fully_qualified_names (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:885 -msgid "" -"If set to TRUE, all requests to this domain must use fully qualified names. " -"For example, if used in LOCAL domain that contains a \"test\" user, " -"<command>getent passwd test</command> wouldn't find the user while " -"<command>getent passwd test@LOCAL</command> would." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:898 -msgid "auth_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:901 -msgid "" -"The authentication provider used for the domain. Supported auth providers " -"are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:905 -msgid "" -"<quote>ldap</quote> for native LDAP authentication. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:912 -msgid "" -"<quote>krb5</quote> for Kerberos authentication. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:919 -msgid "" -"<quote>proxy</quote> for relaying authentication to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:922 -msgid "<quote>none</quote> disables authentication explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:925 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"authentication requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:931 -msgid "access_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:934 -msgid "" -"The access control provider used for the domain. There are two built-in " -"access providers (in addition to any included in installed backends) " -"Internal special providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:940 -msgid "<quote>permit</quote> always allow access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:943 -msgid "<quote>deny</quote> always deny access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:946 -msgid "" -"<quote>simple</quote> access control based on access or deny lists. See " -"<citerefentry> <refentrytitle>sssd-simple</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry> for more information on configuring the simple " -"access module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:953 -msgid "Default: <quote>permit</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:958 -msgid "chpass_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:961 -msgid "" -"The provider which should handle change password operations for the domain. " -"Supported change password providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:966 -msgid "" -"<quote>ipa</quote> to change a password stored in an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:974 -msgid "" -"<quote>ldap</quote> to change a password stored in a LDAP server. See " -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:982 -msgid "" -"<quote>krb5</quote> to change the Kerberos password. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:990 -msgid "" -"<quote>proxy</quote> for relaying password changes to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:994 -msgid "<quote>none</quote> disallows password changes explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:997 -msgid "" -"Default: <quote>auth_provider</quote> is used if it is set and can handle " -"change password requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1004 -msgid "sudo_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1010 -msgid "The SUDO provider used for the domain. Supported SUDO providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1014 -msgid "" -"<quote>ldap</quote> for rules stored in LDAP. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1021 -msgid "<quote>none</quote> disables SUDO explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1024 -msgid "Default: The value of <quote>id_provider</quote> is used if it is set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1030 -msgid "session_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1033 -msgid "" -"The provider which should handle loading of session settings. Supported " -"session providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1038 -msgid "" -"<quote>ipa</quote> to load session settings from an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1046 -msgid "<quote>none</quote> disallows fetching session settings explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1049 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"session loading requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1056 -msgid "lookup_family_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1059 -msgid "" -"Provides the ability to select preferred address family to use when " -"performing DNS lookups." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1063 -msgid "Supported values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1066 -msgid "ipv4_first: Try looking up IPv4 address, if that fails, try IPv6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1069 -msgid "ipv4_only: Only attempt to resolve hostnames to IPv4 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1072 -msgid "ipv6_first: Try looking up IPv6 address, if that fails, try IPv4" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1075 -msgid "ipv6_only: Only attempt to resolve hostnames to IPv6 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1078 -msgid "Default: ipv4_first" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1084 -msgid "dns_resolver_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1087 -msgid "" -"Defines the amount of time (in seconds) to wait for a reply from the DNS " -"resolver before assuming that it is unreachable. If this timeout is reached, " -"the domain will continue to operate in offline mode." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1099 -msgid "dns_discovery_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1102 -msgid "" -"If service discovery is used in the back end, specifies the domain part of " -"the service discovery DNS query." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1106 -msgid "Default: Use the domain part of machine's hostname" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1112 -msgid "override_gid (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1115 -msgid "Override the primary GID value with the one specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1121 -msgid "case_sensitive (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1124 -msgid "" -"Treat user and group names as case sensitive. At the moment, this option is " -"not supported in the local provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1129 -msgid "Default: True" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:681 -msgid "" -"These configuration options can be present in a domain configuration " -"section, that is, in a section called <quote>[domain/<replaceable>NAME</" -"replaceable>]</quote> <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1141 -msgid "proxy_pam_target (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1144 -msgid "The proxy target PAM proxies to." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1147 -msgid "" -"Default: not set by default, you have to take an existing pam configuration " -"or create a new one and add the service name here." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1155 -msgid "proxy_lib_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1158 -msgid "" -"The name of the NSS library to use in proxy domains. The NSS functions " -"searched for in the library are in the form of _nss_$(libName)_$(function), " -"for example _nss_files_getpwent." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1137 -msgid "" -"Options valid for proxy domains. <placeholder type=\"variablelist\" id=" -"\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:1170 -msgid "The local domain section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:1172 -msgid "" -"This section contains settings for domain that stores users and groups in " -"SSSD native database, that is, a domain that uses " -"<replaceable>id_provider=local</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1179 -msgid "default_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1182 -msgid "The default shell for users created with SSSD userspace tools." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1186 -msgid "Default: <filename>/bin/bash</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1191 -msgid "base_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1194 -msgid "" -"The tools append the login name to <replaceable>base_directory</replaceable> " -"and use that as the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1199 -msgid "Default: <filename>/home</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1204 -msgid "create_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1207 -msgid "" -"Indicate if a home directory should be created by default for new users. " -"Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1211 sssd.conf.5.xml:1223 -msgid "Default: TRUE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1216 -msgid "remove_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1219 -msgid "" -"Indicate if a home directory should be removed by default for deleted " -"users. Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1228 -msgid "homedir_umask (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1231 -msgid "" -"Used by <citerefentry> <refentrytitle>sss_useradd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry> to specify the default permissions " -"on a newly created home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1239 -msgid "Default: 077" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1244 -msgid "skel_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1247 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<citerefentry> <refentrytitle>sss_useradd</refentrytitle> <manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1257 -msgid "Default: <filename>/etc/skel</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1262 -msgid "mail_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1265 -msgid "" -"The mail spool directory. This is needed to manipulate the mailbox when its " -"corresponding user account is modified or deleted. If not specified, a " -"default value is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1272 -msgid "Default: <filename>/var/mail</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1277 -msgid "userdel_cmd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1280 -msgid "" -"The command that is run after a user is removed. The command us passed the " -"username of the user being removed as the first and only parameter. The " -"return code of the command is not taken into account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1286 -msgid "Default: None, no command is run" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:1296 sssd-ldap.5.xml:2064 sssd-simple.5.xml:126 -#: sssd-ipa.5.xml:544 sssd-krb5.5.xml:432 -msgid "EXAMPLE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:1302 -#, no-wrap -msgid "" -"[sssd]\n" -"domains = LDAP\n" -"services = nss, pam\n" -"config_file_version = 2\n" -"\n" -"[nss]\n" -"filter_groups = root\n" -"filter_users = root\n" -"\n" -"[pam]\n" -"\n" -"[domain/LDAP]\n" -"id_provider = ldap\n" -"ldap_uri = ldap://ldap.example.com\n" -"ldap_search_base = dc=example,dc=com\n" -"\n" -"auth_provider = krb5\n" -"krb5_server = kerberos.example.com\n" -"krb5_realm = EXAMPLE.COM\n" -"cache_credentials = true\n" -"\n" -"min_id = 10000\n" -"max_id = 20000\n" -"enumerate = False\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1298 -msgid "" -"The following example shows a typical SSSD config. It does not describe " -"configuration of the domains themselves - refer to documentation on " -"configuring domains for more details. <placeholder type=\"programlisting\" " -"id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1333 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>pam_sss</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ldap.5.xml:10 sssd-ldap.5.xml:16 -msgid "sssd-ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:23 -msgid "" -"This manual page describes the configuration of LDAP domains for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. Refer to the <quote>FILE FORMAT</quote> section of the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for detailed syntax information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:35 -msgid "You can configure SSSD to use more than one LDAP domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:38 -msgid "" -"LDAP back end supports id, auth, access and chpass providers. If you want to " -"authenticate against an LDAP server either TLS/SSL or LDAPS is required. " -"<command>sssd</command> <emphasis>does not</emphasis> support authentication " -"over an unencrypted channel. If the LDAP server is used only as an identity " -"provider, an encrypted channel is not needed. Please refer to " -"<quote>ldap_access_filter</quote> config option for more information about " -"using LDAP as an access provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:49 sssd-simple.5.xml:69 sssd-ipa.5.xml:64 -#: sssd-krb5.5.xml:63 -msgid "CONFIGURATION OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:60 -msgid "ldap_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:63 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference. Refer to the <quote>FAILOVER</" -"quote> section for more information on failover and server redundancy. If " -"not specified, service discovery is enabled. For more information, refer to " -"the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:70 -msgid "The format of the URI must match the format defined in RFC 2732:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:73 -msgid "ldap[s]://<host>[:port]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:76 -msgid "" -"For explicit IPv6 addresses, <host> must be enclosed in brackets []" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:79 -msgid "example: ldap://[fc00::126:25]:389" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:85 -msgid "ldap_chpass_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:88 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference to change the password of a user. " -"Refer to the <quote>FAILOVER</quote> section for more information on " -"failover and server redundancy." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:95 -msgid "To enable service discovery ldap_chpass_dns_service_name must be set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:99 -msgid "Default: empty, i.e. ldap_uri is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:105 -msgid "ldap_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:108 -msgid "The default base DN to use for performing LDAP user operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:112 -msgid "" -"Starting with SSSD 1.7.0, SSSD supports multiple search bases using the " -"syntax:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:116 -msgid "search_base[?scope?[filter][?search_base?scope?[filter]]*]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:119 -msgid "The scope can be one of \"base\", \"onelevel\" or \"subtree\"." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:122 -msgid "" -"The filter must be a valid LDAP search filter as specified by http://www." -"ietf.org/rfc/rfc2254.txt" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:126 -msgid "Examples:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:129 -msgid "" -"ldap_search_base = dc=example,dc=com (which is equivalent to) " -"ldap_search_base = dc=example,dc=com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:134 -msgid "" -"ldap_search_base = cn=host_specific,dc=example,dc=com?subtree?" -"(host=thishost)?dc=example.com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:137 -msgid "" -"Note: It is unsupported to have multiple search bases which reference " -"identically-named objects (for example, groups with the same name in two " -"different search bases). This will lead to unpredictable behavior on client " -"machines." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:144 -msgid "" -"Default: If not set, the value of the defaultNamingContext or namingContexts " -"attribute from the RootDSE of the LDAP server is used. If " -"defaultNamingContext does not exists or has an empty value namingContexts is " -"used. The namingContexts attribute must have a single value with the DN of " -"the search base of the LDAP server to make this work. Multiple values are " -"are not supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:158 -msgid "ldap_schema (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:161 -msgid "" -"Specifies the Schema Type in use on the target LDAP server. Depending on " -"the selected schema, the default attribute names retrieved from the servers " -"may vary. The way that some attributes are handled may also differ. Three " -"schema types are currently supported: rfc2307 rfc2307bis IPA The main " -"difference between these schema types is how group memberships are recorded " -"in the server. With rfc2307, group members are listed by name in the " -"<emphasis>memberUid</emphasis> attribute. With rfc2307bis and IPA, group " -"members are listed by DN and stored in the <emphasis>member</emphasis> " -"attribute." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:180 -msgid "Default: rfc2307" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:186 -msgid "ldap_default_bind_dn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:189 -msgid "The default bind DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:196 -msgid "ldap_default_authtok_type (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:199 -msgid "The type of the authentication token of the default bind DN." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:203 -msgid "The two mechanisms currently supported are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:206 -msgid "password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:209 -msgid "obfuscated_password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:212 -msgid "Default: password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:218 -msgid "ldap_default_authtok (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:221 -msgid "" -"The authentication token of the default bind DN. Only clear text passwords " -"are currently supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:228 -msgid "ldap_user_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:231 -msgid "The object class of a user entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:234 -msgid "Default: posixAccount" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:240 -msgid "ldap_user_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:243 -msgid "The LDAP attribute that corresponds to the user's login name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:247 -msgid "Default: uid" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:253 -msgid "ldap_user_uid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:256 -msgid "The LDAP attribute that corresponds to the user's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:260 -msgid "Default: uidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:266 -msgid "ldap_user_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:269 -msgid "The LDAP attribute that corresponds to the user's primary group id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:273 sssd-ldap.5.xml:740 -msgid "Default: gidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:279 -msgid "ldap_user_gecos (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:282 -msgid "The LDAP attribute that corresponds to the user's gecos field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:286 -msgid "Default: gecos" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:292 -msgid "ldap_user_home_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:295 -msgid "The LDAP attribute that contains the name of the user's home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:299 -msgid "Default: homeDirectory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:305 -msgid "ldap_user_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:308 -msgid "The LDAP attribute that contains the path to the user's default shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:312 -msgid "Default: loginShell" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:318 -msgid "ldap_user_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:321 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP user object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:325 sssd-ldap.5.xml:766 sssd-ldap.5.xml:878 -msgid "Default: nsUniqueId" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:331 -msgid "ldap_user_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:334 sssd-ldap.5.xml:775 sssd-ldap.5.xml:887 -msgid "" -"The LDAP attribute that contains timestamp of the last modification of the " -"parent object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:338 sssd-ldap.5.xml:779 sssd-ldap.5.xml:894 -msgid "Default: modifyTimestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:344 -msgid "ldap_user_shadow_last_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:347 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (date of " -"the last password change)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:357 -msgid "Default: shadowLastChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:363 -msgid "ldap_user_shadow_min (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:366 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (minimum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:375 -msgid "Default: shadowMin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:381 -msgid "ldap_user_shadow_max (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:384 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (maximum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:393 -msgid "Default: shadowMax" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:399 -msgid "ldap_user_shadow_warning (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:402 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password warning period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:412 -msgid "Default: shadowWarning" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:418 -msgid "ldap_user_shadow_inactive (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:421 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password inactivity period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:431 -msgid "Default: shadowInactive" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:437 -msgid "ldap_user_shadow_expire (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:440 -msgid "" -"When using ldap_pwd_policy=shadow or ldap_account_expire_policy=shadow, this " -"parameter contains the name of an LDAP attribute corresponding to its " -"<citerefentry> <refentrytitle>shadow</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> counterpart (account expiration date)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:450 -msgid "Default: shadowExpire" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:456 -msgid "ldap_user_krb_last_pwd_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:459 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time of last password change in " -"kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:465 -msgid "Default: krbLastPwdChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:471 -msgid "ldap_user_krb_password_expiration (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:474 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time when current password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:480 -msgid "Default: krbPasswordExpiration" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:486 -msgid "ldap_user_ad_account_expires (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:489 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the expiration time of the account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:494 -msgid "Default: accountExpires" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:500 -msgid "ldap_user_ad_user_account_control (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:503 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the user account control bit field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:508 -msgid "Default: userAccountControl" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:514 -msgid "ldap_ns_account_lock (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:517 -msgid "" -"When using ldap_account_expire_policy=rhds or equivalent, this parameter " -"determines if access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:522 -msgid "Default: nsAccountLock" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:528 -msgid "ldap_user_nds_login_disabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:531 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines if " -"access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:535 sssd-ldap.5.xml:549 -msgid "Default: loginDisabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:541 -msgid "ldap_user_nds_login_expiration_time (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:544 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines until " -"which date access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:555 -msgid "ldap_user_nds_login_allowed_time_map (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:558 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines the " -"hours of a day in a week when access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:563 -msgid "Default: loginAllowedTimeMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:569 -msgid "ldap_user_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:572 -msgid "" -"The LDAP attribute that contains the user's Kerberos User Principal Name " -"(UPN)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:576 -msgid "Default: krbPrincipalName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:582 -msgid "ldap_user_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:585 -msgid "The LDAP attribute that contains the user's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:592 -msgid "ldap_force_upper_case_realm (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:595 -msgid "" -"Some directory servers, for example Active Directory, might deliver the " -"realm part of the UPN in lower case, which might cause the authentication to " -"fail. Set this option to a non-zero value if you want to use an upper-case " -"realm." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:608 -msgid "ldap_enumeration_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:611 -msgid "" -"Specifies how many seconds SSSD has to wait before refreshing its cache of " -"enumerated records." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:616 sssd-ldap.5.xml:1808 -msgid "Default: 300" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:622 -msgid "ldap_purge_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:625 -msgid "" -"Determine how often to check the cache for inactive entries (such as groups " -"with no members and users who have never logged in) and remove them to save " -"space." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:631 -msgid "Setting this option to zero will disable the cache cleanup operation." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:635 -msgid "Default: 10800 (12 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:641 -msgid "ldap_user_fullname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:644 -msgid "The LDAP attribute that corresponds to the user's full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:648 sssd-ldap.5.xml:727 sssd-ldap.5.xml:828 -#: sssd-ldap.5.xml:919 sssd-ldap.5.xml:1663 sssd-ldap.5.xml:1881 -#: sssd-ipa.5.xml:422 -msgid "Default: cn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:654 -msgid "ldap_user_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:657 -msgid "The LDAP attribute that lists the user's group memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:661 sssd-ipa.5.xml:326 -msgid "Default: memberOf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:667 -msgid "ldap_user_authorized_service (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:670 -msgid "" -"If access_provider=ldap and ldap_access_order=authorized_service, SSSD will " -"use the presence of the authorizedService attribute in the user's LDAP entry " -"to determine access privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:677 -msgid "" -"An explicit deny (!svc) is resolved first. Second, SSSD searches for " -"explicit allow (svc) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:682 -msgid "Default: authorizedService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:688 -msgid "ldap_user_authorized_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:691 -msgid "" -"If access_provider=ldap and ldap_access_order=host, SSSD will use the " -"presence of the host attribute in the user's LDAP entry to determine access " -"privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:697 -msgid "" -"An explicit deny (!host) is resolved first. Second, SSSD searches for " -"explicit allow (host) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:702 -msgid "Default: host" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:708 -msgid "ldap_group_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:711 -msgid "The object class of a group entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:714 -msgid "Default: posixGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:720 -msgid "ldap_group_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:723 -msgid "The LDAP attribute that corresponds to the group name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:733 -msgid "ldap_group_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:736 -msgid "The LDAP attribute that corresponds to the group's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:746 -msgid "ldap_group_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:749 -msgid "The LDAP attribute that contains the names of the group's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:753 -msgid "Default: memberuid (rfc2307) / member (rfc2307bis)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:759 -msgid "ldap_group_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:762 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP group object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:772 -msgid "ldap_group_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:785 -msgid "ldap_group_nesting_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:788 -msgid "" -"If ldap_schema is set to a schema format that supports nested groups (e.g. " -"RFC2307bis), then this option controls how many levels of nesting SSSD will " -"follow. This option has no effect on the RFC2307 schema." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:795 -msgid "Default: 2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:801 -msgid "ldap_netgroup_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:804 -msgid "The object class of a netgroup entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:807 -msgid "In IPA provider, ipa_netgroup_object_class should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:811 -msgid "Default: nisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:817 -msgid "ldap_netgroup_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:820 -msgid "The LDAP attribute that corresponds to the netgroup name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:824 -msgid "In IPA provider, ipa_netgroup_name should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:834 -msgid "ldap_netgroup_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:837 -msgid "The LDAP attribute that contains the names of the netgroup's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:841 -msgid "In IPA provider, ipa_netgroup_member should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:845 -msgid "Default: memberNisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:851 -msgid "ldap_netgroup_triple (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:854 -msgid "" -"The LDAP attribute that contains the (host, user, domain) netgroup triples." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:858 sssd-ldap.5.xml:891 -msgid "This option is not available in IPA provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:861 -msgid "Default: nisNetgroupTriple" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:867 -msgid "ldap_netgroup_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:870 -msgid "" -"The LDAP attribute that contains the UUID/GUID of an LDAP netgroup object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:874 -msgid "In IPA provider, ipa_netgroup_uuid should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:884 -msgid "ldap_netgroup_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:900 -msgid "ldap_service_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:903 -msgid "The object class of a service entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:906 -msgid "Default: ipService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:912 -msgid "ldap_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:915 -msgid "" -"The LDAP attribute that contains the name of service attributes and their " -"aliases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:925 -msgid "ldap_service_port (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:928 -msgid "The LDAP attribute that contains the port managed by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:932 -msgid "Default: ipServicePort" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:938 -msgid "ldap_service_proto (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:941 -msgid "" -"The LDAP attribute that contains the protocols understood by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:945 -msgid "Default: ipServiceProtocol" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:951 -msgid "ldap_service_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:954 -msgid "An optional base DN to restrict service searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:958 sssd-ldap.5.xml:1918 sssd-ldap.5.xml:1937 -#: sssd-ldap.5.xml:1956 sssd-ldap.5.xml:2019 sssd-ldap.5.xml:2041 -#: sssd-ipa.5.xml:163 sssd-ipa.5.xml:187 -msgid "" -"See <quote>ldap_search_base</quote> for information about configuring " -"multiple search bases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:963 sssd-ldap.5.xml:1923 sssd-ldap.5.xml:1942 -#: sssd-ldap.5.xml:1961 sssd-ldap.5.xml:2024 sssd-ldap.5.xml:2046 -#: sssd-ipa.5.xml:173 sssd-ipa.5.xml:192 -msgid "Default: the value of <emphasis>ldap_search_base</emphasis>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:970 -msgid "ldap_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:973 -msgid "" -"Specifies the timeout (in seconds) that ldap searches are allowed to run " -"before they are cancelled and cached results are returned (and offline mode " -"is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:979 -msgid "" -"Note: this option is subject to change in future versions of the SSSD. It " -"will likely be replaced at some point by a series of timeouts for specific " -"lookup types." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:985 sssd-ldap.5.xml:1027 sssd-ldap.5.xml:1042 -msgid "Default: 6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:991 -msgid "ldap_enumeration_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:994 -msgid "" -"Specifies the timeout (in seconds) that ldap searches for user and group " -"enumerations are allowed to run before they are cancelled and cached results " -"are returned (and offline mode is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1001 -msgid "Default: 60" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1007 -msgid "ldap_network_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1010 -msgid "" -"Specifies the timeout (in seconds) after which the <citerefentry> " -"<refentrytitle>poll</refentrytitle> <manvolnum>2</manvolnum> </citerefentry>/" -"<citerefentry> <refentrytitle>select</refentrytitle> <manvolnum>2</" -"manvolnum> </citerefentry> following a <citerefentry> " -"<refentrytitle>connect</refentrytitle> <manvolnum>2</manvolnum> </" -"citerefentry> returns in case of no activity." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1033 -msgid "ldap_opt_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1036 -msgid "" -"Specifies a timeout (in seconds) after which calls to synchronous LDAP APIs " -"will abort if no response is received. Also controls the timeout when " -"communicating with the KDC in case of SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1048 -msgid "ldap_connection_expire_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1051 -msgid "" -"Specifies a timeout (in seconds) that a connection to an LDAP server will be " -"maintained. After this time, the connection will be re-established. If used " -"in parallel with SASL/GSSAPI, the sooner of the two values (this value vs. " -"the TGT lifetime) will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1059 -msgid "Default: 900 (15 minutes)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1065 -msgid "ldap_page_size (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1068 -msgid "" -"Specify the number of records to retrieve from LDAP in a single request. " -"Some LDAP servers enforce a maximum limit per-request." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1073 -msgid "Default: 1000" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1079 -msgid "ldap_disable_paging" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1082 -msgid "" -"Disable the LDAP paging control. This option should be used if the LDAP " -"server reports that it supports the LDAP paging control in its RootDSE but " -"it is not enabled or does not behave properly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1088 -msgid "" -"Example: OpenLDAP servers with the paging control module installed on the " -"server but not enabled will report it in the RootDSE but be unable to use it." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1094 -msgid "" -"Example: 389 DS has a bug where it can only support a one paging control at " -"a time on a single connection. On busy clients, this can result in some " -"requests being denied." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1103 -msgid "ldap_deref_threshold (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1106 -msgid "" -"Specify the number of group members that must be missing from the internal " -"cache in order to trigger a dereference lookup. If less members are missing, " -"they are looked up individually." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1112 -msgid "" -"You can turn off dereference lookups completely by setting the value to 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1116 -msgid "" -"A dereference lookup is a means of fetching all group members in a single " -"LDAP call. Different LDAP servers may implement different dereference " -"methods. The currently supported servers are 389/RHDS, OpenLDAP and Active " -"Directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1124 -msgid "" -"<emphasis>Note:</emphasis> If any of the search bases specifies a search " -"filter, then the dereference lookup performance enhancement will be disabled " -"regardless of this setting." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1137 -msgid "ldap_tls_reqcert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1140 -msgid "" -"Specifies what checks to perform on server certificates in a TLS session, if " -"any. It can be specified as one of the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1146 -msgid "" -"<emphasis>never</emphasis> = The client will not request or check any server " -"certificate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1150 -msgid "" -"<emphasis>allow</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, it will be ignored and the session proceeds normally." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1157 -msgid "" -"<emphasis>try</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, the session is immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1163 -msgid "" -"<emphasis>demand</emphasis> = The server certificate is requested. If no " -"certificate is provided, or a bad certificate is provided, the session is " -"immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1169 -msgid "<emphasis>hard</emphasis> = Same as <quote>demand</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1173 -msgid "Default: hard" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1179 -msgid "ldap_tls_cacert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1182 -msgid "" -"Specifies the file that contains certificates for all of the Certificate " -"Authorities that <command>sssd</command> will recognize." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1187 sssd-ldap.5.xml:1205 sssd-ldap.5.xml:1246 -msgid "" -"Default: use OpenLDAP defaults, typically in <filename>/etc/openldap/ldap." -"conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1194 -msgid "ldap_tls_cacertdir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1197 -msgid "" -"Specifies the path of a directory that contains Certificate Authority " -"certificates in separate individual files. Typically the file names need to " -"be the hash of the certificate followed by '.0'. If available, " -"<command>cacertdir_rehash</command> can be used to create the correct names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1212 -msgid "ldap_tls_cert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1215 -msgid "Specifies the file that contains the certificate for the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1219 sssd-ldap.5.xml:1231 sssd-ldap.5.xml:1979 -#: sssd-ldap.5.xml:2006 sssd-krb5.5.xml:359 -msgid "Default: not set" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1225 -msgid "ldap_tls_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1228 -msgid "Specifies the file that contains the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1237 -msgid "ldap_tls_cipher_suite (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1240 -msgid "" -"Specifies acceptable cipher suites. Typically this is a colon sperated " -"list. See <citerefentry><refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> for format." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1253 -msgid "ldap_id_use_start_tls (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1256 -msgid "" -"Specifies that the id_provider connection must also use <systemitem class=" -"\"protocol\">tls</systemitem> to protect the channel." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1266 -msgid "ldap_sasl_mech (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1269 -msgid "" -"Specify the SASL mechanism to use. Currently only GSSAPI is tested and " -"supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1273 sssd-ldap.5.xml:1428 -msgid "Default: none" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1279 -msgid "ldap_sasl_authid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1282 -msgid "" -"Specify the SASL authorization id to use. When GSSAPI is used, this " -"represents the Kerberos principal used for authentication to the directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1287 -msgid "Default: host/machine.fqdn@REALM" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1293 -msgid "ldap_sasl_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1296 -msgid "" -"If set to true, the LDAP library would perform a reverse lookup to " -"canonicalize the host name during a SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1301 -msgid "Default: false;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1307 -msgid "ldap_krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1310 -msgid "Specify the keytab to use when using SASL/GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1313 -msgid "Default: System keytab, normally <filename>/etc/krb5.keytab</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1319 -msgid "ldap_krb5_init_creds (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1322 -msgid "" -"Specifies that the id_provider should init Kerberos credentials (TGT). This " -"action is performed only if SASL is used and the mechanism selected is " -"GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1334 -msgid "ldap_krb5_ticket_lifetime (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1337 -msgid "Specifies the lifetime in seconds of the TGT if GSSAPI is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1341 -msgid "Default: 86400 (24 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1347 sssd-krb5.5.xml:74 -msgid "krb5_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1350 sssd-krb5.5.xml:77 -msgid "" -"Specifies the comma-separated list of IP addresses or hostnames of the " -"Kerberos servers to which SSSD should connect in the order of preference. " -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. An optional port number (preceded by a " -"colon) may be appended to the addresses or hostnames. If empty, service " -"discovery is enabled - for more information, refer to the <quote>SERVICE " -"DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1362 sssd-krb5.5.xml:89 -msgid "" -"When using service discovery for KDC or kpasswd servers, SSSD first searches " -"for DNS entries that specify _udp as the protocol and falls back to _tcp if " -"none are found." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1367 sssd-krb5.5.xml:94 -msgid "" -"This option was named <quote>krb5_kdcip</quote> in earlier releases of SSSD. " -"While the legacy name is recognized for the time being, users are advised to " -"migrate their config files to use <quote>krb5_server</quote> instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1376 sssd-ipa.5.xml:216 sssd-krb5.5.xml:103 -msgid "krb5_realm (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1379 -msgid "Specify the Kerberos REALM (for SASL/GSSAPI auth)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1382 -msgid "Default: System defaults, see <filename>/etc/krb5.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1388 sssd-ipa.5.xml:231 sssd-krb5.5.xml:409 -msgid "krb5_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1391 -msgid "" -"Specifies if the host principal should be canonicalized when connecting to " -"LDAP server. This feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1403 -msgid "ldap_pwd_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1406 -msgid "" -"Select the policy to evaluate the password expiration on the client side. " -"The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1411 -msgid "" -"<emphasis>none</emphasis> - No evaluation on the client side. This option " -"cannot disable server-side password policies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1416 -msgid "" -"<emphasis>shadow</emphasis> - Use <citerefentry><refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum></citerefentry> style attributes to " -"evaluate if the password has expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1422 -msgid "" -"<emphasis>mit_kerberos</emphasis> - Use the attributes used by MIT Kerberos " -"to determine if the password has expired. Use chpass_provider=krb5 to update " -"these attributes when the password is changed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1434 -msgid "ldap_referrals (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1437 -msgid "Specifies whether automatic referral chasing should be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1441 -msgid "" -"Please note that sssd only supports referral chasing when it is compiled " -"with OpenLDAP version 2.4.13 or higher." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1452 -msgid "ldap_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1455 -msgid "Specifies the service name to use when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1459 -msgid "Default: ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1465 -msgid "ldap_chpass_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1468 -msgid "" -"Specifies the service name to use to find an LDAP server which allows " -"password changes when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1473 -msgid "Default: not set, i.e. service discovery is disabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1479 -msgid "ldap_access_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1482 -msgid "" -"If using access_provider = ldap, this option is mandatory. It specifies an " -"LDAP search filter criteria that must be met for the user to be granted " -"access on this host. If access_provider = ldap and this option is not set, " -"it will result in all users being denied access. Use access_provider = allow " -"to change this default behavior." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1492 sssd-ldap.5.xml:1982 -msgid "Example:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1495 -#, no-wrap -msgid "" -"access_provider = ldap\n" -"ldap_access_filter = memberOf=cn=allowedusers,ou=Groups,dc=example,dc=com\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1499 -msgid "" -"This example means that access to this host is restricted to members of the " -"\"allowedusers\" group in ldap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1504 -msgid "" -"Offline caching for this feature is limited to determining whether the " -"user's last online login was granted access permission. If they were granted " -"access during their last login, they will continue to be granted access " -"while offline and vice-versa." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1512 sssd-ldap.5.xml:1562 -msgid "Default: Empty" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1518 -msgid "ldap_account_expire_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1521 -msgid "" -"With this option a client side evaluation of access control attributes can " -"be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1525 -msgid "" -"Please note that it is always recommended to use server side access control, " -"i.e. the LDAP server should deny the bind request with a suitable error code " -"even if the password is correct." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1532 -msgid "The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1535 -msgid "" -"<emphasis>shadow</emphasis>: use the value of ldap_user_shadow_expire to " -"determine if the account is expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1540 -msgid "" -"<emphasis>ad</emphasis>: use the value of the 32bit field " -"ldap_user_ad_user_account_control and allow access if the second bit is not " -"set. If the attribute is missing access is granted. Also the expiration time " -"of the account is checked." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1547 -msgid "" -"<emphasis>rhds</emphasis>, <emphasis>ipa</emphasis>, <emphasis>389ds</" -"emphasis>: use the value of ldap_ns_account_lock to check if access is " -"allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1553 -msgid "" -"<emphasis>nds</emphasis>: the values of " -"ldap_user_nds_login_allowed_time_map, ldap_user_nds_login_disabled and " -"ldap_user_nds_login_expiration_time are used to check if access is allowed. " -"If both attributes are missing access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1568 -msgid "ldap_access_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1571 -msgid "Comma separated list of access control options. Allowed values are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1575 -msgid "<emphasis>filter</emphasis>: use ldap_access_filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1578 -msgid "<emphasis>expire</emphasis>: use ldap_account_expire_policy" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1582 -msgid "" -"<emphasis>authorized_service</emphasis>: use the authorizedService attribute " -"to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1587 -msgid "<emphasis>host</emphasis>: use the host attribute to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1591 -msgid "Default: filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1594 -msgid "" -"Please note that it is a configuration error if a value is used more than " -"once." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1601 -msgid "ldap_deref (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1604 -msgid "" -"Specifies how alias dereferencing is done when performing a search. The " -"following options are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1609 -msgid "<emphasis>never</emphasis>: Aliases are never dereferenced." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1613 -msgid "" -"<emphasis>searching</emphasis>: Aliases are dereferenced in subordinates of " -"the base object, but not in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1618 -msgid "" -"<emphasis>finding</emphasis>: Aliases are only dereferenced when locating " -"the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1623 -msgid "" -"<emphasis>always</emphasis>: Aliases are dereferenced both in searching and " -"in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1628 -msgid "" -"Default: Empty (this is handled as <emphasis>never</emphasis> by the LDAP " -"client libraries)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:51 -msgid "" -"All of the common configuration options that apply to SSSD domains also " -"apply to LDAP domains. Refer to the <quote>DOMAIN SECTIONS</quote> section " -"of the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for full details. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1639 -msgid "SUDO OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1644 -msgid "ldap_sudorule_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1647 -msgid "The object class of a sudo rule entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1650 -msgid "Default: sudoRole" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1656 -msgid "ldap_sudorule_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1659 -msgid "The LDAP attribute that corresponds to the sudo rule name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1669 -msgid "ldap_sudorule_command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1672 -msgid "The LDAP attribute that corresponds to the command name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1676 -msgid "Default: sudoCommand" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1682 -msgid "ldap_sudorule_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1685 -msgid "" -"The LDAP attribute that corresponds to the host name (or host IP address, " -"host IP network, or host netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1690 -msgid "Default: sudoHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1696 -msgid "ldap_sudorule_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1699 -msgid "" -"The LDAP attribute that corresponds to the user name (or UID, group name or " -"user's netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1703 -msgid "Default: sudoUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1709 -msgid "ldap_sudorule_option (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1712 -msgid "The LDAP attribute that corresponds to the sudo options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1716 -msgid "Default: sudoOption" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1722 -msgid "ldap_sudorule_runasuser (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1725 -msgid "" -"The LDAP attribute that corresponds to the user name that commands may be " -"run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1729 -msgid "Default: sudoRunAsUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1735 -msgid "ldap_sudorule_runasgroup (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1738 -msgid "" -"The LDAP attribute that corresponds to the group name or group GID that " -"commands may be run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1742 -msgid "Default: sudoRunAsGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1748 -msgid "ldap_sudorule_notbefore (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1751 -msgid "" -"The LDAP attribute that corresponds to the start date/time for when the sudo " -"rule is valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1755 -msgid "Default: sudoNotBefore" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1761 -msgid "ldap_sudorule_notafter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1764 -msgid "" -"The LDAP attribute that corresponds to the expiration date/time, after which " -"the sudo rule will no longer be valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1769 -msgid "Default: sudoNotAfter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1775 -msgid "ldap_sudorule_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1778 -msgid "The LDAP attribute that corresponds to the ordering index of the rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1782 -msgid "Default: sudoOrder" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1788 -msgid "ldap_sudo_refresh_enabled (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1791 -msgid "" -"Enables periodical download of all sudo rules. The cache is purged before " -"each update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1801 -msgid "ldap_sudo_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1804 -msgid "" -"How many seconds SSSD has to wait before refreshing its cache of sudo rules." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1642 -msgid "<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1815 -msgid "" -"This manual page only describes attribute name mapping. For detailed " -"explanation of sudo related attribute semantics, see <citerefentry> " -"<refentrytitle>sudoers.ldap</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1825 -msgid "AUTOFS OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1827 -msgid "" -"Please note that the default values correspond to the default schema which " -"is RFC2307." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1834 -msgid "ldap_autofs_map_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1837 sssd-ldap.5.xml:1863 -msgid "The object class of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1840 sssd-ldap.5.xml:1867 -msgid "Default: automountMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1847 -msgid "ldap_autofs_map_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1850 -msgid "The name of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1853 -msgid "Default: ou" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1860 -msgid "ldap_autofs_entry_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1874 -msgid "ldap_autofs_entry_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1877 sssd-ldap.5.xml:1891 -msgid "" -"The key of an automount entry in LDAP. The entry usually corresponds to a " -"mount point." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1888 -msgid "ldap_autofs_entry_value (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1895 -msgid "Default: automountInformation" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1832 -msgid "" -"<placeholder type=\"variablelist\" id=\"0\"/> <placeholder type=" -"\"variablelist\" id=\"1\"/> <placeholder type=\"variablelist\" id=\"2\"/> " -"<placeholder type=\"variablelist\" id=\"3\"/> <placeholder type=" -"\"variablelist\" id=\"4\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1904 -msgid "ADVANCED OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1911 -msgid "ldap_netgroup_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1914 -msgid "" -"An optional base DN to restrict netgroup searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1930 -msgid "ldap_user_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1933 -msgid "An optional base DN to restrict user searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1949 -msgid "ldap_group_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1952 -msgid "An optional base DN to restrict group searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1968 -msgid "ldap_user_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1971 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict user searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1975 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_user_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1985 -#, no-wrap -msgid "" -" ldap_user_search_filter = (loginShell=/bin/tcsh)\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1988 -msgid "" -"This filter would restrict user searches to users that have their shell set " -"to /bin/tcsh." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1995 -msgid "ldap_group_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1998 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict group searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2002 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_group_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2012 -msgid "ldap_sudo_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2015 -msgid "" -"An optional base DN to restrict sudo rules searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2034 -msgid "ldap_autofs_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2037 -msgid "" -"An optional base DN to restrict automounter searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1906 -msgid "" -"These options are supported by LDAP domains, but they should be used with " -"caution. Please include them in your configuration only if you know what you " -"are doing. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2066 -msgid "" -"The following example assumes that SSSD is correctly configured and LDAP is " -"set to one of the domains in the <replaceable>[domains]</replaceable> " -"section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ldap.5.xml:2072 -#, no-wrap -msgid "" -" [domain/LDAP]\n" -" id_provider = ldap\n" -" auth_provider = ldap\n" -" ldap_uri = ldap://ldap.mydomain.org\n" -" ldap_search_base = dc=mydomain,dc=org\n" -" ldap_tls_reqcert = demand\n" -" cache_credentials = true\n" -" enumerate = true\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2071 sssd-simple.5.xml:134 sssd-ipa.5.xml:552 -#: sssd-krb5.5.xml:441 -msgid "<placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:2085 sssd_krb5_locator_plugin.8.xml:61 -msgid "NOTES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2087 -msgid "" -"The descriptions of some of the configuration options in this manual page " -"are based on the <citerefentry> <refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page from the OpenLDAP 2.4 " -"distribution." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2098 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <refentryinfo> -#: pam_sss.8.xml:8 include/upstream.xml:2 -msgid "" -"<productname>SSSD</productname> <orgname>The SSSD upstream - http://" -"fedorahosted.org/sssd</orgname>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: pam_sss.8.xml:13 pam_sss.8.xml:18 -msgid "pam_sss" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: pam_sss.8.xml:19 -msgid "PAM module for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: pam_sss.8.xml:24 -msgid "" -"<command>pam_sss.so</command> <arg choice='opt'> <replaceable>quiet</" -"replaceable> </arg> <arg choice='opt'> <replaceable>forward_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_first_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_authtok</" -"replaceable> </arg> <arg choice='opt'> <replaceable>retry=N</replaceable> </" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:45 -msgid "" -"<command>pam_sss.so</command> is the PAM interface to the System Security " -"Services daemon (SSSD). Errors and results are logged through <command>syslog" -"(3)</command> with the LOG_AUTHPRIV facility." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:55 -msgid "<option>quiet</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:58 -msgid "Suppress log messages for unknown users." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:63 -msgid "<option>forward_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:66 -msgid "" -"If <option>forward_pass</option> is set the entered password is put on the " -"stack for other PAM modules to use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:73 -msgid "<option>use_first_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:76 -msgid "" -"The argument use_first_pass forces the module to use a previous stacked " -"modules password and will never prompt the user - if no password is " -"available or the password is not appropriate, the user will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:84 -msgid "<option>use_authtok</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:87 -msgid "" -"When password changing enforce the module to set the new password to the one " -"provided by a previously stacked password module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:94 -msgid "<option>retry=N</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:97 -msgid "" -"If specified the user is asked another N times for a password if " -"authentication fails. Default is 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:99 -msgid "" -"Please note that this option might not work as expected if the application " -"calling PAM handles the user dialog on its own. A typical example is " -"<command>sshd</command> with <option>PasswordAuthentication</option>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:110 -msgid "MODULE TYPES PROVIDED" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:111 -msgid "" -"All module types (<option>account</option>, <option>auth</option>, " -"<option>password</option> and <option>session</option>) are provided." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:117 -msgid "FILES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:118 -msgid "" -"If a password reset by root fails, because the corresponding SSSD provider " -"does not support password resets, an individual message can be displayed. " -"This message can e.g. contain instructions about how to reset a password." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:123 -msgid "" -"The message is read from the file <filename>pam_sss_pw_reset_message.LOC</" -"filename> where LOC stands for a locale string returned by <citerefentry> " -"<refentrytitle>setlocale</refentrytitle><manvolnum>3</manvolnum> </" -"citerefentry>. If there is no matching file the content of " -"<filename>pam_sss_pw_reset_message.txt</filename> is displayed. Root must be " -"the owner of the files and only root may have read and write permissions " -"while all other users must have only read permissions." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:133 -msgid "" -"These files are searched in the directory <filename>/etc/sssd/customize/" -"DOMAIN_NAME/</filename>. If no matching file is present a generic message is " -"displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:141 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd_krb5_locator_plugin.8.xml:10 sssd_krb5_locator_plugin.8.xml:15 -msgid "sssd_krb5_locator_plugin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:22 -msgid "" -"The Kerberos locator plugin <command>sssd_krb5_locator_plugin</command> is " -"used by the Kerberos provider of <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry> to tell the Kerberos " -"libraries what Realm and which KDC to use. Typically this is done in " -"<citerefentry> <refentrytitle>krb5.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> which is always read by the Kerberos libraries. " -"To simplify the configuration the Realm and the KDC can be defined in " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> as described in <citerefentry> " -"<refentrytitle>sssd-krb5.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry> puts the Realm and the name or IP address of the KDC into " -"the environment variables SSSD_KRB5_REALM and SSSD_KRB5_KDC respectively. " -"When <command>sssd_krb5_locator_plugin</command> is called by the kerberos " -"libraries it reads and evaluates these variables and returns them to the " -"libraries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:63 -msgid "" -"Not all Kerberos implementations support the use of plugins. If " -"<command>sssd_krb5_locator_plugin</command> is not available on your system " -"you have to edit /etc/krb5.conf to reflect your Kerberos setup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:69 -msgid "" -"If the environment variable SSSD_KRB5_LOCATOR_DEBUG is set to any value " -"debug messages will be sent to stderr." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:77 -msgid "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-simple.5.xml:10 sssd-simple.5.xml:16 -msgid "sssd-simple" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd-simple.5.xml:17 -msgid "the configuration file for SSSD's 'simple' access-control provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:24 -msgid "" -"This manual page describes the configuration of the simple access-control " -"provider for <citerefentry> <refentrytitle>sssd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry>. For a detailed syntax reference, " -"refer to the <quote>FILE FORMAT</quote> section of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:38 -msgid "" -"The simple access provider grants or denies access based on an access or " -"deny list of user or group names. The following rules apply:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:43 -msgid "If all lists are empty, access is granted" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:47 -msgid "" -"If any list is provided, the order of evaluation is allow,deny. This means " -"that any matching deny rule will supersede any matched allow rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:54 -msgid "" -"If either or both \"allow\" lists are provided, all users are denied unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:60 -msgid "" -"If only \"deny\" lists are provided, all users are granted access unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:78 -msgid "simple_allow_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:81 -msgid "Comma separated list of users who are allowed to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:88 -msgid "simple_deny_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:91 -msgid "Comma separated list of users who are explicitly denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:97 -msgid "simple_allow_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:100 -msgid "" -"Comma separated list of groups that are allowed to log in. This applies only " -"to groups within this SSSD domain. Local groups are not evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:108 -msgid "simple_deny_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:111 -msgid "" -"Comma separated list of groups that are explicitly denied access. This " -"applies only to groups within this SSSD domain. Local groups are not " -"evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:70 sssd-ipa.5.xml:65 -msgid "" -"Refer to the section <quote>DOMAIN SECTIONS</quote> of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page for details on the configuration of an SSSD " -"domain. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:120 -msgid "" -"Please note that it is an configuration error if both, simple_allow_users " -"and simple_deny_users, are defined." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:128 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the simple access provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-simple.5.xml:135 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" access_provider = simple\n" -" simple_allow_users = user1, user2\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:145 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ipa.5.xml:10 sssd-ipa.5.xml:16 -msgid "sssd-ipa" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:23 -msgid "" -"This manual page describes the configuration of the IPA provider for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. For a detailed syntax reference, refer to the <quote>FILE " -"FORMAT</quote> section of the <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:36 -msgid "" -"The IPA provider is a back end used to connect to an IPA server. (Refer to " -"the freeipa.org web site for information about IPA servers.) This provider " -"requires that the machine be joined to the IPA domain; configuration is " -"almost entirely self-discovered and obtained directly from the server." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:43 -msgid "" -"The IPA provider accepts the same options used by the <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> identity provider and the <citerefentry> <refentrytitle>sssd-" -"krb5</refentrytitle> <manvolnum>5</manvolnum> </citerefentry> authentication " -"provider with some exceptions described below." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:55 -msgid "" -"However, it is neither necessary nor recommended to set these options. IPA " -"provider can also be used as an access and chpass provider. As an access " -"provider it uses HBAC (host-based access control) rules. Please refer to " -"freeipa.org for more information about HBAC. No configuration of access " -"provider is required on the client side." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:72 -msgid "ipa_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:75 -msgid "" -"Specifies the name of the IPA domain. This is optional. If not provided, " -"the configuration domain name is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:83 -msgid "ipa_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:86 -msgid "" -"The comma-separated list of IP addresses or hostnames of the IPA servers to " -"which SSSD should connect in the order of preference. For more information " -"on failover and server redundancy, see the <quote>FAILOVER</quote> section. " -"This is optional if autodiscovery is enabled. For more information on " -"service discovery, refer to the the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:99 -msgid "ipa_hostname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:102 -msgid "" -"Optional. May be set on machines where the hostname(5) does not reflect the " -"fully qualified name used in the IPA domain to identify this host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:110 -msgid "ipa_dyndns_update (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:113 -msgid "" -"Optional. This option tells SSSD to automatically update the DNS server " -"built into FreeIPA v2 with the IP address of this client." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:118 -msgid "" -"NOTE: On older systems (such as RHEL 5), for this behavior to work reliably, " -"the default Kerberos realm must be set properly in /etc/krb5.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:129 -msgid "ipa_dyndns_iface (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:132 -msgid "" -"Optional. Applicable only when ipa_dyndns_update is true. Choose the " -"interface whose IP address should be used for dynamic DNS updates." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:137 -msgid "Default: Use the IP address of the IPA LDAP connection" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:143 -msgid "ipa_hbac_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:146 -msgid "Optional. Use the given string as search base for HBAC related objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:150 -msgid "Default: Use base DN" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:156 -msgid "ipa_host_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:159 -msgid "Optional. Use the given string as search base for host objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:168 -msgid "" -"If filter is given in any of search bases and " -"<emphasis>ipa_hbac_support_srchost</emphasis> is set to False, the filter " -"will be ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:180 -msgid "ipa_selinux_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:183 -msgid "Optional. Use the given string as search base for SELinux user maps." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:199 sssd-krb5.5.xml:229 -msgid "krb5_validate (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:202 sssd-krb5.5.xml:232 -msgid "" -"Verify with the help of krb5_keytab that the TGT obtained has not been " -"spoofed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:209 -msgid "" -"Note that this default differs from the traditional Kerberos provider back " -"end." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:219 -msgid "" -"The name of the Kerberos realm. This is optional and defaults to the value " -"of <quote>ipa_domain</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:223 -msgid "" -"The name of the Kerberos realm has a special meaning in IPA - it is " -"converted into the base DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:234 -msgid "" -"Specifies if the host and user principal should be canonicalized when " -"connecting to IPA LDAP and also for AS requests. This feature is available " -"with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:247 -msgid "ipa_hbac_refresh (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:250 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server. " -"This will reduce the latency and load on the IPA server if there are many " -"access-control requests made in a short period." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:257 -msgid "Default: 5 (seconds)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:262 -msgid "ipa_hbac_treat_deny_as (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:265 -msgid "" -"This option specifies how to treat the deprecated DENY-type HBAC rules. As " -"of FreeIPA v2.1, DENY rules are no longer supported on the server. All users " -"of FreeIPA will need to migrate their rules to use only the ALLOW rules. The " -"client will support two modes of operation during this transition period:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:274 -msgid "" -"<emphasis>DENY_ALL</emphasis>: If any HBAC DENY rules are detected, all " -"users will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:279 -msgid "" -"<emphasis>IGNORE</emphasis>: SSSD will ignore any DENY rules. Be very " -"careful with this option, as it may result in opening unintended access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:284 -msgid "Default: DENY_ALL" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:289 -msgid "ipa_hbac_support_srchost (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:292 -msgid "" -"If this is set to false, then srchost as given to SSSD by PAM will be " -"ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:296 -msgid "" -"Note that if set to <emphasis>False</emphasis>, this option casuses filters " -"given in <emphasis>ipa_host_search_base</emphasis> to be ignored;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:307 -msgid "ipa_automount_location (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:310 -msgid "The automounter location this IPA client will be using" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:313 -msgid "Default: The location named \"default\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:319 -msgid "ipa_netgroup_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:322 -msgid "The LDAP attribute that lists netgroup's memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:331 -msgid "ipa_netgroup_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:334 -msgid "" -"The LDAP attribute that lists system users and groups that are direct " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:339 sssd-ipa.5.xml:434 -msgid "Default: memberUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:344 -msgid "ipa_netgroup_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:347 -msgid "" -"The LDAP attribute that lists hosts and host groups that are direct members " -"of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:351 sssd-ipa.5.xml:446 -msgid "Default: memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:356 -msgid "ipa_netgroup_member_ext_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:359 -msgid "" -"The LDAP attribute that lists FQDNs of hosts and host groups that are " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:363 -msgid "Default: externalHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:368 -msgid "ipa_netgroup_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:371 -msgid "The LDAP attribute that contains NIS domain name of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:375 -msgid "Default: nisDomainName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:381 -msgid "ipa_host_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:384 sssd-ipa.5.xml:407 -msgid "The object class of a host entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:387 sssd-ipa.5.xml:410 -msgid "Default: ipaHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:392 -msgid "ipa_host_fqdn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:395 -msgid "The LDAP attribute that contains FQDN of the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:398 -msgid "Default: fqdn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:404 -msgid "ipa_selinux_usermap_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:415 -msgid "ipa_selinux_usermap_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:418 -msgid "The LDAP attribute that contains the name of SELinux usermap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:427 -msgid "ipa_selinux_usermap_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:430 -msgid "" -"The LDAP attribute that contains all users / groups this rule match against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:439 -msgid "ipa_selinux_usermap_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:442 -msgid "" -"The LDAP attribute that contains all hosts / hostgroups this rule match " -"against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:451 -msgid "ipa_selinux_usermap_see_also (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:454 -msgid "" -"The LDAP attribute that contains DN of HBAC rule which can be used for " -"matching instead of memberUser and memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:459 -msgid "Default: seeAlso" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:464 -msgid "ipa_selinux_usermap_selinux_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:467 -msgid "The LDAP attribute that contains SELinux user string itself." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:471 -msgid "Default: ipaSELinuxUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:476 -msgid "ipa_selinux_usermap_enabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:479 -msgid "" -"The LDAP attribute that contains whether or not is user map enabled for " -"usage." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:483 -msgid "Default: ipaEnabledFlag" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:488 -msgid "ipa_selinux_usermap_user_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:491 -msgid "The LDAP attribute that contains user category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:495 -msgid "Default: userCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:500 -msgid "ipa_selinux_usermap_host_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:503 -msgid "The LDAP attribute that contains host category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:507 -msgid "Default: hostCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:512 -msgid "ipa_selinux_usermap_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:515 -msgid "The LDAP attribute that contains unique ID of the user map." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:519 -msgid "Default: ipaUniqueID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:524 -msgid "ipa_host_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:527 -msgid "The LDAP attribute that contains the host's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:531 -msgid "Default: ipaSshPubKey" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:546 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the ipa provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ipa.5.xml:553 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" id_provider = ipa\n" -" ipa_server = ipaserver.example.com\n" -" ipa_hostname = myhost.example.com\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:564 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.8.xml:10 sssd.8.xml:15 -msgid "sssd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.8.xml:16 -msgid "System Security Services Daemon" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sssd.8.xml:21 -msgid "" -"<command>sssd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:31 -msgid "" -"<command>SSSD</command> provides a set of daemons to manage access to remote " -"directories and authentication mechanisms. It provides an NSS and PAM " -"interface toward the system and a pluggable backend system to connect to " -"multiple different account sources as well as D-Bus interface. It is also " -"the basis to provide client auditing and policy services for projects like " -"FreeIPA. It provides a more robust database to store local users as well as " -"extended user data." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:46 -msgid "" -"<option>-d</option>,<option>--debug-level</option> <replaceable>LEVEL</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:53 -msgid "<option>--debug-timestamps=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:57 -msgid "<emphasis>1</emphasis>: Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:60 -msgid "<emphasis>0</emphasis>: Disable timestamp in the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:69 -msgid "<option>--debug-microseconds=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:73 -msgid "" -"<emphasis>1</emphasis>: Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:76 -msgid "<emphasis>0</emphasis>: Disable microseconds in timestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:79 -msgid "Default: 0" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:85 -msgid "<option>-f</option>,<option>--debug-to-files</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:89 -msgid "" -"Send the debug output to files instead of stderr. By default, the log files " -"are stored in <filename>/var/log/sssd</filename> and there are separate log " -"files for every SSSD service and domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:97 -msgid "<option>-D</option>,<option>--daemon</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:101 -msgid "Become a daemon after starting up." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:107 -msgid "<option>-i</option>,<option>--interactive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:111 -msgid "Run in the foreground, don't become a daemon." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:117 sss_debuglevel.8.xml:42 -msgid "<option>-c</option>,<option>--config</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:121 sss_debuglevel.8.xml:46 -msgid "" -"Specify a non-default config file. The default is <filename>/etc/sssd/sssd." -"conf</filename>. For reference on the config file syntax and options, " -"consult the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:135 -msgid "<option>--version</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:139 -msgid "Print version number and exit." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.8.xml:147 -msgid "Signals" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:150 -msgid "SIGTERM/SIGINT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:153 -msgid "" -"Informs the SSSD to gracefully terminate all of its child processes and then " -"shut down the monitor." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:159 -msgid "SIGHUP" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:162 -msgid "" -"Tells the SSSD to stop writing to its current debug file descriptors and to " -"close and reopen them. This is meant to facilitate log rolling with programs " -"like logrotate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:170 -msgid "SIGUSR1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:173 -msgid "" -"Tells the SSSD to simulate offline operation for one minute. This is mostly " -"useful for testing purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:179 -msgid "SIGUSR2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:182 -msgid "" -"Tells the SSSD to go online immediately. This is mostly useful for testing " -"purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:193 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_obfuscate.8.xml:10 sss_obfuscate.8.xml:15 -msgid "sss_obfuscate" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_obfuscate.8.xml:16 -msgid "obfuscate a clear text password" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_obfuscate.8.xml:21 -msgid "" -"<command>sss_obfuscate</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>[PASSWORD]</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:32 -msgid "" -"<command>sss_obfuscate</command> converts a given password into human-" -"unreadable format and places it into appropriate domain section of the SSSD " -"config file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:37 -msgid "" -"The cleartext password is read from standard input or entered " -"interactively. The obfuscated password is put into " -"<quote>ldap_default_authtok</quote> parameter of a given SSSD domain and the " -"<quote>ldap_default_authtok_type</quote> parameter is set to " -"<quote>obfuscated_password</quote>. Refer to <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more details on these parameters." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:49 -msgid "" -"Please note that obfuscating the password provides <emphasis>no real " -"security benefit</emphasis> as it is still possible for an attacker to " -"reverse-engineer the password back. Using better authentication mechanisms " -"such as client side certificates or GSSAPI is <emphasis>strongly</emphasis> " -"advised." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:63 -msgid "<option>-s</option>,<option>--stdin</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:67 -msgid "The password to obfuscate will be read from standard input." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:74 sss_ssh_authorizedkeys.1.xml:82 -#: sss_ssh_knownhostsproxy.1.xml:81 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>DOMAIN</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:79 -msgid "" -"The SSSD domain to use the password in. The default name is <quote>default</" -"quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:86 -msgid "" -"<option>-f</option>,<option>--file</option> <replaceable>FILE</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:91 -msgid "Read the config file specified by the positional parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:95 -msgid "Default: <filename>/etc/sssd/sssd.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:105 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_useradd.8.xml:10 sss_useradd.8.xml:15 -msgid "sss_useradd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_useradd.8.xml:16 -msgid "create a new user" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_useradd.8.xml:21 -msgid "" -"<command>sss_useradd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:32 -msgid "" -"<command>sss_useradd</command> creates a new user account using the values " -"specified on the command line plus the default values from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:43 -msgid "" -"<option>-u</option>,<option>--uid</option> <replaceable>UID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:48 -msgid "" -"Set the UID of the user to the value of <replaceable>UID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:55 sss_usermod.8.xml:43 -msgid "" -"<option>-c</option>,<option>--gecos</option> <replaceable>COMMENT</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:60 sss_usermod.8.xml:48 -msgid "" -"Any text string describing the user. Often used as the field for the user's " -"full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:67 sss_usermod.8.xml:55 -msgid "" -"<option>-h</option>,<option>--home</option> <replaceable>HOME_DIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:72 -msgid "" -"The home directory of the user account. The default is to append the " -"<replaceable>LOGIN</replaceable> name to <filename>/home</filename> and use " -"that as the home directory. The base that is prepended before " -"<replaceable>LOGIN</replaceable> is tunable with <quote>user_defaults/" -"baseDirectory</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:82 sss_usermod.8.xml:66 -msgid "" -"<option>-s</option>,<option>--shell</option> <replaceable>SHELL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:87 -msgid "" -"The user's login shell. The default is currently <filename>/bin/bash</" -"filename>. The default can be changed with <quote>user_defaults/" -"defaultShell</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:96 -msgid "" -"<option>-G</option>,<option>--groups</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:101 -msgid "A list of existing groups this user is also a member of." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:107 -msgid "<option>-m</option>,<option>--create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:111 -msgid "" -"Create the user's home directory if it does not exist. The files and " -"directories contained in the skeleton directory (which can be defined with " -"the -k option or in the config file) will be copied to the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:121 -msgid "<option>-M</option>,<option>--no-create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:125 -msgid "" -"Do not create the user's home directory. Overrides configuration settings." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:132 -msgid "" -"<option>-k</option>,<option>--skel</option> <replaceable>SKELDIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:137 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<command>sss_useradd</command>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:143 -msgid "" -"This option is only valid if the <option>-m</option> (or <option>--create-" -"home</option>) option is specified, or creation of home directories is set " -"to TRUE in the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:152 sss_usermod.8.xml:124 -msgid "" -"<option>-Z</option>,<option>--selinux-user</option> " -"<replaceable>SELINUX_USER</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:157 -msgid "" -"The SELinux user for the user's login. If not specified, the system default " -"will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:169 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-krb5.5.xml:10 sssd-krb5.5.xml:16 -msgid "sssd-krb5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:23 -msgid "" -"This manual page describes the configuration of the Kerberos 5 " -"authentication backend for <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry>. For a detailed " -"syntax reference, please refer to the <quote>FILE FORMAT</quote> section of " -"the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:36 -msgid "" -"The Kerberos 5 authentication backend contains auth and chpass providers. It " -"must be paired with identity provider in order to function properly (for " -"example, id_provider = ldap). Some information required by the Kerberos 5 " -"authentication backend must be provided by the identity provider, such as " -"the user's Kerberos Principal Name (UPN). The configuration of the identity " -"provider should have an entry to specify the UPN. Please refer to the man " -"page for the applicable identity provider for details on how to configure " -"this." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:47 -msgid "" -"This backend also provides access control based on the .k5login file in the " -"home directory of the user. See <citerefentry> <refentrytitle>.k5login</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry> for more details. " -"Please note that an empty .k5login file will deny all access to this user. " -"To activate this feature use 'access_provider = krb5' in your sssd " -"configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:55 -msgid "" -"In the case where the UPN is not available in the identity backend " -"<command>sssd</command> will construct a UPN using the format " -"<replaceable>username</replaceable>@<replaceable>krb5_realm</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:106 -msgid "" -"The name of the Kerberos realm. This option is required and must be " -"specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:113 -msgid "krb5_kpasswd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:116 -msgid "" -"If the change password service is not running on the KDC alternative servers " -"can be defined here. An optional port number (preceded by a colon) may be " -"appended to the addresses or hostnames." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:122 -msgid "" -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. Please note that even if there are no more " -"kpasswd servers to try the back end is not switch to offline if " -"authentication against the KDC is still possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:129 -msgid "Default: Use the KDC" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:135 -msgid "krb5_ccachedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:138 -msgid "" -"Directory to store credential caches. All the substitution sequences of " -"krb5_ccname_template can be used here, too, except %d and %P. If the " -"directory does not exist it will be created. If %u, %U, %p or %h are used a " -"private directory belonging to the user is created. Otherwise a public " -"directory with restricted deletion flag (aka sticky bit, see <citerefentry> " -"<refentrytitle>chmod</refentrytitle> <manvolnum>1</manvolnum> </" -"citerefentry> for details) is created." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:151 -msgid "Default: /tmp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:157 -msgid "krb5_ccname_template (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:171 -msgid "login UID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:174 -msgid "%p" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:175 -msgid "principal name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:179 -msgid "%r" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:180 -msgid "realm name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:183 -msgid "%h" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:184 -msgid "home directory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:189 -msgid "value of krb5ccache_dir" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:194 -msgid "%P" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:195 -msgid "the process ID of the sssd client" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:160 -msgid "" -"Location of the user's credential cache. Currently only file based " -"credential caches are supported. In the template the following sequences are " -"substituted: <placeholder type=\"variablelist\" id=\"0\"/> If the template " -"ends with 'XXXXXX' mkstemp(3) is used to create a unique filename in a safe " -"way." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:209 -msgid "Default: FILE:%d/krb5cc_%U_XXXXXX" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:215 -msgid "krb5_auth_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:218 -msgid "" -"Timeout in seconds after an online authentication or change password request " -"is aborted. If possible the authentication request is continued offline." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:241 -msgid "krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:244 -msgid "" -"The location of the keytab to use when validating credentials obtained from " -"KDCs." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:248 -msgid "Default: /etc/krb5.keytab" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:254 -msgid "krb5_store_password_if_offline (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:257 -msgid "" -"Store the password of the user if the provider is offline and use it to " -"request a TGT when the provider gets online again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:262 -msgid "" -"Please note that this feature currently only available on a Linux platform. " -"Passwords stored in this way are kept in plaintext in the kernel keyring and " -"are potentially accessible by the root user (with difficulty)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:275 -msgid "krb5_renewable_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:278 -msgid "" -"Request a renewable ticket with a total lifetime given by an integer " -"immediately followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:283 sssd-krb5.5.xml:319 -msgid "<emphasis>s</emphasis> seconds" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:286 sssd-krb5.5.xml:322 -msgid "<emphasis>m</emphasis> minutes" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:289 sssd-krb5.5.xml:325 -msgid "<emphasis>h</emphasis> hours" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:292 sssd-krb5.5.xml:328 -msgid "<emphasis>d</emphasis> days." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:295 sssd-krb5.5.xml:331 -msgid "If there is no delimiter <emphasis>s</emphasis> is assumed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:299 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"renewable lifetime to one and a half hours please use '90m' instead of " -"'1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:305 -msgid "Default: not set, i.e. the TGT is not renewable" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:311 -msgid "krb5_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:314 -msgid "" -"Request ticket with a with a lifetime given by an integer immediately " -"followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:335 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"lifetime to one and a half hours please use '90m' instead of '1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:340 -msgid "" -"Default: not set, i.e. the default ticket lifetime configured on the KDC." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:347 -msgid "krb5_renew_interval (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:350 -msgid "" -"The time in seconds between two checks if the TGT should be renewed. TGTs " -"are renewed if about half of their lifetime is exceeded." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:355 -msgid "If this option is not set or 0 the automatic renewal is disabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:365 -msgid "krb5_use_fast (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:368 -msgid "" -"Enables flexible authentication secure tunneling (FAST) for Kerberos pre-" -"authentication. The following options are supported:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:373 -msgid "" -"<emphasis>never</emphasis> use FAST, this is equivalent to not set this " -"option at all." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:377 -msgid "" -"<emphasis>try</emphasis> to use FAST, if the server does not support fast " -"continue without." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:381 -msgid "" -"<emphasis>demand</emphasis> to use FAST, fail if the server does not require " -"fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:385 -msgid "Default: not set, i.e. FAST is not used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:388 -msgid "Please note that a keytab is required to use fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:391 -msgid "" -"Please note also that sssd supports fast only with MIT Kerberos version 1.8 " -"and above. If sssd used with an older version using this option is a " -"configuration error." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:400 -msgid "krb5_fast_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:403 -msgid "Specifies the server principal to use for FAST." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:412 -msgid "" -"Specifies if the host and user principal should be canonicalized. This " -"feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:65 -msgid "" -"If the auth-module krb5 is used in a SSSD domain, the following options must " -"be used. See the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page, section <quote>DOMAIN " -"SECTIONS</quote> for details on the configuration of a SSSD domain. " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:434 -msgid "" -"The following example assumes that SSSD is correctly configured and FOO is " -"one of the domains in the <replaceable>[sssd]</replaceable> section. This " -"example shows only configuration of Kerberos authentication, it does not " -"include any identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-krb5.5.xml:442 -#, no-wrap -msgid "" -" [domain/FOO]\n" -" auth_provider = krb5\n" -" krb5_server = 192.168.1.1\n" -" krb5_realm = EXAMPLE.COM\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:453 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupadd.8.xml:10 sss_groupadd.8.xml:15 -msgid "sss_groupadd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupadd.8.xml:16 -msgid "create a new group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupadd.8.xml:21 -msgid "" -"<command>sss_groupadd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:32 -msgid "" -"<command>sss_groupadd</command> creates a new group. These groups are " -"compatible with POSIX groups, with the additional feature that they can " -"contain other groups as members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupadd.8.xml:43 -msgid "" -"<option>-g</option>,<option>--gid</option> <replaceable>GID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupadd.8.xml:48 -msgid "" -"Set the GID of the group to the value of <replaceable>GID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_userdel.8.xml:10 sss_userdel.8.xml:15 -msgid "sss_userdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_userdel.8.xml:16 -msgid "delete a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_userdel.8.xml:21 -msgid "" -"<command>sss_userdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:32 -msgid "" -"<command>sss_userdel</command> deletes a user identified by login name " -"<replaceable>LOGIN</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:44 -msgid "<option>-r</option>,<option>--remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:48 -msgid "" -"Files in the user's home directory will be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:56 -msgid "<option>-R</option>,<option>--no-remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:60 -msgid "" -"Files in the user's home directory will NOT be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:68 -msgid "<option>-f</option>,<option>--force</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:72 -msgid "" -"This option forces <command>sss_userdel</command> to remove the user's home " -"directory and mail spool, even if they are not owned by the specified user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:80 -msgid "<option>-k</option>,<option>--kick</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:84 -msgid "Before actually deleting the user, terminate all his processes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:95 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupdel.8.xml:10 sss_groupdel.8.xml:15 -msgid "sss_groupdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupdel.8.xml:16 -msgid "delete a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupdel.8.xml:21 -msgid "" -"<command>sss_groupdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:32 -msgid "" -"<command>sss_groupdel</command> deletes a group identified by its name " -"<replaceable>GROUP</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupshow.8.xml:10 sss_groupshow.8.xml:15 -msgid "sss_groupshow" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupshow.8.xml:16 -msgid "print properties of a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupshow.8.xml:21 -msgid "" -"<command>sss_groupshow</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:32 -msgid "" -"<command>sss_groupshow</command> displays information about a group " -"identified by its name <replaceable>GROUP</replaceable>. The information " -"includes the group ID number, members of the group and the parent group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupshow.8.xml:43 -msgid "<option>-R</option>,<option>--recursive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupshow.8.xml:47 -msgid "" -"Also print indirect group members in a tree-like hierarchy. Note that this " -"also affects printing parent groups - without <option>R</option>, only the " -"direct parent will be printed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_usermod.8.xml:10 sss_usermod.8.xml:15 -msgid "sss_usermod" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_usermod.8.xml:16 -msgid "modify a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_usermod.8.xml:21 -msgid "" -"<command>sss_usermod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:32 -msgid "" -"<command>sss_usermod</command> modifies the account specified by " -"<replaceable>LOGIN</replaceable> to reflect the changes that are specified " -"on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:60 -msgid "The home directory of the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:71 -msgid "The user's login shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:82 -msgid "" -"Append this user to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:96 -msgid "" -"Remove this user from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:103 -msgid "<option>-l</option>,<option>--lock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:107 -msgid "Lock the user account. The user won't be able to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:114 -msgid "<option>-u</option>,<option>--unlock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:118 -msgid "Unlock the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:129 -msgid "The SELinux user for the user's login." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:140 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_cache.8.xml:10 sss_cache.8.xml:15 -msgid "sss_cache" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_cache.8.xml:16 -msgid "perform cache cleanup" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_cache.8.xml:21 -msgid "" -"<command>sss_cache</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_cache.8.xml:31 -msgid "" -"<command>sss_cache</command> invalidates records in SSSD cache. Invalidated " -"records are forced to be reloaded from server as soon as related SSSD " -"backend is online." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:42 -msgid "" -"<option>-u</option>,<option>--user</option> <replaceable>login</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:47 -msgid "Invalidate specific user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:53 -msgid "<option>-U</option>,<option>--users</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:57 -msgid "" -"Invalidate all user records. This option overrides invalidation of specific " -"user if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:64 -msgid "" -"<option>-g</option>,<option>--group</option> <replaceable>group</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:69 -msgid "Invalidate specific group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:75 -msgid "<option>-G</option>,<option>--groups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:79 -msgid "" -"Invalidate all group records. This option overrides invalidation of specific " -"group if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:86 -msgid "" -"<option>-n</option>,<option>--netgroup</option> <replaceable>netgroup</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:91 -msgid "Invalidate specific netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:97 -msgid "<option>-N</option>,<option>--netgroups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:101 -msgid "" -"Invalidate all netgroup records. This option overrides invalidation of " -"specific netgroup if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:108 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>domain</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:113 -msgid "Restrict invalidation process only to a particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_debuglevel.8.xml:10 sss_debuglevel.8.xml:15 -msgid "sss_debuglevel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_debuglevel.8.xml:16 -msgid "change debug level while SSSD is running" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_debuglevel.8.xml:21 -msgid "" -"<command>sss_debuglevel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>NEW_DEBUG_LEVEL</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_debuglevel.8.xml:32 -msgid "" -"<command>sss_debuglevel</command> changes debug level of SSSD monitor and " -"providers to <replaceable>NEW_DEBUG_LEVEL</replaceable> while SSSD is " -"running." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_debuglevel.8.xml:59 -msgid "<replaceable>NEW_DEBUG_LEVEL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_authorizedkeys.1.xml:10 sss_ssh_authorizedkeys.1.xml:15 -msgid "sss_ssh_authorizedkeys" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_ssh_authorizedkeys.1.xml:11 sss_ssh_knownhostsproxy.1.xml:11 -msgid "1" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_authorizedkeys.1.xml:16 -msgid "get OpenSSH authorized keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_authorizedkeys.1.xml:21 -msgid "" -"<command>sss_ssh_authorizedkeys</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>USER</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:32 -msgid "" -"<command>sss_ssh_authorizedkeys</command> acquires SSH public keys for user " -"<replaceable>USER</replaceable> and outputs them in OpenSSH authorized_keys " -"format (see the <quote>AUTHORIZED_KEYS FILE FORMAT</quote> section of " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> for more information)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:41 -msgid "" -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_authorizedkeys</" -"command> for public key user authentication if it is compiled with support " -"for either <quote>AuthorizedKeysCommand</quote> or <quote>PubkeyAgent</" -"quote> <citerefentry> <refentrytitle>sshd_config</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:58 -#, no-wrap -msgid "AuthorizedKeysCommand /usr/bin/sss_ssh_authorizedkeys\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:51 -msgid "" -"If <quote>AuthorizedKeysCommand</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by putting the following directive " -"in <citerefentry> <refentrytitle>sshd_config</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry>: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:69 -#, no-wrap -msgid "PubKeyAgent /usr/bin/sss_ssh_authorizedkeys %u\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:62 -msgid "" -"If <quote>PubkeyAgent</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by using the following directive " -"for <citerefentry> <refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> configuration: <placeholder type=\"programlisting" -"\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_authorizedkeys.1.xml:87 -msgid "" -"Search for user public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:98 -msgid "" -"<citerefentry> <refentrytitle>sshd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sshd_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_knownhostsproxy</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_knownhostsproxy.1.xml:10 sss_ssh_knownhostsproxy.1.xml:15 -msgid "sss_ssh_knownhostsproxy" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_knownhostsproxy.1.xml:16 -msgid "get OpenSSH host keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_knownhostsproxy.1.xml:21 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>HOST</replaceable></arg> <arg " -"choice='opt'><replaceable>PROXY_COMMAND</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:33 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> acquires SSH host public keys for " -"host <replaceable>HOST</replaceable>, stores them in a custom OpenSSH " -"known_hosts file (see the <quote>SSH_KNOWN_HOSTS FILE FORMAT</quote> section " -"of <citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> for more information) <filename>/var/lib/sss/" -"pubconf/known_hosts</filename> and estabilishes connection to the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:43 -msgid "" -"If <replaceable>PROXY_COMMAND</replaceable> is specified, it is used to " -"create the connection to the host instead of opening a socket." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_knownhostsproxy.1.xml:55 -#, no-wrap -msgid "" -"ProxyCommand /usr/bin/sss_ssh_knownhostsproxy -p %p %h\n" -"GlobalKnownHostsFile2 /var/lib/sss/pubconf/known_hosts\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:48 -msgid "" -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_knownhostsproxy</" -"command> for host key authentication by using the following directives for " -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> configuration: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_ssh_knownhostsproxy.1.xml:69 -msgid "" -"<option>-p</option>,<option>--port</option> <replaceable>PORT</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:74 -msgid "" -"Use port <replaceable>PORT</replaceable> to connect to the host. By " -"default, port 22 is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:86 -msgid "" -"Search for host public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:97 -msgid "" -"<citerefentry> <refentrytitle>ssh</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>ssh_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_authorizedkeys</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/service_discovery.xml:2 -msgid "SERVICE DISCOVERY" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/service_discovery.xml:4 -msgid "" -"The service discovery feature allows back ends to automatically find the " -"appropriate servers to connect to using a special DNS query." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:9 -msgid "Configuration" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:11 -msgid "" -"If no servers are specified, the back end automatically uses service " -"discovery to try to find a server. Optionally, the user may choose to use " -"both fixed server addresses and service discovery by inserting a special " -"keyword, <quote>_srv_</quote>, in the list of servers. The order of " -"preference is maintained. This feature is useful if, for example, the user " -"prefers to use service discovery whenever possible, and fall back to a " -"specific server when no servers can be discovered using DNS." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:23 -msgid "The domain name" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:25 -msgid "" -"Please refer to the <quote>dns_discovery_domain</quote> parameter in the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for more details." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:35 -msgid "The protocol" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:37 -msgid "" -"The queries usually specify _tcp as the protocol. Exceptions are documented " -"in respective option description." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:42 -msgid "See Also" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:44 -msgid "" -"For more information on the service discovery mechanism, refer to RFC 2782." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/upstream.xml:1 -msgid "<placeholder type=\"refentryinfo\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/failover.xml:2 -msgid "FAILOVER" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/failover.xml:4 -msgid "" -"The failover feature allows back ends to automatically switch to a different " -"server if the primary server fails." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:8 -msgid "Failover Syntax" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:10 -msgid "" -"The list of servers is given as a comma-separated list; any number of spaces " -"is allowed around the comma. The servers are listed in order of preference. " -"The list can contain any number of servers." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:17 -msgid "The Failover Mechanism" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:19 -msgid "" -"The failover mechanism distinguishes between a machine and a service. The " -"back end first tries to resolve the hostname of a given machine; if this " -"resolution attempt fails, the machine is considered offline. No further " -"attempts are made to connect to this machine for any other service. If the " -"resolution attempt succeeds, the back end tries to connect to a service on " -"this machine. If the service connection attempt fails, then only this " -"particular service is considered offline and the back end automatically " -"switches over to the next service. The machine is still considered online " -"and might still be tried for another service." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:32 -msgid "" -"Further connection attempts are made to machines or services marked as " -"offline after a specified period of time; this is currently hard coded to 30 " -"seconds." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:37 -msgid "" -"If there are no more machines to try, the back end as a whole switches to " -"offline mode, and then attempts to reconnect every 30 seconds." -msgstr "" - -#. type: Content of: <varlistentry><term> -#: include/param_help.xml:3 -msgid "<option>-h</option>,<option>--help</option>" -msgstr "" - -#. type: Content of: <varlistentry><listitem><para> -#: include/param_help.xml:7 -msgid "Display help message and exit." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:3 -msgid "" -"Bit mask that indicates which debug levels will be visible. 0x0010 is the " -"default value as well as the lowest allowed value, 0xFFF0 is the most " -"verbose mode. This setting overrides the settings from config file." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:8 -msgid "Currently supported debug levels:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:11 -msgid "" -"<emphasis>0x0010</emphasis>: Fatal failures. Anything that would prevent " -"SSSD from starting up or causes it to cease running." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:15 -msgid "" -"<emphasis>0x0020</emphasis>: Critical failures. An error that doesn't kill " -"the SSSD, but one that indicates that at least one major feature is not " -"going to work properly." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:20 -msgid "" -"<emphasis>0x0040</emphasis>: Serious failures. An error announcing that a " -"particular request or operation has failed." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:24 -msgid "" -"<emphasis>0x0080</emphasis>: Minor failures. These are the errors that would " -"percolate down to cause the operation failure of 2." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:28 -msgid "<emphasis>0x0100</emphasis>: Configuration settings." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:31 -msgid "<emphasis>0x0200</emphasis>: Function data." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:34 -msgid "<emphasis>0x0400</emphasis>: Trace messages for operation functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:37 -msgid "" -"<emphasis>0x1000</emphasis>: Trace messages for internal control functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:40 -msgid "" -"<emphasis>0x2000</emphasis>: Contents of function-internal variables that " -"may be interesting." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:43 -msgid "<emphasis>0x4000</emphasis>: Extremely low-level tracing information." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:46 -msgid "" -"To log required debug levels, simply add their numbers together as shown in " -"following examples:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:49 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, critical failures, " -"serious failures and function data use 0x0270." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:53 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, configuration settings, " -"function data, trace messages for internal control functions use 0x1310." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:57 -msgid "" -"<emphasis>Note</emphasis>: This is new format of debug levels introduced in " -"1.7.0. Older format (numbers from 0-10) is compatible but deprecated." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/experimental.xml:1 -msgid "" -"<emphasis> This is an experimental feature, please use http://fedorahosted." -"org/sssd to report any issues. </emphasis>" -msgstr "" diff --git a/src/man/po/en_GB.po b/src/man/po/en_GB.po deleted file mode 100644 index 7796626bf..000000000 --- a/src/man/po/en_GB.po +++ /dev/null @@ -1,6748 +0,0 @@ -# SOME DESCRIPTIVE TITLE -# Copyright (C) YEAR Red Hat -# This file is distributed under the same license as the sssd-docs package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@redhat.com\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2012-02-14 13:10+0000\n" -"Last-Translator: sgallagh <sgallagh@redhat.com>\n" -"Language-Team: English (United Kingdom) (http://www.transifex.net/projects/p/" -"fedora/language/en_GB/)\n" -"Language: en_GB\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=2; plural=(n != 1)\n" - -#. type: Content of: <reference><title> -#: sss_groupmod.8.xml:5 sssd.conf.5.xml:5 sssd-ldap.5.xml:5 pam_sss.8.xml:5 -#: sssd_krb5_locator_plugin.8.xml:5 sssd-simple.5.xml:5 sssd-ipa.5.xml:5 -#: sssd.8.xml:5 sss_obfuscate.8.xml:5 sss_useradd.8.xml:5 sssd-krb5.5.xml:5 -#: sss_groupadd.8.xml:5 sss_userdel.8.xml:5 sss_groupdel.8.xml:5 -#: sss_groupshow.8.xml:5 sss_usermod.8.xml:5 sss_cache.8.xml:5 -#: sss_debuglevel.8.xml:5 sss_ssh_authorizedkeys.1.xml:5 -#: sss_ssh_knownhostsproxy.1.xml:5 -msgid "SSSD Manual pages" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupmod.8.xml:10 sss_groupmod.8.xml:15 -msgid "sss_groupmod" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_groupmod.8.xml:11 pam_sss.8.xml:14 sssd_krb5_locator_plugin.8.xml:11 -#: sssd.8.xml:11 sss_obfuscate.8.xml:11 sss_useradd.8.xml:11 -#: sss_groupadd.8.xml:11 sss_userdel.8.xml:11 sss_groupdel.8.xml:11 -#: sss_groupshow.8.xml:11 sss_usermod.8.xml:11 sss_cache.8.xml:11 -#: sss_debuglevel.8.xml:11 -msgid "8" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupmod.8.xml:16 -msgid "modify a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupmod.8.xml:21 -msgid "" -"<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:30 sssd-ldap.5.xml:21 pam_sss.8.xml:44 -#: sssd_krb5_locator_plugin.8.xml:20 sssd-simple.5.xml:22 sssd-ipa.5.xml:21 -#: sssd.8.xml:29 sss_obfuscate.8.xml:30 sss_useradd.8.xml:30 -#: sssd-krb5.5.xml:21 sss_groupadd.8.xml:30 sss_userdel.8.xml:30 -#: sss_groupdel.8.xml:30 sss_groupshow.8.xml:30 sss_usermod.8.xml:30 -#: sss_cache.8.xml:29 sss_debuglevel.8.xml:30 sss_ssh_authorizedkeys.1.xml:30 -#: sss_ssh_knownhostsproxy.1.xml:31 -msgid "DESCRIPTION" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:32 -msgid "" -"<command>sss_groupmod</command> modifies the group to reflect the changes " -"that are specified on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:39 pam_sss.8.xml:51 sssd.8.xml:42 sss_obfuscate.8.xml:58 -#: sss_useradd.8.xml:39 sss_groupadd.8.xml:39 sss_userdel.8.xml:39 -#: sss_groupdel.8.xml:39 sss_groupshow.8.xml:39 sss_usermod.8.xml:39 -#: sss_cache.8.xml:38 sss_debuglevel.8.xml:38 sss_ssh_authorizedkeys.1.xml:78 -#: sss_ssh_knownhostsproxy.1.xml:65 -msgid "OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:43 sss_usermod.8.xml:77 -msgid "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:48 -msgid "" -"Append this group to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:57 sss_usermod.8.xml:91 -msgid "" -"<option>-r</option>,<option>--remove-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:62 -msgid "" -"Remove this group from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:72 sssd.conf.5.xml:1331 sssd-ldap.5.xml:2096 -#: pam_sss.8.xml:139 sssd_krb5_locator_plugin.8.xml:75 sssd-simple.5.xml:143 -#: sssd-ipa.5.xml:562 sssd.8.xml:191 sss_obfuscate.8.xml:103 -#: sss_useradd.8.xml:167 sssd-krb5.5.xml:451 sss_groupadd.8.xml:58 -#: sss_userdel.8.xml:93 sss_groupdel.8.xml:46 sss_groupshow.8.xml:58 -#: sss_usermod.8.xml:138 sss_ssh_authorizedkeys.1.xml:96 -#: sss_ssh_knownhostsproxy.1.xml:95 -msgid "SEE ALSO" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:74 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.conf.5.xml:10 sssd.conf.5.xml:16 -msgid "sssd.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sssd.conf.5.xml:11 sssd-ldap.5.xml:11 sssd-simple.5.xml:11 -#: sssd-ipa.5.xml:11 sssd-krb5.5.xml:11 -msgid "5" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><refmiscinfo> -#: sssd.conf.5.xml:12 sssd-ldap.5.xml:12 sssd-simple.5.xml:12 -#: sssd-ipa.5.xml:12 sssd-krb5.5.xml:12 -msgid "File Formats and Conventions" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.conf.5.xml:17 sssd-ldap.5.xml:17 sssd_krb5_locator_plugin.8.xml:16 -#: sssd-ipa.5.xml:17 sssd-krb5.5.xml:17 -msgid "the configuration file for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:21 -msgid "FILE FORMAT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:29 -#, no-wrap -msgid "" -" <replaceable>[section]</replaceable>\n" -" <replaceable>key</replaceable> = <replaceable>value</replaceable>\n" -" <replaceable>key2</replaceable> = <replaceable>value2,value3</replaceable>\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:24 -msgid "" -"The file has an ini-style syntax and consists of sections and parameters. A " -"section begins with the name of the section in square brackets and continues " -"until the next section begins. An example of section with single and multi-" -"valued parameters: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:36 -msgid "" -"The data types used are string (no quotes needed), integer and bool (with " -"values of <quote>TRUE/FALSE</quote>)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:41 -msgid "" -"A line comment starts with a hash sign (<quote>#</quote>) or a semicolon " -"(<quote>;</quote>)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:46 -msgid "" -"All sections can have an optional <replaceable>description</replaceable> " -"parameter. Its function is only as a label for the section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:52 -msgid "" -"<filename>sssd.conf</filename> must be a regular file, owned by root and " -"only root may read from or write to the file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:58 -msgid "SPECIAL SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:61 -msgid "The [sssd] section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><title> -#: sssd.conf.5.xml:70 sssd.conf.5.xml:1177 -msgid "Section parameters" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:72 -msgid "config_file_version (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:75 -msgid "" -"Indicates what is the syntax of the config file. SSSD 0.6.0 and later use " -"version 2." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:81 -msgid "services" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:84 -msgid "" -"Comma separated list of services that are started when sssd itself starts." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:88 -msgid "" -"Supported services: nss, pam <phrase condition=\"with_sudo\">, sudo</phrase>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:94 sssd.conf.5.xml:257 -msgid "reconnection_retries (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:97 sssd.conf.5.xml:260 -msgid "" -"Number of times services should attempt to reconnect in the event of a Data " -"Provider crash or restart before they give up" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:102 sssd.conf.5.xml:265 -msgid "Default: 3" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:107 -msgid "domains" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:110 -msgid "" -"A domain is a database containing user information. SSSD can use more " -"domains at the same time, but at least one must be configured or SSSD won't " -"start. This parameter described the list of domains in the order you want " -"them to be queried." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:120 -msgid "re_expression (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:123 -msgid "" -"Regular expression that describes how to parse the string containing user " -"name and domain into these components." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:127 -msgid "" -"Default: <quote>(?P<name>[^@]+)@?(?P<domain>[^@]*$)</quote> " -"which translates to \"the name is everything up to the <quote>@</quote> " -"sign, the domain everything after that\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:132 -msgid "" -"PLEASE NOTE: the support for non-unique named subpatterns is not available " -"on all platforms (e.g. RHEL5 and SLES10). Only platforms with libpcre " -"version 7 or higher can support non-unique named subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:139 -msgid "" -"PLEASE NOTE ALSO: older version of libpcre only support the Python syntax (?" -"P<name>) to label subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:146 -msgid "full_name_format (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:149 -msgid "" -"A <citerefentry> <refentrytitle>printf</refentrytitle> <manvolnum>3</" -"manvolnum> </citerefentry>-compatible format that describes how to translate " -"a (name, domain) tuple into a fully qualified name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:157 -msgid "Default: <quote>%1$s@%2$s</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:162 -msgid "try_inotify (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:165 -msgid "" -"SSSD monitors the state of resolv.conf to identify when it needs to update " -"its internal DNS resolver. By default, we will attempt to use inotify for " -"this, and will fall back to polling resolv.conf every five seconds if " -"inotify cannot be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:173 -msgid "" -"There are some limited situations where it is preferred that we should skip " -"even trying to use inotify. In these rare cases, this option should be set " -"to 'false'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:179 -msgid "" -"Default: true on platforms where inotify is supported. False on other " -"platforms." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:183 -msgid "" -"Note: this option will have no effect on platforms where inotify is " -"unavailable. On these platforms, polling will always be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:190 -msgid "krb5_rcache_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:193 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:197 -msgid "" -"This option accepts a special value __LIBKRB5_DEFAULTS__ that will instruct " -"SSSD to let libkrb5 decide the appropriate location for the replay cache." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:203 -msgid "" -"Default: Distribution-specific and specified at build-time. " -"(__LIBKRB5_DEFAULTS__ if not configured)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:63 -msgid "" -"Individual pieces of SSSD functionality are provided by special SSSD " -"services that are started and stopped together with SSSD. The services are " -"managed by a special service frequently called <quote>monitor</quote>. The " -"<quote>[sssd]</quote> section is used to configure the monitor as well as " -"some other important options like the identity domains. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:216 -msgid "SERVICES SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:218 -msgid "" -"Settings that can be used to configure different services are described in " -"this section. They should reside in the [<replaceable>$NAME</replaceable>] " -"section, for example, for NSS service, the section would be <quote>[nss]</" -"quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:225 -msgid "General service configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:227 -msgid "These options can be used to configure any service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:231 -msgid "debug_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:235 -msgid "debug_timestamps (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:238 -msgid "Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:241 sssd.conf.5.xml:376 sssd-ldap.5.xml:1328 -#: sssd-ldap.5.xml:1446 sssd-ipa.5.xml:206 sssd-ipa.5.xml:241 -msgid "Default: true" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:246 -msgid "debug_microseconds (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:249 -msgid "Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:252 sssd.conf.5.xml:641 sssd-ldap.5.xml:602 -#: sssd-ldap.5.xml:1260 sssd-ldap.5.xml:1397 sssd-ldap.5.xml:1795 -#: sssd-ipa.5.xml:123 sssd-ipa.5.xml:301 sssd-krb5.5.xml:235 -#: sssd-krb5.5.xml:269 sssd-krb5.5.xml:418 -msgid "Default: false" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:270 -msgid "command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:273 -msgid "" -"By default, the executable representing this service is called <command>sssd_" -"${service_name}</command>. This directive allows to change the executable " -"name for the service. In the vast majority of configurations, the default " -"values should suffice." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:281 -msgid "Default: <command>sssd_${service_name}</command>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:289 -msgid "NSS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:291 -msgid "" -"These options can be used to configure the Name Service Switch (NSS) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:296 -msgid "enum_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:299 -msgid "" -"How many seconds should nss_sss cache enumerations (requests for info about " -"all users)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:303 -msgid "Default: 120" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:308 -msgid "entry_cache_nowait_percentage (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:311 -msgid "" -"The entry cache can be set to automatically update entries in the background " -"if they are requested beyond a percentage of the entry_cache_timeout value " -"for the domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:317 -msgid "" -"For example, if the domain's entry_cache_timeout is set to 30s and " -"entry_cache_nowait_percentage is set to 50 (percent), entries that come in " -"after 15 seconds past the last cache update will be returned immediately, " -"but the SSSD will go and update the cache on its own, so that future " -"requests will not need to block waiting for a cache update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:327 -msgid "" -"Valid values for this option are 0-99 and represent a percentage of the " -"entry_cache_timeout for each domain. For performance reasons, this " -"percentage will never reduce the nowait timeout to less than 10 seconds. (0 " -"disables this feature)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:335 -msgid "Default: 50" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:340 -msgid "entry_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:343 -msgid "" -"Specifies for how many seconds nss_sss should cache negative cache hits " -"(that is, queries for invalid database entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:349 sssd.conf.5.xml:669 sssd-krb5.5.xml:223 -msgid "Default: 15" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:354 -msgid "filter_users, filter_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:357 -msgid "" -"Exclude certain users from being fetched from the sss NSS database. This is " -"particularly useful for system accounts. This option can also be set per-" -"domain or include fully-qualified names to filter only users from the " -"particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:364 -msgid "Default: root" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:369 -msgid "filter_users_in_groups (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:372 -msgid "" -"If you want filtered user still be group members set this option to false." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:381 -msgid "override_homedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:390 sssd-krb5.5.xml:166 -msgid "%u" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:391 sssd-krb5.5.xml:167 -msgid "login name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:394 sssd-krb5.5.xml:170 -msgid "%U" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:395 -msgid "UID number" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:398 sssd-krb5.5.xml:188 -msgid "%d" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:399 -msgid "domain name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:402 -msgid "%f" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:403 -msgid "fully qualified user name (user@domain)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:406 sssd-krb5.5.xml:200 -msgid "%%" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:407 sssd-krb5.5.xml:201 -msgid "a literal '%'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:384 -msgid "" -"Override the user's home directory. You can either provide an absolute value " -"or a template. In the template, the following sequences are substituted: " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:413 -msgid "This option can also be set per-domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:418 -msgid "allowed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:421 -msgid "" -"Restrict user shell to one of the listed values. The order of evaluation is:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:424 -msgid "1. If the shell is present in <quote>/etc/shells</quote>, it is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:428 -msgid "" -"2. If the shell is in the allowed_shells list but not in <quote>/etc/shells</" -"quote>, use the value of the shell_fallback parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:433 -msgid "" -"3. If the shell is not in the allowed_shells list and not in <quote>/etc/" -"shells</quote>, a nologin shell is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:438 -msgid "An empty string for shell is passed as-is to libc." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:441 -msgid "" -"The <quote>/etc/shells</quote> is only read on SSSD start up, which means " -"that a restart of the SSSD is required in case a new shell is installed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:445 -msgid "Default: Not set. The user shell is automatically used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:450 -msgid "vetoed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:453 -msgid "Replace any instance of these shells with the shell_fallback" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:458 -msgid "shell_fallback (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:461 -msgid "" -"The default shell to use if an allowed shell is not installed on the machine." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:465 -msgid "Default: /bin/sh" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:472 -msgid "PAM configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:474 -msgid "" -"These options can be used to configure the Pluggable Authentication Module " -"(PAM) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:479 -msgid "offline_credentials_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:482 -msgid "" -"If the authentication provider is offline, how long should we allow cached " -"logins (in days since the last successful online login)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:487 sssd.conf.5.xml:500 -msgid "Default: 0 (No limit)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:493 -msgid "offline_failed_login_attempts (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:496 -msgid "" -"If the authentication provider is offline, how many failed login attempts " -"are allowed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:506 -msgid "offline_failed_login_delay (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:509 -msgid "" -"The time in minutes which has to pass after offline_failed_login_attempts " -"has been reached before a new login attempt is possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:514 -msgid "" -"If set to 0 the user cannot authenticate offline if " -"offline_failed_login_attempts has been reached. Only a successful online " -"authentication can enable offline authentication again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:520 sssd.conf.5.xml:573 sssd.conf.5.xml:1093 -msgid "Default: 5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:526 -msgid "pam_verbosity (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:529 -msgid "" -"Controls what kind of messages are shown to the user during authentication. " -"The higher the number to more messages are displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:534 -msgid "Currently sssd supports the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:537 -msgid "<emphasis>0</emphasis>: do not show any message" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:540 -msgid "<emphasis>1</emphasis>: show only important messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:544 -msgid "<emphasis>2</emphasis>: show informational messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:547 -msgid "<emphasis>3</emphasis>: show all messages and debug information" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:551 sssd.8.xml:63 -msgid "Default: 1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:556 -msgid "pam_id_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:559 -msgid "" -"For any PAM request while SSSD is online, the SSSD will attempt to " -"immediately update the cached identity information for the user in order to " -"ensure that authentication takes place with the latest information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:565 -msgid "" -"A complete PAM conversation may perform multiple PAM requests, such as " -"account management and session opening. This option controls (on a per-" -"client-application basis) how long (in seconds) we can cache the identity " -"information to avoid excessive round-trips to the identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:579 -msgid "pam_pwd_expiration_warning (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:582 -msgid "Display a warning N days before the password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:585 -msgid "" -"Please note that the backend server has to provide information about the " -"expiration time of the password. If this information is missing, sssd " -"cannot display a warning." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:591 -msgid "Default: 7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:599 -msgid "SUDO configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:601 -msgid "These options can be used to configure the sudo service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:608 -msgid "sudo_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:611 -msgid "" -"For any sudo request that comes while SSSD is online, the SSSD will attempt " -"to update the cached rules in order to ensure that sudo has the latest " -"ruleset." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:617 -msgid "" -"The user may, however, run a couple of sudo commands successively, which " -"would trigger multiple LDAP requests. In order to speed up this use-case, " -"the sudo service maintains an in-memory cache that would be used for " -"performing fast replies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:624 -msgid "" -"This option controls how long (in seconds) can the sudo service cache rules " -"for a user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:628 -msgid "Default: 180" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:633 -msgid "sudo_timed (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:636 -msgid "" -"Whether or not to evaluate the sudoNotBefore and sudoNotAfter attributes " -"that implement time-dependent sudoers entries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:649 -msgid "AUTOFS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:651 -msgid "These options can be used to configure the autofs service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:659 -msgid "autofs_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:662 -msgid "" -"Specifies for how many seconds should the autofs responder negative cache " -"hits (that is, queries for invalid map entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:679 -msgid "DOMAIN SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:686 -msgid "min_id,max_id (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:689 -msgid "" -"UID and GID limits for the domain. If a domain contains an entry that is " -"outside these limits, it is ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:694 -msgid "" -"For users, this affects the primary GID limit. The user will not be returned " -"to NSS if either the UID or the primary GID is outside the range. For non-" -"primary group memberships, those that are in range will be reported as " -"expected." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:701 -msgid "Default: 1 for min_id, 0 (no limit) for max_id" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:707 -msgid "timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:710 -msgid "" -"Timeout in seconds between heartbeats for this domain. This is used to " -"ensure that the backend process is alive and capable of answering requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:715 sssd-ldap.5.xml:1131 -msgid "Default: 10" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:721 -msgid "enumerate (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:724 -msgid "" -"Determines if a domain can be enumerated. This parameter can have one of the " -"following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:728 -msgid "TRUE = Users and groups are enumerated" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:731 -msgid "FALSE = No enumerations for this domain" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:734 sssd.conf.5.xml:839 sssd.conf.5.xml:893 -msgid "Default: FALSE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:737 -msgid "" -"Note: Enabling enumeration has a moderate performance impact on SSSD while " -"enumeration is running. It may take up to several minutes after SSSD startup " -"to fully complete enumerations. During this time, individual requests for " -"information will go directly to LDAP, though it may be slow, due to the " -"heavy enumeration processing." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:747 -msgid "" -"While the first enumeration is running, requests for the complete user or " -"group lists may return no results until it completes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:752 -msgid "" -"Further, enabling enumeration may increase the time necessary to detect " -"network disconnection, as longer timeouts are required to ensure that " -"enumeration lookups are completed successfully. For more information, refer " -"to the man pages for the specific id_provider in use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:763 -msgid "entry_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:766 -msgid "" -"How many seconds should nss_sss consider entries valid before asking the " -"backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:770 -msgid "Default: 5400" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:776 -msgid "entry_cache_user_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:779 -msgid "" -"How many seconds should nss_sss consider user entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:783 sssd.conf.5.xml:796 sssd.conf.5.xml:809 -#: sssd.conf.5.xml:822 -msgid "Default: entry_cache_timeout" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:789 -msgid "entry_cache_group_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:792 -msgid "" -"How many seconds should nss_sss consider group entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:802 -msgid "entry_cache_netgroup_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:805 -msgid "" -"How many seconds should nss_sss consider netgroup entries valid before " -"asking the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:815 -msgid "entry_cache_service_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:818 -msgid "" -"How many seconds should nss_sss consider service entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:828 -msgid "cache_credentials (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:831 -msgid "Determines if user credentials are also cached in the local LDB cache" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:835 -msgid "User credentials are stored in a SHA512 hash, not in plaintext" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:844 -msgid "account_cache_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:847 -msgid "" -"Number of days entries are left in cache after last successful login before " -"being removed during a cleanup of the cache. 0 means keep forever. The " -"value of this parameter must be greater than or equal to " -"offline_credentials_expiration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:854 -msgid "Default: 0 (unlimited)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:860 -msgid "id_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:863 -msgid "The Data Provider identity backend to use for this domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:867 -msgid "Supported backends:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:870 -msgid "proxy: Support a legacy NSS provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:873 -msgid "local: SSSD internal local provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:876 -msgid "ldap: LDAP provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:882 -msgid "use_fully_qualified_names (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:885 -msgid "" -"If set to TRUE, all requests to this domain must use fully qualified names. " -"For example, if used in LOCAL domain that contains a \"test\" user, " -"<command>getent passwd test</command> wouldn't find the user while " -"<command>getent passwd test@LOCAL</command> would." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:898 -msgid "auth_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:901 -msgid "" -"The authentication provider used for the domain. Supported auth providers " -"are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:905 -msgid "" -"<quote>ldap</quote> for native LDAP authentication. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:912 -msgid "" -"<quote>krb5</quote> for Kerberos authentication. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:919 -msgid "" -"<quote>proxy</quote> for relaying authentication to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:922 -msgid "<quote>none</quote> disables authentication explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:925 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"authentication requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:931 -msgid "access_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:934 -msgid "" -"The access control provider used for the domain. There are two built-in " -"access providers (in addition to any included in installed backends) " -"Internal special providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:940 -msgid "<quote>permit</quote> always allow access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:943 -msgid "<quote>deny</quote> always deny access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:946 -msgid "" -"<quote>simple</quote> access control based on access or deny lists. See " -"<citerefentry> <refentrytitle>sssd-simple</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry> for more information on configuring the simple " -"access module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:953 -msgid "Default: <quote>permit</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:958 -msgid "chpass_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:961 -msgid "" -"The provider which should handle change password operations for the domain. " -"Supported change password providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:966 -msgid "" -"<quote>ipa</quote> to change a password stored in an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:974 -msgid "" -"<quote>ldap</quote> to change a password stored in a LDAP server. See " -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:982 -msgid "" -"<quote>krb5</quote> to change the Kerberos password. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:990 -msgid "" -"<quote>proxy</quote> for relaying password changes to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:994 -msgid "<quote>none</quote> disallows password changes explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:997 -msgid "" -"Default: <quote>auth_provider</quote> is used if it is set and can handle " -"change password requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1004 -msgid "sudo_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1010 -msgid "The SUDO provider used for the domain. Supported SUDO providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1014 -msgid "" -"<quote>ldap</quote> for rules stored in LDAP. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1021 -msgid "<quote>none</quote> disables SUDO explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1024 -msgid "Default: The value of <quote>id_provider</quote> is used if it is set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1030 -msgid "session_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1033 -msgid "" -"The provider which should handle loading of session settings. Supported " -"session providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1038 -msgid "" -"<quote>ipa</quote> to load session settings from an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1046 -msgid "<quote>none</quote> disallows fetching session settings explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1049 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"session loading requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1056 -msgid "lookup_family_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1059 -msgid "" -"Provides the ability to select preferred address family to use when " -"performing DNS lookups." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1063 -msgid "Supported values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1066 -msgid "ipv4_first: Try looking up IPv4 address, if that fails, try IPv6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1069 -msgid "ipv4_only: Only attempt to resolve hostnames to IPv4 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1072 -msgid "ipv6_first: Try looking up IPv6 address, if that fails, try IPv4" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1075 -msgid "ipv6_only: Only attempt to resolve hostnames to IPv6 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1078 -msgid "Default: ipv4_first" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1084 -msgid "dns_resolver_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1087 -msgid "" -"Defines the amount of time (in seconds) to wait for a reply from the DNS " -"resolver before assuming that it is unreachable. If this timeout is reached, " -"the domain will continue to operate in offline mode." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1099 -msgid "dns_discovery_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1102 -msgid "" -"If service discovery is used in the back end, specifies the domain part of " -"the service discovery DNS query." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1106 -msgid "Default: Use the domain part of machine's hostname" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1112 -msgid "override_gid (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1115 -msgid "Override the primary GID value with the one specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1121 -msgid "case_sensitive (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1124 -msgid "" -"Treat user and group names as case sensitive. At the moment, this option is " -"not supported in the local provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1129 -msgid "Default: True" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:681 -msgid "" -"These configuration options can be present in a domain configuration " -"section, that is, in a section called <quote>[domain/<replaceable>NAME</" -"replaceable>]</quote> <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1141 -msgid "proxy_pam_target (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1144 -msgid "The proxy target PAM proxies to." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1147 -msgid "" -"Default: not set by default, you have to take an existing pam configuration " -"or create a new one and add the service name here." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1155 -msgid "proxy_lib_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1158 -msgid "" -"The name of the NSS library to use in proxy domains. The NSS functions " -"searched for in the library are in the form of _nss_$(libName)_$(function), " -"for example _nss_files_getpwent." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1137 -msgid "" -"Options valid for proxy domains. <placeholder type=\"variablelist\" id=" -"\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:1170 -msgid "The local domain section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:1172 -msgid "" -"This section contains settings for domain that stores users and groups in " -"SSSD native database, that is, a domain that uses " -"<replaceable>id_provider=local</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1179 -msgid "default_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1182 -msgid "The default shell for users created with SSSD userspace tools." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1186 -msgid "Default: <filename>/bin/bash</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1191 -msgid "base_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1194 -msgid "" -"The tools append the login name to <replaceable>base_directory</replaceable> " -"and use that as the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1199 -msgid "Default: <filename>/home</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1204 -msgid "create_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1207 -msgid "" -"Indicate if a home directory should be created by default for new users. " -"Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1211 sssd.conf.5.xml:1223 -msgid "Default: TRUE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1216 -msgid "remove_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1219 -msgid "" -"Indicate if a home directory should be removed by default for deleted " -"users. Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1228 -msgid "homedir_umask (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1231 -msgid "" -"Used by <citerefentry> <refentrytitle>sss_useradd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry> to specify the default permissions " -"on a newly created home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1239 -msgid "Default: 077" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1244 -msgid "skel_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1247 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<citerefentry> <refentrytitle>sss_useradd</refentrytitle> <manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1257 -msgid "Default: <filename>/etc/skel</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1262 -msgid "mail_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1265 -msgid "" -"The mail spool directory. This is needed to manipulate the mailbox when its " -"corresponding user account is modified or deleted. If not specified, a " -"default value is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1272 -msgid "Default: <filename>/var/mail</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1277 -msgid "userdel_cmd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1280 -msgid "" -"The command that is run after a user is removed. The command us passed the " -"username of the user being removed as the first and only parameter. The " -"return code of the command is not taken into account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1286 -msgid "Default: None, no command is run" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:1296 sssd-ldap.5.xml:2064 sssd-simple.5.xml:126 -#: sssd-ipa.5.xml:544 sssd-krb5.5.xml:432 -msgid "EXAMPLE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:1302 -#, no-wrap -msgid "" -"[sssd]\n" -"domains = LDAP\n" -"services = nss, pam\n" -"config_file_version = 2\n" -"\n" -"[nss]\n" -"filter_groups = root\n" -"filter_users = root\n" -"\n" -"[pam]\n" -"\n" -"[domain/LDAP]\n" -"id_provider = ldap\n" -"ldap_uri = ldap://ldap.example.com\n" -"ldap_search_base = dc=example,dc=com\n" -"\n" -"auth_provider = krb5\n" -"krb5_server = kerberos.example.com\n" -"krb5_realm = EXAMPLE.COM\n" -"cache_credentials = true\n" -"\n" -"min_id = 10000\n" -"max_id = 20000\n" -"enumerate = False\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1298 -msgid "" -"The following example shows a typical SSSD config. It does not describe " -"configuration of the domains themselves - refer to documentation on " -"configuring domains for more details. <placeholder type=\"programlisting\" " -"id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1333 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>pam_sss</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ldap.5.xml:10 sssd-ldap.5.xml:16 -msgid "sssd-ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:23 -msgid "" -"This manual page describes the configuration of LDAP domains for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. Refer to the <quote>FILE FORMAT</quote> section of the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for detailed syntax information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:35 -msgid "You can configure SSSD to use more than one LDAP domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:38 -msgid "" -"LDAP back end supports id, auth, access and chpass providers. If you want to " -"authenticate against an LDAP server either TLS/SSL or LDAPS is required. " -"<command>sssd</command> <emphasis>does not</emphasis> support authentication " -"over an unencrypted channel. If the LDAP server is used only as an identity " -"provider, an encrypted channel is not needed. Please refer to " -"<quote>ldap_access_filter</quote> config option for more information about " -"using LDAP as an access provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:49 sssd-simple.5.xml:69 sssd-ipa.5.xml:64 -#: sssd-krb5.5.xml:63 -msgid "CONFIGURATION OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:60 -msgid "ldap_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:63 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference. Refer to the <quote>FAILOVER</" -"quote> section for more information on failover and server redundancy. If " -"not specified, service discovery is enabled. For more information, refer to " -"the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:70 -msgid "The format of the URI must match the format defined in RFC 2732:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:73 -msgid "ldap[s]://<host>[:port]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:76 -msgid "" -"For explicit IPv6 addresses, <host> must be enclosed in brackets []" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:79 -msgid "example: ldap://[fc00::126:25]:389" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:85 -msgid "ldap_chpass_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:88 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference to change the password of a user. " -"Refer to the <quote>FAILOVER</quote> section for more information on " -"failover and server redundancy." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:95 -msgid "To enable service discovery ldap_chpass_dns_service_name must be set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:99 -msgid "Default: empty, i.e. ldap_uri is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:105 -msgid "ldap_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:108 -msgid "The default base DN to use for performing LDAP user operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:112 -msgid "" -"Starting with SSSD 1.7.0, SSSD supports multiple search bases using the " -"syntax:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:116 -msgid "search_base[?scope?[filter][?search_base?scope?[filter]]*]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:119 -msgid "The scope can be one of \"base\", \"onelevel\" or \"subtree\"." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:122 -msgid "" -"The filter must be a valid LDAP search filter as specified by http://www." -"ietf.org/rfc/rfc2254.txt" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:126 -msgid "Examples:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:129 -msgid "" -"ldap_search_base = dc=example,dc=com (which is equivalent to) " -"ldap_search_base = dc=example,dc=com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:134 -msgid "" -"ldap_search_base = cn=host_specific,dc=example,dc=com?subtree?" -"(host=thishost)?dc=example.com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:137 -msgid "" -"Note: It is unsupported to have multiple search bases which reference " -"identically-named objects (for example, groups with the same name in two " -"different search bases). This will lead to unpredictable behavior on client " -"machines." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:144 -msgid "" -"Default: If not set, the value of the defaultNamingContext or namingContexts " -"attribute from the RootDSE of the LDAP server is used. If " -"defaultNamingContext does not exists or has an empty value namingContexts is " -"used. The namingContexts attribute must have a single value with the DN of " -"the search base of the LDAP server to make this work. Multiple values are " -"are not supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:158 -msgid "ldap_schema (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:161 -msgid "" -"Specifies the Schema Type in use on the target LDAP server. Depending on " -"the selected schema, the default attribute names retrieved from the servers " -"may vary. The way that some attributes are handled may also differ. Three " -"schema types are currently supported: rfc2307 rfc2307bis IPA The main " -"difference between these schema types is how group memberships are recorded " -"in the server. With rfc2307, group members are listed by name in the " -"<emphasis>memberUid</emphasis> attribute. With rfc2307bis and IPA, group " -"members are listed by DN and stored in the <emphasis>member</emphasis> " -"attribute." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:180 -msgid "Default: rfc2307" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:186 -msgid "ldap_default_bind_dn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:189 -msgid "The default bind DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:196 -msgid "ldap_default_authtok_type (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:199 -msgid "The type of the authentication token of the default bind DN." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:203 -msgid "The two mechanisms currently supported are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:206 -msgid "password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:209 -msgid "obfuscated_password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:212 -msgid "Default: password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:218 -msgid "ldap_default_authtok (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:221 -msgid "" -"The authentication token of the default bind DN. Only clear text passwords " -"are currently supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:228 -msgid "ldap_user_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:231 -msgid "The object class of a user entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:234 -msgid "Default: posixAccount" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:240 -msgid "ldap_user_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:243 -msgid "The LDAP attribute that corresponds to the user's login name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:247 -msgid "Default: uid" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:253 -msgid "ldap_user_uid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:256 -msgid "The LDAP attribute that corresponds to the user's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:260 -msgid "Default: uidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:266 -msgid "ldap_user_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:269 -msgid "The LDAP attribute that corresponds to the user's primary group id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:273 sssd-ldap.5.xml:740 -msgid "Default: gidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:279 -msgid "ldap_user_gecos (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:282 -msgid "The LDAP attribute that corresponds to the user's gecos field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:286 -msgid "Default: gecos" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:292 -msgid "ldap_user_home_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:295 -msgid "The LDAP attribute that contains the name of the user's home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:299 -msgid "Default: homeDirectory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:305 -msgid "ldap_user_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:308 -msgid "The LDAP attribute that contains the path to the user's default shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:312 -msgid "Default: loginShell" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:318 -msgid "ldap_user_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:321 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP user object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:325 sssd-ldap.5.xml:766 sssd-ldap.5.xml:878 -msgid "Default: nsUniqueId" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:331 -msgid "ldap_user_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:334 sssd-ldap.5.xml:775 sssd-ldap.5.xml:887 -msgid "" -"The LDAP attribute that contains timestamp of the last modification of the " -"parent object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:338 sssd-ldap.5.xml:779 sssd-ldap.5.xml:894 -msgid "Default: modifyTimestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:344 -msgid "ldap_user_shadow_last_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:347 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (date of " -"the last password change)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:357 -msgid "Default: shadowLastChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:363 -msgid "ldap_user_shadow_min (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:366 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (minimum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:375 -msgid "Default: shadowMin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:381 -msgid "ldap_user_shadow_max (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:384 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (maximum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:393 -msgid "Default: shadowMax" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:399 -msgid "ldap_user_shadow_warning (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:402 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password warning period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:412 -msgid "Default: shadowWarning" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:418 -msgid "ldap_user_shadow_inactive (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:421 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password inactivity period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:431 -msgid "Default: shadowInactive" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:437 -msgid "ldap_user_shadow_expire (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:440 -msgid "" -"When using ldap_pwd_policy=shadow or ldap_account_expire_policy=shadow, this " -"parameter contains the name of an LDAP attribute corresponding to its " -"<citerefentry> <refentrytitle>shadow</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> counterpart (account expiration date)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:450 -msgid "Default: shadowExpire" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:456 -msgid "ldap_user_krb_last_pwd_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:459 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time of last password change in " -"kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:465 -msgid "Default: krbLastPwdChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:471 -msgid "ldap_user_krb_password_expiration (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:474 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time when current password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:480 -msgid "Default: krbPasswordExpiration" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:486 -msgid "ldap_user_ad_account_expires (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:489 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the expiration time of the account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:494 -msgid "Default: accountExpires" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:500 -msgid "ldap_user_ad_user_account_control (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:503 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the user account control bit field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:508 -msgid "Default: userAccountControl" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:514 -msgid "ldap_ns_account_lock (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:517 -msgid "" -"When using ldap_account_expire_policy=rhds or equivalent, this parameter " -"determines if access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:522 -msgid "Default: nsAccountLock" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:528 -msgid "ldap_user_nds_login_disabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:531 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines if " -"access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:535 sssd-ldap.5.xml:549 -msgid "Default: loginDisabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:541 -msgid "ldap_user_nds_login_expiration_time (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:544 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines until " -"which date access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:555 -msgid "ldap_user_nds_login_allowed_time_map (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:558 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines the " -"hours of a day in a week when access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:563 -msgid "Default: loginAllowedTimeMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:569 -msgid "ldap_user_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:572 -msgid "" -"The LDAP attribute that contains the user's Kerberos User Principal Name " -"(UPN)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:576 -msgid "Default: krbPrincipalName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:582 -msgid "ldap_user_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:585 -msgid "The LDAP attribute that contains the user's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:592 -msgid "ldap_force_upper_case_realm (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:595 -msgid "" -"Some directory servers, for example Active Directory, might deliver the " -"realm part of the UPN in lower case, which might cause the authentication to " -"fail. Set this option to a non-zero value if you want to use an upper-case " -"realm." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:608 -msgid "ldap_enumeration_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:611 -msgid "" -"Specifies how many seconds SSSD has to wait before refreshing its cache of " -"enumerated records." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:616 sssd-ldap.5.xml:1808 -msgid "Default: 300" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:622 -msgid "ldap_purge_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:625 -msgid "" -"Determine how often to check the cache for inactive entries (such as groups " -"with no members and users who have never logged in) and remove them to save " -"space." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:631 -msgid "Setting this option to zero will disable the cache cleanup operation." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:635 -msgid "Default: 10800 (12 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:641 -msgid "ldap_user_fullname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:644 -msgid "The LDAP attribute that corresponds to the user's full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:648 sssd-ldap.5.xml:727 sssd-ldap.5.xml:828 -#: sssd-ldap.5.xml:919 sssd-ldap.5.xml:1663 sssd-ldap.5.xml:1881 -#: sssd-ipa.5.xml:422 -msgid "Default: cn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:654 -msgid "ldap_user_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:657 -msgid "The LDAP attribute that lists the user's group memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:661 sssd-ipa.5.xml:326 -msgid "Default: memberOf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:667 -msgid "ldap_user_authorized_service (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:670 -msgid "" -"If access_provider=ldap and ldap_access_order=authorized_service, SSSD will " -"use the presence of the authorizedService attribute in the user's LDAP entry " -"to determine access privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:677 -msgid "" -"An explicit deny (!svc) is resolved first. Second, SSSD searches for " -"explicit allow (svc) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:682 -msgid "Default: authorizedService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:688 -msgid "ldap_user_authorized_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:691 -msgid "" -"If access_provider=ldap and ldap_access_order=host, SSSD will use the " -"presence of the host attribute in the user's LDAP entry to determine access " -"privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:697 -msgid "" -"An explicit deny (!host) is resolved first. Second, SSSD searches for " -"explicit allow (host) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:702 -msgid "Default: host" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:708 -msgid "ldap_group_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:711 -msgid "The object class of a group entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:714 -msgid "Default: posixGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:720 -msgid "ldap_group_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:723 -msgid "The LDAP attribute that corresponds to the group name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:733 -msgid "ldap_group_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:736 -msgid "The LDAP attribute that corresponds to the group's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:746 -msgid "ldap_group_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:749 -msgid "The LDAP attribute that contains the names of the group's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:753 -msgid "Default: memberuid (rfc2307) / member (rfc2307bis)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:759 -msgid "ldap_group_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:762 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP group object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:772 -msgid "ldap_group_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:785 -msgid "ldap_group_nesting_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:788 -msgid "" -"If ldap_schema is set to a schema format that supports nested groups (e.g. " -"RFC2307bis), then this option controls how many levels of nesting SSSD will " -"follow. This option has no effect on the RFC2307 schema." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:795 -msgid "Default: 2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:801 -msgid "ldap_netgroup_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:804 -msgid "The object class of a netgroup entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:807 -msgid "In IPA provider, ipa_netgroup_object_class should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:811 -msgid "Default: nisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:817 -msgid "ldap_netgroup_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:820 -msgid "The LDAP attribute that corresponds to the netgroup name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:824 -msgid "In IPA provider, ipa_netgroup_name should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:834 -msgid "ldap_netgroup_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:837 -msgid "The LDAP attribute that contains the names of the netgroup's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:841 -msgid "In IPA provider, ipa_netgroup_member should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:845 -msgid "Default: memberNisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:851 -msgid "ldap_netgroup_triple (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:854 -msgid "" -"The LDAP attribute that contains the (host, user, domain) netgroup triples." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:858 sssd-ldap.5.xml:891 -msgid "This option is not available in IPA provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:861 -msgid "Default: nisNetgroupTriple" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:867 -msgid "ldap_netgroup_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:870 -msgid "" -"The LDAP attribute that contains the UUID/GUID of an LDAP netgroup object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:874 -msgid "In IPA provider, ipa_netgroup_uuid should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:884 -msgid "ldap_netgroup_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:900 -msgid "ldap_service_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:903 -msgid "The object class of a service entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:906 -msgid "Default: ipService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:912 -msgid "ldap_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:915 -msgid "" -"The LDAP attribute that contains the name of service attributes and their " -"aliases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:925 -msgid "ldap_service_port (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:928 -msgid "The LDAP attribute that contains the port managed by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:932 -msgid "Default: ipServicePort" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:938 -msgid "ldap_service_proto (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:941 -msgid "" -"The LDAP attribute that contains the protocols understood by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:945 -msgid "Default: ipServiceProtocol" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:951 -msgid "ldap_service_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:954 -msgid "An optional base DN to restrict service searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:958 sssd-ldap.5.xml:1918 sssd-ldap.5.xml:1937 -#: sssd-ldap.5.xml:1956 sssd-ldap.5.xml:2019 sssd-ldap.5.xml:2041 -#: sssd-ipa.5.xml:163 sssd-ipa.5.xml:187 -msgid "" -"See <quote>ldap_search_base</quote> for information about configuring " -"multiple search bases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:963 sssd-ldap.5.xml:1923 sssd-ldap.5.xml:1942 -#: sssd-ldap.5.xml:1961 sssd-ldap.5.xml:2024 sssd-ldap.5.xml:2046 -#: sssd-ipa.5.xml:173 sssd-ipa.5.xml:192 -msgid "Default: the value of <emphasis>ldap_search_base</emphasis>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:970 -msgid "ldap_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:973 -msgid "" -"Specifies the timeout (in seconds) that ldap searches are allowed to run " -"before they are cancelled and cached results are returned (and offline mode " -"is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:979 -msgid "" -"Note: this option is subject to change in future versions of the SSSD. It " -"will likely be replaced at some point by a series of timeouts for specific " -"lookup types." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:985 sssd-ldap.5.xml:1027 sssd-ldap.5.xml:1042 -msgid "Default: 6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:991 -msgid "ldap_enumeration_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:994 -msgid "" -"Specifies the timeout (in seconds) that ldap searches for user and group " -"enumerations are allowed to run before they are cancelled and cached results " -"are returned (and offline mode is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1001 -msgid "Default: 60" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1007 -msgid "ldap_network_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1010 -msgid "" -"Specifies the timeout (in seconds) after which the <citerefentry> " -"<refentrytitle>poll</refentrytitle> <manvolnum>2</manvolnum> </citerefentry>/" -"<citerefentry> <refentrytitle>select</refentrytitle> <manvolnum>2</" -"manvolnum> </citerefentry> following a <citerefentry> " -"<refentrytitle>connect</refentrytitle> <manvolnum>2</manvolnum> </" -"citerefentry> returns in case of no activity." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1033 -msgid "ldap_opt_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1036 -msgid "" -"Specifies a timeout (in seconds) after which calls to synchronous LDAP APIs " -"will abort if no response is received. Also controls the timeout when " -"communicating with the KDC in case of SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1048 -msgid "ldap_connection_expire_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1051 -msgid "" -"Specifies a timeout (in seconds) that a connection to an LDAP server will be " -"maintained. After this time, the connection will be re-established. If used " -"in parallel with SASL/GSSAPI, the sooner of the two values (this value vs. " -"the TGT lifetime) will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1059 -msgid "Default: 900 (15 minutes)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1065 -msgid "ldap_page_size (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1068 -msgid "" -"Specify the number of records to retrieve from LDAP in a single request. " -"Some LDAP servers enforce a maximum limit per-request." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1073 -msgid "Default: 1000" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1079 -msgid "ldap_disable_paging" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1082 -msgid "" -"Disable the LDAP paging control. This option should be used if the LDAP " -"server reports that it supports the LDAP paging control in its RootDSE but " -"it is not enabled or does not behave properly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1088 -msgid "" -"Example: OpenLDAP servers with the paging control module installed on the " -"server but not enabled will report it in the RootDSE but be unable to use it." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1094 -msgid "" -"Example: 389 DS has a bug where it can only support a one paging control at " -"a time on a single connection. On busy clients, this can result in some " -"requests being denied." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1103 -msgid "ldap_deref_threshold (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1106 -msgid "" -"Specify the number of group members that must be missing from the internal " -"cache in order to trigger a dereference lookup. If less members are missing, " -"they are looked up individually." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1112 -msgid "" -"You can turn off dereference lookups completely by setting the value to 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1116 -msgid "" -"A dereference lookup is a means of fetching all group members in a single " -"LDAP call. Different LDAP servers may implement different dereference " -"methods. The currently supported servers are 389/RHDS, OpenLDAP and Active " -"Directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1124 -msgid "" -"<emphasis>Note:</emphasis> If any of the search bases specifies a search " -"filter, then the dereference lookup performance enhancement will be disabled " -"regardless of this setting." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1137 -msgid "ldap_tls_reqcert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1140 -msgid "" -"Specifies what checks to perform on server certificates in a TLS session, if " -"any. It can be specified as one of the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1146 -msgid "" -"<emphasis>never</emphasis> = The client will not request or check any server " -"certificate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1150 -msgid "" -"<emphasis>allow</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, it will be ignored and the session proceeds normally." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1157 -msgid "" -"<emphasis>try</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, the session is immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1163 -msgid "" -"<emphasis>demand</emphasis> = The server certificate is requested. If no " -"certificate is provided, or a bad certificate is provided, the session is " -"immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1169 -msgid "<emphasis>hard</emphasis> = Same as <quote>demand</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1173 -msgid "Default: hard" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1179 -msgid "ldap_tls_cacert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1182 -msgid "" -"Specifies the file that contains certificates for all of the Certificate " -"Authorities that <command>sssd</command> will recognize." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1187 sssd-ldap.5.xml:1205 sssd-ldap.5.xml:1246 -msgid "" -"Default: use OpenLDAP defaults, typically in <filename>/etc/openldap/ldap." -"conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1194 -msgid "ldap_tls_cacertdir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1197 -msgid "" -"Specifies the path of a directory that contains Certificate Authority " -"certificates in separate individual files. Typically the file names need to " -"be the hash of the certificate followed by '.0'. If available, " -"<command>cacertdir_rehash</command> can be used to create the correct names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1212 -msgid "ldap_tls_cert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1215 -msgid "Specifies the file that contains the certificate for the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1219 sssd-ldap.5.xml:1231 sssd-ldap.5.xml:1979 -#: sssd-ldap.5.xml:2006 sssd-krb5.5.xml:359 -msgid "Default: not set" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1225 -msgid "ldap_tls_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1228 -msgid "Specifies the file that contains the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1237 -msgid "ldap_tls_cipher_suite (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1240 -msgid "" -"Specifies acceptable cipher suites. Typically this is a colon sperated " -"list. See <citerefentry><refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> for format." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1253 -msgid "ldap_id_use_start_tls (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1256 -msgid "" -"Specifies that the id_provider connection must also use <systemitem class=" -"\"protocol\">tls</systemitem> to protect the channel." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1266 -msgid "ldap_sasl_mech (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1269 -msgid "" -"Specify the SASL mechanism to use. Currently only GSSAPI is tested and " -"supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1273 sssd-ldap.5.xml:1428 -msgid "Default: none" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1279 -msgid "ldap_sasl_authid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1282 -msgid "" -"Specify the SASL authorization id to use. When GSSAPI is used, this " -"represents the Kerberos principal used for authentication to the directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1287 -msgid "Default: host/machine.fqdn@REALM" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1293 -msgid "ldap_sasl_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1296 -msgid "" -"If set to true, the LDAP library would perform a reverse lookup to " -"canonicalize the host name during a SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1301 -msgid "Default: false;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1307 -msgid "ldap_krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1310 -msgid "Specify the keytab to use when using SASL/GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1313 -msgid "Default: System keytab, normally <filename>/etc/krb5.keytab</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1319 -msgid "ldap_krb5_init_creds (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1322 -msgid "" -"Specifies that the id_provider should init Kerberos credentials (TGT). This " -"action is performed only if SASL is used and the mechanism selected is " -"GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1334 -msgid "ldap_krb5_ticket_lifetime (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1337 -msgid "Specifies the lifetime in seconds of the TGT if GSSAPI is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1341 -msgid "Default: 86400 (24 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1347 sssd-krb5.5.xml:74 -msgid "krb5_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1350 sssd-krb5.5.xml:77 -msgid "" -"Specifies the comma-separated list of IP addresses or hostnames of the " -"Kerberos servers to which SSSD should connect in the order of preference. " -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. An optional port number (preceded by a " -"colon) may be appended to the addresses or hostnames. If empty, service " -"discovery is enabled - for more information, refer to the <quote>SERVICE " -"DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1362 sssd-krb5.5.xml:89 -msgid "" -"When using service discovery for KDC or kpasswd servers, SSSD first searches " -"for DNS entries that specify _udp as the protocol and falls back to _tcp if " -"none are found." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1367 sssd-krb5.5.xml:94 -msgid "" -"This option was named <quote>krb5_kdcip</quote> in earlier releases of SSSD. " -"While the legacy name is recognized for the time being, users are advised to " -"migrate their config files to use <quote>krb5_server</quote> instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1376 sssd-ipa.5.xml:216 sssd-krb5.5.xml:103 -msgid "krb5_realm (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1379 -msgid "Specify the Kerberos REALM (for SASL/GSSAPI auth)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1382 -msgid "Default: System defaults, see <filename>/etc/krb5.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1388 sssd-ipa.5.xml:231 sssd-krb5.5.xml:409 -msgid "krb5_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1391 -msgid "" -"Specifies if the host principal should be canonicalized when connecting to " -"LDAP server. This feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1403 -msgid "ldap_pwd_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1406 -msgid "" -"Select the policy to evaluate the password expiration on the client side. " -"The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1411 -msgid "" -"<emphasis>none</emphasis> - No evaluation on the client side. This option " -"cannot disable server-side password policies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1416 -msgid "" -"<emphasis>shadow</emphasis> - Use <citerefentry><refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum></citerefentry> style attributes to " -"evaluate if the password has expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1422 -msgid "" -"<emphasis>mit_kerberos</emphasis> - Use the attributes used by MIT Kerberos " -"to determine if the password has expired. Use chpass_provider=krb5 to update " -"these attributes when the password is changed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1434 -msgid "ldap_referrals (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1437 -msgid "Specifies whether automatic referral chasing should be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1441 -msgid "" -"Please note that sssd only supports referral chasing when it is compiled " -"with OpenLDAP version 2.4.13 or higher." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1452 -msgid "ldap_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1455 -msgid "Specifies the service name to use when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1459 -msgid "Default: ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1465 -msgid "ldap_chpass_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1468 -msgid "" -"Specifies the service name to use to find an LDAP server which allows " -"password changes when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1473 -msgid "Default: not set, i.e. service discovery is disabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1479 -msgid "ldap_access_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1482 -msgid "" -"If using access_provider = ldap, this option is mandatory. It specifies an " -"LDAP search filter criteria that must be met for the user to be granted " -"access on this host. If access_provider = ldap and this option is not set, " -"it will result in all users being denied access. Use access_provider = allow " -"to change this default behavior." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1492 sssd-ldap.5.xml:1982 -msgid "Example:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1495 -#, no-wrap -msgid "" -"access_provider = ldap\n" -"ldap_access_filter = memberOf=cn=allowedusers,ou=Groups,dc=example,dc=com\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1499 -msgid "" -"This example means that access to this host is restricted to members of the " -"\"allowedusers\" group in ldap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1504 -msgid "" -"Offline caching for this feature is limited to determining whether the " -"user's last online login was granted access permission. If they were granted " -"access during their last login, they will continue to be granted access " -"while offline and vice-versa." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1512 sssd-ldap.5.xml:1562 -msgid "Default: Empty" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1518 -msgid "ldap_account_expire_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1521 -msgid "" -"With this option a client side evaluation of access control attributes can " -"be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1525 -msgid "" -"Please note that it is always recommended to use server side access control, " -"i.e. the LDAP server should deny the bind request with a suitable error code " -"even if the password is correct." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1532 -msgid "The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1535 -msgid "" -"<emphasis>shadow</emphasis>: use the value of ldap_user_shadow_expire to " -"determine if the account is expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1540 -msgid "" -"<emphasis>ad</emphasis>: use the value of the 32bit field " -"ldap_user_ad_user_account_control and allow access if the second bit is not " -"set. If the attribute is missing access is granted. Also the expiration time " -"of the account is checked." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1547 -msgid "" -"<emphasis>rhds</emphasis>, <emphasis>ipa</emphasis>, <emphasis>389ds</" -"emphasis>: use the value of ldap_ns_account_lock to check if access is " -"allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1553 -msgid "" -"<emphasis>nds</emphasis>: the values of " -"ldap_user_nds_login_allowed_time_map, ldap_user_nds_login_disabled and " -"ldap_user_nds_login_expiration_time are used to check if access is allowed. " -"If both attributes are missing access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1568 -msgid "ldap_access_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1571 -msgid "Comma separated list of access control options. Allowed values are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1575 -msgid "<emphasis>filter</emphasis>: use ldap_access_filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1578 -msgid "<emphasis>expire</emphasis>: use ldap_account_expire_policy" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1582 -msgid "" -"<emphasis>authorized_service</emphasis>: use the authorizedService attribute " -"to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1587 -msgid "<emphasis>host</emphasis>: use the host attribute to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1591 -msgid "Default: filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1594 -msgid "" -"Please note that it is a configuration error if a value is used more than " -"once." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1601 -msgid "ldap_deref (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1604 -msgid "" -"Specifies how alias dereferencing is done when performing a search. The " -"following options are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1609 -msgid "<emphasis>never</emphasis>: Aliases are never dereferenced." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1613 -msgid "" -"<emphasis>searching</emphasis>: Aliases are dereferenced in subordinates of " -"the base object, but not in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1618 -msgid "" -"<emphasis>finding</emphasis>: Aliases are only dereferenced when locating " -"the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1623 -msgid "" -"<emphasis>always</emphasis>: Aliases are dereferenced both in searching and " -"in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1628 -msgid "" -"Default: Empty (this is handled as <emphasis>never</emphasis> by the LDAP " -"client libraries)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:51 -msgid "" -"All of the common configuration options that apply to SSSD domains also " -"apply to LDAP domains. Refer to the <quote>DOMAIN SECTIONS</quote> section " -"of the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for full details. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1639 -msgid "SUDO OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1644 -msgid "ldap_sudorule_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1647 -msgid "The object class of a sudo rule entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1650 -msgid "Default: sudoRole" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1656 -msgid "ldap_sudorule_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1659 -msgid "The LDAP attribute that corresponds to the sudo rule name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1669 -msgid "ldap_sudorule_command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1672 -msgid "The LDAP attribute that corresponds to the command name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1676 -msgid "Default: sudoCommand" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1682 -msgid "ldap_sudorule_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1685 -msgid "" -"The LDAP attribute that corresponds to the host name (or host IP address, " -"host IP network, or host netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1690 -msgid "Default: sudoHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1696 -msgid "ldap_sudorule_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1699 -msgid "" -"The LDAP attribute that corresponds to the user name (or UID, group name or " -"user's netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1703 -msgid "Default: sudoUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1709 -msgid "ldap_sudorule_option (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1712 -msgid "The LDAP attribute that corresponds to the sudo options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1716 -msgid "Default: sudoOption" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1722 -msgid "ldap_sudorule_runasuser (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1725 -msgid "" -"The LDAP attribute that corresponds to the user name that commands may be " -"run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1729 -msgid "Default: sudoRunAsUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1735 -msgid "ldap_sudorule_runasgroup (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1738 -msgid "" -"The LDAP attribute that corresponds to the group name or group GID that " -"commands may be run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1742 -msgid "Default: sudoRunAsGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1748 -msgid "ldap_sudorule_notbefore (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1751 -msgid "" -"The LDAP attribute that corresponds to the start date/time for when the sudo " -"rule is valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1755 -msgid "Default: sudoNotBefore" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1761 -msgid "ldap_sudorule_notafter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1764 -msgid "" -"The LDAP attribute that corresponds to the expiration date/time, after which " -"the sudo rule will no longer be valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1769 -msgid "Default: sudoNotAfter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1775 -msgid "ldap_sudorule_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1778 -msgid "The LDAP attribute that corresponds to the ordering index of the rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1782 -msgid "Default: sudoOrder" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1788 -msgid "ldap_sudo_refresh_enabled (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1791 -msgid "" -"Enables periodical download of all sudo rules. The cache is purged before " -"each update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1801 -msgid "ldap_sudo_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1804 -msgid "" -"How many seconds SSSD has to wait before refreshing its cache of sudo rules." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1642 -msgid "<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1815 -msgid "" -"This manual page only describes attribute name mapping. For detailed " -"explanation of sudo related attribute semantics, see <citerefentry> " -"<refentrytitle>sudoers.ldap</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1825 -msgid "AUTOFS OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1827 -msgid "" -"Please note that the default values correspond to the default schema which " -"is RFC2307." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1834 -msgid "ldap_autofs_map_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1837 sssd-ldap.5.xml:1863 -msgid "The object class of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1840 sssd-ldap.5.xml:1867 -msgid "Default: automountMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1847 -msgid "ldap_autofs_map_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1850 -msgid "The name of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1853 -msgid "Default: ou" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1860 -msgid "ldap_autofs_entry_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1874 -msgid "ldap_autofs_entry_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1877 sssd-ldap.5.xml:1891 -msgid "" -"The key of an automount entry in LDAP. The entry usually corresponds to a " -"mount point." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1888 -msgid "ldap_autofs_entry_value (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1895 -msgid "Default: automountInformation" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1832 -msgid "" -"<placeholder type=\"variablelist\" id=\"0\"/> <placeholder type=" -"\"variablelist\" id=\"1\"/> <placeholder type=\"variablelist\" id=\"2\"/> " -"<placeholder type=\"variablelist\" id=\"3\"/> <placeholder type=" -"\"variablelist\" id=\"4\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1904 -msgid "ADVANCED OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1911 -msgid "ldap_netgroup_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1914 -msgid "" -"An optional base DN to restrict netgroup searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1930 -msgid "ldap_user_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1933 -msgid "An optional base DN to restrict user searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1949 -msgid "ldap_group_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1952 -msgid "An optional base DN to restrict group searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1968 -msgid "ldap_user_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1971 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict user searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1975 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_user_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1985 -#, no-wrap -msgid "" -" ldap_user_search_filter = (loginShell=/bin/tcsh)\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1988 -msgid "" -"This filter would restrict user searches to users that have their shell set " -"to /bin/tcsh." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1995 -msgid "ldap_group_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1998 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict group searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2002 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_group_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2012 -msgid "ldap_sudo_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2015 -msgid "" -"An optional base DN to restrict sudo rules searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2034 -msgid "ldap_autofs_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2037 -msgid "" -"An optional base DN to restrict automounter searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1906 -msgid "" -"These options are supported by LDAP domains, but they should be used with " -"caution. Please include them in your configuration only if you know what you " -"are doing. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2066 -msgid "" -"The following example assumes that SSSD is correctly configured and LDAP is " -"set to one of the domains in the <replaceable>[domains]</replaceable> " -"section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ldap.5.xml:2072 -#, no-wrap -msgid "" -" [domain/LDAP]\n" -" id_provider = ldap\n" -" auth_provider = ldap\n" -" ldap_uri = ldap://ldap.mydomain.org\n" -" ldap_search_base = dc=mydomain,dc=org\n" -" ldap_tls_reqcert = demand\n" -" cache_credentials = true\n" -" enumerate = true\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2071 sssd-simple.5.xml:134 sssd-ipa.5.xml:552 -#: sssd-krb5.5.xml:441 -msgid "<placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:2085 sssd_krb5_locator_plugin.8.xml:61 -msgid "NOTES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2087 -msgid "" -"The descriptions of some of the configuration options in this manual page " -"are based on the <citerefentry> <refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page from the OpenLDAP 2.4 " -"distribution." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2098 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <refentryinfo> -#: pam_sss.8.xml:8 include/upstream.xml:2 -msgid "" -"<productname>SSSD</productname> <orgname>The SSSD upstream - http://" -"fedorahosted.org/sssd</orgname>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: pam_sss.8.xml:13 pam_sss.8.xml:18 -msgid "pam_sss" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: pam_sss.8.xml:19 -msgid "PAM module for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: pam_sss.8.xml:24 -msgid "" -"<command>pam_sss.so</command> <arg choice='opt'> <replaceable>quiet</" -"replaceable> </arg> <arg choice='opt'> <replaceable>forward_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_first_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_authtok</" -"replaceable> </arg> <arg choice='opt'> <replaceable>retry=N</replaceable> </" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:45 -msgid "" -"<command>pam_sss.so</command> is the PAM interface to the System Security " -"Services daemon (SSSD). Errors and results are logged through <command>syslog" -"(3)</command> with the LOG_AUTHPRIV facility." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:55 -msgid "<option>quiet</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:58 -msgid "Suppress log messages for unknown users." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:63 -msgid "<option>forward_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:66 -msgid "" -"If <option>forward_pass</option> is set the entered password is put on the " -"stack for other PAM modules to use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:73 -msgid "<option>use_first_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:76 -msgid "" -"The argument use_first_pass forces the module to use a previous stacked " -"modules password and will never prompt the user - if no password is " -"available or the password is not appropriate, the user will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:84 -msgid "<option>use_authtok</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:87 -msgid "" -"When password changing enforce the module to set the new password to the one " -"provided by a previously stacked password module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:94 -msgid "<option>retry=N</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:97 -msgid "" -"If specified the user is asked another N times for a password if " -"authentication fails. Default is 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:99 -msgid "" -"Please note that this option might not work as expected if the application " -"calling PAM handles the user dialog on its own. A typical example is " -"<command>sshd</command> with <option>PasswordAuthentication</option>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:110 -msgid "MODULE TYPES PROVIDED" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:111 -msgid "" -"All module types (<option>account</option>, <option>auth</option>, " -"<option>password</option> and <option>session</option>) are provided." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:117 -msgid "FILES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:118 -msgid "" -"If a password reset by root fails, because the corresponding SSSD provider " -"does not support password resets, an individual message can be displayed. " -"This message can e.g. contain instructions about how to reset a password." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:123 -msgid "" -"The message is read from the file <filename>pam_sss_pw_reset_message.LOC</" -"filename> where LOC stands for a locale string returned by <citerefentry> " -"<refentrytitle>setlocale</refentrytitle><manvolnum>3</manvolnum> </" -"citerefentry>. If there is no matching file the content of " -"<filename>pam_sss_pw_reset_message.txt</filename> is displayed. Root must be " -"the owner of the files and only root may have read and write permissions " -"while all other users must have only read permissions." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:133 -msgid "" -"These files are searched in the directory <filename>/etc/sssd/customize/" -"DOMAIN_NAME/</filename>. If no matching file is present a generic message is " -"displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:141 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd_krb5_locator_plugin.8.xml:10 sssd_krb5_locator_plugin.8.xml:15 -msgid "sssd_krb5_locator_plugin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:22 -msgid "" -"The Kerberos locator plugin <command>sssd_krb5_locator_plugin</command> is " -"used by the Kerberos provider of <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry> to tell the Kerberos " -"libraries what Realm and which KDC to use. Typically this is done in " -"<citerefentry> <refentrytitle>krb5.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> which is always read by the Kerberos libraries. " -"To simplify the configuration the Realm and the KDC can be defined in " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> as described in <citerefentry> " -"<refentrytitle>sssd-krb5.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry> puts the Realm and the name or IP address of the KDC into " -"the environment variables SSSD_KRB5_REALM and SSSD_KRB5_KDC respectively. " -"When <command>sssd_krb5_locator_plugin</command> is called by the kerberos " -"libraries it reads and evaluates these variables and returns them to the " -"libraries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:63 -msgid "" -"Not all Kerberos implementations support the use of plugins. If " -"<command>sssd_krb5_locator_plugin</command> is not available on your system " -"you have to edit /etc/krb5.conf to reflect your Kerberos setup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:69 -msgid "" -"If the environment variable SSSD_KRB5_LOCATOR_DEBUG is set to any value " -"debug messages will be sent to stderr." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:77 -msgid "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-simple.5.xml:10 sssd-simple.5.xml:16 -msgid "sssd-simple" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd-simple.5.xml:17 -msgid "the configuration file for SSSD's 'simple' access-control provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:24 -msgid "" -"This manual page describes the configuration of the simple access-control " -"provider for <citerefentry> <refentrytitle>sssd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry>. For a detailed syntax reference, " -"refer to the <quote>FILE FORMAT</quote> section of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:38 -msgid "" -"The simple access provider grants or denies access based on an access or " -"deny list of user or group names. The following rules apply:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:43 -msgid "If all lists are empty, access is granted" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:47 -msgid "" -"If any list is provided, the order of evaluation is allow,deny. This means " -"that any matching deny rule will supersede any matched allow rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:54 -msgid "" -"If either or both \"allow\" lists are provided, all users are denied unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:60 -msgid "" -"If only \"deny\" lists are provided, all users are granted access unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:78 -msgid "simple_allow_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:81 -msgid "Comma separated list of users who are allowed to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:88 -msgid "simple_deny_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:91 -msgid "Comma separated list of users who are explicitly denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:97 -msgid "simple_allow_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:100 -msgid "" -"Comma separated list of groups that are allowed to log in. This applies only " -"to groups within this SSSD domain. Local groups are not evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:108 -msgid "simple_deny_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:111 -msgid "" -"Comma separated list of groups that are explicitly denied access. This " -"applies only to groups within this SSSD domain. Local groups are not " -"evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:70 sssd-ipa.5.xml:65 -msgid "" -"Refer to the section <quote>DOMAIN SECTIONS</quote> of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page for details on the configuration of an SSSD " -"domain. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:120 -msgid "" -"Please note that it is an configuration error if both, simple_allow_users " -"and simple_deny_users, are defined." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:128 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the simple access provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-simple.5.xml:135 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" access_provider = simple\n" -" simple_allow_users = user1, user2\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:145 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ipa.5.xml:10 sssd-ipa.5.xml:16 -msgid "sssd-ipa" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:23 -msgid "" -"This manual page describes the configuration of the IPA provider for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. For a detailed syntax reference, refer to the <quote>FILE " -"FORMAT</quote> section of the <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:36 -msgid "" -"The IPA provider is a back end used to connect to an IPA server. (Refer to " -"the freeipa.org web site for information about IPA servers.) This provider " -"requires that the machine be joined to the IPA domain; configuration is " -"almost entirely self-discovered and obtained directly from the server." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:43 -msgid "" -"The IPA provider accepts the same options used by the <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> identity provider and the <citerefentry> <refentrytitle>sssd-" -"krb5</refentrytitle> <manvolnum>5</manvolnum> </citerefentry> authentication " -"provider with some exceptions described below." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:55 -msgid "" -"However, it is neither necessary nor recommended to set these options. IPA " -"provider can also be used as an access and chpass provider. As an access " -"provider it uses HBAC (host-based access control) rules. Please refer to " -"freeipa.org for more information about HBAC. No configuration of access " -"provider is required on the client side." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:72 -msgid "ipa_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:75 -msgid "" -"Specifies the name of the IPA domain. This is optional. If not provided, " -"the configuration domain name is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:83 -msgid "ipa_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:86 -msgid "" -"The comma-separated list of IP addresses or hostnames of the IPA servers to " -"which SSSD should connect in the order of preference. For more information " -"on failover and server redundancy, see the <quote>FAILOVER</quote> section. " -"This is optional if autodiscovery is enabled. For more information on " -"service discovery, refer to the the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:99 -msgid "ipa_hostname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:102 -msgid "" -"Optional. May be set on machines where the hostname(5) does not reflect the " -"fully qualified name used in the IPA domain to identify this host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:110 -msgid "ipa_dyndns_update (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:113 -msgid "" -"Optional. This option tells SSSD to automatically update the DNS server " -"built into FreeIPA v2 with the IP address of this client." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:118 -msgid "" -"NOTE: On older systems (such as RHEL 5), for this behavior to work reliably, " -"the default Kerberos realm must be set properly in /etc/krb5.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:129 -msgid "ipa_dyndns_iface (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:132 -msgid "" -"Optional. Applicable only when ipa_dyndns_update is true. Choose the " -"interface whose IP address should be used for dynamic DNS updates." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:137 -msgid "Default: Use the IP address of the IPA LDAP connection" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:143 -msgid "ipa_hbac_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:146 -msgid "Optional. Use the given string as search base for HBAC related objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:150 -msgid "Default: Use base DN" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:156 -msgid "ipa_host_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:159 -msgid "Optional. Use the given string as search base for host objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:168 -msgid "" -"If filter is given in any of search bases and " -"<emphasis>ipa_hbac_support_srchost</emphasis> is set to False, the filter " -"will be ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:180 -msgid "ipa_selinux_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:183 -msgid "Optional. Use the given string as search base for SELinux user maps." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:199 sssd-krb5.5.xml:229 -msgid "krb5_validate (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:202 sssd-krb5.5.xml:232 -msgid "" -"Verify with the help of krb5_keytab that the TGT obtained has not been " -"spoofed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:209 -msgid "" -"Note that this default differs from the traditional Kerberos provider back " -"end." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:219 -msgid "" -"The name of the Kerberos realm. This is optional and defaults to the value " -"of <quote>ipa_domain</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:223 -msgid "" -"The name of the Kerberos realm has a special meaning in IPA - it is " -"converted into the base DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:234 -msgid "" -"Specifies if the host and user principal should be canonicalized when " -"connecting to IPA LDAP and also for AS requests. This feature is available " -"with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:247 -msgid "ipa_hbac_refresh (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:250 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server. " -"This will reduce the latency and load on the IPA server if there are many " -"access-control requests made in a short period." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:257 -msgid "Default: 5 (seconds)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:262 -msgid "ipa_hbac_treat_deny_as (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:265 -msgid "" -"This option specifies how to treat the deprecated DENY-type HBAC rules. As " -"of FreeIPA v2.1, DENY rules are no longer supported on the server. All users " -"of FreeIPA will need to migrate their rules to use only the ALLOW rules. The " -"client will support two modes of operation during this transition period:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:274 -msgid "" -"<emphasis>DENY_ALL</emphasis>: If any HBAC DENY rules are detected, all " -"users will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:279 -msgid "" -"<emphasis>IGNORE</emphasis>: SSSD will ignore any DENY rules. Be very " -"careful with this option, as it may result in opening unintended access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:284 -msgid "Default: DENY_ALL" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:289 -msgid "ipa_hbac_support_srchost (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:292 -msgid "" -"If this is set to false, then srchost as given to SSSD by PAM will be " -"ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:296 -msgid "" -"Note that if set to <emphasis>False</emphasis>, this option casuses filters " -"given in <emphasis>ipa_host_search_base</emphasis> to be ignored;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:307 -msgid "ipa_automount_location (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:310 -msgid "The automounter location this IPA client will be using" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:313 -msgid "Default: The location named \"default\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:319 -msgid "ipa_netgroup_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:322 -msgid "The LDAP attribute that lists netgroup's memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:331 -msgid "ipa_netgroup_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:334 -msgid "" -"The LDAP attribute that lists system users and groups that are direct " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:339 sssd-ipa.5.xml:434 -msgid "Default: memberUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:344 -msgid "ipa_netgroup_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:347 -msgid "" -"The LDAP attribute that lists hosts and host groups that are direct members " -"of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:351 sssd-ipa.5.xml:446 -msgid "Default: memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:356 -msgid "ipa_netgroup_member_ext_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:359 -msgid "" -"The LDAP attribute that lists FQDNs of hosts and host groups that are " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:363 -msgid "Default: externalHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:368 -msgid "ipa_netgroup_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:371 -msgid "The LDAP attribute that contains NIS domain name of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:375 -msgid "Default: nisDomainName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:381 -msgid "ipa_host_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:384 sssd-ipa.5.xml:407 -msgid "The object class of a host entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:387 sssd-ipa.5.xml:410 -msgid "Default: ipaHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:392 -msgid "ipa_host_fqdn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:395 -msgid "The LDAP attribute that contains FQDN of the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:398 -msgid "Default: fqdn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:404 -msgid "ipa_selinux_usermap_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:415 -msgid "ipa_selinux_usermap_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:418 -msgid "The LDAP attribute that contains the name of SELinux usermap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:427 -msgid "ipa_selinux_usermap_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:430 -msgid "" -"The LDAP attribute that contains all users / groups this rule match against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:439 -msgid "ipa_selinux_usermap_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:442 -msgid "" -"The LDAP attribute that contains all hosts / hostgroups this rule match " -"against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:451 -msgid "ipa_selinux_usermap_see_also (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:454 -msgid "" -"The LDAP attribute that contains DN of HBAC rule which can be used for " -"matching instead of memberUser and memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:459 -msgid "Default: seeAlso" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:464 -msgid "ipa_selinux_usermap_selinux_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:467 -msgid "The LDAP attribute that contains SELinux user string itself." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:471 -msgid "Default: ipaSELinuxUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:476 -msgid "ipa_selinux_usermap_enabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:479 -msgid "" -"The LDAP attribute that contains whether or not is user map enabled for " -"usage." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:483 -msgid "Default: ipaEnabledFlag" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:488 -msgid "ipa_selinux_usermap_user_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:491 -msgid "The LDAP attribute that contains user category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:495 -msgid "Default: userCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:500 -msgid "ipa_selinux_usermap_host_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:503 -msgid "The LDAP attribute that contains host category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:507 -msgid "Default: hostCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:512 -msgid "ipa_selinux_usermap_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:515 -msgid "The LDAP attribute that contains unique ID of the user map." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:519 -msgid "Default: ipaUniqueID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:524 -msgid "ipa_host_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:527 -msgid "The LDAP attribute that contains the host's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:531 -msgid "Default: ipaSshPubKey" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:546 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the ipa provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ipa.5.xml:553 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" id_provider = ipa\n" -" ipa_server = ipaserver.example.com\n" -" ipa_hostname = myhost.example.com\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:564 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.8.xml:10 sssd.8.xml:15 -msgid "sssd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.8.xml:16 -msgid "System Security Services Daemon" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sssd.8.xml:21 -msgid "" -"<command>sssd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:31 -msgid "" -"<command>SSSD</command> provides a set of daemons to manage access to remote " -"directories and authentication mechanisms. It provides an NSS and PAM " -"interface toward the system and a pluggable backend system to connect to " -"multiple different account sources as well as D-Bus interface. It is also " -"the basis to provide client auditing and policy services for projects like " -"FreeIPA. It provides a more robust database to store local users as well as " -"extended user data." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:46 -msgid "" -"<option>-d</option>,<option>--debug-level</option> <replaceable>LEVEL</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:53 -msgid "<option>--debug-timestamps=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:57 -msgid "<emphasis>1</emphasis>: Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:60 -msgid "<emphasis>0</emphasis>: Disable timestamp in the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:69 -msgid "<option>--debug-microseconds=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:73 -msgid "" -"<emphasis>1</emphasis>: Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:76 -msgid "<emphasis>0</emphasis>: Disable microseconds in timestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:79 -msgid "Default: 0" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:85 -msgid "<option>-f</option>,<option>--debug-to-files</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:89 -msgid "" -"Send the debug output to files instead of stderr. By default, the log files " -"are stored in <filename>/var/log/sssd</filename> and there are separate log " -"files for every SSSD service and domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:97 -msgid "<option>-D</option>,<option>--daemon</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:101 -msgid "Become a daemon after starting up." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:107 -msgid "<option>-i</option>,<option>--interactive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:111 -msgid "Run in the foreground, don't become a daemon." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:117 sss_debuglevel.8.xml:42 -msgid "<option>-c</option>,<option>--config</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:121 sss_debuglevel.8.xml:46 -msgid "" -"Specify a non-default config file. The default is <filename>/etc/sssd/sssd." -"conf</filename>. For reference on the config file syntax and options, " -"consult the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:135 -msgid "<option>--version</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:139 -msgid "Print version number and exit." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.8.xml:147 -msgid "Signals" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:150 -msgid "SIGTERM/SIGINT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:153 -msgid "" -"Informs the SSSD to gracefully terminate all of its child processes and then " -"shut down the monitor." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:159 -msgid "SIGHUP" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:162 -msgid "" -"Tells the SSSD to stop writing to its current debug file descriptors and to " -"close and reopen them. This is meant to facilitate log rolling with programs " -"like logrotate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:170 -msgid "SIGUSR1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:173 -msgid "" -"Tells the SSSD to simulate offline operation for one minute. This is mostly " -"useful for testing purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:179 -msgid "SIGUSR2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:182 -msgid "" -"Tells the SSSD to go online immediately. This is mostly useful for testing " -"purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:193 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_obfuscate.8.xml:10 sss_obfuscate.8.xml:15 -msgid "sss_obfuscate" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_obfuscate.8.xml:16 -msgid "obfuscate a clear text password" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_obfuscate.8.xml:21 -msgid "" -"<command>sss_obfuscate</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>[PASSWORD]</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:32 -msgid "" -"<command>sss_obfuscate</command> converts a given password into human-" -"unreadable format and places it into appropriate domain section of the SSSD " -"config file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:37 -msgid "" -"The cleartext password is read from standard input or entered " -"interactively. The obfuscated password is put into " -"<quote>ldap_default_authtok</quote> parameter of a given SSSD domain and the " -"<quote>ldap_default_authtok_type</quote> parameter is set to " -"<quote>obfuscated_password</quote>. Refer to <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more details on these parameters." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:49 -msgid "" -"Please note that obfuscating the password provides <emphasis>no real " -"security benefit</emphasis> as it is still possible for an attacker to " -"reverse-engineer the password back. Using better authentication mechanisms " -"such as client side certificates or GSSAPI is <emphasis>strongly</emphasis> " -"advised." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:63 -msgid "<option>-s</option>,<option>--stdin</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:67 -msgid "The password to obfuscate will be read from standard input." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:74 sss_ssh_authorizedkeys.1.xml:82 -#: sss_ssh_knownhostsproxy.1.xml:81 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>DOMAIN</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:79 -msgid "" -"The SSSD domain to use the password in. The default name is <quote>default</" -"quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:86 -msgid "" -"<option>-f</option>,<option>--file</option> <replaceable>FILE</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:91 -msgid "Read the config file specified by the positional parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:95 -msgid "Default: <filename>/etc/sssd/sssd.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:105 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_useradd.8.xml:10 sss_useradd.8.xml:15 -msgid "sss_useradd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_useradd.8.xml:16 -msgid "create a new user" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_useradd.8.xml:21 -msgid "" -"<command>sss_useradd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:32 -msgid "" -"<command>sss_useradd</command> creates a new user account using the values " -"specified on the command line plus the default values from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:43 -msgid "" -"<option>-u</option>,<option>--uid</option> <replaceable>UID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:48 -msgid "" -"Set the UID of the user to the value of <replaceable>UID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:55 sss_usermod.8.xml:43 -msgid "" -"<option>-c</option>,<option>--gecos</option> <replaceable>COMMENT</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:60 sss_usermod.8.xml:48 -msgid "" -"Any text string describing the user. Often used as the field for the user's " -"full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:67 sss_usermod.8.xml:55 -msgid "" -"<option>-h</option>,<option>--home</option> <replaceable>HOME_DIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:72 -msgid "" -"The home directory of the user account. The default is to append the " -"<replaceable>LOGIN</replaceable> name to <filename>/home</filename> and use " -"that as the home directory. The base that is prepended before " -"<replaceable>LOGIN</replaceable> is tunable with <quote>user_defaults/" -"baseDirectory</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:82 sss_usermod.8.xml:66 -msgid "" -"<option>-s</option>,<option>--shell</option> <replaceable>SHELL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:87 -msgid "" -"The user's login shell. The default is currently <filename>/bin/bash</" -"filename>. The default can be changed with <quote>user_defaults/" -"defaultShell</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:96 -msgid "" -"<option>-G</option>,<option>--groups</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:101 -msgid "A list of existing groups this user is also a member of." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:107 -msgid "<option>-m</option>,<option>--create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:111 -msgid "" -"Create the user's home directory if it does not exist. The files and " -"directories contained in the skeleton directory (which can be defined with " -"the -k option or in the config file) will be copied to the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:121 -msgid "<option>-M</option>,<option>--no-create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:125 -msgid "" -"Do not create the user's home directory. Overrides configuration settings." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:132 -msgid "" -"<option>-k</option>,<option>--skel</option> <replaceable>SKELDIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:137 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<command>sss_useradd</command>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:143 -msgid "" -"This option is only valid if the <option>-m</option> (or <option>--create-" -"home</option>) option is specified, or creation of home directories is set " -"to TRUE in the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:152 sss_usermod.8.xml:124 -msgid "" -"<option>-Z</option>,<option>--selinux-user</option> " -"<replaceable>SELINUX_USER</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:157 -msgid "" -"The SELinux user for the user's login. If not specified, the system default " -"will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:169 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-krb5.5.xml:10 sssd-krb5.5.xml:16 -msgid "sssd-krb5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:23 -msgid "" -"This manual page describes the configuration of the Kerberos 5 " -"authentication backend for <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry>. For a detailed " -"syntax reference, please refer to the <quote>FILE FORMAT</quote> section of " -"the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:36 -msgid "" -"The Kerberos 5 authentication backend contains auth and chpass providers. It " -"must be paired with identity provider in order to function properly (for " -"example, id_provider = ldap). Some information required by the Kerberos 5 " -"authentication backend must be provided by the identity provider, such as " -"the user's Kerberos Principal Name (UPN). The configuration of the identity " -"provider should have an entry to specify the UPN. Please refer to the man " -"page for the applicable identity provider for details on how to configure " -"this." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:47 -msgid "" -"This backend also provides access control based on the .k5login file in the " -"home directory of the user. See <citerefentry> <refentrytitle>.k5login</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry> for more details. " -"Please note that an empty .k5login file will deny all access to this user. " -"To activate this feature use 'access_provider = krb5' in your sssd " -"configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:55 -msgid "" -"In the case where the UPN is not available in the identity backend " -"<command>sssd</command> will construct a UPN using the format " -"<replaceable>username</replaceable>@<replaceable>krb5_realm</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:106 -msgid "" -"The name of the Kerberos realm. This option is required and must be " -"specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:113 -msgid "krb5_kpasswd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:116 -msgid "" -"If the change password service is not running on the KDC alternative servers " -"can be defined here. An optional port number (preceded by a colon) may be " -"appended to the addresses or hostnames." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:122 -msgid "" -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. Please note that even if there are no more " -"kpasswd servers to try the back end is not switch to offline if " -"authentication against the KDC is still possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:129 -msgid "Default: Use the KDC" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:135 -msgid "krb5_ccachedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:138 -msgid "" -"Directory to store credential caches. All the substitution sequences of " -"krb5_ccname_template can be used here, too, except %d and %P. If the " -"directory does not exist it will be created. If %u, %U, %p or %h are used a " -"private directory belonging to the user is created. Otherwise a public " -"directory with restricted deletion flag (aka sticky bit, see <citerefentry> " -"<refentrytitle>chmod</refentrytitle> <manvolnum>1</manvolnum> </" -"citerefentry> for details) is created." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:151 -msgid "Default: /tmp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:157 -msgid "krb5_ccname_template (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:171 -msgid "login UID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:174 -msgid "%p" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:175 -msgid "principal name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:179 -msgid "%r" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:180 -msgid "realm name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:183 -msgid "%h" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:184 -msgid "home directory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:189 -msgid "value of krb5ccache_dir" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:194 -msgid "%P" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:195 -msgid "the process ID of the sssd client" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:160 -msgid "" -"Location of the user's credential cache. Currently only file based " -"credential caches are supported. In the template the following sequences are " -"substituted: <placeholder type=\"variablelist\" id=\"0\"/> If the template " -"ends with 'XXXXXX' mkstemp(3) is used to create a unique filename in a safe " -"way." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:209 -msgid "Default: FILE:%d/krb5cc_%U_XXXXXX" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:215 -msgid "krb5_auth_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:218 -msgid "" -"Timeout in seconds after an online authentication or change password request " -"is aborted. If possible the authentication request is continued offline." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:241 -msgid "krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:244 -msgid "" -"The location of the keytab to use when validating credentials obtained from " -"KDCs." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:248 -msgid "Default: /etc/krb5.keytab" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:254 -msgid "krb5_store_password_if_offline (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:257 -msgid "" -"Store the password of the user if the provider is offline and use it to " -"request a TGT when the provider gets online again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:262 -msgid "" -"Please note that this feature currently only available on a Linux platform. " -"Passwords stored in this way are kept in plaintext in the kernel keyring and " -"are potentially accessible by the root user (with difficulty)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:275 -msgid "krb5_renewable_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:278 -msgid "" -"Request a renewable ticket with a total lifetime given by an integer " -"immediately followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:283 sssd-krb5.5.xml:319 -msgid "<emphasis>s</emphasis> seconds" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:286 sssd-krb5.5.xml:322 -msgid "<emphasis>m</emphasis> minutes" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:289 sssd-krb5.5.xml:325 -msgid "<emphasis>h</emphasis> hours" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:292 sssd-krb5.5.xml:328 -msgid "<emphasis>d</emphasis> days." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:295 sssd-krb5.5.xml:331 -msgid "If there is no delimiter <emphasis>s</emphasis> is assumed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:299 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"renewable lifetime to one and a half hours please use '90m' instead of " -"'1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:305 -msgid "Default: not set, i.e. the TGT is not renewable" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:311 -msgid "krb5_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:314 -msgid "" -"Request ticket with a with a lifetime given by an integer immediately " -"followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:335 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"lifetime to one and a half hours please use '90m' instead of '1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:340 -msgid "" -"Default: not set, i.e. the default ticket lifetime configured on the KDC." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:347 -msgid "krb5_renew_interval (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:350 -msgid "" -"The time in seconds between two checks if the TGT should be renewed. TGTs " -"are renewed if about half of their lifetime is exceeded." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:355 -msgid "If this option is not set or 0 the automatic renewal is disabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:365 -msgid "krb5_use_fast (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:368 -msgid "" -"Enables flexible authentication secure tunneling (FAST) for Kerberos pre-" -"authentication. The following options are supported:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:373 -msgid "" -"<emphasis>never</emphasis> use FAST, this is equivalent to not set this " -"option at all." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:377 -msgid "" -"<emphasis>try</emphasis> to use FAST, if the server does not support fast " -"continue without." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:381 -msgid "" -"<emphasis>demand</emphasis> to use FAST, fail if the server does not require " -"fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:385 -msgid "Default: not set, i.e. FAST is not used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:388 -msgid "Please note that a keytab is required to use fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:391 -msgid "" -"Please note also that sssd supports fast only with MIT Kerberos version 1.8 " -"and above. If sssd used with an older version using this option is a " -"configuration error." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:400 -msgid "krb5_fast_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:403 -msgid "Specifies the server principal to use for FAST." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:412 -msgid "" -"Specifies if the host and user principal should be canonicalized. This " -"feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:65 -msgid "" -"If the auth-module krb5 is used in a SSSD domain, the following options must " -"be used. See the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page, section <quote>DOMAIN " -"SECTIONS</quote> for details on the configuration of a SSSD domain. " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:434 -msgid "" -"The following example assumes that SSSD is correctly configured and FOO is " -"one of the domains in the <replaceable>[sssd]</replaceable> section. This " -"example shows only configuration of Kerberos authentication, it does not " -"include any identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-krb5.5.xml:442 -#, no-wrap -msgid "" -" [domain/FOO]\n" -" auth_provider = krb5\n" -" krb5_server = 192.168.1.1\n" -" krb5_realm = EXAMPLE.COM\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:453 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupadd.8.xml:10 sss_groupadd.8.xml:15 -msgid "sss_groupadd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupadd.8.xml:16 -msgid "create a new group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupadd.8.xml:21 -msgid "" -"<command>sss_groupadd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:32 -msgid "" -"<command>sss_groupadd</command> creates a new group. These groups are " -"compatible with POSIX groups, with the additional feature that they can " -"contain other groups as members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupadd.8.xml:43 -msgid "" -"<option>-g</option>,<option>--gid</option> <replaceable>GID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupadd.8.xml:48 -msgid "" -"Set the GID of the group to the value of <replaceable>GID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_userdel.8.xml:10 sss_userdel.8.xml:15 -msgid "sss_userdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_userdel.8.xml:16 -msgid "delete a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_userdel.8.xml:21 -msgid "" -"<command>sss_userdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:32 -msgid "" -"<command>sss_userdel</command> deletes a user identified by login name " -"<replaceable>LOGIN</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:44 -msgid "<option>-r</option>,<option>--remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:48 -msgid "" -"Files in the user's home directory will be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:56 -msgid "<option>-R</option>,<option>--no-remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:60 -msgid "" -"Files in the user's home directory will NOT be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:68 -msgid "<option>-f</option>,<option>--force</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:72 -msgid "" -"This option forces <command>sss_userdel</command> to remove the user's home " -"directory and mail spool, even if they are not owned by the specified user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:80 -msgid "<option>-k</option>,<option>--kick</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:84 -msgid "Before actually deleting the user, terminate all his processes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:95 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupdel.8.xml:10 sss_groupdel.8.xml:15 -msgid "sss_groupdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupdel.8.xml:16 -msgid "delete a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupdel.8.xml:21 -msgid "" -"<command>sss_groupdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:32 -msgid "" -"<command>sss_groupdel</command> deletes a group identified by its name " -"<replaceable>GROUP</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupshow.8.xml:10 sss_groupshow.8.xml:15 -msgid "sss_groupshow" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupshow.8.xml:16 -msgid "print properties of a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupshow.8.xml:21 -msgid "" -"<command>sss_groupshow</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:32 -msgid "" -"<command>sss_groupshow</command> displays information about a group " -"identified by its name <replaceable>GROUP</replaceable>. The information " -"includes the group ID number, members of the group and the parent group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupshow.8.xml:43 -msgid "<option>-R</option>,<option>--recursive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupshow.8.xml:47 -msgid "" -"Also print indirect group members in a tree-like hierarchy. Note that this " -"also affects printing parent groups - without <option>R</option>, only the " -"direct parent will be printed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_usermod.8.xml:10 sss_usermod.8.xml:15 -msgid "sss_usermod" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_usermod.8.xml:16 -msgid "modify a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_usermod.8.xml:21 -msgid "" -"<command>sss_usermod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:32 -msgid "" -"<command>sss_usermod</command> modifies the account specified by " -"<replaceable>LOGIN</replaceable> to reflect the changes that are specified " -"on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:60 -msgid "The home directory of the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:71 -msgid "The user's login shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:82 -msgid "" -"Append this user to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:96 -msgid "" -"Remove this user from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:103 -msgid "<option>-l</option>,<option>--lock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:107 -msgid "Lock the user account. The user won't be able to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:114 -msgid "<option>-u</option>,<option>--unlock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:118 -msgid "Unlock the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:129 -msgid "The SELinux user for the user's login." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:140 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_cache.8.xml:10 sss_cache.8.xml:15 -msgid "sss_cache" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_cache.8.xml:16 -msgid "perform cache cleanup" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_cache.8.xml:21 -msgid "" -"<command>sss_cache</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_cache.8.xml:31 -msgid "" -"<command>sss_cache</command> invalidates records in SSSD cache. Invalidated " -"records are forced to be reloaded from server as soon as related SSSD " -"backend is online." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:42 -msgid "" -"<option>-u</option>,<option>--user</option> <replaceable>login</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:47 -msgid "Invalidate specific user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:53 -msgid "<option>-U</option>,<option>--users</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:57 -msgid "" -"Invalidate all user records. This option overrides invalidation of specific " -"user if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:64 -msgid "" -"<option>-g</option>,<option>--group</option> <replaceable>group</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:69 -msgid "Invalidate specific group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:75 -msgid "<option>-G</option>,<option>--groups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:79 -msgid "" -"Invalidate all group records. This option overrides invalidation of specific " -"group if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:86 -msgid "" -"<option>-n</option>,<option>--netgroup</option> <replaceable>netgroup</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:91 -msgid "Invalidate specific netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:97 -msgid "<option>-N</option>,<option>--netgroups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:101 -msgid "" -"Invalidate all netgroup records. This option overrides invalidation of " -"specific netgroup if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:108 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>domain</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:113 -msgid "Restrict invalidation process only to a particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_debuglevel.8.xml:10 sss_debuglevel.8.xml:15 -msgid "sss_debuglevel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_debuglevel.8.xml:16 -msgid "change debug level while SSSD is running" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_debuglevel.8.xml:21 -msgid "" -"<command>sss_debuglevel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>NEW_DEBUG_LEVEL</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_debuglevel.8.xml:32 -msgid "" -"<command>sss_debuglevel</command> changes debug level of SSSD monitor and " -"providers to <replaceable>NEW_DEBUG_LEVEL</replaceable> while SSSD is " -"running." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_debuglevel.8.xml:59 -msgid "<replaceable>NEW_DEBUG_LEVEL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_authorizedkeys.1.xml:10 sss_ssh_authorizedkeys.1.xml:15 -msgid "sss_ssh_authorizedkeys" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_ssh_authorizedkeys.1.xml:11 sss_ssh_knownhostsproxy.1.xml:11 -msgid "1" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_authorizedkeys.1.xml:16 -msgid "get OpenSSH authorized keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_authorizedkeys.1.xml:21 -msgid "" -"<command>sss_ssh_authorizedkeys</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>USER</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:32 -msgid "" -"<command>sss_ssh_authorizedkeys</command> acquires SSH public keys for user " -"<replaceable>USER</replaceable> and outputs them in OpenSSH authorized_keys " -"format (see the <quote>AUTHORIZED_KEYS FILE FORMAT</quote> section of " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> for more information)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:41 -msgid "" -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_authorizedkeys</" -"command> for public key user authentication if it is compiled with support " -"for either <quote>AuthorizedKeysCommand</quote> or <quote>PubkeyAgent</" -"quote> <citerefentry> <refentrytitle>sshd_config</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:58 -#, no-wrap -msgid "AuthorizedKeysCommand /usr/bin/sss_ssh_authorizedkeys\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:51 -msgid "" -"If <quote>AuthorizedKeysCommand</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by putting the following directive " -"in <citerefentry> <refentrytitle>sshd_config</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry>: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:69 -#, no-wrap -msgid "PubKeyAgent /usr/bin/sss_ssh_authorizedkeys %u\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:62 -msgid "" -"If <quote>PubkeyAgent</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by using the following directive " -"for <citerefentry> <refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> configuration: <placeholder type=\"programlisting" -"\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_authorizedkeys.1.xml:87 -msgid "" -"Search for user public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:98 -msgid "" -"<citerefentry> <refentrytitle>sshd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sshd_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_knownhostsproxy</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_knownhostsproxy.1.xml:10 sss_ssh_knownhostsproxy.1.xml:15 -msgid "sss_ssh_knownhostsproxy" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_knownhostsproxy.1.xml:16 -msgid "get OpenSSH host keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_knownhostsproxy.1.xml:21 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>HOST</replaceable></arg> <arg " -"choice='opt'><replaceable>PROXY_COMMAND</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:33 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> acquires SSH host public keys for " -"host <replaceable>HOST</replaceable>, stores them in a custom OpenSSH " -"known_hosts file (see the <quote>SSH_KNOWN_HOSTS FILE FORMAT</quote> section " -"of <citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> for more information) <filename>/var/lib/sss/" -"pubconf/known_hosts</filename> and estabilishes connection to the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:43 -msgid "" -"If <replaceable>PROXY_COMMAND</replaceable> is specified, it is used to " -"create the connection to the host instead of opening a socket." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_knownhostsproxy.1.xml:55 -#, no-wrap -msgid "" -"ProxyCommand /usr/bin/sss_ssh_knownhostsproxy -p %p %h\n" -"GlobalKnownHostsFile2 /var/lib/sss/pubconf/known_hosts\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:48 -msgid "" -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_knownhostsproxy</" -"command> for host key authentication by using the following directives for " -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> configuration: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_ssh_knownhostsproxy.1.xml:69 -msgid "" -"<option>-p</option>,<option>--port</option> <replaceable>PORT</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:74 -msgid "" -"Use port <replaceable>PORT</replaceable> to connect to the host. By " -"default, port 22 is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:86 -msgid "" -"Search for host public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:97 -msgid "" -"<citerefentry> <refentrytitle>ssh</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>ssh_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_authorizedkeys</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/service_discovery.xml:2 -msgid "SERVICE DISCOVERY" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/service_discovery.xml:4 -msgid "" -"The service discovery feature allows back ends to automatically find the " -"appropriate servers to connect to using a special DNS query." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:9 -msgid "Configuration" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:11 -msgid "" -"If no servers are specified, the back end automatically uses service " -"discovery to try to find a server. Optionally, the user may choose to use " -"both fixed server addresses and service discovery by inserting a special " -"keyword, <quote>_srv_</quote>, in the list of servers. The order of " -"preference is maintained. This feature is useful if, for example, the user " -"prefers to use service discovery whenever possible, and fall back to a " -"specific server when no servers can be discovered using DNS." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:23 -msgid "The domain name" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:25 -msgid "" -"Please refer to the <quote>dns_discovery_domain</quote> parameter in the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for more details." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:35 -msgid "The protocol" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:37 -msgid "" -"The queries usually specify _tcp as the protocol. Exceptions are documented " -"in respective option description." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:42 -msgid "See Also" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:44 -msgid "" -"For more information on the service discovery mechanism, refer to RFC 2782." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/upstream.xml:1 -msgid "<placeholder type=\"refentryinfo\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/failover.xml:2 -msgid "FAILOVER" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/failover.xml:4 -msgid "" -"The failover feature allows back ends to automatically switch to a different " -"server if the primary server fails." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:8 -msgid "Failover Syntax" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:10 -msgid "" -"The list of servers is given as a comma-separated list; any number of spaces " -"is allowed around the comma. The servers are listed in order of preference. " -"The list can contain any number of servers." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:17 -msgid "The Failover Mechanism" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:19 -msgid "" -"The failover mechanism distinguishes between a machine and a service. The " -"back end first tries to resolve the hostname of a given machine; if this " -"resolution attempt fails, the machine is considered offline. No further " -"attempts are made to connect to this machine for any other service. If the " -"resolution attempt succeeds, the back end tries to connect to a service on " -"this machine. If the service connection attempt fails, then only this " -"particular service is considered offline and the back end automatically " -"switches over to the next service. The machine is still considered online " -"and might still be tried for another service." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:32 -msgid "" -"Further connection attempts are made to machines or services marked as " -"offline after a specified period of time; this is currently hard coded to 30 " -"seconds." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:37 -msgid "" -"If there are no more machines to try, the back end as a whole switches to " -"offline mode, and then attempts to reconnect every 30 seconds." -msgstr "" - -#. type: Content of: <varlistentry><term> -#: include/param_help.xml:3 -msgid "<option>-h</option>,<option>--help</option>" -msgstr "" - -#. type: Content of: <varlistentry><listitem><para> -#: include/param_help.xml:7 -msgid "Display help message and exit." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:3 -msgid "" -"Bit mask that indicates which debug levels will be visible. 0x0010 is the " -"default value as well as the lowest allowed value, 0xFFF0 is the most " -"verbose mode. This setting overrides the settings from config file." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:8 -msgid "Currently supported debug levels:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:11 -msgid "" -"<emphasis>0x0010</emphasis>: Fatal failures. Anything that would prevent " -"SSSD from starting up or causes it to cease running." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:15 -msgid "" -"<emphasis>0x0020</emphasis>: Critical failures. An error that doesn't kill " -"the SSSD, but one that indicates that at least one major feature is not " -"going to work properly." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:20 -msgid "" -"<emphasis>0x0040</emphasis>: Serious failures. An error announcing that a " -"particular request or operation has failed." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:24 -msgid "" -"<emphasis>0x0080</emphasis>: Minor failures. These are the errors that would " -"percolate down to cause the operation failure of 2." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:28 -msgid "<emphasis>0x0100</emphasis>: Configuration settings." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:31 -msgid "<emphasis>0x0200</emphasis>: Function data." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:34 -msgid "<emphasis>0x0400</emphasis>: Trace messages for operation functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:37 -msgid "" -"<emphasis>0x1000</emphasis>: Trace messages for internal control functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:40 -msgid "" -"<emphasis>0x2000</emphasis>: Contents of function-internal variables that " -"may be interesting." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:43 -msgid "<emphasis>0x4000</emphasis>: Extremely low-level tracing information." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:46 -msgid "" -"To log required debug levels, simply add their numbers together as shown in " -"following examples:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:49 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, critical failures, " -"serious failures and function data use 0x0270." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:53 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, configuration settings, " -"function data, trace messages for internal control functions use 0x1310." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:57 -msgid "" -"<emphasis>Note</emphasis>: This is new format of debug levels introduced in " -"1.7.0. Older format (numbers from 0-10) is compatible but deprecated." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/experimental.xml:1 -msgid "" -"<emphasis> This is an experimental feature, please use http://fedorahosted." -"org/sssd to report any issues. </emphasis>" -msgstr "" diff --git a/src/man/po/es.po b/src/man/po/es.po index 13ca1f95b..e88b8ec0b 100644 --- a/src/man/po/es.po +++ b/src/man/po/es.po @@ -3,13 +3,16 @@ # This file is distributed under the same license as the sssd-docs package. # # Translators: +# Adolfo Jayme Barrientos <fitoschido@gmail.com>, 2012. +# Eduardo Villagrán <evillagr@fedoraproject.org>, 2011. +# Eduardo Villagrán M <gotencool@gmail.com>, 2011. # Héctor Daniel Cabrera <logan@fedoraproject.org>, 2011. msgid "" msgstr "" "Project-Id-Version: SSSD\n" "Report-Msgid-Bugs-To: sssd-devel@redhat.com\n" "POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2011-12-21 10:12+0000\n" +"PO-Revision-Date: 2012-03-08 11:52+0000\n" "Last-Translator: sgallagh <sgallagh@redhat.com>\n" "Language-Team: Spanish (Castilian) <trans-es@lists.fedoraproject.org>\n" "Language: es\n" @@ -406,7 +409,7 @@ msgstr "Predeterminado: <quote>%1$s@%2$s</quote>." #. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:162 msgid "try_inotify (boolean)" -msgstr "try_inotify (booleano)" +msgstr "try_inotify (boolean)" #. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:165 @@ -454,7 +457,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:190 msgid "krb5_rcache_dir (string)" -msgstr "" +msgstr "krb5_rcache_dir (cadena)" #. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:193 @@ -503,47 +506,51 @@ msgid "" "section, for example, for NSS service, the section would be <quote>[nss]</" "quote>" msgstr "" +"Los ajustes que pueden ser utilizados para configurar diferentes servicios " +"se describe en esta sección. Ellos deben residir en la sección [<replaceable>" +"$NAME</replaceable>], por ejemplo, para el servicio NSS, la sección sería " +"<quote>[nss]</quote>" #. type: Content of: <reference><refentry><refsect1><refsect2><title> #: sssd.conf.5.xml:225 msgid "General service configuration options" -msgstr "" +msgstr "Opciones de configuración de servicios generales" #. type: Content of: <reference><refentry><refsect1><refsect2><para> #: sssd.conf.5.xml:227 msgid "These options can be used to configure any service." -msgstr "" +msgstr "Estas opciones pueden usarse para configurar cualquier servicio." #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:231 msgid "debug_level (integer)" -msgstr "" +msgstr "debug_level (entero)" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:235 msgid "debug_timestamps (bool)" -msgstr "" +msgstr "debug_timestamps (bool)" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:238 msgid "Add a timestamp to the debug messages" -msgstr "" +msgstr "Agregar una marca de tiempo a los mensajes de depuración" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:241 sssd.conf.5.xml:376 sssd-ldap.5.xml:1328 #: sssd-ldap.5.xml:1446 sssd-ipa.5.xml:206 sssd-ipa.5.xml:241 msgid "Default: true" -msgstr "" +msgstr "Predeterminado: true" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:246 msgid "debug_microseconds (bool)" -msgstr "" +msgstr "debug_microseconds (bool)" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:249 msgid "Add microseconds to the timestamp in debug messages" -msgstr "" +msgstr "Agregar microsegundos a la marca de tiempo en mensajes de depuración" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:252 sssd.conf.5.xml:641 sssd-ldap.5.xml:602 @@ -551,12 +558,12 @@ msgstr "" #: sssd-ipa.5.xml:123 sssd-ipa.5.xml:301 sssd-krb5.5.xml:235 #: sssd-krb5.5.xml:269 sssd-krb5.5.xml:418 msgid "Default: false" -msgstr "" +msgstr "Predeterminado: false" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:270 msgid "command (string)" -msgstr "" +msgstr "command (cadena)" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:273 @@ -570,23 +577,25 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:281 msgid "Default: <command>sssd_${service_name}</command>" -msgstr "" +msgstr "Predeterminado: <command>sssd_${service_name}</command>" #. type: Content of: <reference><refentry><refsect1><refsect2><title> #: sssd.conf.5.xml:289 msgid "NSS configuration options" -msgstr "" +msgstr "Opciones de configuración de NSS" #. type: Content of: <reference><refentry><refsect1><refsect2><para> #: sssd.conf.5.xml:291 msgid "" "These options can be used to configure the Name Service Switch (NSS) service." msgstr "" +"Estas opciones pueden ser usadas para configurar el servicio Name Service " +"Switch (NSS)." #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:296 msgid "enum_cache_timeout (integer)" -msgstr "" +msgstr "enum_cache_timeout (entero)" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:299 @@ -598,12 +607,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:303 msgid "Default: 120" -msgstr "" +msgstr "Predeterminado: 120" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:308 msgid "entry_cache_nowait_percentage (integer)" -msgstr "" +msgstr "entry_cache_nowait_percentage (entero)" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:311 @@ -635,12 +644,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:335 msgid "Default: 50" -msgstr "" +msgstr "Predeterminado: 50" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:340 msgid "entry_negative_timeout (integer)" -msgstr "" +msgstr "entry_negative_timeout (entero)" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:343 @@ -653,12 +662,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:349 sssd.conf.5.xml:669 sssd-krb5.5.xml:223 msgid "Default: 15" -msgstr "" +msgstr "Predeterminado: 15" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:354 msgid "filter_users, filter_groups (string)" -msgstr "" +msgstr "filter_users, filter_groups (cadena)" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:357 @@ -672,12 +681,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:364 msgid "Default: root" -msgstr "" +msgstr "Predeterminado: root" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:369 msgid "filter_users_in_groups (bool)" -msgstr "" +msgstr "filter_users_in_groups (bool)" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:372 @@ -688,7 +697,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:381 msgid "override_homedir (string)" -msgstr "" +msgstr "override_homedir (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:390 sssd-krb5.5.xml:166 @@ -708,22 +717,22 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:395 msgid "UID number" -msgstr "" +msgstr "número UID" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:398 sssd-krb5.5.xml:188 msgid "%d" -msgstr "" +msgstr "%d" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:399 msgid "domain name" -msgstr "" +msgstr "nombre de dominio" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:402 msgid "%f" -msgstr "" +msgstr "%f" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:403 @@ -733,7 +742,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:406 sssd-krb5.5.xml:200 msgid "%%" -msgstr "" +msgstr "%%" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:407 sssd-krb5.5.xml:201 @@ -756,7 +765,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:418 msgid "allowed_shells (string)" -msgstr "" +msgstr "allowed_shells (cadena)" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:421 @@ -803,7 +812,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:450 msgid "vetoed_shells (string)" -msgstr "" +msgstr "vetoed_shells (cadena)" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:453 @@ -813,7 +822,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:458 msgid "shell_fallback (string)" -msgstr "" +msgstr "shell_fallback (cadena)" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:461 @@ -824,12 +833,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:465 msgid "Default: /bin/sh" -msgstr "" +msgstr "Predeterminado: /bin/sh" #. type: Content of: <reference><refentry><refsect1><refsect2><title> #: sssd.conf.5.xml:472 msgid "PAM configuration options" -msgstr "" +msgstr "Opciones de configuración PAM" #. type: Content of: <reference><refentry><refsect1><refsect2><para> #: sssd.conf.5.xml:474 @@ -837,11 +846,13 @@ msgid "" "These options can be used to configure the Pluggable Authentication Module " "(PAM) service." msgstr "" +"Estas opciones pueden ser usadas para configurar el servicio Pluggable " +"Authentication Module (PAM)" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:479 msgid "offline_credentials_expiration (integer)" -msgstr "" +msgstr "offline_credentials_expiration (entero)" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:482 @@ -853,12 +864,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:487 sssd.conf.5.xml:500 msgid "Default: 0 (No limit)" -msgstr "" +msgstr "Predeterminado: 0 (Sin límite)" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:493 msgid "offline_failed_login_attempts (integer)" -msgstr "" +msgstr "offline_failed_login_attempts (entero)" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:496 @@ -870,7 +881,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:506 msgid "offline_failed_login_delay (integer)" -msgstr "" +msgstr "offline_failed_login_delay (entero)" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:509 @@ -890,12 +901,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:520 sssd.conf.5.xml:573 sssd.conf.5.xml:1093 msgid "Default: 5" -msgstr "" +msgstr "Predeterminado: 5" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:526 msgid "pam_verbosity (integer)" -msgstr "" +msgstr "pam_verbosity (entero)" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:529 @@ -907,37 +918,39 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:534 msgid "Currently sssd supports the following values:" -msgstr "" +msgstr "Actualmente sssd soporta los siguientes valores:" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:537 msgid "<emphasis>0</emphasis>: do not show any message" -msgstr "" +msgstr "<emphasis>0</emphasis>: no mostrar ningún mensaje" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:540 msgid "<emphasis>1</emphasis>: show only important messages" -msgstr "" +msgstr "<emphasis>1</emphasis>: mostrar sólo mensajes importantes" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:544 msgid "<emphasis>2</emphasis>: show informational messages" -msgstr "" +msgstr "<emphasis>2</emphasis>: mostrar mensajes informativos" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:547 msgid "<emphasis>3</emphasis>: show all messages and debug information" msgstr "" +"<emphasis>3</emphasis>: mostrar todos los mensajes e información de " +"depuración" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:551 sssd.8.xml:63 msgid "Default: 1" -msgstr "" +msgstr "Predeterminado: 1" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:556 msgid "pam_id_timeout (integer)" -msgstr "" +msgstr "pam_id_timeout (entero)" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:559 @@ -959,12 +972,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:579 msgid "pam_pwd_expiration_warning (integer)" -msgstr "" +msgstr "pam_pwd_expiration_warning (entero)" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:582 msgid "Display a warning N days before the password expires." -msgstr "" +msgstr "Mostrar una advertencia N días antes que la contraseña caduque." #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:585 @@ -977,7 +990,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:591 msgid "Default: 7" -msgstr "" +msgstr "Predeterminado: 7" #. type: Content of: <reference><refentry><refsect1><refsect2><title> #: sssd.conf.5.xml:599 @@ -1020,10 +1033,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:628 -#, fuzzy -#| msgid "Default: 3" msgid "Default: 180" -msgstr "Predeterminado: 3" +msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:633 @@ -1049,10 +1060,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:659 -#, fuzzy -#| msgid "reconnection_retries (integer)" msgid "autofs_negative_timeout (integer)" -msgstr "reconnection_retries (entero)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:662 @@ -1065,12 +1074,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><title> #: sssd.conf.5.xml:679 msgid "DOMAIN SECTIONS" -msgstr "" +msgstr "SECCIONES DE DOMINIO" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:686 msgid "min_id,max_id (integer)" -msgstr "" +msgstr "min_id, max_id (entero)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:689 @@ -1078,6 +1087,8 @@ msgid "" "UID and GID limits for the domain. If a domain contains an entry that is " "outside these limits, it is ignored." msgstr "" +"Límites de UID y GID para el dominio. Si un dominio contiene una entrada que " +"está fuera de estos límites, ésta es ignorada." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:694 @@ -1091,12 +1102,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:701 msgid "Default: 1 for min_id, 0 (no limit) for max_id" -msgstr "" +msgstr "Predeterminado: 1 para min_id, 0 (sin límite) para max_id" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:707 msgid "timeout (integer)" -msgstr "" +msgstr "timeout (entero)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:710 @@ -1108,12 +1119,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:715 sssd-ldap.5.xml:1131 msgid "Default: 10" -msgstr "" +msgstr "Predeterminado: 10" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:721 msgid "enumerate (bool)" -msgstr "" +msgstr "enumerar (bool)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:724 @@ -1135,7 +1146,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:734 sssd.conf.5.xml:839 sssd.conf.5.xml:893 msgid "Default: FALSE" -msgstr "" +msgstr "Predeterminado: FALSE" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:737 @@ -1166,7 +1177,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:763 msgid "entry_cache_timeout (integer)" -msgstr "" +msgstr "entry_cache_timeout (entero)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:766 @@ -1174,11 +1185,13 @@ msgid "" "How many seconds should nss_sss consider entries valid before asking the " "backend again" msgstr "" +"Cuántos segundos debe considerar nss_sss como válidas las entradas antes de " +"volver a consultar al backend" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:770 msgid "Default: 5400" -msgstr "" +msgstr "Predeterminado: 5400" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:776 @@ -1248,11 +1261,13 @@ msgstr "" #: sssd.conf.5.xml:835 msgid "User credentials are stored in a SHA512 hash, not in plaintext" msgstr "" +"Las credenciales de usuario son almacenadas en un hash SHA512, no en texto " +"plano" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:844 msgid "account_cache_expiration (integer)" -msgstr "" +msgstr "account_cache_expiration (entero)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:847 @@ -1266,12 +1281,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:854 msgid "Default: 0 (unlimited)" -msgstr "" +msgstr "Predeterminado: 0 (ilimitado)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:860 msgid "id_provider (string)" -msgstr "" +msgstr "id_provider (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:863 @@ -1281,7 +1296,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:867 msgid "Supported backends:" -msgstr "" +msgstr "Backends soportados:" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:870 @@ -1315,7 +1330,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:898 msgid "auth_provider (string)" -msgstr "" +msgstr "auth_provider (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:901 @@ -1323,6 +1338,8 @@ msgid "" "The authentication provider used for the domain. Supported auth providers " "are:" msgstr "" +"El proveedor de autenticación usado por el dominio. Los proveedores de " +"autenticación soportados son:" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:905 @@ -1361,7 +1378,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:931 msgid "access_provider (string)" -msgstr "" +msgstr "access_provider (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:934 @@ -1374,12 +1391,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:940 msgid "<quote>permit</quote> always allow access." -msgstr "" +msgstr "<quote>permit</quote> siempre permitir el acceso." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:943 msgid "<quote>deny</quote> always deny access." -msgstr "" +msgstr "<quote>deny</quote> siempre niega el acceso." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:946 @@ -1393,12 +1410,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:953 msgid "Default: <quote>permit</quote>" -msgstr "" +msgstr "Predeterminado: <quote>permit</quote>" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:958 msgid "chpass_provider (string)" -msgstr "" +msgstr "chpass_provider (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:961 @@ -1422,6 +1439,10 @@ msgid "" "<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" "manvolnum> </citerefentry> for more information on configuring LDAP." msgstr "" +"<quote>ldap</quote> para cambiar una contraseña almacenada en un servidor " +"LDAP. Vea <citerefentry> <refentrytitle>sssd-ldap</refentrytitle> " +"<manvolnum>5</manvolnum> </citerefentry> para más información sobre " +"configurar LDAP." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:982 @@ -1430,6 +1451,9 @@ msgid "" "<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" "citerefentry> for more information on configuring Kerberos." msgstr "" +"<quote>krb5</quote> para cambiar una contraseña Kerberos. Vea <citerefentry> " +"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" +"citerefentry> para más información sobre configurar Kerberos." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:990 @@ -1441,6 +1465,7 @@ msgstr "" #: sssd.conf.5.xml:994 msgid "<quote>none</quote> disallows password changes explicitly." msgstr "" +"<quote>none</quote> deniega explícitamente los cambios en la contraseña." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:997 @@ -1479,10 +1504,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:1030 -#, fuzzy -#| msgid "re_expression (string)" msgid "session_provider (string)" -msgstr "re_expression (cadena)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1033 @@ -1514,7 +1537,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:1056 msgid "lookup_family_order (string)" -msgstr "" +msgstr "lookup_family_order (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1059 @@ -1526,37 +1549,37 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1063 msgid "Supported values:" -msgstr "" +msgstr "Valores soportados:" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1066 msgid "ipv4_first: Try looking up IPv4 address, if that fails, try IPv6" -msgstr "" +msgstr "ipv4_first: Intenta buscar dirección IPv4, si falla, intenta IPv6" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1069 msgid "ipv4_only: Only attempt to resolve hostnames to IPv4 addresses." -msgstr "" +msgstr "ipv4_only: Sólo intenta resolver nombres de host a direccones IPv4." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1072 msgid "ipv6_first: Try looking up IPv6 address, if that fails, try IPv4" -msgstr "" +msgstr "ipv6_first: Intenta buscar dirección IPv6, si falla, intenta IPv4" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1075 msgid "ipv6_only: Only attempt to resolve hostnames to IPv6 addresses." -msgstr "" +msgstr "ipv6_only: Sólo intenta resolver nombres de host a direccones IPv6." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1078 msgid "Default: ipv4_first" -msgstr "" +msgstr "Predeterminado: ipv4_first" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:1084 msgid "dns_resolver_timeout (integer)" -msgstr "" +msgstr "dns_resolver_timeout (entero)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1087 @@ -1569,7 +1592,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:1099 msgid "dns_discovery_domain (string)" -msgstr "" +msgstr "dns_discovery_domain (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1102 @@ -1582,11 +1605,12 @@ msgstr "" #: sssd.conf.5.xml:1106 msgid "Default: Use the domain part of machine's hostname" msgstr "" +"Predeterminado: Utilizar la parte del dominio del nombre de host del equipo" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:1112 msgid "override_gid (integer)" -msgstr "" +msgstr "override_gid (entero)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1115 @@ -1596,7 +1620,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:1121 msgid "case_sensitive (boolean)" -msgstr "" +msgstr "case_sensitive (boolean)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1124 @@ -1608,7 +1632,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1129 msgid "Default: True" -msgstr "" +msgstr "Predeterminado: True" #. type: Content of: <reference><refentry><refsect1><para> #: sssd.conf.5.xml:681 @@ -1621,7 +1645,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:1141 msgid "proxy_pam_target (string)" -msgstr "" +msgstr "proxy_pam_target (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1144 @@ -1638,7 +1662,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:1155 msgid "proxy_lib_name (string)" -msgstr "" +msgstr "proxy_lib_name (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1158 @@ -1654,11 +1678,13 @@ msgid "" "Options valid for proxy domains. <placeholder type=\"variablelist\" id=" "\"0\"/>" msgstr "" +"Opciones válidas para dominios proxy. <placeholder type=\"variablelist\" id=" +"\"0\"/>" #. type: Content of: <reference><refentry><refsect1><refsect2><title> #: sssd.conf.5.xml:1170 msgid "The local domain section" -msgstr "" +msgstr "La sección de dominio local" #. type: Content of: <reference><refentry><refsect1><refsect2><para> #: sssd.conf.5.xml:1172 @@ -1667,26 +1693,31 @@ msgid "" "SSSD native database, that is, a domain that uses " "<replaceable>id_provider=local</replaceable>." msgstr "" +"Esta sección contiene la configuración para dominio que almacena los " +"usuarios y grupos en la base de datos SSSD nativa, es decir, un dominio que " +"utiliza <replaceable>id_provider=local</replaceable>." #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:1179 msgid "default_shell (string)" -msgstr "" +msgstr "default_shell (cadena)" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1182 msgid "The default shell for users created with SSSD userspace tools." msgstr "" +"El shell predeterminado para los usuarios creados con herramientas de " +"espacio de usuario SSSD." #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1186 msgid "Default: <filename>/bin/bash</filename>" -msgstr "" +msgstr "Predeterminado: <filename>/bin/bash</filename>" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:1191 msgid "base_directory (string)" -msgstr "" +msgstr "base_directory (cadena)" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1194 @@ -1694,16 +1725,19 @@ msgid "" "The tools append the login name to <replaceable>base_directory</replaceable> " "and use that as the home directory." msgstr "" +"Las herramientas anexan el nombre de inicio de sesión para " +"<replaceable>base_directory</replaceable> y utilizan éste como el directorio " +"de inicio." #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1199 msgid "Default: <filename>/home</filename>" -msgstr "" +msgstr "Predeterminado: <filename>/home</filename>" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:1204 msgid "create_homedir (bool)" -msgstr "" +msgstr "create_homedir (bool)" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1207 @@ -1715,12 +1749,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1211 sssd.conf.5.xml:1223 msgid "Default: TRUE" -msgstr "" +msgstr "Predeterminado: TRUE" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:1216 msgid "remove_homedir (bool)" -msgstr "" +msgstr "remove_homedir (bool)" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1219 @@ -1732,7 +1766,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:1228 msgid "homedir_umask (integer)" -msgstr "" +msgstr "homedir_umask (entero)" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1231 @@ -1741,16 +1775,19 @@ msgid "" "<manvolnum>8</manvolnum> </citerefentry> to specify the default permissions " "on a newly created home directory." msgstr "" +"Utilizado por <citerefentry><refentrytitle>sss_useradd</refentrytitle> " +"<manvolnum>8</manvolnum></citerefentry> para especificar los permisos " +"predeterminados en un directorio de inicio recién creado." #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1239 msgid "Default: 077" -msgstr "" +msgstr "Predeterminado: 077" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:1244 msgid "skel_dir (string)" -msgstr "" +msgstr "skel_dir (cadena)" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1247 @@ -1760,16 +1797,20 @@ msgid "" "<citerefentry> <refentrytitle>sss_useradd</refentrytitle> <manvolnum>8</" "manvolnum> </citerefentry>" msgstr "" +"El directorio esqueleto, el cual contiene archivos y directorios a copiarse " +"en el directorio principal del usuario, cuando se crea el directorio " +"principal de <citerefentry><refentrytitle>sss_useradd</refentrytitle> " +"<manvolnum>8</manvolnum></citerefentry>" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1257 msgid "Default: <filename>/etc/skel</filename>" -msgstr "" +msgstr "Predeterminado: <filename>/etc/skel</filename>" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:1262 msgid "mail_dir (string)" -msgstr "" +msgstr "mail_dir (cadena)" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1265 @@ -1782,12 +1823,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1272 msgid "Default: <filename>/var/mail</filename>" -msgstr "" +msgstr "Predeterminado: <filename>/var/mail</filename>" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:1277 msgid "userdel_cmd (string)" -msgstr "" +msgstr "userdel_cmd (cadena)" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1280 @@ -1800,13 +1841,13 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1286 msgid "Default: None, no command is run" -msgstr "" +msgstr "Predeterminado: None, no se ejecuta comando" #. type: Content of: <reference><refentry><refsect1><title> #: sssd.conf.5.xml:1296 sssd-ldap.5.xml:2064 sssd-simple.5.xml:126 #: sssd-ipa.5.xml:544 sssd-krb5.5.xml:432 msgid "EXAMPLE" -msgstr "" +msgstr "EJEMPLO" #. type: Content of: <reference><refentry><refsect1><para><programlisting> #: sssd.conf.5.xml:1302 @@ -1837,6 +1878,30 @@ msgid "" "max_id = 20000\n" "enumerate = False\n" msgstr "" +"[sssd]\n" +"domains = LDAP\n" +"services = nss, pam\n" +"config_file_version = 2\n" +"\n" +"[nss]\n" +"filter_groups = root\n" +"filter_users = root\n" +"\n" +"[pam]\n" +"\n" +"[domain/LDAP]\n" +"id_provider = ldap\n" +"ldap_uri = ldap://ldap.example.com\n" +"ldap_search_base = dc=example,dc=com\n" +"\n" +"auth_provider = krb5\n" +"krb5_server = kerberos.example.com\n" +"krb5_realm = EXAMPLE.COM\n" +"cache_credentials = true\n" +"\n" +"min_id = 10000\n" +"max_id = 20000\n" +"enumerate = False\n" #. type: Content of: <reference><refentry><refsect1><para> #: sssd.conf.5.xml:1298 @@ -1865,11 +1930,25 @@ msgid "" "<refentrytitle>pam_sss</refentrytitle><manvolnum>8</manvolnum> </" "citerefentry>." msgstr "" +"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle><manvolnum>5</" +"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" +"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " +"<refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</manvolnum> </" +"citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" +"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " +"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" +"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" +"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " +"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" +"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" +"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " +"<refentrytitle>pam_sss</refentrytitle><manvolnum>8</manvolnum> </" +"citerefentry>." #. type: Content of: <reference><refentry><refnamediv><refname> #: sssd-ldap.5.xml:10 sssd-ldap.5.xml:16 msgid "sssd-ldap" -msgstr "" +msgstr "sssd-ldap" #. type: Content of: <reference><refentry><refsect1><para> #: sssd-ldap.5.xml:23 @@ -1884,7 +1963,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para> #: sssd-ldap.5.xml:35 msgid "You can configure SSSD to use more than one LDAP domain." -msgstr "" +msgstr "Puede configurar SSSD para usar más de un dominio LDAP." #. type: Content of: <reference><refentry><refsect1><para> #: sssd-ldap.5.xml:38 @@ -1902,12 +1981,12 @@ msgstr "" #: sssd-ldap.5.xml:49 sssd-simple.5.xml:69 sssd-ipa.5.xml:64 #: sssd-krb5.5.xml:63 msgid "CONFIGURATION OPTIONS" -msgstr "" +msgstr "OPCIONES DE CONFIGURACIÓN" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:60 msgid "ldap_uri (string)" -msgstr "" +msgstr "ldap_uri (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:63 @@ -1923,27 +2002,29 @@ msgstr "" #: sssd-ldap.5.xml:70 msgid "The format of the URI must match the format defined in RFC 2732:" msgstr "" +"El formato de la URI debe coincidir con el formato definido en RFC 2732:" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:73 msgid "ldap[s]://<host>[:port]" -msgstr "" +msgstr "ldap[s]://<host>[:port]" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:76 msgid "" "For explicit IPv6 addresses, <host> must be enclosed in brackets []" msgstr "" +"Para direcciones IPv6 explícitas, <host> debe estar entre corchetes []" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:79 msgid "example: ldap://[fc00::126:25]:389" -msgstr "" +msgstr "ejemplo: ldap://[fc00::126:25]:389" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:85 msgid "ldap_chpass_uri (string)" -msgstr "" +msgstr "ldap_chpass_uri (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:88 @@ -1958,6 +2039,8 @@ msgstr "" #: sssd-ldap.5.xml:95 msgid "To enable service discovery ldap_chpass_dns_service_name must be set." msgstr "" +"Para habilitar el servicio descubrimiento ldap_chpass_dns_service_name debe " +"ser establecido." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:99 @@ -1967,12 +2050,14 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:105 msgid "ldap_search_base (string)" -msgstr "" +msgstr "ldap_search_base (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:108 msgid "The default base DN to use for performing LDAP user operations." msgstr "" +"El DN base por defecto que se usará para realizar operaciones LDAP de " +"usuario." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:112 @@ -1984,7 +2069,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:116 msgid "search_base[?scope?[filter][?search_base?scope?[filter]]*]" -msgstr "" +msgstr "search_base[?scope?[filter][?search_base?scope?[filter]]*]" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:119 @@ -2001,7 +2086,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:126 msgid "Examples:" -msgstr "" +msgstr "Ejemplos:" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:129 @@ -2040,7 +2125,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:158 msgid "ldap_schema (string)" -msgstr "" +msgstr "ldap_schema (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:161 @@ -2059,12 +2144,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:180 msgid "Default: rfc2307" -msgstr "" +msgstr "Predeterminado: rfc2307" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:186 msgid "ldap_default_bind_dn (string)" -msgstr "" +msgstr "ldap_default_bind_dn (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:189 @@ -2074,7 +2159,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:196 msgid "ldap_default_authtok_type (string)" -msgstr "" +msgstr "ldap_default_authtok_type (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:199 @@ -2084,17 +2169,17 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:203 msgid "The two mechanisms currently supported are:" -msgstr "" +msgstr "Los dos mecanismos actualmente soportados son:" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:206 msgid "password" -msgstr "" +msgstr "contraseña" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:209 msgid "obfuscated_password" -msgstr "" +msgstr "obfuscated_password" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:212 @@ -2104,7 +2189,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:218 msgid "ldap_default_authtok (string)" -msgstr "" +msgstr "ldap_default_authtok (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:221 @@ -2116,127 +2201,132 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:228 msgid "ldap_user_object_class (string)" -msgstr "" +msgstr "ldap_user_object_class (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:231 msgid "The object class of a user entry in LDAP." -msgstr "" +msgstr "La clase de objeto de una entrada de usuario en LDAP." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:234 msgid "Default: posixAccount" -msgstr "" +msgstr "Predeterminado: posixAccount" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:240 msgid "ldap_user_name (string)" -msgstr "" +msgstr "ldap_user_name (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:243 msgid "The LDAP attribute that corresponds to the user's login name." msgstr "" +"El atributo LDAP que corresponde al nombre de inicio de sesión del usuario." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:247 msgid "Default: uid" -msgstr "" +msgstr "Predeterminado: uid" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:253 msgid "ldap_user_uid_number (string)" -msgstr "" +msgstr "ldap_user_uid_number (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:256 msgid "The LDAP attribute that corresponds to the user's id." -msgstr "" +msgstr "El atributo LDAP que corresponde al id de usuario." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:260 msgid "Default: uidNumber" -msgstr "" +msgstr "Predeterminado: uidNumber" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:266 msgid "ldap_user_gid_number (string)" -msgstr "" +msgstr "ldap_user_gid_number (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:269 msgid "The LDAP attribute that corresponds to the user's primary group id." -msgstr "" +msgstr "El atributo LDAP que corresponde al id del grupo primario del usuario." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:273 sssd-ldap.5.xml:740 msgid "Default: gidNumber" -msgstr "" +msgstr "Predeterminado: gidNumber" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:279 msgid "ldap_user_gecos (string)" -msgstr "" +msgstr "ldap_user_gecos (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:282 msgid "The LDAP attribute that corresponds to the user's gecos field." -msgstr "" +msgstr "El atributo LDAP que corresponde al campo de gecos del usuario." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:286 msgid "Default: gecos" -msgstr "" +msgstr "Predeterminado: gecos" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:292 msgid "ldap_user_home_directory (string)" -msgstr "" +msgstr "ldap_user_home_directory (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:295 msgid "The LDAP attribute that contains the name of the user's home directory." msgstr "" +"El atributo LDAP que contiene el nombre del directorio principal del usuario." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:299 msgid "Default: homeDirectory" -msgstr "" +msgstr "Predeterminado: homeDirectory" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:305 msgid "ldap_user_shell (string)" -msgstr "" +msgstr "ldap_user_shell (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:308 msgid "The LDAP attribute that contains the path to the user's default shell." msgstr "" +"El atributo LDAP que contiene la ruta de acceso a la shell predeterminada " +"del usuario." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:312 msgid "Default: loginShell" -msgstr "" +msgstr "Predeterminado: loginShell" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:318 msgid "ldap_user_uuid (string)" -msgstr "" +msgstr "ldap_user_uuid (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:321 msgid "The LDAP attribute that contains the UUID/GUID of an LDAP user object." msgstr "" +"El atributo LDAP que contiene el GUID/UUID de un objeto de usuario LDAP." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:325 sssd-ldap.5.xml:766 sssd-ldap.5.xml:878 msgid "Default: nsUniqueId" -msgstr "" +msgstr "Predeterminado: nsUniqueId" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:331 msgid "ldap_user_modify_timestamp (string)" -msgstr "" +msgstr "ldap_user_modify_timestamp (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:334 sssd-ldap.5.xml:775 sssd-ldap.5.xml:887 @@ -2244,16 +2334,18 @@ msgid "" "The LDAP attribute that contains timestamp of the last modification of the " "parent object." msgstr "" +"El atributo LDAP que contiene la fecha y hora de la última modificación del " +"objeto primario." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:338 sssd-ldap.5.xml:779 sssd-ldap.5.xml:894 msgid "Default: modifyTimestamp" -msgstr "" +msgstr "Predeterminado: modifyTimestamp" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:344 msgid "ldap_user_shadow_last_change (string)" -msgstr "" +msgstr "ldap_user_shadow_last_change (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:347 @@ -2267,12 +2359,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:357 msgid "Default: shadowLastChange" -msgstr "" +msgstr "Predeterminado: shadowLastChange" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:363 msgid "ldap_user_shadow_min (string)" -msgstr "" +msgstr "ldap_user_shadow_min (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:366 @@ -2286,12 +2378,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:375 msgid "Default: shadowMin" -msgstr "" +msgstr "Predeterminado: shadowMin" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:381 msgid "ldap_user_shadow_max (string)" -msgstr "" +msgstr "ldap_user_shadow_max (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:384 @@ -2305,12 +2397,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:393 msgid "Default: shadowMax" -msgstr "" +msgstr "Predeterminado: shadowMax" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:399 msgid "ldap_user_shadow_warning (string)" -msgstr "" +msgstr "ldap_user_shadow_warning (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:402 @@ -2324,12 +2416,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:412 msgid "Default: shadowWarning" -msgstr "" +msgstr "Predeterminado: shadowWarning" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:418 msgid "ldap_user_shadow_inactive (string)" -msgstr "" +msgstr "ldap_user_shadow_inactive (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:421 @@ -2343,12 +2435,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:431 msgid "Default: shadowInactive" -msgstr "" +msgstr "Predeterminado: shadowInactive" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:437 msgid "ldap_user_shadow_expire (string)" -msgstr "" +msgstr "ldap_user_shadow_expire (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:440 @@ -2362,12 +2454,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:450 msgid "Default: shadowExpire" -msgstr "" +msgstr "Predeterminado: shadowExpire" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:456 msgid "ldap_user_krb_last_pwd_change (string)" -msgstr "" +msgstr "ldap_user_krb_last_pwd_change (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:459 @@ -2380,12 +2472,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:465 msgid "Default: krbLastPwdChange" -msgstr "" +msgstr "Predeterminado: krbLastPwdChange" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:471 msgid "ldap_user_krb_password_expiration (string)" -msgstr "" +msgstr "ldap_user_krb_password_expiration (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:474 @@ -2397,12 +2489,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:480 msgid "Default: krbPasswordExpiration" -msgstr "" +msgstr "Predeterminado: krbPasswordExpiration" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:486 msgid "ldap_user_ad_account_expires (string)" -msgstr "" +msgstr "ldap_user_ad_account_expires (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:489 @@ -2414,12 +2506,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:494 msgid "Default: accountExpires" -msgstr "" +msgstr "Predeterminado: accountExpires" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:500 msgid "ldap_user_ad_user_account_control (string)" -msgstr "" +msgstr "ldap_user_ad_user_account_control (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:503 @@ -2431,12 +2523,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:508 msgid "Default: userAccountControl" -msgstr "" +msgstr "Predeterminado: userAccountControl" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:514 msgid "ldap_ns_account_lock (string)" -msgstr "" +msgstr "ldap_ns_account_lock (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:517 @@ -2448,12 +2540,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:522 msgid "Default: nsAccountLock" -msgstr "" +msgstr "Predeterminado: nsAccountLock" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:528 msgid "ldap_user_nds_login_disabled (string)" -msgstr "" +msgstr "ldap_user_nds_login_disabled (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:531 @@ -2465,12 +2557,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:535 sssd-ldap.5.xml:549 msgid "Default: loginDisabled" -msgstr "" +msgstr "Predeterminado: loginDisabled" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:541 msgid "ldap_user_nds_login_expiration_time (string)" -msgstr "" +msgstr "ldap_user_nds_login_expiration_time (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:544 @@ -2482,7 +2574,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:555 msgid "ldap_user_nds_login_allowed_time_map (string)" -msgstr "" +msgstr "ldap_user_nds_login_allowed_time_map (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:558 @@ -2494,12 +2586,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:563 msgid "Default: loginAllowedTimeMap" -msgstr "" +msgstr "Predeterminado: loginAllowedTimeMap" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:569 msgid "ldap_user_principal (string)" -msgstr "" +msgstr "ldap_user_principal (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:572 @@ -2511,7 +2603,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:576 msgid "Default: krbPrincipalName" -msgstr "" +msgstr "Predeterminado: krbPrincipalName" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:582 @@ -2526,7 +2618,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:592 msgid "ldap_force_upper_case_realm (boolean)" -msgstr "" +msgstr "ldap_force_upper_case_realm (boolean)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:595 @@ -2540,7 +2632,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:608 msgid "ldap_enumeration_refresh_timeout (integer)" -msgstr "" +msgstr "ldap_enumeration_refresh_timeout (entero)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:611 @@ -2552,14 +2644,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:616 sssd-ldap.5.xml:1808 msgid "Default: 300" -msgstr "" +msgstr "Predeterminado: 300" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:622 -#, fuzzy -#| msgid "reconnection_retries (integer)" msgid "ldap_purge_cache_timeout (integer)" -msgstr "reconnection_retries (entero)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:625 @@ -2573,33 +2663,35 @@ msgstr "" #: sssd-ldap.5.xml:631 msgid "Setting this option to zero will disable the cache cleanup operation." msgstr "" +"Establecer esta opción en cero desactivará la operación de limpieza de la " +"caché." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:635 msgid "Default: 10800 (12 hours)" -msgstr "" +msgstr "Predeterminado: 10800 (12 horas)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:641 msgid "ldap_user_fullname (string)" -msgstr "" +msgstr "ldap_user_fullname (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:644 msgid "The LDAP attribute that corresponds to the user's full name." -msgstr "" +msgstr "El atributo LDAP que corresponde al nombre completo del usuario." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:648 sssd-ldap.5.xml:727 sssd-ldap.5.xml:828 #: sssd-ldap.5.xml:919 sssd-ldap.5.xml:1663 sssd-ldap.5.xml:1881 #: sssd-ipa.5.xml:422 msgid "Default: cn" -msgstr "" +msgstr "Predeterminado: cn" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:654 msgid "ldap_user_member_of (string)" -msgstr "" +msgstr "ldap_user_member_of (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:657 @@ -2609,12 +2701,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:661 sssd-ipa.5.xml:326 msgid "Default: memberOf" -msgstr "" +msgstr "Predeterminado: memberOf" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:667 msgid "ldap_user_authorized_service (string)" -msgstr "" +msgstr "ldap_user_authorized_service (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:670 @@ -2634,12 +2726,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:682 msgid "Default: authorizedService" -msgstr "" +msgstr "Predeterminado: iluminada" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:688 msgid "ldap_user_authorized_host (string)" -msgstr "" +msgstr "ldap_user_authorized_host (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:691 @@ -2659,77 +2751,77 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:702 msgid "Default: host" -msgstr "" +msgstr "Default: host" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:708 msgid "ldap_group_object_class (string)" -msgstr "" +msgstr "ldap_group_object_class (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:711 msgid "The object class of a group entry in LDAP." -msgstr "" +msgstr "La clase de objeto de una entrada de grupo LDAP." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:714 msgid "Default: posixGroup" -msgstr "" +msgstr "Por defecto: posixGroup" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:720 msgid "ldap_group_name (string)" -msgstr "" +msgstr "ldap_group_name (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:723 msgid "The LDAP attribute that corresponds to the group name." -msgstr "" +msgstr "El atributo LDAP que corresponde al nombre de grupo." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:733 msgid "ldap_group_gid_number (string)" -msgstr "" +msgstr "ldap_group_gid_number (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:736 msgid "The LDAP attribute that corresponds to the group's id." -msgstr "" +msgstr "El atributo LDAP que corresponde al id del grupo." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:746 msgid "ldap_group_member (string)" -msgstr "" +msgstr "ldap_group_member (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:749 msgid "The LDAP attribute that contains the names of the group's members." -msgstr "" +msgstr "El atributo LDAP que contiene los nombres de los miembros del grupo." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:753 msgid "Default: memberuid (rfc2307) / member (rfc2307bis)" -msgstr "" +msgstr "Valor predeterminado: memberuid (rfc2307) / member (rfc2307bis)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:759 msgid "ldap_group_uuid (string)" -msgstr "" +msgstr "ldap_group_uuid (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:762 msgid "The LDAP attribute that contains the UUID/GUID of an LDAP group object." -msgstr "" +msgstr "El atributo LDAP que contiene el UUID/GUID de un objeto de grupo LDAP." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:772 msgid "ldap_group_modify_timestamp (string)" -msgstr "" +msgstr "ldap_group_modify_timestamp (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:785 msgid "ldap_group_nesting_level (integer)" -msgstr "" +msgstr "ldap_group_nesting_level (entero)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:788 @@ -2742,17 +2834,17 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:795 msgid "Default: 2" -msgstr "" +msgstr "Predeterminado: 2" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:801 msgid "ldap_netgroup_object_class (string)" -msgstr "" +msgstr "ldap_netgroup_object_class (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:804 msgid "The object class of a netgroup entry in LDAP." -msgstr "" +msgstr "La clase de objeto de una entrada netgroup en LDAP." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:807 @@ -2762,17 +2854,17 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:811 msgid "Default: nisNetgroup" -msgstr "" +msgstr "Predeterminado: nisNetgroup" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:817 msgid "ldap_netgroup_name (string)" -msgstr "" +msgstr "ldap_netgroup_name (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:820 msgid "The LDAP attribute that corresponds to the netgroup name." -msgstr "" +msgstr "El atributo LDAP que corresponde al nombre del netgroup." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:824 @@ -2782,7 +2874,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:834 msgid "ldap_netgroup_member (string)" -msgstr "" +msgstr "ldap_netgroup_member (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:837 @@ -2797,12 +2889,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:845 msgid "Default: memberNisNetgroup" -msgstr "" +msgstr "Predeterminado: memberNisNetgroup" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:851 msgid "ldap_netgroup_triple (string)" -msgstr "" +msgstr "ldap_netgroup_triple (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:854 @@ -2818,12 +2910,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:861 msgid "Default: nisNetgroupTriple" -msgstr "" +msgstr "Predeterminado: nisNetgroupTriple" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:867 msgid "ldap_netgroup_uuid (string)" -msgstr "" +msgstr "ldap_netgroup_uuid (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:870 @@ -2839,7 +2931,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:884 msgid "ldap_netgroup_modify_timestamp (string)" -msgstr "" +msgstr "ldap_netgroup_modify_timestamp (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:900 @@ -2853,10 +2945,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:906 -#, fuzzy -#| msgid "Default: 3" msgid "Default: ipService" -msgstr "Predeterminado: 3" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:912 @@ -2872,10 +2962,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:925 -#, fuzzy -#| msgid "full_name_format (string)" msgid "ldap_service_port (string)" -msgstr "full_name_format (cadena)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:928 @@ -2889,10 +2977,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:938 -#, fuzzy -#| msgid "re_expression (string)" msgid "ldap_service_proto (string)" -msgstr "re_expression (cadena)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:941 @@ -2929,12 +3015,12 @@ msgstr "" #: sssd-ldap.5.xml:1961 sssd-ldap.5.xml:2024 sssd-ldap.5.xml:2046 #: sssd-ipa.5.xml:173 sssd-ipa.5.xml:192 msgid "Default: the value of <emphasis>ldap_search_base</emphasis>" -msgstr "" +msgstr "Predeterminado: el valor de <emphasis>ldap_search_base</emphasis>" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:970 msgid "ldap_search_timeout (integer)" -msgstr "" +msgstr "ldap_search_timeout (entero)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:973 @@ -2955,12 +3041,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:985 sssd-ldap.5.xml:1027 sssd-ldap.5.xml:1042 msgid "Default: 6" -msgstr "" +msgstr "Predeterminado: 6" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:991 msgid "ldap_enumeration_search_timeout (integer)" -msgstr "" +msgstr "ldap_enumeration_search_timeout (entero)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:994 @@ -2973,12 +3059,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1001 msgid "Default: 60" -msgstr "" +msgstr "Predeterminado: 60" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1007 msgid "ldap_network_timeout (integer)" -msgstr "" +msgstr "ldap_network_timeout (entero)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1010 @@ -2994,7 +3080,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1033 msgid "ldap_opt_timeout (integer)" -msgstr "" +msgstr "ldap_opt_timeout (entero)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1036 @@ -3007,7 +3093,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1048 msgid "ldap_connection_expire_timeout (integer)" -msgstr "" +msgstr "ldap_connection_expire_timeout (entero)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1051 @@ -3021,12 +3107,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1059 msgid "Default: 900 (15 minutes)" -msgstr "" +msgstr "Predeterminado: 900 (15 minutos)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1065 msgid "ldap_page_size (integer)" -msgstr "" +msgstr "ldap_page_size (entero)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1068 @@ -3038,7 +3124,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1073 msgid "Default: 1000" -msgstr "" +msgstr "Predeterminado: 1000" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1079 @@ -3071,7 +3157,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1103 msgid "ldap_deref_threshold (integer)" -msgstr "" +msgstr "ldap_deref_threshold (entero)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1106 @@ -3107,7 +3193,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1137 msgid "ldap_tls_reqcert (string)" -msgstr "" +msgstr "ldap_tls_reqcert (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1140 @@ -3150,17 +3236,17 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1169 msgid "<emphasis>hard</emphasis> = Same as <quote>demand</quote>" -msgstr "" +msgstr "<emphasis>hard</emphasis> = Igual que <quote>demand</quote>" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1173 msgid "Default: hard" -msgstr "" +msgstr "Predeterminado: hard" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1179 msgid "ldap_tls_cacert (string)" -msgstr "" +msgstr "ldap_tls_cacert (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1182 @@ -3179,7 +3265,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1194 msgid "ldap_tls_cacertdir (string)" -msgstr "" +msgstr "ldap_tls_cacertdir (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1197 @@ -3193,7 +3279,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1212 msgid "ldap_tls_cert (string)" -msgstr "" +msgstr "ldap_tls_cert (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1215 @@ -3204,22 +3290,22 @@ msgstr "" #: sssd-ldap.5.xml:1219 sssd-ldap.5.xml:1231 sssd-ldap.5.xml:1979 #: sssd-ldap.5.xml:2006 sssd-krb5.5.xml:359 msgid "Default: not set" -msgstr "" +msgstr "Predeterminado: no definido" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1225 msgid "ldap_tls_key (string)" -msgstr "" +msgstr "ldap_tls_key (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1228 msgid "Specifies the file that contains the client's key." -msgstr "" +msgstr "Especifica el archivo que contiene la clave del cliente." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1237 msgid "ldap_tls_cipher_suite (string)" -msgstr "" +msgstr "ldap_tls_cipher_suite (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1240 @@ -3244,7 +3330,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1266 msgid "ldap_sasl_mech (string)" -msgstr "" +msgstr "ldap_sasl_mech (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1269 @@ -3252,16 +3338,18 @@ msgid "" "Specify the SASL mechanism to use. Currently only GSSAPI is tested and " "supported." msgstr "" +"Especifica el mecanismo SASL a emplear. Actualmente sólo GSSAPI está " +"probado y soportado." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1273 sssd-ldap.5.xml:1428 msgid "Default: none" -msgstr "" +msgstr "Predeterminado: none" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1279 msgid "ldap_sasl_authid (string)" -msgstr "" +msgstr "ldap_sasl_authid (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1282 @@ -3273,12 +3361,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1287 msgid "Default: host/machine.fqdn@REALM" -msgstr "" +msgstr "Predeterminado: host/machine.fqdn@REALM" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1293 msgid "ldap_sasl_canonicalize (boolean)" -msgstr "" +msgstr "ldap_sasl_canonicalize (boolean)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1296 @@ -3290,12 +3378,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1301 msgid "Default: false;" -msgstr "" +msgstr "Predeterminado: false;" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1307 msgid "ldap_krb5_keytab (string)" -msgstr "" +msgstr "ldap_krb5_keytab (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1310 @@ -3323,7 +3411,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1334 msgid "ldap_krb5_ticket_lifetime (integer)" -msgstr "" +msgstr "ldap_krb5_ticket_lifetime (entero)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1337 @@ -3333,12 +3421,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1341 msgid "Default: 86400 (24 hours)" -msgstr "" +msgstr "Predeterminado: 86400 (24 horas)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1347 sssd-krb5.5.xml:74 msgid "krb5_server (string)" -msgstr "" +msgstr "krb5_server (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1350 sssd-krb5.5.xml:77 @@ -3371,7 +3459,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1376 sssd-ipa.5.xml:216 sssd-krb5.5.xml:103 msgid "krb5_realm (string)" -msgstr "" +msgstr "krb5_realm (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1379 @@ -3382,11 +3470,13 @@ msgstr "" #: sssd-ldap.5.xml:1382 msgid "Default: System defaults, see <filename>/etc/krb5.conf</filename>" msgstr "" +"Predeterminado: Predeterminados del sistema, vea <filename>/etc/krb5.conf</" +"filename>" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1388 sssd-ipa.5.xml:231 sssd-krb5.5.xml:409 msgid "krb5_canonicalize (boolean)" -msgstr "" +msgstr "krb5_canonicalize (boolean)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1391 @@ -3398,7 +3488,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1403 msgid "ldap_pwd_policy (string)" -msgstr "" +msgstr "ldap_pwd_policy (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1406 @@ -3406,6 +3496,8 @@ msgid "" "Select the policy to evaluate the password expiration on the client side. " "The following values are allowed:" msgstr "" +"Seleccione la política para evaluar la caducidad de la contraseña en el lado " +"del cliente. Los siguientes valores son permitidos:" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1411 @@ -3416,19 +3508,11 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1416 -#, fuzzy -#| msgid "" -#| "A <citerefentry> <refentrytitle>printf</refentrytitle> <manvolnum>3</" -#| "manvolnum> </citerefentry>-compatible format that describes how to " -#| "translate a (name, domain) tuple into a fully qualified name." msgid "" "<emphasis>shadow</emphasis> - Use <citerefentry><refentrytitle>shadow</" "refentrytitle> <manvolnum>5</manvolnum></citerefentry> style attributes to " "evaluate if the password has expired." msgstr "" -"Un formato compatible con <citerefentry> <refentrytitle>printf</" -"refentrytitle> <manvolnum>3</manvolnum> </citerefentry> que describe cómo " -"traducir una tupla (nombre, dominio), a un nombre totalmente calificado." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1422 @@ -3441,7 +3525,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1434 msgid "ldap_referrals (boolean)" -msgstr "" +msgstr "ldap_referrals (boolean)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1437 @@ -3458,22 +3542,24 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1452 msgid "ldap_dns_service_name (string)" -msgstr "" +msgstr "ldap_dns_service_name (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1455 msgid "Specifies the service name to use when service discovery is enabled." msgstr "" +"Especifica el nombre del servicio para utilizar cuando está habilitado el " +"servicio de descubrimiento." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1459 msgid "Default: ldap" -msgstr "" +msgstr "Predeterminado: ldap" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1465 msgid "ldap_chpass_dns_service_name (string)" -msgstr "" +msgstr "ldap_chpass_dns_service_name (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1468 @@ -3481,6 +3567,9 @@ msgid "" "Specifies the service name to use to find an LDAP server which allows " "password changes when service discovery is enabled." msgstr "" +"Especifica el nombre del servicio para utilizar al buscar un servidor LDAP " +"que permita cambios de contraseña cuando está habilitado el servicio de " +"descubrimiento." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1473 @@ -3490,7 +3579,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1479 msgid "ldap_access_filter (string)" -msgstr "" +msgstr "ldap_access_filter (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1482 @@ -3505,7 +3594,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1492 sssd-ldap.5.xml:1982 msgid "Example:" -msgstr "" +msgstr "Ejemplo:" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> #: sssd-ldap.5.xml:1495 @@ -3515,6 +3604,9 @@ msgid "" "ldap_access_filter = memberOf=cn=allowedusers,ou=Groups,dc=example,dc=com\n" " " msgstr "" +"access_provider = ldap\n" +"ldap_access_filter = memberOf=cn=allowedusers,ou=Groups,dc=example,dc=com\n" +" " #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1499 @@ -3535,12 +3627,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1512 sssd-ldap.5.xml:1562 msgid "Default: Empty" -msgstr "" +msgstr "Predeterminado: vacío" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1518 msgid "ldap_account_expire_policy (string)" -msgstr "" +msgstr "ldap_account_expire_policy (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1521 @@ -3560,7 +3652,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1532 msgid "The following values are allowed:" -msgstr "" +msgstr "Los siguientes valores están permitidos:" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1535 @@ -3598,22 +3690,24 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1568 msgid "ldap_access_order (string)" -msgstr "" +msgstr "ldap_access_order (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1571 msgid "Comma separated list of access control options. Allowed values are:" msgstr "" +"Lista separada por coma de opciones de control de acceso. Los valores " +"permitidos son:" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1575 msgid "<emphasis>filter</emphasis>: use ldap_access_filter" -msgstr "" +msgstr "<emphasis>filtro</emphasis>: utilizar ldap_access_filter" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1578 msgid "<emphasis>expire</emphasis>: use ldap_account_expire_policy" -msgstr "" +msgstr "<emphasis>caducar</emphasis>: utilizar ldap_account_expire_policy" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1582 @@ -3621,6 +3715,8 @@ msgid "" "<emphasis>authorized_service</emphasis>: use the authorizedService attribute " "to determine access" msgstr "" +"<emphasis>authorized_service</emphasis>: utilizar el atributo " +"autorizedService para determinar el acceso" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1587 @@ -3630,7 +3726,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1591 msgid "Default: filter" -msgstr "" +msgstr "Predeterminado: filter" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1594 @@ -3638,11 +3734,13 @@ msgid "" "Please note that it is a configuration error if a value is used more than " "once." msgstr "" +"Tenga en cuenta que es un error de configuración si un valor es usado más de " +"una vez." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1601 msgid "ldap_deref (string)" -msgstr "" +msgstr "ldap_deref (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1604 @@ -3696,10 +3794,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><title> #: sssd-ldap.5.xml:1639 -#, fuzzy -#| msgid "OPTIONS" msgid "SUDO OPTIONS" -msgstr "OPCIONES" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1644 @@ -3713,17 +3809,13 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1650 -#, fuzzy -#| msgid "Default: 3" msgid "Default: sudoRole" -msgstr "Predeterminado: 3" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1656 -#, fuzzy -#| msgid "full_name_format (string)" msgid "ldap_sudorule_name (string)" -msgstr "full_name_format (cadena)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1659 @@ -3742,10 +3834,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1676 -#, fuzzy -#| msgid "Default: 3" msgid "Default: sudoCommand" -msgstr "Predeterminado: 3" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1682 @@ -3761,10 +3851,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1690 -#, fuzzy -#| msgid "Default: 3" msgid "Default: sudoHost" -msgstr "Predeterminado: 3" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1696 @@ -3780,17 +3868,13 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1703 -#, fuzzy -#| msgid "Default: 3" msgid "Default: sudoUser" -msgstr "Predeterminado: 3" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1709 -#, fuzzy -#| msgid "re_expression (string)" msgid "ldap_sudorule_option (string)" -msgstr "re_expression (cadena)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1712 @@ -3799,10 +3883,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1716 -#, fuzzy -#| msgid "Default: 3" msgid "Default: sudoOption" -msgstr "Predeterminado: 3" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1722 @@ -3884,10 +3966,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1782 -#, fuzzy -#| msgid "Default: 3" msgid "Default: sudoOrder" -msgstr "Predeterminado: 3" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1788 @@ -3928,10 +4008,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><title> #: sssd-ldap.5.xml:1825 -#, fuzzy -#| msgid "OPTIONS" msgid "AUTOFS OPTIONS" -msgstr "OPCIONES" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para> #: sssd-ldap.5.xml:1827 @@ -3967,10 +4045,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1853 -#, fuzzy -#| msgid "Default: 3" msgid "Default: ou" -msgstr "Predeterminado: 3" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1860 @@ -4011,12 +4087,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><title> #: sssd-ldap.5.xml:1904 msgid "ADVANCED OPTIONS" -msgstr "" +msgstr "OPCIONES AVANZADAS" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1911 msgid "ldap_netgroup_search_base (string)" -msgstr "" +msgstr "ldap_netgroup_search_base (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1914 @@ -4027,7 +4103,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1930 msgid "ldap_user_search_base (string)" -msgstr "" +msgstr "ldap_user_search_base (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1933 @@ -4037,7 +4113,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1949 msgid "ldap_group_search_base (string)" -msgstr "" +msgstr "ldap_group_search_base (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1952 @@ -4047,7 +4123,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1968 msgid "ldap_user_search_filter (string)" -msgstr "" +msgstr "ldap_user_search_filter (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1971 @@ -4070,6 +4146,8 @@ msgid "" " ldap_user_search_filter = (loginShell=/bin/tcsh)\n" " " msgstr "" +" ldap_user_search_filter = (loginShell=/bin/tcsh)\n" +" " #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1988 @@ -4081,7 +4159,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1995 msgid "ldap_group_search_filter (string)" -msgstr "" +msgstr "ldap_group_search_filter (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1998 @@ -4148,17 +4226,25 @@ msgid "" " cache_credentials = true\n" " enumerate = true\n" msgstr "" +" [domain/LDAP]\n" +" id_provider = ldap\n" +" auth_provider = ldap\n" +" ldap_uri = ldap://ldap.mydomain.org\n" +" ldap_search_base = dc=mydomain,dc=org\n" +" ldap_tls_reqcert = demand\n" +" cache_credentials = true\n" +" enumerate = true\n" #. type: Content of: <reference><refentry><refsect1><para> #: sssd-ldap.5.xml:2071 sssd-simple.5.xml:134 sssd-ipa.5.xml:552 #: sssd-krb5.5.xml:441 msgid "<placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" +msgstr "<placeholder type=\"programlisting\" id=\"0\"/>" #. type: Content of: <reference><refentry><refsect1><title> #: sssd-ldap.5.xml:2085 sssd_krb5_locator_plugin.8.xml:61 msgid "NOTES" -msgstr "" +msgstr "NOTAS" #. type: Content of: <reference><refentry><refsect1><para> #: sssd-ldap.5.xml:2087 @@ -4177,6 +4263,10 @@ msgid "" "refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " "<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" msgstr "" +"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" +"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" +"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " +"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" #. type: Content of: <refentryinfo> #: pam_sss.8.xml:8 include/upstream.xml:2 @@ -4184,16 +4274,18 @@ msgid "" "<productname>SSSD</productname> <orgname>The SSSD upstream - http://" "fedorahosted.org/sssd</orgname>" msgstr "" +"<productname>SSSD</productname> <orgname>The SSSD upstream - http://" +"fedorahosted.org/sssd</orgname>" #. type: Content of: <reference><refentry><refnamediv><refname> #: pam_sss.8.xml:13 pam_sss.8.xml:18 msgid "pam_sss" -msgstr "" +msgstr "pam_sss" #. type: Content of: <reference><refentry><refnamediv><refpurpose> #: pam_sss.8.xml:19 msgid "PAM module for SSSD" -msgstr "" +msgstr "Módulo PAM para SSSD" #. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> #: pam_sss.8.xml:24 @@ -4205,6 +4297,12 @@ msgid "" "replaceable> </arg> <arg choice='opt'> <replaceable>retry=N</replaceable> </" "arg>" msgstr "" +"<command>pam_sss.so</command> <arg choice='opt'> <replaceable>quiet</" +"replaceable> </arg> <arg choice='opt'> <replaceable>forward_pass</" +"replaceable> </arg> <arg choice='opt'> <replaceable>use_first_pass</" +"replaceable> </arg> <arg choice='opt'> <replaceable>use_authtok</" +"replaceable> </arg> <arg choice='opt'> <replaceable>retry=N</replaceable> </" +"arg>" #. type: Content of: <reference><refentry><refsect1><para> #: pam_sss.8.xml:45 @@ -4217,7 +4315,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: pam_sss.8.xml:55 msgid "<option>quiet</option>" -msgstr "" +msgstr "<option>quiet</option>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: pam_sss.8.xml:58 @@ -4227,7 +4325,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: pam_sss.8.xml:63 msgid "<option>forward_pass</option>" -msgstr "" +msgstr "<option>forward_pass</option>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: pam_sss.8.xml:66 @@ -4239,7 +4337,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: pam_sss.8.xml:73 msgid "<option>use_first_pass</option>" -msgstr "" +msgstr "<option>use_first_pass</option>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: pam_sss.8.xml:76 @@ -4252,7 +4350,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: pam_sss.8.xml:84 msgid "<option>use_authtok</option>" -msgstr "" +msgstr "<option>use_authtok</option>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: pam_sss.8.xml:87 @@ -4264,7 +4362,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: pam_sss.8.xml:94 msgid "<option>retry=N</option>" -msgstr "" +msgstr "<option>retry=N</option>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: pam_sss.8.xml:97 @@ -4296,7 +4394,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><title> #: pam_sss.8.xml:117 msgid "FILES" -msgstr "" +msgstr "ARCHIVOS" #. type: Content of: <reference><refentry><refsect1><para> #: pam_sss.8.xml:118 @@ -4332,11 +4430,13 @@ msgid "" "<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>8</" "manvolnum> </citerefentry>" msgstr "" +"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>8</" +"manvolnum> </citerefentry>" #. type: Content of: <reference><refentry><refnamediv><refname> #: sssd_krb5_locator_plugin.8.xml:10 sssd_krb5_locator_plugin.8.xml:15 msgid "sssd_krb5_locator_plugin" -msgstr "" +msgstr "sssd_krb5_locator_plugin" #. type: Content of: <reference><refentry><refsect1><para> #: sssd_krb5_locator_plugin.8.xml:22 @@ -4388,11 +4488,15 @@ msgid "" "refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " "<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" msgstr "" +"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" +"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" +"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " +"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" #. type: Content of: <reference><refentry><refnamediv><refname> #: sssd-simple.5.xml:10 sssd-simple.5.xml:16 msgid "sssd-simple" -msgstr "" +msgstr "sssd-simple" #. type: Content of: <reference><refentry><refnamediv><refpurpose> #: sssd-simple.5.xml:17 @@ -4420,7 +4524,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> #: sssd-simple.5.xml:43 msgid "If all lists are empty, access is granted" -msgstr "" +msgstr "Si todas las listas están vacías, se concede acceso" #. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> #: sssd-simple.5.xml:47 @@ -4446,7 +4550,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-simple.5.xml:78 msgid "simple_allow_users (string)" -msgstr "" +msgstr "simple_allow_users (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-simple.5.xml:81 @@ -4456,7 +4560,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-simple.5.xml:88 msgid "simple_deny_users (string)" -msgstr "" +msgstr "simple_deny_users (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-simple.5.xml:91 @@ -4466,7 +4570,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-simple.5.xml:97 msgid "simple_allow_groups (string)" -msgstr "" +msgstr "simple_allow_groups (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-simple.5.xml:100 @@ -4478,7 +4582,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-simple.5.xml:108 msgid "simple_deny_groups (string)" -msgstr "" +msgstr "simple_deny_groups (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-simple.5.xml:111 @@ -4520,6 +4624,9 @@ msgid "" " access_provider = simple\n" " simple_allow_users = user1, user2\n" msgstr "" +" [domain/example.com]\n" +" access_provider = simple\n" +" simple_allow_users = user1, user2\n" #. type: Content of: <reference><refentry><refsect1><para> #: sssd-simple.5.xml:145 @@ -4528,11 +4635,14 @@ msgid "" "manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd</" "refentrytitle><manvolnum>8</manvolnum> </citerefentry>" msgstr "" +"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" +"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd</" +"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" #. type: Content of: <reference><refentry><refnamediv><refname> #: sssd-ipa.5.xml:10 sssd-ipa.5.xml:16 msgid "sssd-ipa" -msgstr "" +msgstr "sssd-ipa" #. type: Content of: <reference><refentry><refsect1><para> #: sssd-ipa.5.xml:23 @@ -4576,7 +4686,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:72 msgid "ipa_domain (string)" -msgstr "" +msgstr "ipa_domain (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:75 @@ -4588,7 +4698,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:83 msgid "ipa_server (string)" -msgstr "" +msgstr "ipa_server (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:86 @@ -4603,7 +4713,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:99 msgid "ipa_hostname (string)" -msgstr "" +msgstr "ipa_hostname (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:102 @@ -4615,7 +4725,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:110 msgid "ipa_dyndns_update (boolean)" -msgstr "" +msgstr "ipa_dyndns_update (boolean)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:113 @@ -4634,7 +4744,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:129 msgid "ipa_dyndns_iface (string)" -msgstr "" +msgstr "ipa_dyndns_iface (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:132 @@ -4646,12 +4756,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:137 msgid "Default: Use the IP address of the IPA LDAP connection" -msgstr "" +msgstr "Predeterminado: Utilizar la dirección IP de la conexión IPA LDAP" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:143 msgid "ipa_hbac_search_base (string)" -msgstr "" +msgstr "ipa_hbac_search_base (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:146 @@ -4661,7 +4771,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:150 msgid "Default: Use base DN" -msgstr "" +msgstr "Predeterminado: Utilizar DN base" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:156 @@ -4694,7 +4804,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:199 sssd-krb5.5.xml:229 msgid "krb5_validate (boolean)" -msgstr "" +msgstr "krb5_validate (boolean)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:202 sssd-krb5.5.xml:232 @@ -4735,7 +4845,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:247 msgid "ipa_hbac_refresh (integer)" -msgstr "" +msgstr "ipa_hbac_refresh (entero)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:250 @@ -4748,12 +4858,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:257 msgid "Default: 5 (seconds)" -msgstr "" +msgstr "Predeterminado: 5 (segundos)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:262 msgid "ipa_hbac_treat_deny_as (string)" -msgstr "" +msgstr "ipa_hbac_treat_deny_as (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:265 @@ -4781,12 +4891,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:284 msgid "Default: DENY_ALL" -msgstr "" +msgstr "Predeterminado: DENY_ALL" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:289 msgid "ipa_hbac_support_srchost (boolean)" -msgstr "" +msgstr "ipa_hbac_support_srchost (boolean)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:292 @@ -4804,10 +4914,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:307 -#, fuzzy -#| msgid "re_expression (string)" msgid "ipa_automount_location (string)" -msgstr "re_expression (cadena)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:310 @@ -4822,7 +4930,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:319 msgid "ipa_netgroup_member_of (string)" -msgstr "" +msgstr "ipa_netgroup_member_of (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:322 @@ -4832,7 +4940,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:331 msgid "ipa_netgroup_member_user (string)" -msgstr "" +msgstr "ipa_netgroup_member_user (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:334 @@ -4844,12 +4952,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:339 sssd-ipa.5.xml:434 msgid "Default: memberUser" -msgstr "" +msgstr "Predeterminado: memberUser" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:344 msgid "ipa_netgroup_member_host (string)" -msgstr "" +msgstr "ipa_netgroup_member_host (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:347 @@ -4861,12 +4969,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:351 sssd-ipa.5.xml:446 msgid "Default: memberHost" -msgstr "" +msgstr "Predeterminado: memberHost" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:356 msgid "ipa_netgroup_member_ext_host (string)" -msgstr "" +msgstr "ipa_netgroup_member_ext_host (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:359 @@ -4878,12 +4986,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:363 msgid "Default: externalHost" -msgstr "" +msgstr "Predeterminado: externalHost" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:368 msgid "ipa_netgroup_domain (string)" -msgstr "" +msgstr "ipa_netgroup_domain (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:371 @@ -4893,12 +5001,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:375 msgid "Default: nisDomainName" -msgstr "" +msgstr "Predeterminado: nisDomainName" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:381 msgid "ipa_host_object_class (string)" -msgstr "" +msgstr "ipa_host_object_class (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:384 sssd-ipa.5.xml:407 @@ -4908,7 +5016,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:387 sssd-ipa.5.xml:410 msgid "Default: ipaHost" -msgstr "" +msgstr "Predeterminado: ipaHost" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:392 @@ -4977,10 +5085,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:459 -#, fuzzy -#| msgid "Default: 3" msgid "Default: seeAlso" -msgstr "Predeterminado: 3" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:464 @@ -5056,10 +5162,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:519 -#, fuzzy -#| msgid "Default: 3" msgid "Default: ipaUniqueID" -msgstr "Predeterminado: 3" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:524 @@ -5093,6 +5197,10 @@ msgid "" " ipa_server = ipaserver.example.com\n" " ipa_hostname = myhost.example.com\n" msgstr "" +" [domain/example.com]\n" +" id_provider = ipa\n" +" ipa_server = ipaserver.example.com\n" +" ipa_hostname = myhost.example.com\n" #. type: Content of: <reference><refentry><refsect1><para> #: sssd-ipa.5.xml:564 @@ -5104,16 +5212,22 @@ msgid "" "citerefentry>, <citerefentry> <refentrytitle>sssd</" "refentrytitle><manvolnum>8</manvolnum> </citerefentry>" msgstr "" +"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" +"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" +"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " +"<refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</manvolnum> </" +"citerefentry>, <citerefentry> <refentrytitle>sssd</" +"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" #. type: Content of: <reference><refentry><refnamediv><refname> #: sssd.8.xml:10 sssd.8.xml:15 msgid "sssd" -msgstr "" +msgstr "sssd" #. type: Content of: <reference><refentry><refnamediv><refpurpose> #: sssd.8.xml:16 msgid "System Security Services Daemon" -msgstr "" +msgstr "System Security Services Daemon" #. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> #: sssd.8.xml:21 @@ -5121,6 +5235,8 @@ msgid "" "<command>sssd</command> <arg choice='opt'> <replaceable>options</" "replaceable> </arg>" msgstr "" +"<command>sssd</command> <arg choice='opt'> <replaceable>options</" +"replaceable> </arg>" #. type: Content of: <reference><refentry><refsect1><para> #: sssd.8.xml:31 @@ -5140,47 +5256,53 @@ msgid "" "<option>-d</option>,<option>--debug-level</option> <replaceable>LEVEL</" "replaceable>" msgstr "" +"<option>-d</option>,<option>--debug-level</option> <replaceable>NIVEL</" +"replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sssd.8.xml:53 msgid "<option>--debug-timestamps=</option><replaceable>mode</replaceable>" -msgstr "" +msgstr "<option>--debug-timestamps=</option><replaceable>mode</replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sssd.8.xml:57 msgid "<emphasis>1</emphasis>: Add a timestamp to the debug messages" msgstr "" +"<emphasis>1</emphasis>: Agregar marca de tiempo a mensajes de depuración " #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sssd.8.xml:60 msgid "<emphasis>0</emphasis>: Disable timestamp in the debug messages" msgstr "" +"<emphasis>0</emphasis>: Desactiva marca de tiempo en mensajes de depuración" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sssd.8.xml:69 msgid "<option>--debug-microseconds=</option><replaceable>mode</replaceable>" -msgstr "" +msgstr "<option>--debug-microseconds=</option><replaceable>mode</replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sssd.8.xml:73 msgid "" "<emphasis>1</emphasis>: Add microseconds to the timestamp in debug messages" msgstr "" +"<emphasis>1</emphasis>: Agregar microsegundos a la marca de tiempo en " +"mensajes de depuración" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sssd.8.xml:76 msgid "<emphasis>0</emphasis>: Disable microseconds in timestamp" -msgstr "" +msgstr "<emphasis>0</emphasis>: Desactiva microsegundos en marcas de tiempo" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sssd.8.xml:79 msgid "Default: 0" -msgstr "" +msgstr "Predeterminado: 0" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sssd.8.xml:85 msgid "<option>-f</option>,<option>--debug-to-files</option>" -msgstr "" +msgstr "<option>-f</option>,<option>--debug-to-files</option>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sssd.8.xml:89 @@ -5193,27 +5315,27 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sssd.8.xml:97 msgid "<option>-D</option>,<option>--daemon</option>" -msgstr "" +msgstr "<option>-D</option>,<option>--daemon</option>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sssd.8.xml:101 msgid "Become a daemon after starting up." -msgstr "" +msgstr "Convertido en un demonio después de la puesta en marcha." #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sssd.8.xml:107 msgid "<option>-i</option>,<option>--interactive</option>" -msgstr "" +msgstr "<option>-i</option>,<option>--interactive</option>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sssd.8.xml:111 msgid "Run in the foreground, don't become a daemon." -msgstr "" +msgstr "Ejecutar en primer plano, no convertirse en un demonio." #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sssd.8.xml:117 sss_debuglevel.8.xml:42 msgid "<option>-c</option>,<option>--config</option>" -msgstr "" +msgstr "<option>-c</option>,<option>--config</option>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sssd.8.xml:121 sss_debuglevel.8.xml:46 @@ -5227,7 +5349,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sssd.8.xml:135 msgid "<option>--version</option>" -msgstr "" +msgstr "<option>--version</option>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sssd.8.xml:139 @@ -5237,12 +5359,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><title> #: sssd.8.xml:147 msgid "Signals" -msgstr "" +msgstr "Señales" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sssd.8.xml:150 msgid "SIGTERM/SIGINT" -msgstr "" +msgstr "SIGTERM/SIGINT" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sssd.8.xml:153 @@ -5254,7 +5376,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sssd.8.xml:159 msgid "SIGHUP" -msgstr "" +msgstr "SIGHUP" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sssd.8.xml:162 @@ -5267,7 +5389,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sssd.8.xml:170 msgid "SIGUSR1" -msgstr "" +msgstr "SIGUSR1" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sssd.8.xml:173 @@ -5279,7 +5401,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sssd.8.xml:179 msgid "SIGUSR2" -msgstr "" +msgstr "SIGUSR2" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sssd.8.xml:182 @@ -5303,11 +5425,22 @@ msgid "" "<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" "citerefentry>." msgstr "" +"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" +"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" +"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " +"<refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</manvolnum> </" +"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" +"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " +"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" +"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" +"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " +"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" +"citerefentry>." #. type: Content of: <reference><refentry><refnamediv><refname> #: sss_obfuscate.8.xml:10 sss_obfuscate.8.xml:15 msgid "sss_obfuscate" -msgstr "" +msgstr "sss_obfuscate" #. type: Content of: <reference><refentry><refnamediv><refpurpose> #: sss_obfuscate.8.xml:16 @@ -5321,6 +5454,9 @@ msgid "" "replaceable> </arg> <arg choice='plain'><replaceable>[PASSWORD]</" "replaceable></arg>" msgstr "" +"<command>sss_obfuscate</command> <arg choice='opt'> <replaceable>options</" +"replaceable> </arg> <arg choice='plain'><replaceable>[CONTRASEÑA]</" +"replaceable></arg>" #. type: Content of: <reference><refentry><refsect1><para> #: sss_obfuscate.8.xml:32 @@ -5355,7 +5491,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_obfuscate.8.xml:63 msgid "<option>-s</option>,<option>--stdin</option>" -msgstr "" +msgstr "<option>-s</option>,<option>--stdin</option>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_obfuscate.8.xml:67 @@ -5369,6 +5505,8 @@ msgid "" "<option>-d</option>,<option>--domain</option> <replaceable>DOMAIN</" "replaceable>" msgstr "" +"<option>-d</option>,<option>--domain</option> <replaceable>DOMINIO</" +"replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_obfuscate.8.xml:79 @@ -5382,6 +5520,8 @@ msgstr "" msgid "" "<option>-f</option>,<option>--file</option> <replaceable>FILE</replaceable>" msgstr "" +"<option>-f</option>,<option>--file</option> <replaceable>ARCHIVO</" +"replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_obfuscate.8.xml:91 @@ -5391,7 +5531,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_obfuscate.8.xml:95 msgid "Default: <filename>/etc/sssd/sssd.conf</filename>" -msgstr "" +msgstr "Predeterminado: <filename>/etc/sssd/sssd.conf</filename>" #. type: Content of: <reference><refentry><refsect1><para> #: sss_obfuscate.8.xml:105 @@ -5399,16 +5539,18 @@ msgid "" "<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" "manvolnum> </citerefentry>" msgstr "" +"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" +"manvolnum> </citerefentry>" #. type: Content of: <reference><refentry><refnamediv><refname> #: sss_useradd.8.xml:10 sss_useradd.8.xml:15 msgid "sss_useradd" -msgstr "" +msgstr "sss_useradd" #. type: Content of: <reference><refentry><refnamediv><refpurpose> #: sss_useradd.8.xml:16 msgid "create a new user" -msgstr "" +msgstr "Crea un nuevo usuario" #. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> #: sss_useradd.8.xml:21 @@ -5417,6 +5559,9 @@ msgid "" "replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" "arg>" msgstr "" +"<command>sss_useradd</command> <arg choice='opt'> <replaceable>options</" +"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" +"arg>" #. type: Content of: <reference><refentry><refsect1><para> #: sss_useradd.8.xml:32 @@ -5430,6 +5575,7 @@ msgstr "" msgid "" "<option>-u</option>,<option>--uid</option> <replaceable>UID</replaceable>" msgstr "" +"<option>-u</option>,<option>--uid</option> <replaceable>UID</replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_useradd.8.xml:48 @@ -5444,6 +5590,8 @@ msgid "" "<option>-c</option>,<option>--gecos</option> <replaceable>COMMENT</" "replaceable>" msgstr "" +"<option>-c</option>,<option>--gecos</option> <replaceable>COMENTARIO</" +"replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_useradd.8.xml:60 sss_usermod.8.xml:48 @@ -5458,6 +5606,8 @@ msgid "" "<option>-h</option>,<option>--home</option> <replaceable>HOME_DIR</" "replaceable>" msgstr "" +"<option>-h</option>,<option>--home</option> <replaceable>HOME_DIR</" +"replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_useradd.8.xml:72 @@ -5474,6 +5624,7 @@ msgstr "" msgid "" "<option>-s</option>,<option>--shell</option> <replaceable>SHELL</replaceable>" msgstr "" +"<option>-s</option>,<option>--shell</option> <replaceable>SHELL</replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_useradd.8.xml:87 @@ -5489,6 +5640,8 @@ msgid "" "<option>-G</option>,<option>--groups</option> <replaceable>GROUPS</" "replaceable>" msgstr "" +"<option>-G</option>,<option>--groups</option> <replaceable>GRUPOS</" +"replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_useradd.8.xml:101 @@ -5498,7 +5651,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_useradd.8.xml:107 msgid "<option>-m</option>,<option>--create-home</option>" -msgstr "" +msgstr "<option>-m</option>,<option>--create-home</option>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_useradd.8.xml:111 @@ -5511,13 +5664,15 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_useradd.8.xml:121 msgid "<option>-M</option>,<option>--no-create-home</option>" -msgstr "" +msgstr "<option>-M</option>,<option>--no-create-home</option>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_useradd.8.xml:125 msgid "" "Do not create the user's home directory. Overrides configuration settings." msgstr "" +"No se crear el directorio principal del usuario. Reemplaza los valores de " +"configuración." #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_useradd.8.xml:132 @@ -5525,6 +5680,8 @@ msgid "" "<option>-k</option>,<option>--skel</option> <replaceable>SKELDIR</" "replaceable>" msgstr "" +"<option>-k</option>,<option>--skel</option> <replaceable>SKELDIR</" +"replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_useradd.8.xml:137 @@ -5548,6 +5705,8 @@ msgid "" "<option>-Z</option>,<option>--selinux-user</option> " "<replaceable>SELINUX_USER</replaceable>" msgstr "" +"<option>-Z</option>,<option>--selinux-user</option> " +"<replaceable>SELINUX_USER</replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_useradd.8.xml:157 @@ -5569,11 +5728,20 @@ msgid "" "citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" "refentrytitle><manvolnum>8</manvolnum> </citerefentry>." msgstr "" +"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" +"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" +"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " +"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" +"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" +"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " +"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" +"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" +"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." #. type: Content of: <reference><refentry><refnamediv><refname> #: sssd-krb5.5.xml:10 sssd-krb5.5.xml:16 msgid "sssd-krb5" -msgstr "" +msgstr "sssd-krb5" #. type: Content of: <reference><refentry><refsect1><para> #: sssd-krb5.5.xml:23 @@ -5628,7 +5796,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-krb5.5.xml:113 msgid "krb5_kpasswd (string)" -msgstr "" +msgstr "krb5_kpasswd (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-krb5.5.xml:116 @@ -5650,7 +5818,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-krb5.5.xml:129 msgid "Default: Use the KDC" -msgstr "" +msgstr "Predeterminado: Use the KDC" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-krb5.5.xml:135 @@ -5672,7 +5840,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-krb5.5.xml:151 msgid "Default: /tmp" -msgstr "" +msgstr "Predeterminado: /tmp" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-krb5.5.xml:157 @@ -5697,7 +5865,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> #: sssd-krb5.5.xml:179 msgid "%r" -msgstr "" +msgstr "%r" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> #: sssd-krb5.5.xml:180 @@ -5707,7 +5875,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> #: sssd-krb5.5.xml:183 msgid "%h" -msgstr "" +msgstr "%h" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> #: sssd-krb5.5.xml:184 @@ -5717,17 +5885,17 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> #: sssd-krb5.5.xml:189 msgid "value of krb5ccache_dir" -msgstr "" +msgstr "valor de krb5ccache_dir" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> #: sssd-krb5.5.xml:194 msgid "%P" -msgstr "" +msgstr "%P" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> #: sssd-krb5.5.xml:195 msgid "the process ID of the sssd client" -msgstr "" +msgstr "el ID de proceso del cliente sssd" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-krb5.5.xml:160 @@ -5742,12 +5910,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-krb5.5.xml:209 msgid "Default: FILE:%d/krb5cc_%U_XXXXXX" -msgstr "" +msgstr "Predeterminado: FILE:%d/krb5cc_%U_XXXXXX" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-krb5.5.xml:215 msgid "krb5_auth_timeout (integer)" -msgstr "" +msgstr "krb5_auth_timeout (entero)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-krb5.5.xml:218 @@ -5759,7 +5927,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-krb5.5.xml:241 msgid "krb5_keytab (string)" -msgstr "" +msgstr "krb5_keytab (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-krb5.5.xml:244 @@ -5771,12 +5939,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-krb5.5.xml:248 msgid "Default: /etc/krb5.keytab" -msgstr "" +msgstr "Predeterminado: /etc/krb5.keytab" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-krb5.5.xml:254 msgid "krb5_store_password_if_offline (boolean)" -msgstr "" +msgstr "krb5_store_password_if_offline (boolean)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-krb5.5.xml:257 @@ -5796,7 +5964,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-krb5.5.xml:275 msgid "krb5_renewable_lifetime (string)" -msgstr "" +msgstr "krb5_renewable_lifetime (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-krb5.5.xml:278 @@ -5808,22 +5976,22 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-krb5.5.xml:283 sssd-krb5.5.xml:319 msgid "<emphasis>s</emphasis> seconds" -msgstr "" +msgstr "<emphasis>s</emphasis> segundos" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-krb5.5.xml:286 sssd-krb5.5.xml:322 msgid "<emphasis>m</emphasis> minutes" -msgstr "" +msgstr "<emphasis>m</emphasis> minutos" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-krb5.5.xml:289 sssd-krb5.5.xml:325 msgid "<emphasis>h</emphasis> hours" -msgstr "" +msgstr "<emphasis>h</emphasis> horas" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-krb5.5.xml:292 sssd-krb5.5.xml:328 msgid "<emphasis>d</emphasis> days." -msgstr "" +msgstr "<emphasis>d</emphasis> días." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-krb5.5.xml:295 sssd-krb5.5.xml:331 @@ -5846,7 +6014,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-krb5.5.xml:311 msgid "krb5_lifetime (string)" -msgstr "" +msgstr "krb5_lifetime (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-krb5.5.xml:314 @@ -5871,7 +6039,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-krb5.5.xml:347 msgid "krb5_renew_interval (integer)" -msgstr "" +msgstr "krb5_renew_interval (entero)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-krb5.5.xml:350 @@ -5888,7 +6056,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-krb5.5.xml:365 msgid "krb5_use_fast (string)" -msgstr "" +msgstr "krb5_use_fast (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-krb5.5.xml:368 @@ -5939,7 +6107,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-krb5.5.xml:400 msgid "krb5_fast_principal (string)" -msgstr "" +msgstr "krb5_fast_principal (cadena)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-krb5.5.xml:403 @@ -5981,6 +6149,10 @@ msgid "" " krb5_server = 192.168.1.1\n" " krb5_realm = EXAMPLE.COM\n" msgstr "" +" [domain/FOO]\n" +" auth_provider = krb5\n" +" krb5_server = 192.168.1.1\n" +" krb5_realm = EXAMPLE.COM\n" #. type: Content of: <reference><refentry><refsect1><para> #: sssd-krb5.5.xml:453 @@ -5990,16 +6162,20 @@ msgid "" "refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " "<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" msgstr "" +"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" +"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" +"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " +"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" #. type: Content of: <reference><refentry><refnamediv><refname> #: sss_groupadd.8.xml:10 sss_groupadd.8.xml:15 msgid "sss_groupadd" -msgstr "" +msgstr "sss_groupadd" #. type: Content of: <reference><refentry><refnamediv><refpurpose> #: sss_groupadd.8.xml:16 msgid "create a new group" -msgstr "" +msgstr "Crea un nuevo grupo" #. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> #: sss_groupadd.8.xml:21 @@ -6008,6 +6184,9 @@ msgid "" "replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" "arg>" msgstr "" +"<command>sss_groupadd</command> <arg choice='opt'> <replaceable>options</" +"replaceable> </arg> <arg choice='plain'><replaceable>GRUPO</replaceable></" +"arg>" #. type: Content of: <reference><refentry><refsect1><para> #: sss_groupadd.8.xml:32 @@ -6022,6 +6201,7 @@ msgstr "" msgid "" "<option>-g</option>,<option>--gid</option> <replaceable>GID</replaceable>" msgstr "" +"<option>-g</option>,<option>--gid</option> <replaceable>GID</replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_groupadd.8.xml:48 @@ -6043,16 +6223,25 @@ msgid "" "citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" "refentrytitle><manvolnum>8</manvolnum> </citerefentry>." msgstr "" +"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" +"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" +"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " +"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" +"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" +"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " +"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" +"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" +"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." #. type: Content of: <reference><refentry><refnamediv><refname> #: sss_userdel.8.xml:10 sss_userdel.8.xml:15 msgid "sss_userdel" -msgstr "" +msgstr "sss_userdel" #. type: Content of: <reference><refentry><refnamediv><refpurpose> #: sss_userdel.8.xml:16 msgid "delete a user account" -msgstr "" +msgstr "eliminar una cuenta de usuario" #. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> #: sss_userdel.8.xml:21 @@ -6061,6 +6250,9 @@ msgid "" "replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" "arg>" msgstr "" +"<command>sss_userdel</command> <arg choice='opt'> <replaceable>options</" +"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" +"arg>" #. type: Content of: <reference><refentry><refsect1><para> #: sss_userdel.8.xml:32 @@ -6072,7 +6264,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_userdel.8.xml:44 msgid "<option>-r</option>,<option>--remove</option>" -msgstr "" +msgstr "<option>-r</option>,<option>--remove</option>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_userdel.8.xml:48 @@ -6084,7 +6276,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_userdel.8.xml:56 msgid "<option>-R</option>,<option>--no-remove</option>" -msgstr "" +msgstr "<option>-R</option>,<option>--no-remove</option>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_userdel.8.xml:60 @@ -6096,7 +6288,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_userdel.8.xml:68 msgid "<option>-f</option>,<option>--force</option>" -msgstr "" +msgstr "<option>-f</option>,<option>--force</option>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_userdel.8.xml:72 @@ -6108,12 +6300,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_userdel.8.xml:80 msgid "<option>-k</option>,<option>--kick</option>" -msgstr "" +msgstr "<option>-k</option>,<option>--kick</option>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_userdel.8.xml:84 msgid "Before actually deleting the user, terminate all his processes." -msgstr "" +msgstr "Antes de realmente eliminar al usuario, terminar todos sus procesos." #. type: Content of: <reference><refentry><refsect1><para> #: sss_userdel.8.xml:95 @@ -6128,16 +6320,25 @@ msgid "" "citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" "refentrytitle><manvolnum>8</manvolnum> </citerefentry>." msgstr "" +"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" +"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" +"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " +"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" +"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" +"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " +"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" +"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" +"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." #. type: Content of: <reference><refentry><refnamediv><refname> #: sss_groupdel.8.xml:10 sss_groupdel.8.xml:15 msgid "sss_groupdel" -msgstr "" +msgstr "sss_groupdel" #. type: Content of: <reference><refentry><refnamediv><refpurpose> #: sss_groupdel.8.xml:16 msgid "delete a group" -msgstr "" +msgstr "eliminar un grupo" #. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> #: sss_groupdel.8.xml:21 @@ -6146,6 +6347,9 @@ msgid "" "replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" "arg>" msgstr "" +"<command>sss_groupdel</command> <arg choice='opt'> <replaceable>options</" +"replaceable> </arg> <arg choice='plain'><replaceable>GRUPO</replaceable></" +"arg>" #. type: Content of: <reference><refentry><refsect1><para> #: sss_groupdel.8.xml:32 @@ -6167,11 +6371,20 @@ msgid "" "citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" "refentrytitle><manvolnum>8</manvolnum> </citerefentry>." msgstr "" +"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" +"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" +"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " +"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" +"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" +"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " +"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" +"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" +"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." #. type: Content of: <reference><refentry><refnamediv><refname> #: sss_groupshow.8.xml:10 sss_groupshow.8.xml:15 msgid "sss_groupshow" -msgstr "" +msgstr "sss_groupshow" #. type: Content of: <reference><refentry><refnamediv><refpurpose> #: sss_groupshow.8.xml:16 @@ -6185,6 +6398,9 @@ msgid "" "replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" "arg>" msgstr "" +"<command>sss_groupshow</command> <arg choice='opt'> <replaceable>options</" +"replaceable> </arg> <arg choice='plain'><replaceable>GRUPO</replaceable></" +"arg>" #. type: Content of: <reference><refentry><refsect1><para> #: sss_groupshow.8.xml:32 @@ -6197,7 +6413,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_groupshow.8.xml:43 msgid "<option>-R</option>,<option>--recursive</option>" -msgstr "" +msgstr "<option>-R</option>,<option>--recursive</option>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_groupshow.8.xml:47 @@ -6219,16 +6435,24 @@ msgid "" "<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" "citerefentry>." msgstr "" +"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" +"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" +"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " +"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" +"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" +"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " +"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" +"citerefentry>." #. type: Content of: <reference><refentry><refnamediv><refname> #: sss_usermod.8.xml:10 sss_usermod.8.xml:15 msgid "sss_usermod" -msgstr "" +msgstr "sss_usermod" #. type: Content of: <reference><refentry><refnamediv><refpurpose> #: sss_usermod.8.xml:16 msgid "modify a user account" -msgstr "" +msgstr "Modifica una cuenta de usuario" #. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> #: sss_usermod.8.xml:21 @@ -6237,6 +6461,9 @@ msgid "" "replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" "arg>" msgstr "" +"<command>sss_usermod</command> <arg choice='opt'> <replaceable>options</" +"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" +"arg>" #. type: Content of: <reference><refentry><refsect1><para> #: sss_usermod.8.xml:32 @@ -6249,12 +6476,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_usermod.8.xml:60 msgid "The home directory of the user account." -msgstr "" +msgstr "El directorio principal de la cuenta de usuario." #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_usermod.8.xml:71 msgid "The user's login shell." -msgstr "" +msgstr "Shell de inicio de sesión del usuario." #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_usermod.8.xml:82 @@ -6274,7 +6501,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_usermod.8.xml:103 msgid "<option>-l</option>,<option>--lock</option>" -msgstr "" +msgstr "<option>-l</option>,<option>--lock</option>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_usermod.8.xml:107 @@ -6284,7 +6511,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_usermod.8.xml:114 msgid "<option>-u</option>,<option>--unlock</option>" -msgstr "" +msgstr "<option>-u</option>,<option>--unlock</option>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_usermod.8.xml:118 @@ -6309,6 +6536,15 @@ msgid "" "citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" "refentrytitle><manvolnum>8</manvolnum> </citerefentry>." msgstr "" +"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" +"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" +"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " +"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" +"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" +"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " +"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" +"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" +"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." #. type: Content of: <reference><refentry><refnamediv><refname> #: sss_cache.8.xml:10 sss_cache.8.xml:15 @@ -6322,18 +6558,10 @@ msgstr "" #. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> #: sss_cache.8.xml:21 -#, fuzzy -#| msgid "" -#| "<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -#| "replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -#| "arg>" msgid "" "<command>sss_cache</command> <arg choice='opt'> <replaceable>options</" "replaceable> </arg>" msgstr "" -"<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" #. type: Content of: <reference><refentry><refsect1><para> #: sss_cache.8.xml:31 @@ -6345,15 +6573,9 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:42 -#, fuzzy -#| msgid "" -#| "<option>-r</option>,<option>--remove-group</option> <replaceable>GROUPS</" -#| "replaceable>" msgid "" "<option>-u</option>,<option>--user</option> <replaceable>login</replaceable>" msgstr "" -"<option>-r</option>,<option>--remove-group</option> <replaceable>GROUPS</" -"replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:47 @@ -6362,14 +6584,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:53 -#, fuzzy -#| msgid "" -#| "<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -#| "replaceable>" msgid "<option>-U</option>,<option>--users</option>" msgstr "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -"replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:57 @@ -6380,15 +6596,9 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:64 -#, fuzzy -#| msgid "" -#| "<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -#| "replaceable>" msgid "" "<option>-g</option>,<option>--group</option> <replaceable>group</replaceable>" msgstr "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -"replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:69 @@ -6397,14 +6607,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:75 -#, fuzzy -#| msgid "" -#| "<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -#| "replaceable>" msgid "<option>-G</option>,<option>--groups</option>" msgstr "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -"replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:79 @@ -6415,16 +6619,10 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:86 -#, fuzzy -#| msgid "" -#| "<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -#| "replaceable>" msgid "" "<option>-n</option>,<option>--netgroup</option> <replaceable>netgroup</" "replaceable>" msgstr "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -"replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:91 @@ -6433,14 +6631,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:97 -#, fuzzy -#| msgid "" -#| "<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -#| "replaceable>" msgid "<option>-N</option>,<option>--netgroups</option>" msgstr "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -"replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:101 @@ -6451,16 +6643,10 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:108 -#, fuzzy -#| msgid "" -#| "<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -#| "replaceable>" msgid "" "<option>-d</option>,<option>--domain</option> <replaceable>domain</" "replaceable>" msgstr "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -"replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:113 @@ -6479,19 +6665,11 @@ msgstr "" #. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> #: sss_debuglevel.8.xml:21 -#, fuzzy -#| msgid "" -#| "<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -#| "replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -#| "arg>" msgid "" "<command>sss_debuglevel</command> <arg choice='opt'> <replaceable>options</" "replaceable> </arg> <arg choice='plain'><replaceable>NEW_DEBUG_LEVEL</" "replaceable></arg>" msgstr "" -"<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" #. type: Content of: <reference><refentry><refsect1><para> #: sss_debuglevel.8.xml:32 @@ -6523,19 +6701,11 @@ msgstr "" #. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> #: sss_ssh_authorizedkeys.1.xml:21 -#, fuzzy -#| msgid "" -#| "<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -#| "replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -#| "arg>" msgid "" "<command>sss_ssh_authorizedkeys</command> <arg choice='opt'> " "<replaceable>options</replaceable> </arg> <arg " "choice='plain'><replaceable>USER</replaceable></arg>" msgstr "" -"<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" #. type: Content of: <reference><refentry><refsect1><para> #: sss_ssh_authorizedkeys.1.xml:32 @@ -6599,17 +6769,6 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para> #: sss_ssh_authorizedkeys.1.xml:98 -#, fuzzy -#| msgid "" -#| "<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -#| "manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -#| "refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -#| "<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -#| "citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -#| "refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -#| "<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -#| "citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -#| "refentrytitle><manvolnum>8</manvolnum> </citerefentry>." msgid "" "<citerefentry> <refentrytitle>sshd</refentrytitle><manvolnum>8</manvolnum> </" "citerefentry>, <citerefentry> <refentrytitle>sshd_config</" @@ -6617,15 +6776,6 @@ msgid "" "<refentrytitle>sss_ssh_knownhostsproxy</refentrytitle><manvolnum>1</" "manvolnum> </citerefentry>." msgstr "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." #. type: Content of: <reference><refentry><refnamediv><refname> #: sss_ssh_knownhostsproxy.1.xml:10 sss_ssh_knownhostsproxy.1.xml:15 @@ -6639,20 +6789,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> #: sss_ssh_knownhostsproxy.1.xml:21 -#, fuzzy -#| msgid "" -#| "<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -#| "replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -#| "arg>" msgid "" "<command>sss_ssh_knownhostsproxy</command> <arg choice='opt'> " "<replaceable>options</replaceable> </arg> <arg " "choice='plain'><replaceable>HOST</replaceable></arg> <arg " "choice='opt'><replaceable>PROXY_COMMAND</replaceable></arg>" msgstr "" -"<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" #. type: Content of: <reference><refentry><refsect1><para> #: sss_ssh_knownhostsproxy.1.xml:33 @@ -6692,15 +6834,9 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_ssh_knownhostsproxy.1.xml:69 -#, fuzzy -#| msgid "" -#| "<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -#| "replaceable>" msgid "" "<option>-p</option>,<option>--port</option> <replaceable>PORT</replaceable>" msgstr "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -"replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_ssh_knownhostsproxy.1.xml:74 @@ -6717,17 +6853,6 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para> #: sss_ssh_knownhostsproxy.1.xml:97 -#, fuzzy -#| msgid "" -#| "<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -#| "manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -#| "refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -#| "<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -#| "citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -#| "refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -#| "<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -#| "citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -#| "refentrytitle><manvolnum>8</manvolnum> </citerefentry>." msgid "" "<citerefentry> <refentrytitle>ssh</refentrytitle><manvolnum>8</manvolnum> </" "citerefentry>, <citerefentry> <refentrytitle>ssh_config</" @@ -6735,20 +6860,11 @@ msgid "" "<refentrytitle>sss_ssh_authorizedkeys</refentrytitle><manvolnum>1</" "manvolnum> </citerefentry>." msgstr "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." #. type: Content of: <refsect1><title> #: include/service_discovery.xml:2 msgid "SERVICE DISCOVERY" -msgstr "" +msgstr "SERVICIO DE DESCUBRIMIENTO" #. type: Content of: <refsect1><para> #: include/service_discovery.xml:4 @@ -6760,7 +6876,7 @@ msgstr "" #. type: Content of: <refsect1><refsect2><title> #: include/service_discovery.xml:9 msgid "Configuration" -msgstr "" +msgstr "Configuración" #. type: Content of: <refsect1><refsect2><para> #: include/service_discovery.xml:11 @@ -6777,7 +6893,7 @@ msgstr "" #. type: Content of: <refsect1><refsect2><title> #: include/service_discovery.xml:23 msgid "The domain name" -msgstr "" +msgstr "El nombre de dominio" #. type: Content of: <refsect1><refsect2><para> #: include/service_discovery.xml:25 @@ -6790,7 +6906,7 @@ msgstr "" #. type: Content of: <refsect1><refsect2><title> #: include/service_discovery.xml:35 msgid "The protocol" -msgstr "" +msgstr "El protocolo" #. type: Content of: <refsect1><refsect2><para> #: include/service_discovery.xml:37 @@ -6813,7 +6929,7 @@ msgstr "" #. type: Content of: outside any tag (error?) #: include/upstream.xml:1 msgid "<placeholder type=\"refentryinfo\" id=\"0\"/>" -msgstr "" +msgstr "<placeholder type=\"refentryinfo\" id=\"0\"/>" #. type: Content of: <refsect1><title> #: include/failover.xml:2 @@ -6877,12 +6993,12 @@ msgstr "" #. type: Content of: <varlistentry><term> #: include/param_help.xml:3 msgid "<option>-h</option>,<option>--help</option>" -msgstr "" +msgstr "<option>-h</option>,<option>--help</option>" #. type: Content of: <varlistentry><listitem><para> #: include/param_help.xml:7 msgid "Display help message and exit." -msgstr "" +msgstr "Muestra mensaje de ayuda y sale." #. type: Content of: <listitem><para> #: include/debug_levels.xml:3 @@ -6993,6 +7109,3 @@ msgid "" "<emphasis> This is an experimental feature, please use http://fedorahosted." "org/sssd to report any issues. </emphasis>" msgstr "" - -#~ msgid "Supported services: nss, pam" -#~ msgstr "Servicios soportados: nss, pam" diff --git a/src/man/po/et.po b/src/man/po/et.po deleted file mode 100644 index 72f7cb2fa..000000000 --- a/src/man/po/et.po +++ /dev/null @@ -1,6748 +0,0 @@ -# SOME DESCRIPTIVE TITLE -# Copyright (C) YEAR Red Hat -# This file is distributed under the same license as the sssd-docs package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@redhat.com\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-12-23 15:35+0000\n" -"Last-Translator: FULL NAME <EMAIL@ADDRESS>\n" -"Language-Team: Estonian (http://www.transifex.net/projects/p/fedora/team/" -"et/)\n" -"Language: et\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=2; plural=(n != 1)\n" - -#. type: Content of: <reference><title> -#: sss_groupmod.8.xml:5 sssd.conf.5.xml:5 sssd-ldap.5.xml:5 pam_sss.8.xml:5 -#: sssd_krb5_locator_plugin.8.xml:5 sssd-simple.5.xml:5 sssd-ipa.5.xml:5 -#: sssd.8.xml:5 sss_obfuscate.8.xml:5 sss_useradd.8.xml:5 sssd-krb5.5.xml:5 -#: sss_groupadd.8.xml:5 sss_userdel.8.xml:5 sss_groupdel.8.xml:5 -#: sss_groupshow.8.xml:5 sss_usermod.8.xml:5 sss_cache.8.xml:5 -#: sss_debuglevel.8.xml:5 sss_ssh_authorizedkeys.1.xml:5 -#: sss_ssh_knownhostsproxy.1.xml:5 -msgid "SSSD Manual pages" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupmod.8.xml:10 sss_groupmod.8.xml:15 -msgid "sss_groupmod" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_groupmod.8.xml:11 pam_sss.8.xml:14 sssd_krb5_locator_plugin.8.xml:11 -#: sssd.8.xml:11 sss_obfuscate.8.xml:11 sss_useradd.8.xml:11 -#: sss_groupadd.8.xml:11 sss_userdel.8.xml:11 sss_groupdel.8.xml:11 -#: sss_groupshow.8.xml:11 sss_usermod.8.xml:11 sss_cache.8.xml:11 -#: sss_debuglevel.8.xml:11 -msgid "8" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupmod.8.xml:16 -msgid "modify a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupmod.8.xml:21 -msgid "" -"<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:30 sssd-ldap.5.xml:21 pam_sss.8.xml:44 -#: sssd_krb5_locator_plugin.8.xml:20 sssd-simple.5.xml:22 sssd-ipa.5.xml:21 -#: sssd.8.xml:29 sss_obfuscate.8.xml:30 sss_useradd.8.xml:30 -#: sssd-krb5.5.xml:21 sss_groupadd.8.xml:30 sss_userdel.8.xml:30 -#: sss_groupdel.8.xml:30 sss_groupshow.8.xml:30 sss_usermod.8.xml:30 -#: sss_cache.8.xml:29 sss_debuglevel.8.xml:30 sss_ssh_authorizedkeys.1.xml:30 -#: sss_ssh_knownhostsproxy.1.xml:31 -msgid "DESCRIPTION" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:32 -msgid "" -"<command>sss_groupmod</command> modifies the group to reflect the changes " -"that are specified on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:39 pam_sss.8.xml:51 sssd.8.xml:42 sss_obfuscate.8.xml:58 -#: sss_useradd.8.xml:39 sss_groupadd.8.xml:39 sss_userdel.8.xml:39 -#: sss_groupdel.8.xml:39 sss_groupshow.8.xml:39 sss_usermod.8.xml:39 -#: sss_cache.8.xml:38 sss_debuglevel.8.xml:38 sss_ssh_authorizedkeys.1.xml:78 -#: sss_ssh_knownhostsproxy.1.xml:65 -msgid "OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:43 sss_usermod.8.xml:77 -msgid "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:48 -msgid "" -"Append this group to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:57 sss_usermod.8.xml:91 -msgid "" -"<option>-r</option>,<option>--remove-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:62 -msgid "" -"Remove this group from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:72 sssd.conf.5.xml:1331 sssd-ldap.5.xml:2096 -#: pam_sss.8.xml:139 sssd_krb5_locator_plugin.8.xml:75 sssd-simple.5.xml:143 -#: sssd-ipa.5.xml:562 sssd.8.xml:191 sss_obfuscate.8.xml:103 -#: sss_useradd.8.xml:167 sssd-krb5.5.xml:451 sss_groupadd.8.xml:58 -#: sss_userdel.8.xml:93 sss_groupdel.8.xml:46 sss_groupshow.8.xml:58 -#: sss_usermod.8.xml:138 sss_ssh_authorizedkeys.1.xml:96 -#: sss_ssh_knownhostsproxy.1.xml:95 -msgid "SEE ALSO" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:74 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.conf.5.xml:10 sssd.conf.5.xml:16 -msgid "sssd.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sssd.conf.5.xml:11 sssd-ldap.5.xml:11 sssd-simple.5.xml:11 -#: sssd-ipa.5.xml:11 sssd-krb5.5.xml:11 -msgid "5" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><refmiscinfo> -#: sssd.conf.5.xml:12 sssd-ldap.5.xml:12 sssd-simple.5.xml:12 -#: sssd-ipa.5.xml:12 sssd-krb5.5.xml:12 -msgid "File Formats and Conventions" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.conf.5.xml:17 sssd-ldap.5.xml:17 sssd_krb5_locator_plugin.8.xml:16 -#: sssd-ipa.5.xml:17 sssd-krb5.5.xml:17 -msgid "the configuration file for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:21 -msgid "FILE FORMAT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:29 -#, no-wrap -msgid "" -" <replaceable>[section]</replaceable>\n" -" <replaceable>key</replaceable> = <replaceable>value</replaceable>\n" -" <replaceable>key2</replaceable> = <replaceable>value2,value3</replaceable>\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:24 -msgid "" -"The file has an ini-style syntax and consists of sections and parameters. A " -"section begins with the name of the section in square brackets and continues " -"until the next section begins. An example of section with single and multi-" -"valued parameters: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:36 -msgid "" -"The data types used are string (no quotes needed), integer and bool (with " -"values of <quote>TRUE/FALSE</quote>)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:41 -msgid "" -"A line comment starts with a hash sign (<quote>#</quote>) or a semicolon " -"(<quote>;</quote>)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:46 -msgid "" -"All sections can have an optional <replaceable>description</replaceable> " -"parameter. Its function is only as a label for the section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:52 -msgid "" -"<filename>sssd.conf</filename> must be a regular file, owned by root and " -"only root may read from or write to the file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:58 -msgid "SPECIAL SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:61 -msgid "The [sssd] section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><title> -#: sssd.conf.5.xml:70 sssd.conf.5.xml:1177 -msgid "Section parameters" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:72 -msgid "config_file_version (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:75 -msgid "" -"Indicates what is the syntax of the config file. SSSD 0.6.0 and later use " -"version 2." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:81 -msgid "services" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:84 -msgid "" -"Comma separated list of services that are started when sssd itself starts." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:88 -msgid "" -"Supported services: nss, pam <phrase condition=\"with_sudo\">, sudo</phrase>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:94 sssd.conf.5.xml:257 -msgid "reconnection_retries (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:97 sssd.conf.5.xml:260 -msgid "" -"Number of times services should attempt to reconnect in the event of a Data " -"Provider crash or restart before they give up" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:102 sssd.conf.5.xml:265 -msgid "Default: 3" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:107 -msgid "domains" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:110 -msgid "" -"A domain is a database containing user information. SSSD can use more " -"domains at the same time, but at least one must be configured or SSSD won't " -"start. This parameter described the list of domains in the order you want " -"them to be queried." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:120 -msgid "re_expression (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:123 -msgid "" -"Regular expression that describes how to parse the string containing user " -"name and domain into these components." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:127 -msgid "" -"Default: <quote>(?P<name>[^@]+)@?(?P<domain>[^@]*$)</quote> " -"which translates to \"the name is everything up to the <quote>@</quote> " -"sign, the domain everything after that\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:132 -msgid "" -"PLEASE NOTE: the support for non-unique named subpatterns is not available " -"on all platforms (e.g. RHEL5 and SLES10). Only platforms with libpcre " -"version 7 or higher can support non-unique named subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:139 -msgid "" -"PLEASE NOTE ALSO: older version of libpcre only support the Python syntax (?" -"P<name>) to label subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:146 -msgid "full_name_format (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:149 -msgid "" -"A <citerefentry> <refentrytitle>printf</refentrytitle> <manvolnum>3</" -"manvolnum> </citerefentry>-compatible format that describes how to translate " -"a (name, domain) tuple into a fully qualified name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:157 -msgid "Default: <quote>%1$s@%2$s</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:162 -msgid "try_inotify (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:165 -msgid "" -"SSSD monitors the state of resolv.conf to identify when it needs to update " -"its internal DNS resolver. By default, we will attempt to use inotify for " -"this, and will fall back to polling resolv.conf every five seconds if " -"inotify cannot be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:173 -msgid "" -"There are some limited situations where it is preferred that we should skip " -"even trying to use inotify. In these rare cases, this option should be set " -"to 'false'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:179 -msgid "" -"Default: true on platforms where inotify is supported. False on other " -"platforms." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:183 -msgid "" -"Note: this option will have no effect on platforms where inotify is " -"unavailable. On these platforms, polling will always be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:190 -msgid "krb5_rcache_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:193 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:197 -msgid "" -"This option accepts a special value __LIBKRB5_DEFAULTS__ that will instruct " -"SSSD to let libkrb5 decide the appropriate location for the replay cache." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:203 -msgid "" -"Default: Distribution-specific and specified at build-time. " -"(__LIBKRB5_DEFAULTS__ if not configured)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:63 -msgid "" -"Individual pieces of SSSD functionality are provided by special SSSD " -"services that are started and stopped together with SSSD. The services are " -"managed by a special service frequently called <quote>monitor</quote>. The " -"<quote>[sssd]</quote> section is used to configure the monitor as well as " -"some other important options like the identity domains. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:216 -msgid "SERVICES SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:218 -msgid "" -"Settings that can be used to configure different services are described in " -"this section. They should reside in the [<replaceable>$NAME</replaceable>] " -"section, for example, for NSS service, the section would be <quote>[nss]</" -"quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:225 -msgid "General service configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:227 -msgid "These options can be used to configure any service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:231 -msgid "debug_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:235 -msgid "debug_timestamps (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:238 -msgid "Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:241 sssd.conf.5.xml:376 sssd-ldap.5.xml:1328 -#: sssd-ldap.5.xml:1446 sssd-ipa.5.xml:206 sssd-ipa.5.xml:241 -msgid "Default: true" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:246 -msgid "debug_microseconds (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:249 -msgid "Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:252 sssd.conf.5.xml:641 sssd-ldap.5.xml:602 -#: sssd-ldap.5.xml:1260 sssd-ldap.5.xml:1397 sssd-ldap.5.xml:1795 -#: sssd-ipa.5.xml:123 sssd-ipa.5.xml:301 sssd-krb5.5.xml:235 -#: sssd-krb5.5.xml:269 sssd-krb5.5.xml:418 -msgid "Default: false" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:270 -msgid "command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:273 -msgid "" -"By default, the executable representing this service is called <command>sssd_" -"${service_name}</command>. This directive allows to change the executable " -"name for the service. In the vast majority of configurations, the default " -"values should suffice." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:281 -msgid "Default: <command>sssd_${service_name}</command>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:289 -msgid "NSS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:291 -msgid "" -"These options can be used to configure the Name Service Switch (NSS) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:296 -msgid "enum_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:299 -msgid "" -"How many seconds should nss_sss cache enumerations (requests for info about " -"all users)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:303 -msgid "Default: 120" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:308 -msgid "entry_cache_nowait_percentage (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:311 -msgid "" -"The entry cache can be set to automatically update entries in the background " -"if they are requested beyond a percentage of the entry_cache_timeout value " -"for the domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:317 -msgid "" -"For example, if the domain's entry_cache_timeout is set to 30s and " -"entry_cache_nowait_percentage is set to 50 (percent), entries that come in " -"after 15 seconds past the last cache update will be returned immediately, " -"but the SSSD will go and update the cache on its own, so that future " -"requests will not need to block waiting for a cache update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:327 -msgid "" -"Valid values for this option are 0-99 and represent a percentage of the " -"entry_cache_timeout for each domain. For performance reasons, this " -"percentage will never reduce the nowait timeout to less than 10 seconds. (0 " -"disables this feature)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:335 -msgid "Default: 50" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:340 -msgid "entry_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:343 -msgid "" -"Specifies for how many seconds nss_sss should cache negative cache hits " -"(that is, queries for invalid database entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:349 sssd.conf.5.xml:669 sssd-krb5.5.xml:223 -msgid "Default: 15" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:354 -msgid "filter_users, filter_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:357 -msgid "" -"Exclude certain users from being fetched from the sss NSS database. This is " -"particularly useful for system accounts. This option can also be set per-" -"domain or include fully-qualified names to filter only users from the " -"particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:364 -msgid "Default: root" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:369 -msgid "filter_users_in_groups (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:372 -msgid "" -"If you want filtered user still be group members set this option to false." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:381 -msgid "override_homedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:390 sssd-krb5.5.xml:166 -msgid "%u" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:391 sssd-krb5.5.xml:167 -msgid "login name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:394 sssd-krb5.5.xml:170 -msgid "%U" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:395 -msgid "UID number" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:398 sssd-krb5.5.xml:188 -msgid "%d" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:399 -msgid "domain name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:402 -msgid "%f" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:403 -msgid "fully qualified user name (user@domain)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:406 sssd-krb5.5.xml:200 -msgid "%%" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:407 sssd-krb5.5.xml:201 -msgid "a literal '%'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:384 -msgid "" -"Override the user's home directory. You can either provide an absolute value " -"or a template. In the template, the following sequences are substituted: " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:413 -msgid "This option can also be set per-domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:418 -msgid "allowed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:421 -msgid "" -"Restrict user shell to one of the listed values. The order of evaluation is:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:424 -msgid "1. If the shell is present in <quote>/etc/shells</quote>, it is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:428 -msgid "" -"2. If the shell is in the allowed_shells list but not in <quote>/etc/shells</" -"quote>, use the value of the shell_fallback parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:433 -msgid "" -"3. If the shell is not in the allowed_shells list and not in <quote>/etc/" -"shells</quote>, a nologin shell is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:438 -msgid "An empty string for shell is passed as-is to libc." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:441 -msgid "" -"The <quote>/etc/shells</quote> is only read on SSSD start up, which means " -"that a restart of the SSSD is required in case a new shell is installed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:445 -msgid "Default: Not set. The user shell is automatically used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:450 -msgid "vetoed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:453 -msgid "Replace any instance of these shells with the shell_fallback" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:458 -msgid "shell_fallback (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:461 -msgid "" -"The default shell to use if an allowed shell is not installed on the machine." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:465 -msgid "Default: /bin/sh" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:472 -msgid "PAM configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:474 -msgid "" -"These options can be used to configure the Pluggable Authentication Module " -"(PAM) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:479 -msgid "offline_credentials_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:482 -msgid "" -"If the authentication provider is offline, how long should we allow cached " -"logins (in days since the last successful online login)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:487 sssd.conf.5.xml:500 -msgid "Default: 0 (No limit)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:493 -msgid "offline_failed_login_attempts (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:496 -msgid "" -"If the authentication provider is offline, how many failed login attempts " -"are allowed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:506 -msgid "offline_failed_login_delay (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:509 -msgid "" -"The time in minutes which has to pass after offline_failed_login_attempts " -"has been reached before a new login attempt is possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:514 -msgid "" -"If set to 0 the user cannot authenticate offline if " -"offline_failed_login_attempts has been reached. Only a successful online " -"authentication can enable offline authentication again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:520 sssd.conf.5.xml:573 sssd.conf.5.xml:1093 -msgid "Default: 5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:526 -msgid "pam_verbosity (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:529 -msgid "" -"Controls what kind of messages are shown to the user during authentication. " -"The higher the number to more messages are displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:534 -msgid "Currently sssd supports the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:537 -msgid "<emphasis>0</emphasis>: do not show any message" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:540 -msgid "<emphasis>1</emphasis>: show only important messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:544 -msgid "<emphasis>2</emphasis>: show informational messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:547 -msgid "<emphasis>3</emphasis>: show all messages and debug information" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:551 sssd.8.xml:63 -msgid "Default: 1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:556 -msgid "pam_id_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:559 -msgid "" -"For any PAM request while SSSD is online, the SSSD will attempt to " -"immediately update the cached identity information for the user in order to " -"ensure that authentication takes place with the latest information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:565 -msgid "" -"A complete PAM conversation may perform multiple PAM requests, such as " -"account management and session opening. This option controls (on a per-" -"client-application basis) how long (in seconds) we can cache the identity " -"information to avoid excessive round-trips to the identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:579 -msgid "pam_pwd_expiration_warning (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:582 -msgid "Display a warning N days before the password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:585 -msgid "" -"Please note that the backend server has to provide information about the " -"expiration time of the password. If this information is missing, sssd " -"cannot display a warning." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:591 -msgid "Default: 7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:599 -msgid "SUDO configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:601 -msgid "These options can be used to configure the sudo service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:608 -msgid "sudo_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:611 -msgid "" -"For any sudo request that comes while SSSD is online, the SSSD will attempt " -"to update the cached rules in order to ensure that sudo has the latest " -"ruleset." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:617 -msgid "" -"The user may, however, run a couple of sudo commands successively, which " -"would trigger multiple LDAP requests. In order to speed up this use-case, " -"the sudo service maintains an in-memory cache that would be used for " -"performing fast replies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:624 -msgid "" -"This option controls how long (in seconds) can the sudo service cache rules " -"for a user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:628 -msgid "Default: 180" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:633 -msgid "sudo_timed (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:636 -msgid "" -"Whether or not to evaluate the sudoNotBefore and sudoNotAfter attributes " -"that implement time-dependent sudoers entries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:649 -msgid "AUTOFS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:651 -msgid "These options can be used to configure the autofs service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:659 -msgid "autofs_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:662 -msgid "" -"Specifies for how many seconds should the autofs responder negative cache " -"hits (that is, queries for invalid map entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:679 -msgid "DOMAIN SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:686 -msgid "min_id,max_id (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:689 -msgid "" -"UID and GID limits for the domain. If a domain contains an entry that is " -"outside these limits, it is ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:694 -msgid "" -"For users, this affects the primary GID limit. The user will not be returned " -"to NSS if either the UID or the primary GID is outside the range. For non-" -"primary group memberships, those that are in range will be reported as " -"expected." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:701 -msgid "Default: 1 for min_id, 0 (no limit) for max_id" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:707 -msgid "timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:710 -msgid "" -"Timeout in seconds between heartbeats for this domain. This is used to " -"ensure that the backend process is alive and capable of answering requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:715 sssd-ldap.5.xml:1131 -msgid "Default: 10" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:721 -msgid "enumerate (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:724 -msgid "" -"Determines if a domain can be enumerated. This parameter can have one of the " -"following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:728 -msgid "TRUE = Users and groups are enumerated" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:731 -msgid "FALSE = No enumerations for this domain" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:734 sssd.conf.5.xml:839 sssd.conf.5.xml:893 -msgid "Default: FALSE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:737 -msgid "" -"Note: Enabling enumeration has a moderate performance impact on SSSD while " -"enumeration is running. It may take up to several minutes after SSSD startup " -"to fully complete enumerations. During this time, individual requests for " -"information will go directly to LDAP, though it may be slow, due to the " -"heavy enumeration processing." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:747 -msgid "" -"While the first enumeration is running, requests for the complete user or " -"group lists may return no results until it completes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:752 -msgid "" -"Further, enabling enumeration may increase the time necessary to detect " -"network disconnection, as longer timeouts are required to ensure that " -"enumeration lookups are completed successfully. For more information, refer " -"to the man pages for the specific id_provider in use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:763 -msgid "entry_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:766 -msgid "" -"How many seconds should nss_sss consider entries valid before asking the " -"backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:770 -msgid "Default: 5400" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:776 -msgid "entry_cache_user_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:779 -msgid "" -"How many seconds should nss_sss consider user entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:783 sssd.conf.5.xml:796 sssd.conf.5.xml:809 -#: sssd.conf.5.xml:822 -msgid "Default: entry_cache_timeout" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:789 -msgid "entry_cache_group_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:792 -msgid "" -"How many seconds should nss_sss consider group entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:802 -msgid "entry_cache_netgroup_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:805 -msgid "" -"How many seconds should nss_sss consider netgroup entries valid before " -"asking the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:815 -msgid "entry_cache_service_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:818 -msgid "" -"How many seconds should nss_sss consider service entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:828 -msgid "cache_credentials (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:831 -msgid "Determines if user credentials are also cached in the local LDB cache" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:835 -msgid "User credentials are stored in a SHA512 hash, not in plaintext" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:844 -msgid "account_cache_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:847 -msgid "" -"Number of days entries are left in cache after last successful login before " -"being removed during a cleanup of the cache. 0 means keep forever. The " -"value of this parameter must be greater than or equal to " -"offline_credentials_expiration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:854 -msgid "Default: 0 (unlimited)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:860 -msgid "id_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:863 -msgid "The Data Provider identity backend to use for this domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:867 -msgid "Supported backends:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:870 -msgid "proxy: Support a legacy NSS provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:873 -msgid "local: SSSD internal local provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:876 -msgid "ldap: LDAP provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:882 -msgid "use_fully_qualified_names (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:885 -msgid "" -"If set to TRUE, all requests to this domain must use fully qualified names. " -"For example, if used in LOCAL domain that contains a \"test\" user, " -"<command>getent passwd test</command> wouldn't find the user while " -"<command>getent passwd test@LOCAL</command> would." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:898 -msgid "auth_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:901 -msgid "" -"The authentication provider used for the domain. Supported auth providers " -"are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:905 -msgid "" -"<quote>ldap</quote> for native LDAP authentication. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:912 -msgid "" -"<quote>krb5</quote> for Kerberos authentication. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:919 -msgid "" -"<quote>proxy</quote> for relaying authentication to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:922 -msgid "<quote>none</quote> disables authentication explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:925 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"authentication requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:931 -msgid "access_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:934 -msgid "" -"The access control provider used for the domain. There are two built-in " -"access providers (in addition to any included in installed backends) " -"Internal special providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:940 -msgid "<quote>permit</quote> always allow access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:943 -msgid "<quote>deny</quote> always deny access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:946 -msgid "" -"<quote>simple</quote> access control based on access or deny lists. See " -"<citerefentry> <refentrytitle>sssd-simple</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry> for more information on configuring the simple " -"access module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:953 -msgid "Default: <quote>permit</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:958 -msgid "chpass_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:961 -msgid "" -"The provider which should handle change password operations for the domain. " -"Supported change password providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:966 -msgid "" -"<quote>ipa</quote> to change a password stored in an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:974 -msgid "" -"<quote>ldap</quote> to change a password stored in a LDAP server. See " -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:982 -msgid "" -"<quote>krb5</quote> to change the Kerberos password. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:990 -msgid "" -"<quote>proxy</quote> for relaying password changes to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:994 -msgid "<quote>none</quote> disallows password changes explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:997 -msgid "" -"Default: <quote>auth_provider</quote> is used if it is set and can handle " -"change password requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1004 -msgid "sudo_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1010 -msgid "The SUDO provider used for the domain. Supported SUDO providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1014 -msgid "" -"<quote>ldap</quote> for rules stored in LDAP. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1021 -msgid "<quote>none</quote> disables SUDO explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1024 -msgid "Default: The value of <quote>id_provider</quote> is used if it is set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1030 -msgid "session_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1033 -msgid "" -"The provider which should handle loading of session settings. Supported " -"session providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1038 -msgid "" -"<quote>ipa</quote> to load session settings from an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1046 -msgid "<quote>none</quote> disallows fetching session settings explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1049 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"session loading requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1056 -msgid "lookup_family_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1059 -msgid "" -"Provides the ability to select preferred address family to use when " -"performing DNS lookups." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1063 -msgid "Supported values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1066 -msgid "ipv4_first: Try looking up IPv4 address, if that fails, try IPv6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1069 -msgid "ipv4_only: Only attempt to resolve hostnames to IPv4 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1072 -msgid "ipv6_first: Try looking up IPv6 address, if that fails, try IPv4" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1075 -msgid "ipv6_only: Only attempt to resolve hostnames to IPv6 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1078 -msgid "Default: ipv4_first" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1084 -msgid "dns_resolver_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1087 -msgid "" -"Defines the amount of time (in seconds) to wait for a reply from the DNS " -"resolver before assuming that it is unreachable. If this timeout is reached, " -"the domain will continue to operate in offline mode." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1099 -msgid "dns_discovery_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1102 -msgid "" -"If service discovery is used in the back end, specifies the domain part of " -"the service discovery DNS query." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1106 -msgid "Default: Use the domain part of machine's hostname" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1112 -msgid "override_gid (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1115 -msgid "Override the primary GID value with the one specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1121 -msgid "case_sensitive (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1124 -msgid "" -"Treat user and group names as case sensitive. At the moment, this option is " -"not supported in the local provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1129 -msgid "Default: True" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:681 -msgid "" -"These configuration options can be present in a domain configuration " -"section, that is, in a section called <quote>[domain/<replaceable>NAME</" -"replaceable>]</quote> <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1141 -msgid "proxy_pam_target (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1144 -msgid "The proxy target PAM proxies to." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1147 -msgid "" -"Default: not set by default, you have to take an existing pam configuration " -"or create a new one and add the service name here." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1155 -msgid "proxy_lib_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1158 -msgid "" -"The name of the NSS library to use in proxy domains. The NSS functions " -"searched for in the library are in the form of _nss_$(libName)_$(function), " -"for example _nss_files_getpwent." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1137 -msgid "" -"Options valid for proxy domains. <placeholder type=\"variablelist\" id=" -"\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:1170 -msgid "The local domain section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:1172 -msgid "" -"This section contains settings for domain that stores users and groups in " -"SSSD native database, that is, a domain that uses " -"<replaceable>id_provider=local</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1179 -msgid "default_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1182 -msgid "The default shell for users created with SSSD userspace tools." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1186 -msgid "Default: <filename>/bin/bash</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1191 -msgid "base_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1194 -msgid "" -"The tools append the login name to <replaceable>base_directory</replaceable> " -"and use that as the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1199 -msgid "Default: <filename>/home</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1204 -msgid "create_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1207 -msgid "" -"Indicate if a home directory should be created by default for new users. " -"Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1211 sssd.conf.5.xml:1223 -msgid "Default: TRUE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1216 -msgid "remove_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1219 -msgid "" -"Indicate if a home directory should be removed by default for deleted " -"users. Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1228 -msgid "homedir_umask (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1231 -msgid "" -"Used by <citerefentry> <refentrytitle>sss_useradd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry> to specify the default permissions " -"on a newly created home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1239 -msgid "Default: 077" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1244 -msgid "skel_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1247 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<citerefentry> <refentrytitle>sss_useradd</refentrytitle> <manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1257 -msgid "Default: <filename>/etc/skel</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1262 -msgid "mail_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1265 -msgid "" -"The mail spool directory. This is needed to manipulate the mailbox when its " -"corresponding user account is modified or deleted. If not specified, a " -"default value is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1272 -msgid "Default: <filename>/var/mail</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1277 -msgid "userdel_cmd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1280 -msgid "" -"The command that is run after a user is removed. The command us passed the " -"username of the user being removed as the first and only parameter. The " -"return code of the command is not taken into account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1286 -msgid "Default: None, no command is run" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:1296 sssd-ldap.5.xml:2064 sssd-simple.5.xml:126 -#: sssd-ipa.5.xml:544 sssd-krb5.5.xml:432 -msgid "EXAMPLE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:1302 -#, no-wrap -msgid "" -"[sssd]\n" -"domains = LDAP\n" -"services = nss, pam\n" -"config_file_version = 2\n" -"\n" -"[nss]\n" -"filter_groups = root\n" -"filter_users = root\n" -"\n" -"[pam]\n" -"\n" -"[domain/LDAP]\n" -"id_provider = ldap\n" -"ldap_uri = ldap://ldap.example.com\n" -"ldap_search_base = dc=example,dc=com\n" -"\n" -"auth_provider = krb5\n" -"krb5_server = kerberos.example.com\n" -"krb5_realm = EXAMPLE.COM\n" -"cache_credentials = true\n" -"\n" -"min_id = 10000\n" -"max_id = 20000\n" -"enumerate = False\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1298 -msgid "" -"The following example shows a typical SSSD config. It does not describe " -"configuration of the domains themselves - refer to documentation on " -"configuring domains for more details. <placeholder type=\"programlisting\" " -"id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1333 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>pam_sss</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ldap.5.xml:10 sssd-ldap.5.xml:16 -msgid "sssd-ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:23 -msgid "" -"This manual page describes the configuration of LDAP domains for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. Refer to the <quote>FILE FORMAT</quote> section of the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for detailed syntax information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:35 -msgid "You can configure SSSD to use more than one LDAP domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:38 -msgid "" -"LDAP back end supports id, auth, access and chpass providers. If you want to " -"authenticate against an LDAP server either TLS/SSL or LDAPS is required. " -"<command>sssd</command> <emphasis>does not</emphasis> support authentication " -"over an unencrypted channel. If the LDAP server is used only as an identity " -"provider, an encrypted channel is not needed. Please refer to " -"<quote>ldap_access_filter</quote> config option for more information about " -"using LDAP as an access provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:49 sssd-simple.5.xml:69 sssd-ipa.5.xml:64 -#: sssd-krb5.5.xml:63 -msgid "CONFIGURATION OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:60 -msgid "ldap_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:63 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference. Refer to the <quote>FAILOVER</" -"quote> section for more information on failover and server redundancy. If " -"not specified, service discovery is enabled. For more information, refer to " -"the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:70 -msgid "The format of the URI must match the format defined in RFC 2732:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:73 -msgid "ldap[s]://<host>[:port]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:76 -msgid "" -"For explicit IPv6 addresses, <host> must be enclosed in brackets []" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:79 -msgid "example: ldap://[fc00::126:25]:389" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:85 -msgid "ldap_chpass_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:88 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference to change the password of a user. " -"Refer to the <quote>FAILOVER</quote> section for more information on " -"failover and server redundancy." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:95 -msgid "To enable service discovery ldap_chpass_dns_service_name must be set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:99 -msgid "Default: empty, i.e. ldap_uri is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:105 -msgid "ldap_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:108 -msgid "The default base DN to use for performing LDAP user operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:112 -msgid "" -"Starting with SSSD 1.7.0, SSSD supports multiple search bases using the " -"syntax:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:116 -msgid "search_base[?scope?[filter][?search_base?scope?[filter]]*]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:119 -msgid "The scope can be one of \"base\", \"onelevel\" or \"subtree\"." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:122 -msgid "" -"The filter must be a valid LDAP search filter as specified by http://www." -"ietf.org/rfc/rfc2254.txt" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:126 -msgid "Examples:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:129 -msgid "" -"ldap_search_base = dc=example,dc=com (which is equivalent to) " -"ldap_search_base = dc=example,dc=com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:134 -msgid "" -"ldap_search_base = cn=host_specific,dc=example,dc=com?subtree?" -"(host=thishost)?dc=example.com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:137 -msgid "" -"Note: It is unsupported to have multiple search bases which reference " -"identically-named objects (for example, groups with the same name in two " -"different search bases). This will lead to unpredictable behavior on client " -"machines." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:144 -msgid "" -"Default: If not set, the value of the defaultNamingContext or namingContexts " -"attribute from the RootDSE of the LDAP server is used. If " -"defaultNamingContext does not exists or has an empty value namingContexts is " -"used. The namingContexts attribute must have a single value with the DN of " -"the search base of the LDAP server to make this work. Multiple values are " -"are not supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:158 -msgid "ldap_schema (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:161 -msgid "" -"Specifies the Schema Type in use on the target LDAP server. Depending on " -"the selected schema, the default attribute names retrieved from the servers " -"may vary. The way that some attributes are handled may also differ. Three " -"schema types are currently supported: rfc2307 rfc2307bis IPA The main " -"difference between these schema types is how group memberships are recorded " -"in the server. With rfc2307, group members are listed by name in the " -"<emphasis>memberUid</emphasis> attribute. With rfc2307bis and IPA, group " -"members are listed by DN and stored in the <emphasis>member</emphasis> " -"attribute." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:180 -msgid "Default: rfc2307" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:186 -msgid "ldap_default_bind_dn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:189 -msgid "The default bind DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:196 -msgid "ldap_default_authtok_type (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:199 -msgid "The type of the authentication token of the default bind DN." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:203 -msgid "The two mechanisms currently supported are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:206 -msgid "password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:209 -msgid "obfuscated_password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:212 -msgid "Default: password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:218 -msgid "ldap_default_authtok (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:221 -msgid "" -"The authentication token of the default bind DN. Only clear text passwords " -"are currently supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:228 -msgid "ldap_user_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:231 -msgid "The object class of a user entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:234 -msgid "Default: posixAccount" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:240 -msgid "ldap_user_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:243 -msgid "The LDAP attribute that corresponds to the user's login name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:247 -msgid "Default: uid" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:253 -msgid "ldap_user_uid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:256 -msgid "The LDAP attribute that corresponds to the user's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:260 -msgid "Default: uidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:266 -msgid "ldap_user_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:269 -msgid "The LDAP attribute that corresponds to the user's primary group id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:273 sssd-ldap.5.xml:740 -msgid "Default: gidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:279 -msgid "ldap_user_gecos (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:282 -msgid "The LDAP attribute that corresponds to the user's gecos field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:286 -msgid "Default: gecos" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:292 -msgid "ldap_user_home_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:295 -msgid "The LDAP attribute that contains the name of the user's home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:299 -msgid "Default: homeDirectory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:305 -msgid "ldap_user_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:308 -msgid "The LDAP attribute that contains the path to the user's default shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:312 -msgid "Default: loginShell" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:318 -msgid "ldap_user_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:321 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP user object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:325 sssd-ldap.5.xml:766 sssd-ldap.5.xml:878 -msgid "Default: nsUniqueId" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:331 -msgid "ldap_user_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:334 sssd-ldap.5.xml:775 sssd-ldap.5.xml:887 -msgid "" -"The LDAP attribute that contains timestamp of the last modification of the " -"parent object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:338 sssd-ldap.5.xml:779 sssd-ldap.5.xml:894 -msgid "Default: modifyTimestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:344 -msgid "ldap_user_shadow_last_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:347 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (date of " -"the last password change)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:357 -msgid "Default: shadowLastChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:363 -msgid "ldap_user_shadow_min (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:366 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (minimum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:375 -msgid "Default: shadowMin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:381 -msgid "ldap_user_shadow_max (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:384 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (maximum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:393 -msgid "Default: shadowMax" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:399 -msgid "ldap_user_shadow_warning (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:402 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password warning period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:412 -msgid "Default: shadowWarning" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:418 -msgid "ldap_user_shadow_inactive (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:421 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password inactivity period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:431 -msgid "Default: shadowInactive" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:437 -msgid "ldap_user_shadow_expire (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:440 -msgid "" -"When using ldap_pwd_policy=shadow or ldap_account_expire_policy=shadow, this " -"parameter contains the name of an LDAP attribute corresponding to its " -"<citerefentry> <refentrytitle>shadow</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> counterpart (account expiration date)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:450 -msgid "Default: shadowExpire" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:456 -msgid "ldap_user_krb_last_pwd_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:459 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time of last password change in " -"kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:465 -msgid "Default: krbLastPwdChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:471 -msgid "ldap_user_krb_password_expiration (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:474 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time when current password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:480 -msgid "Default: krbPasswordExpiration" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:486 -msgid "ldap_user_ad_account_expires (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:489 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the expiration time of the account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:494 -msgid "Default: accountExpires" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:500 -msgid "ldap_user_ad_user_account_control (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:503 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the user account control bit field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:508 -msgid "Default: userAccountControl" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:514 -msgid "ldap_ns_account_lock (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:517 -msgid "" -"When using ldap_account_expire_policy=rhds or equivalent, this parameter " -"determines if access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:522 -msgid "Default: nsAccountLock" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:528 -msgid "ldap_user_nds_login_disabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:531 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines if " -"access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:535 sssd-ldap.5.xml:549 -msgid "Default: loginDisabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:541 -msgid "ldap_user_nds_login_expiration_time (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:544 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines until " -"which date access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:555 -msgid "ldap_user_nds_login_allowed_time_map (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:558 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines the " -"hours of a day in a week when access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:563 -msgid "Default: loginAllowedTimeMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:569 -msgid "ldap_user_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:572 -msgid "" -"The LDAP attribute that contains the user's Kerberos User Principal Name " -"(UPN)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:576 -msgid "Default: krbPrincipalName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:582 -msgid "ldap_user_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:585 -msgid "The LDAP attribute that contains the user's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:592 -msgid "ldap_force_upper_case_realm (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:595 -msgid "" -"Some directory servers, for example Active Directory, might deliver the " -"realm part of the UPN in lower case, which might cause the authentication to " -"fail. Set this option to a non-zero value if you want to use an upper-case " -"realm." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:608 -msgid "ldap_enumeration_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:611 -msgid "" -"Specifies how many seconds SSSD has to wait before refreshing its cache of " -"enumerated records." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:616 sssd-ldap.5.xml:1808 -msgid "Default: 300" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:622 -msgid "ldap_purge_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:625 -msgid "" -"Determine how often to check the cache for inactive entries (such as groups " -"with no members and users who have never logged in) and remove them to save " -"space." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:631 -msgid "Setting this option to zero will disable the cache cleanup operation." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:635 -msgid "Default: 10800 (12 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:641 -msgid "ldap_user_fullname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:644 -msgid "The LDAP attribute that corresponds to the user's full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:648 sssd-ldap.5.xml:727 sssd-ldap.5.xml:828 -#: sssd-ldap.5.xml:919 sssd-ldap.5.xml:1663 sssd-ldap.5.xml:1881 -#: sssd-ipa.5.xml:422 -msgid "Default: cn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:654 -msgid "ldap_user_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:657 -msgid "The LDAP attribute that lists the user's group memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:661 sssd-ipa.5.xml:326 -msgid "Default: memberOf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:667 -msgid "ldap_user_authorized_service (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:670 -msgid "" -"If access_provider=ldap and ldap_access_order=authorized_service, SSSD will " -"use the presence of the authorizedService attribute in the user's LDAP entry " -"to determine access privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:677 -msgid "" -"An explicit deny (!svc) is resolved first. Second, SSSD searches for " -"explicit allow (svc) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:682 -msgid "Default: authorizedService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:688 -msgid "ldap_user_authorized_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:691 -msgid "" -"If access_provider=ldap and ldap_access_order=host, SSSD will use the " -"presence of the host attribute in the user's LDAP entry to determine access " -"privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:697 -msgid "" -"An explicit deny (!host) is resolved first. Second, SSSD searches for " -"explicit allow (host) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:702 -msgid "Default: host" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:708 -msgid "ldap_group_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:711 -msgid "The object class of a group entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:714 -msgid "Default: posixGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:720 -msgid "ldap_group_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:723 -msgid "The LDAP attribute that corresponds to the group name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:733 -msgid "ldap_group_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:736 -msgid "The LDAP attribute that corresponds to the group's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:746 -msgid "ldap_group_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:749 -msgid "The LDAP attribute that contains the names of the group's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:753 -msgid "Default: memberuid (rfc2307) / member (rfc2307bis)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:759 -msgid "ldap_group_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:762 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP group object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:772 -msgid "ldap_group_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:785 -msgid "ldap_group_nesting_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:788 -msgid "" -"If ldap_schema is set to a schema format that supports nested groups (e.g. " -"RFC2307bis), then this option controls how many levels of nesting SSSD will " -"follow. This option has no effect on the RFC2307 schema." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:795 -msgid "Default: 2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:801 -msgid "ldap_netgroup_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:804 -msgid "The object class of a netgroup entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:807 -msgid "In IPA provider, ipa_netgroup_object_class should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:811 -msgid "Default: nisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:817 -msgid "ldap_netgroup_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:820 -msgid "The LDAP attribute that corresponds to the netgroup name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:824 -msgid "In IPA provider, ipa_netgroup_name should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:834 -msgid "ldap_netgroup_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:837 -msgid "The LDAP attribute that contains the names of the netgroup's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:841 -msgid "In IPA provider, ipa_netgroup_member should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:845 -msgid "Default: memberNisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:851 -msgid "ldap_netgroup_triple (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:854 -msgid "" -"The LDAP attribute that contains the (host, user, domain) netgroup triples." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:858 sssd-ldap.5.xml:891 -msgid "This option is not available in IPA provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:861 -msgid "Default: nisNetgroupTriple" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:867 -msgid "ldap_netgroup_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:870 -msgid "" -"The LDAP attribute that contains the UUID/GUID of an LDAP netgroup object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:874 -msgid "In IPA provider, ipa_netgroup_uuid should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:884 -msgid "ldap_netgroup_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:900 -msgid "ldap_service_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:903 -msgid "The object class of a service entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:906 -msgid "Default: ipService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:912 -msgid "ldap_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:915 -msgid "" -"The LDAP attribute that contains the name of service attributes and their " -"aliases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:925 -msgid "ldap_service_port (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:928 -msgid "The LDAP attribute that contains the port managed by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:932 -msgid "Default: ipServicePort" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:938 -msgid "ldap_service_proto (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:941 -msgid "" -"The LDAP attribute that contains the protocols understood by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:945 -msgid "Default: ipServiceProtocol" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:951 -msgid "ldap_service_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:954 -msgid "An optional base DN to restrict service searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:958 sssd-ldap.5.xml:1918 sssd-ldap.5.xml:1937 -#: sssd-ldap.5.xml:1956 sssd-ldap.5.xml:2019 sssd-ldap.5.xml:2041 -#: sssd-ipa.5.xml:163 sssd-ipa.5.xml:187 -msgid "" -"See <quote>ldap_search_base</quote> for information about configuring " -"multiple search bases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:963 sssd-ldap.5.xml:1923 sssd-ldap.5.xml:1942 -#: sssd-ldap.5.xml:1961 sssd-ldap.5.xml:2024 sssd-ldap.5.xml:2046 -#: sssd-ipa.5.xml:173 sssd-ipa.5.xml:192 -msgid "Default: the value of <emphasis>ldap_search_base</emphasis>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:970 -msgid "ldap_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:973 -msgid "" -"Specifies the timeout (in seconds) that ldap searches are allowed to run " -"before they are cancelled and cached results are returned (and offline mode " -"is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:979 -msgid "" -"Note: this option is subject to change in future versions of the SSSD. It " -"will likely be replaced at some point by a series of timeouts for specific " -"lookup types." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:985 sssd-ldap.5.xml:1027 sssd-ldap.5.xml:1042 -msgid "Default: 6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:991 -msgid "ldap_enumeration_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:994 -msgid "" -"Specifies the timeout (in seconds) that ldap searches for user and group " -"enumerations are allowed to run before they are cancelled and cached results " -"are returned (and offline mode is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1001 -msgid "Default: 60" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1007 -msgid "ldap_network_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1010 -msgid "" -"Specifies the timeout (in seconds) after which the <citerefentry> " -"<refentrytitle>poll</refentrytitle> <manvolnum>2</manvolnum> </citerefentry>/" -"<citerefentry> <refentrytitle>select</refentrytitle> <manvolnum>2</" -"manvolnum> </citerefentry> following a <citerefentry> " -"<refentrytitle>connect</refentrytitle> <manvolnum>2</manvolnum> </" -"citerefentry> returns in case of no activity." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1033 -msgid "ldap_opt_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1036 -msgid "" -"Specifies a timeout (in seconds) after which calls to synchronous LDAP APIs " -"will abort if no response is received. Also controls the timeout when " -"communicating with the KDC in case of SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1048 -msgid "ldap_connection_expire_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1051 -msgid "" -"Specifies a timeout (in seconds) that a connection to an LDAP server will be " -"maintained. After this time, the connection will be re-established. If used " -"in parallel with SASL/GSSAPI, the sooner of the two values (this value vs. " -"the TGT lifetime) will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1059 -msgid "Default: 900 (15 minutes)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1065 -msgid "ldap_page_size (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1068 -msgid "" -"Specify the number of records to retrieve from LDAP in a single request. " -"Some LDAP servers enforce a maximum limit per-request." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1073 -msgid "Default: 1000" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1079 -msgid "ldap_disable_paging" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1082 -msgid "" -"Disable the LDAP paging control. This option should be used if the LDAP " -"server reports that it supports the LDAP paging control in its RootDSE but " -"it is not enabled or does not behave properly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1088 -msgid "" -"Example: OpenLDAP servers with the paging control module installed on the " -"server but not enabled will report it in the RootDSE but be unable to use it." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1094 -msgid "" -"Example: 389 DS has a bug where it can only support a one paging control at " -"a time on a single connection. On busy clients, this can result in some " -"requests being denied." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1103 -msgid "ldap_deref_threshold (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1106 -msgid "" -"Specify the number of group members that must be missing from the internal " -"cache in order to trigger a dereference lookup. If less members are missing, " -"they are looked up individually." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1112 -msgid "" -"You can turn off dereference lookups completely by setting the value to 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1116 -msgid "" -"A dereference lookup is a means of fetching all group members in a single " -"LDAP call. Different LDAP servers may implement different dereference " -"methods. The currently supported servers are 389/RHDS, OpenLDAP and Active " -"Directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1124 -msgid "" -"<emphasis>Note:</emphasis> If any of the search bases specifies a search " -"filter, then the dereference lookup performance enhancement will be disabled " -"regardless of this setting." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1137 -msgid "ldap_tls_reqcert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1140 -msgid "" -"Specifies what checks to perform on server certificates in a TLS session, if " -"any. It can be specified as one of the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1146 -msgid "" -"<emphasis>never</emphasis> = The client will not request or check any server " -"certificate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1150 -msgid "" -"<emphasis>allow</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, it will be ignored and the session proceeds normally." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1157 -msgid "" -"<emphasis>try</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, the session is immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1163 -msgid "" -"<emphasis>demand</emphasis> = The server certificate is requested. If no " -"certificate is provided, or a bad certificate is provided, the session is " -"immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1169 -msgid "<emphasis>hard</emphasis> = Same as <quote>demand</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1173 -msgid "Default: hard" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1179 -msgid "ldap_tls_cacert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1182 -msgid "" -"Specifies the file that contains certificates for all of the Certificate " -"Authorities that <command>sssd</command> will recognize." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1187 sssd-ldap.5.xml:1205 sssd-ldap.5.xml:1246 -msgid "" -"Default: use OpenLDAP defaults, typically in <filename>/etc/openldap/ldap." -"conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1194 -msgid "ldap_tls_cacertdir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1197 -msgid "" -"Specifies the path of a directory that contains Certificate Authority " -"certificates in separate individual files. Typically the file names need to " -"be the hash of the certificate followed by '.0'. If available, " -"<command>cacertdir_rehash</command> can be used to create the correct names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1212 -msgid "ldap_tls_cert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1215 -msgid "Specifies the file that contains the certificate for the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1219 sssd-ldap.5.xml:1231 sssd-ldap.5.xml:1979 -#: sssd-ldap.5.xml:2006 sssd-krb5.5.xml:359 -msgid "Default: not set" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1225 -msgid "ldap_tls_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1228 -msgid "Specifies the file that contains the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1237 -msgid "ldap_tls_cipher_suite (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1240 -msgid "" -"Specifies acceptable cipher suites. Typically this is a colon sperated " -"list. See <citerefentry><refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> for format." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1253 -msgid "ldap_id_use_start_tls (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1256 -msgid "" -"Specifies that the id_provider connection must also use <systemitem class=" -"\"protocol\">tls</systemitem> to protect the channel." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1266 -msgid "ldap_sasl_mech (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1269 -msgid "" -"Specify the SASL mechanism to use. Currently only GSSAPI is tested and " -"supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1273 sssd-ldap.5.xml:1428 -msgid "Default: none" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1279 -msgid "ldap_sasl_authid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1282 -msgid "" -"Specify the SASL authorization id to use. When GSSAPI is used, this " -"represents the Kerberos principal used for authentication to the directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1287 -msgid "Default: host/machine.fqdn@REALM" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1293 -msgid "ldap_sasl_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1296 -msgid "" -"If set to true, the LDAP library would perform a reverse lookup to " -"canonicalize the host name during a SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1301 -msgid "Default: false;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1307 -msgid "ldap_krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1310 -msgid "Specify the keytab to use when using SASL/GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1313 -msgid "Default: System keytab, normally <filename>/etc/krb5.keytab</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1319 -msgid "ldap_krb5_init_creds (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1322 -msgid "" -"Specifies that the id_provider should init Kerberos credentials (TGT). This " -"action is performed only if SASL is used and the mechanism selected is " -"GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1334 -msgid "ldap_krb5_ticket_lifetime (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1337 -msgid "Specifies the lifetime in seconds of the TGT if GSSAPI is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1341 -msgid "Default: 86400 (24 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1347 sssd-krb5.5.xml:74 -msgid "krb5_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1350 sssd-krb5.5.xml:77 -msgid "" -"Specifies the comma-separated list of IP addresses or hostnames of the " -"Kerberos servers to which SSSD should connect in the order of preference. " -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. An optional port number (preceded by a " -"colon) may be appended to the addresses or hostnames. If empty, service " -"discovery is enabled - for more information, refer to the <quote>SERVICE " -"DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1362 sssd-krb5.5.xml:89 -msgid "" -"When using service discovery for KDC or kpasswd servers, SSSD first searches " -"for DNS entries that specify _udp as the protocol and falls back to _tcp if " -"none are found." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1367 sssd-krb5.5.xml:94 -msgid "" -"This option was named <quote>krb5_kdcip</quote> in earlier releases of SSSD. " -"While the legacy name is recognized for the time being, users are advised to " -"migrate their config files to use <quote>krb5_server</quote> instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1376 sssd-ipa.5.xml:216 sssd-krb5.5.xml:103 -msgid "krb5_realm (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1379 -msgid "Specify the Kerberos REALM (for SASL/GSSAPI auth)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1382 -msgid "Default: System defaults, see <filename>/etc/krb5.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1388 sssd-ipa.5.xml:231 sssd-krb5.5.xml:409 -msgid "krb5_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1391 -msgid "" -"Specifies if the host principal should be canonicalized when connecting to " -"LDAP server. This feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1403 -msgid "ldap_pwd_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1406 -msgid "" -"Select the policy to evaluate the password expiration on the client side. " -"The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1411 -msgid "" -"<emphasis>none</emphasis> - No evaluation on the client side. This option " -"cannot disable server-side password policies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1416 -msgid "" -"<emphasis>shadow</emphasis> - Use <citerefentry><refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum></citerefentry> style attributes to " -"evaluate if the password has expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1422 -msgid "" -"<emphasis>mit_kerberos</emphasis> - Use the attributes used by MIT Kerberos " -"to determine if the password has expired. Use chpass_provider=krb5 to update " -"these attributes when the password is changed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1434 -msgid "ldap_referrals (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1437 -msgid "Specifies whether automatic referral chasing should be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1441 -msgid "" -"Please note that sssd only supports referral chasing when it is compiled " -"with OpenLDAP version 2.4.13 or higher." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1452 -msgid "ldap_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1455 -msgid "Specifies the service name to use when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1459 -msgid "Default: ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1465 -msgid "ldap_chpass_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1468 -msgid "" -"Specifies the service name to use to find an LDAP server which allows " -"password changes when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1473 -msgid "Default: not set, i.e. service discovery is disabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1479 -msgid "ldap_access_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1482 -msgid "" -"If using access_provider = ldap, this option is mandatory. It specifies an " -"LDAP search filter criteria that must be met for the user to be granted " -"access on this host. If access_provider = ldap and this option is not set, " -"it will result in all users being denied access. Use access_provider = allow " -"to change this default behavior." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1492 sssd-ldap.5.xml:1982 -msgid "Example:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1495 -#, no-wrap -msgid "" -"access_provider = ldap\n" -"ldap_access_filter = memberOf=cn=allowedusers,ou=Groups,dc=example,dc=com\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1499 -msgid "" -"This example means that access to this host is restricted to members of the " -"\"allowedusers\" group in ldap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1504 -msgid "" -"Offline caching for this feature is limited to determining whether the " -"user's last online login was granted access permission. If they were granted " -"access during their last login, they will continue to be granted access " -"while offline and vice-versa." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1512 sssd-ldap.5.xml:1562 -msgid "Default: Empty" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1518 -msgid "ldap_account_expire_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1521 -msgid "" -"With this option a client side evaluation of access control attributes can " -"be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1525 -msgid "" -"Please note that it is always recommended to use server side access control, " -"i.e. the LDAP server should deny the bind request with a suitable error code " -"even if the password is correct." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1532 -msgid "The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1535 -msgid "" -"<emphasis>shadow</emphasis>: use the value of ldap_user_shadow_expire to " -"determine if the account is expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1540 -msgid "" -"<emphasis>ad</emphasis>: use the value of the 32bit field " -"ldap_user_ad_user_account_control and allow access if the second bit is not " -"set. If the attribute is missing access is granted. Also the expiration time " -"of the account is checked." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1547 -msgid "" -"<emphasis>rhds</emphasis>, <emphasis>ipa</emphasis>, <emphasis>389ds</" -"emphasis>: use the value of ldap_ns_account_lock to check if access is " -"allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1553 -msgid "" -"<emphasis>nds</emphasis>: the values of " -"ldap_user_nds_login_allowed_time_map, ldap_user_nds_login_disabled and " -"ldap_user_nds_login_expiration_time are used to check if access is allowed. " -"If both attributes are missing access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1568 -msgid "ldap_access_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1571 -msgid "Comma separated list of access control options. Allowed values are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1575 -msgid "<emphasis>filter</emphasis>: use ldap_access_filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1578 -msgid "<emphasis>expire</emphasis>: use ldap_account_expire_policy" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1582 -msgid "" -"<emphasis>authorized_service</emphasis>: use the authorizedService attribute " -"to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1587 -msgid "<emphasis>host</emphasis>: use the host attribute to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1591 -msgid "Default: filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1594 -msgid "" -"Please note that it is a configuration error if a value is used more than " -"once." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1601 -msgid "ldap_deref (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1604 -msgid "" -"Specifies how alias dereferencing is done when performing a search. The " -"following options are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1609 -msgid "<emphasis>never</emphasis>: Aliases are never dereferenced." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1613 -msgid "" -"<emphasis>searching</emphasis>: Aliases are dereferenced in subordinates of " -"the base object, but not in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1618 -msgid "" -"<emphasis>finding</emphasis>: Aliases are only dereferenced when locating " -"the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1623 -msgid "" -"<emphasis>always</emphasis>: Aliases are dereferenced both in searching and " -"in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1628 -msgid "" -"Default: Empty (this is handled as <emphasis>never</emphasis> by the LDAP " -"client libraries)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:51 -msgid "" -"All of the common configuration options that apply to SSSD domains also " -"apply to LDAP domains. Refer to the <quote>DOMAIN SECTIONS</quote> section " -"of the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for full details. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1639 -msgid "SUDO OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1644 -msgid "ldap_sudorule_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1647 -msgid "The object class of a sudo rule entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1650 -msgid "Default: sudoRole" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1656 -msgid "ldap_sudorule_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1659 -msgid "The LDAP attribute that corresponds to the sudo rule name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1669 -msgid "ldap_sudorule_command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1672 -msgid "The LDAP attribute that corresponds to the command name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1676 -msgid "Default: sudoCommand" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1682 -msgid "ldap_sudorule_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1685 -msgid "" -"The LDAP attribute that corresponds to the host name (or host IP address, " -"host IP network, or host netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1690 -msgid "Default: sudoHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1696 -msgid "ldap_sudorule_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1699 -msgid "" -"The LDAP attribute that corresponds to the user name (or UID, group name or " -"user's netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1703 -msgid "Default: sudoUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1709 -msgid "ldap_sudorule_option (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1712 -msgid "The LDAP attribute that corresponds to the sudo options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1716 -msgid "Default: sudoOption" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1722 -msgid "ldap_sudorule_runasuser (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1725 -msgid "" -"The LDAP attribute that corresponds to the user name that commands may be " -"run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1729 -msgid "Default: sudoRunAsUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1735 -msgid "ldap_sudorule_runasgroup (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1738 -msgid "" -"The LDAP attribute that corresponds to the group name or group GID that " -"commands may be run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1742 -msgid "Default: sudoRunAsGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1748 -msgid "ldap_sudorule_notbefore (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1751 -msgid "" -"The LDAP attribute that corresponds to the start date/time for when the sudo " -"rule is valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1755 -msgid "Default: sudoNotBefore" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1761 -msgid "ldap_sudorule_notafter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1764 -msgid "" -"The LDAP attribute that corresponds to the expiration date/time, after which " -"the sudo rule will no longer be valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1769 -msgid "Default: sudoNotAfter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1775 -msgid "ldap_sudorule_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1778 -msgid "The LDAP attribute that corresponds to the ordering index of the rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1782 -msgid "Default: sudoOrder" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1788 -msgid "ldap_sudo_refresh_enabled (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1791 -msgid "" -"Enables periodical download of all sudo rules. The cache is purged before " -"each update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1801 -msgid "ldap_sudo_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1804 -msgid "" -"How many seconds SSSD has to wait before refreshing its cache of sudo rules." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1642 -msgid "<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1815 -msgid "" -"This manual page only describes attribute name mapping. For detailed " -"explanation of sudo related attribute semantics, see <citerefentry> " -"<refentrytitle>sudoers.ldap</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1825 -msgid "AUTOFS OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1827 -msgid "" -"Please note that the default values correspond to the default schema which " -"is RFC2307." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1834 -msgid "ldap_autofs_map_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1837 sssd-ldap.5.xml:1863 -msgid "The object class of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1840 sssd-ldap.5.xml:1867 -msgid "Default: automountMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1847 -msgid "ldap_autofs_map_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1850 -msgid "The name of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1853 -msgid "Default: ou" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1860 -msgid "ldap_autofs_entry_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1874 -msgid "ldap_autofs_entry_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1877 sssd-ldap.5.xml:1891 -msgid "" -"The key of an automount entry in LDAP. The entry usually corresponds to a " -"mount point." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1888 -msgid "ldap_autofs_entry_value (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1895 -msgid "Default: automountInformation" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1832 -msgid "" -"<placeholder type=\"variablelist\" id=\"0\"/> <placeholder type=" -"\"variablelist\" id=\"1\"/> <placeholder type=\"variablelist\" id=\"2\"/> " -"<placeholder type=\"variablelist\" id=\"3\"/> <placeholder type=" -"\"variablelist\" id=\"4\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1904 -msgid "ADVANCED OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1911 -msgid "ldap_netgroup_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1914 -msgid "" -"An optional base DN to restrict netgroup searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1930 -msgid "ldap_user_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1933 -msgid "An optional base DN to restrict user searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1949 -msgid "ldap_group_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1952 -msgid "An optional base DN to restrict group searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1968 -msgid "ldap_user_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1971 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict user searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1975 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_user_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1985 -#, no-wrap -msgid "" -" ldap_user_search_filter = (loginShell=/bin/tcsh)\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1988 -msgid "" -"This filter would restrict user searches to users that have their shell set " -"to /bin/tcsh." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1995 -msgid "ldap_group_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1998 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict group searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2002 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_group_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2012 -msgid "ldap_sudo_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2015 -msgid "" -"An optional base DN to restrict sudo rules searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2034 -msgid "ldap_autofs_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2037 -msgid "" -"An optional base DN to restrict automounter searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1906 -msgid "" -"These options are supported by LDAP domains, but they should be used with " -"caution. Please include them in your configuration only if you know what you " -"are doing. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2066 -msgid "" -"The following example assumes that SSSD is correctly configured and LDAP is " -"set to one of the domains in the <replaceable>[domains]</replaceable> " -"section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ldap.5.xml:2072 -#, no-wrap -msgid "" -" [domain/LDAP]\n" -" id_provider = ldap\n" -" auth_provider = ldap\n" -" ldap_uri = ldap://ldap.mydomain.org\n" -" ldap_search_base = dc=mydomain,dc=org\n" -" ldap_tls_reqcert = demand\n" -" cache_credentials = true\n" -" enumerate = true\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2071 sssd-simple.5.xml:134 sssd-ipa.5.xml:552 -#: sssd-krb5.5.xml:441 -msgid "<placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:2085 sssd_krb5_locator_plugin.8.xml:61 -msgid "NOTES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2087 -msgid "" -"The descriptions of some of the configuration options in this manual page " -"are based on the <citerefentry> <refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page from the OpenLDAP 2.4 " -"distribution." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2098 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <refentryinfo> -#: pam_sss.8.xml:8 include/upstream.xml:2 -msgid "" -"<productname>SSSD</productname> <orgname>The SSSD upstream - http://" -"fedorahosted.org/sssd</orgname>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: pam_sss.8.xml:13 pam_sss.8.xml:18 -msgid "pam_sss" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: pam_sss.8.xml:19 -msgid "PAM module for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: pam_sss.8.xml:24 -msgid "" -"<command>pam_sss.so</command> <arg choice='opt'> <replaceable>quiet</" -"replaceable> </arg> <arg choice='opt'> <replaceable>forward_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_first_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_authtok</" -"replaceable> </arg> <arg choice='opt'> <replaceable>retry=N</replaceable> </" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:45 -msgid "" -"<command>pam_sss.so</command> is the PAM interface to the System Security " -"Services daemon (SSSD). Errors and results are logged through <command>syslog" -"(3)</command> with the LOG_AUTHPRIV facility." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:55 -msgid "<option>quiet</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:58 -msgid "Suppress log messages for unknown users." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:63 -msgid "<option>forward_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:66 -msgid "" -"If <option>forward_pass</option> is set the entered password is put on the " -"stack for other PAM modules to use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:73 -msgid "<option>use_first_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:76 -msgid "" -"The argument use_first_pass forces the module to use a previous stacked " -"modules password and will never prompt the user - if no password is " -"available or the password is not appropriate, the user will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:84 -msgid "<option>use_authtok</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:87 -msgid "" -"When password changing enforce the module to set the new password to the one " -"provided by a previously stacked password module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:94 -msgid "<option>retry=N</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:97 -msgid "" -"If specified the user is asked another N times for a password if " -"authentication fails. Default is 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:99 -msgid "" -"Please note that this option might not work as expected if the application " -"calling PAM handles the user dialog on its own. A typical example is " -"<command>sshd</command> with <option>PasswordAuthentication</option>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:110 -msgid "MODULE TYPES PROVIDED" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:111 -msgid "" -"All module types (<option>account</option>, <option>auth</option>, " -"<option>password</option> and <option>session</option>) are provided." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:117 -msgid "FILES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:118 -msgid "" -"If a password reset by root fails, because the corresponding SSSD provider " -"does not support password resets, an individual message can be displayed. " -"This message can e.g. contain instructions about how to reset a password." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:123 -msgid "" -"The message is read from the file <filename>pam_sss_pw_reset_message.LOC</" -"filename> where LOC stands for a locale string returned by <citerefentry> " -"<refentrytitle>setlocale</refentrytitle><manvolnum>3</manvolnum> </" -"citerefentry>. If there is no matching file the content of " -"<filename>pam_sss_pw_reset_message.txt</filename> is displayed. Root must be " -"the owner of the files and only root may have read and write permissions " -"while all other users must have only read permissions." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:133 -msgid "" -"These files are searched in the directory <filename>/etc/sssd/customize/" -"DOMAIN_NAME/</filename>. If no matching file is present a generic message is " -"displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:141 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd_krb5_locator_plugin.8.xml:10 sssd_krb5_locator_plugin.8.xml:15 -msgid "sssd_krb5_locator_plugin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:22 -msgid "" -"The Kerberos locator plugin <command>sssd_krb5_locator_plugin</command> is " -"used by the Kerberos provider of <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry> to tell the Kerberos " -"libraries what Realm and which KDC to use. Typically this is done in " -"<citerefentry> <refentrytitle>krb5.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> which is always read by the Kerberos libraries. " -"To simplify the configuration the Realm and the KDC can be defined in " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> as described in <citerefentry> " -"<refentrytitle>sssd-krb5.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry> puts the Realm and the name or IP address of the KDC into " -"the environment variables SSSD_KRB5_REALM and SSSD_KRB5_KDC respectively. " -"When <command>sssd_krb5_locator_plugin</command> is called by the kerberos " -"libraries it reads and evaluates these variables and returns them to the " -"libraries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:63 -msgid "" -"Not all Kerberos implementations support the use of plugins. If " -"<command>sssd_krb5_locator_plugin</command> is not available on your system " -"you have to edit /etc/krb5.conf to reflect your Kerberos setup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:69 -msgid "" -"If the environment variable SSSD_KRB5_LOCATOR_DEBUG is set to any value " -"debug messages will be sent to stderr." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:77 -msgid "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-simple.5.xml:10 sssd-simple.5.xml:16 -msgid "sssd-simple" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd-simple.5.xml:17 -msgid "the configuration file for SSSD's 'simple' access-control provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:24 -msgid "" -"This manual page describes the configuration of the simple access-control " -"provider for <citerefentry> <refentrytitle>sssd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry>. For a detailed syntax reference, " -"refer to the <quote>FILE FORMAT</quote> section of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:38 -msgid "" -"The simple access provider grants or denies access based on an access or " -"deny list of user or group names. The following rules apply:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:43 -msgid "If all lists are empty, access is granted" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:47 -msgid "" -"If any list is provided, the order of evaluation is allow,deny. This means " -"that any matching deny rule will supersede any matched allow rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:54 -msgid "" -"If either or both \"allow\" lists are provided, all users are denied unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:60 -msgid "" -"If only \"deny\" lists are provided, all users are granted access unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:78 -msgid "simple_allow_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:81 -msgid "Comma separated list of users who are allowed to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:88 -msgid "simple_deny_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:91 -msgid "Comma separated list of users who are explicitly denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:97 -msgid "simple_allow_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:100 -msgid "" -"Comma separated list of groups that are allowed to log in. This applies only " -"to groups within this SSSD domain. Local groups are not evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:108 -msgid "simple_deny_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:111 -msgid "" -"Comma separated list of groups that are explicitly denied access. This " -"applies only to groups within this SSSD domain. Local groups are not " -"evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:70 sssd-ipa.5.xml:65 -msgid "" -"Refer to the section <quote>DOMAIN SECTIONS</quote> of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page for details on the configuration of an SSSD " -"domain. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:120 -msgid "" -"Please note that it is an configuration error if both, simple_allow_users " -"and simple_deny_users, are defined." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:128 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the simple access provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-simple.5.xml:135 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" access_provider = simple\n" -" simple_allow_users = user1, user2\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:145 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ipa.5.xml:10 sssd-ipa.5.xml:16 -msgid "sssd-ipa" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:23 -msgid "" -"This manual page describes the configuration of the IPA provider for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. For a detailed syntax reference, refer to the <quote>FILE " -"FORMAT</quote> section of the <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:36 -msgid "" -"The IPA provider is a back end used to connect to an IPA server. (Refer to " -"the freeipa.org web site for information about IPA servers.) This provider " -"requires that the machine be joined to the IPA domain; configuration is " -"almost entirely self-discovered and obtained directly from the server." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:43 -msgid "" -"The IPA provider accepts the same options used by the <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> identity provider and the <citerefentry> <refentrytitle>sssd-" -"krb5</refentrytitle> <manvolnum>5</manvolnum> </citerefentry> authentication " -"provider with some exceptions described below." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:55 -msgid "" -"However, it is neither necessary nor recommended to set these options. IPA " -"provider can also be used as an access and chpass provider. As an access " -"provider it uses HBAC (host-based access control) rules. Please refer to " -"freeipa.org for more information about HBAC. No configuration of access " -"provider is required on the client side." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:72 -msgid "ipa_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:75 -msgid "" -"Specifies the name of the IPA domain. This is optional. If not provided, " -"the configuration domain name is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:83 -msgid "ipa_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:86 -msgid "" -"The comma-separated list of IP addresses or hostnames of the IPA servers to " -"which SSSD should connect in the order of preference. For more information " -"on failover and server redundancy, see the <quote>FAILOVER</quote> section. " -"This is optional if autodiscovery is enabled. For more information on " -"service discovery, refer to the the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:99 -msgid "ipa_hostname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:102 -msgid "" -"Optional. May be set on machines where the hostname(5) does not reflect the " -"fully qualified name used in the IPA domain to identify this host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:110 -msgid "ipa_dyndns_update (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:113 -msgid "" -"Optional. This option tells SSSD to automatically update the DNS server " -"built into FreeIPA v2 with the IP address of this client." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:118 -msgid "" -"NOTE: On older systems (such as RHEL 5), for this behavior to work reliably, " -"the default Kerberos realm must be set properly in /etc/krb5.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:129 -msgid "ipa_dyndns_iface (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:132 -msgid "" -"Optional. Applicable only when ipa_dyndns_update is true. Choose the " -"interface whose IP address should be used for dynamic DNS updates." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:137 -msgid "Default: Use the IP address of the IPA LDAP connection" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:143 -msgid "ipa_hbac_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:146 -msgid "Optional. Use the given string as search base for HBAC related objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:150 -msgid "Default: Use base DN" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:156 -msgid "ipa_host_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:159 -msgid "Optional. Use the given string as search base for host objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:168 -msgid "" -"If filter is given in any of search bases and " -"<emphasis>ipa_hbac_support_srchost</emphasis> is set to False, the filter " -"will be ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:180 -msgid "ipa_selinux_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:183 -msgid "Optional. Use the given string as search base for SELinux user maps." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:199 sssd-krb5.5.xml:229 -msgid "krb5_validate (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:202 sssd-krb5.5.xml:232 -msgid "" -"Verify with the help of krb5_keytab that the TGT obtained has not been " -"spoofed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:209 -msgid "" -"Note that this default differs from the traditional Kerberos provider back " -"end." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:219 -msgid "" -"The name of the Kerberos realm. This is optional and defaults to the value " -"of <quote>ipa_domain</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:223 -msgid "" -"The name of the Kerberos realm has a special meaning in IPA - it is " -"converted into the base DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:234 -msgid "" -"Specifies if the host and user principal should be canonicalized when " -"connecting to IPA LDAP and also for AS requests. This feature is available " -"with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:247 -msgid "ipa_hbac_refresh (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:250 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server. " -"This will reduce the latency and load on the IPA server if there are many " -"access-control requests made in a short period." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:257 -msgid "Default: 5 (seconds)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:262 -msgid "ipa_hbac_treat_deny_as (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:265 -msgid "" -"This option specifies how to treat the deprecated DENY-type HBAC rules. As " -"of FreeIPA v2.1, DENY rules are no longer supported on the server. All users " -"of FreeIPA will need to migrate their rules to use only the ALLOW rules. The " -"client will support two modes of operation during this transition period:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:274 -msgid "" -"<emphasis>DENY_ALL</emphasis>: If any HBAC DENY rules are detected, all " -"users will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:279 -msgid "" -"<emphasis>IGNORE</emphasis>: SSSD will ignore any DENY rules. Be very " -"careful with this option, as it may result in opening unintended access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:284 -msgid "Default: DENY_ALL" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:289 -msgid "ipa_hbac_support_srchost (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:292 -msgid "" -"If this is set to false, then srchost as given to SSSD by PAM will be " -"ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:296 -msgid "" -"Note that if set to <emphasis>False</emphasis>, this option casuses filters " -"given in <emphasis>ipa_host_search_base</emphasis> to be ignored;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:307 -msgid "ipa_automount_location (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:310 -msgid "The automounter location this IPA client will be using" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:313 -msgid "Default: The location named \"default\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:319 -msgid "ipa_netgroup_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:322 -msgid "The LDAP attribute that lists netgroup's memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:331 -msgid "ipa_netgroup_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:334 -msgid "" -"The LDAP attribute that lists system users and groups that are direct " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:339 sssd-ipa.5.xml:434 -msgid "Default: memberUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:344 -msgid "ipa_netgroup_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:347 -msgid "" -"The LDAP attribute that lists hosts and host groups that are direct members " -"of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:351 sssd-ipa.5.xml:446 -msgid "Default: memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:356 -msgid "ipa_netgroup_member_ext_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:359 -msgid "" -"The LDAP attribute that lists FQDNs of hosts and host groups that are " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:363 -msgid "Default: externalHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:368 -msgid "ipa_netgroup_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:371 -msgid "The LDAP attribute that contains NIS domain name of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:375 -msgid "Default: nisDomainName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:381 -msgid "ipa_host_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:384 sssd-ipa.5.xml:407 -msgid "The object class of a host entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:387 sssd-ipa.5.xml:410 -msgid "Default: ipaHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:392 -msgid "ipa_host_fqdn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:395 -msgid "The LDAP attribute that contains FQDN of the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:398 -msgid "Default: fqdn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:404 -msgid "ipa_selinux_usermap_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:415 -msgid "ipa_selinux_usermap_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:418 -msgid "The LDAP attribute that contains the name of SELinux usermap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:427 -msgid "ipa_selinux_usermap_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:430 -msgid "" -"The LDAP attribute that contains all users / groups this rule match against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:439 -msgid "ipa_selinux_usermap_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:442 -msgid "" -"The LDAP attribute that contains all hosts / hostgroups this rule match " -"against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:451 -msgid "ipa_selinux_usermap_see_also (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:454 -msgid "" -"The LDAP attribute that contains DN of HBAC rule which can be used for " -"matching instead of memberUser and memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:459 -msgid "Default: seeAlso" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:464 -msgid "ipa_selinux_usermap_selinux_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:467 -msgid "The LDAP attribute that contains SELinux user string itself." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:471 -msgid "Default: ipaSELinuxUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:476 -msgid "ipa_selinux_usermap_enabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:479 -msgid "" -"The LDAP attribute that contains whether or not is user map enabled for " -"usage." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:483 -msgid "Default: ipaEnabledFlag" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:488 -msgid "ipa_selinux_usermap_user_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:491 -msgid "The LDAP attribute that contains user category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:495 -msgid "Default: userCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:500 -msgid "ipa_selinux_usermap_host_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:503 -msgid "The LDAP attribute that contains host category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:507 -msgid "Default: hostCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:512 -msgid "ipa_selinux_usermap_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:515 -msgid "The LDAP attribute that contains unique ID of the user map." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:519 -msgid "Default: ipaUniqueID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:524 -msgid "ipa_host_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:527 -msgid "The LDAP attribute that contains the host's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:531 -msgid "Default: ipaSshPubKey" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:546 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the ipa provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ipa.5.xml:553 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" id_provider = ipa\n" -" ipa_server = ipaserver.example.com\n" -" ipa_hostname = myhost.example.com\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:564 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.8.xml:10 sssd.8.xml:15 -msgid "sssd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.8.xml:16 -msgid "System Security Services Daemon" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sssd.8.xml:21 -msgid "" -"<command>sssd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:31 -msgid "" -"<command>SSSD</command> provides a set of daemons to manage access to remote " -"directories and authentication mechanisms. It provides an NSS and PAM " -"interface toward the system and a pluggable backend system to connect to " -"multiple different account sources as well as D-Bus interface. It is also " -"the basis to provide client auditing and policy services for projects like " -"FreeIPA. It provides a more robust database to store local users as well as " -"extended user data." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:46 -msgid "" -"<option>-d</option>,<option>--debug-level</option> <replaceable>LEVEL</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:53 -msgid "<option>--debug-timestamps=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:57 -msgid "<emphasis>1</emphasis>: Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:60 -msgid "<emphasis>0</emphasis>: Disable timestamp in the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:69 -msgid "<option>--debug-microseconds=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:73 -msgid "" -"<emphasis>1</emphasis>: Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:76 -msgid "<emphasis>0</emphasis>: Disable microseconds in timestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:79 -msgid "Default: 0" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:85 -msgid "<option>-f</option>,<option>--debug-to-files</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:89 -msgid "" -"Send the debug output to files instead of stderr. By default, the log files " -"are stored in <filename>/var/log/sssd</filename> and there are separate log " -"files for every SSSD service and domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:97 -msgid "<option>-D</option>,<option>--daemon</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:101 -msgid "Become a daemon after starting up." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:107 -msgid "<option>-i</option>,<option>--interactive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:111 -msgid "Run in the foreground, don't become a daemon." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:117 sss_debuglevel.8.xml:42 -msgid "<option>-c</option>,<option>--config</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:121 sss_debuglevel.8.xml:46 -msgid "" -"Specify a non-default config file. The default is <filename>/etc/sssd/sssd." -"conf</filename>. For reference on the config file syntax and options, " -"consult the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:135 -msgid "<option>--version</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:139 -msgid "Print version number and exit." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.8.xml:147 -msgid "Signals" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:150 -msgid "SIGTERM/SIGINT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:153 -msgid "" -"Informs the SSSD to gracefully terminate all of its child processes and then " -"shut down the monitor." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:159 -msgid "SIGHUP" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:162 -msgid "" -"Tells the SSSD to stop writing to its current debug file descriptors and to " -"close and reopen them. This is meant to facilitate log rolling with programs " -"like logrotate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:170 -msgid "SIGUSR1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:173 -msgid "" -"Tells the SSSD to simulate offline operation for one minute. This is mostly " -"useful for testing purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:179 -msgid "SIGUSR2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:182 -msgid "" -"Tells the SSSD to go online immediately. This is mostly useful for testing " -"purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:193 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_obfuscate.8.xml:10 sss_obfuscate.8.xml:15 -msgid "sss_obfuscate" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_obfuscate.8.xml:16 -msgid "obfuscate a clear text password" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_obfuscate.8.xml:21 -msgid "" -"<command>sss_obfuscate</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>[PASSWORD]</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:32 -msgid "" -"<command>sss_obfuscate</command> converts a given password into human-" -"unreadable format and places it into appropriate domain section of the SSSD " -"config file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:37 -msgid "" -"The cleartext password is read from standard input or entered " -"interactively. The obfuscated password is put into " -"<quote>ldap_default_authtok</quote> parameter of a given SSSD domain and the " -"<quote>ldap_default_authtok_type</quote> parameter is set to " -"<quote>obfuscated_password</quote>. Refer to <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more details on these parameters." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:49 -msgid "" -"Please note that obfuscating the password provides <emphasis>no real " -"security benefit</emphasis> as it is still possible for an attacker to " -"reverse-engineer the password back. Using better authentication mechanisms " -"such as client side certificates or GSSAPI is <emphasis>strongly</emphasis> " -"advised." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:63 -msgid "<option>-s</option>,<option>--stdin</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:67 -msgid "The password to obfuscate will be read from standard input." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:74 sss_ssh_authorizedkeys.1.xml:82 -#: sss_ssh_knownhostsproxy.1.xml:81 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>DOMAIN</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:79 -msgid "" -"The SSSD domain to use the password in. The default name is <quote>default</" -"quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:86 -msgid "" -"<option>-f</option>,<option>--file</option> <replaceable>FILE</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:91 -msgid "Read the config file specified by the positional parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:95 -msgid "Default: <filename>/etc/sssd/sssd.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:105 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_useradd.8.xml:10 sss_useradd.8.xml:15 -msgid "sss_useradd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_useradd.8.xml:16 -msgid "create a new user" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_useradd.8.xml:21 -msgid "" -"<command>sss_useradd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:32 -msgid "" -"<command>sss_useradd</command> creates a new user account using the values " -"specified on the command line plus the default values from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:43 -msgid "" -"<option>-u</option>,<option>--uid</option> <replaceable>UID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:48 -msgid "" -"Set the UID of the user to the value of <replaceable>UID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:55 sss_usermod.8.xml:43 -msgid "" -"<option>-c</option>,<option>--gecos</option> <replaceable>COMMENT</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:60 sss_usermod.8.xml:48 -msgid "" -"Any text string describing the user. Often used as the field for the user's " -"full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:67 sss_usermod.8.xml:55 -msgid "" -"<option>-h</option>,<option>--home</option> <replaceable>HOME_DIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:72 -msgid "" -"The home directory of the user account. The default is to append the " -"<replaceable>LOGIN</replaceable> name to <filename>/home</filename> and use " -"that as the home directory. The base that is prepended before " -"<replaceable>LOGIN</replaceable> is tunable with <quote>user_defaults/" -"baseDirectory</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:82 sss_usermod.8.xml:66 -msgid "" -"<option>-s</option>,<option>--shell</option> <replaceable>SHELL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:87 -msgid "" -"The user's login shell. The default is currently <filename>/bin/bash</" -"filename>. The default can be changed with <quote>user_defaults/" -"defaultShell</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:96 -msgid "" -"<option>-G</option>,<option>--groups</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:101 -msgid "A list of existing groups this user is also a member of." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:107 -msgid "<option>-m</option>,<option>--create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:111 -msgid "" -"Create the user's home directory if it does not exist. The files and " -"directories contained in the skeleton directory (which can be defined with " -"the -k option or in the config file) will be copied to the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:121 -msgid "<option>-M</option>,<option>--no-create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:125 -msgid "" -"Do not create the user's home directory. Overrides configuration settings." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:132 -msgid "" -"<option>-k</option>,<option>--skel</option> <replaceable>SKELDIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:137 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<command>sss_useradd</command>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:143 -msgid "" -"This option is only valid if the <option>-m</option> (or <option>--create-" -"home</option>) option is specified, or creation of home directories is set " -"to TRUE in the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:152 sss_usermod.8.xml:124 -msgid "" -"<option>-Z</option>,<option>--selinux-user</option> " -"<replaceable>SELINUX_USER</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:157 -msgid "" -"The SELinux user for the user's login. If not specified, the system default " -"will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:169 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-krb5.5.xml:10 sssd-krb5.5.xml:16 -msgid "sssd-krb5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:23 -msgid "" -"This manual page describes the configuration of the Kerberos 5 " -"authentication backend for <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry>. For a detailed " -"syntax reference, please refer to the <quote>FILE FORMAT</quote> section of " -"the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:36 -msgid "" -"The Kerberos 5 authentication backend contains auth and chpass providers. It " -"must be paired with identity provider in order to function properly (for " -"example, id_provider = ldap). Some information required by the Kerberos 5 " -"authentication backend must be provided by the identity provider, such as " -"the user's Kerberos Principal Name (UPN). The configuration of the identity " -"provider should have an entry to specify the UPN. Please refer to the man " -"page for the applicable identity provider for details on how to configure " -"this." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:47 -msgid "" -"This backend also provides access control based on the .k5login file in the " -"home directory of the user. See <citerefentry> <refentrytitle>.k5login</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry> for more details. " -"Please note that an empty .k5login file will deny all access to this user. " -"To activate this feature use 'access_provider = krb5' in your sssd " -"configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:55 -msgid "" -"In the case where the UPN is not available in the identity backend " -"<command>sssd</command> will construct a UPN using the format " -"<replaceable>username</replaceable>@<replaceable>krb5_realm</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:106 -msgid "" -"The name of the Kerberos realm. This option is required and must be " -"specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:113 -msgid "krb5_kpasswd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:116 -msgid "" -"If the change password service is not running on the KDC alternative servers " -"can be defined here. An optional port number (preceded by a colon) may be " -"appended to the addresses or hostnames." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:122 -msgid "" -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. Please note that even if there are no more " -"kpasswd servers to try the back end is not switch to offline if " -"authentication against the KDC is still possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:129 -msgid "Default: Use the KDC" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:135 -msgid "krb5_ccachedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:138 -msgid "" -"Directory to store credential caches. All the substitution sequences of " -"krb5_ccname_template can be used here, too, except %d and %P. If the " -"directory does not exist it will be created. If %u, %U, %p or %h are used a " -"private directory belonging to the user is created. Otherwise a public " -"directory with restricted deletion flag (aka sticky bit, see <citerefentry> " -"<refentrytitle>chmod</refentrytitle> <manvolnum>1</manvolnum> </" -"citerefentry> for details) is created." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:151 -msgid "Default: /tmp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:157 -msgid "krb5_ccname_template (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:171 -msgid "login UID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:174 -msgid "%p" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:175 -msgid "principal name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:179 -msgid "%r" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:180 -msgid "realm name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:183 -msgid "%h" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:184 -msgid "home directory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:189 -msgid "value of krb5ccache_dir" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:194 -msgid "%P" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:195 -msgid "the process ID of the sssd client" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:160 -msgid "" -"Location of the user's credential cache. Currently only file based " -"credential caches are supported. In the template the following sequences are " -"substituted: <placeholder type=\"variablelist\" id=\"0\"/> If the template " -"ends with 'XXXXXX' mkstemp(3) is used to create a unique filename in a safe " -"way." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:209 -msgid "Default: FILE:%d/krb5cc_%U_XXXXXX" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:215 -msgid "krb5_auth_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:218 -msgid "" -"Timeout in seconds after an online authentication or change password request " -"is aborted. If possible the authentication request is continued offline." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:241 -msgid "krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:244 -msgid "" -"The location of the keytab to use when validating credentials obtained from " -"KDCs." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:248 -msgid "Default: /etc/krb5.keytab" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:254 -msgid "krb5_store_password_if_offline (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:257 -msgid "" -"Store the password of the user if the provider is offline and use it to " -"request a TGT when the provider gets online again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:262 -msgid "" -"Please note that this feature currently only available on a Linux platform. " -"Passwords stored in this way are kept in plaintext in the kernel keyring and " -"are potentially accessible by the root user (with difficulty)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:275 -msgid "krb5_renewable_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:278 -msgid "" -"Request a renewable ticket with a total lifetime given by an integer " -"immediately followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:283 sssd-krb5.5.xml:319 -msgid "<emphasis>s</emphasis> seconds" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:286 sssd-krb5.5.xml:322 -msgid "<emphasis>m</emphasis> minutes" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:289 sssd-krb5.5.xml:325 -msgid "<emphasis>h</emphasis> hours" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:292 sssd-krb5.5.xml:328 -msgid "<emphasis>d</emphasis> days." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:295 sssd-krb5.5.xml:331 -msgid "If there is no delimiter <emphasis>s</emphasis> is assumed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:299 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"renewable lifetime to one and a half hours please use '90m' instead of " -"'1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:305 -msgid "Default: not set, i.e. the TGT is not renewable" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:311 -msgid "krb5_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:314 -msgid "" -"Request ticket with a with a lifetime given by an integer immediately " -"followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:335 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"lifetime to one and a half hours please use '90m' instead of '1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:340 -msgid "" -"Default: not set, i.e. the default ticket lifetime configured on the KDC." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:347 -msgid "krb5_renew_interval (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:350 -msgid "" -"The time in seconds between two checks if the TGT should be renewed. TGTs " -"are renewed if about half of their lifetime is exceeded." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:355 -msgid "If this option is not set or 0 the automatic renewal is disabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:365 -msgid "krb5_use_fast (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:368 -msgid "" -"Enables flexible authentication secure tunneling (FAST) for Kerberos pre-" -"authentication. The following options are supported:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:373 -msgid "" -"<emphasis>never</emphasis> use FAST, this is equivalent to not set this " -"option at all." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:377 -msgid "" -"<emphasis>try</emphasis> to use FAST, if the server does not support fast " -"continue without." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:381 -msgid "" -"<emphasis>demand</emphasis> to use FAST, fail if the server does not require " -"fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:385 -msgid "Default: not set, i.e. FAST is not used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:388 -msgid "Please note that a keytab is required to use fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:391 -msgid "" -"Please note also that sssd supports fast only with MIT Kerberos version 1.8 " -"and above. If sssd used with an older version using this option is a " -"configuration error." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:400 -msgid "krb5_fast_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:403 -msgid "Specifies the server principal to use for FAST." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:412 -msgid "" -"Specifies if the host and user principal should be canonicalized. This " -"feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:65 -msgid "" -"If the auth-module krb5 is used in a SSSD domain, the following options must " -"be used. See the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page, section <quote>DOMAIN " -"SECTIONS</quote> for details on the configuration of a SSSD domain. " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:434 -msgid "" -"The following example assumes that SSSD is correctly configured and FOO is " -"one of the domains in the <replaceable>[sssd]</replaceable> section. This " -"example shows only configuration of Kerberos authentication, it does not " -"include any identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-krb5.5.xml:442 -#, no-wrap -msgid "" -" [domain/FOO]\n" -" auth_provider = krb5\n" -" krb5_server = 192.168.1.1\n" -" krb5_realm = EXAMPLE.COM\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:453 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupadd.8.xml:10 sss_groupadd.8.xml:15 -msgid "sss_groupadd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupadd.8.xml:16 -msgid "create a new group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupadd.8.xml:21 -msgid "" -"<command>sss_groupadd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:32 -msgid "" -"<command>sss_groupadd</command> creates a new group. These groups are " -"compatible with POSIX groups, with the additional feature that they can " -"contain other groups as members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupadd.8.xml:43 -msgid "" -"<option>-g</option>,<option>--gid</option> <replaceable>GID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupadd.8.xml:48 -msgid "" -"Set the GID of the group to the value of <replaceable>GID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_userdel.8.xml:10 sss_userdel.8.xml:15 -msgid "sss_userdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_userdel.8.xml:16 -msgid "delete a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_userdel.8.xml:21 -msgid "" -"<command>sss_userdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:32 -msgid "" -"<command>sss_userdel</command> deletes a user identified by login name " -"<replaceable>LOGIN</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:44 -msgid "<option>-r</option>,<option>--remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:48 -msgid "" -"Files in the user's home directory will be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:56 -msgid "<option>-R</option>,<option>--no-remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:60 -msgid "" -"Files in the user's home directory will NOT be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:68 -msgid "<option>-f</option>,<option>--force</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:72 -msgid "" -"This option forces <command>sss_userdel</command> to remove the user's home " -"directory and mail spool, even if they are not owned by the specified user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:80 -msgid "<option>-k</option>,<option>--kick</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:84 -msgid "Before actually deleting the user, terminate all his processes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:95 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupdel.8.xml:10 sss_groupdel.8.xml:15 -msgid "sss_groupdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupdel.8.xml:16 -msgid "delete a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupdel.8.xml:21 -msgid "" -"<command>sss_groupdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:32 -msgid "" -"<command>sss_groupdel</command> deletes a group identified by its name " -"<replaceable>GROUP</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupshow.8.xml:10 sss_groupshow.8.xml:15 -msgid "sss_groupshow" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupshow.8.xml:16 -msgid "print properties of a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupshow.8.xml:21 -msgid "" -"<command>sss_groupshow</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:32 -msgid "" -"<command>sss_groupshow</command> displays information about a group " -"identified by its name <replaceable>GROUP</replaceable>. The information " -"includes the group ID number, members of the group and the parent group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupshow.8.xml:43 -msgid "<option>-R</option>,<option>--recursive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupshow.8.xml:47 -msgid "" -"Also print indirect group members in a tree-like hierarchy. Note that this " -"also affects printing parent groups - without <option>R</option>, only the " -"direct parent will be printed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_usermod.8.xml:10 sss_usermod.8.xml:15 -msgid "sss_usermod" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_usermod.8.xml:16 -msgid "modify a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_usermod.8.xml:21 -msgid "" -"<command>sss_usermod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:32 -msgid "" -"<command>sss_usermod</command> modifies the account specified by " -"<replaceable>LOGIN</replaceable> to reflect the changes that are specified " -"on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:60 -msgid "The home directory of the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:71 -msgid "The user's login shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:82 -msgid "" -"Append this user to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:96 -msgid "" -"Remove this user from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:103 -msgid "<option>-l</option>,<option>--lock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:107 -msgid "Lock the user account. The user won't be able to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:114 -msgid "<option>-u</option>,<option>--unlock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:118 -msgid "Unlock the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:129 -msgid "The SELinux user for the user's login." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:140 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_cache.8.xml:10 sss_cache.8.xml:15 -msgid "sss_cache" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_cache.8.xml:16 -msgid "perform cache cleanup" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_cache.8.xml:21 -msgid "" -"<command>sss_cache</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_cache.8.xml:31 -msgid "" -"<command>sss_cache</command> invalidates records in SSSD cache. Invalidated " -"records are forced to be reloaded from server as soon as related SSSD " -"backend is online." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:42 -msgid "" -"<option>-u</option>,<option>--user</option> <replaceable>login</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:47 -msgid "Invalidate specific user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:53 -msgid "<option>-U</option>,<option>--users</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:57 -msgid "" -"Invalidate all user records. This option overrides invalidation of specific " -"user if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:64 -msgid "" -"<option>-g</option>,<option>--group</option> <replaceable>group</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:69 -msgid "Invalidate specific group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:75 -msgid "<option>-G</option>,<option>--groups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:79 -msgid "" -"Invalidate all group records. This option overrides invalidation of specific " -"group if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:86 -msgid "" -"<option>-n</option>,<option>--netgroup</option> <replaceable>netgroup</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:91 -msgid "Invalidate specific netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:97 -msgid "<option>-N</option>,<option>--netgroups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:101 -msgid "" -"Invalidate all netgroup records. This option overrides invalidation of " -"specific netgroup if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:108 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>domain</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:113 -msgid "Restrict invalidation process only to a particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_debuglevel.8.xml:10 sss_debuglevel.8.xml:15 -msgid "sss_debuglevel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_debuglevel.8.xml:16 -msgid "change debug level while SSSD is running" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_debuglevel.8.xml:21 -msgid "" -"<command>sss_debuglevel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>NEW_DEBUG_LEVEL</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_debuglevel.8.xml:32 -msgid "" -"<command>sss_debuglevel</command> changes debug level of SSSD monitor and " -"providers to <replaceable>NEW_DEBUG_LEVEL</replaceable> while SSSD is " -"running." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_debuglevel.8.xml:59 -msgid "<replaceable>NEW_DEBUG_LEVEL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_authorizedkeys.1.xml:10 sss_ssh_authorizedkeys.1.xml:15 -msgid "sss_ssh_authorizedkeys" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_ssh_authorizedkeys.1.xml:11 sss_ssh_knownhostsproxy.1.xml:11 -msgid "1" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_authorizedkeys.1.xml:16 -msgid "get OpenSSH authorized keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_authorizedkeys.1.xml:21 -msgid "" -"<command>sss_ssh_authorizedkeys</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>USER</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:32 -msgid "" -"<command>sss_ssh_authorizedkeys</command> acquires SSH public keys for user " -"<replaceable>USER</replaceable> and outputs them in OpenSSH authorized_keys " -"format (see the <quote>AUTHORIZED_KEYS FILE FORMAT</quote> section of " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> for more information)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:41 -msgid "" -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_authorizedkeys</" -"command> for public key user authentication if it is compiled with support " -"for either <quote>AuthorizedKeysCommand</quote> or <quote>PubkeyAgent</" -"quote> <citerefentry> <refentrytitle>sshd_config</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:58 -#, no-wrap -msgid "AuthorizedKeysCommand /usr/bin/sss_ssh_authorizedkeys\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:51 -msgid "" -"If <quote>AuthorizedKeysCommand</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by putting the following directive " -"in <citerefentry> <refentrytitle>sshd_config</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry>: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:69 -#, no-wrap -msgid "PubKeyAgent /usr/bin/sss_ssh_authorizedkeys %u\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:62 -msgid "" -"If <quote>PubkeyAgent</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by using the following directive " -"for <citerefentry> <refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> configuration: <placeholder type=\"programlisting" -"\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_authorizedkeys.1.xml:87 -msgid "" -"Search for user public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:98 -msgid "" -"<citerefentry> <refentrytitle>sshd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sshd_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_knownhostsproxy</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_knownhostsproxy.1.xml:10 sss_ssh_knownhostsproxy.1.xml:15 -msgid "sss_ssh_knownhostsproxy" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_knownhostsproxy.1.xml:16 -msgid "get OpenSSH host keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_knownhostsproxy.1.xml:21 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>HOST</replaceable></arg> <arg " -"choice='opt'><replaceable>PROXY_COMMAND</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:33 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> acquires SSH host public keys for " -"host <replaceable>HOST</replaceable>, stores them in a custom OpenSSH " -"known_hosts file (see the <quote>SSH_KNOWN_HOSTS FILE FORMAT</quote> section " -"of <citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> for more information) <filename>/var/lib/sss/" -"pubconf/known_hosts</filename> and estabilishes connection to the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:43 -msgid "" -"If <replaceable>PROXY_COMMAND</replaceable> is specified, it is used to " -"create the connection to the host instead of opening a socket." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_knownhostsproxy.1.xml:55 -#, no-wrap -msgid "" -"ProxyCommand /usr/bin/sss_ssh_knownhostsproxy -p %p %h\n" -"GlobalKnownHostsFile2 /var/lib/sss/pubconf/known_hosts\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:48 -msgid "" -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_knownhostsproxy</" -"command> for host key authentication by using the following directives for " -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> configuration: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_ssh_knownhostsproxy.1.xml:69 -msgid "" -"<option>-p</option>,<option>--port</option> <replaceable>PORT</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:74 -msgid "" -"Use port <replaceable>PORT</replaceable> to connect to the host. By " -"default, port 22 is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:86 -msgid "" -"Search for host public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:97 -msgid "" -"<citerefentry> <refentrytitle>ssh</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>ssh_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_authorizedkeys</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/service_discovery.xml:2 -msgid "SERVICE DISCOVERY" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/service_discovery.xml:4 -msgid "" -"The service discovery feature allows back ends to automatically find the " -"appropriate servers to connect to using a special DNS query." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:9 -msgid "Configuration" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:11 -msgid "" -"If no servers are specified, the back end automatically uses service " -"discovery to try to find a server. Optionally, the user may choose to use " -"both fixed server addresses and service discovery by inserting a special " -"keyword, <quote>_srv_</quote>, in the list of servers. The order of " -"preference is maintained. This feature is useful if, for example, the user " -"prefers to use service discovery whenever possible, and fall back to a " -"specific server when no servers can be discovered using DNS." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:23 -msgid "The domain name" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:25 -msgid "" -"Please refer to the <quote>dns_discovery_domain</quote> parameter in the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for more details." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:35 -msgid "The protocol" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:37 -msgid "" -"The queries usually specify _tcp as the protocol. Exceptions are documented " -"in respective option description." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:42 -msgid "See Also" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:44 -msgid "" -"For more information on the service discovery mechanism, refer to RFC 2782." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/upstream.xml:1 -msgid "<placeholder type=\"refentryinfo\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/failover.xml:2 -msgid "FAILOVER" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/failover.xml:4 -msgid "" -"The failover feature allows back ends to automatically switch to a different " -"server if the primary server fails." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:8 -msgid "Failover Syntax" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:10 -msgid "" -"The list of servers is given as a comma-separated list; any number of spaces " -"is allowed around the comma. The servers are listed in order of preference. " -"The list can contain any number of servers." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:17 -msgid "The Failover Mechanism" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:19 -msgid "" -"The failover mechanism distinguishes between a machine and a service. The " -"back end first tries to resolve the hostname of a given machine; if this " -"resolution attempt fails, the machine is considered offline. No further " -"attempts are made to connect to this machine for any other service. If the " -"resolution attempt succeeds, the back end tries to connect to a service on " -"this machine. If the service connection attempt fails, then only this " -"particular service is considered offline and the back end automatically " -"switches over to the next service. The machine is still considered online " -"and might still be tried for another service." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:32 -msgid "" -"Further connection attempts are made to machines or services marked as " -"offline after a specified period of time; this is currently hard coded to 30 " -"seconds." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:37 -msgid "" -"If there are no more machines to try, the back end as a whole switches to " -"offline mode, and then attempts to reconnect every 30 seconds." -msgstr "" - -#. type: Content of: <varlistentry><term> -#: include/param_help.xml:3 -msgid "<option>-h</option>,<option>--help</option>" -msgstr "" - -#. type: Content of: <varlistentry><listitem><para> -#: include/param_help.xml:7 -msgid "Display help message and exit." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:3 -msgid "" -"Bit mask that indicates which debug levels will be visible. 0x0010 is the " -"default value as well as the lowest allowed value, 0xFFF0 is the most " -"verbose mode. This setting overrides the settings from config file." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:8 -msgid "Currently supported debug levels:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:11 -msgid "" -"<emphasis>0x0010</emphasis>: Fatal failures. Anything that would prevent " -"SSSD from starting up or causes it to cease running." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:15 -msgid "" -"<emphasis>0x0020</emphasis>: Critical failures. An error that doesn't kill " -"the SSSD, but one that indicates that at least one major feature is not " -"going to work properly." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:20 -msgid "" -"<emphasis>0x0040</emphasis>: Serious failures. An error announcing that a " -"particular request or operation has failed." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:24 -msgid "" -"<emphasis>0x0080</emphasis>: Minor failures. These are the errors that would " -"percolate down to cause the operation failure of 2." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:28 -msgid "<emphasis>0x0100</emphasis>: Configuration settings." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:31 -msgid "<emphasis>0x0200</emphasis>: Function data." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:34 -msgid "<emphasis>0x0400</emphasis>: Trace messages for operation functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:37 -msgid "" -"<emphasis>0x1000</emphasis>: Trace messages for internal control functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:40 -msgid "" -"<emphasis>0x2000</emphasis>: Contents of function-internal variables that " -"may be interesting." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:43 -msgid "<emphasis>0x4000</emphasis>: Extremely low-level tracing information." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:46 -msgid "" -"To log required debug levels, simply add their numbers together as shown in " -"following examples:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:49 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, critical failures, " -"serious failures and function data use 0x0270." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:53 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, configuration settings, " -"function data, trace messages for internal control functions use 0x1310." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:57 -msgid "" -"<emphasis>Note</emphasis>: This is new format of debug levels introduced in " -"1.7.0. Older format (numbers from 0-10) is compatible but deprecated." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/experimental.xml:1 -msgid "" -"<emphasis> This is an experimental feature, please use http://fedorahosted." -"org/sssd to report any issues. </emphasis>" -msgstr "" diff --git a/src/man/po/fa.po b/src/man/po/fa.po deleted file mode 100644 index 15b65baad..000000000 --- a/src/man/po/fa.po +++ /dev/null @@ -1,6748 +0,0 @@ -# SOME DESCRIPTIVE TITLE -# Copyright (C) YEAR Red Hat -# This file is distributed under the same license as the sssd-docs package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@redhat.com\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-12-23 15:35+0000\n" -"Last-Translator: FULL NAME <EMAIL@ADDRESS>\n" -"Language-Team: Persian (http://www.transifex.net/projects/p/fedora/team/" -"fa/)\n" -"Language: fa\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=1; plural=0\n" - -#. type: Content of: <reference><title> -#: sss_groupmod.8.xml:5 sssd.conf.5.xml:5 sssd-ldap.5.xml:5 pam_sss.8.xml:5 -#: sssd_krb5_locator_plugin.8.xml:5 sssd-simple.5.xml:5 sssd-ipa.5.xml:5 -#: sssd.8.xml:5 sss_obfuscate.8.xml:5 sss_useradd.8.xml:5 sssd-krb5.5.xml:5 -#: sss_groupadd.8.xml:5 sss_userdel.8.xml:5 sss_groupdel.8.xml:5 -#: sss_groupshow.8.xml:5 sss_usermod.8.xml:5 sss_cache.8.xml:5 -#: sss_debuglevel.8.xml:5 sss_ssh_authorizedkeys.1.xml:5 -#: sss_ssh_knownhostsproxy.1.xml:5 -msgid "SSSD Manual pages" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupmod.8.xml:10 sss_groupmod.8.xml:15 -msgid "sss_groupmod" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_groupmod.8.xml:11 pam_sss.8.xml:14 sssd_krb5_locator_plugin.8.xml:11 -#: sssd.8.xml:11 sss_obfuscate.8.xml:11 sss_useradd.8.xml:11 -#: sss_groupadd.8.xml:11 sss_userdel.8.xml:11 sss_groupdel.8.xml:11 -#: sss_groupshow.8.xml:11 sss_usermod.8.xml:11 sss_cache.8.xml:11 -#: sss_debuglevel.8.xml:11 -msgid "8" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupmod.8.xml:16 -msgid "modify a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupmod.8.xml:21 -msgid "" -"<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:30 sssd-ldap.5.xml:21 pam_sss.8.xml:44 -#: sssd_krb5_locator_plugin.8.xml:20 sssd-simple.5.xml:22 sssd-ipa.5.xml:21 -#: sssd.8.xml:29 sss_obfuscate.8.xml:30 sss_useradd.8.xml:30 -#: sssd-krb5.5.xml:21 sss_groupadd.8.xml:30 sss_userdel.8.xml:30 -#: sss_groupdel.8.xml:30 sss_groupshow.8.xml:30 sss_usermod.8.xml:30 -#: sss_cache.8.xml:29 sss_debuglevel.8.xml:30 sss_ssh_authorizedkeys.1.xml:30 -#: sss_ssh_knownhostsproxy.1.xml:31 -msgid "DESCRIPTION" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:32 -msgid "" -"<command>sss_groupmod</command> modifies the group to reflect the changes " -"that are specified on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:39 pam_sss.8.xml:51 sssd.8.xml:42 sss_obfuscate.8.xml:58 -#: sss_useradd.8.xml:39 sss_groupadd.8.xml:39 sss_userdel.8.xml:39 -#: sss_groupdel.8.xml:39 sss_groupshow.8.xml:39 sss_usermod.8.xml:39 -#: sss_cache.8.xml:38 sss_debuglevel.8.xml:38 sss_ssh_authorizedkeys.1.xml:78 -#: sss_ssh_knownhostsproxy.1.xml:65 -msgid "OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:43 sss_usermod.8.xml:77 -msgid "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:48 -msgid "" -"Append this group to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:57 sss_usermod.8.xml:91 -msgid "" -"<option>-r</option>,<option>--remove-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:62 -msgid "" -"Remove this group from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:72 sssd.conf.5.xml:1331 sssd-ldap.5.xml:2096 -#: pam_sss.8.xml:139 sssd_krb5_locator_plugin.8.xml:75 sssd-simple.5.xml:143 -#: sssd-ipa.5.xml:562 sssd.8.xml:191 sss_obfuscate.8.xml:103 -#: sss_useradd.8.xml:167 sssd-krb5.5.xml:451 sss_groupadd.8.xml:58 -#: sss_userdel.8.xml:93 sss_groupdel.8.xml:46 sss_groupshow.8.xml:58 -#: sss_usermod.8.xml:138 sss_ssh_authorizedkeys.1.xml:96 -#: sss_ssh_knownhostsproxy.1.xml:95 -msgid "SEE ALSO" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:74 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.conf.5.xml:10 sssd.conf.5.xml:16 -msgid "sssd.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sssd.conf.5.xml:11 sssd-ldap.5.xml:11 sssd-simple.5.xml:11 -#: sssd-ipa.5.xml:11 sssd-krb5.5.xml:11 -msgid "5" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><refmiscinfo> -#: sssd.conf.5.xml:12 sssd-ldap.5.xml:12 sssd-simple.5.xml:12 -#: sssd-ipa.5.xml:12 sssd-krb5.5.xml:12 -msgid "File Formats and Conventions" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.conf.5.xml:17 sssd-ldap.5.xml:17 sssd_krb5_locator_plugin.8.xml:16 -#: sssd-ipa.5.xml:17 sssd-krb5.5.xml:17 -msgid "the configuration file for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:21 -msgid "FILE FORMAT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:29 -#, no-wrap -msgid "" -" <replaceable>[section]</replaceable>\n" -" <replaceable>key</replaceable> = <replaceable>value</replaceable>\n" -" <replaceable>key2</replaceable> = <replaceable>value2,value3</replaceable>\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:24 -msgid "" -"The file has an ini-style syntax and consists of sections and parameters. A " -"section begins with the name of the section in square brackets and continues " -"until the next section begins. An example of section with single and multi-" -"valued parameters: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:36 -msgid "" -"The data types used are string (no quotes needed), integer and bool (with " -"values of <quote>TRUE/FALSE</quote>)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:41 -msgid "" -"A line comment starts with a hash sign (<quote>#</quote>) or a semicolon " -"(<quote>;</quote>)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:46 -msgid "" -"All sections can have an optional <replaceable>description</replaceable> " -"parameter. Its function is only as a label for the section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:52 -msgid "" -"<filename>sssd.conf</filename> must be a regular file, owned by root and " -"only root may read from or write to the file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:58 -msgid "SPECIAL SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:61 -msgid "The [sssd] section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><title> -#: sssd.conf.5.xml:70 sssd.conf.5.xml:1177 -msgid "Section parameters" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:72 -msgid "config_file_version (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:75 -msgid "" -"Indicates what is the syntax of the config file. SSSD 0.6.0 and later use " -"version 2." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:81 -msgid "services" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:84 -msgid "" -"Comma separated list of services that are started when sssd itself starts." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:88 -msgid "" -"Supported services: nss, pam <phrase condition=\"with_sudo\">, sudo</phrase>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:94 sssd.conf.5.xml:257 -msgid "reconnection_retries (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:97 sssd.conf.5.xml:260 -msgid "" -"Number of times services should attempt to reconnect in the event of a Data " -"Provider crash or restart before they give up" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:102 sssd.conf.5.xml:265 -msgid "Default: 3" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:107 -msgid "domains" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:110 -msgid "" -"A domain is a database containing user information. SSSD can use more " -"domains at the same time, but at least one must be configured or SSSD won't " -"start. This parameter described the list of domains in the order you want " -"them to be queried." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:120 -msgid "re_expression (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:123 -msgid "" -"Regular expression that describes how to parse the string containing user " -"name and domain into these components." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:127 -msgid "" -"Default: <quote>(?P<name>[^@]+)@?(?P<domain>[^@]*$)</quote> " -"which translates to \"the name is everything up to the <quote>@</quote> " -"sign, the domain everything after that\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:132 -msgid "" -"PLEASE NOTE: the support for non-unique named subpatterns is not available " -"on all platforms (e.g. RHEL5 and SLES10). Only platforms with libpcre " -"version 7 or higher can support non-unique named subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:139 -msgid "" -"PLEASE NOTE ALSO: older version of libpcre only support the Python syntax (?" -"P<name>) to label subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:146 -msgid "full_name_format (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:149 -msgid "" -"A <citerefentry> <refentrytitle>printf</refentrytitle> <manvolnum>3</" -"manvolnum> </citerefentry>-compatible format that describes how to translate " -"a (name, domain) tuple into a fully qualified name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:157 -msgid "Default: <quote>%1$s@%2$s</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:162 -msgid "try_inotify (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:165 -msgid "" -"SSSD monitors the state of resolv.conf to identify when it needs to update " -"its internal DNS resolver. By default, we will attempt to use inotify for " -"this, and will fall back to polling resolv.conf every five seconds if " -"inotify cannot be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:173 -msgid "" -"There are some limited situations where it is preferred that we should skip " -"even trying to use inotify. In these rare cases, this option should be set " -"to 'false'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:179 -msgid "" -"Default: true on platforms where inotify is supported. False on other " -"platforms." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:183 -msgid "" -"Note: this option will have no effect on platforms where inotify is " -"unavailable. On these platforms, polling will always be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:190 -msgid "krb5_rcache_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:193 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:197 -msgid "" -"This option accepts a special value __LIBKRB5_DEFAULTS__ that will instruct " -"SSSD to let libkrb5 decide the appropriate location for the replay cache." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:203 -msgid "" -"Default: Distribution-specific and specified at build-time. " -"(__LIBKRB5_DEFAULTS__ if not configured)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:63 -msgid "" -"Individual pieces of SSSD functionality are provided by special SSSD " -"services that are started and stopped together with SSSD. The services are " -"managed by a special service frequently called <quote>monitor</quote>. The " -"<quote>[sssd]</quote> section is used to configure the monitor as well as " -"some other important options like the identity domains. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:216 -msgid "SERVICES SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:218 -msgid "" -"Settings that can be used to configure different services are described in " -"this section. They should reside in the [<replaceable>$NAME</replaceable>] " -"section, for example, for NSS service, the section would be <quote>[nss]</" -"quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:225 -msgid "General service configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:227 -msgid "These options can be used to configure any service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:231 -msgid "debug_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:235 -msgid "debug_timestamps (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:238 -msgid "Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:241 sssd.conf.5.xml:376 sssd-ldap.5.xml:1328 -#: sssd-ldap.5.xml:1446 sssd-ipa.5.xml:206 sssd-ipa.5.xml:241 -msgid "Default: true" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:246 -msgid "debug_microseconds (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:249 -msgid "Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:252 sssd.conf.5.xml:641 sssd-ldap.5.xml:602 -#: sssd-ldap.5.xml:1260 sssd-ldap.5.xml:1397 sssd-ldap.5.xml:1795 -#: sssd-ipa.5.xml:123 sssd-ipa.5.xml:301 sssd-krb5.5.xml:235 -#: sssd-krb5.5.xml:269 sssd-krb5.5.xml:418 -msgid "Default: false" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:270 -msgid "command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:273 -msgid "" -"By default, the executable representing this service is called <command>sssd_" -"${service_name}</command>. This directive allows to change the executable " -"name for the service. In the vast majority of configurations, the default " -"values should suffice." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:281 -msgid "Default: <command>sssd_${service_name}</command>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:289 -msgid "NSS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:291 -msgid "" -"These options can be used to configure the Name Service Switch (NSS) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:296 -msgid "enum_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:299 -msgid "" -"How many seconds should nss_sss cache enumerations (requests for info about " -"all users)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:303 -msgid "Default: 120" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:308 -msgid "entry_cache_nowait_percentage (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:311 -msgid "" -"The entry cache can be set to automatically update entries in the background " -"if they are requested beyond a percentage of the entry_cache_timeout value " -"for the domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:317 -msgid "" -"For example, if the domain's entry_cache_timeout is set to 30s and " -"entry_cache_nowait_percentage is set to 50 (percent), entries that come in " -"after 15 seconds past the last cache update will be returned immediately, " -"but the SSSD will go and update the cache on its own, so that future " -"requests will not need to block waiting for a cache update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:327 -msgid "" -"Valid values for this option are 0-99 and represent a percentage of the " -"entry_cache_timeout for each domain. For performance reasons, this " -"percentage will never reduce the nowait timeout to less than 10 seconds. (0 " -"disables this feature)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:335 -msgid "Default: 50" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:340 -msgid "entry_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:343 -msgid "" -"Specifies for how many seconds nss_sss should cache negative cache hits " -"(that is, queries for invalid database entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:349 sssd.conf.5.xml:669 sssd-krb5.5.xml:223 -msgid "Default: 15" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:354 -msgid "filter_users, filter_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:357 -msgid "" -"Exclude certain users from being fetched from the sss NSS database. This is " -"particularly useful for system accounts. This option can also be set per-" -"domain or include fully-qualified names to filter only users from the " -"particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:364 -msgid "Default: root" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:369 -msgid "filter_users_in_groups (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:372 -msgid "" -"If you want filtered user still be group members set this option to false." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:381 -msgid "override_homedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:390 sssd-krb5.5.xml:166 -msgid "%u" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:391 sssd-krb5.5.xml:167 -msgid "login name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:394 sssd-krb5.5.xml:170 -msgid "%U" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:395 -msgid "UID number" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:398 sssd-krb5.5.xml:188 -msgid "%d" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:399 -msgid "domain name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:402 -msgid "%f" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:403 -msgid "fully qualified user name (user@domain)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:406 sssd-krb5.5.xml:200 -msgid "%%" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:407 sssd-krb5.5.xml:201 -msgid "a literal '%'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:384 -msgid "" -"Override the user's home directory. You can either provide an absolute value " -"or a template. In the template, the following sequences are substituted: " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:413 -msgid "This option can also be set per-domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:418 -msgid "allowed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:421 -msgid "" -"Restrict user shell to one of the listed values. The order of evaluation is:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:424 -msgid "1. If the shell is present in <quote>/etc/shells</quote>, it is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:428 -msgid "" -"2. If the shell is in the allowed_shells list but not in <quote>/etc/shells</" -"quote>, use the value of the shell_fallback parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:433 -msgid "" -"3. If the shell is not in the allowed_shells list and not in <quote>/etc/" -"shells</quote>, a nologin shell is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:438 -msgid "An empty string for shell is passed as-is to libc." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:441 -msgid "" -"The <quote>/etc/shells</quote> is only read on SSSD start up, which means " -"that a restart of the SSSD is required in case a new shell is installed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:445 -msgid "Default: Not set. The user shell is automatically used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:450 -msgid "vetoed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:453 -msgid "Replace any instance of these shells with the shell_fallback" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:458 -msgid "shell_fallback (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:461 -msgid "" -"The default shell to use if an allowed shell is not installed on the machine." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:465 -msgid "Default: /bin/sh" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:472 -msgid "PAM configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:474 -msgid "" -"These options can be used to configure the Pluggable Authentication Module " -"(PAM) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:479 -msgid "offline_credentials_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:482 -msgid "" -"If the authentication provider is offline, how long should we allow cached " -"logins (in days since the last successful online login)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:487 sssd.conf.5.xml:500 -msgid "Default: 0 (No limit)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:493 -msgid "offline_failed_login_attempts (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:496 -msgid "" -"If the authentication provider is offline, how many failed login attempts " -"are allowed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:506 -msgid "offline_failed_login_delay (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:509 -msgid "" -"The time in minutes which has to pass after offline_failed_login_attempts " -"has been reached before a new login attempt is possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:514 -msgid "" -"If set to 0 the user cannot authenticate offline if " -"offline_failed_login_attempts has been reached. Only a successful online " -"authentication can enable offline authentication again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:520 sssd.conf.5.xml:573 sssd.conf.5.xml:1093 -msgid "Default: 5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:526 -msgid "pam_verbosity (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:529 -msgid "" -"Controls what kind of messages are shown to the user during authentication. " -"The higher the number to more messages are displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:534 -msgid "Currently sssd supports the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:537 -msgid "<emphasis>0</emphasis>: do not show any message" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:540 -msgid "<emphasis>1</emphasis>: show only important messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:544 -msgid "<emphasis>2</emphasis>: show informational messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:547 -msgid "<emphasis>3</emphasis>: show all messages and debug information" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:551 sssd.8.xml:63 -msgid "Default: 1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:556 -msgid "pam_id_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:559 -msgid "" -"For any PAM request while SSSD is online, the SSSD will attempt to " -"immediately update the cached identity information for the user in order to " -"ensure that authentication takes place with the latest information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:565 -msgid "" -"A complete PAM conversation may perform multiple PAM requests, such as " -"account management and session opening. This option controls (on a per-" -"client-application basis) how long (in seconds) we can cache the identity " -"information to avoid excessive round-trips to the identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:579 -msgid "pam_pwd_expiration_warning (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:582 -msgid "Display a warning N days before the password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:585 -msgid "" -"Please note that the backend server has to provide information about the " -"expiration time of the password. If this information is missing, sssd " -"cannot display a warning." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:591 -msgid "Default: 7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:599 -msgid "SUDO configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:601 -msgid "These options can be used to configure the sudo service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:608 -msgid "sudo_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:611 -msgid "" -"For any sudo request that comes while SSSD is online, the SSSD will attempt " -"to update the cached rules in order to ensure that sudo has the latest " -"ruleset." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:617 -msgid "" -"The user may, however, run a couple of sudo commands successively, which " -"would trigger multiple LDAP requests. In order to speed up this use-case, " -"the sudo service maintains an in-memory cache that would be used for " -"performing fast replies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:624 -msgid "" -"This option controls how long (in seconds) can the sudo service cache rules " -"for a user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:628 -msgid "Default: 180" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:633 -msgid "sudo_timed (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:636 -msgid "" -"Whether or not to evaluate the sudoNotBefore and sudoNotAfter attributes " -"that implement time-dependent sudoers entries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:649 -msgid "AUTOFS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:651 -msgid "These options can be used to configure the autofs service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:659 -msgid "autofs_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:662 -msgid "" -"Specifies for how many seconds should the autofs responder negative cache " -"hits (that is, queries for invalid map entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:679 -msgid "DOMAIN SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:686 -msgid "min_id,max_id (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:689 -msgid "" -"UID and GID limits for the domain. If a domain contains an entry that is " -"outside these limits, it is ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:694 -msgid "" -"For users, this affects the primary GID limit. The user will not be returned " -"to NSS if either the UID or the primary GID is outside the range. For non-" -"primary group memberships, those that are in range will be reported as " -"expected." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:701 -msgid "Default: 1 for min_id, 0 (no limit) for max_id" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:707 -msgid "timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:710 -msgid "" -"Timeout in seconds between heartbeats for this domain. This is used to " -"ensure that the backend process is alive and capable of answering requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:715 sssd-ldap.5.xml:1131 -msgid "Default: 10" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:721 -msgid "enumerate (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:724 -msgid "" -"Determines if a domain can be enumerated. This parameter can have one of the " -"following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:728 -msgid "TRUE = Users and groups are enumerated" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:731 -msgid "FALSE = No enumerations for this domain" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:734 sssd.conf.5.xml:839 sssd.conf.5.xml:893 -msgid "Default: FALSE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:737 -msgid "" -"Note: Enabling enumeration has a moderate performance impact on SSSD while " -"enumeration is running. It may take up to several minutes after SSSD startup " -"to fully complete enumerations. During this time, individual requests for " -"information will go directly to LDAP, though it may be slow, due to the " -"heavy enumeration processing." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:747 -msgid "" -"While the first enumeration is running, requests for the complete user or " -"group lists may return no results until it completes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:752 -msgid "" -"Further, enabling enumeration may increase the time necessary to detect " -"network disconnection, as longer timeouts are required to ensure that " -"enumeration lookups are completed successfully. For more information, refer " -"to the man pages for the specific id_provider in use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:763 -msgid "entry_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:766 -msgid "" -"How many seconds should nss_sss consider entries valid before asking the " -"backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:770 -msgid "Default: 5400" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:776 -msgid "entry_cache_user_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:779 -msgid "" -"How many seconds should nss_sss consider user entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:783 sssd.conf.5.xml:796 sssd.conf.5.xml:809 -#: sssd.conf.5.xml:822 -msgid "Default: entry_cache_timeout" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:789 -msgid "entry_cache_group_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:792 -msgid "" -"How many seconds should nss_sss consider group entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:802 -msgid "entry_cache_netgroup_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:805 -msgid "" -"How many seconds should nss_sss consider netgroup entries valid before " -"asking the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:815 -msgid "entry_cache_service_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:818 -msgid "" -"How many seconds should nss_sss consider service entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:828 -msgid "cache_credentials (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:831 -msgid "Determines if user credentials are also cached in the local LDB cache" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:835 -msgid "User credentials are stored in a SHA512 hash, not in plaintext" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:844 -msgid "account_cache_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:847 -msgid "" -"Number of days entries are left in cache after last successful login before " -"being removed during a cleanup of the cache. 0 means keep forever. The " -"value of this parameter must be greater than or equal to " -"offline_credentials_expiration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:854 -msgid "Default: 0 (unlimited)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:860 -msgid "id_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:863 -msgid "The Data Provider identity backend to use for this domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:867 -msgid "Supported backends:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:870 -msgid "proxy: Support a legacy NSS provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:873 -msgid "local: SSSD internal local provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:876 -msgid "ldap: LDAP provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:882 -msgid "use_fully_qualified_names (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:885 -msgid "" -"If set to TRUE, all requests to this domain must use fully qualified names. " -"For example, if used in LOCAL domain that contains a \"test\" user, " -"<command>getent passwd test</command> wouldn't find the user while " -"<command>getent passwd test@LOCAL</command> would." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:898 -msgid "auth_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:901 -msgid "" -"The authentication provider used for the domain. Supported auth providers " -"are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:905 -msgid "" -"<quote>ldap</quote> for native LDAP authentication. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:912 -msgid "" -"<quote>krb5</quote> for Kerberos authentication. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:919 -msgid "" -"<quote>proxy</quote> for relaying authentication to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:922 -msgid "<quote>none</quote> disables authentication explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:925 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"authentication requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:931 -msgid "access_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:934 -msgid "" -"The access control provider used for the domain. There are two built-in " -"access providers (in addition to any included in installed backends) " -"Internal special providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:940 -msgid "<quote>permit</quote> always allow access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:943 -msgid "<quote>deny</quote> always deny access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:946 -msgid "" -"<quote>simple</quote> access control based on access or deny lists. See " -"<citerefentry> <refentrytitle>sssd-simple</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry> for more information on configuring the simple " -"access module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:953 -msgid "Default: <quote>permit</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:958 -msgid "chpass_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:961 -msgid "" -"The provider which should handle change password operations for the domain. " -"Supported change password providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:966 -msgid "" -"<quote>ipa</quote> to change a password stored in an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:974 -msgid "" -"<quote>ldap</quote> to change a password stored in a LDAP server. See " -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:982 -msgid "" -"<quote>krb5</quote> to change the Kerberos password. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:990 -msgid "" -"<quote>proxy</quote> for relaying password changes to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:994 -msgid "<quote>none</quote> disallows password changes explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:997 -msgid "" -"Default: <quote>auth_provider</quote> is used if it is set and can handle " -"change password requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1004 -msgid "sudo_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1010 -msgid "The SUDO provider used for the domain. Supported SUDO providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1014 -msgid "" -"<quote>ldap</quote> for rules stored in LDAP. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1021 -msgid "<quote>none</quote> disables SUDO explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1024 -msgid "Default: The value of <quote>id_provider</quote> is used if it is set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1030 -msgid "session_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1033 -msgid "" -"The provider which should handle loading of session settings. Supported " -"session providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1038 -msgid "" -"<quote>ipa</quote> to load session settings from an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1046 -msgid "<quote>none</quote> disallows fetching session settings explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1049 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"session loading requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1056 -msgid "lookup_family_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1059 -msgid "" -"Provides the ability to select preferred address family to use when " -"performing DNS lookups." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1063 -msgid "Supported values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1066 -msgid "ipv4_first: Try looking up IPv4 address, if that fails, try IPv6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1069 -msgid "ipv4_only: Only attempt to resolve hostnames to IPv4 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1072 -msgid "ipv6_first: Try looking up IPv6 address, if that fails, try IPv4" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1075 -msgid "ipv6_only: Only attempt to resolve hostnames to IPv6 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1078 -msgid "Default: ipv4_first" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1084 -msgid "dns_resolver_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1087 -msgid "" -"Defines the amount of time (in seconds) to wait for a reply from the DNS " -"resolver before assuming that it is unreachable. If this timeout is reached, " -"the domain will continue to operate in offline mode." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1099 -msgid "dns_discovery_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1102 -msgid "" -"If service discovery is used in the back end, specifies the domain part of " -"the service discovery DNS query." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1106 -msgid "Default: Use the domain part of machine's hostname" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1112 -msgid "override_gid (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1115 -msgid "Override the primary GID value with the one specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1121 -msgid "case_sensitive (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1124 -msgid "" -"Treat user and group names as case sensitive. At the moment, this option is " -"not supported in the local provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1129 -msgid "Default: True" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:681 -msgid "" -"These configuration options can be present in a domain configuration " -"section, that is, in a section called <quote>[domain/<replaceable>NAME</" -"replaceable>]</quote> <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1141 -msgid "proxy_pam_target (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1144 -msgid "The proxy target PAM proxies to." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1147 -msgid "" -"Default: not set by default, you have to take an existing pam configuration " -"or create a new one and add the service name here." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1155 -msgid "proxy_lib_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1158 -msgid "" -"The name of the NSS library to use in proxy domains. The NSS functions " -"searched for in the library are in the form of _nss_$(libName)_$(function), " -"for example _nss_files_getpwent." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1137 -msgid "" -"Options valid for proxy domains. <placeholder type=\"variablelist\" id=" -"\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:1170 -msgid "The local domain section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:1172 -msgid "" -"This section contains settings for domain that stores users and groups in " -"SSSD native database, that is, a domain that uses " -"<replaceable>id_provider=local</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1179 -msgid "default_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1182 -msgid "The default shell for users created with SSSD userspace tools." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1186 -msgid "Default: <filename>/bin/bash</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1191 -msgid "base_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1194 -msgid "" -"The tools append the login name to <replaceable>base_directory</replaceable> " -"and use that as the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1199 -msgid "Default: <filename>/home</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1204 -msgid "create_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1207 -msgid "" -"Indicate if a home directory should be created by default for new users. " -"Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1211 sssd.conf.5.xml:1223 -msgid "Default: TRUE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1216 -msgid "remove_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1219 -msgid "" -"Indicate if a home directory should be removed by default for deleted " -"users. Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1228 -msgid "homedir_umask (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1231 -msgid "" -"Used by <citerefentry> <refentrytitle>sss_useradd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry> to specify the default permissions " -"on a newly created home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1239 -msgid "Default: 077" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1244 -msgid "skel_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1247 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<citerefentry> <refentrytitle>sss_useradd</refentrytitle> <manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1257 -msgid "Default: <filename>/etc/skel</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1262 -msgid "mail_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1265 -msgid "" -"The mail spool directory. This is needed to manipulate the mailbox when its " -"corresponding user account is modified or deleted. If not specified, a " -"default value is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1272 -msgid "Default: <filename>/var/mail</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1277 -msgid "userdel_cmd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1280 -msgid "" -"The command that is run after a user is removed. The command us passed the " -"username of the user being removed as the first and only parameter. The " -"return code of the command is not taken into account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1286 -msgid "Default: None, no command is run" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:1296 sssd-ldap.5.xml:2064 sssd-simple.5.xml:126 -#: sssd-ipa.5.xml:544 sssd-krb5.5.xml:432 -msgid "EXAMPLE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:1302 -#, no-wrap -msgid "" -"[sssd]\n" -"domains = LDAP\n" -"services = nss, pam\n" -"config_file_version = 2\n" -"\n" -"[nss]\n" -"filter_groups = root\n" -"filter_users = root\n" -"\n" -"[pam]\n" -"\n" -"[domain/LDAP]\n" -"id_provider = ldap\n" -"ldap_uri = ldap://ldap.example.com\n" -"ldap_search_base = dc=example,dc=com\n" -"\n" -"auth_provider = krb5\n" -"krb5_server = kerberos.example.com\n" -"krb5_realm = EXAMPLE.COM\n" -"cache_credentials = true\n" -"\n" -"min_id = 10000\n" -"max_id = 20000\n" -"enumerate = False\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1298 -msgid "" -"The following example shows a typical SSSD config. It does not describe " -"configuration of the domains themselves - refer to documentation on " -"configuring domains for more details. <placeholder type=\"programlisting\" " -"id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1333 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>pam_sss</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ldap.5.xml:10 sssd-ldap.5.xml:16 -msgid "sssd-ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:23 -msgid "" -"This manual page describes the configuration of LDAP domains for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. Refer to the <quote>FILE FORMAT</quote> section of the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for detailed syntax information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:35 -msgid "You can configure SSSD to use more than one LDAP domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:38 -msgid "" -"LDAP back end supports id, auth, access and chpass providers. If you want to " -"authenticate against an LDAP server either TLS/SSL or LDAPS is required. " -"<command>sssd</command> <emphasis>does not</emphasis> support authentication " -"over an unencrypted channel. If the LDAP server is used only as an identity " -"provider, an encrypted channel is not needed. Please refer to " -"<quote>ldap_access_filter</quote> config option for more information about " -"using LDAP as an access provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:49 sssd-simple.5.xml:69 sssd-ipa.5.xml:64 -#: sssd-krb5.5.xml:63 -msgid "CONFIGURATION OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:60 -msgid "ldap_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:63 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference. Refer to the <quote>FAILOVER</" -"quote> section for more information on failover and server redundancy. If " -"not specified, service discovery is enabled. For more information, refer to " -"the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:70 -msgid "The format of the URI must match the format defined in RFC 2732:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:73 -msgid "ldap[s]://<host>[:port]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:76 -msgid "" -"For explicit IPv6 addresses, <host> must be enclosed in brackets []" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:79 -msgid "example: ldap://[fc00::126:25]:389" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:85 -msgid "ldap_chpass_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:88 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference to change the password of a user. " -"Refer to the <quote>FAILOVER</quote> section for more information on " -"failover and server redundancy." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:95 -msgid "To enable service discovery ldap_chpass_dns_service_name must be set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:99 -msgid "Default: empty, i.e. ldap_uri is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:105 -msgid "ldap_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:108 -msgid "The default base DN to use for performing LDAP user operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:112 -msgid "" -"Starting with SSSD 1.7.0, SSSD supports multiple search bases using the " -"syntax:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:116 -msgid "search_base[?scope?[filter][?search_base?scope?[filter]]*]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:119 -msgid "The scope can be one of \"base\", \"onelevel\" or \"subtree\"." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:122 -msgid "" -"The filter must be a valid LDAP search filter as specified by http://www." -"ietf.org/rfc/rfc2254.txt" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:126 -msgid "Examples:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:129 -msgid "" -"ldap_search_base = dc=example,dc=com (which is equivalent to) " -"ldap_search_base = dc=example,dc=com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:134 -msgid "" -"ldap_search_base = cn=host_specific,dc=example,dc=com?subtree?" -"(host=thishost)?dc=example.com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:137 -msgid "" -"Note: It is unsupported to have multiple search bases which reference " -"identically-named objects (for example, groups with the same name in two " -"different search bases). This will lead to unpredictable behavior on client " -"machines." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:144 -msgid "" -"Default: If not set, the value of the defaultNamingContext or namingContexts " -"attribute from the RootDSE of the LDAP server is used. If " -"defaultNamingContext does not exists or has an empty value namingContexts is " -"used. The namingContexts attribute must have a single value with the DN of " -"the search base of the LDAP server to make this work. Multiple values are " -"are not supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:158 -msgid "ldap_schema (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:161 -msgid "" -"Specifies the Schema Type in use on the target LDAP server. Depending on " -"the selected schema, the default attribute names retrieved from the servers " -"may vary. The way that some attributes are handled may also differ. Three " -"schema types are currently supported: rfc2307 rfc2307bis IPA The main " -"difference between these schema types is how group memberships are recorded " -"in the server. With rfc2307, group members are listed by name in the " -"<emphasis>memberUid</emphasis> attribute. With rfc2307bis and IPA, group " -"members are listed by DN and stored in the <emphasis>member</emphasis> " -"attribute." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:180 -msgid "Default: rfc2307" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:186 -msgid "ldap_default_bind_dn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:189 -msgid "The default bind DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:196 -msgid "ldap_default_authtok_type (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:199 -msgid "The type of the authentication token of the default bind DN." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:203 -msgid "The two mechanisms currently supported are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:206 -msgid "password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:209 -msgid "obfuscated_password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:212 -msgid "Default: password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:218 -msgid "ldap_default_authtok (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:221 -msgid "" -"The authentication token of the default bind DN. Only clear text passwords " -"are currently supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:228 -msgid "ldap_user_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:231 -msgid "The object class of a user entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:234 -msgid "Default: posixAccount" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:240 -msgid "ldap_user_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:243 -msgid "The LDAP attribute that corresponds to the user's login name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:247 -msgid "Default: uid" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:253 -msgid "ldap_user_uid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:256 -msgid "The LDAP attribute that corresponds to the user's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:260 -msgid "Default: uidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:266 -msgid "ldap_user_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:269 -msgid "The LDAP attribute that corresponds to the user's primary group id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:273 sssd-ldap.5.xml:740 -msgid "Default: gidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:279 -msgid "ldap_user_gecos (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:282 -msgid "The LDAP attribute that corresponds to the user's gecos field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:286 -msgid "Default: gecos" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:292 -msgid "ldap_user_home_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:295 -msgid "The LDAP attribute that contains the name of the user's home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:299 -msgid "Default: homeDirectory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:305 -msgid "ldap_user_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:308 -msgid "The LDAP attribute that contains the path to the user's default shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:312 -msgid "Default: loginShell" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:318 -msgid "ldap_user_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:321 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP user object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:325 sssd-ldap.5.xml:766 sssd-ldap.5.xml:878 -msgid "Default: nsUniqueId" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:331 -msgid "ldap_user_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:334 sssd-ldap.5.xml:775 sssd-ldap.5.xml:887 -msgid "" -"The LDAP attribute that contains timestamp of the last modification of the " -"parent object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:338 sssd-ldap.5.xml:779 sssd-ldap.5.xml:894 -msgid "Default: modifyTimestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:344 -msgid "ldap_user_shadow_last_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:347 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (date of " -"the last password change)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:357 -msgid "Default: shadowLastChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:363 -msgid "ldap_user_shadow_min (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:366 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (minimum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:375 -msgid "Default: shadowMin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:381 -msgid "ldap_user_shadow_max (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:384 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (maximum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:393 -msgid "Default: shadowMax" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:399 -msgid "ldap_user_shadow_warning (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:402 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password warning period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:412 -msgid "Default: shadowWarning" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:418 -msgid "ldap_user_shadow_inactive (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:421 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password inactivity period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:431 -msgid "Default: shadowInactive" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:437 -msgid "ldap_user_shadow_expire (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:440 -msgid "" -"When using ldap_pwd_policy=shadow or ldap_account_expire_policy=shadow, this " -"parameter contains the name of an LDAP attribute corresponding to its " -"<citerefentry> <refentrytitle>shadow</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> counterpart (account expiration date)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:450 -msgid "Default: shadowExpire" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:456 -msgid "ldap_user_krb_last_pwd_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:459 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time of last password change in " -"kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:465 -msgid "Default: krbLastPwdChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:471 -msgid "ldap_user_krb_password_expiration (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:474 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time when current password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:480 -msgid "Default: krbPasswordExpiration" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:486 -msgid "ldap_user_ad_account_expires (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:489 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the expiration time of the account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:494 -msgid "Default: accountExpires" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:500 -msgid "ldap_user_ad_user_account_control (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:503 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the user account control bit field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:508 -msgid "Default: userAccountControl" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:514 -msgid "ldap_ns_account_lock (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:517 -msgid "" -"When using ldap_account_expire_policy=rhds or equivalent, this parameter " -"determines if access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:522 -msgid "Default: nsAccountLock" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:528 -msgid "ldap_user_nds_login_disabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:531 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines if " -"access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:535 sssd-ldap.5.xml:549 -msgid "Default: loginDisabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:541 -msgid "ldap_user_nds_login_expiration_time (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:544 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines until " -"which date access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:555 -msgid "ldap_user_nds_login_allowed_time_map (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:558 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines the " -"hours of a day in a week when access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:563 -msgid "Default: loginAllowedTimeMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:569 -msgid "ldap_user_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:572 -msgid "" -"The LDAP attribute that contains the user's Kerberos User Principal Name " -"(UPN)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:576 -msgid "Default: krbPrincipalName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:582 -msgid "ldap_user_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:585 -msgid "The LDAP attribute that contains the user's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:592 -msgid "ldap_force_upper_case_realm (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:595 -msgid "" -"Some directory servers, for example Active Directory, might deliver the " -"realm part of the UPN in lower case, which might cause the authentication to " -"fail. Set this option to a non-zero value if you want to use an upper-case " -"realm." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:608 -msgid "ldap_enumeration_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:611 -msgid "" -"Specifies how many seconds SSSD has to wait before refreshing its cache of " -"enumerated records." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:616 sssd-ldap.5.xml:1808 -msgid "Default: 300" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:622 -msgid "ldap_purge_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:625 -msgid "" -"Determine how often to check the cache for inactive entries (such as groups " -"with no members and users who have never logged in) and remove them to save " -"space." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:631 -msgid "Setting this option to zero will disable the cache cleanup operation." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:635 -msgid "Default: 10800 (12 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:641 -msgid "ldap_user_fullname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:644 -msgid "The LDAP attribute that corresponds to the user's full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:648 sssd-ldap.5.xml:727 sssd-ldap.5.xml:828 -#: sssd-ldap.5.xml:919 sssd-ldap.5.xml:1663 sssd-ldap.5.xml:1881 -#: sssd-ipa.5.xml:422 -msgid "Default: cn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:654 -msgid "ldap_user_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:657 -msgid "The LDAP attribute that lists the user's group memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:661 sssd-ipa.5.xml:326 -msgid "Default: memberOf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:667 -msgid "ldap_user_authorized_service (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:670 -msgid "" -"If access_provider=ldap and ldap_access_order=authorized_service, SSSD will " -"use the presence of the authorizedService attribute in the user's LDAP entry " -"to determine access privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:677 -msgid "" -"An explicit deny (!svc) is resolved first. Second, SSSD searches for " -"explicit allow (svc) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:682 -msgid "Default: authorizedService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:688 -msgid "ldap_user_authorized_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:691 -msgid "" -"If access_provider=ldap and ldap_access_order=host, SSSD will use the " -"presence of the host attribute in the user's LDAP entry to determine access " -"privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:697 -msgid "" -"An explicit deny (!host) is resolved first. Second, SSSD searches for " -"explicit allow (host) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:702 -msgid "Default: host" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:708 -msgid "ldap_group_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:711 -msgid "The object class of a group entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:714 -msgid "Default: posixGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:720 -msgid "ldap_group_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:723 -msgid "The LDAP attribute that corresponds to the group name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:733 -msgid "ldap_group_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:736 -msgid "The LDAP attribute that corresponds to the group's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:746 -msgid "ldap_group_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:749 -msgid "The LDAP attribute that contains the names of the group's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:753 -msgid "Default: memberuid (rfc2307) / member (rfc2307bis)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:759 -msgid "ldap_group_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:762 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP group object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:772 -msgid "ldap_group_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:785 -msgid "ldap_group_nesting_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:788 -msgid "" -"If ldap_schema is set to a schema format that supports nested groups (e.g. " -"RFC2307bis), then this option controls how many levels of nesting SSSD will " -"follow. This option has no effect on the RFC2307 schema." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:795 -msgid "Default: 2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:801 -msgid "ldap_netgroup_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:804 -msgid "The object class of a netgroup entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:807 -msgid "In IPA provider, ipa_netgroup_object_class should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:811 -msgid "Default: nisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:817 -msgid "ldap_netgroup_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:820 -msgid "The LDAP attribute that corresponds to the netgroup name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:824 -msgid "In IPA provider, ipa_netgroup_name should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:834 -msgid "ldap_netgroup_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:837 -msgid "The LDAP attribute that contains the names of the netgroup's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:841 -msgid "In IPA provider, ipa_netgroup_member should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:845 -msgid "Default: memberNisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:851 -msgid "ldap_netgroup_triple (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:854 -msgid "" -"The LDAP attribute that contains the (host, user, domain) netgroup triples." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:858 sssd-ldap.5.xml:891 -msgid "This option is not available in IPA provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:861 -msgid "Default: nisNetgroupTriple" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:867 -msgid "ldap_netgroup_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:870 -msgid "" -"The LDAP attribute that contains the UUID/GUID of an LDAP netgroup object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:874 -msgid "In IPA provider, ipa_netgroup_uuid should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:884 -msgid "ldap_netgroup_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:900 -msgid "ldap_service_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:903 -msgid "The object class of a service entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:906 -msgid "Default: ipService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:912 -msgid "ldap_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:915 -msgid "" -"The LDAP attribute that contains the name of service attributes and their " -"aliases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:925 -msgid "ldap_service_port (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:928 -msgid "The LDAP attribute that contains the port managed by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:932 -msgid "Default: ipServicePort" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:938 -msgid "ldap_service_proto (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:941 -msgid "" -"The LDAP attribute that contains the protocols understood by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:945 -msgid "Default: ipServiceProtocol" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:951 -msgid "ldap_service_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:954 -msgid "An optional base DN to restrict service searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:958 sssd-ldap.5.xml:1918 sssd-ldap.5.xml:1937 -#: sssd-ldap.5.xml:1956 sssd-ldap.5.xml:2019 sssd-ldap.5.xml:2041 -#: sssd-ipa.5.xml:163 sssd-ipa.5.xml:187 -msgid "" -"See <quote>ldap_search_base</quote> for information about configuring " -"multiple search bases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:963 sssd-ldap.5.xml:1923 sssd-ldap.5.xml:1942 -#: sssd-ldap.5.xml:1961 sssd-ldap.5.xml:2024 sssd-ldap.5.xml:2046 -#: sssd-ipa.5.xml:173 sssd-ipa.5.xml:192 -msgid "Default: the value of <emphasis>ldap_search_base</emphasis>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:970 -msgid "ldap_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:973 -msgid "" -"Specifies the timeout (in seconds) that ldap searches are allowed to run " -"before they are cancelled and cached results are returned (and offline mode " -"is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:979 -msgid "" -"Note: this option is subject to change in future versions of the SSSD. It " -"will likely be replaced at some point by a series of timeouts for specific " -"lookup types." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:985 sssd-ldap.5.xml:1027 sssd-ldap.5.xml:1042 -msgid "Default: 6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:991 -msgid "ldap_enumeration_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:994 -msgid "" -"Specifies the timeout (in seconds) that ldap searches for user and group " -"enumerations are allowed to run before they are cancelled and cached results " -"are returned (and offline mode is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1001 -msgid "Default: 60" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1007 -msgid "ldap_network_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1010 -msgid "" -"Specifies the timeout (in seconds) after which the <citerefentry> " -"<refentrytitle>poll</refentrytitle> <manvolnum>2</manvolnum> </citerefentry>/" -"<citerefentry> <refentrytitle>select</refentrytitle> <manvolnum>2</" -"manvolnum> </citerefentry> following a <citerefentry> " -"<refentrytitle>connect</refentrytitle> <manvolnum>2</manvolnum> </" -"citerefentry> returns in case of no activity." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1033 -msgid "ldap_opt_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1036 -msgid "" -"Specifies a timeout (in seconds) after which calls to synchronous LDAP APIs " -"will abort if no response is received. Also controls the timeout when " -"communicating with the KDC in case of SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1048 -msgid "ldap_connection_expire_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1051 -msgid "" -"Specifies a timeout (in seconds) that a connection to an LDAP server will be " -"maintained. After this time, the connection will be re-established. If used " -"in parallel with SASL/GSSAPI, the sooner of the two values (this value vs. " -"the TGT lifetime) will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1059 -msgid "Default: 900 (15 minutes)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1065 -msgid "ldap_page_size (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1068 -msgid "" -"Specify the number of records to retrieve from LDAP in a single request. " -"Some LDAP servers enforce a maximum limit per-request." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1073 -msgid "Default: 1000" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1079 -msgid "ldap_disable_paging" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1082 -msgid "" -"Disable the LDAP paging control. This option should be used if the LDAP " -"server reports that it supports the LDAP paging control in its RootDSE but " -"it is not enabled or does not behave properly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1088 -msgid "" -"Example: OpenLDAP servers with the paging control module installed on the " -"server but not enabled will report it in the RootDSE but be unable to use it." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1094 -msgid "" -"Example: 389 DS has a bug where it can only support a one paging control at " -"a time on a single connection. On busy clients, this can result in some " -"requests being denied." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1103 -msgid "ldap_deref_threshold (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1106 -msgid "" -"Specify the number of group members that must be missing from the internal " -"cache in order to trigger a dereference lookup. If less members are missing, " -"they are looked up individually." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1112 -msgid "" -"You can turn off dereference lookups completely by setting the value to 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1116 -msgid "" -"A dereference lookup is a means of fetching all group members in a single " -"LDAP call. Different LDAP servers may implement different dereference " -"methods. The currently supported servers are 389/RHDS, OpenLDAP and Active " -"Directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1124 -msgid "" -"<emphasis>Note:</emphasis> If any of the search bases specifies a search " -"filter, then the dereference lookup performance enhancement will be disabled " -"regardless of this setting." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1137 -msgid "ldap_tls_reqcert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1140 -msgid "" -"Specifies what checks to perform on server certificates in a TLS session, if " -"any. It can be specified as one of the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1146 -msgid "" -"<emphasis>never</emphasis> = The client will not request or check any server " -"certificate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1150 -msgid "" -"<emphasis>allow</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, it will be ignored and the session proceeds normally." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1157 -msgid "" -"<emphasis>try</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, the session is immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1163 -msgid "" -"<emphasis>demand</emphasis> = The server certificate is requested. If no " -"certificate is provided, or a bad certificate is provided, the session is " -"immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1169 -msgid "<emphasis>hard</emphasis> = Same as <quote>demand</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1173 -msgid "Default: hard" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1179 -msgid "ldap_tls_cacert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1182 -msgid "" -"Specifies the file that contains certificates for all of the Certificate " -"Authorities that <command>sssd</command> will recognize." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1187 sssd-ldap.5.xml:1205 sssd-ldap.5.xml:1246 -msgid "" -"Default: use OpenLDAP defaults, typically in <filename>/etc/openldap/ldap." -"conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1194 -msgid "ldap_tls_cacertdir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1197 -msgid "" -"Specifies the path of a directory that contains Certificate Authority " -"certificates in separate individual files. Typically the file names need to " -"be the hash of the certificate followed by '.0'. If available, " -"<command>cacertdir_rehash</command> can be used to create the correct names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1212 -msgid "ldap_tls_cert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1215 -msgid "Specifies the file that contains the certificate for the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1219 sssd-ldap.5.xml:1231 sssd-ldap.5.xml:1979 -#: sssd-ldap.5.xml:2006 sssd-krb5.5.xml:359 -msgid "Default: not set" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1225 -msgid "ldap_tls_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1228 -msgid "Specifies the file that contains the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1237 -msgid "ldap_tls_cipher_suite (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1240 -msgid "" -"Specifies acceptable cipher suites. Typically this is a colon sperated " -"list. See <citerefentry><refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> for format." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1253 -msgid "ldap_id_use_start_tls (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1256 -msgid "" -"Specifies that the id_provider connection must also use <systemitem class=" -"\"protocol\">tls</systemitem> to protect the channel." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1266 -msgid "ldap_sasl_mech (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1269 -msgid "" -"Specify the SASL mechanism to use. Currently only GSSAPI is tested and " -"supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1273 sssd-ldap.5.xml:1428 -msgid "Default: none" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1279 -msgid "ldap_sasl_authid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1282 -msgid "" -"Specify the SASL authorization id to use. When GSSAPI is used, this " -"represents the Kerberos principal used for authentication to the directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1287 -msgid "Default: host/machine.fqdn@REALM" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1293 -msgid "ldap_sasl_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1296 -msgid "" -"If set to true, the LDAP library would perform a reverse lookup to " -"canonicalize the host name during a SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1301 -msgid "Default: false;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1307 -msgid "ldap_krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1310 -msgid "Specify the keytab to use when using SASL/GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1313 -msgid "Default: System keytab, normally <filename>/etc/krb5.keytab</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1319 -msgid "ldap_krb5_init_creds (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1322 -msgid "" -"Specifies that the id_provider should init Kerberos credentials (TGT). This " -"action is performed only if SASL is used and the mechanism selected is " -"GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1334 -msgid "ldap_krb5_ticket_lifetime (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1337 -msgid "Specifies the lifetime in seconds of the TGT if GSSAPI is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1341 -msgid "Default: 86400 (24 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1347 sssd-krb5.5.xml:74 -msgid "krb5_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1350 sssd-krb5.5.xml:77 -msgid "" -"Specifies the comma-separated list of IP addresses or hostnames of the " -"Kerberos servers to which SSSD should connect in the order of preference. " -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. An optional port number (preceded by a " -"colon) may be appended to the addresses or hostnames. If empty, service " -"discovery is enabled - for more information, refer to the <quote>SERVICE " -"DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1362 sssd-krb5.5.xml:89 -msgid "" -"When using service discovery for KDC or kpasswd servers, SSSD first searches " -"for DNS entries that specify _udp as the protocol and falls back to _tcp if " -"none are found." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1367 sssd-krb5.5.xml:94 -msgid "" -"This option was named <quote>krb5_kdcip</quote> in earlier releases of SSSD. " -"While the legacy name is recognized for the time being, users are advised to " -"migrate their config files to use <quote>krb5_server</quote> instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1376 sssd-ipa.5.xml:216 sssd-krb5.5.xml:103 -msgid "krb5_realm (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1379 -msgid "Specify the Kerberos REALM (for SASL/GSSAPI auth)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1382 -msgid "Default: System defaults, see <filename>/etc/krb5.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1388 sssd-ipa.5.xml:231 sssd-krb5.5.xml:409 -msgid "krb5_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1391 -msgid "" -"Specifies if the host principal should be canonicalized when connecting to " -"LDAP server. This feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1403 -msgid "ldap_pwd_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1406 -msgid "" -"Select the policy to evaluate the password expiration on the client side. " -"The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1411 -msgid "" -"<emphasis>none</emphasis> - No evaluation on the client side. This option " -"cannot disable server-side password policies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1416 -msgid "" -"<emphasis>shadow</emphasis> - Use <citerefentry><refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum></citerefentry> style attributes to " -"evaluate if the password has expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1422 -msgid "" -"<emphasis>mit_kerberos</emphasis> - Use the attributes used by MIT Kerberos " -"to determine if the password has expired. Use chpass_provider=krb5 to update " -"these attributes when the password is changed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1434 -msgid "ldap_referrals (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1437 -msgid "Specifies whether automatic referral chasing should be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1441 -msgid "" -"Please note that sssd only supports referral chasing when it is compiled " -"with OpenLDAP version 2.4.13 or higher." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1452 -msgid "ldap_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1455 -msgid "Specifies the service name to use when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1459 -msgid "Default: ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1465 -msgid "ldap_chpass_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1468 -msgid "" -"Specifies the service name to use to find an LDAP server which allows " -"password changes when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1473 -msgid "Default: not set, i.e. service discovery is disabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1479 -msgid "ldap_access_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1482 -msgid "" -"If using access_provider = ldap, this option is mandatory. It specifies an " -"LDAP search filter criteria that must be met for the user to be granted " -"access on this host. If access_provider = ldap and this option is not set, " -"it will result in all users being denied access. Use access_provider = allow " -"to change this default behavior." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1492 sssd-ldap.5.xml:1982 -msgid "Example:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1495 -#, no-wrap -msgid "" -"access_provider = ldap\n" -"ldap_access_filter = memberOf=cn=allowedusers,ou=Groups,dc=example,dc=com\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1499 -msgid "" -"This example means that access to this host is restricted to members of the " -"\"allowedusers\" group in ldap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1504 -msgid "" -"Offline caching for this feature is limited to determining whether the " -"user's last online login was granted access permission. If they were granted " -"access during their last login, they will continue to be granted access " -"while offline and vice-versa." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1512 sssd-ldap.5.xml:1562 -msgid "Default: Empty" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1518 -msgid "ldap_account_expire_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1521 -msgid "" -"With this option a client side evaluation of access control attributes can " -"be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1525 -msgid "" -"Please note that it is always recommended to use server side access control, " -"i.e. the LDAP server should deny the bind request with a suitable error code " -"even if the password is correct." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1532 -msgid "The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1535 -msgid "" -"<emphasis>shadow</emphasis>: use the value of ldap_user_shadow_expire to " -"determine if the account is expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1540 -msgid "" -"<emphasis>ad</emphasis>: use the value of the 32bit field " -"ldap_user_ad_user_account_control and allow access if the second bit is not " -"set. If the attribute is missing access is granted. Also the expiration time " -"of the account is checked." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1547 -msgid "" -"<emphasis>rhds</emphasis>, <emphasis>ipa</emphasis>, <emphasis>389ds</" -"emphasis>: use the value of ldap_ns_account_lock to check if access is " -"allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1553 -msgid "" -"<emphasis>nds</emphasis>: the values of " -"ldap_user_nds_login_allowed_time_map, ldap_user_nds_login_disabled and " -"ldap_user_nds_login_expiration_time are used to check if access is allowed. " -"If both attributes are missing access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1568 -msgid "ldap_access_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1571 -msgid "Comma separated list of access control options. Allowed values are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1575 -msgid "<emphasis>filter</emphasis>: use ldap_access_filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1578 -msgid "<emphasis>expire</emphasis>: use ldap_account_expire_policy" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1582 -msgid "" -"<emphasis>authorized_service</emphasis>: use the authorizedService attribute " -"to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1587 -msgid "<emphasis>host</emphasis>: use the host attribute to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1591 -msgid "Default: filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1594 -msgid "" -"Please note that it is a configuration error if a value is used more than " -"once." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1601 -msgid "ldap_deref (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1604 -msgid "" -"Specifies how alias dereferencing is done when performing a search. The " -"following options are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1609 -msgid "<emphasis>never</emphasis>: Aliases are never dereferenced." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1613 -msgid "" -"<emphasis>searching</emphasis>: Aliases are dereferenced in subordinates of " -"the base object, but not in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1618 -msgid "" -"<emphasis>finding</emphasis>: Aliases are only dereferenced when locating " -"the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1623 -msgid "" -"<emphasis>always</emphasis>: Aliases are dereferenced both in searching and " -"in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1628 -msgid "" -"Default: Empty (this is handled as <emphasis>never</emphasis> by the LDAP " -"client libraries)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:51 -msgid "" -"All of the common configuration options that apply to SSSD domains also " -"apply to LDAP domains. Refer to the <quote>DOMAIN SECTIONS</quote> section " -"of the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for full details. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1639 -msgid "SUDO OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1644 -msgid "ldap_sudorule_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1647 -msgid "The object class of a sudo rule entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1650 -msgid "Default: sudoRole" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1656 -msgid "ldap_sudorule_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1659 -msgid "The LDAP attribute that corresponds to the sudo rule name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1669 -msgid "ldap_sudorule_command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1672 -msgid "The LDAP attribute that corresponds to the command name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1676 -msgid "Default: sudoCommand" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1682 -msgid "ldap_sudorule_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1685 -msgid "" -"The LDAP attribute that corresponds to the host name (or host IP address, " -"host IP network, or host netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1690 -msgid "Default: sudoHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1696 -msgid "ldap_sudorule_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1699 -msgid "" -"The LDAP attribute that corresponds to the user name (or UID, group name or " -"user's netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1703 -msgid "Default: sudoUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1709 -msgid "ldap_sudorule_option (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1712 -msgid "The LDAP attribute that corresponds to the sudo options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1716 -msgid "Default: sudoOption" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1722 -msgid "ldap_sudorule_runasuser (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1725 -msgid "" -"The LDAP attribute that corresponds to the user name that commands may be " -"run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1729 -msgid "Default: sudoRunAsUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1735 -msgid "ldap_sudorule_runasgroup (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1738 -msgid "" -"The LDAP attribute that corresponds to the group name or group GID that " -"commands may be run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1742 -msgid "Default: sudoRunAsGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1748 -msgid "ldap_sudorule_notbefore (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1751 -msgid "" -"The LDAP attribute that corresponds to the start date/time for when the sudo " -"rule is valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1755 -msgid "Default: sudoNotBefore" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1761 -msgid "ldap_sudorule_notafter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1764 -msgid "" -"The LDAP attribute that corresponds to the expiration date/time, after which " -"the sudo rule will no longer be valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1769 -msgid "Default: sudoNotAfter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1775 -msgid "ldap_sudorule_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1778 -msgid "The LDAP attribute that corresponds to the ordering index of the rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1782 -msgid "Default: sudoOrder" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1788 -msgid "ldap_sudo_refresh_enabled (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1791 -msgid "" -"Enables periodical download of all sudo rules. The cache is purged before " -"each update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1801 -msgid "ldap_sudo_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1804 -msgid "" -"How many seconds SSSD has to wait before refreshing its cache of sudo rules." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1642 -msgid "<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1815 -msgid "" -"This manual page only describes attribute name mapping. For detailed " -"explanation of sudo related attribute semantics, see <citerefentry> " -"<refentrytitle>sudoers.ldap</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1825 -msgid "AUTOFS OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1827 -msgid "" -"Please note that the default values correspond to the default schema which " -"is RFC2307." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1834 -msgid "ldap_autofs_map_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1837 sssd-ldap.5.xml:1863 -msgid "The object class of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1840 sssd-ldap.5.xml:1867 -msgid "Default: automountMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1847 -msgid "ldap_autofs_map_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1850 -msgid "The name of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1853 -msgid "Default: ou" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1860 -msgid "ldap_autofs_entry_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1874 -msgid "ldap_autofs_entry_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1877 sssd-ldap.5.xml:1891 -msgid "" -"The key of an automount entry in LDAP. The entry usually corresponds to a " -"mount point." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1888 -msgid "ldap_autofs_entry_value (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1895 -msgid "Default: automountInformation" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1832 -msgid "" -"<placeholder type=\"variablelist\" id=\"0\"/> <placeholder type=" -"\"variablelist\" id=\"1\"/> <placeholder type=\"variablelist\" id=\"2\"/> " -"<placeholder type=\"variablelist\" id=\"3\"/> <placeholder type=" -"\"variablelist\" id=\"4\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1904 -msgid "ADVANCED OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1911 -msgid "ldap_netgroup_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1914 -msgid "" -"An optional base DN to restrict netgroup searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1930 -msgid "ldap_user_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1933 -msgid "An optional base DN to restrict user searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1949 -msgid "ldap_group_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1952 -msgid "An optional base DN to restrict group searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1968 -msgid "ldap_user_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1971 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict user searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1975 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_user_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1985 -#, no-wrap -msgid "" -" ldap_user_search_filter = (loginShell=/bin/tcsh)\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1988 -msgid "" -"This filter would restrict user searches to users that have their shell set " -"to /bin/tcsh." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1995 -msgid "ldap_group_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1998 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict group searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2002 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_group_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2012 -msgid "ldap_sudo_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2015 -msgid "" -"An optional base DN to restrict sudo rules searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2034 -msgid "ldap_autofs_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2037 -msgid "" -"An optional base DN to restrict automounter searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1906 -msgid "" -"These options are supported by LDAP domains, but they should be used with " -"caution. Please include them in your configuration only if you know what you " -"are doing. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2066 -msgid "" -"The following example assumes that SSSD is correctly configured and LDAP is " -"set to one of the domains in the <replaceable>[domains]</replaceable> " -"section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ldap.5.xml:2072 -#, no-wrap -msgid "" -" [domain/LDAP]\n" -" id_provider = ldap\n" -" auth_provider = ldap\n" -" ldap_uri = ldap://ldap.mydomain.org\n" -" ldap_search_base = dc=mydomain,dc=org\n" -" ldap_tls_reqcert = demand\n" -" cache_credentials = true\n" -" enumerate = true\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2071 sssd-simple.5.xml:134 sssd-ipa.5.xml:552 -#: sssd-krb5.5.xml:441 -msgid "<placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:2085 sssd_krb5_locator_plugin.8.xml:61 -msgid "NOTES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2087 -msgid "" -"The descriptions of some of the configuration options in this manual page " -"are based on the <citerefentry> <refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page from the OpenLDAP 2.4 " -"distribution." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2098 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <refentryinfo> -#: pam_sss.8.xml:8 include/upstream.xml:2 -msgid "" -"<productname>SSSD</productname> <orgname>The SSSD upstream - http://" -"fedorahosted.org/sssd</orgname>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: pam_sss.8.xml:13 pam_sss.8.xml:18 -msgid "pam_sss" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: pam_sss.8.xml:19 -msgid "PAM module for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: pam_sss.8.xml:24 -msgid "" -"<command>pam_sss.so</command> <arg choice='opt'> <replaceable>quiet</" -"replaceable> </arg> <arg choice='opt'> <replaceable>forward_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_first_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_authtok</" -"replaceable> </arg> <arg choice='opt'> <replaceable>retry=N</replaceable> </" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:45 -msgid "" -"<command>pam_sss.so</command> is the PAM interface to the System Security " -"Services daemon (SSSD). Errors and results are logged through <command>syslog" -"(3)</command> with the LOG_AUTHPRIV facility." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:55 -msgid "<option>quiet</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:58 -msgid "Suppress log messages for unknown users." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:63 -msgid "<option>forward_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:66 -msgid "" -"If <option>forward_pass</option> is set the entered password is put on the " -"stack for other PAM modules to use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:73 -msgid "<option>use_first_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:76 -msgid "" -"The argument use_first_pass forces the module to use a previous stacked " -"modules password and will never prompt the user - if no password is " -"available or the password is not appropriate, the user will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:84 -msgid "<option>use_authtok</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:87 -msgid "" -"When password changing enforce the module to set the new password to the one " -"provided by a previously stacked password module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:94 -msgid "<option>retry=N</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:97 -msgid "" -"If specified the user is asked another N times for a password if " -"authentication fails. Default is 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:99 -msgid "" -"Please note that this option might not work as expected if the application " -"calling PAM handles the user dialog on its own. A typical example is " -"<command>sshd</command> with <option>PasswordAuthentication</option>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:110 -msgid "MODULE TYPES PROVIDED" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:111 -msgid "" -"All module types (<option>account</option>, <option>auth</option>, " -"<option>password</option> and <option>session</option>) are provided." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:117 -msgid "FILES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:118 -msgid "" -"If a password reset by root fails, because the corresponding SSSD provider " -"does not support password resets, an individual message can be displayed. " -"This message can e.g. contain instructions about how to reset a password." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:123 -msgid "" -"The message is read from the file <filename>pam_sss_pw_reset_message.LOC</" -"filename> where LOC stands for a locale string returned by <citerefentry> " -"<refentrytitle>setlocale</refentrytitle><manvolnum>3</manvolnum> </" -"citerefentry>. If there is no matching file the content of " -"<filename>pam_sss_pw_reset_message.txt</filename> is displayed. Root must be " -"the owner of the files and only root may have read and write permissions " -"while all other users must have only read permissions." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:133 -msgid "" -"These files are searched in the directory <filename>/etc/sssd/customize/" -"DOMAIN_NAME/</filename>. If no matching file is present a generic message is " -"displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:141 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd_krb5_locator_plugin.8.xml:10 sssd_krb5_locator_plugin.8.xml:15 -msgid "sssd_krb5_locator_plugin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:22 -msgid "" -"The Kerberos locator plugin <command>sssd_krb5_locator_plugin</command> is " -"used by the Kerberos provider of <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry> to tell the Kerberos " -"libraries what Realm and which KDC to use. Typically this is done in " -"<citerefentry> <refentrytitle>krb5.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> which is always read by the Kerberos libraries. " -"To simplify the configuration the Realm and the KDC can be defined in " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> as described in <citerefentry> " -"<refentrytitle>sssd-krb5.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry> puts the Realm and the name or IP address of the KDC into " -"the environment variables SSSD_KRB5_REALM and SSSD_KRB5_KDC respectively. " -"When <command>sssd_krb5_locator_plugin</command> is called by the kerberos " -"libraries it reads and evaluates these variables and returns them to the " -"libraries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:63 -msgid "" -"Not all Kerberos implementations support the use of plugins. If " -"<command>sssd_krb5_locator_plugin</command> is not available on your system " -"you have to edit /etc/krb5.conf to reflect your Kerberos setup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:69 -msgid "" -"If the environment variable SSSD_KRB5_LOCATOR_DEBUG is set to any value " -"debug messages will be sent to stderr." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:77 -msgid "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-simple.5.xml:10 sssd-simple.5.xml:16 -msgid "sssd-simple" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd-simple.5.xml:17 -msgid "the configuration file for SSSD's 'simple' access-control provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:24 -msgid "" -"This manual page describes the configuration of the simple access-control " -"provider for <citerefentry> <refentrytitle>sssd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry>. For a detailed syntax reference, " -"refer to the <quote>FILE FORMAT</quote> section of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:38 -msgid "" -"The simple access provider grants or denies access based on an access or " -"deny list of user or group names. The following rules apply:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:43 -msgid "If all lists are empty, access is granted" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:47 -msgid "" -"If any list is provided, the order of evaluation is allow,deny. This means " -"that any matching deny rule will supersede any matched allow rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:54 -msgid "" -"If either or both \"allow\" lists are provided, all users are denied unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:60 -msgid "" -"If only \"deny\" lists are provided, all users are granted access unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:78 -msgid "simple_allow_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:81 -msgid "Comma separated list of users who are allowed to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:88 -msgid "simple_deny_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:91 -msgid "Comma separated list of users who are explicitly denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:97 -msgid "simple_allow_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:100 -msgid "" -"Comma separated list of groups that are allowed to log in. This applies only " -"to groups within this SSSD domain. Local groups are not evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:108 -msgid "simple_deny_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:111 -msgid "" -"Comma separated list of groups that are explicitly denied access. This " -"applies only to groups within this SSSD domain. Local groups are not " -"evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:70 sssd-ipa.5.xml:65 -msgid "" -"Refer to the section <quote>DOMAIN SECTIONS</quote> of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page for details on the configuration of an SSSD " -"domain. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:120 -msgid "" -"Please note that it is an configuration error if both, simple_allow_users " -"and simple_deny_users, are defined." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:128 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the simple access provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-simple.5.xml:135 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" access_provider = simple\n" -" simple_allow_users = user1, user2\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:145 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ipa.5.xml:10 sssd-ipa.5.xml:16 -msgid "sssd-ipa" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:23 -msgid "" -"This manual page describes the configuration of the IPA provider for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. For a detailed syntax reference, refer to the <quote>FILE " -"FORMAT</quote> section of the <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:36 -msgid "" -"The IPA provider is a back end used to connect to an IPA server. (Refer to " -"the freeipa.org web site for information about IPA servers.) This provider " -"requires that the machine be joined to the IPA domain; configuration is " -"almost entirely self-discovered and obtained directly from the server." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:43 -msgid "" -"The IPA provider accepts the same options used by the <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> identity provider and the <citerefentry> <refentrytitle>sssd-" -"krb5</refentrytitle> <manvolnum>5</manvolnum> </citerefentry> authentication " -"provider with some exceptions described below." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:55 -msgid "" -"However, it is neither necessary nor recommended to set these options. IPA " -"provider can also be used as an access and chpass provider. As an access " -"provider it uses HBAC (host-based access control) rules. Please refer to " -"freeipa.org for more information about HBAC. No configuration of access " -"provider is required on the client side." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:72 -msgid "ipa_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:75 -msgid "" -"Specifies the name of the IPA domain. This is optional. If not provided, " -"the configuration domain name is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:83 -msgid "ipa_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:86 -msgid "" -"The comma-separated list of IP addresses or hostnames of the IPA servers to " -"which SSSD should connect in the order of preference. For more information " -"on failover and server redundancy, see the <quote>FAILOVER</quote> section. " -"This is optional if autodiscovery is enabled. For more information on " -"service discovery, refer to the the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:99 -msgid "ipa_hostname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:102 -msgid "" -"Optional. May be set on machines where the hostname(5) does not reflect the " -"fully qualified name used in the IPA domain to identify this host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:110 -msgid "ipa_dyndns_update (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:113 -msgid "" -"Optional. This option tells SSSD to automatically update the DNS server " -"built into FreeIPA v2 with the IP address of this client." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:118 -msgid "" -"NOTE: On older systems (such as RHEL 5), for this behavior to work reliably, " -"the default Kerberos realm must be set properly in /etc/krb5.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:129 -msgid "ipa_dyndns_iface (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:132 -msgid "" -"Optional. Applicable only when ipa_dyndns_update is true. Choose the " -"interface whose IP address should be used for dynamic DNS updates." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:137 -msgid "Default: Use the IP address of the IPA LDAP connection" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:143 -msgid "ipa_hbac_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:146 -msgid "Optional. Use the given string as search base for HBAC related objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:150 -msgid "Default: Use base DN" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:156 -msgid "ipa_host_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:159 -msgid "Optional. Use the given string as search base for host objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:168 -msgid "" -"If filter is given in any of search bases and " -"<emphasis>ipa_hbac_support_srchost</emphasis> is set to False, the filter " -"will be ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:180 -msgid "ipa_selinux_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:183 -msgid "Optional. Use the given string as search base for SELinux user maps." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:199 sssd-krb5.5.xml:229 -msgid "krb5_validate (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:202 sssd-krb5.5.xml:232 -msgid "" -"Verify with the help of krb5_keytab that the TGT obtained has not been " -"spoofed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:209 -msgid "" -"Note that this default differs from the traditional Kerberos provider back " -"end." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:219 -msgid "" -"The name of the Kerberos realm. This is optional and defaults to the value " -"of <quote>ipa_domain</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:223 -msgid "" -"The name of the Kerberos realm has a special meaning in IPA - it is " -"converted into the base DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:234 -msgid "" -"Specifies if the host and user principal should be canonicalized when " -"connecting to IPA LDAP and also for AS requests. This feature is available " -"with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:247 -msgid "ipa_hbac_refresh (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:250 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server. " -"This will reduce the latency and load on the IPA server if there are many " -"access-control requests made in a short period." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:257 -msgid "Default: 5 (seconds)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:262 -msgid "ipa_hbac_treat_deny_as (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:265 -msgid "" -"This option specifies how to treat the deprecated DENY-type HBAC rules. As " -"of FreeIPA v2.1, DENY rules are no longer supported on the server. All users " -"of FreeIPA will need to migrate their rules to use only the ALLOW rules. The " -"client will support two modes of operation during this transition period:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:274 -msgid "" -"<emphasis>DENY_ALL</emphasis>: If any HBAC DENY rules are detected, all " -"users will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:279 -msgid "" -"<emphasis>IGNORE</emphasis>: SSSD will ignore any DENY rules. Be very " -"careful with this option, as it may result in opening unintended access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:284 -msgid "Default: DENY_ALL" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:289 -msgid "ipa_hbac_support_srchost (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:292 -msgid "" -"If this is set to false, then srchost as given to SSSD by PAM will be " -"ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:296 -msgid "" -"Note that if set to <emphasis>False</emphasis>, this option casuses filters " -"given in <emphasis>ipa_host_search_base</emphasis> to be ignored;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:307 -msgid "ipa_automount_location (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:310 -msgid "The automounter location this IPA client will be using" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:313 -msgid "Default: The location named \"default\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:319 -msgid "ipa_netgroup_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:322 -msgid "The LDAP attribute that lists netgroup's memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:331 -msgid "ipa_netgroup_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:334 -msgid "" -"The LDAP attribute that lists system users and groups that are direct " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:339 sssd-ipa.5.xml:434 -msgid "Default: memberUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:344 -msgid "ipa_netgroup_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:347 -msgid "" -"The LDAP attribute that lists hosts and host groups that are direct members " -"of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:351 sssd-ipa.5.xml:446 -msgid "Default: memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:356 -msgid "ipa_netgroup_member_ext_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:359 -msgid "" -"The LDAP attribute that lists FQDNs of hosts and host groups that are " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:363 -msgid "Default: externalHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:368 -msgid "ipa_netgroup_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:371 -msgid "The LDAP attribute that contains NIS domain name of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:375 -msgid "Default: nisDomainName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:381 -msgid "ipa_host_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:384 sssd-ipa.5.xml:407 -msgid "The object class of a host entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:387 sssd-ipa.5.xml:410 -msgid "Default: ipaHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:392 -msgid "ipa_host_fqdn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:395 -msgid "The LDAP attribute that contains FQDN of the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:398 -msgid "Default: fqdn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:404 -msgid "ipa_selinux_usermap_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:415 -msgid "ipa_selinux_usermap_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:418 -msgid "The LDAP attribute that contains the name of SELinux usermap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:427 -msgid "ipa_selinux_usermap_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:430 -msgid "" -"The LDAP attribute that contains all users / groups this rule match against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:439 -msgid "ipa_selinux_usermap_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:442 -msgid "" -"The LDAP attribute that contains all hosts / hostgroups this rule match " -"against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:451 -msgid "ipa_selinux_usermap_see_also (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:454 -msgid "" -"The LDAP attribute that contains DN of HBAC rule which can be used for " -"matching instead of memberUser and memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:459 -msgid "Default: seeAlso" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:464 -msgid "ipa_selinux_usermap_selinux_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:467 -msgid "The LDAP attribute that contains SELinux user string itself." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:471 -msgid "Default: ipaSELinuxUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:476 -msgid "ipa_selinux_usermap_enabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:479 -msgid "" -"The LDAP attribute that contains whether or not is user map enabled for " -"usage." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:483 -msgid "Default: ipaEnabledFlag" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:488 -msgid "ipa_selinux_usermap_user_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:491 -msgid "The LDAP attribute that contains user category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:495 -msgid "Default: userCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:500 -msgid "ipa_selinux_usermap_host_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:503 -msgid "The LDAP attribute that contains host category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:507 -msgid "Default: hostCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:512 -msgid "ipa_selinux_usermap_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:515 -msgid "The LDAP attribute that contains unique ID of the user map." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:519 -msgid "Default: ipaUniqueID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:524 -msgid "ipa_host_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:527 -msgid "The LDAP attribute that contains the host's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:531 -msgid "Default: ipaSshPubKey" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:546 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the ipa provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ipa.5.xml:553 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" id_provider = ipa\n" -" ipa_server = ipaserver.example.com\n" -" ipa_hostname = myhost.example.com\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:564 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.8.xml:10 sssd.8.xml:15 -msgid "sssd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.8.xml:16 -msgid "System Security Services Daemon" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sssd.8.xml:21 -msgid "" -"<command>sssd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:31 -msgid "" -"<command>SSSD</command> provides a set of daemons to manage access to remote " -"directories and authentication mechanisms. It provides an NSS and PAM " -"interface toward the system and a pluggable backend system to connect to " -"multiple different account sources as well as D-Bus interface. It is also " -"the basis to provide client auditing and policy services for projects like " -"FreeIPA. It provides a more robust database to store local users as well as " -"extended user data." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:46 -msgid "" -"<option>-d</option>,<option>--debug-level</option> <replaceable>LEVEL</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:53 -msgid "<option>--debug-timestamps=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:57 -msgid "<emphasis>1</emphasis>: Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:60 -msgid "<emphasis>0</emphasis>: Disable timestamp in the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:69 -msgid "<option>--debug-microseconds=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:73 -msgid "" -"<emphasis>1</emphasis>: Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:76 -msgid "<emphasis>0</emphasis>: Disable microseconds in timestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:79 -msgid "Default: 0" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:85 -msgid "<option>-f</option>,<option>--debug-to-files</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:89 -msgid "" -"Send the debug output to files instead of stderr. By default, the log files " -"are stored in <filename>/var/log/sssd</filename> and there are separate log " -"files for every SSSD service and domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:97 -msgid "<option>-D</option>,<option>--daemon</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:101 -msgid "Become a daemon after starting up." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:107 -msgid "<option>-i</option>,<option>--interactive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:111 -msgid "Run in the foreground, don't become a daemon." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:117 sss_debuglevel.8.xml:42 -msgid "<option>-c</option>,<option>--config</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:121 sss_debuglevel.8.xml:46 -msgid "" -"Specify a non-default config file. The default is <filename>/etc/sssd/sssd." -"conf</filename>. For reference on the config file syntax and options, " -"consult the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:135 -msgid "<option>--version</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:139 -msgid "Print version number and exit." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.8.xml:147 -msgid "Signals" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:150 -msgid "SIGTERM/SIGINT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:153 -msgid "" -"Informs the SSSD to gracefully terminate all of its child processes and then " -"shut down the monitor." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:159 -msgid "SIGHUP" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:162 -msgid "" -"Tells the SSSD to stop writing to its current debug file descriptors and to " -"close and reopen them. This is meant to facilitate log rolling with programs " -"like logrotate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:170 -msgid "SIGUSR1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:173 -msgid "" -"Tells the SSSD to simulate offline operation for one minute. This is mostly " -"useful for testing purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:179 -msgid "SIGUSR2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:182 -msgid "" -"Tells the SSSD to go online immediately. This is mostly useful for testing " -"purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:193 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_obfuscate.8.xml:10 sss_obfuscate.8.xml:15 -msgid "sss_obfuscate" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_obfuscate.8.xml:16 -msgid "obfuscate a clear text password" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_obfuscate.8.xml:21 -msgid "" -"<command>sss_obfuscate</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>[PASSWORD]</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:32 -msgid "" -"<command>sss_obfuscate</command> converts a given password into human-" -"unreadable format and places it into appropriate domain section of the SSSD " -"config file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:37 -msgid "" -"The cleartext password is read from standard input or entered " -"interactively. The obfuscated password is put into " -"<quote>ldap_default_authtok</quote> parameter of a given SSSD domain and the " -"<quote>ldap_default_authtok_type</quote> parameter is set to " -"<quote>obfuscated_password</quote>. Refer to <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more details on these parameters." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:49 -msgid "" -"Please note that obfuscating the password provides <emphasis>no real " -"security benefit</emphasis> as it is still possible for an attacker to " -"reverse-engineer the password back. Using better authentication mechanisms " -"such as client side certificates or GSSAPI is <emphasis>strongly</emphasis> " -"advised." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:63 -msgid "<option>-s</option>,<option>--stdin</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:67 -msgid "The password to obfuscate will be read from standard input." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:74 sss_ssh_authorizedkeys.1.xml:82 -#: sss_ssh_knownhostsproxy.1.xml:81 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>DOMAIN</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:79 -msgid "" -"The SSSD domain to use the password in. The default name is <quote>default</" -"quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:86 -msgid "" -"<option>-f</option>,<option>--file</option> <replaceable>FILE</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:91 -msgid "Read the config file specified by the positional parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:95 -msgid "Default: <filename>/etc/sssd/sssd.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:105 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_useradd.8.xml:10 sss_useradd.8.xml:15 -msgid "sss_useradd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_useradd.8.xml:16 -msgid "create a new user" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_useradd.8.xml:21 -msgid "" -"<command>sss_useradd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:32 -msgid "" -"<command>sss_useradd</command> creates a new user account using the values " -"specified on the command line plus the default values from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:43 -msgid "" -"<option>-u</option>,<option>--uid</option> <replaceable>UID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:48 -msgid "" -"Set the UID of the user to the value of <replaceable>UID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:55 sss_usermod.8.xml:43 -msgid "" -"<option>-c</option>,<option>--gecos</option> <replaceable>COMMENT</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:60 sss_usermod.8.xml:48 -msgid "" -"Any text string describing the user. Often used as the field for the user's " -"full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:67 sss_usermod.8.xml:55 -msgid "" -"<option>-h</option>,<option>--home</option> <replaceable>HOME_DIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:72 -msgid "" -"The home directory of the user account. The default is to append the " -"<replaceable>LOGIN</replaceable> name to <filename>/home</filename> and use " -"that as the home directory. The base that is prepended before " -"<replaceable>LOGIN</replaceable> is tunable with <quote>user_defaults/" -"baseDirectory</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:82 sss_usermod.8.xml:66 -msgid "" -"<option>-s</option>,<option>--shell</option> <replaceable>SHELL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:87 -msgid "" -"The user's login shell. The default is currently <filename>/bin/bash</" -"filename>. The default can be changed with <quote>user_defaults/" -"defaultShell</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:96 -msgid "" -"<option>-G</option>,<option>--groups</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:101 -msgid "A list of existing groups this user is also a member of." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:107 -msgid "<option>-m</option>,<option>--create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:111 -msgid "" -"Create the user's home directory if it does not exist. The files and " -"directories contained in the skeleton directory (which can be defined with " -"the -k option or in the config file) will be copied to the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:121 -msgid "<option>-M</option>,<option>--no-create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:125 -msgid "" -"Do not create the user's home directory. Overrides configuration settings." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:132 -msgid "" -"<option>-k</option>,<option>--skel</option> <replaceable>SKELDIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:137 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<command>sss_useradd</command>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:143 -msgid "" -"This option is only valid if the <option>-m</option> (or <option>--create-" -"home</option>) option is specified, or creation of home directories is set " -"to TRUE in the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:152 sss_usermod.8.xml:124 -msgid "" -"<option>-Z</option>,<option>--selinux-user</option> " -"<replaceable>SELINUX_USER</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:157 -msgid "" -"The SELinux user for the user's login. If not specified, the system default " -"will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:169 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-krb5.5.xml:10 sssd-krb5.5.xml:16 -msgid "sssd-krb5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:23 -msgid "" -"This manual page describes the configuration of the Kerberos 5 " -"authentication backend for <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry>. For a detailed " -"syntax reference, please refer to the <quote>FILE FORMAT</quote> section of " -"the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:36 -msgid "" -"The Kerberos 5 authentication backend contains auth and chpass providers. It " -"must be paired with identity provider in order to function properly (for " -"example, id_provider = ldap). Some information required by the Kerberos 5 " -"authentication backend must be provided by the identity provider, such as " -"the user's Kerberos Principal Name (UPN). The configuration of the identity " -"provider should have an entry to specify the UPN. Please refer to the man " -"page for the applicable identity provider for details on how to configure " -"this." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:47 -msgid "" -"This backend also provides access control based on the .k5login file in the " -"home directory of the user. See <citerefentry> <refentrytitle>.k5login</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry> for more details. " -"Please note that an empty .k5login file will deny all access to this user. " -"To activate this feature use 'access_provider = krb5' in your sssd " -"configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:55 -msgid "" -"In the case where the UPN is not available in the identity backend " -"<command>sssd</command> will construct a UPN using the format " -"<replaceable>username</replaceable>@<replaceable>krb5_realm</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:106 -msgid "" -"The name of the Kerberos realm. This option is required and must be " -"specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:113 -msgid "krb5_kpasswd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:116 -msgid "" -"If the change password service is not running on the KDC alternative servers " -"can be defined here. An optional port number (preceded by a colon) may be " -"appended to the addresses or hostnames." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:122 -msgid "" -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. Please note that even if there are no more " -"kpasswd servers to try the back end is not switch to offline if " -"authentication against the KDC is still possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:129 -msgid "Default: Use the KDC" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:135 -msgid "krb5_ccachedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:138 -msgid "" -"Directory to store credential caches. All the substitution sequences of " -"krb5_ccname_template can be used here, too, except %d and %P. If the " -"directory does not exist it will be created. If %u, %U, %p or %h are used a " -"private directory belonging to the user is created. Otherwise a public " -"directory with restricted deletion flag (aka sticky bit, see <citerefentry> " -"<refentrytitle>chmod</refentrytitle> <manvolnum>1</manvolnum> </" -"citerefentry> for details) is created." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:151 -msgid "Default: /tmp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:157 -msgid "krb5_ccname_template (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:171 -msgid "login UID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:174 -msgid "%p" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:175 -msgid "principal name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:179 -msgid "%r" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:180 -msgid "realm name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:183 -msgid "%h" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:184 -msgid "home directory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:189 -msgid "value of krb5ccache_dir" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:194 -msgid "%P" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:195 -msgid "the process ID of the sssd client" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:160 -msgid "" -"Location of the user's credential cache. Currently only file based " -"credential caches are supported. In the template the following sequences are " -"substituted: <placeholder type=\"variablelist\" id=\"0\"/> If the template " -"ends with 'XXXXXX' mkstemp(3) is used to create a unique filename in a safe " -"way." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:209 -msgid "Default: FILE:%d/krb5cc_%U_XXXXXX" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:215 -msgid "krb5_auth_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:218 -msgid "" -"Timeout in seconds after an online authentication or change password request " -"is aborted. If possible the authentication request is continued offline." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:241 -msgid "krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:244 -msgid "" -"The location of the keytab to use when validating credentials obtained from " -"KDCs." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:248 -msgid "Default: /etc/krb5.keytab" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:254 -msgid "krb5_store_password_if_offline (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:257 -msgid "" -"Store the password of the user if the provider is offline and use it to " -"request a TGT when the provider gets online again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:262 -msgid "" -"Please note that this feature currently only available on a Linux platform. " -"Passwords stored in this way are kept in plaintext in the kernel keyring and " -"are potentially accessible by the root user (with difficulty)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:275 -msgid "krb5_renewable_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:278 -msgid "" -"Request a renewable ticket with a total lifetime given by an integer " -"immediately followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:283 sssd-krb5.5.xml:319 -msgid "<emphasis>s</emphasis> seconds" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:286 sssd-krb5.5.xml:322 -msgid "<emphasis>m</emphasis> minutes" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:289 sssd-krb5.5.xml:325 -msgid "<emphasis>h</emphasis> hours" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:292 sssd-krb5.5.xml:328 -msgid "<emphasis>d</emphasis> days." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:295 sssd-krb5.5.xml:331 -msgid "If there is no delimiter <emphasis>s</emphasis> is assumed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:299 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"renewable lifetime to one and a half hours please use '90m' instead of " -"'1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:305 -msgid "Default: not set, i.e. the TGT is not renewable" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:311 -msgid "krb5_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:314 -msgid "" -"Request ticket with a with a lifetime given by an integer immediately " -"followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:335 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"lifetime to one and a half hours please use '90m' instead of '1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:340 -msgid "" -"Default: not set, i.e. the default ticket lifetime configured on the KDC." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:347 -msgid "krb5_renew_interval (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:350 -msgid "" -"The time in seconds between two checks if the TGT should be renewed. TGTs " -"are renewed if about half of their lifetime is exceeded." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:355 -msgid "If this option is not set or 0 the automatic renewal is disabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:365 -msgid "krb5_use_fast (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:368 -msgid "" -"Enables flexible authentication secure tunneling (FAST) for Kerberos pre-" -"authentication. The following options are supported:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:373 -msgid "" -"<emphasis>never</emphasis> use FAST, this is equivalent to not set this " -"option at all." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:377 -msgid "" -"<emphasis>try</emphasis> to use FAST, if the server does not support fast " -"continue without." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:381 -msgid "" -"<emphasis>demand</emphasis> to use FAST, fail if the server does not require " -"fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:385 -msgid "Default: not set, i.e. FAST is not used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:388 -msgid "Please note that a keytab is required to use fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:391 -msgid "" -"Please note also that sssd supports fast only with MIT Kerberos version 1.8 " -"and above. If sssd used with an older version using this option is a " -"configuration error." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:400 -msgid "krb5_fast_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:403 -msgid "Specifies the server principal to use for FAST." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:412 -msgid "" -"Specifies if the host and user principal should be canonicalized. This " -"feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:65 -msgid "" -"If the auth-module krb5 is used in a SSSD domain, the following options must " -"be used. See the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page, section <quote>DOMAIN " -"SECTIONS</quote> for details on the configuration of a SSSD domain. " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:434 -msgid "" -"The following example assumes that SSSD is correctly configured and FOO is " -"one of the domains in the <replaceable>[sssd]</replaceable> section. This " -"example shows only configuration of Kerberos authentication, it does not " -"include any identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-krb5.5.xml:442 -#, no-wrap -msgid "" -" [domain/FOO]\n" -" auth_provider = krb5\n" -" krb5_server = 192.168.1.1\n" -" krb5_realm = EXAMPLE.COM\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:453 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupadd.8.xml:10 sss_groupadd.8.xml:15 -msgid "sss_groupadd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupadd.8.xml:16 -msgid "create a new group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupadd.8.xml:21 -msgid "" -"<command>sss_groupadd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:32 -msgid "" -"<command>sss_groupadd</command> creates a new group. These groups are " -"compatible with POSIX groups, with the additional feature that they can " -"contain other groups as members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupadd.8.xml:43 -msgid "" -"<option>-g</option>,<option>--gid</option> <replaceable>GID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupadd.8.xml:48 -msgid "" -"Set the GID of the group to the value of <replaceable>GID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_userdel.8.xml:10 sss_userdel.8.xml:15 -msgid "sss_userdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_userdel.8.xml:16 -msgid "delete a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_userdel.8.xml:21 -msgid "" -"<command>sss_userdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:32 -msgid "" -"<command>sss_userdel</command> deletes a user identified by login name " -"<replaceable>LOGIN</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:44 -msgid "<option>-r</option>,<option>--remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:48 -msgid "" -"Files in the user's home directory will be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:56 -msgid "<option>-R</option>,<option>--no-remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:60 -msgid "" -"Files in the user's home directory will NOT be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:68 -msgid "<option>-f</option>,<option>--force</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:72 -msgid "" -"This option forces <command>sss_userdel</command> to remove the user's home " -"directory and mail spool, even if they are not owned by the specified user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:80 -msgid "<option>-k</option>,<option>--kick</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:84 -msgid "Before actually deleting the user, terminate all his processes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:95 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupdel.8.xml:10 sss_groupdel.8.xml:15 -msgid "sss_groupdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupdel.8.xml:16 -msgid "delete a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupdel.8.xml:21 -msgid "" -"<command>sss_groupdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:32 -msgid "" -"<command>sss_groupdel</command> deletes a group identified by its name " -"<replaceable>GROUP</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupshow.8.xml:10 sss_groupshow.8.xml:15 -msgid "sss_groupshow" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupshow.8.xml:16 -msgid "print properties of a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupshow.8.xml:21 -msgid "" -"<command>sss_groupshow</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:32 -msgid "" -"<command>sss_groupshow</command> displays information about a group " -"identified by its name <replaceable>GROUP</replaceable>. The information " -"includes the group ID number, members of the group and the parent group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupshow.8.xml:43 -msgid "<option>-R</option>,<option>--recursive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupshow.8.xml:47 -msgid "" -"Also print indirect group members in a tree-like hierarchy. Note that this " -"also affects printing parent groups - without <option>R</option>, only the " -"direct parent will be printed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_usermod.8.xml:10 sss_usermod.8.xml:15 -msgid "sss_usermod" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_usermod.8.xml:16 -msgid "modify a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_usermod.8.xml:21 -msgid "" -"<command>sss_usermod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:32 -msgid "" -"<command>sss_usermod</command> modifies the account specified by " -"<replaceable>LOGIN</replaceable> to reflect the changes that are specified " -"on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:60 -msgid "The home directory of the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:71 -msgid "The user's login shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:82 -msgid "" -"Append this user to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:96 -msgid "" -"Remove this user from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:103 -msgid "<option>-l</option>,<option>--lock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:107 -msgid "Lock the user account. The user won't be able to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:114 -msgid "<option>-u</option>,<option>--unlock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:118 -msgid "Unlock the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:129 -msgid "The SELinux user for the user's login." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:140 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_cache.8.xml:10 sss_cache.8.xml:15 -msgid "sss_cache" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_cache.8.xml:16 -msgid "perform cache cleanup" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_cache.8.xml:21 -msgid "" -"<command>sss_cache</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_cache.8.xml:31 -msgid "" -"<command>sss_cache</command> invalidates records in SSSD cache. Invalidated " -"records are forced to be reloaded from server as soon as related SSSD " -"backend is online." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:42 -msgid "" -"<option>-u</option>,<option>--user</option> <replaceable>login</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:47 -msgid "Invalidate specific user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:53 -msgid "<option>-U</option>,<option>--users</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:57 -msgid "" -"Invalidate all user records. This option overrides invalidation of specific " -"user if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:64 -msgid "" -"<option>-g</option>,<option>--group</option> <replaceable>group</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:69 -msgid "Invalidate specific group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:75 -msgid "<option>-G</option>,<option>--groups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:79 -msgid "" -"Invalidate all group records. This option overrides invalidation of specific " -"group if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:86 -msgid "" -"<option>-n</option>,<option>--netgroup</option> <replaceable>netgroup</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:91 -msgid "Invalidate specific netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:97 -msgid "<option>-N</option>,<option>--netgroups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:101 -msgid "" -"Invalidate all netgroup records. This option overrides invalidation of " -"specific netgroup if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:108 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>domain</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:113 -msgid "Restrict invalidation process only to a particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_debuglevel.8.xml:10 sss_debuglevel.8.xml:15 -msgid "sss_debuglevel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_debuglevel.8.xml:16 -msgid "change debug level while SSSD is running" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_debuglevel.8.xml:21 -msgid "" -"<command>sss_debuglevel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>NEW_DEBUG_LEVEL</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_debuglevel.8.xml:32 -msgid "" -"<command>sss_debuglevel</command> changes debug level of SSSD monitor and " -"providers to <replaceable>NEW_DEBUG_LEVEL</replaceable> while SSSD is " -"running." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_debuglevel.8.xml:59 -msgid "<replaceable>NEW_DEBUG_LEVEL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_authorizedkeys.1.xml:10 sss_ssh_authorizedkeys.1.xml:15 -msgid "sss_ssh_authorizedkeys" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_ssh_authorizedkeys.1.xml:11 sss_ssh_knownhostsproxy.1.xml:11 -msgid "1" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_authorizedkeys.1.xml:16 -msgid "get OpenSSH authorized keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_authorizedkeys.1.xml:21 -msgid "" -"<command>sss_ssh_authorizedkeys</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>USER</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:32 -msgid "" -"<command>sss_ssh_authorizedkeys</command> acquires SSH public keys for user " -"<replaceable>USER</replaceable> and outputs them in OpenSSH authorized_keys " -"format (see the <quote>AUTHORIZED_KEYS FILE FORMAT</quote> section of " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> for more information)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:41 -msgid "" -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_authorizedkeys</" -"command> for public key user authentication if it is compiled with support " -"for either <quote>AuthorizedKeysCommand</quote> or <quote>PubkeyAgent</" -"quote> <citerefentry> <refentrytitle>sshd_config</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:58 -#, no-wrap -msgid "AuthorizedKeysCommand /usr/bin/sss_ssh_authorizedkeys\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:51 -msgid "" -"If <quote>AuthorizedKeysCommand</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by putting the following directive " -"in <citerefentry> <refentrytitle>sshd_config</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry>: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:69 -#, no-wrap -msgid "PubKeyAgent /usr/bin/sss_ssh_authorizedkeys %u\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:62 -msgid "" -"If <quote>PubkeyAgent</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by using the following directive " -"for <citerefentry> <refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> configuration: <placeholder type=\"programlisting" -"\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_authorizedkeys.1.xml:87 -msgid "" -"Search for user public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:98 -msgid "" -"<citerefentry> <refentrytitle>sshd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sshd_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_knownhostsproxy</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_knownhostsproxy.1.xml:10 sss_ssh_knownhostsproxy.1.xml:15 -msgid "sss_ssh_knownhostsproxy" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_knownhostsproxy.1.xml:16 -msgid "get OpenSSH host keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_knownhostsproxy.1.xml:21 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>HOST</replaceable></arg> <arg " -"choice='opt'><replaceable>PROXY_COMMAND</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:33 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> acquires SSH host public keys for " -"host <replaceable>HOST</replaceable>, stores them in a custom OpenSSH " -"known_hosts file (see the <quote>SSH_KNOWN_HOSTS FILE FORMAT</quote> section " -"of <citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> for more information) <filename>/var/lib/sss/" -"pubconf/known_hosts</filename> and estabilishes connection to the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:43 -msgid "" -"If <replaceable>PROXY_COMMAND</replaceable> is specified, it is used to " -"create the connection to the host instead of opening a socket." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_knownhostsproxy.1.xml:55 -#, no-wrap -msgid "" -"ProxyCommand /usr/bin/sss_ssh_knownhostsproxy -p %p %h\n" -"GlobalKnownHostsFile2 /var/lib/sss/pubconf/known_hosts\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:48 -msgid "" -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_knownhostsproxy</" -"command> for host key authentication by using the following directives for " -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> configuration: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_ssh_knownhostsproxy.1.xml:69 -msgid "" -"<option>-p</option>,<option>--port</option> <replaceable>PORT</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:74 -msgid "" -"Use port <replaceable>PORT</replaceable> to connect to the host. By " -"default, port 22 is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:86 -msgid "" -"Search for host public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:97 -msgid "" -"<citerefentry> <refentrytitle>ssh</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>ssh_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_authorizedkeys</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/service_discovery.xml:2 -msgid "SERVICE DISCOVERY" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/service_discovery.xml:4 -msgid "" -"The service discovery feature allows back ends to automatically find the " -"appropriate servers to connect to using a special DNS query." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:9 -msgid "Configuration" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:11 -msgid "" -"If no servers are specified, the back end automatically uses service " -"discovery to try to find a server. Optionally, the user may choose to use " -"both fixed server addresses and service discovery by inserting a special " -"keyword, <quote>_srv_</quote>, in the list of servers. The order of " -"preference is maintained. This feature is useful if, for example, the user " -"prefers to use service discovery whenever possible, and fall back to a " -"specific server when no servers can be discovered using DNS." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:23 -msgid "The domain name" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:25 -msgid "" -"Please refer to the <quote>dns_discovery_domain</quote> parameter in the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for more details." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:35 -msgid "The protocol" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:37 -msgid "" -"The queries usually specify _tcp as the protocol. Exceptions are documented " -"in respective option description." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:42 -msgid "See Also" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:44 -msgid "" -"For more information on the service discovery mechanism, refer to RFC 2782." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/upstream.xml:1 -msgid "<placeholder type=\"refentryinfo\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/failover.xml:2 -msgid "FAILOVER" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/failover.xml:4 -msgid "" -"The failover feature allows back ends to automatically switch to a different " -"server if the primary server fails." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:8 -msgid "Failover Syntax" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:10 -msgid "" -"The list of servers is given as a comma-separated list; any number of spaces " -"is allowed around the comma. The servers are listed in order of preference. " -"The list can contain any number of servers." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:17 -msgid "The Failover Mechanism" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:19 -msgid "" -"The failover mechanism distinguishes between a machine and a service. The " -"back end first tries to resolve the hostname of a given machine; if this " -"resolution attempt fails, the machine is considered offline. No further " -"attempts are made to connect to this machine for any other service. If the " -"resolution attempt succeeds, the back end tries to connect to a service on " -"this machine. If the service connection attempt fails, then only this " -"particular service is considered offline and the back end automatically " -"switches over to the next service. The machine is still considered online " -"and might still be tried for another service." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:32 -msgid "" -"Further connection attempts are made to machines or services marked as " -"offline after a specified period of time; this is currently hard coded to 30 " -"seconds." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:37 -msgid "" -"If there are no more machines to try, the back end as a whole switches to " -"offline mode, and then attempts to reconnect every 30 seconds." -msgstr "" - -#. type: Content of: <varlistentry><term> -#: include/param_help.xml:3 -msgid "<option>-h</option>,<option>--help</option>" -msgstr "" - -#. type: Content of: <varlistentry><listitem><para> -#: include/param_help.xml:7 -msgid "Display help message and exit." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:3 -msgid "" -"Bit mask that indicates which debug levels will be visible. 0x0010 is the " -"default value as well as the lowest allowed value, 0xFFF0 is the most " -"verbose mode. This setting overrides the settings from config file." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:8 -msgid "Currently supported debug levels:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:11 -msgid "" -"<emphasis>0x0010</emphasis>: Fatal failures. Anything that would prevent " -"SSSD from starting up or causes it to cease running." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:15 -msgid "" -"<emphasis>0x0020</emphasis>: Critical failures. An error that doesn't kill " -"the SSSD, but one that indicates that at least one major feature is not " -"going to work properly." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:20 -msgid "" -"<emphasis>0x0040</emphasis>: Serious failures. An error announcing that a " -"particular request or operation has failed." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:24 -msgid "" -"<emphasis>0x0080</emphasis>: Minor failures. These are the errors that would " -"percolate down to cause the operation failure of 2." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:28 -msgid "<emphasis>0x0100</emphasis>: Configuration settings." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:31 -msgid "<emphasis>0x0200</emphasis>: Function data." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:34 -msgid "<emphasis>0x0400</emphasis>: Trace messages for operation functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:37 -msgid "" -"<emphasis>0x1000</emphasis>: Trace messages for internal control functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:40 -msgid "" -"<emphasis>0x2000</emphasis>: Contents of function-internal variables that " -"may be interesting." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:43 -msgid "<emphasis>0x4000</emphasis>: Extremely low-level tracing information." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:46 -msgid "" -"To log required debug levels, simply add their numbers together as shown in " -"following examples:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:49 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, critical failures, " -"serious failures and function data use 0x0270." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:53 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, configuration settings, " -"function data, trace messages for internal control functions use 0x1310." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:57 -msgid "" -"<emphasis>Note</emphasis>: This is new format of debug levels introduced in " -"1.7.0. Older format (numbers from 0-10) is compatible but deprecated." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/experimental.xml:1 -msgid "" -"<emphasis> This is an experimental feature, please use http://fedorahosted." -"org/sssd to report any issues. </emphasis>" -msgstr "" diff --git a/src/man/po/fi.po b/src/man/po/fi.po deleted file mode 100644 index 78926a60c..000000000 --- a/src/man/po/fi.po +++ /dev/null @@ -1,6748 +0,0 @@ -# SOME DESCRIPTIVE TITLE -# Copyright (C) YEAR Red Hat -# This file is distributed under the same license as the sssd-docs package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@redhat.com\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-12-23 15:35+0000\n" -"Last-Translator: FULL NAME <EMAIL@ADDRESS>\n" -"Language-Team: Finnish (http://www.transifex.net/projects/p/fedora/team/" -"fi/)\n" -"Language: fi\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=2; plural=(n != 1)\n" - -#. type: Content of: <reference><title> -#: sss_groupmod.8.xml:5 sssd.conf.5.xml:5 sssd-ldap.5.xml:5 pam_sss.8.xml:5 -#: sssd_krb5_locator_plugin.8.xml:5 sssd-simple.5.xml:5 sssd-ipa.5.xml:5 -#: sssd.8.xml:5 sss_obfuscate.8.xml:5 sss_useradd.8.xml:5 sssd-krb5.5.xml:5 -#: sss_groupadd.8.xml:5 sss_userdel.8.xml:5 sss_groupdel.8.xml:5 -#: sss_groupshow.8.xml:5 sss_usermod.8.xml:5 sss_cache.8.xml:5 -#: sss_debuglevel.8.xml:5 sss_ssh_authorizedkeys.1.xml:5 -#: sss_ssh_knownhostsproxy.1.xml:5 -msgid "SSSD Manual pages" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupmod.8.xml:10 sss_groupmod.8.xml:15 -msgid "sss_groupmod" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_groupmod.8.xml:11 pam_sss.8.xml:14 sssd_krb5_locator_plugin.8.xml:11 -#: sssd.8.xml:11 sss_obfuscate.8.xml:11 sss_useradd.8.xml:11 -#: sss_groupadd.8.xml:11 sss_userdel.8.xml:11 sss_groupdel.8.xml:11 -#: sss_groupshow.8.xml:11 sss_usermod.8.xml:11 sss_cache.8.xml:11 -#: sss_debuglevel.8.xml:11 -msgid "8" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupmod.8.xml:16 -msgid "modify a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupmod.8.xml:21 -msgid "" -"<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:30 sssd-ldap.5.xml:21 pam_sss.8.xml:44 -#: sssd_krb5_locator_plugin.8.xml:20 sssd-simple.5.xml:22 sssd-ipa.5.xml:21 -#: sssd.8.xml:29 sss_obfuscate.8.xml:30 sss_useradd.8.xml:30 -#: sssd-krb5.5.xml:21 sss_groupadd.8.xml:30 sss_userdel.8.xml:30 -#: sss_groupdel.8.xml:30 sss_groupshow.8.xml:30 sss_usermod.8.xml:30 -#: sss_cache.8.xml:29 sss_debuglevel.8.xml:30 sss_ssh_authorizedkeys.1.xml:30 -#: sss_ssh_knownhostsproxy.1.xml:31 -msgid "DESCRIPTION" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:32 -msgid "" -"<command>sss_groupmod</command> modifies the group to reflect the changes " -"that are specified on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:39 pam_sss.8.xml:51 sssd.8.xml:42 sss_obfuscate.8.xml:58 -#: sss_useradd.8.xml:39 sss_groupadd.8.xml:39 sss_userdel.8.xml:39 -#: sss_groupdel.8.xml:39 sss_groupshow.8.xml:39 sss_usermod.8.xml:39 -#: sss_cache.8.xml:38 sss_debuglevel.8.xml:38 sss_ssh_authorizedkeys.1.xml:78 -#: sss_ssh_knownhostsproxy.1.xml:65 -msgid "OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:43 sss_usermod.8.xml:77 -msgid "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:48 -msgid "" -"Append this group to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:57 sss_usermod.8.xml:91 -msgid "" -"<option>-r</option>,<option>--remove-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:62 -msgid "" -"Remove this group from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:72 sssd.conf.5.xml:1331 sssd-ldap.5.xml:2096 -#: pam_sss.8.xml:139 sssd_krb5_locator_plugin.8.xml:75 sssd-simple.5.xml:143 -#: sssd-ipa.5.xml:562 sssd.8.xml:191 sss_obfuscate.8.xml:103 -#: sss_useradd.8.xml:167 sssd-krb5.5.xml:451 sss_groupadd.8.xml:58 -#: sss_userdel.8.xml:93 sss_groupdel.8.xml:46 sss_groupshow.8.xml:58 -#: sss_usermod.8.xml:138 sss_ssh_authorizedkeys.1.xml:96 -#: sss_ssh_knownhostsproxy.1.xml:95 -msgid "SEE ALSO" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:74 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.conf.5.xml:10 sssd.conf.5.xml:16 -msgid "sssd.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sssd.conf.5.xml:11 sssd-ldap.5.xml:11 sssd-simple.5.xml:11 -#: sssd-ipa.5.xml:11 sssd-krb5.5.xml:11 -msgid "5" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><refmiscinfo> -#: sssd.conf.5.xml:12 sssd-ldap.5.xml:12 sssd-simple.5.xml:12 -#: sssd-ipa.5.xml:12 sssd-krb5.5.xml:12 -msgid "File Formats and Conventions" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.conf.5.xml:17 sssd-ldap.5.xml:17 sssd_krb5_locator_plugin.8.xml:16 -#: sssd-ipa.5.xml:17 sssd-krb5.5.xml:17 -msgid "the configuration file for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:21 -msgid "FILE FORMAT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:29 -#, no-wrap -msgid "" -" <replaceable>[section]</replaceable>\n" -" <replaceable>key</replaceable> = <replaceable>value</replaceable>\n" -" <replaceable>key2</replaceable> = <replaceable>value2,value3</replaceable>\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:24 -msgid "" -"The file has an ini-style syntax and consists of sections and parameters. A " -"section begins with the name of the section in square brackets and continues " -"until the next section begins. An example of section with single and multi-" -"valued parameters: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:36 -msgid "" -"The data types used are string (no quotes needed), integer and bool (with " -"values of <quote>TRUE/FALSE</quote>)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:41 -msgid "" -"A line comment starts with a hash sign (<quote>#</quote>) or a semicolon " -"(<quote>;</quote>)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:46 -msgid "" -"All sections can have an optional <replaceable>description</replaceable> " -"parameter. Its function is only as a label for the section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:52 -msgid "" -"<filename>sssd.conf</filename> must be a regular file, owned by root and " -"only root may read from or write to the file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:58 -msgid "SPECIAL SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:61 -msgid "The [sssd] section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><title> -#: sssd.conf.5.xml:70 sssd.conf.5.xml:1177 -msgid "Section parameters" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:72 -msgid "config_file_version (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:75 -msgid "" -"Indicates what is the syntax of the config file. SSSD 0.6.0 and later use " -"version 2." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:81 -msgid "services" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:84 -msgid "" -"Comma separated list of services that are started when sssd itself starts." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:88 -msgid "" -"Supported services: nss, pam <phrase condition=\"with_sudo\">, sudo</phrase>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:94 sssd.conf.5.xml:257 -msgid "reconnection_retries (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:97 sssd.conf.5.xml:260 -msgid "" -"Number of times services should attempt to reconnect in the event of a Data " -"Provider crash or restart before they give up" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:102 sssd.conf.5.xml:265 -msgid "Default: 3" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:107 -msgid "domains" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:110 -msgid "" -"A domain is a database containing user information. SSSD can use more " -"domains at the same time, but at least one must be configured or SSSD won't " -"start. This parameter described the list of domains in the order you want " -"them to be queried." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:120 -msgid "re_expression (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:123 -msgid "" -"Regular expression that describes how to parse the string containing user " -"name and domain into these components." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:127 -msgid "" -"Default: <quote>(?P<name>[^@]+)@?(?P<domain>[^@]*$)</quote> " -"which translates to \"the name is everything up to the <quote>@</quote> " -"sign, the domain everything after that\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:132 -msgid "" -"PLEASE NOTE: the support for non-unique named subpatterns is not available " -"on all platforms (e.g. RHEL5 and SLES10). Only platforms with libpcre " -"version 7 or higher can support non-unique named subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:139 -msgid "" -"PLEASE NOTE ALSO: older version of libpcre only support the Python syntax (?" -"P<name>) to label subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:146 -msgid "full_name_format (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:149 -msgid "" -"A <citerefentry> <refentrytitle>printf</refentrytitle> <manvolnum>3</" -"manvolnum> </citerefentry>-compatible format that describes how to translate " -"a (name, domain) tuple into a fully qualified name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:157 -msgid "Default: <quote>%1$s@%2$s</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:162 -msgid "try_inotify (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:165 -msgid "" -"SSSD monitors the state of resolv.conf to identify when it needs to update " -"its internal DNS resolver. By default, we will attempt to use inotify for " -"this, and will fall back to polling resolv.conf every five seconds if " -"inotify cannot be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:173 -msgid "" -"There are some limited situations where it is preferred that we should skip " -"even trying to use inotify. In these rare cases, this option should be set " -"to 'false'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:179 -msgid "" -"Default: true on platforms where inotify is supported. False on other " -"platforms." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:183 -msgid "" -"Note: this option will have no effect on platforms where inotify is " -"unavailable. On these platforms, polling will always be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:190 -msgid "krb5_rcache_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:193 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:197 -msgid "" -"This option accepts a special value __LIBKRB5_DEFAULTS__ that will instruct " -"SSSD to let libkrb5 decide the appropriate location for the replay cache." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:203 -msgid "" -"Default: Distribution-specific and specified at build-time. " -"(__LIBKRB5_DEFAULTS__ if not configured)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:63 -msgid "" -"Individual pieces of SSSD functionality are provided by special SSSD " -"services that are started and stopped together with SSSD. The services are " -"managed by a special service frequently called <quote>monitor</quote>. The " -"<quote>[sssd]</quote> section is used to configure the monitor as well as " -"some other important options like the identity domains. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:216 -msgid "SERVICES SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:218 -msgid "" -"Settings that can be used to configure different services are described in " -"this section. They should reside in the [<replaceable>$NAME</replaceable>] " -"section, for example, for NSS service, the section would be <quote>[nss]</" -"quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:225 -msgid "General service configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:227 -msgid "These options can be used to configure any service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:231 -msgid "debug_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:235 -msgid "debug_timestamps (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:238 -msgid "Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:241 sssd.conf.5.xml:376 sssd-ldap.5.xml:1328 -#: sssd-ldap.5.xml:1446 sssd-ipa.5.xml:206 sssd-ipa.5.xml:241 -msgid "Default: true" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:246 -msgid "debug_microseconds (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:249 -msgid "Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:252 sssd.conf.5.xml:641 sssd-ldap.5.xml:602 -#: sssd-ldap.5.xml:1260 sssd-ldap.5.xml:1397 sssd-ldap.5.xml:1795 -#: sssd-ipa.5.xml:123 sssd-ipa.5.xml:301 sssd-krb5.5.xml:235 -#: sssd-krb5.5.xml:269 sssd-krb5.5.xml:418 -msgid "Default: false" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:270 -msgid "command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:273 -msgid "" -"By default, the executable representing this service is called <command>sssd_" -"${service_name}</command>. This directive allows to change the executable " -"name for the service. In the vast majority of configurations, the default " -"values should suffice." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:281 -msgid "Default: <command>sssd_${service_name}</command>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:289 -msgid "NSS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:291 -msgid "" -"These options can be used to configure the Name Service Switch (NSS) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:296 -msgid "enum_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:299 -msgid "" -"How many seconds should nss_sss cache enumerations (requests for info about " -"all users)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:303 -msgid "Default: 120" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:308 -msgid "entry_cache_nowait_percentage (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:311 -msgid "" -"The entry cache can be set to automatically update entries in the background " -"if they are requested beyond a percentage of the entry_cache_timeout value " -"for the domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:317 -msgid "" -"For example, if the domain's entry_cache_timeout is set to 30s and " -"entry_cache_nowait_percentage is set to 50 (percent), entries that come in " -"after 15 seconds past the last cache update will be returned immediately, " -"but the SSSD will go and update the cache on its own, so that future " -"requests will not need to block waiting for a cache update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:327 -msgid "" -"Valid values for this option are 0-99 and represent a percentage of the " -"entry_cache_timeout for each domain. For performance reasons, this " -"percentage will never reduce the nowait timeout to less than 10 seconds. (0 " -"disables this feature)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:335 -msgid "Default: 50" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:340 -msgid "entry_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:343 -msgid "" -"Specifies for how many seconds nss_sss should cache negative cache hits " -"(that is, queries for invalid database entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:349 sssd.conf.5.xml:669 sssd-krb5.5.xml:223 -msgid "Default: 15" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:354 -msgid "filter_users, filter_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:357 -msgid "" -"Exclude certain users from being fetched from the sss NSS database. This is " -"particularly useful for system accounts. This option can also be set per-" -"domain or include fully-qualified names to filter only users from the " -"particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:364 -msgid "Default: root" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:369 -msgid "filter_users_in_groups (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:372 -msgid "" -"If you want filtered user still be group members set this option to false." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:381 -msgid "override_homedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:390 sssd-krb5.5.xml:166 -msgid "%u" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:391 sssd-krb5.5.xml:167 -msgid "login name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:394 sssd-krb5.5.xml:170 -msgid "%U" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:395 -msgid "UID number" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:398 sssd-krb5.5.xml:188 -msgid "%d" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:399 -msgid "domain name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:402 -msgid "%f" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:403 -msgid "fully qualified user name (user@domain)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:406 sssd-krb5.5.xml:200 -msgid "%%" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:407 sssd-krb5.5.xml:201 -msgid "a literal '%'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:384 -msgid "" -"Override the user's home directory. You can either provide an absolute value " -"or a template. In the template, the following sequences are substituted: " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:413 -msgid "This option can also be set per-domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:418 -msgid "allowed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:421 -msgid "" -"Restrict user shell to one of the listed values. The order of evaluation is:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:424 -msgid "1. If the shell is present in <quote>/etc/shells</quote>, it is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:428 -msgid "" -"2. If the shell is in the allowed_shells list but not in <quote>/etc/shells</" -"quote>, use the value of the shell_fallback parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:433 -msgid "" -"3. If the shell is not in the allowed_shells list and not in <quote>/etc/" -"shells</quote>, a nologin shell is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:438 -msgid "An empty string for shell is passed as-is to libc." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:441 -msgid "" -"The <quote>/etc/shells</quote> is only read on SSSD start up, which means " -"that a restart of the SSSD is required in case a new shell is installed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:445 -msgid "Default: Not set. The user shell is automatically used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:450 -msgid "vetoed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:453 -msgid "Replace any instance of these shells with the shell_fallback" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:458 -msgid "shell_fallback (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:461 -msgid "" -"The default shell to use if an allowed shell is not installed on the machine." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:465 -msgid "Default: /bin/sh" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:472 -msgid "PAM configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:474 -msgid "" -"These options can be used to configure the Pluggable Authentication Module " -"(PAM) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:479 -msgid "offline_credentials_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:482 -msgid "" -"If the authentication provider is offline, how long should we allow cached " -"logins (in days since the last successful online login)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:487 sssd.conf.5.xml:500 -msgid "Default: 0 (No limit)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:493 -msgid "offline_failed_login_attempts (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:496 -msgid "" -"If the authentication provider is offline, how many failed login attempts " -"are allowed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:506 -msgid "offline_failed_login_delay (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:509 -msgid "" -"The time in minutes which has to pass after offline_failed_login_attempts " -"has been reached before a new login attempt is possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:514 -msgid "" -"If set to 0 the user cannot authenticate offline if " -"offline_failed_login_attempts has been reached. Only a successful online " -"authentication can enable offline authentication again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:520 sssd.conf.5.xml:573 sssd.conf.5.xml:1093 -msgid "Default: 5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:526 -msgid "pam_verbosity (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:529 -msgid "" -"Controls what kind of messages are shown to the user during authentication. " -"The higher the number to more messages are displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:534 -msgid "Currently sssd supports the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:537 -msgid "<emphasis>0</emphasis>: do not show any message" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:540 -msgid "<emphasis>1</emphasis>: show only important messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:544 -msgid "<emphasis>2</emphasis>: show informational messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:547 -msgid "<emphasis>3</emphasis>: show all messages and debug information" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:551 sssd.8.xml:63 -msgid "Default: 1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:556 -msgid "pam_id_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:559 -msgid "" -"For any PAM request while SSSD is online, the SSSD will attempt to " -"immediately update the cached identity information for the user in order to " -"ensure that authentication takes place with the latest information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:565 -msgid "" -"A complete PAM conversation may perform multiple PAM requests, such as " -"account management and session opening. This option controls (on a per-" -"client-application basis) how long (in seconds) we can cache the identity " -"information to avoid excessive round-trips to the identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:579 -msgid "pam_pwd_expiration_warning (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:582 -msgid "Display a warning N days before the password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:585 -msgid "" -"Please note that the backend server has to provide information about the " -"expiration time of the password. If this information is missing, sssd " -"cannot display a warning." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:591 -msgid "Default: 7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:599 -msgid "SUDO configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:601 -msgid "These options can be used to configure the sudo service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:608 -msgid "sudo_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:611 -msgid "" -"For any sudo request that comes while SSSD is online, the SSSD will attempt " -"to update the cached rules in order to ensure that sudo has the latest " -"ruleset." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:617 -msgid "" -"The user may, however, run a couple of sudo commands successively, which " -"would trigger multiple LDAP requests. In order to speed up this use-case, " -"the sudo service maintains an in-memory cache that would be used for " -"performing fast replies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:624 -msgid "" -"This option controls how long (in seconds) can the sudo service cache rules " -"for a user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:628 -msgid "Default: 180" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:633 -msgid "sudo_timed (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:636 -msgid "" -"Whether or not to evaluate the sudoNotBefore and sudoNotAfter attributes " -"that implement time-dependent sudoers entries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:649 -msgid "AUTOFS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:651 -msgid "These options can be used to configure the autofs service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:659 -msgid "autofs_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:662 -msgid "" -"Specifies for how many seconds should the autofs responder negative cache " -"hits (that is, queries for invalid map entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:679 -msgid "DOMAIN SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:686 -msgid "min_id,max_id (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:689 -msgid "" -"UID and GID limits for the domain. If a domain contains an entry that is " -"outside these limits, it is ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:694 -msgid "" -"For users, this affects the primary GID limit. The user will not be returned " -"to NSS if either the UID or the primary GID is outside the range. For non-" -"primary group memberships, those that are in range will be reported as " -"expected." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:701 -msgid "Default: 1 for min_id, 0 (no limit) for max_id" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:707 -msgid "timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:710 -msgid "" -"Timeout in seconds between heartbeats for this domain. This is used to " -"ensure that the backend process is alive and capable of answering requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:715 sssd-ldap.5.xml:1131 -msgid "Default: 10" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:721 -msgid "enumerate (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:724 -msgid "" -"Determines if a domain can be enumerated. This parameter can have one of the " -"following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:728 -msgid "TRUE = Users and groups are enumerated" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:731 -msgid "FALSE = No enumerations for this domain" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:734 sssd.conf.5.xml:839 sssd.conf.5.xml:893 -msgid "Default: FALSE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:737 -msgid "" -"Note: Enabling enumeration has a moderate performance impact on SSSD while " -"enumeration is running. It may take up to several minutes after SSSD startup " -"to fully complete enumerations. During this time, individual requests for " -"information will go directly to LDAP, though it may be slow, due to the " -"heavy enumeration processing." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:747 -msgid "" -"While the first enumeration is running, requests for the complete user or " -"group lists may return no results until it completes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:752 -msgid "" -"Further, enabling enumeration may increase the time necessary to detect " -"network disconnection, as longer timeouts are required to ensure that " -"enumeration lookups are completed successfully. For more information, refer " -"to the man pages for the specific id_provider in use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:763 -msgid "entry_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:766 -msgid "" -"How many seconds should nss_sss consider entries valid before asking the " -"backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:770 -msgid "Default: 5400" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:776 -msgid "entry_cache_user_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:779 -msgid "" -"How many seconds should nss_sss consider user entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:783 sssd.conf.5.xml:796 sssd.conf.5.xml:809 -#: sssd.conf.5.xml:822 -msgid "Default: entry_cache_timeout" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:789 -msgid "entry_cache_group_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:792 -msgid "" -"How many seconds should nss_sss consider group entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:802 -msgid "entry_cache_netgroup_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:805 -msgid "" -"How many seconds should nss_sss consider netgroup entries valid before " -"asking the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:815 -msgid "entry_cache_service_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:818 -msgid "" -"How many seconds should nss_sss consider service entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:828 -msgid "cache_credentials (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:831 -msgid "Determines if user credentials are also cached in the local LDB cache" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:835 -msgid "User credentials are stored in a SHA512 hash, not in plaintext" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:844 -msgid "account_cache_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:847 -msgid "" -"Number of days entries are left in cache after last successful login before " -"being removed during a cleanup of the cache. 0 means keep forever. The " -"value of this parameter must be greater than or equal to " -"offline_credentials_expiration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:854 -msgid "Default: 0 (unlimited)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:860 -msgid "id_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:863 -msgid "The Data Provider identity backend to use for this domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:867 -msgid "Supported backends:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:870 -msgid "proxy: Support a legacy NSS provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:873 -msgid "local: SSSD internal local provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:876 -msgid "ldap: LDAP provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:882 -msgid "use_fully_qualified_names (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:885 -msgid "" -"If set to TRUE, all requests to this domain must use fully qualified names. " -"For example, if used in LOCAL domain that contains a \"test\" user, " -"<command>getent passwd test</command> wouldn't find the user while " -"<command>getent passwd test@LOCAL</command> would." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:898 -msgid "auth_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:901 -msgid "" -"The authentication provider used for the domain. Supported auth providers " -"are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:905 -msgid "" -"<quote>ldap</quote> for native LDAP authentication. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:912 -msgid "" -"<quote>krb5</quote> for Kerberos authentication. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:919 -msgid "" -"<quote>proxy</quote> for relaying authentication to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:922 -msgid "<quote>none</quote> disables authentication explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:925 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"authentication requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:931 -msgid "access_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:934 -msgid "" -"The access control provider used for the domain. There are two built-in " -"access providers (in addition to any included in installed backends) " -"Internal special providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:940 -msgid "<quote>permit</quote> always allow access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:943 -msgid "<quote>deny</quote> always deny access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:946 -msgid "" -"<quote>simple</quote> access control based on access or deny lists. See " -"<citerefentry> <refentrytitle>sssd-simple</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry> for more information on configuring the simple " -"access module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:953 -msgid "Default: <quote>permit</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:958 -msgid "chpass_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:961 -msgid "" -"The provider which should handle change password operations for the domain. " -"Supported change password providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:966 -msgid "" -"<quote>ipa</quote> to change a password stored in an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:974 -msgid "" -"<quote>ldap</quote> to change a password stored in a LDAP server. See " -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:982 -msgid "" -"<quote>krb5</quote> to change the Kerberos password. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:990 -msgid "" -"<quote>proxy</quote> for relaying password changes to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:994 -msgid "<quote>none</quote> disallows password changes explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:997 -msgid "" -"Default: <quote>auth_provider</quote> is used if it is set and can handle " -"change password requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1004 -msgid "sudo_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1010 -msgid "The SUDO provider used for the domain. Supported SUDO providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1014 -msgid "" -"<quote>ldap</quote> for rules stored in LDAP. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1021 -msgid "<quote>none</quote> disables SUDO explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1024 -msgid "Default: The value of <quote>id_provider</quote> is used if it is set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1030 -msgid "session_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1033 -msgid "" -"The provider which should handle loading of session settings. Supported " -"session providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1038 -msgid "" -"<quote>ipa</quote> to load session settings from an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1046 -msgid "<quote>none</quote> disallows fetching session settings explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1049 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"session loading requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1056 -msgid "lookup_family_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1059 -msgid "" -"Provides the ability to select preferred address family to use when " -"performing DNS lookups." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1063 -msgid "Supported values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1066 -msgid "ipv4_first: Try looking up IPv4 address, if that fails, try IPv6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1069 -msgid "ipv4_only: Only attempt to resolve hostnames to IPv4 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1072 -msgid "ipv6_first: Try looking up IPv6 address, if that fails, try IPv4" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1075 -msgid "ipv6_only: Only attempt to resolve hostnames to IPv6 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1078 -msgid "Default: ipv4_first" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1084 -msgid "dns_resolver_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1087 -msgid "" -"Defines the amount of time (in seconds) to wait for a reply from the DNS " -"resolver before assuming that it is unreachable. If this timeout is reached, " -"the domain will continue to operate in offline mode." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1099 -msgid "dns_discovery_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1102 -msgid "" -"If service discovery is used in the back end, specifies the domain part of " -"the service discovery DNS query." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1106 -msgid "Default: Use the domain part of machine's hostname" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1112 -msgid "override_gid (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1115 -msgid "Override the primary GID value with the one specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1121 -msgid "case_sensitive (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1124 -msgid "" -"Treat user and group names as case sensitive. At the moment, this option is " -"not supported in the local provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1129 -msgid "Default: True" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:681 -msgid "" -"These configuration options can be present in a domain configuration " -"section, that is, in a section called <quote>[domain/<replaceable>NAME</" -"replaceable>]</quote> <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1141 -msgid "proxy_pam_target (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1144 -msgid "The proxy target PAM proxies to." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1147 -msgid "" -"Default: not set by default, you have to take an existing pam configuration " -"or create a new one and add the service name here." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1155 -msgid "proxy_lib_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1158 -msgid "" -"The name of the NSS library to use in proxy domains. The NSS functions " -"searched for in the library are in the form of _nss_$(libName)_$(function), " -"for example _nss_files_getpwent." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1137 -msgid "" -"Options valid for proxy domains. <placeholder type=\"variablelist\" id=" -"\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:1170 -msgid "The local domain section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:1172 -msgid "" -"This section contains settings for domain that stores users and groups in " -"SSSD native database, that is, a domain that uses " -"<replaceable>id_provider=local</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1179 -msgid "default_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1182 -msgid "The default shell for users created with SSSD userspace tools." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1186 -msgid "Default: <filename>/bin/bash</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1191 -msgid "base_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1194 -msgid "" -"The tools append the login name to <replaceable>base_directory</replaceable> " -"and use that as the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1199 -msgid "Default: <filename>/home</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1204 -msgid "create_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1207 -msgid "" -"Indicate if a home directory should be created by default for new users. " -"Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1211 sssd.conf.5.xml:1223 -msgid "Default: TRUE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1216 -msgid "remove_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1219 -msgid "" -"Indicate if a home directory should be removed by default for deleted " -"users. Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1228 -msgid "homedir_umask (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1231 -msgid "" -"Used by <citerefentry> <refentrytitle>sss_useradd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry> to specify the default permissions " -"on a newly created home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1239 -msgid "Default: 077" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1244 -msgid "skel_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1247 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<citerefentry> <refentrytitle>sss_useradd</refentrytitle> <manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1257 -msgid "Default: <filename>/etc/skel</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1262 -msgid "mail_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1265 -msgid "" -"The mail spool directory. This is needed to manipulate the mailbox when its " -"corresponding user account is modified or deleted. If not specified, a " -"default value is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1272 -msgid "Default: <filename>/var/mail</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1277 -msgid "userdel_cmd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1280 -msgid "" -"The command that is run after a user is removed. The command us passed the " -"username of the user being removed as the first and only parameter. The " -"return code of the command is not taken into account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1286 -msgid "Default: None, no command is run" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:1296 sssd-ldap.5.xml:2064 sssd-simple.5.xml:126 -#: sssd-ipa.5.xml:544 sssd-krb5.5.xml:432 -msgid "EXAMPLE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:1302 -#, no-wrap -msgid "" -"[sssd]\n" -"domains = LDAP\n" -"services = nss, pam\n" -"config_file_version = 2\n" -"\n" -"[nss]\n" -"filter_groups = root\n" -"filter_users = root\n" -"\n" -"[pam]\n" -"\n" -"[domain/LDAP]\n" -"id_provider = ldap\n" -"ldap_uri = ldap://ldap.example.com\n" -"ldap_search_base = dc=example,dc=com\n" -"\n" -"auth_provider = krb5\n" -"krb5_server = kerberos.example.com\n" -"krb5_realm = EXAMPLE.COM\n" -"cache_credentials = true\n" -"\n" -"min_id = 10000\n" -"max_id = 20000\n" -"enumerate = False\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1298 -msgid "" -"The following example shows a typical SSSD config. It does not describe " -"configuration of the domains themselves - refer to documentation on " -"configuring domains for more details. <placeholder type=\"programlisting\" " -"id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1333 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>pam_sss</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ldap.5.xml:10 sssd-ldap.5.xml:16 -msgid "sssd-ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:23 -msgid "" -"This manual page describes the configuration of LDAP domains for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. Refer to the <quote>FILE FORMAT</quote> section of the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for detailed syntax information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:35 -msgid "You can configure SSSD to use more than one LDAP domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:38 -msgid "" -"LDAP back end supports id, auth, access and chpass providers. If you want to " -"authenticate against an LDAP server either TLS/SSL or LDAPS is required. " -"<command>sssd</command> <emphasis>does not</emphasis> support authentication " -"over an unencrypted channel. If the LDAP server is used only as an identity " -"provider, an encrypted channel is not needed. Please refer to " -"<quote>ldap_access_filter</quote> config option for more information about " -"using LDAP as an access provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:49 sssd-simple.5.xml:69 sssd-ipa.5.xml:64 -#: sssd-krb5.5.xml:63 -msgid "CONFIGURATION OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:60 -msgid "ldap_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:63 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference. Refer to the <quote>FAILOVER</" -"quote> section for more information on failover and server redundancy. If " -"not specified, service discovery is enabled. For more information, refer to " -"the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:70 -msgid "The format of the URI must match the format defined in RFC 2732:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:73 -msgid "ldap[s]://<host>[:port]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:76 -msgid "" -"For explicit IPv6 addresses, <host> must be enclosed in brackets []" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:79 -msgid "example: ldap://[fc00::126:25]:389" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:85 -msgid "ldap_chpass_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:88 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference to change the password of a user. " -"Refer to the <quote>FAILOVER</quote> section for more information on " -"failover and server redundancy." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:95 -msgid "To enable service discovery ldap_chpass_dns_service_name must be set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:99 -msgid "Default: empty, i.e. ldap_uri is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:105 -msgid "ldap_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:108 -msgid "The default base DN to use for performing LDAP user operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:112 -msgid "" -"Starting with SSSD 1.7.0, SSSD supports multiple search bases using the " -"syntax:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:116 -msgid "search_base[?scope?[filter][?search_base?scope?[filter]]*]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:119 -msgid "The scope can be one of \"base\", \"onelevel\" or \"subtree\"." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:122 -msgid "" -"The filter must be a valid LDAP search filter as specified by http://www." -"ietf.org/rfc/rfc2254.txt" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:126 -msgid "Examples:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:129 -msgid "" -"ldap_search_base = dc=example,dc=com (which is equivalent to) " -"ldap_search_base = dc=example,dc=com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:134 -msgid "" -"ldap_search_base = cn=host_specific,dc=example,dc=com?subtree?" -"(host=thishost)?dc=example.com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:137 -msgid "" -"Note: It is unsupported to have multiple search bases which reference " -"identically-named objects (for example, groups with the same name in two " -"different search bases). This will lead to unpredictable behavior on client " -"machines." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:144 -msgid "" -"Default: If not set, the value of the defaultNamingContext or namingContexts " -"attribute from the RootDSE of the LDAP server is used. If " -"defaultNamingContext does not exists or has an empty value namingContexts is " -"used. The namingContexts attribute must have a single value with the DN of " -"the search base of the LDAP server to make this work. Multiple values are " -"are not supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:158 -msgid "ldap_schema (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:161 -msgid "" -"Specifies the Schema Type in use on the target LDAP server. Depending on " -"the selected schema, the default attribute names retrieved from the servers " -"may vary. The way that some attributes are handled may also differ. Three " -"schema types are currently supported: rfc2307 rfc2307bis IPA The main " -"difference between these schema types is how group memberships are recorded " -"in the server. With rfc2307, group members are listed by name in the " -"<emphasis>memberUid</emphasis> attribute. With rfc2307bis and IPA, group " -"members are listed by DN and stored in the <emphasis>member</emphasis> " -"attribute." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:180 -msgid "Default: rfc2307" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:186 -msgid "ldap_default_bind_dn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:189 -msgid "The default bind DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:196 -msgid "ldap_default_authtok_type (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:199 -msgid "The type of the authentication token of the default bind DN." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:203 -msgid "The two mechanisms currently supported are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:206 -msgid "password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:209 -msgid "obfuscated_password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:212 -msgid "Default: password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:218 -msgid "ldap_default_authtok (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:221 -msgid "" -"The authentication token of the default bind DN. Only clear text passwords " -"are currently supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:228 -msgid "ldap_user_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:231 -msgid "The object class of a user entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:234 -msgid "Default: posixAccount" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:240 -msgid "ldap_user_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:243 -msgid "The LDAP attribute that corresponds to the user's login name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:247 -msgid "Default: uid" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:253 -msgid "ldap_user_uid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:256 -msgid "The LDAP attribute that corresponds to the user's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:260 -msgid "Default: uidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:266 -msgid "ldap_user_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:269 -msgid "The LDAP attribute that corresponds to the user's primary group id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:273 sssd-ldap.5.xml:740 -msgid "Default: gidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:279 -msgid "ldap_user_gecos (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:282 -msgid "The LDAP attribute that corresponds to the user's gecos field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:286 -msgid "Default: gecos" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:292 -msgid "ldap_user_home_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:295 -msgid "The LDAP attribute that contains the name of the user's home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:299 -msgid "Default: homeDirectory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:305 -msgid "ldap_user_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:308 -msgid "The LDAP attribute that contains the path to the user's default shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:312 -msgid "Default: loginShell" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:318 -msgid "ldap_user_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:321 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP user object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:325 sssd-ldap.5.xml:766 sssd-ldap.5.xml:878 -msgid "Default: nsUniqueId" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:331 -msgid "ldap_user_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:334 sssd-ldap.5.xml:775 sssd-ldap.5.xml:887 -msgid "" -"The LDAP attribute that contains timestamp of the last modification of the " -"parent object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:338 sssd-ldap.5.xml:779 sssd-ldap.5.xml:894 -msgid "Default: modifyTimestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:344 -msgid "ldap_user_shadow_last_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:347 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (date of " -"the last password change)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:357 -msgid "Default: shadowLastChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:363 -msgid "ldap_user_shadow_min (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:366 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (minimum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:375 -msgid "Default: shadowMin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:381 -msgid "ldap_user_shadow_max (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:384 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (maximum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:393 -msgid "Default: shadowMax" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:399 -msgid "ldap_user_shadow_warning (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:402 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password warning period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:412 -msgid "Default: shadowWarning" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:418 -msgid "ldap_user_shadow_inactive (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:421 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password inactivity period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:431 -msgid "Default: shadowInactive" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:437 -msgid "ldap_user_shadow_expire (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:440 -msgid "" -"When using ldap_pwd_policy=shadow or ldap_account_expire_policy=shadow, this " -"parameter contains the name of an LDAP attribute corresponding to its " -"<citerefentry> <refentrytitle>shadow</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> counterpart (account expiration date)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:450 -msgid "Default: shadowExpire" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:456 -msgid "ldap_user_krb_last_pwd_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:459 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time of last password change in " -"kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:465 -msgid "Default: krbLastPwdChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:471 -msgid "ldap_user_krb_password_expiration (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:474 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time when current password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:480 -msgid "Default: krbPasswordExpiration" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:486 -msgid "ldap_user_ad_account_expires (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:489 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the expiration time of the account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:494 -msgid "Default: accountExpires" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:500 -msgid "ldap_user_ad_user_account_control (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:503 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the user account control bit field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:508 -msgid "Default: userAccountControl" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:514 -msgid "ldap_ns_account_lock (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:517 -msgid "" -"When using ldap_account_expire_policy=rhds or equivalent, this parameter " -"determines if access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:522 -msgid "Default: nsAccountLock" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:528 -msgid "ldap_user_nds_login_disabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:531 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines if " -"access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:535 sssd-ldap.5.xml:549 -msgid "Default: loginDisabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:541 -msgid "ldap_user_nds_login_expiration_time (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:544 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines until " -"which date access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:555 -msgid "ldap_user_nds_login_allowed_time_map (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:558 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines the " -"hours of a day in a week when access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:563 -msgid "Default: loginAllowedTimeMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:569 -msgid "ldap_user_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:572 -msgid "" -"The LDAP attribute that contains the user's Kerberos User Principal Name " -"(UPN)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:576 -msgid "Default: krbPrincipalName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:582 -msgid "ldap_user_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:585 -msgid "The LDAP attribute that contains the user's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:592 -msgid "ldap_force_upper_case_realm (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:595 -msgid "" -"Some directory servers, for example Active Directory, might deliver the " -"realm part of the UPN in lower case, which might cause the authentication to " -"fail. Set this option to a non-zero value if you want to use an upper-case " -"realm." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:608 -msgid "ldap_enumeration_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:611 -msgid "" -"Specifies how many seconds SSSD has to wait before refreshing its cache of " -"enumerated records." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:616 sssd-ldap.5.xml:1808 -msgid "Default: 300" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:622 -msgid "ldap_purge_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:625 -msgid "" -"Determine how often to check the cache for inactive entries (such as groups " -"with no members and users who have never logged in) and remove them to save " -"space." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:631 -msgid "Setting this option to zero will disable the cache cleanup operation." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:635 -msgid "Default: 10800 (12 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:641 -msgid "ldap_user_fullname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:644 -msgid "The LDAP attribute that corresponds to the user's full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:648 sssd-ldap.5.xml:727 sssd-ldap.5.xml:828 -#: sssd-ldap.5.xml:919 sssd-ldap.5.xml:1663 sssd-ldap.5.xml:1881 -#: sssd-ipa.5.xml:422 -msgid "Default: cn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:654 -msgid "ldap_user_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:657 -msgid "The LDAP attribute that lists the user's group memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:661 sssd-ipa.5.xml:326 -msgid "Default: memberOf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:667 -msgid "ldap_user_authorized_service (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:670 -msgid "" -"If access_provider=ldap and ldap_access_order=authorized_service, SSSD will " -"use the presence of the authorizedService attribute in the user's LDAP entry " -"to determine access privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:677 -msgid "" -"An explicit deny (!svc) is resolved first. Second, SSSD searches for " -"explicit allow (svc) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:682 -msgid "Default: authorizedService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:688 -msgid "ldap_user_authorized_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:691 -msgid "" -"If access_provider=ldap and ldap_access_order=host, SSSD will use the " -"presence of the host attribute in the user's LDAP entry to determine access " -"privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:697 -msgid "" -"An explicit deny (!host) is resolved first. Second, SSSD searches for " -"explicit allow (host) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:702 -msgid "Default: host" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:708 -msgid "ldap_group_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:711 -msgid "The object class of a group entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:714 -msgid "Default: posixGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:720 -msgid "ldap_group_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:723 -msgid "The LDAP attribute that corresponds to the group name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:733 -msgid "ldap_group_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:736 -msgid "The LDAP attribute that corresponds to the group's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:746 -msgid "ldap_group_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:749 -msgid "The LDAP attribute that contains the names of the group's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:753 -msgid "Default: memberuid (rfc2307) / member (rfc2307bis)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:759 -msgid "ldap_group_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:762 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP group object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:772 -msgid "ldap_group_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:785 -msgid "ldap_group_nesting_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:788 -msgid "" -"If ldap_schema is set to a schema format that supports nested groups (e.g. " -"RFC2307bis), then this option controls how many levels of nesting SSSD will " -"follow. This option has no effect on the RFC2307 schema." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:795 -msgid "Default: 2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:801 -msgid "ldap_netgroup_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:804 -msgid "The object class of a netgroup entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:807 -msgid "In IPA provider, ipa_netgroup_object_class should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:811 -msgid "Default: nisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:817 -msgid "ldap_netgroup_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:820 -msgid "The LDAP attribute that corresponds to the netgroup name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:824 -msgid "In IPA provider, ipa_netgroup_name should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:834 -msgid "ldap_netgroup_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:837 -msgid "The LDAP attribute that contains the names of the netgroup's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:841 -msgid "In IPA provider, ipa_netgroup_member should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:845 -msgid "Default: memberNisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:851 -msgid "ldap_netgroup_triple (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:854 -msgid "" -"The LDAP attribute that contains the (host, user, domain) netgroup triples." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:858 sssd-ldap.5.xml:891 -msgid "This option is not available in IPA provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:861 -msgid "Default: nisNetgroupTriple" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:867 -msgid "ldap_netgroup_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:870 -msgid "" -"The LDAP attribute that contains the UUID/GUID of an LDAP netgroup object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:874 -msgid "In IPA provider, ipa_netgroup_uuid should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:884 -msgid "ldap_netgroup_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:900 -msgid "ldap_service_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:903 -msgid "The object class of a service entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:906 -msgid "Default: ipService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:912 -msgid "ldap_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:915 -msgid "" -"The LDAP attribute that contains the name of service attributes and their " -"aliases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:925 -msgid "ldap_service_port (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:928 -msgid "The LDAP attribute that contains the port managed by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:932 -msgid "Default: ipServicePort" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:938 -msgid "ldap_service_proto (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:941 -msgid "" -"The LDAP attribute that contains the protocols understood by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:945 -msgid "Default: ipServiceProtocol" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:951 -msgid "ldap_service_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:954 -msgid "An optional base DN to restrict service searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:958 sssd-ldap.5.xml:1918 sssd-ldap.5.xml:1937 -#: sssd-ldap.5.xml:1956 sssd-ldap.5.xml:2019 sssd-ldap.5.xml:2041 -#: sssd-ipa.5.xml:163 sssd-ipa.5.xml:187 -msgid "" -"See <quote>ldap_search_base</quote> for information about configuring " -"multiple search bases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:963 sssd-ldap.5.xml:1923 sssd-ldap.5.xml:1942 -#: sssd-ldap.5.xml:1961 sssd-ldap.5.xml:2024 sssd-ldap.5.xml:2046 -#: sssd-ipa.5.xml:173 sssd-ipa.5.xml:192 -msgid "Default: the value of <emphasis>ldap_search_base</emphasis>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:970 -msgid "ldap_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:973 -msgid "" -"Specifies the timeout (in seconds) that ldap searches are allowed to run " -"before they are cancelled and cached results are returned (and offline mode " -"is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:979 -msgid "" -"Note: this option is subject to change in future versions of the SSSD. It " -"will likely be replaced at some point by a series of timeouts for specific " -"lookup types." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:985 sssd-ldap.5.xml:1027 sssd-ldap.5.xml:1042 -msgid "Default: 6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:991 -msgid "ldap_enumeration_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:994 -msgid "" -"Specifies the timeout (in seconds) that ldap searches for user and group " -"enumerations are allowed to run before they are cancelled and cached results " -"are returned (and offline mode is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1001 -msgid "Default: 60" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1007 -msgid "ldap_network_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1010 -msgid "" -"Specifies the timeout (in seconds) after which the <citerefentry> " -"<refentrytitle>poll</refentrytitle> <manvolnum>2</manvolnum> </citerefentry>/" -"<citerefentry> <refentrytitle>select</refentrytitle> <manvolnum>2</" -"manvolnum> </citerefentry> following a <citerefentry> " -"<refentrytitle>connect</refentrytitle> <manvolnum>2</manvolnum> </" -"citerefentry> returns in case of no activity." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1033 -msgid "ldap_opt_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1036 -msgid "" -"Specifies a timeout (in seconds) after which calls to synchronous LDAP APIs " -"will abort if no response is received. Also controls the timeout when " -"communicating with the KDC in case of SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1048 -msgid "ldap_connection_expire_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1051 -msgid "" -"Specifies a timeout (in seconds) that a connection to an LDAP server will be " -"maintained. After this time, the connection will be re-established. If used " -"in parallel with SASL/GSSAPI, the sooner of the two values (this value vs. " -"the TGT lifetime) will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1059 -msgid "Default: 900 (15 minutes)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1065 -msgid "ldap_page_size (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1068 -msgid "" -"Specify the number of records to retrieve from LDAP in a single request. " -"Some LDAP servers enforce a maximum limit per-request." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1073 -msgid "Default: 1000" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1079 -msgid "ldap_disable_paging" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1082 -msgid "" -"Disable the LDAP paging control. This option should be used if the LDAP " -"server reports that it supports the LDAP paging control in its RootDSE but " -"it is not enabled or does not behave properly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1088 -msgid "" -"Example: OpenLDAP servers with the paging control module installed on the " -"server but not enabled will report it in the RootDSE but be unable to use it." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1094 -msgid "" -"Example: 389 DS has a bug where it can only support a one paging control at " -"a time on a single connection. On busy clients, this can result in some " -"requests being denied." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1103 -msgid "ldap_deref_threshold (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1106 -msgid "" -"Specify the number of group members that must be missing from the internal " -"cache in order to trigger a dereference lookup. If less members are missing, " -"they are looked up individually." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1112 -msgid "" -"You can turn off dereference lookups completely by setting the value to 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1116 -msgid "" -"A dereference lookup is a means of fetching all group members in a single " -"LDAP call. Different LDAP servers may implement different dereference " -"methods. The currently supported servers are 389/RHDS, OpenLDAP and Active " -"Directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1124 -msgid "" -"<emphasis>Note:</emphasis> If any of the search bases specifies a search " -"filter, then the dereference lookup performance enhancement will be disabled " -"regardless of this setting." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1137 -msgid "ldap_tls_reqcert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1140 -msgid "" -"Specifies what checks to perform on server certificates in a TLS session, if " -"any. It can be specified as one of the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1146 -msgid "" -"<emphasis>never</emphasis> = The client will not request or check any server " -"certificate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1150 -msgid "" -"<emphasis>allow</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, it will be ignored and the session proceeds normally." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1157 -msgid "" -"<emphasis>try</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, the session is immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1163 -msgid "" -"<emphasis>demand</emphasis> = The server certificate is requested. If no " -"certificate is provided, or a bad certificate is provided, the session is " -"immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1169 -msgid "<emphasis>hard</emphasis> = Same as <quote>demand</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1173 -msgid "Default: hard" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1179 -msgid "ldap_tls_cacert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1182 -msgid "" -"Specifies the file that contains certificates for all of the Certificate " -"Authorities that <command>sssd</command> will recognize." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1187 sssd-ldap.5.xml:1205 sssd-ldap.5.xml:1246 -msgid "" -"Default: use OpenLDAP defaults, typically in <filename>/etc/openldap/ldap." -"conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1194 -msgid "ldap_tls_cacertdir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1197 -msgid "" -"Specifies the path of a directory that contains Certificate Authority " -"certificates in separate individual files. Typically the file names need to " -"be the hash of the certificate followed by '.0'. If available, " -"<command>cacertdir_rehash</command> can be used to create the correct names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1212 -msgid "ldap_tls_cert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1215 -msgid "Specifies the file that contains the certificate for the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1219 sssd-ldap.5.xml:1231 sssd-ldap.5.xml:1979 -#: sssd-ldap.5.xml:2006 sssd-krb5.5.xml:359 -msgid "Default: not set" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1225 -msgid "ldap_tls_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1228 -msgid "Specifies the file that contains the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1237 -msgid "ldap_tls_cipher_suite (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1240 -msgid "" -"Specifies acceptable cipher suites. Typically this is a colon sperated " -"list. See <citerefentry><refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> for format." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1253 -msgid "ldap_id_use_start_tls (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1256 -msgid "" -"Specifies that the id_provider connection must also use <systemitem class=" -"\"protocol\">tls</systemitem> to protect the channel." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1266 -msgid "ldap_sasl_mech (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1269 -msgid "" -"Specify the SASL mechanism to use. Currently only GSSAPI is tested and " -"supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1273 sssd-ldap.5.xml:1428 -msgid "Default: none" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1279 -msgid "ldap_sasl_authid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1282 -msgid "" -"Specify the SASL authorization id to use. When GSSAPI is used, this " -"represents the Kerberos principal used for authentication to the directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1287 -msgid "Default: host/machine.fqdn@REALM" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1293 -msgid "ldap_sasl_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1296 -msgid "" -"If set to true, the LDAP library would perform a reverse lookup to " -"canonicalize the host name during a SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1301 -msgid "Default: false;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1307 -msgid "ldap_krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1310 -msgid "Specify the keytab to use when using SASL/GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1313 -msgid "Default: System keytab, normally <filename>/etc/krb5.keytab</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1319 -msgid "ldap_krb5_init_creds (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1322 -msgid "" -"Specifies that the id_provider should init Kerberos credentials (TGT). This " -"action is performed only if SASL is used and the mechanism selected is " -"GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1334 -msgid "ldap_krb5_ticket_lifetime (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1337 -msgid "Specifies the lifetime in seconds of the TGT if GSSAPI is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1341 -msgid "Default: 86400 (24 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1347 sssd-krb5.5.xml:74 -msgid "krb5_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1350 sssd-krb5.5.xml:77 -msgid "" -"Specifies the comma-separated list of IP addresses or hostnames of the " -"Kerberos servers to which SSSD should connect in the order of preference. " -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. An optional port number (preceded by a " -"colon) may be appended to the addresses or hostnames. If empty, service " -"discovery is enabled - for more information, refer to the <quote>SERVICE " -"DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1362 sssd-krb5.5.xml:89 -msgid "" -"When using service discovery for KDC or kpasswd servers, SSSD first searches " -"for DNS entries that specify _udp as the protocol and falls back to _tcp if " -"none are found." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1367 sssd-krb5.5.xml:94 -msgid "" -"This option was named <quote>krb5_kdcip</quote> in earlier releases of SSSD. " -"While the legacy name is recognized for the time being, users are advised to " -"migrate their config files to use <quote>krb5_server</quote> instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1376 sssd-ipa.5.xml:216 sssd-krb5.5.xml:103 -msgid "krb5_realm (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1379 -msgid "Specify the Kerberos REALM (for SASL/GSSAPI auth)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1382 -msgid "Default: System defaults, see <filename>/etc/krb5.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1388 sssd-ipa.5.xml:231 sssd-krb5.5.xml:409 -msgid "krb5_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1391 -msgid "" -"Specifies if the host principal should be canonicalized when connecting to " -"LDAP server. This feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1403 -msgid "ldap_pwd_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1406 -msgid "" -"Select the policy to evaluate the password expiration on the client side. " -"The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1411 -msgid "" -"<emphasis>none</emphasis> - No evaluation on the client side. This option " -"cannot disable server-side password policies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1416 -msgid "" -"<emphasis>shadow</emphasis> - Use <citerefentry><refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum></citerefentry> style attributes to " -"evaluate if the password has expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1422 -msgid "" -"<emphasis>mit_kerberos</emphasis> - Use the attributes used by MIT Kerberos " -"to determine if the password has expired. Use chpass_provider=krb5 to update " -"these attributes when the password is changed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1434 -msgid "ldap_referrals (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1437 -msgid "Specifies whether automatic referral chasing should be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1441 -msgid "" -"Please note that sssd only supports referral chasing when it is compiled " -"with OpenLDAP version 2.4.13 or higher." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1452 -msgid "ldap_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1455 -msgid "Specifies the service name to use when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1459 -msgid "Default: ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1465 -msgid "ldap_chpass_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1468 -msgid "" -"Specifies the service name to use to find an LDAP server which allows " -"password changes when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1473 -msgid "Default: not set, i.e. service discovery is disabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1479 -msgid "ldap_access_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1482 -msgid "" -"If using access_provider = ldap, this option is mandatory. It specifies an " -"LDAP search filter criteria that must be met for the user to be granted " -"access on this host. If access_provider = ldap and this option is not set, " -"it will result in all users being denied access. Use access_provider = allow " -"to change this default behavior." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1492 sssd-ldap.5.xml:1982 -msgid "Example:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1495 -#, no-wrap -msgid "" -"access_provider = ldap\n" -"ldap_access_filter = memberOf=cn=allowedusers,ou=Groups,dc=example,dc=com\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1499 -msgid "" -"This example means that access to this host is restricted to members of the " -"\"allowedusers\" group in ldap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1504 -msgid "" -"Offline caching for this feature is limited to determining whether the " -"user's last online login was granted access permission. If they were granted " -"access during their last login, they will continue to be granted access " -"while offline and vice-versa." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1512 sssd-ldap.5.xml:1562 -msgid "Default: Empty" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1518 -msgid "ldap_account_expire_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1521 -msgid "" -"With this option a client side evaluation of access control attributes can " -"be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1525 -msgid "" -"Please note that it is always recommended to use server side access control, " -"i.e. the LDAP server should deny the bind request with a suitable error code " -"even if the password is correct." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1532 -msgid "The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1535 -msgid "" -"<emphasis>shadow</emphasis>: use the value of ldap_user_shadow_expire to " -"determine if the account is expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1540 -msgid "" -"<emphasis>ad</emphasis>: use the value of the 32bit field " -"ldap_user_ad_user_account_control and allow access if the second bit is not " -"set. If the attribute is missing access is granted. Also the expiration time " -"of the account is checked." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1547 -msgid "" -"<emphasis>rhds</emphasis>, <emphasis>ipa</emphasis>, <emphasis>389ds</" -"emphasis>: use the value of ldap_ns_account_lock to check if access is " -"allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1553 -msgid "" -"<emphasis>nds</emphasis>: the values of " -"ldap_user_nds_login_allowed_time_map, ldap_user_nds_login_disabled and " -"ldap_user_nds_login_expiration_time are used to check if access is allowed. " -"If both attributes are missing access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1568 -msgid "ldap_access_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1571 -msgid "Comma separated list of access control options. Allowed values are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1575 -msgid "<emphasis>filter</emphasis>: use ldap_access_filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1578 -msgid "<emphasis>expire</emphasis>: use ldap_account_expire_policy" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1582 -msgid "" -"<emphasis>authorized_service</emphasis>: use the authorizedService attribute " -"to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1587 -msgid "<emphasis>host</emphasis>: use the host attribute to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1591 -msgid "Default: filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1594 -msgid "" -"Please note that it is a configuration error if a value is used more than " -"once." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1601 -msgid "ldap_deref (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1604 -msgid "" -"Specifies how alias dereferencing is done when performing a search. The " -"following options are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1609 -msgid "<emphasis>never</emphasis>: Aliases are never dereferenced." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1613 -msgid "" -"<emphasis>searching</emphasis>: Aliases are dereferenced in subordinates of " -"the base object, but not in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1618 -msgid "" -"<emphasis>finding</emphasis>: Aliases are only dereferenced when locating " -"the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1623 -msgid "" -"<emphasis>always</emphasis>: Aliases are dereferenced both in searching and " -"in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1628 -msgid "" -"Default: Empty (this is handled as <emphasis>never</emphasis> by the LDAP " -"client libraries)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:51 -msgid "" -"All of the common configuration options that apply to SSSD domains also " -"apply to LDAP domains. Refer to the <quote>DOMAIN SECTIONS</quote> section " -"of the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for full details. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1639 -msgid "SUDO OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1644 -msgid "ldap_sudorule_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1647 -msgid "The object class of a sudo rule entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1650 -msgid "Default: sudoRole" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1656 -msgid "ldap_sudorule_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1659 -msgid "The LDAP attribute that corresponds to the sudo rule name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1669 -msgid "ldap_sudorule_command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1672 -msgid "The LDAP attribute that corresponds to the command name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1676 -msgid "Default: sudoCommand" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1682 -msgid "ldap_sudorule_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1685 -msgid "" -"The LDAP attribute that corresponds to the host name (or host IP address, " -"host IP network, or host netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1690 -msgid "Default: sudoHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1696 -msgid "ldap_sudorule_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1699 -msgid "" -"The LDAP attribute that corresponds to the user name (or UID, group name or " -"user's netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1703 -msgid "Default: sudoUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1709 -msgid "ldap_sudorule_option (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1712 -msgid "The LDAP attribute that corresponds to the sudo options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1716 -msgid "Default: sudoOption" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1722 -msgid "ldap_sudorule_runasuser (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1725 -msgid "" -"The LDAP attribute that corresponds to the user name that commands may be " -"run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1729 -msgid "Default: sudoRunAsUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1735 -msgid "ldap_sudorule_runasgroup (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1738 -msgid "" -"The LDAP attribute that corresponds to the group name or group GID that " -"commands may be run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1742 -msgid "Default: sudoRunAsGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1748 -msgid "ldap_sudorule_notbefore (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1751 -msgid "" -"The LDAP attribute that corresponds to the start date/time for when the sudo " -"rule is valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1755 -msgid "Default: sudoNotBefore" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1761 -msgid "ldap_sudorule_notafter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1764 -msgid "" -"The LDAP attribute that corresponds to the expiration date/time, after which " -"the sudo rule will no longer be valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1769 -msgid "Default: sudoNotAfter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1775 -msgid "ldap_sudorule_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1778 -msgid "The LDAP attribute that corresponds to the ordering index of the rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1782 -msgid "Default: sudoOrder" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1788 -msgid "ldap_sudo_refresh_enabled (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1791 -msgid "" -"Enables periodical download of all sudo rules. The cache is purged before " -"each update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1801 -msgid "ldap_sudo_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1804 -msgid "" -"How many seconds SSSD has to wait before refreshing its cache of sudo rules." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1642 -msgid "<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1815 -msgid "" -"This manual page only describes attribute name mapping. For detailed " -"explanation of sudo related attribute semantics, see <citerefentry> " -"<refentrytitle>sudoers.ldap</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1825 -msgid "AUTOFS OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1827 -msgid "" -"Please note that the default values correspond to the default schema which " -"is RFC2307." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1834 -msgid "ldap_autofs_map_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1837 sssd-ldap.5.xml:1863 -msgid "The object class of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1840 sssd-ldap.5.xml:1867 -msgid "Default: automountMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1847 -msgid "ldap_autofs_map_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1850 -msgid "The name of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1853 -msgid "Default: ou" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1860 -msgid "ldap_autofs_entry_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1874 -msgid "ldap_autofs_entry_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1877 sssd-ldap.5.xml:1891 -msgid "" -"The key of an automount entry in LDAP. The entry usually corresponds to a " -"mount point." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1888 -msgid "ldap_autofs_entry_value (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1895 -msgid "Default: automountInformation" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1832 -msgid "" -"<placeholder type=\"variablelist\" id=\"0\"/> <placeholder type=" -"\"variablelist\" id=\"1\"/> <placeholder type=\"variablelist\" id=\"2\"/> " -"<placeholder type=\"variablelist\" id=\"3\"/> <placeholder type=" -"\"variablelist\" id=\"4\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1904 -msgid "ADVANCED OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1911 -msgid "ldap_netgroup_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1914 -msgid "" -"An optional base DN to restrict netgroup searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1930 -msgid "ldap_user_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1933 -msgid "An optional base DN to restrict user searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1949 -msgid "ldap_group_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1952 -msgid "An optional base DN to restrict group searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1968 -msgid "ldap_user_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1971 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict user searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1975 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_user_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1985 -#, no-wrap -msgid "" -" ldap_user_search_filter = (loginShell=/bin/tcsh)\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1988 -msgid "" -"This filter would restrict user searches to users that have their shell set " -"to /bin/tcsh." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1995 -msgid "ldap_group_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1998 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict group searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2002 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_group_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2012 -msgid "ldap_sudo_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2015 -msgid "" -"An optional base DN to restrict sudo rules searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2034 -msgid "ldap_autofs_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2037 -msgid "" -"An optional base DN to restrict automounter searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1906 -msgid "" -"These options are supported by LDAP domains, but they should be used with " -"caution. Please include them in your configuration only if you know what you " -"are doing. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2066 -msgid "" -"The following example assumes that SSSD is correctly configured and LDAP is " -"set to one of the domains in the <replaceable>[domains]</replaceable> " -"section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ldap.5.xml:2072 -#, no-wrap -msgid "" -" [domain/LDAP]\n" -" id_provider = ldap\n" -" auth_provider = ldap\n" -" ldap_uri = ldap://ldap.mydomain.org\n" -" ldap_search_base = dc=mydomain,dc=org\n" -" ldap_tls_reqcert = demand\n" -" cache_credentials = true\n" -" enumerate = true\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2071 sssd-simple.5.xml:134 sssd-ipa.5.xml:552 -#: sssd-krb5.5.xml:441 -msgid "<placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:2085 sssd_krb5_locator_plugin.8.xml:61 -msgid "NOTES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2087 -msgid "" -"The descriptions of some of the configuration options in this manual page " -"are based on the <citerefentry> <refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page from the OpenLDAP 2.4 " -"distribution." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2098 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <refentryinfo> -#: pam_sss.8.xml:8 include/upstream.xml:2 -msgid "" -"<productname>SSSD</productname> <orgname>The SSSD upstream - http://" -"fedorahosted.org/sssd</orgname>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: pam_sss.8.xml:13 pam_sss.8.xml:18 -msgid "pam_sss" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: pam_sss.8.xml:19 -msgid "PAM module for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: pam_sss.8.xml:24 -msgid "" -"<command>pam_sss.so</command> <arg choice='opt'> <replaceable>quiet</" -"replaceable> </arg> <arg choice='opt'> <replaceable>forward_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_first_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_authtok</" -"replaceable> </arg> <arg choice='opt'> <replaceable>retry=N</replaceable> </" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:45 -msgid "" -"<command>pam_sss.so</command> is the PAM interface to the System Security " -"Services daemon (SSSD). Errors and results are logged through <command>syslog" -"(3)</command> with the LOG_AUTHPRIV facility." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:55 -msgid "<option>quiet</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:58 -msgid "Suppress log messages for unknown users." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:63 -msgid "<option>forward_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:66 -msgid "" -"If <option>forward_pass</option> is set the entered password is put on the " -"stack for other PAM modules to use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:73 -msgid "<option>use_first_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:76 -msgid "" -"The argument use_first_pass forces the module to use a previous stacked " -"modules password and will never prompt the user - if no password is " -"available or the password is not appropriate, the user will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:84 -msgid "<option>use_authtok</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:87 -msgid "" -"When password changing enforce the module to set the new password to the one " -"provided by a previously stacked password module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:94 -msgid "<option>retry=N</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:97 -msgid "" -"If specified the user is asked another N times for a password if " -"authentication fails. Default is 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:99 -msgid "" -"Please note that this option might not work as expected if the application " -"calling PAM handles the user dialog on its own. A typical example is " -"<command>sshd</command> with <option>PasswordAuthentication</option>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:110 -msgid "MODULE TYPES PROVIDED" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:111 -msgid "" -"All module types (<option>account</option>, <option>auth</option>, " -"<option>password</option> and <option>session</option>) are provided." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:117 -msgid "FILES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:118 -msgid "" -"If a password reset by root fails, because the corresponding SSSD provider " -"does not support password resets, an individual message can be displayed. " -"This message can e.g. contain instructions about how to reset a password." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:123 -msgid "" -"The message is read from the file <filename>pam_sss_pw_reset_message.LOC</" -"filename> where LOC stands for a locale string returned by <citerefentry> " -"<refentrytitle>setlocale</refentrytitle><manvolnum>3</manvolnum> </" -"citerefentry>. If there is no matching file the content of " -"<filename>pam_sss_pw_reset_message.txt</filename> is displayed. Root must be " -"the owner of the files and only root may have read and write permissions " -"while all other users must have only read permissions." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:133 -msgid "" -"These files are searched in the directory <filename>/etc/sssd/customize/" -"DOMAIN_NAME/</filename>. If no matching file is present a generic message is " -"displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:141 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd_krb5_locator_plugin.8.xml:10 sssd_krb5_locator_plugin.8.xml:15 -msgid "sssd_krb5_locator_plugin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:22 -msgid "" -"The Kerberos locator plugin <command>sssd_krb5_locator_plugin</command> is " -"used by the Kerberos provider of <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry> to tell the Kerberos " -"libraries what Realm and which KDC to use. Typically this is done in " -"<citerefentry> <refentrytitle>krb5.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> which is always read by the Kerberos libraries. " -"To simplify the configuration the Realm and the KDC can be defined in " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> as described in <citerefentry> " -"<refentrytitle>sssd-krb5.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry> puts the Realm and the name or IP address of the KDC into " -"the environment variables SSSD_KRB5_REALM and SSSD_KRB5_KDC respectively. " -"When <command>sssd_krb5_locator_plugin</command> is called by the kerberos " -"libraries it reads and evaluates these variables and returns them to the " -"libraries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:63 -msgid "" -"Not all Kerberos implementations support the use of plugins. If " -"<command>sssd_krb5_locator_plugin</command> is not available on your system " -"you have to edit /etc/krb5.conf to reflect your Kerberos setup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:69 -msgid "" -"If the environment variable SSSD_KRB5_LOCATOR_DEBUG is set to any value " -"debug messages will be sent to stderr." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:77 -msgid "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-simple.5.xml:10 sssd-simple.5.xml:16 -msgid "sssd-simple" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd-simple.5.xml:17 -msgid "the configuration file for SSSD's 'simple' access-control provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:24 -msgid "" -"This manual page describes the configuration of the simple access-control " -"provider for <citerefentry> <refentrytitle>sssd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry>. For a detailed syntax reference, " -"refer to the <quote>FILE FORMAT</quote> section of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:38 -msgid "" -"The simple access provider grants or denies access based on an access or " -"deny list of user or group names. The following rules apply:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:43 -msgid "If all lists are empty, access is granted" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:47 -msgid "" -"If any list is provided, the order of evaluation is allow,deny. This means " -"that any matching deny rule will supersede any matched allow rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:54 -msgid "" -"If either or both \"allow\" lists are provided, all users are denied unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:60 -msgid "" -"If only \"deny\" lists are provided, all users are granted access unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:78 -msgid "simple_allow_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:81 -msgid "Comma separated list of users who are allowed to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:88 -msgid "simple_deny_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:91 -msgid "Comma separated list of users who are explicitly denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:97 -msgid "simple_allow_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:100 -msgid "" -"Comma separated list of groups that are allowed to log in. This applies only " -"to groups within this SSSD domain. Local groups are not evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:108 -msgid "simple_deny_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:111 -msgid "" -"Comma separated list of groups that are explicitly denied access. This " -"applies only to groups within this SSSD domain. Local groups are not " -"evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:70 sssd-ipa.5.xml:65 -msgid "" -"Refer to the section <quote>DOMAIN SECTIONS</quote> of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page for details on the configuration of an SSSD " -"domain. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:120 -msgid "" -"Please note that it is an configuration error if both, simple_allow_users " -"and simple_deny_users, are defined." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:128 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the simple access provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-simple.5.xml:135 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" access_provider = simple\n" -" simple_allow_users = user1, user2\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:145 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ipa.5.xml:10 sssd-ipa.5.xml:16 -msgid "sssd-ipa" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:23 -msgid "" -"This manual page describes the configuration of the IPA provider for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. For a detailed syntax reference, refer to the <quote>FILE " -"FORMAT</quote> section of the <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:36 -msgid "" -"The IPA provider is a back end used to connect to an IPA server. (Refer to " -"the freeipa.org web site for information about IPA servers.) This provider " -"requires that the machine be joined to the IPA domain; configuration is " -"almost entirely self-discovered and obtained directly from the server." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:43 -msgid "" -"The IPA provider accepts the same options used by the <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> identity provider and the <citerefentry> <refentrytitle>sssd-" -"krb5</refentrytitle> <manvolnum>5</manvolnum> </citerefentry> authentication " -"provider with some exceptions described below." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:55 -msgid "" -"However, it is neither necessary nor recommended to set these options. IPA " -"provider can also be used as an access and chpass provider. As an access " -"provider it uses HBAC (host-based access control) rules. Please refer to " -"freeipa.org for more information about HBAC. No configuration of access " -"provider is required on the client side." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:72 -msgid "ipa_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:75 -msgid "" -"Specifies the name of the IPA domain. This is optional. If not provided, " -"the configuration domain name is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:83 -msgid "ipa_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:86 -msgid "" -"The comma-separated list of IP addresses or hostnames of the IPA servers to " -"which SSSD should connect in the order of preference. For more information " -"on failover and server redundancy, see the <quote>FAILOVER</quote> section. " -"This is optional if autodiscovery is enabled. For more information on " -"service discovery, refer to the the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:99 -msgid "ipa_hostname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:102 -msgid "" -"Optional. May be set on machines where the hostname(5) does not reflect the " -"fully qualified name used in the IPA domain to identify this host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:110 -msgid "ipa_dyndns_update (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:113 -msgid "" -"Optional. This option tells SSSD to automatically update the DNS server " -"built into FreeIPA v2 with the IP address of this client." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:118 -msgid "" -"NOTE: On older systems (such as RHEL 5), for this behavior to work reliably, " -"the default Kerberos realm must be set properly in /etc/krb5.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:129 -msgid "ipa_dyndns_iface (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:132 -msgid "" -"Optional. Applicable only when ipa_dyndns_update is true. Choose the " -"interface whose IP address should be used for dynamic DNS updates." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:137 -msgid "Default: Use the IP address of the IPA LDAP connection" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:143 -msgid "ipa_hbac_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:146 -msgid "Optional. Use the given string as search base for HBAC related objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:150 -msgid "Default: Use base DN" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:156 -msgid "ipa_host_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:159 -msgid "Optional. Use the given string as search base for host objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:168 -msgid "" -"If filter is given in any of search bases and " -"<emphasis>ipa_hbac_support_srchost</emphasis> is set to False, the filter " -"will be ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:180 -msgid "ipa_selinux_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:183 -msgid "Optional. Use the given string as search base for SELinux user maps." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:199 sssd-krb5.5.xml:229 -msgid "krb5_validate (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:202 sssd-krb5.5.xml:232 -msgid "" -"Verify with the help of krb5_keytab that the TGT obtained has not been " -"spoofed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:209 -msgid "" -"Note that this default differs from the traditional Kerberos provider back " -"end." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:219 -msgid "" -"The name of the Kerberos realm. This is optional and defaults to the value " -"of <quote>ipa_domain</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:223 -msgid "" -"The name of the Kerberos realm has a special meaning in IPA - it is " -"converted into the base DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:234 -msgid "" -"Specifies if the host and user principal should be canonicalized when " -"connecting to IPA LDAP and also for AS requests. This feature is available " -"with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:247 -msgid "ipa_hbac_refresh (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:250 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server. " -"This will reduce the latency and load on the IPA server if there are many " -"access-control requests made in a short period." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:257 -msgid "Default: 5 (seconds)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:262 -msgid "ipa_hbac_treat_deny_as (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:265 -msgid "" -"This option specifies how to treat the deprecated DENY-type HBAC rules. As " -"of FreeIPA v2.1, DENY rules are no longer supported on the server. All users " -"of FreeIPA will need to migrate their rules to use only the ALLOW rules. The " -"client will support two modes of operation during this transition period:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:274 -msgid "" -"<emphasis>DENY_ALL</emphasis>: If any HBAC DENY rules are detected, all " -"users will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:279 -msgid "" -"<emphasis>IGNORE</emphasis>: SSSD will ignore any DENY rules. Be very " -"careful with this option, as it may result in opening unintended access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:284 -msgid "Default: DENY_ALL" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:289 -msgid "ipa_hbac_support_srchost (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:292 -msgid "" -"If this is set to false, then srchost as given to SSSD by PAM will be " -"ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:296 -msgid "" -"Note that if set to <emphasis>False</emphasis>, this option casuses filters " -"given in <emphasis>ipa_host_search_base</emphasis> to be ignored;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:307 -msgid "ipa_automount_location (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:310 -msgid "The automounter location this IPA client will be using" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:313 -msgid "Default: The location named \"default\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:319 -msgid "ipa_netgroup_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:322 -msgid "The LDAP attribute that lists netgroup's memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:331 -msgid "ipa_netgroup_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:334 -msgid "" -"The LDAP attribute that lists system users and groups that are direct " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:339 sssd-ipa.5.xml:434 -msgid "Default: memberUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:344 -msgid "ipa_netgroup_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:347 -msgid "" -"The LDAP attribute that lists hosts and host groups that are direct members " -"of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:351 sssd-ipa.5.xml:446 -msgid "Default: memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:356 -msgid "ipa_netgroup_member_ext_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:359 -msgid "" -"The LDAP attribute that lists FQDNs of hosts and host groups that are " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:363 -msgid "Default: externalHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:368 -msgid "ipa_netgroup_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:371 -msgid "The LDAP attribute that contains NIS domain name of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:375 -msgid "Default: nisDomainName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:381 -msgid "ipa_host_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:384 sssd-ipa.5.xml:407 -msgid "The object class of a host entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:387 sssd-ipa.5.xml:410 -msgid "Default: ipaHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:392 -msgid "ipa_host_fqdn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:395 -msgid "The LDAP attribute that contains FQDN of the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:398 -msgid "Default: fqdn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:404 -msgid "ipa_selinux_usermap_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:415 -msgid "ipa_selinux_usermap_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:418 -msgid "The LDAP attribute that contains the name of SELinux usermap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:427 -msgid "ipa_selinux_usermap_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:430 -msgid "" -"The LDAP attribute that contains all users / groups this rule match against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:439 -msgid "ipa_selinux_usermap_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:442 -msgid "" -"The LDAP attribute that contains all hosts / hostgroups this rule match " -"against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:451 -msgid "ipa_selinux_usermap_see_also (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:454 -msgid "" -"The LDAP attribute that contains DN of HBAC rule which can be used for " -"matching instead of memberUser and memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:459 -msgid "Default: seeAlso" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:464 -msgid "ipa_selinux_usermap_selinux_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:467 -msgid "The LDAP attribute that contains SELinux user string itself." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:471 -msgid "Default: ipaSELinuxUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:476 -msgid "ipa_selinux_usermap_enabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:479 -msgid "" -"The LDAP attribute that contains whether or not is user map enabled for " -"usage." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:483 -msgid "Default: ipaEnabledFlag" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:488 -msgid "ipa_selinux_usermap_user_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:491 -msgid "The LDAP attribute that contains user category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:495 -msgid "Default: userCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:500 -msgid "ipa_selinux_usermap_host_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:503 -msgid "The LDAP attribute that contains host category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:507 -msgid "Default: hostCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:512 -msgid "ipa_selinux_usermap_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:515 -msgid "The LDAP attribute that contains unique ID of the user map." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:519 -msgid "Default: ipaUniqueID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:524 -msgid "ipa_host_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:527 -msgid "The LDAP attribute that contains the host's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:531 -msgid "Default: ipaSshPubKey" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:546 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the ipa provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ipa.5.xml:553 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" id_provider = ipa\n" -" ipa_server = ipaserver.example.com\n" -" ipa_hostname = myhost.example.com\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:564 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.8.xml:10 sssd.8.xml:15 -msgid "sssd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.8.xml:16 -msgid "System Security Services Daemon" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sssd.8.xml:21 -msgid "" -"<command>sssd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:31 -msgid "" -"<command>SSSD</command> provides a set of daemons to manage access to remote " -"directories and authentication mechanisms. It provides an NSS and PAM " -"interface toward the system and a pluggable backend system to connect to " -"multiple different account sources as well as D-Bus interface. It is also " -"the basis to provide client auditing and policy services for projects like " -"FreeIPA. It provides a more robust database to store local users as well as " -"extended user data." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:46 -msgid "" -"<option>-d</option>,<option>--debug-level</option> <replaceable>LEVEL</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:53 -msgid "<option>--debug-timestamps=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:57 -msgid "<emphasis>1</emphasis>: Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:60 -msgid "<emphasis>0</emphasis>: Disable timestamp in the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:69 -msgid "<option>--debug-microseconds=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:73 -msgid "" -"<emphasis>1</emphasis>: Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:76 -msgid "<emphasis>0</emphasis>: Disable microseconds in timestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:79 -msgid "Default: 0" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:85 -msgid "<option>-f</option>,<option>--debug-to-files</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:89 -msgid "" -"Send the debug output to files instead of stderr. By default, the log files " -"are stored in <filename>/var/log/sssd</filename> and there are separate log " -"files for every SSSD service and domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:97 -msgid "<option>-D</option>,<option>--daemon</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:101 -msgid "Become a daemon after starting up." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:107 -msgid "<option>-i</option>,<option>--interactive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:111 -msgid "Run in the foreground, don't become a daemon." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:117 sss_debuglevel.8.xml:42 -msgid "<option>-c</option>,<option>--config</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:121 sss_debuglevel.8.xml:46 -msgid "" -"Specify a non-default config file. The default is <filename>/etc/sssd/sssd." -"conf</filename>. For reference on the config file syntax and options, " -"consult the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:135 -msgid "<option>--version</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:139 -msgid "Print version number and exit." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.8.xml:147 -msgid "Signals" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:150 -msgid "SIGTERM/SIGINT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:153 -msgid "" -"Informs the SSSD to gracefully terminate all of its child processes and then " -"shut down the monitor." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:159 -msgid "SIGHUP" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:162 -msgid "" -"Tells the SSSD to stop writing to its current debug file descriptors and to " -"close and reopen them. This is meant to facilitate log rolling with programs " -"like logrotate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:170 -msgid "SIGUSR1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:173 -msgid "" -"Tells the SSSD to simulate offline operation for one minute. This is mostly " -"useful for testing purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:179 -msgid "SIGUSR2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:182 -msgid "" -"Tells the SSSD to go online immediately. This is mostly useful for testing " -"purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:193 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_obfuscate.8.xml:10 sss_obfuscate.8.xml:15 -msgid "sss_obfuscate" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_obfuscate.8.xml:16 -msgid "obfuscate a clear text password" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_obfuscate.8.xml:21 -msgid "" -"<command>sss_obfuscate</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>[PASSWORD]</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:32 -msgid "" -"<command>sss_obfuscate</command> converts a given password into human-" -"unreadable format and places it into appropriate domain section of the SSSD " -"config file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:37 -msgid "" -"The cleartext password is read from standard input or entered " -"interactively. The obfuscated password is put into " -"<quote>ldap_default_authtok</quote> parameter of a given SSSD domain and the " -"<quote>ldap_default_authtok_type</quote> parameter is set to " -"<quote>obfuscated_password</quote>. Refer to <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more details on these parameters." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:49 -msgid "" -"Please note that obfuscating the password provides <emphasis>no real " -"security benefit</emphasis> as it is still possible for an attacker to " -"reverse-engineer the password back. Using better authentication mechanisms " -"such as client side certificates or GSSAPI is <emphasis>strongly</emphasis> " -"advised." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:63 -msgid "<option>-s</option>,<option>--stdin</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:67 -msgid "The password to obfuscate will be read from standard input." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:74 sss_ssh_authorizedkeys.1.xml:82 -#: sss_ssh_knownhostsproxy.1.xml:81 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>DOMAIN</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:79 -msgid "" -"The SSSD domain to use the password in. The default name is <quote>default</" -"quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:86 -msgid "" -"<option>-f</option>,<option>--file</option> <replaceable>FILE</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:91 -msgid "Read the config file specified by the positional parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:95 -msgid "Default: <filename>/etc/sssd/sssd.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:105 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_useradd.8.xml:10 sss_useradd.8.xml:15 -msgid "sss_useradd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_useradd.8.xml:16 -msgid "create a new user" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_useradd.8.xml:21 -msgid "" -"<command>sss_useradd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:32 -msgid "" -"<command>sss_useradd</command> creates a new user account using the values " -"specified on the command line plus the default values from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:43 -msgid "" -"<option>-u</option>,<option>--uid</option> <replaceable>UID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:48 -msgid "" -"Set the UID of the user to the value of <replaceable>UID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:55 sss_usermod.8.xml:43 -msgid "" -"<option>-c</option>,<option>--gecos</option> <replaceable>COMMENT</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:60 sss_usermod.8.xml:48 -msgid "" -"Any text string describing the user. Often used as the field for the user's " -"full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:67 sss_usermod.8.xml:55 -msgid "" -"<option>-h</option>,<option>--home</option> <replaceable>HOME_DIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:72 -msgid "" -"The home directory of the user account. The default is to append the " -"<replaceable>LOGIN</replaceable> name to <filename>/home</filename> and use " -"that as the home directory. The base that is prepended before " -"<replaceable>LOGIN</replaceable> is tunable with <quote>user_defaults/" -"baseDirectory</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:82 sss_usermod.8.xml:66 -msgid "" -"<option>-s</option>,<option>--shell</option> <replaceable>SHELL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:87 -msgid "" -"The user's login shell. The default is currently <filename>/bin/bash</" -"filename>. The default can be changed with <quote>user_defaults/" -"defaultShell</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:96 -msgid "" -"<option>-G</option>,<option>--groups</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:101 -msgid "A list of existing groups this user is also a member of." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:107 -msgid "<option>-m</option>,<option>--create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:111 -msgid "" -"Create the user's home directory if it does not exist. The files and " -"directories contained in the skeleton directory (which can be defined with " -"the -k option or in the config file) will be copied to the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:121 -msgid "<option>-M</option>,<option>--no-create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:125 -msgid "" -"Do not create the user's home directory. Overrides configuration settings." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:132 -msgid "" -"<option>-k</option>,<option>--skel</option> <replaceable>SKELDIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:137 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<command>sss_useradd</command>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:143 -msgid "" -"This option is only valid if the <option>-m</option> (or <option>--create-" -"home</option>) option is specified, or creation of home directories is set " -"to TRUE in the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:152 sss_usermod.8.xml:124 -msgid "" -"<option>-Z</option>,<option>--selinux-user</option> " -"<replaceable>SELINUX_USER</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:157 -msgid "" -"The SELinux user for the user's login. If not specified, the system default " -"will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:169 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-krb5.5.xml:10 sssd-krb5.5.xml:16 -msgid "sssd-krb5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:23 -msgid "" -"This manual page describes the configuration of the Kerberos 5 " -"authentication backend for <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry>. For a detailed " -"syntax reference, please refer to the <quote>FILE FORMAT</quote> section of " -"the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:36 -msgid "" -"The Kerberos 5 authentication backend contains auth and chpass providers. It " -"must be paired with identity provider in order to function properly (for " -"example, id_provider = ldap). Some information required by the Kerberos 5 " -"authentication backend must be provided by the identity provider, such as " -"the user's Kerberos Principal Name (UPN). The configuration of the identity " -"provider should have an entry to specify the UPN. Please refer to the man " -"page for the applicable identity provider for details on how to configure " -"this." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:47 -msgid "" -"This backend also provides access control based on the .k5login file in the " -"home directory of the user. See <citerefentry> <refentrytitle>.k5login</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry> for more details. " -"Please note that an empty .k5login file will deny all access to this user. " -"To activate this feature use 'access_provider = krb5' in your sssd " -"configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:55 -msgid "" -"In the case where the UPN is not available in the identity backend " -"<command>sssd</command> will construct a UPN using the format " -"<replaceable>username</replaceable>@<replaceable>krb5_realm</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:106 -msgid "" -"The name of the Kerberos realm. This option is required and must be " -"specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:113 -msgid "krb5_kpasswd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:116 -msgid "" -"If the change password service is not running on the KDC alternative servers " -"can be defined here. An optional port number (preceded by a colon) may be " -"appended to the addresses or hostnames." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:122 -msgid "" -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. Please note that even if there are no more " -"kpasswd servers to try the back end is not switch to offline if " -"authentication against the KDC is still possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:129 -msgid "Default: Use the KDC" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:135 -msgid "krb5_ccachedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:138 -msgid "" -"Directory to store credential caches. All the substitution sequences of " -"krb5_ccname_template can be used here, too, except %d and %P. If the " -"directory does not exist it will be created. If %u, %U, %p or %h are used a " -"private directory belonging to the user is created. Otherwise a public " -"directory with restricted deletion flag (aka sticky bit, see <citerefentry> " -"<refentrytitle>chmod</refentrytitle> <manvolnum>1</manvolnum> </" -"citerefentry> for details) is created." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:151 -msgid "Default: /tmp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:157 -msgid "krb5_ccname_template (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:171 -msgid "login UID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:174 -msgid "%p" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:175 -msgid "principal name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:179 -msgid "%r" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:180 -msgid "realm name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:183 -msgid "%h" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:184 -msgid "home directory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:189 -msgid "value of krb5ccache_dir" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:194 -msgid "%P" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:195 -msgid "the process ID of the sssd client" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:160 -msgid "" -"Location of the user's credential cache. Currently only file based " -"credential caches are supported. In the template the following sequences are " -"substituted: <placeholder type=\"variablelist\" id=\"0\"/> If the template " -"ends with 'XXXXXX' mkstemp(3) is used to create a unique filename in a safe " -"way." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:209 -msgid "Default: FILE:%d/krb5cc_%U_XXXXXX" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:215 -msgid "krb5_auth_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:218 -msgid "" -"Timeout in seconds after an online authentication or change password request " -"is aborted. If possible the authentication request is continued offline." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:241 -msgid "krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:244 -msgid "" -"The location of the keytab to use when validating credentials obtained from " -"KDCs." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:248 -msgid "Default: /etc/krb5.keytab" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:254 -msgid "krb5_store_password_if_offline (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:257 -msgid "" -"Store the password of the user if the provider is offline and use it to " -"request a TGT when the provider gets online again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:262 -msgid "" -"Please note that this feature currently only available on a Linux platform. " -"Passwords stored in this way are kept in plaintext in the kernel keyring and " -"are potentially accessible by the root user (with difficulty)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:275 -msgid "krb5_renewable_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:278 -msgid "" -"Request a renewable ticket with a total lifetime given by an integer " -"immediately followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:283 sssd-krb5.5.xml:319 -msgid "<emphasis>s</emphasis> seconds" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:286 sssd-krb5.5.xml:322 -msgid "<emphasis>m</emphasis> minutes" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:289 sssd-krb5.5.xml:325 -msgid "<emphasis>h</emphasis> hours" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:292 sssd-krb5.5.xml:328 -msgid "<emphasis>d</emphasis> days." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:295 sssd-krb5.5.xml:331 -msgid "If there is no delimiter <emphasis>s</emphasis> is assumed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:299 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"renewable lifetime to one and a half hours please use '90m' instead of " -"'1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:305 -msgid "Default: not set, i.e. the TGT is not renewable" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:311 -msgid "krb5_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:314 -msgid "" -"Request ticket with a with a lifetime given by an integer immediately " -"followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:335 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"lifetime to one and a half hours please use '90m' instead of '1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:340 -msgid "" -"Default: not set, i.e. the default ticket lifetime configured on the KDC." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:347 -msgid "krb5_renew_interval (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:350 -msgid "" -"The time in seconds between two checks if the TGT should be renewed. TGTs " -"are renewed if about half of their lifetime is exceeded." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:355 -msgid "If this option is not set or 0 the automatic renewal is disabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:365 -msgid "krb5_use_fast (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:368 -msgid "" -"Enables flexible authentication secure tunneling (FAST) for Kerberos pre-" -"authentication. The following options are supported:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:373 -msgid "" -"<emphasis>never</emphasis> use FAST, this is equivalent to not set this " -"option at all." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:377 -msgid "" -"<emphasis>try</emphasis> to use FAST, if the server does not support fast " -"continue without." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:381 -msgid "" -"<emphasis>demand</emphasis> to use FAST, fail if the server does not require " -"fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:385 -msgid "Default: not set, i.e. FAST is not used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:388 -msgid "Please note that a keytab is required to use fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:391 -msgid "" -"Please note also that sssd supports fast only with MIT Kerberos version 1.8 " -"and above. If sssd used with an older version using this option is a " -"configuration error." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:400 -msgid "krb5_fast_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:403 -msgid "Specifies the server principal to use for FAST." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:412 -msgid "" -"Specifies if the host and user principal should be canonicalized. This " -"feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:65 -msgid "" -"If the auth-module krb5 is used in a SSSD domain, the following options must " -"be used. See the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page, section <quote>DOMAIN " -"SECTIONS</quote> for details on the configuration of a SSSD domain. " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:434 -msgid "" -"The following example assumes that SSSD is correctly configured and FOO is " -"one of the domains in the <replaceable>[sssd]</replaceable> section. This " -"example shows only configuration of Kerberos authentication, it does not " -"include any identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-krb5.5.xml:442 -#, no-wrap -msgid "" -" [domain/FOO]\n" -" auth_provider = krb5\n" -" krb5_server = 192.168.1.1\n" -" krb5_realm = EXAMPLE.COM\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:453 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupadd.8.xml:10 sss_groupadd.8.xml:15 -msgid "sss_groupadd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupadd.8.xml:16 -msgid "create a new group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupadd.8.xml:21 -msgid "" -"<command>sss_groupadd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:32 -msgid "" -"<command>sss_groupadd</command> creates a new group. These groups are " -"compatible with POSIX groups, with the additional feature that they can " -"contain other groups as members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupadd.8.xml:43 -msgid "" -"<option>-g</option>,<option>--gid</option> <replaceable>GID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupadd.8.xml:48 -msgid "" -"Set the GID of the group to the value of <replaceable>GID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_userdel.8.xml:10 sss_userdel.8.xml:15 -msgid "sss_userdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_userdel.8.xml:16 -msgid "delete a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_userdel.8.xml:21 -msgid "" -"<command>sss_userdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:32 -msgid "" -"<command>sss_userdel</command> deletes a user identified by login name " -"<replaceable>LOGIN</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:44 -msgid "<option>-r</option>,<option>--remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:48 -msgid "" -"Files in the user's home directory will be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:56 -msgid "<option>-R</option>,<option>--no-remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:60 -msgid "" -"Files in the user's home directory will NOT be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:68 -msgid "<option>-f</option>,<option>--force</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:72 -msgid "" -"This option forces <command>sss_userdel</command> to remove the user's home " -"directory and mail spool, even if they are not owned by the specified user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:80 -msgid "<option>-k</option>,<option>--kick</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:84 -msgid "Before actually deleting the user, terminate all his processes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:95 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupdel.8.xml:10 sss_groupdel.8.xml:15 -msgid "sss_groupdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupdel.8.xml:16 -msgid "delete a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupdel.8.xml:21 -msgid "" -"<command>sss_groupdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:32 -msgid "" -"<command>sss_groupdel</command> deletes a group identified by its name " -"<replaceable>GROUP</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupshow.8.xml:10 sss_groupshow.8.xml:15 -msgid "sss_groupshow" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupshow.8.xml:16 -msgid "print properties of a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupshow.8.xml:21 -msgid "" -"<command>sss_groupshow</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:32 -msgid "" -"<command>sss_groupshow</command> displays information about a group " -"identified by its name <replaceable>GROUP</replaceable>. The information " -"includes the group ID number, members of the group and the parent group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupshow.8.xml:43 -msgid "<option>-R</option>,<option>--recursive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupshow.8.xml:47 -msgid "" -"Also print indirect group members in a tree-like hierarchy. Note that this " -"also affects printing parent groups - without <option>R</option>, only the " -"direct parent will be printed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_usermod.8.xml:10 sss_usermod.8.xml:15 -msgid "sss_usermod" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_usermod.8.xml:16 -msgid "modify a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_usermod.8.xml:21 -msgid "" -"<command>sss_usermod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:32 -msgid "" -"<command>sss_usermod</command> modifies the account specified by " -"<replaceable>LOGIN</replaceable> to reflect the changes that are specified " -"on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:60 -msgid "The home directory of the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:71 -msgid "The user's login shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:82 -msgid "" -"Append this user to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:96 -msgid "" -"Remove this user from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:103 -msgid "<option>-l</option>,<option>--lock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:107 -msgid "Lock the user account. The user won't be able to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:114 -msgid "<option>-u</option>,<option>--unlock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:118 -msgid "Unlock the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:129 -msgid "The SELinux user for the user's login." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:140 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_cache.8.xml:10 sss_cache.8.xml:15 -msgid "sss_cache" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_cache.8.xml:16 -msgid "perform cache cleanup" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_cache.8.xml:21 -msgid "" -"<command>sss_cache</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_cache.8.xml:31 -msgid "" -"<command>sss_cache</command> invalidates records in SSSD cache. Invalidated " -"records are forced to be reloaded from server as soon as related SSSD " -"backend is online." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:42 -msgid "" -"<option>-u</option>,<option>--user</option> <replaceable>login</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:47 -msgid "Invalidate specific user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:53 -msgid "<option>-U</option>,<option>--users</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:57 -msgid "" -"Invalidate all user records. This option overrides invalidation of specific " -"user if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:64 -msgid "" -"<option>-g</option>,<option>--group</option> <replaceable>group</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:69 -msgid "Invalidate specific group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:75 -msgid "<option>-G</option>,<option>--groups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:79 -msgid "" -"Invalidate all group records. This option overrides invalidation of specific " -"group if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:86 -msgid "" -"<option>-n</option>,<option>--netgroup</option> <replaceable>netgroup</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:91 -msgid "Invalidate specific netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:97 -msgid "<option>-N</option>,<option>--netgroups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:101 -msgid "" -"Invalidate all netgroup records. This option overrides invalidation of " -"specific netgroup if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:108 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>domain</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:113 -msgid "Restrict invalidation process only to a particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_debuglevel.8.xml:10 sss_debuglevel.8.xml:15 -msgid "sss_debuglevel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_debuglevel.8.xml:16 -msgid "change debug level while SSSD is running" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_debuglevel.8.xml:21 -msgid "" -"<command>sss_debuglevel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>NEW_DEBUG_LEVEL</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_debuglevel.8.xml:32 -msgid "" -"<command>sss_debuglevel</command> changes debug level of SSSD monitor and " -"providers to <replaceable>NEW_DEBUG_LEVEL</replaceable> while SSSD is " -"running." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_debuglevel.8.xml:59 -msgid "<replaceable>NEW_DEBUG_LEVEL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_authorizedkeys.1.xml:10 sss_ssh_authorizedkeys.1.xml:15 -msgid "sss_ssh_authorizedkeys" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_ssh_authorizedkeys.1.xml:11 sss_ssh_knownhostsproxy.1.xml:11 -msgid "1" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_authorizedkeys.1.xml:16 -msgid "get OpenSSH authorized keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_authorizedkeys.1.xml:21 -msgid "" -"<command>sss_ssh_authorizedkeys</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>USER</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:32 -msgid "" -"<command>sss_ssh_authorizedkeys</command> acquires SSH public keys for user " -"<replaceable>USER</replaceable> and outputs them in OpenSSH authorized_keys " -"format (see the <quote>AUTHORIZED_KEYS FILE FORMAT</quote> section of " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> for more information)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:41 -msgid "" -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_authorizedkeys</" -"command> for public key user authentication if it is compiled with support " -"for either <quote>AuthorizedKeysCommand</quote> or <quote>PubkeyAgent</" -"quote> <citerefentry> <refentrytitle>sshd_config</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:58 -#, no-wrap -msgid "AuthorizedKeysCommand /usr/bin/sss_ssh_authorizedkeys\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:51 -msgid "" -"If <quote>AuthorizedKeysCommand</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by putting the following directive " -"in <citerefentry> <refentrytitle>sshd_config</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry>: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:69 -#, no-wrap -msgid "PubKeyAgent /usr/bin/sss_ssh_authorizedkeys %u\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:62 -msgid "" -"If <quote>PubkeyAgent</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by using the following directive " -"for <citerefentry> <refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> configuration: <placeholder type=\"programlisting" -"\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_authorizedkeys.1.xml:87 -msgid "" -"Search for user public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:98 -msgid "" -"<citerefentry> <refentrytitle>sshd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sshd_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_knownhostsproxy</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_knownhostsproxy.1.xml:10 sss_ssh_knownhostsproxy.1.xml:15 -msgid "sss_ssh_knownhostsproxy" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_knownhostsproxy.1.xml:16 -msgid "get OpenSSH host keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_knownhostsproxy.1.xml:21 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>HOST</replaceable></arg> <arg " -"choice='opt'><replaceable>PROXY_COMMAND</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:33 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> acquires SSH host public keys for " -"host <replaceable>HOST</replaceable>, stores them in a custom OpenSSH " -"known_hosts file (see the <quote>SSH_KNOWN_HOSTS FILE FORMAT</quote> section " -"of <citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> for more information) <filename>/var/lib/sss/" -"pubconf/known_hosts</filename> and estabilishes connection to the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:43 -msgid "" -"If <replaceable>PROXY_COMMAND</replaceable> is specified, it is used to " -"create the connection to the host instead of opening a socket." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_knownhostsproxy.1.xml:55 -#, no-wrap -msgid "" -"ProxyCommand /usr/bin/sss_ssh_knownhostsproxy -p %p %h\n" -"GlobalKnownHostsFile2 /var/lib/sss/pubconf/known_hosts\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:48 -msgid "" -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_knownhostsproxy</" -"command> for host key authentication by using the following directives for " -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> configuration: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_ssh_knownhostsproxy.1.xml:69 -msgid "" -"<option>-p</option>,<option>--port</option> <replaceable>PORT</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:74 -msgid "" -"Use port <replaceable>PORT</replaceable> to connect to the host. By " -"default, port 22 is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:86 -msgid "" -"Search for host public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:97 -msgid "" -"<citerefentry> <refentrytitle>ssh</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>ssh_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_authorizedkeys</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/service_discovery.xml:2 -msgid "SERVICE DISCOVERY" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/service_discovery.xml:4 -msgid "" -"The service discovery feature allows back ends to automatically find the " -"appropriate servers to connect to using a special DNS query." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:9 -msgid "Configuration" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:11 -msgid "" -"If no servers are specified, the back end automatically uses service " -"discovery to try to find a server. Optionally, the user may choose to use " -"both fixed server addresses and service discovery by inserting a special " -"keyword, <quote>_srv_</quote>, in the list of servers. The order of " -"preference is maintained. This feature is useful if, for example, the user " -"prefers to use service discovery whenever possible, and fall back to a " -"specific server when no servers can be discovered using DNS." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:23 -msgid "The domain name" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:25 -msgid "" -"Please refer to the <quote>dns_discovery_domain</quote> parameter in the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for more details." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:35 -msgid "The protocol" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:37 -msgid "" -"The queries usually specify _tcp as the protocol. Exceptions are documented " -"in respective option description." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:42 -msgid "See Also" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:44 -msgid "" -"For more information on the service discovery mechanism, refer to RFC 2782." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/upstream.xml:1 -msgid "<placeholder type=\"refentryinfo\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/failover.xml:2 -msgid "FAILOVER" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/failover.xml:4 -msgid "" -"The failover feature allows back ends to automatically switch to a different " -"server if the primary server fails." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:8 -msgid "Failover Syntax" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:10 -msgid "" -"The list of servers is given as a comma-separated list; any number of spaces " -"is allowed around the comma. The servers are listed in order of preference. " -"The list can contain any number of servers." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:17 -msgid "The Failover Mechanism" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:19 -msgid "" -"The failover mechanism distinguishes between a machine and a service. The " -"back end first tries to resolve the hostname of a given machine; if this " -"resolution attempt fails, the machine is considered offline. No further " -"attempts are made to connect to this machine for any other service. If the " -"resolution attempt succeeds, the back end tries to connect to a service on " -"this machine. If the service connection attempt fails, then only this " -"particular service is considered offline and the back end automatically " -"switches over to the next service. The machine is still considered online " -"and might still be tried for another service." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:32 -msgid "" -"Further connection attempts are made to machines or services marked as " -"offline after a specified period of time; this is currently hard coded to 30 " -"seconds." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:37 -msgid "" -"If there are no more machines to try, the back end as a whole switches to " -"offline mode, and then attempts to reconnect every 30 seconds." -msgstr "" - -#. type: Content of: <varlistentry><term> -#: include/param_help.xml:3 -msgid "<option>-h</option>,<option>--help</option>" -msgstr "" - -#. type: Content of: <varlistentry><listitem><para> -#: include/param_help.xml:7 -msgid "Display help message and exit." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:3 -msgid "" -"Bit mask that indicates which debug levels will be visible. 0x0010 is the " -"default value as well as the lowest allowed value, 0xFFF0 is the most " -"verbose mode. This setting overrides the settings from config file." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:8 -msgid "Currently supported debug levels:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:11 -msgid "" -"<emphasis>0x0010</emphasis>: Fatal failures. Anything that would prevent " -"SSSD from starting up or causes it to cease running." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:15 -msgid "" -"<emphasis>0x0020</emphasis>: Critical failures. An error that doesn't kill " -"the SSSD, but one that indicates that at least one major feature is not " -"going to work properly." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:20 -msgid "" -"<emphasis>0x0040</emphasis>: Serious failures. An error announcing that a " -"particular request or operation has failed." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:24 -msgid "" -"<emphasis>0x0080</emphasis>: Minor failures. These are the errors that would " -"percolate down to cause the operation failure of 2." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:28 -msgid "<emphasis>0x0100</emphasis>: Configuration settings." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:31 -msgid "<emphasis>0x0200</emphasis>: Function data." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:34 -msgid "<emphasis>0x0400</emphasis>: Trace messages for operation functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:37 -msgid "" -"<emphasis>0x1000</emphasis>: Trace messages for internal control functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:40 -msgid "" -"<emphasis>0x2000</emphasis>: Contents of function-internal variables that " -"may be interesting." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:43 -msgid "<emphasis>0x4000</emphasis>: Extremely low-level tracing information." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:46 -msgid "" -"To log required debug levels, simply add their numbers together as shown in " -"following examples:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:49 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, critical failures, " -"serious failures and function data use 0x0270." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:53 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, configuration settings, " -"function data, trace messages for internal control functions use 0x1310." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:57 -msgid "" -"<emphasis>Note</emphasis>: This is new format of debug levels introduced in " -"1.7.0. Older format (numbers from 0-10) is compatible but deprecated." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/experimental.xml:1 -msgid "" -"<emphasis> This is an experimental feature, please use http://fedorahosted." -"org/sssd to report any issues. </emphasis>" -msgstr "" diff --git a/src/man/po/fr.po b/src/man/po/fr.po index d7668dcf4..15acaa078 100644 --- a/src/man/po/fr.po +++ b/src/man/po/fr.po @@ -4,13 +4,14 @@ # # Translators: # Fabien Archambault <marbolangos@gmail.com>, 2012. +# <sgallagh@redhat.com>, 2012. msgid "" msgstr "" "Project-Id-Version: SSSD\n" "Report-Msgid-Bugs-To: sssd-devel@redhat.com\n" "POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2012-02-23 12:50+0000\n" -"Last-Translator: Fabien Archambault <marbolangos@gmail.com>\n" +"PO-Revision-Date: 2012-03-12 20:08+0000\n" +"Last-Translator: sgallagh <sgallagh@redhat.com>\n" "Language-Team: French <trans-fr@lists.fedoraproject.org>\n" "Language: fr\n" "MIME-Version: 1.0\n" @@ -395,10 +396,9 @@ msgid "" "manvolnum> </citerefentry>-compatible format that describes how to translate " "a (name, domain) tuple into a fully qualified name." msgstr "" -"Un format compatible <citerefentry> <refentrytitle>printf</" -"refentrytitle> <manvolnum>3</manvolnum> </citerefentry> " -"décrivant la traduction (nom, domaine) d'un tuple en un domaine totalement " -"qualifé." +"Un format compatible <citerefentry> <refentrytitle>printf</refentrytitle> " +"<manvolnum>3</manvolnum> </citerefentry> décrivant la traduction (nom, " +"domaine) d'un tuple en un domaine totalement qualifé." #. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:157 @@ -1139,20 +1139,11 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:662 -#, fuzzy -#| msgid "" -#| "Specifies for how many seconds nss_sss should cache negative cache hits " -#| "(that is, queries for invalid database entries, like nonexistent ones) " -#| "before asking the back end again." msgid "" "Specifies for how many seconds should the autofs responder negative cache " "hits (that is, queries for invalid map entries, like nonexistent ones) " "before asking the back end again." msgstr "" -"Spécifie le temps, en secondes, pendant lequel nss_sss doit mettre en cache " -"les résultats négatifs du cache (c'est-à-dire les requêtes pour les bases de " -"données invalides, comme celles qui n'existent pas) avant d'appeler à " -"nouveau l'arrière plan." #. type: Content of: <reference><refentry><refsect1><title> #: sssd.conf.5.xml:679 @@ -3528,10 +3519,9 @@ msgid "" "certificate is provided, the session proceeds normally. If a bad certificate " "is provided, it will be ignored and the session proceeds normally." msgstr "" -"<emphasis>allow</emphasis> : le certificat serveur est demandé. " -"Si aucun certificat n'est fournit, la session continue normalement. Si un " -"mauvais certificat est fournit, il est ignoré et la session continue " -"normalement." +"<emphasis>allow</emphasis> : le certificat serveur est demandé. Si aucun " +"certificat n'est fournit, la session continue normalement. Si un mauvais " +"certificat est fournit, il est ignoré et la session continue normalement." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1157 @@ -3551,9 +3541,9 @@ msgid "" "certificate is provided, or a bad certificate is provided, the session is " "immediately terminated." msgstr "" -"<emphasis>demand</emphasis> : le certificat serveur est demandé. " -"Si aucun certificat ou un mauvais certificat est fournit, la session se " -"termine immédiatement." +"<emphasis>demand</emphasis> : le certificat serveur est demandé. Si aucun " +"certificat ou un mauvais certificat est fournit, la session se termine " +"immédiatement." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1169 @@ -4403,20 +4393,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para> #: sssd-ldap.5.xml:1815 -#, fuzzy -#| msgid "" -#| "Specifies acceptable cipher suites. Typically this is a colon sperated " -#| "list. See <citerefentry><refentrytitle>ldap.conf</refentrytitle> " -#| "<manvolnum>5</manvolnum></citerefentry> for format." msgid "" "This manual page only describes attribute name mapping. For detailed " "explanation of sudo related attribute semantics, see <citerefentry> " "<refentrytitle>sudoers.ldap</refentrytitle><manvolnum>5</manvolnum> </" "citerefentry>" msgstr "" -"Définit les fluxs de chiffrement acceptables. Usuellement c'est une liste " -"séparée par des deux-points. Voir <citerefentry><refentrytitle>ldap.conf</" -"refentrytitle> <manvolnum>5</manvolnum></citerefentry> pour le format." #. type: Content of: <reference><refentry><refsect1><title> #: sssd-ldap.5.xml:1825 @@ -4708,8 +4690,8 @@ msgid "" "<productname>SSSD</productname> <orgname>The SSSD upstream - http://" "fedorahosted.org/sssd</orgname>" msgstr "" -"<productname>SSSD</productname> <orgname>Le projet SSSD - " -"http://fedorahosted.org/sssd</orgname>" +"<productname>SSSD</productname> <orgname>Le projet SSSD - http://" +"fedorahosted.org/sssd</orgname>" #. type: Content of: <reference><refentry><refnamediv><refname> #: pam_sss.8.xml:13 pam_sss.8.xml:18 @@ -6478,9 +6460,9 @@ msgstr "" "%d et %P. Si le dossier n'existe pas il sera créé. Si %u, %U, %p ou %h sont " "utilisés un répertoire privé appartenant à l'utilisateur est créé. Sinon un " "répertoire public avec un drapeau de restriction à la suppression (aussi " -"appelé « sticky bit », voir <citerefentry> <refentrytitle>" -"chmod</refentrytitle> <manvolnum>1</manvolnum> </" -"citerefentry> pour plus de détails) est créé." +"appelé « sticky bit », voir <citerefentry> <refentrytitle>chmod</" +"refentrytitle> <manvolnum>1</manvolnum> </citerefentry> pour plus de " +"détails) est créé." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-krb5.5.xml:151 @@ -7220,10 +7202,8 @@ msgstr "" #. type: Content of: <reference><refentry><refnamediv><refname> #: sss_cache.8.xml:10 sss_cache.8.xml:15 -#, fuzzy -#| msgid "sss_obfuscate" msgid "sss_cache" -msgstr "sss_obfuscate" +msgstr "" #. type: Content of: <reference><refentry><refnamediv><refpurpose> #: sss_cache.8.xml:16 @@ -7232,16 +7212,10 @@ msgstr "" #. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> #: sss_cache.8.xml:21 -#, fuzzy -#| msgid "" -#| "<command>sssd</command> <arg choice='opt'> <replaceable>options</" -#| "replaceable> </arg>" msgid "" "<command>sss_cache</command> <arg choice='opt'> <replaceable>options</" "replaceable> </arg>" msgstr "" -"<command>sssd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" #. type: Content of: <reference><refentry><refsect1><para> #: sss_cache.8.xml:31 @@ -7253,13 +7227,9 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:42 -#, fuzzy -#| msgid "" -#| "<option>-u</option>,<option>--uid</option> <replaceable>UID</replaceable>" msgid "" "<option>-u</option>,<option>--user</option> <replaceable>login</replaceable>" msgstr "" -"<option>-u</option>,<option>--uid</option> <replaceable>UID</replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:47 @@ -7268,10 +7238,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:53 -#, fuzzy -#| msgid "<option>-h</option>,<option>--help</option>" msgid "<option>-U</option>,<option>--users</option>" -msgstr "<option>-h</option>,<option>--help</option>" +msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:57 @@ -7282,15 +7250,9 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:64 -#, fuzzy -#| msgid "" -#| "<option>-G</option>,<option>--groups</option> <replaceable>GROUPS</" -#| "replaceable>" msgid "" "<option>-g</option>,<option>--group</option> <replaceable>group</replaceable>" msgstr "" -"<option>-G</option>,<option>--groups</option> <replaceable>GROUPES</" -"replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:69 @@ -7299,10 +7261,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:75 -#, fuzzy -#| msgid "<option>-r</option>,<option>--remove</option>" msgid "<option>-G</option>,<option>--groups</option>" -msgstr "<option>-r</option>,<option>--remove</option>" +msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:79 @@ -7313,16 +7273,10 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:86 -#, fuzzy -#| msgid "" -#| "<option>-G</option>,<option>--groups</option> <replaceable>GROUPS</" -#| "replaceable>" msgid "" "<option>-n</option>,<option>--netgroup</option> <replaceable>netgroup</" "replaceable>" msgstr "" -"<option>-G</option>,<option>--groups</option> <replaceable>GROUPES</" -"replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:91 @@ -7331,10 +7285,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:97 -#, fuzzy -#| msgid "<option>-h</option>,<option>--help</option>" msgid "<option>-N</option>,<option>--netgroups</option>" -msgstr "<option>-h</option>,<option>--help</option>" +msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:101 @@ -7345,16 +7297,10 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:108 -#, fuzzy -#| msgid "" -#| "<option>-d</option>,<option>--domain</option> <replaceable>DOMAIN</" -#| "replaceable>" msgid "" "<option>-d</option>,<option>--domain</option> <replaceable>domain</" "replaceable>" msgstr "" -"<option>-d</option>,<option>--domain</option> <replaceable>DOMAINE</" -"replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:113 @@ -7363,10 +7309,8 @@ msgstr "" #. type: Content of: <reference><refentry><refnamediv><refname> #: sss_debuglevel.8.xml:10 sss_debuglevel.8.xml:15 -#, fuzzy -#| msgid "sss_userdel" msgid "sss_debuglevel" -msgstr "sss_userdel" +msgstr "" #. type: Content of: <reference><refentry><refnamediv><refpurpose> #: sss_debuglevel.8.xml:16 @@ -7375,19 +7319,11 @@ msgstr "" #. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> #: sss_debuglevel.8.xml:21 -#, fuzzy -#| msgid "" -#| "<command>sss_userdel</command> <arg choice='opt'> <replaceable>options</" -#| "replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -#| "arg>" msgid "" "<command>sss_debuglevel</command> <arg choice='opt'> <replaceable>options</" "replaceable> </arg> <arg choice='plain'><replaceable>NEW_DEBUG_LEVEL</" "replaceable></arg>" msgstr "" -"<command>sss_userdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" #. type: Content of: <reference><refentry><refsect1><para> #: sss_debuglevel.8.xml:32 @@ -7419,30 +7355,14 @@ msgstr "" #. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> #: sss_ssh_authorizedkeys.1.xml:21 -#, fuzzy -#| msgid "" -#| "<command>sss_userdel</command> <arg choice='opt'> <replaceable>options</" -#| "replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -#| "arg>" msgid "" "<command>sss_ssh_authorizedkeys</command> <arg choice='opt'> " "<replaceable>options</replaceable> </arg> <arg " "choice='plain'><replaceable>USER</replaceable></arg>" msgstr "" -"<command>sss_userdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" #. type: Content of: <reference><refentry><refsect1><para> #: sss_ssh_authorizedkeys.1.xml:32 -#, fuzzy -#| msgid "" -#| "This manual page describes the configuration of LDAP domains for " -#| "<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</" -#| "manvolnum> </citerefentry>. Refer to the <quote>FILE FORMAT</quote> " -#| "section of the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -#| "<manvolnum>5</manvolnum> </citerefentry> manual page for detailed syntax " -#| "information." msgid "" "<command>sss_ssh_authorizedkeys</command> acquires SSH public keys for user " "<replaceable>USER</replaceable> and outputs them in OpenSSH authorized_keys " @@ -7450,21 +7370,9 @@ msgid "" "<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" "citerefentry> for more information)." msgstr "" -"Ce manuel décrit la configuration des domaines LDAP pour <citerefentry> " -"<refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> </" -"citerefentry>. Se référer à la section <quote>FILE FORMAT</quote> du manuel " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> pour des informations sur la syntaxe détaillée." #. type: Content of: <reference><refentry><refsect1><para> #: sss_ssh_authorizedkeys.1.xml:41 -#, fuzzy -#| msgid "" -#| "<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -#| "manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -#| "refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -#| "<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </" -#| "citerefentry>" msgid "" "<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" "citerefentry> can be configured to use <command>sss_ssh_authorizedkeys</" @@ -7473,10 +7381,6 @@ msgid "" "quote> <citerefentry> <refentrytitle>sshd_config</refentrytitle> " "<manvolnum>5</manvolnum></citerefentry> options." msgstr "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" #. type: Content of: <reference><refentry><refsect1><para><programlisting> #: sss_ssh_authorizedkeys.1.xml:58 @@ -7486,14 +7390,6 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para> #: sss_ssh_authorizedkeys.1.xml:51 -#, fuzzy -#| msgid "" -#| "This manual page describes the configuration of LDAP domains for " -#| "<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</" -#| "manvolnum> </citerefentry>. Refer to the <quote>FILE FORMAT</quote> " -#| "section of the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -#| "<manvolnum>5</manvolnum> </citerefentry> manual page for detailed syntax " -#| "information." msgid "" "If <quote>AuthorizedKeysCommand</quote> is supported, " "<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" @@ -7501,11 +7397,6 @@ msgid "" "in <citerefentry> <refentrytitle>sshd_config</refentrytitle> <manvolnum>5</" "manvolnum></citerefentry>: <placeholder type=\"programlisting\" id=\"0\"/>" msgstr "" -"Ce manuel décrit la configuration des domaines LDAP pour <citerefentry> " -"<refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> </" -"citerefentry>. Se référer à la section <quote>FILE FORMAT</quote> du manuel " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> pour des informations sur la syntaxe détaillée." #. type: Content of: <reference><refentry><refsect1><para><programlisting> #: sss_ssh_authorizedkeys.1.xml:69 @@ -7515,14 +7406,6 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para> #: sss_ssh_authorizedkeys.1.xml:62 -#, fuzzy -#| msgid "" -#| "This manual page describes the configuration of LDAP domains for " -#| "<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</" -#| "manvolnum> </citerefentry>. Refer to the <quote>FILE FORMAT</quote> " -#| "section of the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -#| "<manvolnum>5</manvolnum> </citerefentry> manual page for detailed syntax " -#| "information." msgid "" "If <quote>PubkeyAgent</quote> is supported, " "<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" @@ -7531,11 +7414,6 @@ msgid "" "manvolnum></citerefentry> configuration: <placeholder type=\"programlisting" "\" id=\"0\"/>" msgstr "" -"Ce manuel décrit la configuration des domaines LDAP pour <citerefentry> " -"<refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> </" -"citerefentry>. Se référer à la section <quote>FILE FORMAT</quote> du manuel " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> pour des informations sur la syntaxe détaillée." #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_ssh_authorizedkeys.1.xml:87 @@ -7545,13 +7423,6 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para> #: sss_ssh_authorizedkeys.1.xml:98 -#, fuzzy -#| msgid "" -#| "<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -#| "manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -#| "refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -#| "<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </" -#| "citerefentry>" msgid "" "<citerefentry> <refentrytitle>sshd</refentrytitle><manvolnum>8</manvolnum> </" "citerefentry>, <citerefentry> <refentrytitle>sshd_config</" @@ -7559,10 +7430,6 @@ msgid "" "<refentrytitle>sss_ssh_knownhostsproxy</refentrytitle><manvolnum>1</" "manvolnum> </citerefentry>." msgstr "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" #. type: Content of: <reference><refentry><refnamediv><refname> #: sss_ssh_knownhostsproxy.1.xml:10 sss_ssh_knownhostsproxy.1.xml:15 @@ -7576,20 +7443,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> #: sss_ssh_knownhostsproxy.1.xml:21 -#, fuzzy -#| msgid "" -#| "<command>sss_groupshow</command> <arg choice='opt'> <replaceable>options</" -#| "replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -#| "arg>" msgid "" "<command>sss_ssh_knownhostsproxy</command> <arg choice='opt'> " "<replaceable>options</replaceable> </arg> <arg " "choice='plain'><replaceable>HOST</replaceable></arg> <arg " "choice='opt'><replaceable>PROXY_COMMAND</replaceable></arg>" msgstr "" -"<command>sss_groupshow</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" #. type: Content of: <reference><refentry><refsect1><para> #: sss_ssh_knownhostsproxy.1.xml:33 @@ -7619,13 +7478,6 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para> #: sss_ssh_knownhostsproxy.1.xml:48 -#, fuzzy -#| msgid "" -#| "<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -#| "manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -#| "refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -#| "<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </" -#| "citerefentry>" msgid "" "<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" "citerefentry> can be configured to use <command>sss_ssh_knownhostsproxy</" @@ -7633,22 +7485,12 @@ msgid "" "<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" "citerefentry> configuration: <placeholder type=\"programlisting\" id=\"0\"/>" msgstr "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_ssh_knownhostsproxy.1.xml:69 -#, fuzzy -#| msgid "" -#| "<option>-c</option>,<option>--gecos</option> <replaceable>COMMENT</" -#| "replaceable>" msgid "" "<option>-p</option>,<option>--port</option> <replaceable>PORT</replaceable>" msgstr "" -"<option>-c</option>,<option>--gecos</option> <replaceable>COMMENTAIRE</" -"replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_ssh_knownhostsproxy.1.xml:74 @@ -7665,13 +7507,6 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para> #: sss_ssh_knownhostsproxy.1.xml:97 -#, fuzzy -#| msgid "" -#| "<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -#| "manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -#| "refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -#| "<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </" -#| "citerefentry>" msgid "" "<citerefentry> <refentrytitle>ssh</refentrytitle><manvolnum>8</manvolnum> </" "citerefentry>, <citerefentry> <refentrytitle>ssh_config</" @@ -7679,10 +7514,6 @@ msgid "" "<refentrytitle>sss_ssh_authorizedkeys</refentrytitle><manvolnum>1</" "manvolnum> </citerefentry>." msgstr "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" #. type: Content of: <refsect1><title> #: include/service_discovery.xml:2 @@ -7833,10 +7664,8 @@ msgstr "" #. type: Content of: <listitem><para> #: include/debug_levels.xml:8 -#, fuzzy -#| msgid "Currently sssd supports the following values:" msgid "Currently supported debug levels:" -msgstr "Actuellement sssd supporte les valeurs :" +msgstr "" #. type: Content of: <listitem><para> #: include/debug_levels.xml:11 @@ -7869,36 +7698,24 @@ msgstr "" #. type: Content of: <listitem><para> #: include/debug_levels.xml:28 -#, fuzzy -#| msgid "<emphasis>2</emphasis>: show informational messages" msgid "<emphasis>0x0100</emphasis>: Configuration settings." -msgstr "<emphasis>2</emphasis> : afficher les messages d'information" +msgstr "" #. type: Content of: <listitem><para> #: include/debug_levels.xml:31 -#, fuzzy -#| msgid "<emphasis>s</emphasis> seconds" msgid "<emphasis>0x0200</emphasis>: Function data." -msgstr "<emphasis>s</emphasis> secondes" +msgstr "" #. type: Content of: <listitem><para> #: include/debug_levels.xml:34 -#, fuzzy -#| msgid "<emphasis>3</emphasis>: show all messages and debug information" msgid "<emphasis>0x0400</emphasis>: Trace messages for operation functions." msgstr "" -"<emphasis>3</emphasis> : afficher tous les messages et informations de " -"débogage" #. type: Content of: <listitem><para> #: include/debug_levels.xml:37 -#, fuzzy -#| msgid "<emphasis>3</emphasis>: show all messages and debug information" msgid "" "<emphasis>0x1000</emphasis>: Trace messages for internal control functions." msgstr "" -"<emphasis>3</emphasis> : afficher tous les messages et informations de " -"débogage" #. type: Content of: <listitem><para> #: include/debug_levels.xml:40 @@ -7909,12 +7726,8 @@ msgstr "" #. type: Content of: <listitem><para> #: include/debug_levels.xml:43 -#, fuzzy -#| msgid "<emphasis>3</emphasis>: show all messages and debug information" msgid "<emphasis>0x4000</emphasis>: Extremely low-level tracing information." msgstr "" -"<emphasis>3</emphasis> : afficher tous les messages et informations de " -"débogage" #. type: Content of: <listitem><para> #: include/debug_levels.xml:46 diff --git a/src/man/po/he.po b/src/man/po/he.po deleted file mode 100644 index 6f8dee9b9..000000000 --- a/src/man/po/he.po +++ /dev/null @@ -1,6747 +0,0 @@ -# SOME DESCRIPTIVE TITLE -# Copyright (C) YEAR Red Hat -# This file is distributed under the same license as the sssd-docs package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@redhat.com\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-12-23 15:35+0000\n" -"Last-Translator: FULL NAME <EMAIL@ADDRESS>\n" -"Language-Team: Hebrew <he-users@lists.fedoraproject.org>\n" -"Language: he\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=2; plural=(n != 1)\n" - -#. type: Content of: <reference><title> -#: sss_groupmod.8.xml:5 sssd.conf.5.xml:5 sssd-ldap.5.xml:5 pam_sss.8.xml:5 -#: sssd_krb5_locator_plugin.8.xml:5 sssd-simple.5.xml:5 sssd-ipa.5.xml:5 -#: sssd.8.xml:5 sss_obfuscate.8.xml:5 sss_useradd.8.xml:5 sssd-krb5.5.xml:5 -#: sss_groupadd.8.xml:5 sss_userdel.8.xml:5 sss_groupdel.8.xml:5 -#: sss_groupshow.8.xml:5 sss_usermod.8.xml:5 sss_cache.8.xml:5 -#: sss_debuglevel.8.xml:5 sss_ssh_authorizedkeys.1.xml:5 -#: sss_ssh_knownhostsproxy.1.xml:5 -msgid "SSSD Manual pages" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupmod.8.xml:10 sss_groupmod.8.xml:15 -msgid "sss_groupmod" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_groupmod.8.xml:11 pam_sss.8.xml:14 sssd_krb5_locator_plugin.8.xml:11 -#: sssd.8.xml:11 sss_obfuscate.8.xml:11 sss_useradd.8.xml:11 -#: sss_groupadd.8.xml:11 sss_userdel.8.xml:11 sss_groupdel.8.xml:11 -#: sss_groupshow.8.xml:11 sss_usermod.8.xml:11 sss_cache.8.xml:11 -#: sss_debuglevel.8.xml:11 -msgid "8" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupmod.8.xml:16 -msgid "modify a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupmod.8.xml:21 -msgid "" -"<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:30 sssd-ldap.5.xml:21 pam_sss.8.xml:44 -#: sssd_krb5_locator_plugin.8.xml:20 sssd-simple.5.xml:22 sssd-ipa.5.xml:21 -#: sssd.8.xml:29 sss_obfuscate.8.xml:30 sss_useradd.8.xml:30 -#: sssd-krb5.5.xml:21 sss_groupadd.8.xml:30 sss_userdel.8.xml:30 -#: sss_groupdel.8.xml:30 sss_groupshow.8.xml:30 sss_usermod.8.xml:30 -#: sss_cache.8.xml:29 sss_debuglevel.8.xml:30 sss_ssh_authorizedkeys.1.xml:30 -#: sss_ssh_knownhostsproxy.1.xml:31 -msgid "DESCRIPTION" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:32 -msgid "" -"<command>sss_groupmod</command> modifies the group to reflect the changes " -"that are specified on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:39 pam_sss.8.xml:51 sssd.8.xml:42 sss_obfuscate.8.xml:58 -#: sss_useradd.8.xml:39 sss_groupadd.8.xml:39 sss_userdel.8.xml:39 -#: sss_groupdel.8.xml:39 sss_groupshow.8.xml:39 sss_usermod.8.xml:39 -#: sss_cache.8.xml:38 sss_debuglevel.8.xml:38 sss_ssh_authorizedkeys.1.xml:78 -#: sss_ssh_knownhostsproxy.1.xml:65 -msgid "OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:43 sss_usermod.8.xml:77 -msgid "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:48 -msgid "" -"Append this group to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:57 sss_usermod.8.xml:91 -msgid "" -"<option>-r</option>,<option>--remove-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:62 -msgid "" -"Remove this group from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:72 sssd.conf.5.xml:1331 sssd-ldap.5.xml:2096 -#: pam_sss.8.xml:139 sssd_krb5_locator_plugin.8.xml:75 sssd-simple.5.xml:143 -#: sssd-ipa.5.xml:562 sssd.8.xml:191 sss_obfuscate.8.xml:103 -#: sss_useradd.8.xml:167 sssd-krb5.5.xml:451 sss_groupadd.8.xml:58 -#: sss_userdel.8.xml:93 sss_groupdel.8.xml:46 sss_groupshow.8.xml:58 -#: sss_usermod.8.xml:138 sss_ssh_authorizedkeys.1.xml:96 -#: sss_ssh_knownhostsproxy.1.xml:95 -msgid "SEE ALSO" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:74 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.conf.5.xml:10 sssd.conf.5.xml:16 -msgid "sssd.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sssd.conf.5.xml:11 sssd-ldap.5.xml:11 sssd-simple.5.xml:11 -#: sssd-ipa.5.xml:11 sssd-krb5.5.xml:11 -msgid "5" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><refmiscinfo> -#: sssd.conf.5.xml:12 sssd-ldap.5.xml:12 sssd-simple.5.xml:12 -#: sssd-ipa.5.xml:12 sssd-krb5.5.xml:12 -msgid "File Formats and Conventions" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.conf.5.xml:17 sssd-ldap.5.xml:17 sssd_krb5_locator_plugin.8.xml:16 -#: sssd-ipa.5.xml:17 sssd-krb5.5.xml:17 -msgid "the configuration file for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:21 -msgid "FILE FORMAT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:29 -#, no-wrap -msgid "" -" <replaceable>[section]</replaceable>\n" -" <replaceable>key</replaceable> = <replaceable>value</replaceable>\n" -" <replaceable>key2</replaceable> = <replaceable>value2,value3</replaceable>\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:24 -msgid "" -"The file has an ini-style syntax and consists of sections and parameters. A " -"section begins with the name of the section in square brackets and continues " -"until the next section begins. An example of section with single and multi-" -"valued parameters: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:36 -msgid "" -"The data types used are string (no quotes needed), integer and bool (with " -"values of <quote>TRUE/FALSE</quote>)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:41 -msgid "" -"A line comment starts with a hash sign (<quote>#</quote>) or a semicolon " -"(<quote>;</quote>)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:46 -msgid "" -"All sections can have an optional <replaceable>description</replaceable> " -"parameter. Its function is only as a label for the section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:52 -msgid "" -"<filename>sssd.conf</filename> must be a regular file, owned by root and " -"only root may read from or write to the file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:58 -msgid "SPECIAL SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:61 -msgid "The [sssd] section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><title> -#: sssd.conf.5.xml:70 sssd.conf.5.xml:1177 -msgid "Section parameters" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:72 -msgid "config_file_version (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:75 -msgid "" -"Indicates what is the syntax of the config file. SSSD 0.6.0 and later use " -"version 2." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:81 -msgid "services" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:84 -msgid "" -"Comma separated list of services that are started when sssd itself starts." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:88 -msgid "" -"Supported services: nss, pam <phrase condition=\"with_sudo\">, sudo</phrase>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:94 sssd.conf.5.xml:257 -msgid "reconnection_retries (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:97 sssd.conf.5.xml:260 -msgid "" -"Number of times services should attempt to reconnect in the event of a Data " -"Provider crash or restart before they give up" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:102 sssd.conf.5.xml:265 -msgid "Default: 3" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:107 -msgid "domains" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:110 -msgid "" -"A domain is a database containing user information. SSSD can use more " -"domains at the same time, but at least one must be configured or SSSD won't " -"start. This parameter described the list of domains in the order you want " -"them to be queried." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:120 -msgid "re_expression (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:123 -msgid "" -"Regular expression that describes how to parse the string containing user " -"name and domain into these components." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:127 -msgid "" -"Default: <quote>(?P<name>[^@]+)@?(?P<domain>[^@]*$)</quote> " -"which translates to \"the name is everything up to the <quote>@</quote> " -"sign, the domain everything after that\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:132 -msgid "" -"PLEASE NOTE: the support for non-unique named subpatterns is not available " -"on all platforms (e.g. RHEL5 and SLES10). Only platforms with libpcre " -"version 7 or higher can support non-unique named subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:139 -msgid "" -"PLEASE NOTE ALSO: older version of libpcre only support the Python syntax (?" -"P<name>) to label subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:146 -msgid "full_name_format (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:149 -msgid "" -"A <citerefentry> <refentrytitle>printf</refentrytitle> <manvolnum>3</" -"manvolnum> </citerefentry>-compatible format that describes how to translate " -"a (name, domain) tuple into a fully qualified name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:157 -msgid "Default: <quote>%1$s@%2$s</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:162 -msgid "try_inotify (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:165 -msgid "" -"SSSD monitors the state of resolv.conf to identify when it needs to update " -"its internal DNS resolver. By default, we will attempt to use inotify for " -"this, and will fall back to polling resolv.conf every five seconds if " -"inotify cannot be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:173 -msgid "" -"There are some limited situations where it is preferred that we should skip " -"even trying to use inotify. In these rare cases, this option should be set " -"to 'false'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:179 -msgid "" -"Default: true on platforms where inotify is supported. False on other " -"platforms." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:183 -msgid "" -"Note: this option will have no effect on platforms where inotify is " -"unavailable. On these platforms, polling will always be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:190 -msgid "krb5_rcache_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:193 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:197 -msgid "" -"This option accepts a special value __LIBKRB5_DEFAULTS__ that will instruct " -"SSSD to let libkrb5 decide the appropriate location for the replay cache." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:203 -msgid "" -"Default: Distribution-specific and specified at build-time. " -"(__LIBKRB5_DEFAULTS__ if not configured)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:63 -msgid "" -"Individual pieces of SSSD functionality are provided by special SSSD " -"services that are started and stopped together with SSSD. The services are " -"managed by a special service frequently called <quote>monitor</quote>. The " -"<quote>[sssd]</quote> section is used to configure the monitor as well as " -"some other important options like the identity domains. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:216 -msgid "SERVICES SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:218 -msgid "" -"Settings that can be used to configure different services are described in " -"this section. They should reside in the [<replaceable>$NAME</replaceable>] " -"section, for example, for NSS service, the section would be <quote>[nss]</" -"quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:225 -msgid "General service configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:227 -msgid "These options can be used to configure any service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:231 -msgid "debug_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:235 -msgid "debug_timestamps (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:238 -msgid "Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:241 sssd.conf.5.xml:376 sssd-ldap.5.xml:1328 -#: sssd-ldap.5.xml:1446 sssd-ipa.5.xml:206 sssd-ipa.5.xml:241 -msgid "Default: true" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:246 -msgid "debug_microseconds (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:249 -msgid "Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:252 sssd.conf.5.xml:641 sssd-ldap.5.xml:602 -#: sssd-ldap.5.xml:1260 sssd-ldap.5.xml:1397 sssd-ldap.5.xml:1795 -#: sssd-ipa.5.xml:123 sssd-ipa.5.xml:301 sssd-krb5.5.xml:235 -#: sssd-krb5.5.xml:269 sssd-krb5.5.xml:418 -msgid "Default: false" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:270 -msgid "command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:273 -msgid "" -"By default, the executable representing this service is called <command>sssd_" -"${service_name}</command>. This directive allows to change the executable " -"name for the service. In the vast majority of configurations, the default " -"values should suffice." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:281 -msgid "Default: <command>sssd_${service_name}</command>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:289 -msgid "NSS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:291 -msgid "" -"These options can be used to configure the Name Service Switch (NSS) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:296 -msgid "enum_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:299 -msgid "" -"How many seconds should nss_sss cache enumerations (requests for info about " -"all users)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:303 -msgid "Default: 120" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:308 -msgid "entry_cache_nowait_percentage (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:311 -msgid "" -"The entry cache can be set to automatically update entries in the background " -"if they are requested beyond a percentage of the entry_cache_timeout value " -"for the domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:317 -msgid "" -"For example, if the domain's entry_cache_timeout is set to 30s and " -"entry_cache_nowait_percentage is set to 50 (percent), entries that come in " -"after 15 seconds past the last cache update will be returned immediately, " -"but the SSSD will go and update the cache on its own, so that future " -"requests will not need to block waiting for a cache update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:327 -msgid "" -"Valid values for this option are 0-99 and represent a percentage of the " -"entry_cache_timeout for each domain. For performance reasons, this " -"percentage will never reduce the nowait timeout to less than 10 seconds. (0 " -"disables this feature)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:335 -msgid "Default: 50" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:340 -msgid "entry_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:343 -msgid "" -"Specifies for how many seconds nss_sss should cache negative cache hits " -"(that is, queries for invalid database entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:349 sssd.conf.5.xml:669 sssd-krb5.5.xml:223 -msgid "Default: 15" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:354 -msgid "filter_users, filter_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:357 -msgid "" -"Exclude certain users from being fetched from the sss NSS database. This is " -"particularly useful for system accounts. This option can also be set per-" -"domain or include fully-qualified names to filter only users from the " -"particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:364 -msgid "Default: root" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:369 -msgid "filter_users_in_groups (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:372 -msgid "" -"If you want filtered user still be group members set this option to false." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:381 -msgid "override_homedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:390 sssd-krb5.5.xml:166 -msgid "%u" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:391 sssd-krb5.5.xml:167 -msgid "login name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:394 sssd-krb5.5.xml:170 -msgid "%U" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:395 -msgid "UID number" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:398 sssd-krb5.5.xml:188 -msgid "%d" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:399 -msgid "domain name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:402 -msgid "%f" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:403 -msgid "fully qualified user name (user@domain)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:406 sssd-krb5.5.xml:200 -msgid "%%" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:407 sssd-krb5.5.xml:201 -msgid "a literal '%'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:384 -msgid "" -"Override the user's home directory. You can either provide an absolute value " -"or a template. In the template, the following sequences are substituted: " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:413 -msgid "This option can also be set per-domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:418 -msgid "allowed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:421 -msgid "" -"Restrict user shell to one of the listed values. The order of evaluation is:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:424 -msgid "1. If the shell is present in <quote>/etc/shells</quote>, it is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:428 -msgid "" -"2. If the shell is in the allowed_shells list but not in <quote>/etc/shells</" -"quote>, use the value of the shell_fallback parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:433 -msgid "" -"3. If the shell is not in the allowed_shells list and not in <quote>/etc/" -"shells</quote>, a nologin shell is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:438 -msgid "An empty string for shell is passed as-is to libc." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:441 -msgid "" -"The <quote>/etc/shells</quote> is only read on SSSD start up, which means " -"that a restart of the SSSD is required in case a new shell is installed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:445 -msgid "Default: Not set. The user shell is automatically used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:450 -msgid "vetoed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:453 -msgid "Replace any instance of these shells with the shell_fallback" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:458 -msgid "shell_fallback (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:461 -msgid "" -"The default shell to use if an allowed shell is not installed on the machine." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:465 -msgid "Default: /bin/sh" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:472 -msgid "PAM configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:474 -msgid "" -"These options can be used to configure the Pluggable Authentication Module " -"(PAM) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:479 -msgid "offline_credentials_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:482 -msgid "" -"If the authentication provider is offline, how long should we allow cached " -"logins (in days since the last successful online login)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:487 sssd.conf.5.xml:500 -msgid "Default: 0 (No limit)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:493 -msgid "offline_failed_login_attempts (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:496 -msgid "" -"If the authentication provider is offline, how many failed login attempts " -"are allowed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:506 -msgid "offline_failed_login_delay (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:509 -msgid "" -"The time in minutes which has to pass after offline_failed_login_attempts " -"has been reached before a new login attempt is possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:514 -msgid "" -"If set to 0 the user cannot authenticate offline if " -"offline_failed_login_attempts has been reached. Only a successful online " -"authentication can enable offline authentication again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:520 sssd.conf.5.xml:573 sssd.conf.5.xml:1093 -msgid "Default: 5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:526 -msgid "pam_verbosity (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:529 -msgid "" -"Controls what kind of messages are shown to the user during authentication. " -"The higher the number to more messages are displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:534 -msgid "Currently sssd supports the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:537 -msgid "<emphasis>0</emphasis>: do not show any message" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:540 -msgid "<emphasis>1</emphasis>: show only important messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:544 -msgid "<emphasis>2</emphasis>: show informational messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:547 -msgid "<emphasis>3</emphasis>: show all messages and debug information" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:551 sssd.8.xml:63 -msgid "Default: 1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:556 -msgid "pam_id_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:559 -msgid "" -"For any PAM request while SSSD is online, the SSSD will attempt to " -"immediately update the cached identity information for the user in order to " -"ensure that authentication takes place with the latest information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:565 -msgid "" -"A complete PAM conversation may perform multiple PAM requests, such as " -"account management and session opening. This option controls (on a per-" -"client-application basis) how long (in seconds) we can cache the identity " -"information to avoid excessive round-trips to the identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:579 -msgid "pam_pwd_expiration_warning (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:582 -msgid "Display a warning N days before the password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:585 -msgid "" -"Please note that the backend server has to provide information about the " -"expiration time of the password. If this information is missing, sssd " -"cannot display a warning." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:591 -msgid "Default: 7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:599 -msgid "SUDO configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:601 -msgid "These options can be used to configure the sudo service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:608 -msgid "sudo_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:611 -msgid "" -"For any sudo request that comes while SSSD is online, the SSSD will attempt " -"to update the cached rules in order to ensure that sudo has the latest " -"ruleset." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:617 -msgid "" -"The user may, however, run a couple of sudo commands successively, which " -"would trigger multiple LDAP requests. In order to speed up this use-case, " -"the sudo service maintains an in-memory cache that would be used for " -"performing fast replies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:624 -msgid "" -"This option controls how long (in seconds) can the sudo service cache rules " -"for a user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:628 -msgid "Default: 180" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:633 -msgid "sudo_timed (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:636 -msgid "" -"Whether or not to evaluate the sudoNotBefore and sudoNotAfter attributes " -"that implement time-dependent sudoers entries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:649 -msgid "AUTOFS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:651 -msgid "These options can be used to configure the autofs service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:659 -msgid "autofs_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:662 -msgid "" -"Specifies for how many seconds should the autofs responder negative cache " -"hits (that is, queries for invalid map entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:679 -msgid "DOMAIN SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:686 -msgid "min_id,max_id (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:689 -msgid "" -"UID and GID limits for the domain. If a domain contains an entry that is " -"outside these limits, it is ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:694 -msgid "" -"For users, this affects the primary GID limit. The user will not be returned " -"to NSS if either the UID or the primary GID is outside the range. For non-" -"primary group memberships, those that are in range will be reported as " -"expected." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:701 -msgid "Default: 1 for min_id, 0 (no limit) for max_id" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:707 -msgid "timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:710 -msgid "" -"Timeout in seconds between heartbeats for this domain. This is used to " -"ensure that the backend process is alive and capable of answering requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:715 sssd-ldap.5.xml:1131 -msgid "Default: 10" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:721 -msgid "enumerate (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:724 -msgid "" -"Determines if a domain can be enumerated. This parameter can have one of the " -"following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:728 -msgid "TRUE = Users and groups are enumerated" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:731 -msgid "FALSE = No enumerations for this domain" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:734 sssd.conf.5.xml:839 sssd.conf.5.xml:893 -msgid "Default: FALSE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:737 -msgid "" -"Note: Enabling enumeration has a moderate performance impact on SSSD while " -"enumeration is running. It may take up to several minutes after SSSD startup " -"to fully complete enumerations. During this time, individual requests for " -"information will go directly to LDAP, though it may be slow, due to the " -"heavy enumeration processing." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:747 -msgid "" -"While the first enumeration is running, requests for the complete user or " -"group lists may return no results until it completes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:752 -msgid "" -"Further, enabling enumeration may increase the time necessary to detect " -"network disconnection, as longer timeouts are required to ensure that " -"enumeration lookups are completed successfully. For more information, refer " -"to the man pages for the specific id_provider in use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:763 -msgid "entry_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:766 -msgid "" -"How many seconds should nss_sss consider entries valid before asking the " -"backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:770 -msgid "Default: 5400" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:776 -msgid "entry_cache_user_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:779 -msgid "" -"How many seconds should nss_sss consider user entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:783 sssd.conf.5.xml:796 sssd.conf.5.xml:809 -#: sssd.conf.5.xml:822 -msgid "Default: entry_cache_timeout" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:789 -msgid "entry_cache_group_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:792 -msgid "" -"How many seconds should nss_sss consider group entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:802 -msgid "entry_cache_netgroup_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:805 -msgid "" -"How many seconds should nss_sss consider netgroup entries valid before " -"asking the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:815 -msgid "entry_cache_service_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:818 -msgid "" -"How many seconds should nss_sss consider service entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:828 -msgid "cache_credentials (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:831 -msgid "Determines if user credentials are also cached in the local LDB cache" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:835 -msgid "User credentials are stored in a SHA512 hash, not in plaintext" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:844 -msgid "account_cache_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:847 -msgid "" -"Number of days entries are left in cache after last successful login before " -"being removed during a cleanup of the cache. 0 means keep forever. The " -"value of this parameter must be greater than or equal to " -"offline_credentials_expiration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:854 -msgid "Default: 0 (unlimited)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:860 -msgid "id_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:863 -msgid "The Data Provider identity backend to use for this domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:867 -msgid "Supported backends:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:870 -msgid "proxy: Support a legacy NSS provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:873 -msgid "local: SSSD internal local provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:876 -msgid "ldap: LDAP provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:882 -msgid "use_fully_qualified_names (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:885 -msgid "" -"If set to TRUE, all requests to this domain must use fully qualified names. " -"For example, if used in LOCAL domain that contains a \"test\" user, " -"<command>getent passwd test</command> wouldn't find the user while " -"<command>getent passwd test@LOCAL</command> would." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:898 -msgid "auth_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:901 -msgid "" -"The authentication provider used for the domain. Supported auth providers " -"are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:905 -msgid "" -"<quote>ldap</quote> for native LDAP authentication. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:912 -msgid "" -"<quote>krb5</quote> for Kerberos authentication. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:919 -msgid "" -"<quote>proxy</quote> for relaying authentication to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:922 -msgid "<quote>none</quote> disables authentication explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:925 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"authentication requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:931 -msgid "access_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:934 -msgid "" -"The access control provider used for the domain. There are two built-in " -"access providers (in addition to any included in installed backends) " -"Internal special providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:940 -msgid "<quote>permit</quote> always allow access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:943 -msgid "<quote>deny</quote> always deny access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:946 -msgid "" -"<quote>simple</quote> access control based on access or deny lists. See " -"<citerefentry> <refentrytitle>sssd-simple</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry> for more information on configuring the simple " -"access module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:953 -msgid "Default: <quote>permit</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:958 -msgid "chpass_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:961 -msgid "" -"The provider which should handle change password operations for the domain. " -"Supported change password providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:966 -msgid "" -"<quote>ipa</quote> to change a password stored in an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:974 -msgid "" -"<quote>ldap</quote> to change a password stored in a LDAP server. See " -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:982 -msgid "" -"<quote>krb5</quote> to change the Kerberos password. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:990 -msgid "" -"<quote>proxy</quote> for relaying password changes to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:994 -msgid "<quote>none</quote> disallows password changes explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:997 -msgid "" -"Default: <quote>auth_provider</quote> is used if it is set and can handle " -"change password requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1004 -msgid "sudo_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1010 -msgid "The SUDO provider used for the domain. Supported SUDO providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1014 -msgid "" -"<quote>ldap</quote> for rules stored in LDAP. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1021 -msgid "<quote>none</quote> disables SUDO explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1024 -msgid "Default: The value of <quote>id_provider</quote> is used if it is set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1030 -msgid "session_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1033 -msgid "" -"The provider which should handle loading of session settings. Supported " -"session providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1038 -msgid "" -"<quote>ipa</quote> to load session settings from an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1046 -msgid "<quote>none</quote> disallows fetching session settings explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1049 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"session loading requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1056 -msgid "lookup_family_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1059 -msgid "" -"Provides the ability to select preferred address family to use when " -"performing DNS lookups." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1063 -msgid "Supported values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1066 -msgid "ipv4_first: Try looking up IPv4 address, if that fails, try IPv6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1069 -msgid "ipv4_only: Only attempt to resolve hostnames to IPv4 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1072 -msgid "ipv6_first: Try looking up IPv6 address, if that fails, try IPv4" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1075 -msgid "ipv6_only: Only attempt to resolve hostnames to IPv6 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1078 -msgid "Default: ipv4_first" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1084 -msgid "dns_resolver_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1087 -msgid "" -"Defines the amount of time (in seconds) to wait for a reply from the DNS " -"resolver before assuming that it is unreachable. If this timeout is reached, " -"the domain will continue to operate in offline mode." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1099 -msgid "dns_discovery_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1102 -msgid "" -"If service discovery is used in the back end, specifies the domain part of " -"the service discovery DNS query." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1106 -msgid "Default: Use the domain part of machine's hostname" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1112 -msgid "override_gid (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1115 -msgid "Override the primary GID value with the one specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1121 -msgid "case_sensitive (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1124 -msgid "" -"Treat user and group names as case sensitive. At the moment, this option is " -"not supported in the local provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1129 -msgid "Default: True" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:681 -msgid "" -"These configuration options can be present in a domain configuration " -"section, that is, in a section called <quote>[domain/<replaceable>NAME</" -"replaceable>]</quote> <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1141 -msgid "proxy_pam_target (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1144 -msgid "The proxy target PAM proxies to." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1147 -msgid "" -"Default: not set by default, you have to take an existing pam configuration " -"or create a new one and add the service name here." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1155 -msgid "proxy_lib_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1158 -msgid "" -"The name of the NSS library to use in proxy domains. The NSS functions " -"searched for in the library are in the form of _nss_$(libName)_$(function), " -"for example _nss_files_getpwent." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1137 -msgid "" -"Options valid for proxy domains. <placeholder type=\"variablelist\" id=" -"\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:1170 -msgid "The local domain section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:1172 -msgid "" -"This section contains settings for domain that stores users and groups in " -"SSSD native database, that is, a domain that uses " -"<replaceable>id_provider=local</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1179 -msgid "default_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1182 -msgid "The default shell for users created with SSSD userspace tools." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1186 -msgid "Default: <filename>/bin/bash</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1191 -msgid "base_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1194 -msgid "" -"The tools append the login name to <replaceable>base_directory</replaceable> " -"and use that as the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1199 -msgid "Default: <filename>/home</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1204 -msgid "create_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1207 -msgid "" -"Indicate if a home directory should be created by default for new users. " -"Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1211 sssd.conf.5.xml:1223 -msgid "Default: TRUE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1216 -msgid "remove_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1219 -msgid "" -"Indicate if a home directory should be removed by default for deleted " -"users. Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1228 -msgid "homedir_umask (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1231 -msgid "" -"Used by <citerefentry> <refentrytitle>sss_useradd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry> to specify the default permissions " -"on a newly created home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1239 -msgid "Default: 077" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1244 -msgid "skel_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1247 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<citerefentry> <refentrytitle>sss_useradd</refentrytitle> <manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1257 -msgid "Default: <filename>/etc/skel</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1262 -msgid "mail_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1265 -msgid "" -"The mail spool directory. This is needed to manipulate the mailbox when its " -"corresponding user account is modified or deleted. If not specified, a " -"default value is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1272 -msgid "Default: <filename>/var/mail</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1277 -msgid "userdel_cmd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1280 -msgid "" -"The command that is run after a user is removed. The command us passed the " -"username of the user being removed as the first and only parameter. The " -"return code of the command is not taken into account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1286 -msgid "Default: None, no command is run" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:1296 sssd-ldap.5.xml:2064 sssd-simple.5.xml:126 -#: sssd-ipa.5.xml:544 sssd-krb5.5.xml:432 -msgid "EXAMPLE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:1302 -#, no-wrap -msgid "" -"[sssd]\n" -"domains = LDAP\n" -"services = nss, pam\n" -"config_file_version = 2\n" -"\n" -"[nss]\n" -"filter_groups = root\n" -"filter_users = root\n" -"\n" -"[pam]\n" -"\n" -"[domain/LDAP]\n" -"id_provider = ldap\n" -"ldap_uri = ldap://ldap.example.com\n" -"ldap_search_base = dc=example,dc=com\n" -"\n" -"auth_provider = krb5\n" -"krb5_server = kerberos.example.com\n" -"krb5_realm = EXAMPLE.COM\n" -"cache_credentials = true\n" -"\n" -"min_id = 10000\n" -"max_id = 20000\n" -"enumerate = False\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1298 -msgid "" -"The following example shows a typical SSSD config. It does not describe " -"configuration of the domains themselves - refer to documentation on " -"configuring domains for more details. <placeholder type=\"programlisting\" " -"id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1333 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>pam_sss</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ldap.5.xml:10 sssd-ldap.5.xml:16 -msgid "sssd-ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:23 -msgid "" -"This manual page describes the configuration of LDAP domains for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. Refer to the <quote>FILE FORMAT</quote> section of the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for detailed syntax information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:35 -msgid "You can configure SSSD to use more than one LDAP domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:38 -msgid "" -"LDAP back end supports id, auth, access and chpass providers. If you want to " -"authenticate against an LDAP server either TLS/SSL or LDAPS is required. " -"<command>sssd</command> <emphasis>does not</emphasis> support authentication " -"over an unencrypted channel. If the LDAP server is used only as an identity " -"provider, an encrypted channel is not needed. Please refer to " -"<quote>ldap_access_filter</quote> config option for more information about " -"using LDAP as an access provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:49 sssd-simple.5.xml:69 sssd-ipa.5.xml:64 -#: sssd-krb5.5.xml:63 -msgid "CONFIGURATION OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:60 -msgid "ldap_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:63 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference. Refer to the <quote>FAILOVER</" -"quote> section for more information on failover and server redundancy. If " -"not specified, service discovery is enabled. For more information, refer to " -"the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:70 -msgid "The format of the URI must match the format defined in RFC 2732:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:73 -msgid "ldap[s]://<host>[:port]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:76 -msgid "" -"For explicit IPv6 addresses, <host> must be enclosed in brackets []" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:79 -msgid "example: ldap://[fc00::126:25]:389" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:85 -msgid "ldap_chpass_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:88 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference to change the password of a user. " -"Refer to the <quote>FAILOVER</quote> section for more information on " -"failover and server redundancy." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:95 -msgid "To enable service discovery ldap_chpass_dns_service_name must be set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:99 -msgid "Default: empty, i.e. ldap_uri is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:105 -msgid "ldap_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:108 -msgid "The default base DN to use for performing LDAP user operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:112 -msgid "" -"Starting with SSSD 1.7.0, SSSD supports multiple search bases using the " -"syntax:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:116 -msgid "search_base[?scope?[filter][?search_base?scope?[filter]]*]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:119 -msgid "The scope can be one of \"base\", \"onelevel\" or \"subtree\"." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:122 -msgid "" -"The filter must be a valid LDAP search filter as specified by http://www." -"ietf.org/rfc/rfc2254.txt" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:126 -msgid "Examples:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:129 -msgid "" -"ldap_search_base = dc=example,dc=com (which is equivalent to) " -"ldap_search_base = dc=example,dc=com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:134 -msgid "" -"ldap_search_base = cn=host_specific,dc=example,dc=com?subtree?" -"(host=thishost)?dc=example.com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:137 -msgid "" -"Note: It is unsupported to have multiple search bases which reference " -"identically-named objects (for example, groups with the same name in two " -"different search bases). This will lead to unpredictable behavior on client " -"machines." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:144 -msgid "" -"Default: If not set, the value of the defaultNamingContext or namingContexts " -"attribute from the RootDSE of the LDAP server is used. If " -"defaultNamingContext does not exists or has an empty value namingContexts is " -"used. The namingContexts attribute must have a single value with the DN of " -"the search base of the LDAP server to make this work. Multiple values are " -"are not supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:158 -msgid "ldap_schema (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:161 -msgid "" -"Specifies the Schema Type in use on the target LDAP server. Depending on " -"the selected schema, the default attribute names retrieved from the servers " -"may vary. The way that some attributes are handled may also differ. Three " -"schema types are currently supported: rfc2307 rfc2307bis IPA The main " -"difference between these schema types is how group memberships are recorded " -"in the server. With rfc2307, group members are listed by name in the " -"<emphasis>memberUid</emphasis> attribute. With rfc2307bis and IPA, group " -"members are listed by DN and stored in the <emphasis>member</emphasis> " -"attribute." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:180 -msgid "Default: rfc2307" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:186 -msgid "ldap_default_bind_dn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:189 -msgid "The default bind DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:196 -msgid "ldap_default_authtok_type (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:199 -msgid "The type of the authentication token of the default bind DN." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:203 -msgid "The two mechanisms currently supported are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:206 -msgid "password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:209 -msgid "obfuscated_password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:212 -msgid "Default: password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:218 -msgid "ldap_default_authtok (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:221 -msgid "" -"The authentication token of the default bind DN. Only clear text passwords " -"are currently supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:228 -msgid "ldap_user_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:231 -msgid "The object class of a user entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:234 -msgid "Default: posixAccount" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:240 -msgid "ldap_user_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:243 -msgid "The LDAP attribute that corresponds to the user's login name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:247 -msgid "Default: uid" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:253 -msgid "ldap_user_uid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:256 -msgid "The LDAP attribute that corresponds to the user's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:260 -msgid "Default: uidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:266 -msgid "ldap_user_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:269 -msgid "The LDAP attribute that corresponds to the user's primary group id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:273 sssd-ldap.5.xml:740 -msgid "Default: gidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:279 -msgid "ldap_user_gecos (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:282 -msgid "The LDAP attribute that corresponds to the user's gecos field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:286 -msgid "Default: gecos" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:292 -msgid "ldap_user_home_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:295 -msgid "The LDAP attribute that contains the name of the user's home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:299 -msgid "Default: homeDirectory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:305 -msgid "ldap_user_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:308 -msgid "The LDAP attribute that contains the path to the user's default shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:312 -msgid "Default: loginShell" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:318 -msgid "ldap_user_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:321 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP user object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:325 sssd-ldap.5.xml:766 sssd-ldap.5.xml:878 -msgid "Default: nsUniqueId" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:331 -msgid "ldap_user_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:334 sssd-ldap.5.xml:775 sssd-ldap.5.xml:887 -msgid "" -"The LDAP attribute that contains timestamp of the last modification of the " -"parent object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:338 sssd-ldap.5.xml:779 sssd-ldap.5.xml:894 -msgid "Default: modifyTimestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:344 -msgid "ldap_user_shadow_last_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:347 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (date of " -"the last password change)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:357 -msgid "Default: shadowLastChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:363 -msgid "ldap_user_shadow_min (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:366 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (minimum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:375 -msgid "Default: shadowMin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:381 -msgid "ldap_user_shadow_max (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:384 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (maximum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:393 -msgid "Default: shadowMax" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:399 -msgid "ldap_user_shadow_warning (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:402 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password warning period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:412 -msgid "Default: shadowWarning" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:418 -msgid "ldap_user_shadow_inactive (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:421 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password inactivity period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:431 -msgid "Default: shadowInactive" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:437 -msgid "ldap_user_shadow_expire (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:440 -msgid "" -"When using ldap_pwd_policy=shadow or ldap_account_expire_policy=shadow, this " -"parameter contains the name of an LDAP attribute corresponding to its " -"<citerefentry> <refentrytitle>shadow</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> counterpart (account expiration date)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:450 -msgid "Default: shadowExpire" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:456 -msgid "ldap_user_krb_last_pwd_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:459 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time of last password change in " -"kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:465 -msgid "Default: krbLastPwdChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:471 -msgid "ldap_user_krb_password_expiration (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:474 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time when current password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:480 -msgid "Default: krbPasswordExpiration" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:486 -msgid "ldap_user_ad_account_expires (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:489 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the expiration time of the account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:494 -msgid "Default: accountExpires" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:500 -msgid "ldap_user_ad_user_account_control (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:503 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the user account control bit field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:508 -msgid "Default: userAccountControl" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:514 -msgid "ldap_ns_account_lock (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:517 -msgid "" -"When using ldap_account_expire_policy=rhds or equivalent, this parameter " -"determines if access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:522 -msgid "Default: nsAccountLock" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:528 -msgid "ldap_user_nds_login_disabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:531 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines if " -"access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:535 sssd-ldap.5.xml:549 -msgid "Default: loginDisabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:541 -msgid "ldap_user_nds_login_expiration_time (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:544 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines until " -"which date access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:555 -msgid "ldap_user_nds_login_allowed_time_map (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:558 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines the " -"hours of a day in a week when access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:563 -msgid "Default: loginAllowedTimeMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:569 -msgid "ldap_user_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:572 -msgid "" -"The LDAP attribute that contains the user's Kerberos User Principal Name " -"(UPN)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:576 -msgid "Default: krbPrincipalName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:582 -msgid "ldap_user_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:585 -msgid "The LDAP attribute that contains the user's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:592 -msgid "ldap_force_upper_case_realm (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:595 -msgid "" -"Some directory servers, for example Active Directory, might deliver the " -"realm part of the UPN in lower case, which might cause the authentication to " -"fail. Set this option to a non-zero value if you want to use an upper-case " -"realm." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:608 -msgid "ldap_enumeration_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:611 -msgid "" -"Specifies how many seconds SSSD has to wait before refreshing its cache of " -"enumerated records." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:616 sssd-ldap.5.xml:1808 -msgid "Default: 300" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:622 -msgid "ldap_purge_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:625 -msgid "" -"Determine how often to check the cache for inactive entries (such as groups " -"with no members and users who have never logged in) and remove them to save " -"space." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:631 -msgid "Setting this option to zero will disable the cache cleanup operation." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:635 -msgid "Default: 10800 (12 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:641 -msgid "ldap_user_fullname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:644 -msgid "The LDAP attribute that corresponds to the user's full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:648 sssd-ldap.5.xml:727 sssd-ldap.5.xml:828 -#: sssd-ldap.5.xml:919 sssd-ldap.5.xml:1663 sssd-ldap.5.xml:1881 -#: sssd-ipa.5.xml:422 -msgid "Default: cn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:654 -msgid "ldap_user_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:657 -msgid "The LDAP attribute that lists the user's group memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:661 sssd-ipa.5.xml:326 -msgid "Default: memberOf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:667 -msgid "ldap_user_authorized_service (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:670 -msgid "" -"If access_provider=ldap and ldap_access_order=authorized_service, SSSD will " -"use the presence of the authorizedService attribute in the user's LDAP entry " -"to determine access privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:677 -msgid "" -"An explicit deny (!svc) is resolved first. Second, SSSD searches for " -"explicit allow (svc) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:682 -msgid "Default: authorizedService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:688 -msgid "ldap_user_authorized_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:691 -msgid "" -"If access_provider=ldap and ldap_access_order=host, SSSD will use the " -"presence of the host attribute in the user's LDAP entry to determine access " -"privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:697 -msgid "" -"An explicit deny (!host) is resolved first. Second, SSSD searches for " -"explicit allow (host) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:702 -msgid "Default: host" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:708 -msgid "ldap_group_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:711 -msgid "The object class of a group entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:714 -msgid "Default: posixGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:720 -msgid "ldap_group_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:723 -msgid "The LDAP attribute that corresponds to the group name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:733 -msgid "ldap_group_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:736 -msgid "The LDAP attribute that corresponds to the group's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:746 -msgid "ldap_group_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:749 -msgid "The LDAP attribute that contains the names of the group's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:753 -msgid "Default: memberuid (rfc2307) / member (rfc2307bis)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:759 -msgid "ldap_group_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:762 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP group object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:772 -msgid "ldap_group_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:785 -msgid "ldap_group_nesting_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:788 -msgid "" -"If ldap_schema is set to a schema format that supports nested groups (e.g. " -"RFC2307bis), then this option controls how many levels of nesting SSSD will " -"follow. This option has no effect on the RFC2307 schema." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:795 -msgid "Default: 2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:801 -msgid "ldap_netgroup_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:804 -msgid "The object class of a netgroup entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:807 -msgid "In IPA provider, ipa_netgroup_object_class should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:811 -msgid "Default: nisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:817 -msgid "ldap_netgroup_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:820 -msgid "The LDAP attribute that corresponds to the netgroup name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:824 -msgid "In IPA provider, ipa_netgroup_name should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:834 -msgid "ldap_netgroup_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:837 -msgid "The LDAP attribute that contains the names of the netgroup's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:841 -msgid "In IPA provider, ipa_netgroup_member should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:845 -msgid "Default: memberNisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:851 -msgid "ldap_netgroup_triple (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:854 -msgid "" -"The LDAP attribute that contains the (host, user, domain) netgroup triples." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:858 sssd-ldap.5.xml:891 -msgid "This option is not available in IPA provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:861 -msgid "Default: nisNetgroupTriple" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:867 -msgid "ldap_netgroup_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:870 -msgid "" -"The LDAP attribute that contains the UUID/GUID of an LDAP netgroup object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:874 -msgid "In IPA provider, ipa_netgroup_uuid should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:884 -msgid "ldap_netgroup_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:900 -msgid "ldap_service_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:903 -msgid "The object class of a service entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:906 -msgid "Default: ipService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:912 -msgid "ldap_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:915 -msgid "" -"The LDAP attribute that contains the name of service attributes and their " -"aliases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:925 -msgid "ldap_service_port (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:928 -msgid "The LDAP attribute that contains the port managed by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:932 -msgid "Default: ipServicePort" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:938 -msgid "ldap_service_proto (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:941 -msgid "" -"The LDAP attribute that contains the protocols understood by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:945 -msgid "Default: ipServiceProtocol" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:951 -msgid "ldap_service_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:954 -msgid "An optional base DN to restrict service searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:958 sssd-ldap.5.xml:1918 sssd-ldap.5.xml:1937 -#: sssd-ldap.5.xml:1956 sssd-ldap.5.xml:2019 sssd-ldap.5.xml:2041 -#: sssd-ipa.5.xml:163 sssd-ipa.5.xml:187 -msgid "" -"See <quote>ldap_search_base</quote> for information about configuring " -"multiple search bases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:963 sssd-ldap.5.xml:1923 sssd-ldap.5.xml:1942 -#: sssd-ldap.5.xml:1961 sssd-ldap.5.xml:2024 sssd-ldap.5.xml:2046 -#: sssd-ipa.5.xml:173 sssd-ipa.5.xml:192 -msgid "Default: the value of <emphasis>ldap_search_base</emphasis>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:970 -msgid "ldap_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:973 -msgid "" -"Specifies the timeout (in seconds) that ldap searches are allowed to run " -"before they are cancelled and cached results are returned (and offline mode " -"is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:979 -msgid "" -"Note: this option is subject to change in future versions of the SSSD. It " -"will likely be replaced at some point by a series of timeouts for specific " -"lookup types." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:985 sssd-ldap.5.xml:1027 sssd-ldap.5.xml:1042 -msgid "Default: 6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:991 -msgid "ldap_enumeration_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:994 -msgid "" -"Specifies the timeout (in seconds) that ldap searches for user and group " -"enumerations are allowed to run before they are cancelled and cached results " -"are returned (and offline mode is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1001 -msgid "Default: 60" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1007 -msgid "ldap_network_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1010 -msgid "" -"Specifies the timeout (in seconds) after which the <citerefentry> " -"<refentrytitle>poll</refentrytitle> <manvolnum>2</manvolnum> </citerefentry>/" -"<citerefentry> <refentrytitle>select</refentrytitle> <manvolnum>2</" -"manvolnum> </citerefentry> following a <citerefentry> " -"<refentrytitle>connect</refentrytitle> <manvolnum>2</manvolnum> </" -"citerefentry> returns in case of no activity." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1033 -msgid "ldap_opt_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1036 -msgid "" -"Specifies a timeout (in seconds) after which calls to synchronous LDAP APIs " -"will abort if no response is received. Also controls the timeout when " -"communicating with the KDC in case of SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1048 -msgid "ldap_connection_expire_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1051 -msgid "" -"Specifies a timeout (in seconds) that a connection to an LDAP server will be " -"maintained. After this time, the connection will be re-established. If used " -"in parallel with SASL/GSSAPI, the sooner of the two values (this value vs. " -"the TGT lifetime) will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1059 -msgid "Default: 900 (15 minutes)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1065 -msgid "ldap_page_size (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1068 -msgid "" -"Specify the number of records to retrieve from LDAP in a single request. " -"Some LDAP servers enforce a maximum limit per-request." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1073 -msgid "Default: 1000" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1079 -msgid "ldap_disable_paging" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1082 -msgid "" -"Disable the LDAP paging control. This option should be used if the LDAP " -"server reports that it supports the LDAP paging control in its RootDSE but " -"it is not enabled or does not behave properly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1088 -msgid "" -"Example: OpenLDAP servers with the paging control module installed on the " -"server but not enabled will report it in the RootDSE but be unable to use it." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1094 -msgid "" -"Example: 389 DS has a bug where it can only support a one paging control at " -"a time on a single connection. On busy clients, this can result in some " -"requests being denied." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1103 -msgid "ldap_deref_threshold (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1106 -msgid "" -"Specify the number of group members that must be missing from the internal " -"cache in order to trigger a dereference lookup. If less members are missing, " -"they are looked up individually." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1112 -msgid "" -"You can turn off dereference lookups completely by setting the value to 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1116 -msgid "" -"A dereference lookup is a means of fetching all group members in a single " -"LDAP call. Different LDAP servers may implement different dereference " -"methods. The currently supported servers are 389/RHDS, OpenLDAP and Active " -"Directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1124 -msgid "" -"<emphasis>Note:</emphasis> If any of the search bases specifies a search " -"filter, then the dereference lookup performance enhancement will be disabled " -"regardless of this setting." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1137 -msgid "ldap_tls_reqcert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1140 -msgid "" -"Specifies what checks to perform on server certificates in a TLS session, if " -"any. It can be specified as one of the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1146 -msgid "" -"<emphasis>never</emphasis> = The client will not request or check any server " -"certificate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1150 -msgid "" -"<emphasis>allow</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, it will be ignored and the session proceeds normally." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1157 -msgid "" -"<emphasis>try</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, the session is immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1163 -msgid "" -"<emphasis>demand</emphasis> = The server certificate is requested. If no " -"certificate is provided, or a bad certificate is provided, the session is " -"immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1169 -msgid "<emphasis>hard</emphasis> = Same as <quote>demand</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1173 -msgid "Default: hard" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1179 -msgid "ldap_tls_cacert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1182 -msgid "" -"Specifies the file that contains certificates for all of the Certificate " -"Authorities that <command>sssd</command> will recognize." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1187 sssd-ldap.5.xml:1205 sssd-ldap.5.xml:1246 -msgid "" -"Default: use OpenLDAP defaults, typically in <filename>/etc/openldap/ldap." -"conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1194 -msgid "ldap_tls_cacertdir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1197 -msgid "" -"Specifies the path of a directory that contains Certificate Authority " -"certificates in separate individual files. Typically the file names need to " -"be the hash of the certificate followed by '.0'. If available, " -"<command>cacertdir_rehash</command> can be used to create the correct names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1212 -msgid "ldap_tls_cert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1215 -msgid "Specifies the file that contains the certificate for the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1219 sssd-ldap.5.xml:1231 sssd-ldap.5.xml:1979 -#: sssd-ldap.5.xml:2006 sssd-krb5.5.xml:359 -msgid "Default: not set" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1225 -msgid "ldap_tls_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1228 -msgid "Specifies the file that contains the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1237 -msgid "ldap_tls_cipher_suite (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1240 -msgid "" -"Specifies acceptable cipher suites. Typically this is a colon sperated " -"list. See <citerefentry><refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> for format." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1253 -msgid "ldap_id_use_start_tls (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1256 -msgid "" -"Specifies that the id_provider connection must also use <systemitem class=" -"\"protocol\">tls</systemitem> to protect the channel." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1266 -msgid "ldap_sasl_mech (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1269 -msgid "" -"Specify the SASL mechanism to use. Currently only GSSAPI is tested and " -"supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1273 sssd-ldap.5.xml:1428 -msgid "Default: none" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1279 -msgid "ldap_sasl_authid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1282 -msgid "" -"Specify the SASL authorization id to use. When GSSAPI is used, this " -"represents the Kerberos principal used for authentication to the directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1287 -msgid "Default: host/machine.fqdn@REALM" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1293 -msgid "ldap_sasl_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1296 -msgid "" -"If set to true, the LDAP library would perform a reverse lookup to " -"canonicalize the host name during a SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1301 -msgid "Default: false;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1307 -msgid "ldap_krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1310 -msgid "Specify the keytab to use when using SASL/GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1313 -msgid "Default: System keytab, normally <filename>/etc/krb5.keytab</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1319 -msgid "ldap_krb5_init_creds (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1322 -msgid "" -"Specifies that the id_provider should init Kerberos credentials (TGT). This " -"action is performed only if SASL is used and the mechanism selected is " -"GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1334 -msgid "ldap_krb5_ticket_lifetime (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1337 -msgid "Specifies the lifetime in seconds of the TGT if GSSAPI is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1341 -msgid "Default: 86400 (24 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1347 sssd-krb5.5.xml:74 -msgid "krb5_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1350 sssd-krb5.5.xml:77 -msgid "" -"Specifies the comma-separated list of IP addresses or hostnames of the " -"Kerberos servers to which SSSD should connect in the order of preference. " -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. An optional port number (preceded by a " -"colon) may be appended to the addresses or hostnames. If empty, service " -"discovery is enabled - for more information, refer to the <quote>SERVICE " -"DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1362 sssd-krb5.5.xml:89 -msgid "" -"When using service discovery for KDC or kpasswd servers, SSSD first searches " -"for DNS entries that specify _udp as the protocol and falls back to _tcp if " -"none are found." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1367 sssd-krb5.5.xml:94 -msgid "" -"This option was named <quote>krb5_kdcip</quote> in earlier releases of SSSD. " -"While the legacy name is recognized for the time being, users are advised to " -"migrate their config files to use <quote>krb5_server</quote> instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1376 sssd-ipa.5.xml:216 sssd-krb5.5.xml:103 -msgid "krb5_realm (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1379 -msgid "Specify the Kerberos REALM (for SASL/GSSAPI auth)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1382 -msgid "Default: System defaults, see <filename>/etc/krb5.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1388 sssd-ipa.5.xml:231 sssd-krb5.5.xml:409 -msgid "krb5_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1391 -msgid "" -"Specifies if the host principal should be canonicalized when connecting to " -"LDAP server. This feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1403 -msgid "ldap_pwd_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1406 -msgid "" -"Select the policy to evaluate the password expiration on the client side. " -"The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1411 -msgid "" -"<emphasis>none</emphasis> - No evaluation on the client side. This option " -"cannot disable server-side password policies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1416 -msgid "" -"<emphasis>shadow</emphasis> - Use <citerefentry><refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum></citerefentry> style attributes to " -"evaluate if the password has expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1422 -msgid "" -"<emphasis>mit_kerberos</emphasis> - Use the attributes used by MIT Kerberos " -"to determine if the password has expired. Use chpass_provider=krb5 to update " -"these attributes when the password is changed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1434 -msgid "ldap_referrals (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1437 -msgid "Specifies whether automatic referral chasing should be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1441 -msgid "" -"Please note that sssd only supports referral chasing when it is compiled " -"with OpenLDAP version 2.4.13 or higher." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1452 -msgid "ldap_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1455 -msgid "Specifies the service name to use when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1459 -msgid "Default: ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1465 -msgid "ldap_chpass_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1468 -msgid "" -"Specifies the service name to use to find an LDAP server which allows " -"password changes when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1473 -msgid "Default: not set, i.e. service discovery is disabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1479 -msgid "ldap_access_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1482 -msgid "" -"If using access_provider = ldap, this option is mandatory. It specifies an " -"LDAP search filter criteria that must be met for the user to be granted " -"access on this host. If access_provider = ldap and this option is not set, " -"it will result in all users being denied access. Use access_provider = allow " -"to change this default behavior." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1492 sssd-ldap.5.xml:1982 -msgid "Example:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1495 -#, no-wrap -msgid "" -"access_provider = ldap\n" -"ldap_access_filter = memberOf=cn=allowedusers,ou=Groups,dc=example,dc=com\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1499 -msgid "" -"This example means that access to this host is restricted to members of the " -"\"allowedusers\" group in ldap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1504 -msgid "" -"Offline caching for this feature is limited to determining whether the " -"user's last online login was granted access permission. If they were granted " -"access during their last login, they will continue to be granted access " -"while offline and vice-versa." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1512 sssd-ldap.5.xml:1562 -msgid "Default: Empty" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1518 -msgid "ldap_account_expire_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1521 -msgid "" -"With this option a client side evaluation of access control attributes can " -"be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1525 -msgid "" -"Please note that it is always recommended to use server side access control, " -"i.e. the LDAP server should deny the bind request with a suitable error code " -"even if the password is correct." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1532 -msgid "The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1535 -msgid "" -"<emphasis>shadow</emphasis>: use the value of ldap_user_shadow_expire to " -"determine if the account is expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1540 -msgid "" -"<emphasis>ad</emphasis>: use the value of the 32bit field " -"ldap_user_ad_user_account_control and allow access if the second bit is not " -"set. If the attribute is missing access is granted. Also the expiration time " -"of the account is checked." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1547 -msgid "" -"<emphasis>rhds</emphasis>, <emphasis>ipa</emphasis>, <emphasis>389ds</" -"emphasis>: use the value of ldap_ns_account_lock to check if access is " -"allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1553 -msgid "" -"<emphasis>nds</emphasis>: the values of " -"ldap_user_nds_login_allowed_time_map, ldap_user_nds_login_disabled and " -"ldap_user_nds_login_expiration_time are used to check if access is allowed. " -"If both attributes are missing access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1568 -msgid "ldap_access_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1571 -msgid "Comma separated list of access control options. Allowed values are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1575 -msgid "<emphasis>filter</emphasis>: use ldap_access_filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1578 -msgid "<emphasis>expire</emphasis>: use ldap_account_expire_policy" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1582 -msgid "" -"<emphasis>authorized_service</emphasis>: use the authorizedService attribute " -"to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1587 -msgid "<emphasis>host</emphasis>: use the host attribute to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1591 -msgid "Default: filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1594 -msgid "" -"Please note that it is a configuration error if a value is used more than " -"once." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1601 -msgid "ldap_deref (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1604 -msgid "" -"Specifies how alias dereferencing is done when performing a search. The " -"following options are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1609 -msgid "<emphasis>never</emphasis>: Aliases are never dereferenced." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1613 -msgid "" -"<emphasis>searching</emphasis>: Aliases are dereferenced in subordinates of " -"the base object, but not in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1618 -msgid "" -"<emphasis>finding</emphasis>: Aliases are only dereferenced when locating " -"the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1623 -msgid "" -"<emphasis>always</emphasis>: Aliases are dereferenced both in searching and " -"in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1628 -msgid "" -"Default: Empty (this is handled as <emphasis>never</emphasis> by the LDAP " -"client libraries)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:51 -msgid "" -"All of the common configuration options that apply to SSSD domains also " -"apply to LDAP domains. Refer to the <quote>DOMAIN SECTIONS</quote> section " -"of the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for full details. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1639 -msgid "SUDO OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1644 -msgid "ldap_sudorule_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1647 -msgid "The object class of a sudo rule entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1650 -msgid "Default: sudoRole" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1656 -msgid "ldap_sudorule_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1659 -msgid "The LDAP attribute that corresponds to the sudo rule name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1669 -msgid "ldap_sudorule_command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1672 -msgid "The LDAP attribute that corresponds to the command name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1676 -msgid "Default: sudoCommand" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1682 -msgid "ldap_sudorule_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1685 -msgid "" -"The LDAP attribute that corresponds to the host name (or host IP address, " -"host IP network, or host netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1690 -msgid "Default: sudoHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1696 -msgid "ldap_sudorule_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1699 -msgid "" -"The LDAP attribute that corresponds to the user name (or UID, group name or " -"user's netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1703 -msgid "Default: sudoUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1709 -msgid "ldap_sudorule_option (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1712 -msgid "The LDAP attribute that corresponds to the sudo options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1716 -msgid "Default: sudoOption" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1722 -msgid "ldap_sudorule_runasuser (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1725 -msgid "" -"The LDAP attribute that corresponds to the user name that commands may be " -"run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1729 -msgid "Default: sudoRunAsUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1735 -msgid "ldap_sudorule_runasgroup (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1738 -msgid "" -"The LDAP attribute that corresponds to the group name or group GID that " -"commands may be run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1742 -msgid "Default: sudoRunAsGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1748 -msgid "ldap_sudorule_notbefore (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1751 -msgid "" -"The LDAP attribute that corresponds to the start date/time for when the sudo " -"rule is valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1755 -msgid "Default: sudoNotBefore" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1761 -msgid "ldap_sudorule_notafter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1764 -msgid "" -"The LDAP attribute that corresponds to the expiration date/time, after which " -"the sudo rule will no longer be valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1769 -msgid "Default: sudoNotAfter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1775 -msgid "ldap_sudorule_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1778 -msgid "The LDAP attribute that corresponds to the ordering index of the rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1782 -msgid "Default: sudoOrder" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1788 -msgid "ldap_sudo_refresh_enabled (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1791 -msgid "" -"Enables periodical download of all sudo rules. The cache is purged before " -"each update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1801 -msgid "ldap_sudo_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1804 -msgid "" -"How many seconds SSSD has to wait before refreshing its cache of sudo rules." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1642 -msgid "<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1815 -msgid "" -"This manual page only describes attribute name mapping. For detailed " -"explanation of sudo related attribute semantics, see <citerefentry> " -"<refentrytitle>sudoers.ldap</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1825 -msgid "AUTOFS OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1827 -msgid "" -"Please note that the default values correspond to the default schema which " -"is RFC2307." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1834 -msgid "ldap_autofs_map_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1837 sssd-ldap.5.xml:1863 -msgid "The object class of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1840 sssd-ldap.5.xml:1867 -msgid "Default: automountMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1847 -msgid "ldap_autofs_map_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1850 -msgid "The name of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1853 -msgid "Default: ou" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1860 -msgid "ldap_autofs_entry_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1874 -msgid "ldap_autofs_entry_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1877 sssd-ldap.5.xml:1891 -msgid "" -"The key of an automount entry in LDAP. The entry usually corresponds to a " -"mount point." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1888 -msgid "ldap_autofs_entry_value (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1895 -msgid "Default: automountInformation" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1832 -msgid "" -"<placeholder type=\"variablelist\" id=\"0\"/> <placeholder type=" -"\"variablelist\" id=\"1\"/> <placeholder type=\"variablelist\" id=\"2\"/> " -"<placeholder type=\"variablelist\" id=\"3\"/> <placeholder type=" -"\"variablelist\" id=\"4\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1904 -msgid "ADVANCED OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1911 -msgid "ldap_netgroup_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1914 -msgid "" -"An optional base DN to restrict netgroup searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1930 -msgid "ldap_user_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1933 -msgid "An optional base DN to restrict user searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1949 -msgid "ldap_group_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1952 -msgid "An optional base DN to restrict group searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1968 -msgid "ldap_user_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1971 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict user searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1975 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_user_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1985 -#, no-wrap -msgid "" -" ldap_user_search_filter = (loginShell=/bin/tcsh)\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1988 -msgid "" -"This filter would restrict user searches to users that have their shell set " -"to /bin/tcsh." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1995 -msgid "ldap_group_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1998 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict group searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2002 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_group_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2012 -msgid "ldap_sudo_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2015 -msgid "" -"An optional base DN to restrict sudo rules searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2034 -msgid "ldap_autofs_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2037 -msgid "" -"An optional base DN to restrict automounter searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1906 -msgid "" -"These options are supported by LDAP domains, but they should be used with " -"caution. Please include them in your configuration only if you know what you " -"are doing. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2066 -msgid "" -"The following example assumes that SSSD is correctly configured and LDAP is " -"set to one of the domains in the <replaceable>[domains]</replaceable> " -"section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ldap.5.xml:2072 -#, no-wrap -msgid "" -" [domain/LDAP]\n" -" id_provider = ldap\n" -" auth_provider = ldap\n" -" ldap_uri = ldap://ldap.mydomain.org\n" -" ldap_search_base = dc=mydomain,dc=org\n" -" ldap_tls_reqcert = demand\n" -" cache_credentials = true\n" -" enumerate = true\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2071 sssd-simple.5.xml:134 sssd-ipa.5.xml:552 -#: sssd-krb5.5.xml:441 -msgid "<placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:2085 sssd_krb5_locator_plugin.8.xml:61 -msgid "NOTES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2087 -msgid "" -"The descriptions of some of the configuration options in this manual page " -"are based on the <citerefentry> <refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page from the OpenLDAP 2.4 " -"distribution." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2098 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <refentryinfo> -#: pam_sss.8.xml:8 include/upstream.xml:2 -msgid "" -"<productname>SSSD</productname> <orgname>The SSSD upstream - http://" -"fedorahosted.org/sssd</orgname>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: pam_sss.8.xml:13 pam_sss.8.xml:18 -msgid "pam_sss" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: pam_sss.8.xml:19 -msgid "PAM module for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: pam_sss.8.xml:24 -msgid "" -"<command>pam_sss.so</command> <arg choice='opt'> <replaceable>quiet</" -"replaceable> </arg> <arg choice='opt'> <replaceable>forward_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_first_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_authtok</" -"replaceable> </arg> <arg choice='opt'> <replaceable>retry=N</replaceable> </" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:45 -msgid "" -"<command>pam_sss.so</command> is the PAM interface to the System Security " -"Services daemon (SSSD). Errors and results are logged through <command>syslog" -"(3)</command> with the LOG_AUTHPRIV facility." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:55 -msgid "<option>quiet</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:58 -msgid "Suppress log messages for unknown users." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:63 -msgid "<option>forward_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:66 -msgid "" -"If <option>forward_pass</option> is set the entered password is put on the " -"stack for other PAM modules to use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:73 -msgid "<option>use_first_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:76 -msgid "" -"The argument use_first_pass forces the module to use a previous stacked " -"modules password and will never prompt the user - if no password is " -"available or the password is not appropriate, the user will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:84 -msgid "<option>use_authtok</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:87 -msgid "" -"When password changing enforce the module to set the new password to the one " -"provided by a previously stacked password module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:94 -msgid "<option>retry=N</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:97 -msgid "" -"If specified the user is asked another N times for a password if " -"authentication fails. Default is 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:99 -msgid "" -"Please note that this option might not work as expected if the application " -"calling PAM handles the user dialog on its own. A typical example is " -"<command>sshd</command> with <option>PasswordAuthentication</option>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:110 -msgid "MODULE TYPES PROVIDED" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:111 -msgid "" -"All module types (<option>account</option>, <option>auth</option>, " -"<option>password</option> and <option>session</option>) are provided." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:117 -msgid "FILES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:118 -msgid "" -"If a password reset by root fails, because the corresponding SSSD provider " -"does not support password resets, an individual message can be displayed. " -"This message can e.g. contain instructions about how to reset a password." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:123 -msgid "" -"The message is read from the file <filename>pam_sss_pw_reset_message.LOC</" -"filename> where LOC stands for a locale string returned by <citerefentry> " -"<refentrytitle>setlocale</refentrytitle><manvolnum>3</manvolnum> </" -"citerefentry>. If there is no matching file the content of " -"<filename>pam_sss_pw_reset_message.txt</filename> is displayed. Root must be " -"the owner of the files and only root may have read and write permissions " -"while all other users must have only read permissions." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:133 -msgid "" -"These files are searched in the directory <filename>/etc/sssd/customize/" -"DOMAIN_NAME/</filename>. If no matching file is present a generic message is " -"displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:141 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd_krb5_locator_plugin.8.xml:10 sssd_krb5_locator_plugin.8.xml:15 -msgid "sssd_krb5_locator_plugin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:22 -msgid "" -"The Kerberos locator plugin <command>sssd_krb5_locator_plugin</command> is " -"used by the Kerberos provider of <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry> to tell the Kerberos " -"libraries what Realm and which KDC to use. Typically this is done in " -"<citerefentry> <refentrytitle>krb5.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> which is always read by the Kerberos libraries. " -"To simplify the configuration the Realm and the KDC can be defined in " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> as described in <citerefentry> " -"<refentrytitle>sssd-krb5.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry> puts the Realm and the name or IP address of the KDC into " -"the environment variables SSSD_KRB5_REALM and SSSD_KRB5_KDC respectively. " -"When <command>sssd_krb5_locator_plugin</command> is called by the kerberos " -"libraries it reads and evaluates these variables and returns them to the " -"libraries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:63 -msgid "" -"Not all Kerberos implementations support the use of plugins. If " -"<command>sssd_krb5_locator_plugin</command> is not available on your system " -"you have to edit /etc/krb5.conf to reflect your Kerberos setup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:69 -msgid "" -"If the environment variable SSSD_KRB5_LOCATOR_DEBUG is set to any value " -"debug messages will be sent to stderr." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:77 -msgid "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-simple.5.xml:10 sssd-simple.5.xml:16 -msgid "sssd-simple" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd-simple.5.xml:17 -msgid "the configuration file for SSSD's 'simple' access-control provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:24 -msgid "" -"This manual page describes the configuration of the simple access-control " -"provider for <citerefentry> <refentrytitle>sssd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry>. For a detailed syntax reference, " -"refer to the <quote>FILE FORMAT</quote> section of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:38 -msgid "" -"The simple access provider grants or denies access based on an access or " -"deny list of user or group names. The following rules apply:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:43 -msgid "If all lists are empty, access is granted" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:47 -msgid "" -"If any list is provided, the order of evaluation is allow,deny. This means " -"that any matching deny rule will supersede any matched allow rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:54 -msgid "" -"If either or both \"allow\" lists are provided, all users are denied unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:60 -msgid "" -"If only \"deny\" lists are provided, all users are granted access unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:78 -msgid "simple_allow_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:81 -msgid "Comma separated list of users who are allowed to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:88 -msgid "simple_deny_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:91 -msgid "Comma separated list of users who are explicitly denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:97 -msgid "simple_allow_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:100 -msgid "" -"Comma separated list of groups that are allowed to log in. This applies only " -"to groups within this SSSD domain. Local groups are not evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:108 -msgid "simple_deny_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:111 -msgid "" -"Comma separated list of groups that are explicitly denied access. This " -"applies only to groups within this SSSD domain. Local groups are not " -"evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:70 sssd-ipa.5.xml:65 -msgid "" -"Refer to the section <quote>DOMAIN SECTIONS</quote> of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page for details on the configuration of an SSSD " -"domain. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:120 -msgid "" -"Please note that it is an configuration error if both, simple_allow_users " -"and simple_deny_users, are defined." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:128 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the simple access provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-simple.5.xml:135 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" access_provider = simple\n" -" simple_allow_users = user1, user2\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:145 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ipa.5.xml:10 sssd-ipa.5.xml:16 -msgid "sssd-ipa" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:23 -msgid "" -"This manual page describes the configuration of the IPA provider for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. For a detailed syntax reference, refer to the <quote>FILE " -"FORMAT</quote> section of the <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:36 -msgid "" -"The IPA provider is a back end used to connect to an IPA server. (Refer to " -"the freeipa.org web site for information about IPA servers.) This provider " -"requires that the machine be joined to the IPA domain; configuration is " -"almost entirely self-discovered and obtained directly from the server." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:43 -msgid "" -"The IPA provider accepts the same options used by the <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> identity provider and the <citerefentry> <refentrytitle>sssd-" -"krb5</refentrytitle> <manvolnum>5</manvolnum> </citerefentry> authentication " -"provider with some exceptions described below." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:55 -msgid "" -"However, it is neither necessary nor recommended to set these options. IPA " -"provider can also be used as an access and chpass provider. As an access " -"provider it uses HBAC (host-based access control) rules. Please refer to " -"freeipa.org for more information about HBAC. No configuration of access " -"provider is required on the client side." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:72 -msgid "ipa_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:75 -msgid "" -"Specifies the name of the IPA domain. This is optional. If not provided, " -"the configuration domain name is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:83 -msgid "ipa_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:86 -msgid "" -"The comma-separated list of IP addresses or hostnames of the IPA servers to " -"which SSSD should connect in the order of preference. For more information " -"on failover and server redundancy, see the <quote>FAILOVER</quote> section. " -"This is optional if autodiscovery is enabled. For more information on " -"service discovery, refer to the the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:99 -msgid "ipa_hostname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:102 -msgid "" -"Optional. May be set on machines where the hostname(5) does not reflect the " -"fully qualified name used in the IPA domain to identify this host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:110 -msgid "ipa_dyndns_update (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:113 -msgid "" -"Optional. This option tells SSSD to automatically update the DNS server " -"built into FreeIPA v2 with the IP address of this client." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:118 -msgid "" -"NOTE: On older systems (such as RHEL 5), for this behavior to work reliably, " -"the default Kerberos realm must be set properly in /etc/krb5.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:129 -msgid "ipa_dyndns_iface (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:132 -msgid "" -"Optional. Applicable only when ipa_dyndns_update is true. Choose the " -"interface whose IP address should be used for dynamic DNS updates." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:137 -msgid "Default: Use the IP address of the IPA LDAP connection" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:143 -msgid "ipa_hbac_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:146 -msgid "Optional. Use the given string as search base for HBAC related objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:150 -msgid "Default: Use base DN" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:156 -msgid "ipa_host_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:159 -msgid "Optional. Use the given string as search base for host objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:168 -msgid "" -"If filter is given in any of search bases and " -"<emphasis>ipa_hbac_support_srchost</emphasis> is set to False, the filter " -"will be ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:180 -msgid "ipa_selinux_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:183 -msgid "Optional. Use the given string as search base for SELinux user maps." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:199 sssd-krb5.5.xml:229 -msgid "krb5_validate (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:202 sssd-krb5.5.xml:232 -msgid "" -"Verify with the help of krb5_keytab that the TGT obtained has not been " -"spoofed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:209 -msgid "" -"Note that this default differs from the traditional Kerberos provider back " -"end." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:219 -msgid "" -"The name of the Kerberos realm. This is optional and defaults to the value " -"of <quote>ipa_domain</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:223 -msgid "" -"The name of the Kerberos realm has a special meaning in IPA - it is " -"converted into the base DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:234 -msgid "" -"Specifies if the host and user principal should be canonicalized when " -"connecting to IPA LDAP and also for AS requests. This feature is available " -"with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:247 -msgid "ipa_hbac_refresh (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:250 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server. " -"This will reduce the latency and load on the IPA server if there are many " -"access-control requests made in a short period." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:257 -msgid "Default: 5 (seconds)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:262 -msgid "ipa_hbac_treat_deny_as (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:265 -msgid "" -"This option specifies how to treat the deprecated DENY-type HBAC rules. As " -"of FreeIPA v2.1, DENY rules are no longer supported on the server. All users " -"of FreeIPA will need to migrate their rules to use only the ALLOW rules. The " -"client will support two modes of operation during this transition period:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:274 -msgid "" -"<emphasis>DENY_ALL</emphasis>: If any HBAC DENY rules are detected, all " -"users will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:279 -msgid "" -"<emphasis>IGNORE</emphasis>: SSSD will ignore any DENY rules. Be very " -"careful with this option, as it may result in opening unintended access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:284 -msgid "Default: DENY_ALL" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:289 -msgid "ipa_hbac_support_srchost (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:292 -msgid "" -"If this is set to false, then srchost as given to SSSD by PAM will be " -"ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:296 -msgid "" -"Note that if set to <emphasis>False</emphasis>, this option casuses filters " -"given in <emphasis>ipa_host_search_base</emphasis> to be ignored;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:307 -msgid "ipa_automount_location (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:310 -msgid "The automounter location this IPA client will be using" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:313 -msgid "Default: The location named \"default\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:319 -msgid "ipa_netgroup_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:322 -msgid "The LDAP attribute that lists netgroup's memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:331 -msgid "ipa_netgroup_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:334 -msgid "" -"The LDAP attribute that lists system users and groups that are direct " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:339 sssd-ipa.5.xml:434 -msgid "Default: memberUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:344 -msgid "ipa_netgroup_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:347 -msgid "" -"The LDAP attribute that lists hosts and host groups that are direct members " -"of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:351 sssd-ipa.5.xml:446 -msgid "Default: memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:356 -msgid "ipa_netgroup_member_ext_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:359 -msgid "" -"The LDAP attribute that lists FQDNs of hosts and host groups that are " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:363 -msgid "Default: externalHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:368 -msgid "ipa_netgroup_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:371 -msgid "The LDAP attribute that contains NIS domain name of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:375 -msgid "Default: nisDomainName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:381 -msgid "ipa_host_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:384 sssd-ipa.5.xml:407 -msgid "The object class of a host entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:387 sssd-ipa.5.xml:410 -msgid "Default: ipaHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:392 -msgid "ipa_host_fqdn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:395 -msgid "The LDAP attribute that contains FQDN of the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:398 -msgid "Default: fqdn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:404 -msgid "ipa_selinux_usermap_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:415 -msgid "ipa_selinux_usermap_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:418 -msgid "The LDAP attribute that contains the name of SELinux usermap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:427 -msgid "ipa_selinux_usermap_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:430 -msgid "" -"The LDAP attribute that contains all users / groups this rule match against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:439 -msgid "ipa_selinux_usermap_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:442 -msgid "" -"The LDAP attribute that contains all hosts / hostgroups this rule match " -"against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:451 -msgid "ipa_selinux_usermap_see_also (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:454 -msgid "" -"The LDAP attribute that contains DN of HBAC rule which can be used for " -"matching instead of memberUser and memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:459 -msgid "Default: seeAlso" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:464 -msgid "ipa_selinux_usermap_selinux_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:467 -msgid "The LDAP attribute that contains SELinux user string itself." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:471 -msgid "Default: ipaSELinuxUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:476 -msgid "ipa_selinux_usermap_enabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:479 -msgid "" -"The LDAP attribute that contains whether or not is user map enabled for " -"usage." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:483 -msgid "Default: ipaEnabledFlag" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:488 -msgid "ipa_selinux_usermap_user_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:491 -msgid "The LDAP attribute that contains user category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:495 -msgid "Default: userCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:500 -msgid "ipa_selinux_usermap_host_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:503 -msgid "The LDAP attribute that contains host category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:507 -msgid "Default: hostCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:512 -msgid "ipa_selinux_usermap_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:515 -msgid "The LDAP attribute that contains unique ID of the user map." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:519 -msgid "Default: ipaUniqueID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:524 -msgid "ipa_host_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:527 -msgid "The LDAP attribute that contains the host's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:531 -msgid "Default: ipaSshPubKey" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:546 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the ipa provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ipa.5.xml:553 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" id_provider = ipa\n" -" ipa_server = ipaserver.example.com\n" -" ipa_hostname = myhost.example.com\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:564 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.8.xml:10 sssd.8.xml:15 -msgid "sssd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.8.xml:16 -msgid "System Security Services Daemon" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sssd.8.xml:21 -msgid "" -"<command>sssd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:31 -msgid "" -"<command>SSSD</command> provides a set of daemons to manage access to remote " -"directories and authentication mechanisms. It provides an NSS and PAM " -"interface toward the system and a pluggable backend system to connect to " -"multiple different account sources as well as D-Bus interface. It is also " -"the basis to provide client auditing and policy services for projects like " -"FreeIPA. It provides a more robust database to store local users as well as " -"extended user data." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:46 -msgid "" -"<option>-d</option>,<option>--debug-level</option> <replaceable>LEVEL</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:53 -msgid "<option>--debug-timestamps=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:57 -msgid "<emphasis>1</emphasis>: Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:60 -msgid "<emphasis>0</emphasis>: Disable timestamp in the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:69 -msgid "<option>--debug-microseconds=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:73 -msgid "" -"<emphasis>1</emphasis>: Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:76 -msgid "<emphasis>0</emphasis>: Disable microseconds in timestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:79 -msgid "Default: 0" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:85 -msgid "<option>-f</option>,<option>--debug-to-files</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:89 -msgid "" -"Send the debug output to files instead of stderr. By default, the log files " -"are stored in <filename>/var/log/sssd</filename> and there are separate log " -"files for every SSSD service and domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:97 -msgid "<option>-D</option>,<option>--daemon</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:101 -msgid "Become a daemon after starting up." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:107 -msgid "<option>-i</option>,<option>--interactive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:111 -msgid "Run in the foreground, don't become a daemon." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:117 sss_debuglevel.8.xml:42 -msgid "<option>-c</option>,<option>--config</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:121 sss_debuglevel.8.xml:46 -msgid "" -"Specify a non-default config file. The default is <filename>/etc/sssd/sssd." -"conf</filename>. For reference on the config file syntax and options, " -"consult the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:135 -msgid "<option>--version</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:139 -msgid "Print version number and exit." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.8.xml:147 -msgid "Signals" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:150 -msgid "SIGTERM/SIGINT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:153 -msgid "" -"Informs the SSSD to gracefully terminate all of its child processes and then " -"shut down the monitor." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:159 -msgid "SIGHUP" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:162 -msgid "" -"Tells the SSSD to stop writing to its current debug file descriptors and to " -"close and reopen them. This is meant to facilitate log rolling with programs " -"like logrotate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:170 -msgid "SIGUSR1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:173 -msgid "" -"Tells the SSSD to simulate offline operation for one minute. This is mostly " -"useful for testing purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:179 -msgid "SIGUSR2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:182 -msgid "" -"Tells the SSSD to go online immediately. This is mostly useful for testing " -"purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:193 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_obfuscate.8.xml:10 sss_obfuscate.8.xml:15 -msgid "sss_obfuscate" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_obfuscate.8.xml:16 -msgid "obfuscate a clear text password" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_obfuscate.8.xml:21 -msgid "" -"<command>sss_obfuscate</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>[PASSWORD]</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:32 -msgid "" -"<command>sss_obfuscate</command> converts a given password into human-" -"unreadable format and places it into appropriate domain section of the SSSD " -"config file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:37 -msgid "" -"The cleartext password is read from standard input or entered " -"interactively. The obfuscated password is put into " -"<quote>ldap_default_authtok</quote> parameter of a given SSSD domain and the " -"<quote>ldap_default_authtok_type</quote> parameter is set to " -"<quote>obfuscated_password</quote>. Refer to <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more details on these parameters." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:49 -msgid "" -"Please note that obfuscating the password provides <emphasis>no real " -"security benefit</emphasis> as it is still possible for an attacker to " -"reverse-engineer the password back. Using better authentication mechanisms " -"such as client side certificates or GSSAPI is <emphasis>strongly</emphasis> " -"advised." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:63 -msgid "<option>-s</option>,<option>--stdin</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:67 -msgid "The password to obfuscate will be read from standard input." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:74 sss_ssh_authorizedkeys.1.xml:82 -#: sss_ssh_knownhostsproxy.1.xml:81 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>DOMAIN</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:79 -msgid "" -"The SSSD domain to use the password in. The default name is <quote>default</" -"quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:86 -msgid "" -"<option>-f</option>,<option>--file</option> <replaceable>FILE</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:91 -msgid "Read the config file specified by the positional parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:95 -msgid "Default: <filename>/etc/sssd/sssd.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:105 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_useradd.8.xml:10 sss_useradd.8.xml:15 -msgid "sss_useradd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_useradd.8.xml:16 -msgid "create a new user" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_useradd.8.xml:21 -msgid "" -"<command>sss_useradd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:32 -msgid "" -"<command>sss_useradd</command> creates a new user account using the values " -"specified on the command line plus the default values from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:43 -msgid "" -"<option>-u</option>,<option>--uid</option> <replaceable>UID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:48 -msgid "" -"Set the UID of the user to the value of <replaceable>UID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:55 sss_usermod.8.xml:43 -msgid "" -"<option>-c</option>,<option>--gecos</option> <replaceable>COMMENT</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:60 sss_usermod.8.xml:48 -msgid "" -"Any text string describing the user. Often used as the field for the user's " -"full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:67 sss_usermod.8.xml:55 -msgid "" -"<option>-h</option>,<option>--home</option> <replaceable>HOME_DIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:72 -msgid "" -"The home directory of the user account. The default is to append the " -"<replaceable>LOGIN</replaceable> name to <filename>/home</filename> and use " -"that as the home directory. The base that is prepended before " -"<replaceable>LOGIN</replaceable> is tunable with <quote>user_defaults/" -"baseDirectory</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:82 sss_usermod.8.xml:66 -msgid "" -"<option>-s</option>,<option>--shell</option> <replaceable>SHELL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:87 -msgid "" -"The user's login shell. The default is currently <filename>/bin/bash</" -"filename>. The default can be changed with <quote>user_defaults/" -"defaultShell</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:96 -msgid "" -"<option>-G</option>,<option>--groups</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:101 -msgid "A list of existing groups this user is also a member of." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:107 -msgid "<option>-m</option>,<option>--create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:111 -msgid "" -"Create the user's home directory if it does not exist. The files and " -"directories contained in the skeleton directory (which can be defined with " -"the -k option or in the config file) will be copied to the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:121 -msgid "<option>-M</option>,<option>--no-create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:125 -msgid "" -"Do not create the user's home directory. Overrides configuration settings." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:132 -msgid "" -"<option>-k</option>,<option>--skel</option> <replaceable>SKELDIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:137 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<command>sss_useradd</command>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:143 -msgid "" -"This option is only valid if the <option>-m</option> (or <option>--create-" -"home</option>) option is specified, or creation of home directories is set " -"to TRUE in the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:152 sss_usermod.8.xml:124 -msgid "" -"<option>-Z</option>,<option>--selinux-user</option> " -"<replaceable>SELINUX_USER</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:157 -msgid "" -"The SELinux user for the user's login. If not specified, the system default " -"will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:169 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-krb5.5.xml:10 sssd-krb5.5.xml:16 -msgid "sssd-krb5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:23 -msgid "" -"This manual page describes the configuration of the Kerberos 5 " -"authentication backend for <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry>. For a detailed " -"syntax reference, please refer to the <quote>FILE FORMAT</quote> section of " -"the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:36 -msgid "" -"The Kerberos 5 authentication backend contains auth and chpass providers. It " -"must be paired with identity provider in order to function properly (for " -"example, id_provider = ldap). Some information required by the Kerberos 5 " -"authentication backend must be provided by the identity provider, such as " -"the user's Kerberos Principal Name (UPN). The configuration of the identity " -"provider should have an entry to specify the UPN. Please refer to the man " -"page for the applicable identity provider for details on how to configure " -"this." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:47 -msgid "" -"This backend also provides access control based on the .k5login file in the " -"home directory of the user. See <citerefentry> <refentrytitle>.k5login</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry> for more details. " -"Please note that an empty .k5login file will deny all access to this user. " -"To activate this feature use 'access_provider = krb5' in your sssd " -"configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:55 -msgid "" -"In the case where the UPN is not available in the identity backend " -"<command>sssd</command> will construct a UPN using the format " -"<replaceable>username</replaceable>@<replaceable>krb5_realm</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:106 -msgid "" -"The name of the Kerberos realm. This option is required and must be " -"specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:113 -msgid "krb5_kpasswd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:116 -msgid "" -"If the change password service is not running on the KDC alternative servers " -"can be defined here. An optional port number (preceded by a colon) may be " -"appended to the addresses or hostnames." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:122 -msgid "" -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. Please note that even if there are no more " -"kpasswd servers to try the back end is not switch to offline if " -"authentication against the KDC is still possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:129 -msgid "Default: Use the KDC" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:135 -msgid "krb5_ccachedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:138 -msgid "" -"Directory to store credential caches. All the substitution sequences of " -"krb5_ccname_template can be used here, too, except %d and %P. If the " -"directory does not exist it will be created. If %u, %U, %p or %h are used a " -"private directory belonging to the user is created. Otherwise a public " -"directory with restricted deletion flag (aka sticky bit, see <citerefentry> " -"<refentrytitle>chmod</refentrytitle> <manvolnum>1</manvolnum> </" -"citerefentry> for details) is created." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:151 -msgid "Default: /tmp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:157 -msgid "krb5_ccname_template (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:171 -msgid "login UID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:174 -msgid "%p" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:175 -msgid "principal name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:179 -msgid "%r" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:180 -msgid "realm name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:183 -msgid "%h" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:184 -msgid "home directory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:189 -msgid "value of krb5ccache_dir" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:194 -msgid "%P" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:195 -msgid "the process ID of the sssd client" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:160 -msgid "" -"Location of the user's credential cache. Currently only file based " -"credential caches are supported. In the template the following sequences are " -"substituted: <placeholder type=\"variablelist\" id=\"0\"/> If the template " -"ends with 'XXXXXX' mkstemp(3) is used to create a unique filename in a safe " -"way." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:209 -msgid "Default: FILE:%d/krb5cc_%U_XXXXXX" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:215 -msgid "krb5_auth_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:218 -msgid "" -"Timeout in seconds after an online authentication or change password request " -"is aborted. If possible the authentication request is continued offline." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:241 -msgid "krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:244 -msgid "" -"The location of the keytab to use when validating credentials obtained from " -"KDCs." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:248 -msgid "Default: /etc/krb5.keytab" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:254 -msgid "krb5_store_password_if_offline (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:257 -msgid "" -"Store the password of the user if the provider is offline and use it to " -"request a TGT when the provider gets online again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:262 -msgid "" -"Please note that this feature currently only available on a Linux platform. " -"Passwords stored in this way are kept in plaintext in the kernel keyring and " -"are potentially accessible by the root user (with difficulty)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:275 -msgid "krb5_renewable_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:278 -msgid "" -"Request a renewable ticket with a total lifetime given by an integer " -"immediately followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:283 sssd-krb5.5.xml:319 -msgid "<emphasis>s</emphasis> seconds" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:286 sssd-krb5.5.xml:322 -msgid "<emphasis>m</emphasis> minutes" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:289 sssd-krb5.5.xml:325 -msgid "<emphasis>h</emphasis> hours" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:292 sssd-krb5.5.xml:328 -msgid "<emphasis>d</emphasis> days." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:295 sssd-krb5.5.xml:331 -msgid "If there is no delimiter <emphasis>s</emphasis> is assumed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:299 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"renewable lifetime to one and a half hours please use '90m' instead of " -"'1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:305 -msgid "Default: not set, i.e. the TGT is not renewable" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:311 -msgid "krb5_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:314 -msgid "" -"Request ticket with a with a lifetime given by an integer immediately " -"followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:335 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"lifetime to one and a half hours please use '90m' instead of '1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:340 -msgid "" -"Default: not set, i.e. the default ticket lifetime configured on the KDC." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:347 -msgid "krb5_renew_interval (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:350 -msgid "" -"The time in seconds between two checks if the TGT should be renewed. TGTs " -"are renewed if about half of their lifetime is exceeded." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:355 -msgid "If this option is not set or 0 the automatic renewal is disabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:365 -msgid "krb5_use_fast (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:368 -msgid "" -"Enables flexible authentication secure tunneling (FAST) for Kerberos pre-" -"authentication. The following options are supported:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:373 -msgid "" -"<emphasis>never</emphasis> use FAST, this is equivalent to not set this " -"option at all." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:377 -msgid "" -"<emphasis>try</emphasis> to use FAST, if the server does not support fast " -"continue without." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:381 -msgid "" -"<emphasis>demand</emphasis> to use FAST, fail if the server does not require " -"fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:385 -msgid "Default: not set, i.e. FAST is not used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:388 -msgid "Please note that a keytab is required to use fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:391 -msgid "" -"Please note also that sssd supports fast only with MIT Kerberos version 1.8 " -"and above. If sssd used with an older version using this option is a " -"configuration error." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:400 -msgid "krb5_fast_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:403 -msgid "Specifies the server principal to use for FAST." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:412 -msgid "" -"Specifies if the host and user principal should be canonicalized. This " -"feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:65 -msgid "" -"If the auth-module krb5 is used in a SSSD domain, the following options must " -"be used. See the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page, section <quote>DOMAIN " -"SECTIONS</quote> for details on the configuration of a SSSD domain. " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:434 -msgid "" -"The following example assumes that SSSD is correctly configured and FOO is " -"one of the domains in the <replaceable>[sssd]</replaceable> section. This " -"example shows only configuration of Kerberos authentication, it does not " -"include any identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-krb5.5.xml:442 -#, no-wrap -msgid "" -" [domain/FOO]\n" -" auth_provider = krb5\n" -" krb5_server = 192.168.1.1\n" -" krb5_realm = EXAMPLE.COM\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:453 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupadd.8.xml:10 sss_groupadd.8.xml:15 -msgid "sss_groupadd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupadd.8.xml:16 -msgid "create a new group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupadd.8.xml:21 -msgid "" -"<command>sss_groupadd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:32 -msgid "" -"<command>sss_groupadd</command> creates a new group. These groups are " -"compatible with POSIX groups, with the additional feature that they can " -"contain other groups as members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupadd.8.xml:43 -msgid "" -"<option>-g</option>,<option>--gid</option> <replaceable>GID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupadd.8.xml:48 -msgid "" -"Set the GID of the group to the value of <replaceable>GID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_userdel.8.xml:10 sss_userdel.8.xml:15 -msgid "sss_userdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_userdel.8.xml:16 -msgid "delete a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_userdel.8.xml:21 -msgid "" -"<command>sss_userdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:32 -msgid "" -"<command>sss_userdel</command> deletes a user identified by login name " -"<replaceable>LOGIN</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:44 -msgid "<option>-r</option>,<option>--remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:48 -msgid "" -"Files in the user's home directory will be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:56 -msgid "<option>-R</option>,<option>--no-remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:60 -msgid "" -"Files in the user's home directory will NOT be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:68 -msgid "<option>-f</option>,<option>--force</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:72 -msgid "" -"This option forces <command>sss_userdel</command> to remove the user's home " -"directory and mail spool, even if they are not owned by the specified user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:80 -msgid "<option>-k</option>,<option>--kick</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:84 -msgid "Before actually deleting the user, terminate all his processes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:95 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupdel.8.xml:10 sss_groupdel.8.xml:15 -msgid "sss_groupdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupdel.8.xml:16 -msgid "delete a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupdel.8.xml:21 -msgid "" -"<command>sss_groupdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:32 -msgid "" -"<command>sss_groupdel</command> deletes a group identified by its name " -"<replaceable>GROUP</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupshow.8.xml:10 sss_groupshow.8.xml:15 -msgid "sss_groupshow" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupshow.8.xml:16 -msgid "print properties of a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupshow.8.xml:21 -msgid "" -"<command>sss_groupshow</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:32 -msgid "" -"<command>sss_groupshow</command> displays information about a group " -"identified by its name <replaceable>GROUP</replaceable>. The information " -"includes the group ID number, members of the group and the parent group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupshow.8.xml:43 -msgid "<option>-R</option>,<option>--recursive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupshow.8.xml:47 -msgid "" -"Also print indirect group members in a tree-like hierarchy. Note that this " -"also affects printing parent groups - without <option>R</option>, only the " -"direct parent will be printed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_usermod.8.xml:10 sss_usermod.8.xml:15 -msgid "sss_usermod" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_usermod.8.xml:16 -msgid "modify a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_usermod.8.xml:21 -msgid "" -"<command>sss_usermod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:32 -msgid "" -"<command>sss_usermod</command> modifies the account specified by " -"<replaceable>LOGIN</replaceable> to reflect the changes that are specified " -"on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:60 -msgid "The home directory of the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:71 -msgid "The user's login shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:82 -msgid "" -"Append this user to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:96 -msgid "" -"Remove this user from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:103 -msgid "<option>-l</option>,<option>--lock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:107 -msgid "Lock the user account. The user won't be able to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:114 -msgid "<option>-u</option>,<option>--unlock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:118 -msgid "Unlock the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:129 -msgid "The SELinux user for the user's login." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:140 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_cache.8.xml:10 sss_cache.8.xml:15 -msgid "sss_cache" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_cache.8.xml:16 -msgid "perform cache cleanup" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_cache.8.xml:21 -msgid "" -"<command>sss_cache</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_cache.8.xml:31 -msgid "" -"<command>sss_cache</command> invalidates records in SSSD cache. Invalidated " -"records are forced to be reloaded from server as soon as related SSSD " -"backend is online." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:42 -msgid "" -"<option>-u</option>,<option>--user</option> <replaceable>login</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:47 -msgid "Invalidate specific user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:53 -msgid "<option>-U</option>,<option>--users</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:57 -msgid "" -"Invalidate all user records. This option overrides invalidation of specific " -"user if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:64 -msgid "" -"<option>-g</option>,<option>--group</option> <replaceable>group</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:69 -msgid "Invalidate specific group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:75 -msgid "<option>-G</option>,<option>--groups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:79 -msgid "" -"Invalidate all group records. This option overrides invalidation of specific " -"group if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:86 -msgid "" -"<option>-n</option>,<option>--netgroup</option> <replaceable>netgroup</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:91 -msgid "Invalidate specific netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:97 -msgid "<option>-N</option>,<option>--netgroups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:101 -msgid "" -"Invalidate all netgroup records. This option overrides invalidation of " -"specific netgroup if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:108 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>domain</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:113 -msgid "Restrict invalidation process only to a particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_debuglevel.8.xml:10 sss_debuglevel.8.xml:15 -msgid "sss_debuglevel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_debuglevel.8.xml:16 -msgid "change debug level while SSSD is running" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_debuglevel.8.xml:21 -msgid "" -"<command>sss_debuglevel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>NEW_DEBUG_LEVEL</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_debuglevel.8.xml:32 -msgid "" -"<command>sss_debuglevel</command> changes debug level of SSSD monitor and " -"providers to <replaceable>NEW_DEBUG_LEVEL</replaceable> while SSSD is " -"running." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_debuglevel.8.xml:59 -msgid "<replaceable>NEW_DEBUG_LEVEL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_authorizedkeys.1.xml:10 sss_ssh_authorizedkeys.1.xml:15 -msgid "sss_ssh_authorizedkeys" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_ssh_authorizedkeys.1.xml:11 sss_ssh_knownhostsproxy.1.xml:11 -msgid "1" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_authorizedkeys.1.xml:16 -msgid "get OpenSSH authorized keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_authorizedkeys.1.xml:21 -msgid "" -"<command>sss_ssh_authorizedkeys</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>USER</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:32 -msgid "" -"<command>sss_ssh_authorizedkeys</command> acquires SSH public keys for user " -"<replaceable>USER</replaceable> and outputs them in OpenSSH authorized_keys " -"format (see the <quote>AUTHORIZED_KEYS FILE FORMAT</quote> section of " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> for more information)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:41 -msgid "" -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_authorizedkeys</" -"command> for public key user authentication if it is compiled with support " -"for either <quote>AuthorizedKeysCommand</quote> or <quote>PubkeyAgent</" -"quote> <citerefentry> <refentrytitle>sshd_config</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:58 -#, no-wrap -msgid "AuthorizedKeysCommand /usr/bin/sss_ssh_authorizedkeys\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:51 -msgid "" -"If <quote>AuthorizedKeysCommand</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by putting the following directive " -"in <citerefentry> <refentrytitle>sshd_config</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry>: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:69 -#, no-wrap -msgid "PubKeyAgent /usr/bin/sss_ssh_authorizedkeys %u\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:62 -msgid "" -"If <quote>PubkeyAgent</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by using the following directive " -"for <citerefentry> <refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> configuration: <placeholder type=\"programlisting" -"\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_authorizedkeys.1.xml:87 -msgid "" -"Search for user public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:98 -msgid "" -"<citerefentry> <refentrytitle>sshd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sshd_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_knownhostsproxy</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_knownhostsproxy.1.xml:10 sss_ssh_knownhostsproxy.1.xml:15 -msgid "sss_ssh_knownhostsproxy" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_knownhostsproxy.1.xml:16 -msgid "get OpenSSH host keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_knownhostsproxy.1.xml:21 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>HOST</replaceable></arg> <arg " -"choice='opt'><replaceable>PROXY_COMMAND</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:33 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> acquires SSH host public keys for " -"host <replaceable>HOST</replaceable>, stores them in a custom OpenSSH " -"known_hosts file (see the <quote>SSH_KNOWN_HOSTS FILE FORMAT</quote> section " -"of <citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> for more information) <filename>/var/lib/sss/" -"pubconf/known_hosts</filename> and estabilishes connection to the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:43 -msgid "" -"If <replaceable>PROXY_COMMAND</replaceable> is specified, it is used to " -"create the connection to the host instead of opening a socket." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_knownhostsproxy.1.xml:55 -#, no-wrap -msgid "" -"ProxyCommand /usr/bin/sss_ssh_knownhostsproxy -p %p %h\n" -"GlobalKnownHostsFile2 /var/lib/sss/pubconf/known_hosts\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:48 -msgid "" -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_knownhostsproxy</" -"command> for host key authentication by using the following directives for " -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> configuration: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_ssh_knownhostsproxy.1.xml:69 -msgid "" -"<option>-p</option>,<option>--port</option> <replaceable>PORT</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:74 -msgid "" -"Use port <replaceable>PORT</replaceable> to connect to the host. By " -"default, port 22 is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:86 -msgid "" -"Search for host public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:97 -msgid "" -"<citerefentry> <refentrytitle>ssh</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>ssh_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_authorizedkeys</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/service_discovery.xml:2 -msgid "SERVICE DISCOVERY" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/service_discovery.xml:4 -msgid "" -"The service discovery feature allows back ends to automatically find the " -"appropriate servers to connect to using a special DNS query." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:9 -msgid "Configuration" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:11 -msgid "" -"If no servers are specified, the back end automatically uses service " -"discovery to try to find a server. Optionally, the user may choose to use " -"both fixed server addresses and service discovery by inserting a special " -"keyword, <quote>_srv_</quote>, in the list of servers. The order of " -"preference is maintained. This feature is useful if, for example, the user " -"prefers to use service discovery whenever possible, and fall back to a " -"specific server when no servers can be discovered using DNS." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:23 -msgid "The domain name" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:25 -msgid "" -"Please refer to the <quote>dns_discovery_domain</quote> parameter in the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for more details." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:35 -msgid "The protocol" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:37 -msgid "" -"The queries usually specify _tcp as the protocol. Exceptions are documented " -"in respective option description." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:42 -msgid "See Also" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:44 -msgid "" -"For more information on the service discovery mechanism, refer to RFC 2782." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/upstream.xml:1 -msgid "<placeholder type=\"refentryinfo\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/failover.xml:2 -msgid "FAILOVER" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/failover.xml:4 -msgid "" -"The failover feature allows back ends to automatically switch to a different " -"server if the primary server fails." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:8 -msgid "Failover Syntax" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:10 -msgid "" -"The list of servers is given as a comma-separated list; any number of spaces " -"is allowed around the comma. The servers are listed in order of preference. " -"The list can contain any number of servers." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:17 -msgid "The Failover Mechanism" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:19 -msgid "" -"The failover mechanism distinguishes between a machine and a service. The " -"back end first tries to resolve the hostname of a given machine; if this " -"resolution attempt fails, the machine is considered offline. No further " -"attempts are made to connect to this machine for any other service. If the " -"resolution attempt succeeds, the back end tries to connect to a service on " -"this machine. If the service connection attempt fails, then only this " -"particular service is considered offline and the back end automatically " -"switches over to the next service. The machine is still considered online " -"and might still be tried for another service." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:32 -msgid "" -"Further connection attempts are made to machines or services marked as " -"offline after a specified period of time; this is currently hard coded to 30 " -"seconds." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:37 -msgid "" -"If there are no more machines to try, the back end as a whole switches to " -"offline mode, and then attempts to reconnect every 30 seconds." -msgstr "" - -#. type: Content of: <varlistentry><term> -#: include/param_help.xml:3 -msgid "<option>-h</option>,<option>--help</option>" -msgstr "" - -#. type: Content of: <varlistentry><listitem><para> -#: include/param_help.xml:7 -msgid "Display help message and exit." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:3 -msgid "" -"Bit mask that indicates which debug levels will be visible. 0x0010 is the " -"default value as well as the lowest allowed value, 0xFFF0 is the most " -"verbose mode. This setting overrides the settings from config file." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:8 -msgid "Currently supported debug levels:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:11 -msgid "" -"<emphasis>0x0010</emphasis>: Fatal failures. Anything that would prevent " -"SSSD from starting up or causes it to cease running." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:15 -msgid "" -"<emphasis>0x0020</emphasis>: Critical failures. An error that doesn't kill " -"the SSSD, but one that indicates that at least one major feature is not " -"going to work properly." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:20 -msgid "" -"<emphasis>0x0040</emphasis>: Serious failures. An error announcing that a " -"particular request or operation has failed." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:24 -msgid "" -"<emphasis>0x0080</emphasis>: Minor failures. These are the errors that would " -"percolate down to cause the operation failure of 2." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:28 -msgid "<emphasis>0x0100</emphasis>: Configuration settings." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:31 -msgid "<emphasis>0x0200</emphasis>: Function data." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:34 -msgid "<emphasis>0x0400</emphasis>: Trace messages for operation functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:37 -msgid "" -"<emphasis>0x1000</emphasis>: Trace messages for internal control functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:40 -msgid "" -"<emphasis>0x2000</emphasis>: Contents of function-internal variables that " -"may be interesting." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:43 -msgid "<emphasis>0x4000</emphasis>: Extremely low-level tracing information." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:46 -msgid "" -"To log required debug levels, simply add their numbers together as shown in " -"following examples:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:49 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, critical failures, " -"serious failures and function data use 0x0270." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:53 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, configuration settings, " -"function data, trace messages for internal control functions use 0x1310." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:57 -msgid "" -"<emphasis>Note</emphasis>: This is new format of debug levels introduced in " -"1.7.0. Older format (numbers from 0-10) is compatible but deprecated." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/experimental.xml:1 -msgid "" -"<emphasis> This is an experimental feature, please use http://fedorahosted." -"org/sssd to report any issues. </emphasis>" -msgstr "" diff --git a/src/man/po/hi.po b/src/man/po/hi.po deleted file mode 100644 index 43cae19af..000000000 --- a/src/man/po/hi.po +++ /dev/null @@ -1,6747 +0,0 @@ -# SOME DESCRIPTIVE TITLE -# Copyright (C) YEAR Red Hat -# This file is distributed under the same license as the sssd-docs package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@redhat.com\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2012-02-14 13:10+0000\n" -"Last-Translator: sgallagh <sgallagh@redhat.com>\n" -"Language-Team: Hindi <indlinux-hindi@lists.sourceforge.net>\n" -"Language: hi\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=2; plural=(n != 1)\n" - -#. type: Content of: <reference><title> -#: sss_groupmod.8.xml:5 sssd.conf.5.xml:5 sssd-ldap.5.xml:5 pam_sss.8.xml:5 -#: sssd_krb5_locator_plugin.8.xml:5 sssd-simple.5.xml:5 sssd-ipa.5.xml:5 -#: sssd.8.xml:5 sss_obfuscate.8.xml:5 sss_useradd.8.xml:5 sssd-krb5.5.xml:5 -#: sss_groupadd.8.xml:5 sss_userdel.8.xml:5 sss_groupdel.8.xml:5 -#: sss_groupshow.8.xml:5 sss_usermod.8.xml:5 sss_cache.8.xml:5 -#: sss_debuglevel.8.xml:5 sss_ssh_authorizedkeys.1.xml:5 -#: sss_ssh_knownhostsproxy.1.xml:5 -msgid "SSSD Manual pages" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupmod.8.xml:10 sss_groupmod.8.xml:15 -msgid "sss_groupmod" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_groupmod.8.xml:11 pam_sss.8.xml:14 sssd_krb5_locator_plugin.8.xml:11 -#: sssd.8.xml:11 sss_obfuscate.8.xml:11 sss_useradd.8.xml:11 -#: sss_groupadd.8.xml:11 sss_userdel.8.xml:11 sss_groupdel.8.xml:11 -#: sss_groupshow.8.xml:11 sss_usermod.8.xml:11 sss_cache.8.xml:11 -#: sss_debuglevel.8.xml:11 -msgid "8" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupmod.8.xml:16 -msgid "modify a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupmod.8.xml:21 -msgid "" -"<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:30 sssd-ldap.5.xml:21 pam_sss.8.xml:44 -#: sssd_krb5_locator_plugin.8.xml:20 sssd-simple.5.xml:22 sssd-ipa.5.xml:21 -#: sssd.8.xml:29 sss_obfuscate.8.xml:30 sss_useradd.8.xml:30 -#: sssd-krb5.5.xml:21 sss_groupadd.8.xml:30 sss_userdel.8.xml:30 -#: sss_groupdel.8.xml:30 sss_groupshow.8.xml:30 sss_usermod.8.xml:30 -#: sss_cache.8.xml:29 sss_debuglevel.8.xml:30 sss_ssh_authorizedkeys.1.xml:30 -#: sss_ssh_knownhostsproxy.1.xml:31 -msgid "DESCRIPTION" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:32 -msgid "" -"<command>sss_groupmod</command> modifies the group to reflect the changes " -"that are specified on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:39 pam_sss.8.xml:51 sssd.8.xml:42 sss_obfuscate.8.xml:58 -#: sss_useradd.8.xml:39 sss_groupadd.8.xml:39 sss_userdel.8.xml:39 -#: sss_groupdel.8.xml:39 sss_groupshow.8.xml:39 sss_usermod.8.xml:39 -#: sss_cache.8.xml:38 sss_debuglevel.8.xml:38 sss_ssh_authorizedkeys.1.xml:78 -#: sss_ssh_knownhostsproxy.1.xml:65 -msgid "OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:43 sss_usermod.8.xml:77 -msgid "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:48 -msgid "" -"Append this group to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:57 sss_usermod.8.xml:91 -msgid "" -"<option>-r</option>,<option>--remove-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:62 -msgid "" -"Remove this group from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:72 sssd.conf.5.xml:1331 sssd-ldap.5.xml:2096 -#: pam_sss.8.xml:139 sssd_krb5_locator_plugin.8.xml:75 sssd-simple.5.xml:143 -#: sssd-ipa.5.xml:562 sssd.8.xml:191 sss_obfuscate.8.xml:103 -#: sss_useradd.8.xml:167 sssd-krb5.5.xml:451 sss_groupadd.8.xml:58 -#: sss_userdel.8.xml:93 sss_groupdel.8.xml:46 sss_groupshow.8.xml:58 -#: sss_usermod.8.xml:138 sss_ssh_authorizedkeys.1.xml:96 -#: sss_ssh_knownhostsproxy.1.xml:95 -msgid "SEE ALSO" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:74 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.conf.5.xml:10 sssd.conf.5.xml:16 -msgid "sssd.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sssd.conf.5.xml:11 sssd-ldap.5.xml:11 sssd-simple.5.xml:11 -#: sssd-ipa.5.xml:11 sssd-krb5.5.xml:11 -msgid "5" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><refmiscinfo> -#: sssd.conf.5.xml:12 sssd-ldap.5.xml:12 sssd-simple.5.xml:12 -#: sssd-ipa.5.xml:12 sssd-krb5.5.xml:12 -msgid "File Formats and Conventions" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.conf.5.xml:17 sssd-ldap.5.xml:17 sssd_krb5_locator_plugin.8.xml:16 -#: sssd-ipa.5.xml:17 sssd-krb5.5.xml:17 -msgid "the configuration file for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:21 -msgid "FILE FORMAT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:29 -#, no-wrap -msgid "" -" <replaceable>[section]</replaceable>\n" -" <replaceable>key</replaceable> = <replaceable>value</replaceable>\n" -" <replaceable>key2</replaceable> = <replaceable>value2,value3</replaceable>\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:24 -msgid "" -"The file has an ini-style syntax and consists of sections and parameters. A " -"section begins with the name of the section in square brackets and continues " -"until the next section begins. An example of section with single and multi-" -"valued parameters: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:36 -msgid "" -"The data types used are string (no quotes needed), integer and bool (with " -"values of <quote>TRUE/FALSE</quote>)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:41 -msgid "" -"A line comment starts with a hash sign (<quote>#</quote>) or a semicolon " -"(<quote>;</quote>)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:46 -msgid "" -"All sections can have an optional <replaceable>description</replaceable> " -"parameter. Its function is only as a label for the section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:52 -msgid "" -"<filename>sssd.conf</filename> must be a regular file, owned by root and " -"only root may read from or write to the file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:58 -msgid "SPECIAL SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:61 -msgid "The [sssd] section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><title> -#: sssd.conf.5.xml:70 sssd.conf.5.xml:1177 -msgid "Section parameters" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:72 -msgid "config_file_version (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:75 -msgid "" -"Indicates what is the syntax of the config file. SSSD 0.6.0 and later use " -"version 2." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:81 -msgid "services" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:84 -msgid "" -"Comma separated list of services that are started when sssd itself starts." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:88 -msgid "" -"Supported services: nss, pam <phrase condition=\"with_sudo\">, sudo</phrase>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:94 sssd.conf.5.xml:257 -msgid "reconnection_retries (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:97 sssd.conf.5.xml:260 -msgid "" -"Number of times services should attempt to reconnect in the event of a Data " -"Provider crash or restart before they give up" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:102 sssd.conf.5.xml:265 -msgid "Default: 3" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:107 -msgid "domains" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:110 -msgid "" -"A domain is a database containing user information. SSSD can use more " -"domains at the same time, but at least one must be configured or SSSD won't " -"start. This parameter described the list of domains in the order you want " -"them to be queried." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:120 -msgid "re_expression (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:123 -msgid "" -"Regular expression that describes how to parse the string containing user " -"name and domain into these components." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:127 -msgid "" -"Default: <quote>(?P<name>[^@]+)@?(?P<domain>[^@]*$)</quote> " -"which translates to \"the name is everything up to the <quote>@</quote> " -"sign, the domain everything after that\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:132 -msgid "" -"PLEASE NOTE: the support for non-unique named subpatterns is not available " -"on all platforms (e.g. RHEL5 and SLES10). Only platforms with libpcre " -"version 7 or higher can support non-unique named subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:139 -msgid "" -"PLEASE NOTE ALSO: older version of libpcre only support the Python syntax (?" -"P<name>) to label subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:146 -msgid "full_name_format (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:149 -msgid "" -"A <citerefentry> <refentrytitle>printf</refentrytitle> <manvolnum>3</" -"manvolnum> </citerefentry>-compatible format that describes how to translate " -"a (name, domain) tuple into a fully qualified name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:157 -msgid "Default: <quote>%1$s@%2$s</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:162 -msgid "try_inotify (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:165 -msgid "" -"SSSD monitors the state of resolv.conf to identify when it needs to update " -"its internal DNS resolver. By default, we will attempt to use inotify for " -"this, and will fall back to polling resolv.conf every five seconds if " -"inotify cannot be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:173 -msgid "" -"There are some limited situations where it is preferred that we should skip " -"even trying to use inotify. In these rare cases, this option should be set " -"to 'false'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:179 -msgid "" -"Default: true on platforms where inotify is supported. False on other " -"platforms." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:183 -msgid "" -"Note: this option will have no effect on platforms where inotify is " -"unavailable. On these platforms, polling will always be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:190 -msgid "krb5_rcache_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:193 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:197 -msgid "" -"This option accepts a special value __LIBKRB5_DEFAULTS__ that will instruct " -"SSSD to let libkrb5 decide the appropriate location for the replay cache." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:203 -msgid "" -"Default: Distribution-specific and specified at build-time. " -"(__LIBKRB5_DEFAULTS__ if not configured)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:63 -msgid "" -"Individual pieces of SSSD functionality are provided by special SSSD " -"services that are started and stopped together with SSSD. The services are " -"managed by a special service frequently called <quote>monitor</quote>. The " -"<quote>[sssd]</quote> section is used to configure the monitor as well as " -"some other important options like the identity domains. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:216 -msgid "SERVICES SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:218 -msgid "" -"Settings that can be used to configure different services are described in " -"this section. They should reside in the [<replaceable>$NAME</replaceable>] " -"section, for example, for NSS service, the section would be <quote>[nss]</" -"quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:225 -msgid "General service configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:227 -msgid "These options can be used to configure any service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:231 -msgid "debug_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:235 -msgid "debug_timestamps (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:238 -msgid "Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:241 sssd.conf.5.xml:376 sssd-ldap.5.xml:1328 -#: sssd-ldap.5.xml:1446 sssd-ipa.5.xml:206 sssd-ipa.5.xml:241 -msgid "Default: true" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:246 -msgid "debug_microseconds (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:249 -msgid "Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:252 sssd.conf.5.xml:641 sssd-ldap.5.xml:602 -#: sssd-ldap.5.xml:1260 sssd-ldap.5.xml:1397 sssd-ldap.5.xml:1795 -#: sssd-ipa.5.xml:123 sssd-ipa.5.xml:301 sssd-krb5.5.xml:235 -#: sssd-krb5.5.xml:269 sssd-krb5.5.xml:418 -msgid "Default: false" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:270 -msgid "command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:273 -msgid "" -"By default, the executable representing this service is called <command>sssd_" -"${service_name}</command>. This directive allows to change the executable " -"name for the service. In the vast majority of configurations, the default " -"values should suffice." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:281 -msgid "Default: <command>sssd_${service_name}</command>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:289 -msgid "NSS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:291 -msgid "" -"These options can be used to configure the Name Service Switch (NSS) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:296 -msgid "enum_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:299 -msgid "" -"How many seconds should nss_sss cache enumerations (requests for info about " -"all users)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:303 -msgid "Default: 120" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:308 -msgid "entry_cache_nowait_percentage (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:311 -msgid "" -"The entry cache can be set to automatically update entries in the background " -"if they are requested beyond a percentage of the entry_cache_timeout value " -"for the domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:317 -msgid "" -"For example, if the domain's entry_cache_timeout is set to 30s and " -"entry_cache_nowait_percentage is set to 50 (percent), entries that come in " -"after 15 seconds past the last cache update will be returned immediately, " -"but the SSSD will go and update the cache on its own, so that future " -"requests will not need to block waiting for a cache update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:327 -msgid "" -"Valid values for this option are 0-99 and represent a percentage of the " -"entry_cache_timeout for each domain. For performance reasons, this " -"percentage will never reduce the nowait timeout to less than 10 seconds. (0 " -"disables this feature)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:335 -msgid "Default: 50" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:340 -msgid "entry_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:343 -msgid "" -"Specifies for how many seconds nss_sss should cache negative cache hits " -"(that is, queries for invalid database entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:349 sssd.conf.5.xml:669 sssd-krb5.5.xml:223 -msgid "Default: 15" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:354 -msgid "filter_users, filter_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:357 -msgid "" -"Exclude certain users from being fetched from the sss NSS database. This is " -"particularly useful for system accounts. This option can also be set per-" -"domain or include fully-qualified names to filter only users from the " -"particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:364 -msgid "Default: root" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:369 -msgid "filter_users_in_groups (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:372 -msgid "" -"If you want filtered user still be group members set this option to false." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:381 -msgid "override_homedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:390 sssd-krb5.5.xml:166 -msgid "%u" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:391 sssd-krb5.5.xml:167 -msgid "login name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:394 sssd-krb5.5.xml:170 -msgid "%U" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:395 -msgid "UID number" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:398 sssd-krb5.5.xml:188 -msgid "%d" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:399 -msgid "domain name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:402 -msgid "%f" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:403 -msgid "fully qualified user name (user@domain)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:406 sssd-krb5.5.xml:200 -msgid "%%" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:407 sssd-krb5.5.xml:201 -msgid "a literal '%'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:384 -msgid "" -"Override the user's home directory. You can either provide an absolute value " -"or a template. In the template, the following sequences are substituted: " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:413 -msgid "This option can also be set per-domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:418 -msgid "allowed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:421 -msgid "" -"Restrict user shell to one of the listed values. The order of evaluation is:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:424 -msgid "1. If the shell is present in <quote>/etc/shells</quote>, it is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:428 -msgid "" -"2. If the shell is in the allowed_shells list but not in <quote>/etc/shells</" -"quote>, use the value of the shell_fallback parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:433 -msgid "" -"3. If the shell is not in the allowed_shells list and not in <quote>/etc/" -"shells</quote>, a nologin shell is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:438 -msgid "An empty string for shell is passed as-is to libc." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:441 -msgid "" -"The <quote>/etc/shells</quote> is only read on SSSD start up, which means " -"that a restart of the SSSD is required in case a new shell is installed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:445 -msgid "Default: Not set. The user shell is automatically used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:450 -msgid "vetoed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:453 -msgid "Replace any instance of these shells with the shell_fallback" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:458 -msgid "shell_fallback (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:461 -msgid "" -"The default shell to use if an allowed shell is not installed on the machine." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:465 -msgid "Default: /bin/sh" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:472 -msgid "PAM configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:474 -msgid "" -"These options can be used to configure the Pluggable Authentication Module " -"(PAM) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:479 -msgid "offline_credentials_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:482 -msgid "" -"If the authentication provider is offline, how long should we allow cached " -"logins (in days since the last successful online login)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:487 sssd.conf.5.xml:500 -msgid "Default: 0 (No limit)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:493 -msgid "offline_failed_login_attempts (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:496 -msgid "" -"If the authentication provider is offline, how many failed login attempts " -"are allowed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:506 -msgid "offline_failed_login_delay (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:509 -msgid "" -"The time in minutes which has to pass after offline_failed_login_attempts " -"has been reached before a new login attempt is possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:514 -msgid "" -"If set to 0 the user cannot authenticate offline if " -"offline_failed_login_attempts has been reached. Only a successful online " -"authentication can enable offline authentication again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:520 sssd.conf.5.xml:573 sssd.conf.5.xml:1093 -msgid "Default: 5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:526 -msgid "pam_verbosity (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:529 -msgid "" -"Controls what kind of messages are shown to the user during authentication. " -"The higher the number to more messages are displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:534 -msgid "Currently sssd supports the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:537 -msgid "<emphasis>0</emphasis>: do not show any message" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:540 -msgid "<emphasis>1</emphasis>: show only important messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:544 -msgid "<emphasis>2</emphasis>: show informational messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:547 -msgid "<emphasis>3</emphasis>: show all messages and debug information" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:551 sssd.8.xml:63 -msgid "Default: 1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:556 -msgid "pam_id_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:559 -msgid "" -"For any PAM request while SSSD is online, the SSSD will attempt to " -"immediately update the cached identity information for the user in order to " -"ensure that authentication takes place with the latest information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:565 -msgid "" -"A complete PAM conversation may perform multiple PAM requests, such as " -"account management and session opening. This option controls (on a per-" -"client-application basis) how long (in seconds) we can cache the identity " -"information to avoid excessive round-trips to the identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:579 -msgid "pam_pwd_expiration_warning (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:582 -msgid "Display a warning N days before the password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:585 -msgid "" -"Please note that the backend server has to provide information about the " -"expiration time of the password. If this information is missing, sssd " -"cannot display a warning." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:591 -msgid "Default: 7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:599 -msgid "SUDO configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:601 -msgid "These options can be used to configure the sudo service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:608 -msgid "sudo_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:611 -msgid "" -"For any sudo request that comes while SSSD is online, the SSSD will attempt " -"to update the cached rules in order to ensure that sudo has the latest " -"ruleset." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:617 -msgid "" -"The user may, however, run a couple of sudo commands successively, which " -"would trigger multiple LDAP requests. In order to speed up this use-case, " -"the sudo service maintains an in-memory cache that would be used for " -"performing fast replies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:624 -msgid "" -"This option controls how long (in seconds) can the sudo service cache rules " -"for a user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:628 -msgid "Default: 180" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:633 -msgid "sudo_timed (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:636 -msgid "" -"Whether or not to evaluate the sudoNotBefore and sudoNotAfter attributes " -"that implement time-dependent sudoers entries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:649 -msgid "AUTOFS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:651 -msgid "These options can be used to configure the autofs service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:659 -msgid "autofs_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:662 -msgid "" -"Specifies for how many seconds should the autofs responder negative cache " -"hits (that is, queries for invalid map entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:679 -msgid "DOMAIN SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:686 -msgid "min_id,max_id (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:689 -msgid "" -"UID and GID limits for the domain. If a domain contains an entry that is " -"outside these limits, it is ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:694 -msgid "" -"For users, this affects the primary GID limit. The user will not be returned " -"to NSS if either the UID or the primary GID is outside the range. For non-" -"primary group memberships, those that are in range will be reported as " -"expected." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:701 -msgid "Default: 1 for min_id, 0 (no limit) for max_id" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:707 -msgid "timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:710 -msgid "" -"Timeout in seconds between heartbeats for this domain. This is used to " -"ensure that the backend process is alive and capable of answering requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:715 sssd-ldap.5.xml:1131 -msgid "Default: 10" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:721 -msgid "enumerate (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:724 -msgid "" -"Determines if a domain can be enumerated. This parameter can have one of the " -"following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:728 -msgid "TRUE = Users and groups are enumerated" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:731 -msgid "FALSE = No enumerations for this domain" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:734 sssd.conf.5.xml:839 sssd.conf.5.xml:893 -msgid "Default: FALSE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:737 -msgid "" -"Note: Enabling enumeration has a moderate performance impact on SSSD while " -"enumeration is running. It may take up to several minutes after SSSD startup " -"to fully complete enumerations. During this time, individual requests for " -"information will go directly to LDAP, though it may be slow, due to the " -"heavy enumeration processing." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:747 -msgid "" -"While the first enumeration is running, requests for the complete user or " -"group lists may return no results until it completes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:752 -msgid "" -"Further, enabling enumeration may increase the time necessary to detect " -"network disconnection, as longer timeouts are required to ensure that " -"enumeration lookups are completed successfully. For more information, refer " -"to the man pages for the specific id_provider in use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:763 -msgid "entry_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:766 -msgid "" -"How many seconds should nss_sss consider entries valid before asking the " -"backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:770 -msgid "Default: 5400" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:776 -msgid "entry_cache_user_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:779 -msgid "" -"How many seconds should nss_sss consider user entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:783 sssd.conf.5.xml:796 sssd.conf.5.xml:809 -#: sssd.conf.5.xml:822 -msgid "Default: entry_cache_timeout" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:789 -msgid "entry_cache_group_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:792 -msgid "" -"How many seconds should nss_sss consider group entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:802 -msgid "entry_cache_netgroup_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:805 -msgid "" -"How many seconds should nss_sss consider netgroup entries valid before " -"asking the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:815 -msgid "entry_cache_service_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:818 -msgid "" -"How many seconds should nss_sss consider service entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:828 -msgid "cache_credentials (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:831 -msgid "Determines if user credentials are also cached in the local LDB cache" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:835 -msgid "User credentials are stored in a SHA512 hash, not in plaintext" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:844 -msgid "account_cache_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:847 -msgid "" -"Number of days entries are left in cache after last successful login before " -"being removed during a cleanup of the cache. 0 means keep forever. The " -"value of this parameter must be greater than or equal to " -"offline_credentials_expiration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:854 -msgid "Default: 0 (unlimited)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:860 -msgid "id_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:863 -msgid "The Data Provider identity backend to use for this domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:867 -msgid "Supported backends:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:870 -msgid "proxy: Support a legacy NSS provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:873 -msgid "local: SSSD internal local provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:876 -msgid "ldap: LDAP provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:882 -msgid "use_fully_qualified_names (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:885 -msgid "" -"If set to TRUE, all requests to this domain must use fully qualified names. " -"For example, if used in LOCAL domain that contains a \"test\" user, " -"<command>getent passwd test</command> wouldn't find the user while " -"<command>getent passwd test@LOCAL</command> would." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:898 -msgid "auth_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:901 -msgid "" -"The authentication provider used for the domain. Supported auth providers " -"are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:905 -msgid "" -"<quote>ldap</quote> for native LDAP authentication. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:912 -msgid "" -"<quote>krb5</quote> for Kerberos authentication. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:919 -msgid "" -"<quote>proxy</quote> for relaying authentication to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:922 -msgid "<quote>none</quote> disables authentication explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:925 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"authentication requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:931 -msgid "access_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:934 -msgid "" -"The access control provider used for the domain. There are two built-in " -"access providers (in addition to any included in installed backends) " -"Internal special providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:940 -msgid "<quote>permit</quote> always allow access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:943 -msgid "<quote>deny</quote> always deny access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:946 -msgid "" -"<quote>simple</quote> access control based on access or deny lists. See " -"<citerefentry> <refentrytitle>sssd-simple</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry> for more information on configuring the simple " -"access module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:953 -msgid "Default: <quote>permit</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:958 -msgid "chpass_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:961 -msgid "" -"The provider which should handle change password operations for the domain. " -"Supported change password providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:966 -msgid "" -"<quote>ipa</quote> to change a password stored in an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:974 -msgid "" -"<quote>ldap</quote> to change a password stored in a LDAP server. See " -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:982 -msgid "" -"<quote>krb5</quote> to change the Kerberos password. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:990 -msgid "" -"<quote>proxy</quote> for relaying password changes to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:994 -msgid "<quote>none</quote> disallows password changes explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:997 -msgid "" -"Default: <quote>auth_provider</quote> is used if it is set and can handle " -"change password requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1004 -msgid "sudo_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1010 -msgid "The SUDO provider used for the domain. Supported SUDO providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1014 -msgid "" -"<quote>ldap</quote> for rules stored in LDAP. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1021 -msgid "<quote>none</quote> disables SUDO explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1024 -msgid "Default: The value of <quote>id_provider</quote> is used if it is set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1030 -msgid "session_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1033 -msgid "" -"The provider which should handle loading of session settings. Supported " -"session providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1038 -msgid "" -"<quote>ipa</quote> to load session settings from an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1046 -msgid "<quote>none</quote> disallows fetching session settings explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1049 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"session loading requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1056 -msgid "lookup_family_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1059 -msgid "" -"Provides the ability to select preferred address family to use when " -"performing DNS lookups." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1063 -msgid "Supported values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1066 -msgid "ipv4_first: Try looking up IPv4 address, if that fails, try IPv6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1069 -msgid "ipv4_only: Only attempt to resolve hostnames to IPv4 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1072 -msgid "ipv6_first: Try looking up IPv6 address, if that fails, try IPv4" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1075 -msgid "ipv6_only: Only attempt to resolve hostnames to IPv6 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1078 -msgid "Default: ipv4_first" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1084 -msgid "dns_resolver_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1087 -msgid "" -"Defines the amount of time (in seconds) to wait for a reply from the DNS " -"resolver before assuming that it is unreachable. If this timeout is reached, " -"the domain will continue to operate in offline mode." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1099 -msgid "dns_discovery_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1102 -msgid "" -"If service discovery is used in the back end, specifies the domain part of " -"the service discovery DNS query." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1106 -msgid "Default: Use the domain part of machine's hostname" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1112 -msgid "override_gid (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1115 -msgid "Override the primary GID value with the one specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1121 -msgid "case_sensitive (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1124 -msgid "" -"Treat user and group names as case sensitive. At the moment, this option is " -"not supported in the local provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1129 -msgid "Default: True" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:681 -msgid "" -"These configuration options can be present in a domain configuration " -"section, that is, in a section called <quote>[domain/<replaceable>NAME</" -"replaceable>]</quote> <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1141 -msgid "proxy_pam_target (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1144 -msgid "The proxy target PAM proxies to." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1147 -msgid "" -"Default: not set by default, you have to take an existing pam configuration " -"or create a new one and add the service name here." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1155 -msgid "proxy_lib_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1158 -msgid "" -"The name of the NSS library to use in proxy domains. The NSS functions " -"searched for in the library are in the form of _nss_$(libName)_$(function), " -"for example _nss_files_getpwent." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1137 -msgid "" -"Options valid for proxy domains. <placeholder type=\"variablelist\" id=" -"\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:1170 -msgid "The local domain section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:1172 -msgid "" -"This section contains settings for domain that stores users and groups in " -"SSSD native database, that is, a domain that uses " -"<replaceable>id_provider=local</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1179 -msgid "default_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1182 -msgid "The default shell for users created with SSSD userspace tools." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1186 -msgid "Default: <filename>/bin/bash</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1191 -msgid "base_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1194 -msgid "" -"The tools append the login name to <replaceable>base_directory</replaceable> " -"and use that as the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1199 -msgid "Default: <filename>/home</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1204 -msgid "create_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1207 -msgid "" -"Indicate if a home directory should be created by default for new users. " -"Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1211 sssd.conf.5.xml:1223 -msgid "Default: TRUE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1216 -msgid "remove_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1219 -msgid "" -"Indicate if a home directory should be removed by default for deleted " -"users. Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1228 -msgid "homedir_umask (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1231 -msgid "" -"Used by <citerefentry> <refentrytitle>sss_useradd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry> to specify the default permissions " -"on a newly created home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1239 -msgid "Default: 077" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1244 -msgid "skel_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1247 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<citerefentry> <refentrytitle>sss_useradd</refentrytitle> <manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1257 -msgid "Default: <filename>/etc/skel</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1262 -msgid "mail_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1265 -msgid "" -"The mail spool directory. This is needed to manipulate the mailbox when its " -"corresponding user account is modified or deleted. If not specified, a " -"default value is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1272 -msgid "Default: <filename>/var/mail</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1277 -msgid "userdel_cmd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1280 -msgid "" -"The command that is run after a user is removed. The command us passed the " -"username of the user being removed as the first and only parameter. The " -"return code of the command is not taken into account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1286 -msgid "Default: None, no command is run" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:1296 sssd-ldap.5.xml:2064 sssd-simple.5.xml:126 -#: sssd-ipa.5.xml:544 sssd-krb5.5.xml:432 -msgid "EXAMPLE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:1302 -#, no-wrap -msgid "" -"[sssd]\n" -"domains = LDAP\n" -"services = nss, pam\n" -"config_file_version = 2\n" -"\n" -"[nss]\n" -"filter_groups = root\n" -"filter_users = root\n" -"\n" -"[pam]\n" -"\n" -"[domain/LDAP]\n" -"id_provider = ldap\n" -"ldap_uri = ldap://ldap.example.com\n" -"ldap_search_base = dc=example,dc=com\n" -"\n" -"auth_provider = krb5\n" -"krb5_server = kerberos.example.com\n" -"krb5_realm = EXAMPLE.COM\n" -"cache_credentials = true\n" -"\n" -"min_id = 10000\n" -"max_id = 20000\n" -"enumerate = False\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1298 -msgid "" -"The following example shows a typical SSSD config. It does not describe " -"configuration of the domains themselves - refer to documentation on " -"configuring domains for more details. <placeholder type=\"programlisting\" " -"id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1333 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>pam_sss</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ldap.5.xml:10 sssd-ldap.5.xml:16 -msgid "sssd-ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:23 -msgid "" -"This manual page describes the configuration of LDAP domains for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. Refer to the <quote>FILE FORMAT</quote> section of the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for detailed syntax information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:35 -msgid "You can configure SSSD to use more than one LDAP domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:38 -msgid "" -"LDAP back end supports id, auth, access and chpass providers. If you want to " -"authenticate against an LDAP server either TLS/SSL or LDAPS is required. " -"<command>sssd</command> <emphasis>does not</emphasis> support authentication " -"over an unencrypted channel. If the LDAP server is used only as an identity " -"provider, an encrypted channel is not needed. Please refer to " -"<quote>ldap_access_filter</quote> config option for more information about " -"using LDAP as an access provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:49 sssd-simple.5.xml:69 sssd-ipa.5.xml:64 -#: sssd-krb5.5.xml:63 -msgid "CONFIGURATION OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:60 -msgid "ldap_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:63 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference. Refer to the <quote>FAILOVER</" -"quote> section for more information on failover and server redundancy. If " -"not specified, service discovery is enabled. For more information, refer to " -"the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:70 -msgid "The format of the URI must match the format defined in RFC 2732:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:73 -msgid "ldap[s]://<host>[:port]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:76 -msgid "" -"For explicit IPv6 addresses, <host> must be enclosed in brackets []" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:79 -msgid "example: ldap://[fc00::126:25]:389" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:85 -msgid "ldap_chpass_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:88 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference to change the password of a user. " -"Refer to the <quote>FAILOVER</quote> section for more information on " -"failover and server redundancy." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:95 -msgid "To enable service discovery ldap_chpass_dns_service_name must be set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:99 -msgid "Default: empty, i.e. ldap_uri is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:105 -msgid "ldap_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:108 -msgid "The default base DN to use for performing LDAP user operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:112 -msgid "" -"Starting with SSSD 1.7.0, SSSD supports multiple search bases using the " -"syntax:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:116 -msgid "search_base[?scope?[filter][?search_base?scope?[filter]]*]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:119 -msgid "The scope can be one of \"base\", \"onelevel\" or \"subtree\"." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:122 -msgid "" -"The filter must be a valid LDAP search filter as specified by http://www." -"ietf.org/rfc/rfc2254.txt" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:126 -msgid "Examples:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:129 -msgid "" -"ldap_search_base = dc=example,dc=com (which is equivalent to) " -"ldap_search_base = dc=example,dc=com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:134 -msgid "" -"ldap_search_base = cn=host_specific,dc=example,dc=com?subtree?" -"(host=thishost)?dc=example.com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:137 -msgid "" -"Note: It is unsupported to have multiple search bases which reference " -"identically-named objects (for example, groups with the same name in two " -"different search bases). This will lead to unpredictable behavior on client " -"machines." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:144 -msgid "" -"Default: If not set, the value of the defaultNamingContext or namingContexts " -"attribute from the RootDSE of the LDAP server is used. If " -"defaultNamingContext does not exists or has an empty value namingContexts is " -"used. The namingContexts attribute must have a single value with the DN of " -"the search base of the LDAP server to make this work. Multiple values are " -"are not supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:158 -msgid "ldap_schema (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:161 -msgid "" -"Specifies the Schema Type in use on the target LDAP server. Depending on " -"the selected schema, the default attribute names retrieved from the servers " -"may vary. The way that some attributes are handled may also differ. Three " -"schema types are currently supported: rfc2307 rfc2307bis IPA The main " -"difference between these schema types is how group memberships are recorded " -"in the server. With rfc2307, group members are listed by name in the " -"<emphasis>memberUid</emphasis> attribute. With rfc2307bis and IPA, group " -"members are listed by DN and stored in the <emphasis>member</emphasis> " -"attribute." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:180 -msgid "Default: rfc2307" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:186 -msgid "ldap_default_bind_dn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:189 -msgid "The default bind DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:196 -msgid "ldap_default_authtok_type (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:199 -msgid "The type of the authentication token of the default bind DN." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:203 -msgid "The two mechanisms currently supported are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:206 -msgid "password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:209 -msgid "obfuscated_password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:212 -msgid "Default: password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:218 -msgid "ldap_default_authtok (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:221 -msgid "" -"The authentication token of the default bind DN. Only clear text passwords " -"are currently supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:228 -msgid "ldap_user_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:231 -msgid "The object class of a user entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:234 -msgid "Default: posixAccount" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:240 -msgid "ldap_user_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:243 -msgid "The LDAP attribute that corresponds to the user's login name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:247 -msgid "Default: uid" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:253 -msgid "ldap_user_uid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:256 -msgid "The LDAP attribute that corresponds to the user's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:260 -msgid "Default: uidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:266 -msgid "ldap_user_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:269 -msgid "The LDAP attribute that corresponds to the user's primary group id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:273 sssd-ldap.5.xml:740 -msgid "Default: gidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:279 -msgid "ldap_user_gecos (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:282 -msgid "The LDAP attribute that corresponds to the user's gecos field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:286 -msgid "Default: gecos" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:292 -msgid "ldap_user_home_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:295 -msgid "The LDAP attribute that contains the name of the user's home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:299 -msgid "Default: homeDirectory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:305 -msgid "ldap_user_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:308 -msgid "The LDAP attribute that contains the path to the user's default shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:312 -msgid "Default: loginShell" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:318 -msgid "ldap_user_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:321 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP user object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:325 sssd-ldap.5.xml:766 sssd-ldap.5.xml:878 -msgid "Default: nsUniqueId" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:331 -msgid "ldap_user_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:334 sssd-ldap.5.xml:775 sssd-ldap.5.xml:887 -msgid "" -"The LDAP attribute that contains timestamp of the last modification of the " -"parent object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:338 sssd-ldap.5.xml:779 sssd-ldap.5.xml:894 -msgid "Default: modifyTimestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:344 -msgid "ldap_user_shadow_last_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:347 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (date of " -"the last password change)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:357 -msgid "Default: shadowLastChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:363 -msgid "ldap_user_shadow_min (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:366 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (minimum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:375 -msgid "Default: shadowMin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:381 -msgid "ldap_user_shadow_max (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:384 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (maximum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:393 -msgid "Default: shadowMax" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:399 -msgid "ldap_user_shadow_warning (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:402 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password warning period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:412 -msgid "Default: shadowWarning" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:418 -msgid "ldap_user_shadow_inactive (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:421 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password inactivity period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:431 -msgid "Default: shadowInactive" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:437 -msgid "ldap_user_shadow_expire (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:440 -msgid "" -"When using ldap_pwd_policy=shadow or ldap_account_expire_policy=shadow, this " -"parameter contains the name of an LDAP attribute corresponding to its " -"<citerefentry> <refentrytitle>shadow</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> counterpart (account expiration date)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:450 -msgid "Default: shadowExpire" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:456 -msgid "ldap_user_krb_last_pwd_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:459 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time of last password change in " -"kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:465 -msgid "Default: krbLastPwdChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:471 -msgid "ldap_user_krb_password_expiration (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:474 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time when current password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:480 -msgid "Default: krbPasswordExpiration" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:486 -msgid "ldap_user_ad_account_expires (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:489 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the expiration time of the account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:494 -msgid "Default: accountExpires" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:500 -msgid "ldap_user_ad_user_account_control (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:503 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the user account control bit field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:508 -msgid "Default: userAccountControl" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:514 -msgid "ldap_ns_account_lock (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:517 -msgid "" -"When using ldap_account_expire_policy=rhds or equivalent, this parameter " -"determines if access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:522 -msgid "Default: nsAccountLock" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:528 -msgid "ldap_user_nds_login_disabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:531 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines if " -"access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:535 sssd-ldap.5.xml:549 -msgid "Default: loginDisabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:541 -msgid "ldap_user_nds_login_expiration_time (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:544 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines until " -"which date access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:555 -msgid "ldap_user_nds_login_allowed_time_map (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:558 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines the " -"hours of a day in a week when access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:563 -msgid "Default: loginAllowedTimeMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:569 -msgid "ldap_user_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:572 -msgid "" -"The LDAP attribute that contains the user's Kerberos User Principal Name " -"(UPN)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:576 -msgid "Default: krbPrincipalName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:582 -msgid "ldap_user_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:585 -msgid "The LDAP attribute that contains the user's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:592 -msgid "ldap_force_upper_case_realm (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:595 -msgid "" -"Some directory servers, for example Active Directory, might deliver the " -"realm part of the UPN in lower case, which might cause the authentication to " -"fail. Set this option to a non-zero value if you want to use an upper-case " -"realm." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:608 -msgid "ldap_enumeration_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:611 -msgid "" -"Specifies how many seconds SSSD has to wait before refreshing its cache of " -"enumerated records." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:616 sssd-ldap.5.xml:1808 -msgid "Default: 300" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:622 -msgid "ldap_purge_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:625 -msgid "" -"Determine how often to check the cache for inactive entries (such as groups " -"with no members and users who have never logged in) and remove them to save " -"space." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:631 -msgid "Setting this option to zero will disable the cache cleanup operation." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:635 -msgid "Default: 10800 (12 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:641 -msgid "ldap_user_fullname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:644 -msgid "The LDAP attribute that corresponds to the user's full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:648 sssd-ldap.5.xml:727 sssd-ldap.5.xml:828 -#: sssd-ldap.5.xml:919 sssd-ldap.5.xml:1663 sssd-ldap.5.xml:1881 -#: sssd-ipa.5.xml:422 -msgid "Default: cn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:654 -msgid "ldap_user_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:657 -msgid "The LDAP attribute that lists the user's group memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:661 sssd-ipa.5.xml:326 -msgid "Default: memberOf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:667 -msgid "ldap_user_authorized_service (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:670 -msgid "" -"If access_provider=ldap and ldap_access_order=authorized_service, SSSD will " -"use the presence of the authorizedService attribute in the user's LDAP entry " -"to determine access privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:677 -msgid "" -"An explicit deny (!svc) is resolved first. Second, SSSD searches for " -"explicit allow (svc) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:682 -msgid "Default: authorizedService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:688 -msgid "ldap_user_authorized_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:691 -msgid "" -"If access_provider=ldap and ldap_access_order=host, SSSD will use the " -"presence of the host attribute in the user's LDAP entry to determine access " -"privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:697 -msgid "" -"An explicit deny (!host) is resolved first. Second, SSSD searches for " -"explicit allow (host) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:702 -msgid "Default: host" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:708 -msgid "ldap_group_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:711 -msgid "The object class of a group entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:714 -msgid "Default: posixGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:720 -msgid "ldap_group_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:723 -msgid "The LDAP attribute that corresponds to the group name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:733 -msgid "ldap_group_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:736 -msgid "The LDAP attribute that corresponds to the group's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:746 -msgid "ldap_group_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:749 -msgid "The LDAP attribute that contains the names of the group's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:753 -msgid "Default: memberuid (rfc2307) / member (rfc2307bis)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:759 -msgid "ldap_group_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:762 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP group object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:772 -msgid "ldap_group_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:785 -msgid "ldap_group_nesting_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:788 -msgid "" -"If ldap_schema is set to a schema format that supports nested groups (e.g. " -"RFC2307bis), then this option controls how many levels of nesting SSSD will " -"follow. This option has no effect on the RFC2307 schema." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:795 -msgid "Default: 2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:801 -msgid "ldap_netgroup_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:804 -msgid "The object class of a netgroup entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:807 -msgid "In IPA provider, ipa_netgroup_object_class should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:811 -msgid "Default: nisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:817 -msgid "ldap_netgroup_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:820 -msgid "The LDAP attribute that corresponds to the netgroup name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:824 -msgid "In IPA provider, ipa_netgroup_name should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:834 -msgid "ldap_netgroup_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:837 -msgid "The LDAP attribute that contains the names of the netgroup's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:841 -msgid "In IPA provider, ipa_netgroup_member should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:845 -msgid "Default: memberNisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:851 -msgid "ldap_netgroup_triple (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:854 -msgid "" -"The LDAP attribute that contains the (host, user, domain) netgroup triples." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:858 sssd-ldap.5.xml:891 -msgid "This option is not available in IPA provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:861 -msgid "Default: nisNetgroupTriple" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:867 -msgid "ldap_netgroup_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:870 -msgid "" -"The LDAP attribute that contains the UUID/GUID of an LDAP netgroup object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:874 -msgid "In IPA provider, ipa_netgroup_uuid should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:884 -msgid "ldap_netgroup_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:900 -msgid "ldap_service_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:903 -msgid "The object class of a service entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:906 -msgid "Default: ipService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:912 -msgid "ldap_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:915 -msgid "" -"The LDAP attribute that contains the name of service attributes and their " -"aliases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:925 -msgid "ldap_service_port (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:928 -msgid "The LDAP attribute that contains the port managed by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:932 -msgid "Default: ipServicePort" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:938 -msgid "ldap_service_proto (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:941 -msgid "" -"The LDAP attribute that contains the protocols understood by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:945 -msgid "Default: ipServiceProtocol" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:951 -msgid "ldap_service_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:954 -msgid "An optional base DN to restrict service searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:958 sssd-ldap.5.xml:1918 sssd-ldap.5.xml:1937 -#: sssd-ldap.5.xml:1956 sssd-ldap.5.xml:2019 sssd-ldap.5.xml:2041 -#: sssd-ipa.5.xml:163 sssd-ipa.5.xml:187 -msgid "" -"See <quote>ldap_search_base</quote> for information about configuring " -"multiple search bases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:963 sssd-ldap.5.xml:1923 sssd-ldap.5.xml:1942 -#: sssd-ldap.5.xml:1961 sssd-ldap.5.xml:2024 sssd-ldap.5.xml:2046 -#: sssd-ipa.5.xml:173 sssd-ipa.5.xml:192 -msgid "Default: the value of <emphasis>ldap_search_base</emphasis>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:970 -msgid "ldap_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:973 -msgid "" -"Specifies the timeout (in seconds) that ldap searches are allowed to run " -"before they are cancelled and cached results are returned (and offline mode " -"is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:979 -msgid "" -"Note: this option is subject to change in future versions of the SSSD. It " -"will likely be replaced at some point by a series of timeouts for specific " -"lookup types." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:985 sssd-ldap.5.xml:1027 sssd-ldap.5.xml:1042 -msgid "Default: 6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:991 -msgid "ldap_enumeration_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:994 -msgid "" -"Specifies the timeout (in seconds) that ldap searches for user and group " -"enumerations are allowed to run before they are cancelled and cached results " -"are returned (and offline mode is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1001 -msgid "Default: 60" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1007 -msgid "ldap_network_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1010 -msgid "" -"Specifies the timeout (in seconds) after which the <citerefentry> " -"<refentrytitle>poll</refentrytitle> <manvolnum>2</manvolnum> </citerefentry>/" -"<citerefentry> <refentrytitle>select</refentrytitle> <manvolnum>2</" -"manvolnum> </citerefentry> following a <citerefentry> " -"<refentrytitle>connect</refentrytitle> <manvolnum>2</manvolnum> </" -"citerefentry> returns in case of no activity." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1033 -msgid "ldap_opt_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1036 -msgid "" -"Specifies a timeout (in seconds) after which calls to synchronous LDAP APIs " -"will abort if no response is received. Also controls the timeout when " -"communicating with the KDC in case of SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1048 -msgid "ldap_connection_expire_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1051 -msgid "" -"Specifies a timeout (in seconds) that a connection to an LDAP server will be " -"maintained. After this time, the connection will be re-established. If used " -"in parallel with SASL/GSSAPI, the sooner of the two values (this value vs. " -"the TGT lifetime) will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1059 -msgid "Default: 900 (15 minutes)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1065 -msgid "ldap_page_size (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1068 -msgid "" -"Specify the number of records to retrieve from LDAP in a single request. " -"Some LDAP servers enforce a maximum limit per-request." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1073 -msgid "Default: 1000" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1079 -msgid "ldap_disable_paging" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1082 -msgid "" -"Disable the LDAP paging control. This option should be used if the LDAP " -"server reports that it supports the LDAP paging control in its RootDSE but " -"it is not enabled or does not behave properly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1088 -msgid "" -"Example: OpenLDAP servers with the paging control module installed on the " -"server but not enabled will report it in the RootDSE but be unable to use it." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1094 -msgid "" -"Example: 389 DS has a bug where it can only support a one paging control at " -"a time on a single connection. On busy clients, this can result in some " -"requests being denied." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1103 -msgid "ldap_deref_threshold (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1106 -msgid "" -"Specify the number of group members that must be missing from the internal " -"cache in order to trigger a dereference lookup. If less members are missing, " -"they are looked up individually." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1112 -msgid "" -"You can turn off dereference lookups completely by setting the value to 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1116 -msgid "" -"A dereference lookup is a means of fetching all group members in a single " -"LDAP call. Different LDAP servers may implement different dereference " -"methods. The currently supported servers are 389/RHDS, OpenLDAP and Active " -"Directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1124 -msgid "" -"<emphasis>Note:</emphasis> If any of the search bases specifies a search " -"filter, then the dereference lookup performance enhancement will be disabled " -"regardless of this setting." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1137 -msgid "ldap_tls_reqcert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1140 -msgid "" -"Specifies what checks to perform on server certificates in a TLS session, if " -"any. It can be specified as one of the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1146 -msgid "" -"<emphasis>never</emphasis> = The client will not request or check any server " -"certificate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1150 -msgid "" -"<emphasis>allow</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, it will be ignored and the session proceeds normally." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1157 -msgid "" -"<emphasis>try</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, the session is immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1163 -msgid "" -"<emphasis>demand</emphasis> = The server certificate is requested. If no " -"certificate is provided, or a bad certificate is provided, the session is " -"immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1169 -msgid "<emphasis>hard</emphasis> = Same as <quote>demand</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1173 -msgid "Default: hard" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1179 -msgid "ldap_tls_cacert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1182 -msgid "" -"Specifies the file that contains certificates for all of the Certificate " -"Authorities that <command>sssd</command> will recognize." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1187 sssd-ldap.5.xml:1205 sssd-ldap.5.xml:1246 -msgid "" -"Default: use OpenLDAP defaults, typically in <filename>/etc/openldap/ldap." -"conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1194 -msgid "ldap_tls_cacertdir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1197 -msgid "" -"Specifies the path of a directory that contains Certificate Authority " -"certificates in separate individual files. Typically the file names need to " -"be the hash of the certificate followed by '.0'. If available, " -"<command>cacertdir_rehash</command> can be used to create the correct names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1212 -msgid "ldap_tls_cert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1215 -msgid "Specifies the file that contains the certificate for the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1219 sssd-ldap.5.xml:1231 sssd-ldap.5.xml:1979 -#: sssd-ldap.5.xml:2006 sssd-krb5.5.xml:359 -msgid "Default: not set" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1225 -msgid "ldap_tls_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1228 -msgid "Specifies the file that contains the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1237 -msgid "ldap_tls_cipher_suite (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1240 -msgid "" -"Specifies acceptable cipher suites. Typically this is a colon sperated " -"list. See <citerefentry><refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> for format." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1253 -msgid "ldap_id_use_start_tls (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1256 -msgid "" -"Specifies that the id_provider connection must also use <systemitem class=" -"\"protocol\">tls</systemitem> to protect the channel." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1266 -msgid "ldap_sasl_mech (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1269 -msgid "" -"Specify the SASL mechanism to use. Currently only GSSAPI is tested and " -"supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1273 sssd-ldap.5.xml:1428 -msgid "Default: none" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1279 -msgid "ldap_sasl_authid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1282 -msgid "" -"Specify the SASL authorization id to use. When GSSAPI is used, this " -"represents the Kerberos principal used for authentication to the directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1287 -msgid "Default: host/machine.fqdn@REALM" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1293 -msgid "ldap_sasl_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1296 -msgid "" -"If set to true, the LDAP library would perform a reverse lookup to " -"canonicalize the host name during a SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1301 -msgid "Default: false;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1307 -msgid "ldap_krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1310 -msgid "Specify the keytab to use when using SASL/GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1313 -msgid "Default: System keytab, normally <filename>/etc/krb5.keytab</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1319 -msgid "ldap_krb5_init_creds (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1322 -msgid "" -"Specifies that the id_provider should init Kerberos credentials (TGT). This " -"action is performed only if SASL is used and the mechanism selected is " -"GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1334 -msgid "ldap_krb5_ticket_lifetime (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1337 -msgid "Specifies the lifetime in seconds of the TGT if GSSAPI is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1341 -msgid "Default: 86400 (24 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1347 sssd-krb5.5.xml:74 -msgid "krb5_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1350 sssd-krb5.5.xml:77 -msgid "" -"Specifies the comma-separated list of IP addresses or hostnames of the " -"Kerberos servers to which SSSD should connect in the order of preference. " -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. An optional port number (preceded by a " -"colon) may be appended to the addresses or hostnames. If empty, service " -"discovery is enabled - for more information, refer to the <quote>SERVICE " -"DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1362 sssd-krb5.5.xml:89 -msgid "" -"When using service discovery for KDC or kpasswd servers, SSSD first searches " -"for DNS entries that specify _udp as the protocol and falls back to _tcp if " -"none are found." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1367 sssd-krb5.5.xml:94 -msgid "" -"This option was named <quote>krb5_kdcip</quote> in earlier releases of SSSD. " -"While the legacy name is recognized for the time being, users are advised to " -"migrate their config files to use <quote>krb5_server</quote> instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1376 sssd-ipa.5.xml:216 sssd-krb5.5.xml:103 -msgid "krb5_realm (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1379 -msgid "Specify the Kerberos REALM (for SASL/GSSAPI auth)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1382 -msgid "Default: System defaults, see <filename>/etc/krb5.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1388 sssd-ipa.5.xml:231 sssd-krb5.5.xml:409 -msgid "krb5_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1391 -msgid "" -"Specifies if the host principal should be canonicalized when connecting to " -"LDAP server. This feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1403 -msgid "ldap_pwd_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1406 -msgid "" -"Select the policy to evaluate the password expiration on the client side. " -"The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1411 -msgid "" -"<emphasis>none</emphasis> - No evaluation on the client side. This option " -"cannot disable server-side password policies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1416 -msgid "" -"<emphasis>shadow</emphasis> - Use <citerefentry><refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum></citerefentry> style attributes to " -"evaluate if the password has expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1422 -msgid "" -"<emphasis>mit_kerberos</emphasis> - Use the attributes used by MIT Kerberos " -"to determine if the password has expired. Use chpass_provider=krb5 to update " -"these attributes when the password is changed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1434 -msgid "ldap_referrals (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1437 -msgid "Specifies whether automatic referral chasing should be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1441 -msgid "" -"Please note that sssd only supports referral chasing when it is compiled " -"with OpenLDAP version 2.4.13 or higher." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1452 -msgid "ldap_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1455 -msgid "Specifies the service name to use when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1459 -msgid "Default: ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1465 -msgid "ldap_chpass_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1468 -msgid "" -"Specifies the service name to use to find an LDAP server which allows " -"password changes when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1473 -msgid "Default: not set, i.e. service discovery is disabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1479 -msgid "ldap_access_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1482 -msgid "" -"If using access_provider = ldap, this option is mandatory. It specifies an " -"LDAP search filter criteria that must be met for the user to be granted " -"access on this host. If access_provider = ldap and this option is not set, " -"it will result in all users being denied access. Use access_provider = allow " -"to change this default behavior." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1492 sssd-ldap.5.xml:1982 -msgid "Example:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1495 -#, no-wrap -msgid "" -"access_provider = ldap\n" -"ldap_access_filter = memberOf=cn=allowedusers,ou=Groups,dc=example,dc=com\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1499 -msgid "" -"This example means that access to this host is restricted to members of the " -"\"allowedusers\" group in ldap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1504 -msgid "" -"Offline caching for this feature is limited to determining whether the " -"user's last online login was granted access permission. If they were granted " -"access during their last login, they will continue to be granted access " -"while offline and vice-versa." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1512 sssd-ldap.5.xml:1562 -msgid "Default: Empty" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1518 -msgid "ldap_account_expire_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1521 -msgid "" -"With this option a client side evaluation of access control attributes can " -"be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1525 -msgid "" -"Please note that it is always recommended to use server side access control, " -"i.e. the LDAP server should deny the bind request with a suitable error code " -"even if the password is correct." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1532 -msgid "The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1535 -msgid "" -"<emphasis>shadow</emphasis>: use the value of ldap_user_shadow_expire to " -"determine if the account is expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1540 -msgid "" -"<emphasis>ad</emphasis>: use the value of the 32bit field " -"ldap_user_ad_user_account_control and allow access if the second bit is not " -"set. If the attribute is missing access is granted. Also the expiration time " -"of the account is checked." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1547 -msgid "" -"<emphasis>rhds</emphasis>, <emphasis>ipa</emphasis>, <emphasis>389ds</" -"emphasis>: use the value of ldap_ns_account_lock to check if access is " -"allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1553 -msgid "" -"<emphasis>nds</emphasis>: the values of " -"ldap_user_nds_login_allowed_time_map, ldap_user_nds_login_disabled and " -"ldap_user_nds_login_expiration_time are used to check if access is allowed. " -"If both attributes are missing access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1568 -msgid "ldap_access_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1571 -msgid "Comma separated list of access control options. Allowed values are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1575 -msgid "<emphasis>filter</emphasis>: use ldap_access_filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1578 -msgid "<emphasis>expire</emphasis>: use ldap_account_expire_policy" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1582 -msgid "" -"<emphasis>authorized_service</emphasis>: use the authorizedService attribute " -"to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1587 -msgid "<emphasis>host</emphasis>: use the host attribute to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1591 -msgid "Default: filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1594 -msgid "" -"Please note that it is a configuration error if a value is used more than " -"once." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1601 -msgid "ldap_deref (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1604 -msgid "" -"Specifies how alias dereferencing is done when performing a search. The " -"following options are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1609 -msgid "<emphasis>never</emphasis>: Aliases are never dereferenced." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1613 -msgid "" -"<emphasis>searching</emphasis>: Aliases are dereferenced in subordinates of " -"the base object, but not in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1618 -msgid "" -"<emphasis>finding</emphasis>: Aliases are only dereferenced when locating " -"the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1623 -msgid "" -"<emphasis>always</emphasis>: Aliases are dereferenced both in searching and " -"in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1628 -msgid "" -"Default: Empty (this is handled as <emphasis>never</emphasis> by the LDAP " -"client libraries)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:51 -msgid "" -"All of the common configuration options that apply to SSSD domains also " -"apply to LDAP domains. Refer to the <quote>DOMAIN SECTIONS</quote> section " -"of the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for full details. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1639 -msgid "SUDO OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1644 -msgid "ldap_sudorule_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1647 -msgid "The object class of a sudo rule entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1650 -msgid "Default: sudoRole" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1656 -msgid "ldap_sudorule_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1659 -msgid "The LDAP attribute that corresponds to the sudo rule name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1669 -msgid "ldap_sudorule_command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1672 -msgid "The LDAP attribute that corresponds to the command name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1676 -msgid "Default: sudoCommand" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1682 -msgid "ldap_sudorule_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1685 -msgid "" -"The LDAP attribute that corresponds to the host name (or host IP address, " -"host IP network, or host netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1690 -msgid "Default: sudoHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1696 -msgid "ldap_sudorule_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1699 -msgid "" -"The LDAP attribute that corresponds to the user name (or UID, group name or " -"user's netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1703 -msgid "Default: sudoUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1709 -msgid "ldap_sudorule_option (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1712 -msgid "The LDAP attribute that corresponds to the sudo options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1716 -msgid "Default: sudoOption" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1722 -msgid "ldap_sudorule_runasuser (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1725 -msgid "" -"The LDAP attribute that corresponds to the user name that commands may be " -"run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1729 -msgid "Default: sudoRunAsUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1735 -msgid "ldap_sudorule_runasgroup (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1738 -msgid "" -"The LDAP attribute that corresponds to the group name or group GID that " -"commands may be run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1742 -msgid "Default: sudoRunAsGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1748 -msgid "ldap_sudorule_notbefore (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1751 -msgid "" -"The LDAP attribute that corresponds to the start date/time for when the sudo " -"rule is valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1755 -msgid "Default: sudoNotBefore" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1761 -msgid "ldap_sudorule_notafter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1764 -msgid "" -"The LDAP attribute that corresponds to the expiration date/time, after which " -"the sudo rule will no longer be valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1769 -msgid "Default: sudoNotAfter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1775 -msgid "ldap_sudorule_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1778 -msgid "The LDAP attribute that corresponds to the ordering index of the rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1782 -msgid "Default: sudoOrder" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1788 -msgid "ldap_sudo_refresh_enabled (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1791 -msgid "" -"Enables periodical download of all sudo rules. The cache is purged before " -"each update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1801 -msgid "ldap_sudo_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1804 -msgid "" -"How many seconds SSSD has to wait before refreshing its cache of sudo rules." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1642 -msgid "<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1815 -msgid "" -"This manual page only describes attribute name mapping. For detailed " -"explanation of sudo related attribute semantics, see <citerefentry> " -"<refentrytitle>sudoers.ldap</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1825 -msgid "AUTOFS OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1827 -msgid "" -"Please note that the default values correspond to the default schema which " -"is RFC2307." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1834 -msgid "ldap_autofs_map_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1837 sssd-ldap.5.xml:1863 -msgid "The object class of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1840 sssd-ldap.5.xml:1867 -msgid "Default: automountMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1847 -msgid "ldap_autofs_map_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1850 -msgid "The name of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1853 -msgid "Default: ou" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1860 -msgid "ldap_autofs_entry_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1874 -msgid "ldap_autofs_entry_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1877 sssd-ldap.5.xml:1891 -msgid "" -"The key of an automount entry in LDAP. The entry usually corresponds to a " -"mount point." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1888 -msgid "ldap_autofs_entry_value (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1895 -msgid "Default: automountInformation" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1832 -msgid "" -"<placeholder type=\"variablelist\" id=\"0\"/> <placeholder type=" -"\"variablelist\" id=\"1\"/> <placeholder type=\"variablelist\" id=\"2\"/> " -"<placeholder type=\"variablelist\" id=\"3\"/> <placeholder type=" -"\"variablelist\" id=\"4\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1904 -msgid "ADVANCED OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1911 -msgid "ldap_netgroup_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1914 -msgid "" -"An optional base DN to restrict netgroup searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1930 -msgid "ldap_user_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1933 -msgid "An optional base DN to restrict user searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1949 -msgid "ldap_group_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1952 -msgid "An optional base DN to restrict group searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1968 -msgid "ldap_user_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1971 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict user searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1975 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_user_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1985 -#, no-wrap -msgid "" -" ldap_user_search_filter = (loginShell=/bin/tcsh)\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1988 -msgid "" -"This filter would restrict user searches to users that have their shell set " -"to /bin/tcsh." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1995 -msgid "ldap_group_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1998 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict group searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2002 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_group_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2012 -msgid "ldap_sudo_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2015 -msgid "" -"An optional base DN to restrict sudo rules searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2034 -msgid "ldap_autofs_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2037 -msgid "" -"An optional base DN to restrict automounter searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1906 -msgid "" -"These options are supported by LDAP domains, but they should be used with " -"caution. Please include them in your configuration only if you know what you " -"are doing. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2066 -msgid "" -"The following example assumes that SSSD is correctly configured and LDAP is " -"set to one of the domains in the <replaceable>[domains]</replaceable> " -"section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ldap.5.xml:2072 -#, no-wrap -msgid "" -" [domain/LDAP]\n" -" id_provider = ldap\n" -" auth_provider = ldap\n" -" ldap_uri = ldap://ldap.mydomain.org\n" -" ldap_search_base = dc=mydomain,dc=org\n" -" ldap_tls_reqcert = demand\n" -" cache_credentials = true\n" -" enumerate = true\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2071 sssd-simple.5.xml:134 sssd-ipa.5.xml:552 -#: sssd-krb5.5.xml:441 -msgid "<placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:2085 sssd_krb5_locator_plugin.8.xml:61 -msgid "NOTES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2087 -msgid "" -"The descriptions of some of the configuration options in this manual page " -"are based on the <citerefentry> <refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page from the OpenLDAP 2.4 " -"distribution." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2098 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <refentryinfo> -#: pam_sss.8.xml:8 include/upstream.xml:2 -msgid "" -"<productname>SSSD</productname> <orgname>The SSSD upstream - http://" -"fedorahosted.org/sssd</orgname>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: pam_sss.8.xml:13 pam_sss.8.xml:18 -msgid "pam_sss" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: pam_sss.8.xml:19 -msgid "PAM module for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: pam_sss.8.xml:24 -msgid "" -"<command>pam_sss.so</command> <arg choice='opt'> <replaceable>quiet</" -"replaceable> </arg> <arg choice='opt'> <replaceable>forward_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_first_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_authtok</" -"replaceable> </arg> <arg choice='opt'> <replaceable>retry=N</replaceable> </" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:45 -msgid "" -"<command>pam_sss.so</command> is the PAM interface to the System Security " -"Services daemon (SSSD). Errors and results are logged through <command>syslog" -"(3)</command> with the LOG_AUTHPRIV facility." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:55 -msgid "<option>quiet</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:58 -msgid "Suppress log messages for unknown users." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:63 -msgid "<option>forward_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:66 -msgid "" -"If <option>forward_pass</option> is set the entered password is put on the " -"stack for other PAM modules to use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:73 -msgid "<option>use_first_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:76 -msgid "" -"The argument use_first_pass forces the module to use a previous stacked " -"modules password and will never prompt the user - if no password is " -"available or the password is not appropriate, the user will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:84 -msgid "<option>use_authtok</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:87 -msgid "" -"When password changing enforce the module to set the new password to the one " -"provided by a previously stacked password module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:94 -msgid "<option>retry=N</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:97 -msgid "" -"If specified the user is asked another N times for a password if " -"authentication fails. Default is 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:99 -msgid "" -"Please note that this option might not work as expected if the application " -"calling PAM handles the user dialog on its own. A typical example is " -"<command>sshd</command> with <option>PasswordAuthentication</option>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:110 -msgid "MODULE TYPES PROVIDED" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:111 -msgid "" -"All module types (<option>account</option>, <option>auth</option>, " -"<option>password</option> and <option>session</option>) are provided." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:117 -msgid "FILES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:118 -msgid "" -"If a password reset by root fails, because the corresponding SSSD provider " -"does not support password resets, an individual message can be displayed. " -"This message can e.g. contain instructions about how to reset a password." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:123 -msgid "" -"The message is read from the file <filename>pam_sss_pw_reset_message.LOC</" -"filename> where LOC stands for a locale string returned by <citerefentry> " -"<refentrytitle>setlocale</refentrytitle><manvolnum>3</manvolnum> </" -"citerefentry>. If there is no matching file the content of " -"<filename>pam_sss_pw_reset_message.txt</filename> is displayed. Root must be " -"the owner of the files and only root may have read and write permissions " -"while all other users must have only read permissions." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:133 -msgid "" -"These files are searched in the directory <filename>/etc/sssd/customize/" -"DOMAIN_NAME/</filename>. If no matching file is present a generic message is " -"displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:141 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd_krb5_locator_plugin.8.xml:10 sssd_krb5_locator_plugin.8.xml:15 -msgid "sssd_krb5_locator_plugin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:22 -msgid "" -"The Kerberos locator plugin <command>sssd_krb5_locator_plugin</command> is " -"used by the Kerberos provider of <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry> to tell the Kerberos " -"libraries what Realm and which KDC to use. Typically this is done in " -"<citerefentry> <refentrytitle>krb5.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> which is always read by the Kerberos libraries. " -"To simplify the configuration the Realm and the KDC can be defined in " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> as described in <citerefentry> " -"<refentrytitle>sssd-krb5.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry> puts the Realm and the name or IP address of the KDC into " -"the environment variables SSSD_KRB5_REALM and SSSD_KRB5_KDC respectively. " -"When <command>sssd_krb5_locator_plugin</command> is called by the kerberos " -"libraries it reads and evaluates these variables and returns them to the " -"libraries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:63 -msgid "" -"Not all Kerberos implementations support the use of plugins. If " -"<command>sssd_krb5_locator_plugin</command> is not available on your system " -"you have to edit /etc/krb5.conf to reflect your Kerberos setup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:69 -msgid "" -"If the environment variable SSSD_KRB5_LOCATOR_DEBUG is set to any value " -"debug messages will be sent to stderr." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:77 -msgid "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-simple.5.xml:10 sssd-simple.5.xml:16 -msgid "sssd-simple" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd-simple.5.xml:17 -msgid "the configuration file for SSSD's 'simple' access-control provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:24 -msgid "" -"This manual page describes the configuration of the simple access-control " -"provider for <citerefentry> <refentrytitle>sssd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry>. For a detailed syntax reference, " -"refer to the <quote>FILE FORMAT</quote> section of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:38 -msgid "" -"The simple access provider grants or denies access based on an access or " -"deny list of user or group names. The following rules apply:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:43 -msgid "If all lists are empty, access is granted" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:47 -msgid "" -"If any list is provided, the order of evaluation is allow,deny. This means " -"that any matching deny rule will supersede any matched allow rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:54 -msgid "" -"If either or both \"allow\" lists are provided, all users are denied unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:60 -msgid "" -"If only \"deny\" lists are provided, all users are granted access unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:78 -msgid "simple_allow_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:81 -msgid "Comma separated list of users who are allowed to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:88 -msgid "simple_deny_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:91 -msgid "Comma separated list of users who are explicitly denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:97 -msgid "simple_allow_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:100 -msgid "" -"Comma separated list of groups that are allowed to log in. This applies only " -"to groups within this SSSD domain. Local groups are not evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:108 -msgid "simple_deny_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:111 -msgid "" -"Comma separated list of groups that are explicitly denied access. This " -"applies only to groups within this SSSD domain. Local groups are not " -"evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:70 sssd-ipa.5.xml:65 -msgid "" -"Refer to the section <quote>DOMAIN SECTIONS</quote> of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page for details on the configuration of an SSSD " -"domain. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:120 -msgid "" -"Please note that it is an configuration error if both, simple_allow_users " -"and simple_deny_users, are defined." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:128 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the simple access provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-simple.5.xml:135 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" access_provider = simple\n" -" simple_allow_users = user1, user2\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:145 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ipa.5.xml:10 sssd-ipa.5.xml:16 -msgid "sssd-ipa" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:23 -msgid "" -"This manual page describes the configuration of the IPA provider for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. For a detailed syntax reference, refer to the <quote>FILE " -"FORMAT</quote> section of the <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:36 -msgid "" -"The IPA provider is a back end used to connect to an IPA server. (Refer to " -"the freeipa.org web site for information about IPA servers.) This provider " -"requires that the machine be joined to the IPA domain; configuration is " -"almost entirely self-discovered and obtained directly from the server." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:43 -msgid "" -"The IPA provider accepts the same options used by the <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> identity provider and the <citerefentry> <refentrytitle>sssd-" -"krb5</refentrytitle> <manvolnum>5</manvolnum> </citerefentry> authentication " -"provider with some exceptions described below." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:55 -msgid "" -"However, it is neither necessary nor recommended to set these options. IPA " -"provider can also be used as an access and chpass provider. As an access " -"provider it uses HBAC (host-based access control) rules. Please refer to " -"freeipa.org for more information about HBAC. No configuration of access " -"provider is required on the client side." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:72 -msgid "ipa_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:75 -msgid "" -"Specifies the name of the IPA domain. This is optional. If not provided, " -"the configuration domain name is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:83 -msgid "ipa_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:86 -msgid "" -"The comma-separated list of IP addresses or hostnames of the IPA servers to " -"which SSSD should connect in the order of preference. For more information " -"on failover and server redundancy, see the <quote>FAILOVER</quote> section. " -"This is optional if autodiscovery is enabled. For more information on " -"service discovery, refer to the the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:99 -msgid "ipa_hostname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:102 -msgid "" -"Optional. May be set on machines where the hostname(5) does not reflect the " -"fully qualified name used in the IPA domain to identify this host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:110 -msgid "ipa_dyndns_update (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:113 -msgid "" -"Optional. This option tells SSSD to automatically update the DNS server " -"built into FreeIPA v2 with the IP address of this client." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:118 -msgid "" -"NOTE: On older systems (such as RHEL 5), for this behavior to work reliably, " -"the default Kerberos realm must be set properly in /etc/krb5.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:129 -msgid "ipa_dyndns_iface (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:132 -msgid "" -"Optional. Applicable only when ipa_dyndns_update is true. Choose the " -"interface whose IP address should be used for dynamic DNS updates." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:137 -msgid "Default: Use the IP address of the IPA LDAP connection" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:143 -msgid "ipa_hbac_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:146 -msgid "Optional. Use the given string as search base for HBAC related objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:150 -msgid "Default: Use base DN" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:156 -msgid "ipa_host_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:159 -msgid "Optional. Use the given string as search base for host objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:168 -msgid "" -"If filter is given in any of search bases and " -"<emphasis>ipa_hbac_support_srchost</emphasis> is set to False, the filter " -"will be ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:180 -msgid "ipa_selinux_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:183 -msgid "Optional. Use the given string as search base for SELinux user maps." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:199 sssd-krb5.5.xml:229 -msgid "krb5_validate (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:202 sssd-krb5.5.xml:232 -msgid "" -"Verify with the help of krb5_keytab that the TGT obtained has not been " -"spoofed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:209 -msgid "" -"Note that this default differs from the traditional Kerberos provider back " -"end." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:219 -msgid "" -"The name of the Kerberos realm. This is optional and defaults to the value " -"of <quote>ipa_domain</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:223 -msgid "" -"The name of the Kerberos realm has a special meaning in IPA - it is " -"converted into the base DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:234 -msgid "" -"Specifies if the host and user principal should be canonicalized when " -"connecting to IPA LDAP and also for AS requests. This feature is available " -"with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:247 -msgid "ipa_hbac_refresh (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:250 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server. " -"This will reduce the latency and load on the IPA server if there are many " -"access-control requests made in a short period." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:257 -msgid "Default: 5 (seconds)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:262 -msgid "ipa_hbac_treat_deny_as (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:265 -msgid "" -"This option specifies how to treat the deprecated DENY-type HBAC rules. As " -"of FreeIPA v2.1, DENY rules are no longer supported on the server. All users " -"of FreeIPA will need to migrate their rules to use only the ALLOW rules. The " -"client will support two modes of operation during this transition period:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:274 -msgid "" -"<emphasis>DENY_ALL</emphasis>: If any HBAC DENY rules are detected, all " -"users will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:279 -msgid "" -"<emphasis>IGNORE</emphasis>: SSSD will ignore any DENY rules. Be very " -"careful with this option, as it may result in opening unintended access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:284 -msgid "Default: DENY_ALL" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:289 -msgid "ipa_hbac_support_srchost (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:292 -msgid "" -"If this is set to false, then srchost as given to SSSD by PAM will be " -"ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:296 -msgid "" -"Note that if set to <emphasis>False</emphasis>, this option casuses filters " -"given in <emphasis>ipa_host_search_base</emphasis> to be ignored;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:307 -msgid "ipa_automount_location (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:310 -msgid "The automounter location this IPA client will be using" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:313 -msgid "Default: The location named \"default\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:319 -msgid "ipa_netgroup_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:322 -msgid "The LDAP attribute that lists netgroup's memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:331 -msgid "ipa_netgroup_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:334 -msgid "" -"The LDAP attribute that lists system users and groups that are direct " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:339 sssd-ipa.5.xml:434 -msgid "Default: memberUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:344 -msgid "ipa_netgroup_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:347 -msgid "" -"The LDAP attribute that lists hosts and host groups that are direct members " -"of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:351 sssd-ipa.5.xml:446 -msgid "Default: memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:356 -msgid "ipa_netgroup_member_ext_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:359 -msgid "" -"The LDAP attribute that lists FQDNs of hosts and host groups that are " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:363 -msgid "Default: externalHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:368 -msgid "ipa_netgroup_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:371 -msgid "The LDAP attribute that contains NIS domain name of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:375 -msgid "Default: nisDomainName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:381 -msgid "ipa_host_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:384 sssd-ipa.5.xml:407 -msgid "The object class of a host entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:387 sssd-ipa.5.xml:410 -msgid "Default: ipaHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:392 -msgid "ipa_host_fqdn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:395 -msgid "The LDAP attribute that contains FQDN of the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:398 -msgid "Default: fqdn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:404 -msgid "ipa_selinux_usermap_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:415 -msgid "ipa_selinux_usermap_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:418 -msgid "The LDAP attribute that contains the name of SELinux usermap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:427 -msgid "ipa_selinux_usermap_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:430 -msgid "" -"The LDAP attribute that contains all users / groups this rule match against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:439 -msgid "ipa_selinux_usermap_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:442 -msgid "" -"The LDAP attribute that contains all hosts / hostgroups this rule match " -"against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:451 -msgid "ipa_selinux_usermap_see_also (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:454 -msgid "" -"The LDAP attribute that contains DN of HBAC rule which can be used for " -"matching instead of memberUser and memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:459 -msgid "Default: seeAlso" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:464 -msgid "ipa_selinux_usermap_selinux_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:467 -msgid "The LDAP attribute that contains SELinux user string itself." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:471 -msgid "Default: ipaSELinuxUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:476 -msgid "ipa_selinux_usermap_enabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:479 -msgid "" -"The LDAP attribute that contains whether or not is user map enabled for " -"usage." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:483 -msgid "Default: ipaEnabledFlag" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:488 -msgid "ipa_selinux_usermap_user_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:491 -msgid "The LDAP attribute that contains user category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:495 -msgid "Default: userCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:500 -msgid "ipa_selinux_usermap_host_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:503 -msgid "The LDAP attribute that contains host category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:507 -msgid "Default: hostCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:512 -msgid "ipa_selinux_usermap_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:515 -msgid "The LDAP attribute that contains unique ID of the user map." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:519 -msgid "Default: ipaUniqueID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:524 -msgid "ipa_host_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:527 -msgid "The LDAP attribute that contains the host's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:531 -msgid "Default: ipaSshPubKey" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:546 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the ipa provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ipa.5.xml:553 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" id_provider = ipa\n" -" ipa_server = ipaserver.example.com\n" -" ipa_hostname = myhost.example.com\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:564 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.8.xml:10 sssd.8.xml:15 -msgid "sssd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.8.xml:16 -msgid "System Security Services Daemon" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sssd.8.xml:21 -msgid "" -"<command>sssd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:31 -msgid "" -"<command>SSSD</command> provides a set of daemons to manage access to remote " -"directories and authentication mechanisms. It provides an NSS and PAM " -"interface toward the system and a pluggable backend system to connect to " -"multiple different account sources as well as D-Bus interface. It is also " -"the basis to provide client auditing and policy services for projects like " -"FreeIPA. It provides a more robust database to store local users as well as " -"extended user data." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:46 -msgid "" -"<option>-d</option>,<option>--debug-level</option> <replaceable>LEVEL</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:53 -msgid "<option>--debug-timestamps=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:57 -msgid "<emphasis>1</emphasis>: Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:60 -msgid "<emphasis>0</emphasis>: Disable timestamp in the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:69 -msgid "<option>--debug-microseconds=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:73 -msgid "" -"<emphasis>1</emphasis>: Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:76 -msgid "<emphasis>0</emphasis>: Disable microseconds in timestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:79 -msgid "Default: 0" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:85 -msgid "<option>-f</option>,<option>--debug-to-files</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:89 -msgid "" -"Send the debug output to files instead of stderr. By default, the log files " -"are stored in <filename>/var/log/sssd</filename> and there are separate log " -"files for every SSSD service and domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:97 -msgid "<option>-D</option>,<option>--daemon</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:101 -msgid "Become a daemon after starting up." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:107 -msgid "<option>-i</option>,<option>--interactive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:111 -msgid "Run in the foreground, don't become a daemon." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:117 sss_debuglevel.8.xml:42 -msgid "<option>-c</option>,<option>--config</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:121 sss_debuglevel.8.xml:46 -msgid "" -"Specify a non-default config file. The default is <filename>/etc/sssd/sssd." -"conf</filename>. For reference on the config file syntax and options, " -"consult the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:135 -msgid "<option>--version</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:139 -msgid "Print version number and exit." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.8.xml:147 -msgid "Signals" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:150 -msgid "SIGTERM/SIGINT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:153 -msgid "" -"Informs the SSSD to gracefully terminate all of its child processes and then " -"shut down the monitor." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:159 -msgid "SIGHUP" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:162 -msgid "" -"Tells the SSSD to stop writing to its current debug file descriptors and to " -"close and reopen them. This is meant to facilitate log rolling with programs " -"like logrotate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:170 -msgid "SIGUSR1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:173 -msgid "" -"Tells the SSSD to simulate offline operation for one minute. This is mostly " -"useful for testing purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:179 -msgid "SIGUSR2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:182 -msgid "" -"Tells the SSSD to go online immediately. This is mostly useful for testing " -"purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:193 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_obfuscate.8.xml:10 sss_obfuscate.8.xml:15 -msgid "sss_obfuscate" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_obfuscate.8.xml:16 -msgid "obfuscate a clear text password" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_obfuscate.8.xml:21 -msgid "" -"<command>sss_obfuscate</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>[PASSWORD]</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:32 -msgid "" -"<command>sss_obfuscate</command> converts a given password into human-" -"unreadable format and places it into appropriate domain section of the SSSD " -"config file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:37 -msgid "" -"The cleartext password is read from standard input or entered " -"interactively. The obfuscated password is put into " -"<quote>ldap_default_authtok</quote> parameter of a given SSSD domain and the " -"<quote>ldap_default_authtok_type</quote> parameter is set to " -"<quote>obfuscated_password</quote>. Refer to <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more details on these parameters." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:49 -msgid "" -"Please note that obfuscating the password provides <emphasis>no real " -"security benefit</emphasis> as it is still possible for an attacker to " -"reverse-engineer the password back. Using better authentication mechanisms " -"such as client side certificates or GSSAPI is <emphasis>strongly</emphasis> " -"advised." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:63 -msgid "<option>-s</option>,<option>--stdin</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:67 -msgid "The password to obfuscate will be read from standard input." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:74 sss_ssh_authorizedkeys.1.xml:82 -#: sss_ssh_knownhostsproxy.1.xml:81 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>DOMAIN</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:79 -msgid "" -"The SSSD domain to use the password in. The default name is <quote>default</" -"quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:86 -msgid "" -"<option>-f</option>,<option>--file</option> <replaceable>FILE</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:91 -msgid "Read the config file specified by the positional parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:95 -msgid "Default: <filename>/etc/sssd/sssd.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:105 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_useradd.8.xml:10 sss_useradd.8.xml:15 -msgid "sss_useradd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_useradd.8.xml:16 -msgid "create a new user" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_useradd.8.xml:21 -msgid "" -"<command>sss_useradd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:32 -msgid "" -"<command>sss_useradd</command> creates a new user account using the values " -"specified on the command line plus the default values from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:43 -msgid "" -"<option>-u</option>,<option>--uid</option> <replaceable>UID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:48 -msgid "" -"Set the UID of the user to the value of <replaceable>UID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:55 sss_usermod.8.xml:43 -msgid "" -"<option>-c</option>,<option>--gecos</option> <replaceable>COMMENT</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:60 sss_usermod.8.xml:48 -msgid "" -"Any text string describing the user. Often used as the field for the user's " -"full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:67 sss_usermod.8.xml:55 -msgid "" -"<option>-h</option>,<option>--home</option> <replaceable>HOME_DIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:72 -msgid "" -"The home directory of the user account. The default is to append the " -"<replaceable>LOGIN</replaceable> name to <filename>/home</filename> and use " -"that as the home directory. The base that is prepended before " -"<replaceable>LOGIN</replaceable> is tunable with <quote>user_defaults/" -"baseDirectory</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:82 sss_usermod.8.xml:66 -msgid "" -"<option>-s</option>,<option>--shell</option> <replaceable>SHELL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:87 -msgid "" -"The user's login shell. The default is currently <filename>/bin/bash</" -"filename>. The default can be changed with <quote>user_defaults/" -"defaultShell</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:96 -msgid "" -"<option>-G</option>,<option>--groups</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:101 -msgid "A list of existing groups this user is also a member of." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:107 -msgid "<option>-m</option>,<option>--create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:111 -msgid "" -"Create the user's home directory if it does not exist. The files and " -"directories contained in the skeleton directory (which can be defined with " -"the -k option or in the config file) will be copied to the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:121 -msgid "<option>-M</option>,<option>--no-create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:125 -msgid "" -"Do not create the user's home directory. Overrides configuration settings." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:132 -msgid "" -"<option>-k</option>,<option>--skel</option> <replaceable>SKELDIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:137 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<command>sss_useradd</command>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:143 -msgid "" -"This option is only valid if the <option>-m</option> (or <option>--create-" -"home</option>) option is specified, or creation of home directories is set " -"to TRUE in the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:152 sss_usermod.8.xml:124 -msgid "" -"<option>-Z</option>,<option>--selinux-user</option> " -"<replaceable>SELINUX_USER</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:157 -msgid "" -"The SELinux user for the user's login. If not specified, the system default " -"will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:169 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-krb5.5.xml:10 sssd-krb5.5.xml:16 -msgid "sssd-krb5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:23 -msgid "" -"This manual page describes the configuration of the Kerberos 5 " -"authentication backend for <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry>. For a detailed " -"syntax reference, please refer to the <quote>FILE FORMAT</quote> section of " -"the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:36 -msgid "" -"The Kerberos 5 authentication backend contains auth and chpass providers. It " -"must be paired with identity provider in order to function properly (for " -"example, id_provider = ldap). Some information required by the Kerberos 5 " -"authentication backend must be provided by the identity provider, such as " -"the user's Kerberos Principal Name (UPN). The configuration of the identity " -"provider should have an entry to specify the UPN. Please refer to the man " -"page for the applicable identity provider for details on how to configure " -"this." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:47 -msgid "" -"This backend also provides access control based on the .k5login file in the " -"home directory of the user. See <citerefentry> <refentrytitle>.k5login</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry> for more details. " -"Please note that an empty .k5login file will deny all access to this user. " -"To activate this feature use 'access_provider = krb5' in your sssd " -"configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:55 -msgid "" -"In the case where the UPN is not available in the identity backend " -"<command>sssd</command> will construct a UPN using the format " -"<replaceable>username</replaceable>@<replaceable>krb5_realm</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:106 -msgid "" -"The name of the Kerberos realm. This option is required and must be " -"specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:113 -msgid "krb5_kpasswd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:116 -msgid "" -"If the change password service is not running on the KDC alternative servers " -"can be defined here. An optional port number (preceded by a colon) may be " -"appended to the addresses or hostnames." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:122 -msgid "" -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. Please note that even if there are no more " -"kpasswd servers to try the back end is not switch to offline if " -"authentication against the KDC is still possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:129 -msgid "Default: Use the KDC" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:135 -msgid "krb5_ccachedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:138 -msgid "" -"Directory to store credential caches. All the substitution sequences of " -"krb5_ccname_template can be used here, too, except %d and %P. If the " -"directory does not exist it will be created. If %u, %U, %p or %h are used a " -"private directory belonging to the user is created. Otherwise a public " -"directory with restricted deletion flag (aka sticky bit, see <citerefentry> " -"<refentrytitle>chmod</refentrytitle> <manvolnum>1</manvolnum> </" -"citerefentry> for details) is created." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:151 -msgid "Default: /tmp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:157 -msgid "krb5_ccname_template (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:171 -msgid "login UID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:174 -msgid "%p" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:175 -msgid "principal name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:179 -msgid "%r" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:180 -msgid "realm name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:183 -msgid "%h" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:184 -msgid "home directory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:189 -msgid "value of krb5ccache_dir" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:194 -msgid "%P" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:195 -msgid "the process ID of the sssd client" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:160 -msgid "" -"Location of the user's credential cache. Currently only file based " -"credential caches are supported. In the template the following sequences are " -"substituted: <placeholder type=\"variablelist\" id=\"0\"/> If the template " -"ends with 'XXXXXX' mkstemp(3) is used to create a unique filename in a safe " -"way." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:209 -msgid "Default: FILE:%d/krb5cc_%U_XXXXXX" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:215 -msgid "krb5_auth_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:218 -msgid "" -"Timeout in seconds after an online authentication or change password request " -"is aborted. If possible the authentication request is continued offline." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:241 -msgid "krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:244 -msgid "" -"The location of the keytab to use when validating credentials obtained from " -"KDCs." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:248 -msgid "Default: /etc/krb5.keytab" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:254 -msgid "krb5_store_password_if_offline (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:257 -msgid "" -"Store the password of the user if the provider is offline and use it to " -"request a TGT when the provider gets online again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:262 -msgid "" -"Please note that this feature currently only available on a Linux platform. " -"Passwords stored in this way are kept in plaintext in the kernel keyring and " -"are potentially accessible by the root user (with difficulty)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:275 -msgid "krb5_renewable_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:278 -msgid "" -"Request a renewable ticket with a total lifetime given by an integer " -"immediately followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:283 sssd-krb5.5.xml:319 -msgid "<emphasis>s</emphasis> seconds" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:286 sssd-krb5.5.xml:322 -msgid "<emphasis>m</emphasis> minutes" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:289 sssd-krb5.5.xml:325 -msgid "<emphasis>h</emphasis> hours" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:292 sssd-krb5.5.xml:328 -msgid "<emphasis>d</emphasis> days." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:295 sssd-krb5.5.xml:331 -msgid "If there is no delimiter <emphasis>s</emphasis> is assumed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:299 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"renewable lifetime to one and a half hours please use '90m' instead of " -"'1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:305 -msgid "Default: not set, i.e. the TGT is not renewable" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:311 -msgid "krb5_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:314 -msgid "" -"Request ticket with a with a lifetime given by an integer immediately " -"followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:335 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"lifetime to one and a half hours please use '90m' instead of '1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:340 -msgid "" -"Default: not set, i.e. the default ticket lifetime configured on the KDC." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:347 -msgid "krb5_renew_interval (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:350 -msgid "" -"The time in seconds between two checks if the TGT should be renewed. TGTs " -"are renewed if about half of their lifetime is exceeded." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:355 -msgid "If this option is not set or 0 the automatic renewal is disabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:365 -msgid "krb5_use_fast (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:368 -msgid "" -"Enables flexible authentication secure tunneling (FAST) for Kerberos pre-" -"authentication. The following options are supported:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:373 -msgid "" -"<emphasis>never</emphasis> use FAST, this is equivalent to not set this " -"option at all." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:377 -msgid "" -"<emphasis>try</emphasis> to use FAST, if the server does not support fast " -"continue without." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:381 -msgid "" -"<emphasis>demand</emphasis> to use FAST, fail if the server does not require " -"fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:385 -msgid "Default: not set, i.e. FAST is not used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:388 -msgid "Please note that a keytab is required to use fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:391 -msgid "" -"Please note also that sssd supports fast only with MIT Kerberos version 1.8 " -"and above. If sssd used with an older version using this option is a " -"configuration error." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:400 -msgid "krb5_fast_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:403 -msgid "Specifies the server principal to use for FAST." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:412 -msgid "" -"Specifies if the host and user principal should be canonicalized. This " -"feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:65 -msgid "" -"If the auth-module krb5 is used in a SSSD domain, the following options must " -"be used. See the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page, section <quote>DOMAIN " -"SECTIONS</quote> for details on the configuration of a SSSD domain. " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:434 -msgid "" -"The following example assumes that SSSD is correctly configured and FOO is " -"one of the domains in the <replaceable>[sssd]</replaceable> section. This " -"example shows only configuration of Kerberos authentication, it does not " -"include any identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-krb5.5.xml:442 -#, no-wrap -msgid "" -" [domain/FOO]\n" -" auth_provider = krb5\n" -" krb5_server = 192.168.1.1\n" -" krb5_realm = EXAMPLE.COM\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:453 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupadd.8.xml:10 sss_groupadd.8.xml:15 -msgid "sss_groupadd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupadd.8.xml:16 -msgid "create a new group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupadd.8.xml:21 -msgid "" -"<command>sss_groupadd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:32 -msgid "" -"<command>sss_groupadd</command> creates a new group. These groups are " -"compatible with POSIX groups, with the additional feature that they can " -"contain other groups as members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupadd.8.xml:43 -msgid "" -"<option>-g</option>,<option>--gid</option> <replaceable>GID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupadd.8.xml:48 -msgid "" -"Set the GID of the group to the value of <replaceable>GID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_userdel.8.xml:10 sss_userdel.8.xml:15 -msgid "sss_userdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_userdel.8.xml:16 -msgid "delete a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_userdel.8.xml:21 -msgid "" -"<command>sss_userdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:32 -msgid "" -"<command>sss_userdel</command> deletes a user identified by login name " -"<replaceable>LOGIN</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:44 -msgid "<option>-r</option>,<option>--remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:48 -msgid "" -"Files in the user's home directory will be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:56 -msgid "<option>-R</option>,<option>--no-remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:60 -msgid "" -"Files in the user's home directory will NOT be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:68 -msgid "<option>-f</option>,<option>--force</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:72 -msgid "" -"This option forces <command>sss_userdel</command> to remove the user's home " -"directory and mail spool, even if they are not owned by the specified user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:80 -msgid "<option>-k</option>,<option>--kick</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:84 -msgid "Before actually deleting the user, terminate all his processes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:95 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupdel.8.xml:10 sss_groupdel.8.xml:15 -msgid "sss_groupdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupdel.8.xml:16 -msgid "delete a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupdel.8.xml:21 -msgid "" -"<command>sss_groupdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:32 -msgid "" -"<command>sss_groupdel</command> deletes a group identified by its name " -"<replaceable>GROUP</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupshow.8.xml:10 sss_groupshow.8.xml:15 -msgid "sss_groupshow" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupshow.8.xml:16 -msgid "print properties of a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupshow.8.xml:21 -msgid "" -"<command>sss_groupshow</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:32 -msgid "" -"<command>sss_groupshow</command> displays information about a group " -"identified by its name <replaceable>GROUP</replaceable>. The information " -"includes the group ID number, members of the group and the parent group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupshow.8.xml:43 -msgid "<option>-R</option>,<option>--recursive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupshow.8.xml:47 -msgid "" -"Also print indirect group members in a tree-like hierarchy. Note that this " -"also affects printing parent groups - without <option>R</option>, only the " -"direct parent will be printed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_usermod.8.xml:10 sss_usermod.8.xml:15 -msgid "sss_usermod" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_usermod.8.xml:16 -msgid "modify a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_usermod.8.xml:21 -msgid "" -"<command>sss_usermod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:32 -msgid "" -"<command>sss_usermod</command> modifies the account specified by " -"<replaceable>LOGIN</replaceable> to reflect the changes that are specified " -"on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:60 -msgid "The home directory of the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:71 -msgid "The user's login shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:82 -msgid "" -"Append this user to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:96 -msgid "" -"Remove this user from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:103 -msgid "<option>-l</option>,<option>--lock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:107 -msgid "Lock the user account. The user won't be able to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:114 -msgid "<option>-u</option>,<option>--unlock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:118 -msgid "Unlock the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:129 -msgid "The SELinux user for the user's login." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:140 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_cache.8.xml:10 sss_cache.8.xml:15 -msgid "sss_cache" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_cache.8.xml:16 -msgid "perform cache cleanup" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_cache.8.xml:21 -msgid "" -"<command>sss_cache</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_cache.8.xml:31 -msgid "" -"<command>sss_cache</command> invalidates records in SSSD cache. Invalidated " -"records are forced to be reloaded from server as soon as related SSSD " -"backend is online." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:42 -msgid "" -"<option>-u</option>,<option>--user</option> <replaceable>login</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:47 -msgid "Invalidate specific user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:53 -msgid "<option>-U</option>,<option>--users</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:57 -msgid "" -"Invalidate all user records. This option overrides invalidation of specific " -"user if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:64 -msgid "" -"<option>-g</option>,<option>--group</option> <replaceable>group</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:69 -msgid "Invalidate specific group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:75 -msgid "<option>-G</option>,<option>--groups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:79 -msgid "" -"Invalidate all group records. This option overrides invalidation of specific " -"group if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:86 -msgid "" -"<option>-n</option>,<option>--netgroup</option> <replaceable>netgroup</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:91 -msgid "Invalidate specific netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:97 -msgid "<option>-N</option>,<option>--netgroups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:101 -msgid "" -"Invalidate all netgroup records. This option overrides invalidation of " -"specific netgroup if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:108 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>domain</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:113 -msgid "Restrict invalidation process only to a particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_debuglevel.8.xml:10 sss_debuglevel.8.xml:15 -msgid "sss_debuglevel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_debuglevel.8.xml:16 -msgid "change debug level while SSSD is running" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_debuglevel.8.xml:21 -msgid "" -"<command>sss_debuglevel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>NEW_DEBUG_LEVEL</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_debuglevel.8.xml:32 -msgid "" -"<command>sss_debuglevel</command> changes debug level of SSSD monitor and " -"providers to <replaceable>NEW_DEBUG_LEVEL</replaceable> while SSSD is " -"running." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_debuglevel.8.xml:59 -msgid "<replaceable>NEW_DEBUG_LEVEL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_authorizedkeys.1.xml:10 sss_ssh_authorizedkeys.1.xml:15 -msgid "sss_ssh_authorizedkeys" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_ssh_authorizedkeys.1.xml:11 sss_ssh_knownhostsproxy.1.xml:11 -msgid "1" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_authorizedkeys.1.xml:16 -msgid "get OpenSSH authorized keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_authorizedkeys.1.xml:21 -msgid "" -"<command>sss_ssh_authorizedkeys</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>USER</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:32 -msgid "" -"<command>sss_ssh_authorizedkeys</command> acquires SSH public keys for user " -"<replaceable>USER</replaceable> and outputs them in OpenSSH authorized_keys " -"format (see the <quote>AUTHORIZED_KEYS FILE FORMAT</quote> section of " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> for more information)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:41 -msgid "" -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_authorizedkeys</" -"command> for public key user authentication if it is compiled with support " -"for either <quote>AuthorizedKeysCommand</quote> or <quote>PubkeyAgent</" -"quote> <citerefentry> <refentrytitle>sshd_config</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:58 -#, no-wrap -msgid "AuthorizedKeysCommand /usr/bin/sss_ssh_authorizedkeys\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:51 -msgid "" -"If <quote>AuthorizedKeysCommand</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by putting the following directive " -"in <citerefentry> <refentrytitle>sshd_config</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry>: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:69 -#, no-wrap -msgid "PubKeyAgent /usr/bin/sss_ssh_authorizedkeys %u\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:62 -msgid "" -"If <quote>PubkeyAgent</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by using the following directive " -"for <citerefentry> <refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> configuration: <placeholder type=\"programlisting" -"\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_authorizedkeys.1.xml:87 -msgid "" -"Search for user public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:98 -msgid "" -"<citerefentry> <refentrytitle>sshd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sshd_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_knownhostsproxy</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_knownhostsproxy.1.xml:10 sss_ssh_knownhostsproxy.1.xml:15 -msgid "sss_ssh_knownhostsproxy" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_knownhostsproxy.1.xml:16 -msgid "get OpenSSH host keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_knownhostsproxy.1.xml:21 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>HOST</replaceable></arg> <arg " -"choice='opt'><replaceable>PROXY_COMMAND</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:33 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> acquires SSH host public keys for " -"host <replaceable>HOST</replaceable>, stores them in a custom OpenSSH " -"known_hosts file (see the <quote>SSH_KNOWN_HOSTS FILE FORMAT</quote> section " -"of <citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> for more information) <filename>/var/lib/sss/" -"pubconf/known_hosts</filename> and estabilishes connection to the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:43 -msgid "" -"If <replaceable>PROXY_COMMAND</replaceable> is specified, it is used to " -"create the connection to the host instead of opening a socket." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_knownhostsproxy.1.xml:55 -#, no-wrap -msgid "" -"ProxyCommand /usr/bin/sss_ssh_knownhostsproxy -p %p %h\n" -"GlobalKnownHostsFile2 /var/lib/sss/pubconf/known_hosts\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:48 -msgid "" -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_knownhostsproxy</" -"command> for host key authentication by using the following directives for " -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> configuration: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_ssh_knownhostsproxy.1.xml:69 -msgid "" -"<option>-p</option>,<option>--port</option> <replaceable>PORT</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:74 -msgid "" -"Use port <replaceable>PORT</replaceable> to connect to the host. By " -"default, port 22 is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:86 -msgid "" -"Search for host public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:97 -msgid "" -"<citerefentry> <refentrytitle>ssh</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>ssh_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_authorizedkeys</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/service_discovery.xml:2 -msgid "SERVICE DISCOVERY" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/service_discovery.xml:4 -msgid "" -"The service discovery feature allows back ends to automatically find the " -"appropriate servers to connect to using a special DNS query." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:9 -msgid "Configuration" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:11 -msgid "" -"If no servers are specified, the back end automatically uses service " -"discovery to try to find a server. Optionally, the user may choose to use " -"both fixed server addresses and service discovery by inserting a special " -"keyword, <quote>_srv_</quote>, in the list of servers. The order of " -"preference is maintained. This feature is useful if, for example, the user " -"prefers to use service discovery whenever possible, and fall back to a " -"specific server when no servers can be discovered using DNS." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:23 -msgid "The domain name" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:25 -msgid "" -"Please refer to the <quote>dns_discovery_domain</quote> parameter in the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for more details." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:35 -msgid "The protocol" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:37 -msgid "" -"The queries usually specify _tcp as the protocol. Exceptions are documented " -"in respective option description." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:42 -msgid "See Also" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:44 -msgid "" -"For more information on the service discovery mechanism, refer to RFC 2782." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/upstream.xml:1 -msgid "<placeholder type=\"refentryinfo\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/failover.xml:2 -msgid "FAILOVER" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/failover.xml:4 -msgid "" -"The failover feature allows back ends to automatically switch to a different " -"server if the primary server fails." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:8 -msgid "Failover Syntax" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:10 -msgid "" -"The list of servers is given as a comma-separated list; any number of spaces " -"is allowed around the comma. The servers are listed in order of preference. " -"The list can contain any number of servers." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:17 -msgid "The Failover Mechanism" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:19 -msgid "" -"The failover mechanism distinguishes between a machine and a service. The " -"back end first tries to resolve the hostname of a given machine; if this " -"resolution attempt fails, the machine is considered offline. No further " -"attempts are made to connect to this machine for any other service. If the " -"resolution attempt succeeds, the back end tries to connect to a service on " -"this machine. If the service connection attempt fails, then only this " -"particular service is considered offline and the back end automatically " -"switches over to the next service. The machine is still considered online " -"and might still be tried for another service." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:32 -msgid "" -"Further connection attempts are made to machines or services marked as " -"offline after a specified period of time; this is currently hard coded to 30 " -"seconds." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:37 -msgid "" -"If there are no more machines to try, the back end as a whole switches to " -"offline mode, and then attempts to reconnect every 30 seconds." -msgstr "" - -#. type: Content of: <varlistentry><term> -#: include/param_help.xml:3 -msgid "<option>-h</option>,<option>--help</option>" -msgstr "" - -#. type: Content of: <varlistentry><listitem><para> -#: include/param_help.xml:7 -msgid "Display help message and exit." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:3 -msgid "" -"Bit mask that indicates which debug levels will be visible. 0x0010 is the " -"default value as well as the lowest allowed value, 0xFFF0 is the most " -"verbose mode. This setting overrides the settings from config file." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:8 -msgid "Currently supported debug levels:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:11 -msgid "" -"<emphasis>0x0010</emphasis>: Fatal failures. Anything that would prevent " -"SSSD from starting up or causes it to cease running." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:15 -msgid "" -"<emphasis>0x0020</emphasis>: Critical failures. An error that doesn't kill " -"the SSSD, but one that indicates that at least one major feature is not " -"going to work properly." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:20 -msgid "" -"<emphasis>0x0040</emphasis>: Serious failures. An error announcing that a " -"particular request or operation has failed." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:24 -msgid "" -"<emphasis>0x0080</emphasis>: Minor failures. These are the errors that would " -"percolate down to cause the operation failure of 2." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:28 -msgid "<emphasis>0x0100</emphasis>: Configuration settings." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:31 -msgid "<emphasis>0x0200</emphasis>: Function data." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:34 -msgid "<emphasis>0x0400</emphasis>: Trace messages for operation functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:37 -msgid "" -"<emphasis>0x1000</emphasis>: Trace messages for internal control functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:40 -msgid "" -"<emphasis>0x2000</emphasis>: Contents of function-internal variables that " -"may be interesting." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:43 -msgid "<emphasis>0x4000</emphasis>: Extremely low-level tracing information." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:46 -msgid "" -"To log required debug levels, simply add their numbers together as shown in " -"following examples:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:49 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, critical failures, " -"serious failures and function data use 0x0270." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:53 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, configuration settings, " -"function data, trace messages for internal control functions use 0x1310." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:57 -msgid "" -"<emphasis>Note</emphasis>: This is new format of debug levels introduced in " -"1.7.0. Older format (numbers from 0-10) is compatible but deprecated." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/experimental.xml:1 -msgid "" -"<emphasis> This is an experimental feature, please use http://fedorahosted." -"org/sssd to report any issues. </emphasis>" -msgstr "" diff --git a/src/man/po/hu.po b/src/man/po/hu.po deleted file mode 100644 index cadd35387..000000000 --- a/src/man/po/hu.po +++ /dev/null @@ -1,6747 +0,0 @@ -# SOME DESCRIPTIVE TITLE -# Copyright (C) YEAR Red Hat -# This file is distributed under the same license as the sssd-docs package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@redhat.com\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-12-23 15:35+0000\n" -"Last-Translator: FULL NAME <EMAIL@ADDRESS>\n" -"Language-Team: Hungarian <trans-hu@lists.fedoraproject.org>\n" -"Language: hu\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=2; plural=(n != 1)\n" - -#. type: Content of: <reference><title> -#: sss_groupmod.8.xml:5 sssd.conf.5.xml:5 sssd-ldap.5.xml:5 pam_sss.8.xml:5 -#: sssd_krb5_locator_plugin.8.xml:5 sssd-simple.5.xml:5 sssd-ipa.5.xml:5 -#: sssd.8.xml:5 sss_obfuscate.8.xml:5 sss_useradd.8.xml:5 sssd-krb5.5.xml:5 -#: sss_groupadd.8.xml:5 sss_userdel.8.xml:5 sss_groupdel.8.xml:5 -#: sss_groupshow.8.xml:5 sss_usermod.8.xml:5 sss_cache.8.xml:5 -#: sss_debuglevel.8.xml:5 sss_ssh_authorizedkeys.1.xml:5 -#: sss_ssh_knownhostsproxy.1.xml:5 -msgid "SSSD Manual pages" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupmod.8.xml:10 sss_groupmod.8.xml:15 -msgid "sss_groupmod" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_groupmod.8.xml:11 pam_sss.8.xml:14 sssd_krb5_locator_plugin.8.xml:11 -#: sssd.8.xml:11 sss_obfuscate.8.xml:11 sss_useradd.8.xml:11 -#: sss_groupadd.8.xml:11 sss_userdel.8.xml:11 sss_groupdel.8.xml:11 -#: sss_groupshow.8.xml:11 sss_usermod.8.xml:11 sss_cache.8.xml:11 -#: sss_debuglevel.8.xml:11 -msgid "8" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupmod.8.xml:16 -msgid "modify a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupmod.8.xml:21 -msgid "" -"<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:30 sssd-ldap.5.xml:21 pam_sss.8.xml:44 -#: sssd_krb5_locator_plugin.8.xml:20 sssd-simple.5.xml:22 sssd-ipa.5.xml:21 -#: sssd.8.xml:29 sss_obfuscate.8.xml:30 sss_useradd.8.xml:30 -#: sssd-krb5.5.xml:21 sss_groupadd.8.xml:30 sss_userdel.8.xml:30 -#: sss_groupdel.8.xml:30 sss_groupshow.8.xml:30 sss_usermod.8.xml:30 -#: sss_cache.8.xml:29 sss_debuglevel.8.xml:30 sss_ssh_authorizedkeys.1.xml:30 -#: sss_ssh_knownhostsproxy.1.xml:31 -msgid "DESCRIPTION" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:32 -msgid "" -"<command>sss_groupmod</command> modifies the group to reflect the changes " -"that are specified on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:39 pam_sss.8.xml:51 sssd.8.xml:42 sss_obfuscate.8.xml:58 -#: sss_useradd.8.xml:39 sss_groupadd.8.xml:39 sss_userdel.8.xml:39 -#: sss_groupdel.8.xml:39 sss_groupshow.8.xml:39 sss_usermod.8.xml:39 -#: sss_cache.8.xml:38 sss_debuglevel.8.xml:38 sss_ssh_authorizedkeys.1.xml:78 -#: sss_ssh_knownhostsproxy.1.xml:65 -msgid "OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:43 sss_usermod.8.xml:77 -msgid "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:48 -msgid "" -"Append this group to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:57 sss_usermod.8.xml:91 -msgid "" -"<option>-r</option>,<option>--remove-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:62 -msgid "" -"Remove this group from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:72 sssd.conf.5.xml:1331 sssd-ldap.5.xml:2096 -#: pam_sss.8.xml:139 sssd_krb5_locator_plugin.8.xml:75 sssd-simple.5.xml:143 -#: sssd-ipa.5.xml:562 sssd.8.xml:191 sss_obfuscate.8.xml:103 -#: sss_useradd.8.xml:167 sssd-krb5.5.xml:451 sss_groupadd.8.xml:58 -#: sss_userdel.8.xml:93 sss_groupdel.8.xml:46 sss_groupshow.8.xml:58 -#: sss_usermod.8.xml:138 sss_ssh_authorizedkeys.1.xml:96 -#: sss_ssh_knownhostsproxy.1.xml:95 -msgid "SEE ALSO" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:74 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.conf.5.xml:10 sssd.conf.5.xml:16 -msgid "sssd.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sssd.conf.5.xml:11 sssd-ldap.5.xml:11 sssd-simple.5.xml:11 -#: sssd-ipa.5.xml:11 sssd-krb5.5.xml:11 -msgid "5" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><refmiscinfo> -#: sssd.conf.5.xml:12 sssd-ldap.5.xml:12 sssd-simple.5.xml:12 -#: sssd-ipa.5.xml:12 sssd-krb5.5.xml:12 -msgid "File Formats and Conventions" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.conf.5.xml:17 sssd-ldap.5.xml:17 sssd_krb5_locator_plugin.8.xml:16 -#: sssd-ipa.5.xml:17 sssd-krb5.5.xml:17 -msgid "the configuration file for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:21 -msgid "FILE FORMAT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:29 -#, no-wrap -msgid "" -" <replaceable>[section]</replaceable>\n" -" <replaceable>key</replaceable> = <replaceable>value</replaceable>\n" -" <replaceable>key2</replaceable> = <replaceable>value2,value3</replaceable>\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:24 -msgid "" -"The file has an ini-style syntax and consists of sections and parameters. A " -"section begins with the name of the section in square brackets and continues " -"until the next section begins. An example of section with single and multi-" -"valued parameters: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:36 -msgid "" -"The data types used are string (no quotes needed), integer and bool (with " -"values of <quote>TRUE/FALSE</quote>)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:41 -msgid "" -"A line comment starts with a hash sign (<quote>#</quote>) or a semicolon " -"(<quote>;</quote>)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:46 -msgid "" -"All sections can have an optional <replaceable>description</replaceable> " -"parameter. Its function is only as a label for the section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:52 -msgid "" -"<filename>sssd.conf</filename> must be a regular file, owned by root and " -"only root may read from or write to the file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:58 -msgid "SPECIAL SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:61 -msgid "The [sssd] section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><title> -#: sssd.conf.5.xml:70 sssd.conf.5.xml:1177 -msgid "Section parameters" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:72 -msgid "config_file_version (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:75 -msgid "" -"Indicates what is the syntax of the config file. SSSD 0.6.0 and later use " -"version 2." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:81 -msgid "services" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:84 -msgid "" -"Comma separated list of services that are started when sssd itself starts." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:88 -msgid "" -"Supported services: nss, pam <phrase condition=\"with_sudo\">, sudo</phrase>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:94 sssd.conf.5.xml:257 -msgid "reconnection_retries (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:97 sssd.conf.5.xml:260 -msgid "" -"Number of times services should attempt to reconnect in the event of a Data " -"Provider crash or restart before they give up" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:102 sssd.conf.5.xml:265 -msgid "Default: 3" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:107 -msgid "domains" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:110 -msgid "" -"A domain is a database containing user information. SSSD can use more " -"domains at the same time, but at least one must be configured or SSSD won't " -"start. This parameter described the list of domains in the order you want " -"them to be queried." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:120 -msgid "re_expression (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:123 -msgid "" -"Regular expression that describes how to parse the string containing user " -"name and domain into these components." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:127 -msgid "" -"Default: <quote>(?P<name>[^@]+)@?(?P<domain>[^@]*$)</quote> " -"which translates to \"the name is everything up to the <quote>@</quote> " -"sign, the domain everything after that\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:132 -msgid "" -"PLEASE NOTE: the support for non-unique named subpatterns is not available " -"on all platforms (e.g. RHEL5 and SLES10). Only platforms with libpcre " -"version 7 or higher can support non-unique named subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:139 -msgid "" -"PLEASE NOTE ALSO: older version of libpcre only support the Python syntax (?" -"P<name>) to label subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:146 -msgid "full_name_format (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:149 -msgid "" -"A <citerefentry> <refentrytitle>printf</refentrytitle> <manvolnum>3</" -"manvolnum> </citerefentry>-compatible format that describes how to translate " -"a (name, domain) tuple into a fully qualified name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:157 -msgid "Default: <quote>%1$s@%2$s</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:162 -msgid "try_inotify (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:165 -msgid "" -"SSSD monitors the state of resolv.conf to identify when it needs to update " -"its internal DNS resolver. By default, we will attempt to use inotify for " -"this, and will fall back to polling resolv.conf every five seconds if " -"inotify cannot be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:173 -msgid "" -"There are some limited situations where it is preferred that we should skip " -"even trying to use inotify. In these rare cases, this option should be set " -"to 'false'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:179 -msgid "" -"Default: true on platforms where inotify is supported. False on other " -"platforms." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:183 -msgid "" -"Note: this option will have no effect on platforms where inotify is " -"unavailable. On these platforms, polling will always be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:190 -msgid "krb5_rcache_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:193 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:197 -msgid "" -"This option accepts a special value __LIBKRB5_DEFAULTS__ that will instruct " -"SSSD to let libkrb5 decide the appropriate location for the replay cache." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:203 -msgid "" -"Default: Distribution-specific and specified at build-time. " -"(__LIBKRB5_DEFAULTS__ if not configured)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:63 -msgid "" -"Individual pieces of SSSD functionality are provided by special SSSD " -"services that are started and stopped together with SSSD. The services are " -"managed by a special service frequently called <quote>monitor</quote>. The " -"<quote>[sssd]</quote> section is used to configure the monitor as well as " -"some other important options like the identity domains. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:216 -msgid "SERVICES SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:218 -msgid "" -"Settings that can be used to configure different services are described in " -"this section. They should reside in the [<replaceable>$NAME</replaceable>] " -"section, for example, for NSS service, the section would be <quote>[nss]</" -"quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:225 -msgid "General service configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:227 -msgid "These options can be used to configure any service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:231 -msgid "debug_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:235 -msgid "debug_timestamps (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:238 -msgid "Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:241 sssd.conf.5.xml:376 sssd-ldap.5.xml:1328 -#: sssd-ldap.5.xml:1446 sssd-ipa.5.xml:206 sssd-ipa.5.xml:241 -msgid "Default: true" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:246 -msgid "debug_microseconds (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:249 -msgid "Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:252 sssd.conf.5.xml:641 sssd-ldap.5.xml:602 -#: sssd-ldap.5.xml:1260 sssd-ldap.5.xml:1397 sssd-ldap.5.xml:1795 -#: sssd-ipa.5.xml:123 sssd-ipa.5.xml:301 sssd-krb5.5.xml:235 -#: sssd-krb5.5.xml:269 sssd-krb5.5.xml:418 -msgid "Default: false" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:270 -msgid "command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:273 -msgid "" -"By default, the executable representing this service is called <command>sssd_" -"${service_name}</command>. This directive allows to change the executable " -"name for the service. In the vast majority of configurations, the default " -"values should suffice." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:281 -msgid "Default: <command>sssd_${service_name}</command>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:289 -msgid "NSS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:291 -msgid "" -"These options can be used to configure the Name Service Switch (NSS) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:296 -msgid "enum_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:299 -msgid "" -"How many seconds should nss_sss cache enumerations (requests for info about " -"all users)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:303 -msgid "Default: 120" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:308 -msgid "entry_cache_nowait_percentage (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:311 -msgid "" -"The entry cache can be set to automatically update entries in the background " -"if they are requested beyond a percentage of the entry_cache_timeout value " -"for the domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:317 -msgid "" -"For example, if the domain's entry_cache_timeout is set to 30s and " -"entry_cache_nowait_percentage is set to 50 (percent), entries that come in " -"after 15 seconds past the last cache update will be returned immediately, " -"but the SSSD will go and update the cache on its own, so that future " -"requests will not need to block waiting for a cache update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:327 -msgid "" -"Valid values for this option are 0-99 and represent a percentage of the " -"entry_cache_timeout for each domain. For performance reasons, this " -"percentage will never reduce the nowait timeout to less than 10 seconds. (0 " -"disables this feature)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:335 -msgid "Default: 50" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:340 -msgid "entry_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:343 -msgid "" -"Specifies for how many seconds nss_sss should cache negative cache hits " -"(that is, queries for invalid database entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:349 sssd.conf.5.xml:669 sssd-krb5.5.xml:223 -msgid "Default: 15" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:354 -msgid "filter_users, filter_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:357 -msgid "" -"Exclude certain users from being fetched from the sss NSS database. This is " -"particularly useful for system accounts. This option can also be set per-" -"domain or include fully-qualified names to filter only users from the " -"particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:364 -msgid "Default: root" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:369 -msgid "filter_users_in_groups (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:372 -msgid "" -"If you want filtered user still be group members set this option to false." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:381 -msgid "override_homedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:390 sssd-krb5.5.xml:166 -msgid "%u" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:391 sssd-krb5.5.xml:167 -msgid "login name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:394 sssd-krb5.5.xml:170 -msgid "%U" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:395 -msgid "UID number" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:398 sssd-krb5.5.xml:188 -msgid "%d" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:399 -msgid "domain name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:402 -msgid "%f" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:403 -msgid "fully qualified user name (user@domain)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:406 sssd-krb5.5.xml:200 -msgid "%%" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:407 sssd-krb5.5.xml:201 -msgid "a literal '%'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:384 -msgid "" -"Override the user's home directory. You can either provide an absolute value " -"or a template. In the template, the following sequences are substituted: " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:413 -msgid "This option can also be set per-domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:418 -msgid "allowed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:421 -msgid "" -"Restrict user shell to one of the listed values. The order of evaluation is:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:424 -msgid "1. If the shell is present in <quote>/etc/shells</quote>, it is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:428 -msgid "" -"2. If the shell is in the allowed_shells list but not in <quote>/etc/shells</" -"quote>, use the value of the shell_fallback parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:433 -msgid "" -"3. If the shell is not in the allowed_shells list and not in <quote>/etc/" -"shells</quote>, a nologin shell is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:438 -msgid "An empty string for shell is passed as-is to libc." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:441 -msgid "" -"The <quote>/etc/shells</quote> is only read on SSSD start up, which means " -"that a restart of the SSSD is required in case a new shell is installed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:445 -msgid "Default: Not set. The user shell is automatically used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:450 -msgid "vetoed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:453 -msgid "Replace any instance of these shells with the shell_fallback" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:458 -msgid "shell_fallback (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:461 -msgid "" -"The default shell to use if an allowed shell is not installed on the machine." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:465 -msgid "Default: /bin/sh" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:472 -msgid "PAM configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:474 -msgid "" -"These options can be used to configure the Pluggable Authentication Module " -"(PAM) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:479 -msgid "offline_credentials_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:482 -msgid "" -"If the authentication provider is offline, how long should we allow cached " -"logins (in days since the last successful online login)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:487 sssd.conf.5.xml:500 -msgid "Default: 0 (No limit)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:493 -msgid "offline_failed_login_attempts (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:496 -msgid "" -"If the authentication provider is offline, how many failed login attempts " -"are allowed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:506 -msgid "offline_failed_login_delay (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:509 -msgid "" -"The time in minutes which has to pass after offline_failed_login_attempts " -"has been reached before a new login attempt is possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:514 -msgid "" -"If set to 0 the user cannot authenticate offline if " -"offline_failed_login_attempts has been reached. Only a successful online " -"authentication can enable offline authentication again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:520 sssd.conf.5.xml:573 sssd.conf.5.xml:1093 -msgid "Default: 5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:526 -msgid "pam_verbosity (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:529 -msgid "" -"Controls what kind of messages are shown to the user during authentication. " -"The higher the number to more messages are displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:534 -msgid "Currently sssd supports the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:537 -msgid "<emphasis>0</emphasis>: do not show any message" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:540 -msgid "<emphasis>1</emphasis>: show only important messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:544 -msgid "<emphasis>2</emphasis>: show informational messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:547 -msgid "<emphasis>3</emphasis>: show all messages and debug information" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:551 sssd.8.xml:63 -msgid "Default: 1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:556 -msgid "pam_id_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:559 -msgid "" -"For any PAM request while SSSD is online, the SSSD will attempt to " -"immediately update the cached identity information for the user in order to " -"ensure that authentication takes place with the latest information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:565 -msgid "" -"A complete PAM conversation may perform multiple PAM requests, such as " -"account management and session opening. This option controls (on a per-" -"client-application basis) how long (in seconds) we can cache the identity " -"information to avoid excessive round-trips to the identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:579 -msgid "pam_pwd_expiration_warning (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:582 -msgid "Display a warning N days before the password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:585 -msgid "" -"Please note that the backend server has to provide information about the " -"expiration time of the password. If this information is missing, sssd " -"cannot display a warning." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:591 -msgid "Default: 7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:599 -msgid "SUDO configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:601 -msgid "These options can be used to configure the sudo service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:608 -msgid "sudo_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:611 -msgid "" -"For any sudo request that comes while SSSD is online, the SSSD will attempt " -"to update the cached rules in order to ensure that sudo has the latest " -"ruleset." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:617 -msgid "" -"The user may, however, run a couple of sudo commands successively, which " -"would trigger multiple LDAP requests. In order to speed up this use-case, " -"the sudo service maintains an in-memory cache that would be used for " -"performing fast replies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:624 -msgid "" -"This option controls how long (in seconds) can the sudo service cache rules " -"for a user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:628 -msgid "Default: 180" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:633 -msgid "sudo_timed (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:636 -msgid "" -"Whether or not to evaluate the sudoNotBefore and sudoNotAfter attributes " -"that implement time-dependent sudoers entries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:649 -msgid "AUTOFS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:651 -msgid "These options can be used to configure the autofs service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:659 -msgid "autofs_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:662 -msgid "" -"Specifies for how many seconds should the autofs responder negative cache " -"hits (that is, queries for invalid map entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:679 -msgid "DOMAIN SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:686 -msgid "min_id,max_id (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:689 -msgid "" -"UID and GID limits for the domain. If a domain contains an entry that is " -"outside these limits, it is ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:694 -msgid "" -"For users, this affects the primary GID limit. The user will not be returned " -"to NSS if either the UID or the primary GID is outside the range. For non-" -"primary group memberships, those that are in range will be reported as " -"expected." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:701 -msgid "Default: 1 for min_id, 0 (no limit) for max_id" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:707 -msgid "timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:710 -msgid "" -"Timeout in seconds between heartbeats for this domain. This is used to " -"ensure that the backend process is alive and capable of answering requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:715 sssd-ldap.5.xml:1131 -msgid "Default: 10" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:721 -msgid "enumerate (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:724 -msgid "" -"Determines if a domain can be enumerated. This parameter can have one of the " -"following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:728 -msgid "TRUE = Users and groups are enumerated" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:731 -msgid "FALSE = No enumerations for this domain" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:734 sssd.conf.5.xml:839 sssd.conf.5.xml:893 -msgid "Default: FALSE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:737 -msgid "" -"Note: Enabling enumeration has a moderate performance impact on SSSD while " -"enumeration is running. It may take up to several minutes after SSSD startup " -"to fully complete enumerations. During this time, individual requests for " -"information will go directly to LDAP, though it may be slow, due to the " -"heavy enumeration processing." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:747 -msgid "" -"While the first enumeration is running, requests for the complete user or " -"group lists may return no results until it completes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:752 -msgid "" -"Further, enabling enumeration may increase the time necessary to detect " -"network disconnection, as longer timeouts are required to ensure that " -"enumeration lookups are completed successfully. For more information, refer " -"to the man pages for the specific id_provider in use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:763 -msgid "entry_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:766 -msgid "" -"How many seconds should nss_sss consider entries valid before asking the " -"backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:770 -msgid "Default: 5400" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:776 -msgid "entry_cache_user_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:779 -msgid "" -"How many seconds should nss_sss consider user entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:783 sssd.conf.5.xml:796 sssd.conf.5.xml:809 -#: sssd.conf.5.xml:822 -msgid "Default: entry_cache_timeout" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:789 -msgid "entry_cache_group_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:792 -msgid "" -"How many seconds should nss_sss consider group entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:802 -msgid "entry_cache_netgroup_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:805 -msgid "" -"How many seconds should nss_sss consider netgroup entries valid before " -"asking the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:815 -msgid "entry_cache_service_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:818 -msgid "" -"How many seconds should nss_sss consider service entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:828 -msgid "cache_credentials (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:831 -msgid "Determines if user credentials are also cached in the local LDB cache" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:835 -msgid "User credentials are stored in a SHA512 hash, not in plaintext" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:844 -msgid "account_cache_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:847 -msgid "" -"Number of days entries are left in cache after last successful login before " -"being removed during a cleanup of the cache. 0 means keep forever. The " -"value of this parameter must be greater than or equal to " -"offline_credentials_expiration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:854 -msgid "Default: 0 (unlimited)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:860 -msgid "id_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:863 -msgid "The Data Provider identity backend to use for this domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:867 -msgid "Supported backends:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:870 -msgid "proxy: Support a legacy NSS provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:873 -msgid "local: SSSD internal local provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:876 -msgid "ldap: LDAP provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:882 -msgid "use_fully_qualified_names (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:885 -msgid "" -"If set to TRUE, all requests to this domain must use fully qualified names. " -"For example, if used in LOCAL domain that contains a \"test\" user, " -"<command>getent passwd test</command> wouldn't find the user while " -"<command>getent passwd test@LOCAL</command> would." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:898 -msgid "auth_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:901 -msgid "" -"The authentication provider used for the domain. Supported auth providers " -"are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:905 -msgid "" -"<quote>ldap</quote> for native LDAP authentication. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:912 -msgid "" -"<quote>krb5</quote> for Kerberos authentication. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:919 -msgid "" -"<quote>proxy</quote> for relaying authentication to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:922 -msgid "<quote>none</quote> disables authentication explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:925 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"authentication requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:931 -msgid "access_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:934 -msgid "" -"The access control provider used for the domain. There are two built-in " -"access providers (in addition to any included in installed backends) " -"Internal special providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:940 -msgid "<quote>permit</quote> always allow access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:943 -msgid "<quote>deny</quote> always deny access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:946 -msgid "" -"<quote>simple</quote> access control based on access or deny lists. See " -"<citerefentry> <refentrytitle>sssd-simple</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry> for more information on configuring the simple " -"access module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:953 -msgid "Default: <quote>permit</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:958 -msgid "chpass_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:961 -msgid "" -"The provider which should handle change password operations for the domain. " -"Supported change password providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:966 -msgid "" -"<quote>ipa</quote> to change a password stored in an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:974 -msgid "" -"<quote>ldap</quote> to change a password stored in a LDAP server. See " -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:982 -msgid "" -"<quote>krb5</quote> to change the Kerberos password. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:990 -msgid "" -"<quote>proxy</quote> for relaying password changes to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:994 -msgid "<quote>none</quote> disallows password changes explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:997 -msgid "" -"Default: <quote>auth_provider</quote> is used if it is set and can handle " -"change password requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1004 -msgid "sudo_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1010 -msgid "The SUDO provider used for the domain. Supported SUDO providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1014 -msgid "" -"<quote>ldap</quote> for rules stored in LDAP. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1021 -msgid "<quote>none</quote> disables SUDO explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1024 -msgid "Default: The value of <quote>id_provider</quote> is used if it is set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1030 -msgid "session_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1033 -msgid "" -"The provider which should handle loading of session settings. Supported " -"session providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1038 -msgid "" -"<quote>ipa</quote> to load session settings from an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1046 -msgid "<quote>none</quote> disallows fetching session settings explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1049 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"session loading requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1056 -msgid "lookup_family_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1059 -msgid "" -"Provides the ability to select preferred address family to use when " -"performing DNS lookups." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1063 -msgid "Supported values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1066 -msgid "ipv4_first: Try looking up IPv4 address, if that fails, try IPv6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1069 -msgid "ipv4_only: Only attempt to resolve hostnames to IPv4 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1072 -msgid "ipv6_first: Try looking up IPv6 address, if that fails, try IPv4" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1075 -msgid "ipv6_only: Only attempt to resolve hostnames to IPv6 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1078 -msgid "Default: ipv4_first" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1084 -msgid "dns_resolver_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1087 -msgid "" -"Defines the amount of time (in seconds) to wait for a reply from the DNS " -"resolver before assuming that it is unreachable. If this timeout is reached, " -"the domain will continue to operate in offline mode." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1099 -msgid "dns_discovery_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1102 -msgid "" -"If service discovery is used in the back end, specifies the domain part of " -"the service discovery DNS query." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1106 -msgid "Default: Use the domain part of machine's hostname" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1112 -msgid "override_gid (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1115 -msgid "Override the primary GID value with the one specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1121 -msgid "case_sensitive (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1124 -msgid "" -"Treat user and group names as case sensitive. At the moment, this option is " -"not supported in the local provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1129 -msgid "Default: True" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:681 -msgid "" -"These configuration options can be present in a domain configuration " -"section, that is, in a section called <quote>[domain/<replaceable>NAME</" -"replaceable>]</quote> <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1141 -msgid "proxy_pam_target (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1144 -msgid "The proxy target PAM proxies to." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1147 -msgid "" -"Default: not set by default, you have to take an existing pam configuration " -"or create a new one and add the service name here." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1155 -msgid "proxy_lib_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1158 -msgid "" -"The name of the NSS library to use in proxy domains. The NSS functions " -"searched for in the library are in the form of _nss_$(libName)_$(function), " -"for example _nss_files_getpwent." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1137 -msgid "" -"Options valid for proxy domains. <placeholder type=\"variablelist\" id=" -"\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:1170 -msgid "The local domain section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:1172 -msgid "" -"This section contains settings for domain that stores users and groups in " -"SSSD native database, that is, a domain that uses " -"<replaceable>id_provider=local</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1179 -msgid "default_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1182 -msgid "The default shell for users created with SSSD userspace tools." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1186 -msgid "Default: <filename>/bin/bash</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1191 -msgid "base_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1194 -msgid "" -"The tools append the login name to <replaceable>base_directory</replaceable> " -"and use that as the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1199 -msgid "Default: <filename>/home</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1204 -msgid "create_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1207 -msgid "" -"Indicate if a home directory should be created by default for new users. " -"Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1211 sssd.conf.5.xml:1223 -msgid "Default: TRUE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1216 -msgid "remove_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1219 -msgid "" -"Indicate if a home directory should be removed by default for deleted " -"users. Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1228 -msgid "homedir_umask (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1231 -msgid "" -"Used by <citerefentry> <refentrytitle>sss_useradd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry> to specify the default permissions " -"on a newly created home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1239 -msgid "Default: 077" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1244 -msgid "skel_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1247 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<citerefentry> <refentrytitle>sss_useradd</refentrytitle> <manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1257 -msgid "Default: <filename>/etc/skel</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1262 -msgid "mail_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1265 -msgid "" -"The mail spool directory. This is needed to manipulate the mailbox when its " -"corresponding user account is modified or deleted. If not specified, a " -"default value is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1272 -msgid "Default: <filename>/var/mail</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1277 -msgid "userdel_cmd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1280 -msgid "" -"The command that is run after a user is removed. The command us passed the " -"username of the user being removed as the first and only parameter. The " -"return code of the command is not taken into account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1286 -msgid "Default: None, no command is run" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:1296 sssd-ldap.5.xml:2064 sssd-simple.5.xml:126 -#: sssd-ipa.5.xml:544 sssd-krb5.5.xml:432 -msgid "EXAMPLE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:1302 -#, no-wrap -msgid "" -"[sssd]\n" -"domains = LDAP\n" -"services = nss, pam\n" -"config_file_version = 2\n" -"\n" -"[nss]\n" -"filter_groups = root\n" -"filter_users = root\n" -"\n" -"[pam]\n" -"\n" -"[domain/LDAP]\n" -"id_provider = ldap\n" -"ldap_uri = ldap://ldap.example.com\n" -"ldap_search_base = dc=example,dc=com\n" -"\n" -"auth_provider = krb5\n" -"krb5_server = kerberos.example.com\n" -"krb5_realm = EXAMPLE.COM\n" -"cache_credentials = true\n" -"\n" -"min_id = 10000\n" -"max_id = 20000\n" -"enumerate = False\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1298 -msgid "" -"The following example shows a typical SSSD config. It does not describe " -"configuration of the domains themselves - refer to documentation on " -"configuring domains for more details. <placeholder type=\"programlisting\" " -"id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1333 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>pam_sss</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ldap.5.xml:10 sssd-ldap.5.xml:16 -msgid "sssd-ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:23 -msgid "" -"This manual page describes the configuration of LDAP domains for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. Refer to the <quote>FILE FORMAT</quote> section of the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for detailed syntax information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:35 -msgid "You can configure SSSD to use more than one LDAP domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:38 -msgid "" -"LDAP back end supports id, auth, access and chpass providers. If you want to " -"authenticate against an LDAP server either TLS/SSL or LDAPS is required. " -"<command>sssd</command> <emphasis>does not</emphasis> support authentication " -"over an unencrypted channel. If the LDAP server is used only as an identity " -"provider, an encrypted channel is not needed. Please refer to " -"<quote>ldap_access_filter</quote> config option for more information about " -"using LDAP as an access provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:49 sssd-simple.5.xml:69 sssd-ipa.5.xml:64 -#: sssd-krb5.5.xml:63 -msgid "CONFIGURATION OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:60 -msgid "ldap_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:63 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference. Refer to the <quote>FAILOVER</" -"quote> section for more information on failover and server redundancy. If " -"not specified, service discovery is enabled. For more information, refer to " -"the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:70 -msgid "The format of the URI must match the format defined in RFC 2732:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:73 -msgid "ldap[s]://<host>[:port]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:76 -msgid "" -"For explicit IPv6 addresses, <host> must be enclosed in brackets []" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:79 -msgid "example: ldap://[fc00::126:25]:389" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:85 -msgid "ldap_chpass_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:88 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference to change the password of a user. " -"Refer to the <quote>FAILOVER</quote> section for more information on " -"failover and server redundancy." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:95 -msgid "To enable service discovery ldap_chpass_dns_service_name must be set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:99 -msgid "Default: empty, i.e. ldap_uri is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:105 -msgid "ldap_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:108 -msgid "The default base DN to use for performing LDAP user operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:112 -msgid "" -"Starting with SSSD 1.7.0, SSSD supports multiple search bases using the " -"syntax:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:116 -msgid "search_base[?scope?[filter][?search_base?scope?[filter]]*]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:119 -msgid "The scope can be one of \"base\", \"onelevel\" or \"subtree\"." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:122 -msgid "" -"The filter must be a valid LDAP search filter as specified by http://www." -"ietf.org/rfc/rfc2254.txt" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:126 -msgid "Examples:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:129 -msgid "" -"ldap_search_base = dc=example,dc=com (which is equivalent to) " -"ldap_search_base = dc=example,dc=com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:134 -msgid "" -"ldap_search_base = cn=host_specific,dc=example,dc=com?subtree?" -"(host=thishost)?dc=example.com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:137 -msgid "" -"Note: It is unsupported to have multiple search bases which reference " -"identically-named objects (for example, groups with the same name in two " -"different search bases). This will lead to unpredictable behavior on client " -"machines." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:144 -msgid "" -"Default: If not set, the value of the defaultNamingContext or namingContexts " -"attribute from the RootDSE of the LDAP server is used. If " -"defaultNamingContext does not exists or has an empty value namingContexts is " -"used. The namingContexts attribute must have a single value with the DN of " -"the search base of the LDAP server to make this work. Multiple values are " -"are not supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:158 -msgid "ldap_schema (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:161 -msgid "" -"Specifies the Schema Type in use on the target LDAP server. Depending on " -"the selected schema, the default attribute names retrieved from the servers " -"may vary. The way that some attributes are handled may also differ. Three " -"schema types are currently supported: rfc2307 rfc2307bis IPA The main " -"difference between these schema types is how group memberships are recorded " -"in the server. With rfc2307, group members are listed by name in the " -"<emphasis>memberUid</emphasis> attribute. With rfc2307bis and IPA, group " -"members are listed by DN and stored in the <emphasis>member</emphasis> " -"attribute." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:180 -msgid "Default: rfc2307" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:186 -msgid "ldap_default_bind_dn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:189 -msgid "The default bind DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:196 -msgid "ldap_default_authtok_type (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:199 -msgid "The type of the authentication token of the default bind DN." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:203 -msgid "The two mechanisms currently supported are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:206 -msgid "password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:209 -msgid "obfuscated_password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:212 -msgid "Default: password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:218 -msgid "ldap_default_authtok (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:221 -msgid "" -"The authentication token of the default bind DN. Only clear text passwords " -"are currently supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:228 -msgid "ldap_user_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:231 -msgid "The object class of a user entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:234 -msgid "Default: posixAccount" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:240 -msgid "ldap_user_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:243 -msgid "The LDAP attribute that corresponds to the user's login name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:247 -msgid "Default: uid" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:253 -msgid "ldap_user_uid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:256 -msgid "The LDAP attribute that corresponds to the user's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:260 -msgid "Default: uidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:266 -msgid "ldap_user_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:269 -msgid "The LDAP attribute that corresponds to the user's primary group id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:273 sssd-ldap.5.xml:740 -msgid "Default: gidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:279 -msgid "ldap_user_gecos (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:282 -msgid "The LDAP attribute that corresponds to the user's gecos field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:286 -msgid "Default: gecos" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:292 -msgid "ldap_user_home_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:295 -msgid "The LDAP attribute that contains the name of the user's home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:299 -msgid "Default: homeDirectory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:305 -msgid "ldap_user_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:308 -msgid "The LDAP attribute that contains the path to the user's default shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:312 -msgid "Default: loginShell" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:318 -msgid "ldap_user_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:321 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP user object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:325 sssd-ldap.5.xml:766 sssd-ldap.5.xml:878 -msgid "Default: nsUniqueId" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:331 -msgid "ldap_user_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:334 sssd-ldap.5.xml:775 sssd-ldap.5.xml:887 -msgid "" -"The LDAP attribute that contains timestamp of the last modification of the " -"parent object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:338 sssd-ldap.5.xml:779 sssd-ldap.5.xml:894 -msgid "Default: modifyTimestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:344 -msgid "ldap_user_shadow_last_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:347 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (date of " -"the last password change)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:357 -msgid "Default: shadowLastChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:363 -msgid "ldap_user_shadow_min (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:366 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (minimum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:375 -msgid "Default: shadowMin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:381 -msgid "ldap_user_shadow_max (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:384 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (maximum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:393 -msgid "Default: shadowMax" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:399 -msgid "ldap_user_shadow_warning (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:402 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password warning period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:412 -msgid "Default: shadowWarning" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:418 -msgid "ldap_user_shadow_inactive (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:421 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password inactivity period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:431 -msgid "Default: shadowInactive" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:437 -msgid "ldap_user_shadow_expire (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:440 -msgid "" -"When using ldap_pwd_policy=shadow or ldap_account_expire_policy=shadow, this " -"parameter contains the name of an LDAP attribute corresponding to its " -"<citerefentry> <refentrytitle>shadow</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> counterpart (account expiration date)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:450 -msgid "Default: shadowExpire" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:456 -msgid "ldap_user_krb_last_pwd_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:459 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time of last password change in " -"kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:465 -msgid "Default: krbLastPwdChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:471 -msgid "ldap_user_krb_password_expiration (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:474 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time when current password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:480 -msgid "Default: krbPasswordExpiration" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:486 -msgid "ldap_user_ad_account_expires (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:489 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the expiration time of the account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:494 -msgid "Default: accountExpires" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:500 -msgid "ldap_user_ad_user_account_control (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:503 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the user account control bit field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:508 -msgid "Default: userAccountControl" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:514 -msgid "ldap_ns_account_lock (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:517 -msgid "" -"When using ldap_account_expire_policy=rhds or equivalent, this parameter " -"determines if access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:522 -msgid "Default: nsAccountLock" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:528 -msgid "ldap_user_nds_login_disabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:531 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines if " -"access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:535 sssd-ldap.5.xml:549 -msgid "Default: loginDisabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:541 -msgid "ldap_user_nds_login_expiration_time (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:544 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines until " -"which date access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:555 -msgid "ldap_user_nds_login_allowed_time_map (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:558 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines the " -"hours of a day in a week when access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:563 -msgid "Default: loginAllowedTimeMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:569 -msgid "ldap_user_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:572 -msgid "" -"The LDAP attribute that contains the user's Kerberos User Principal Name " -"(UPN)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:576 -msgid "Default: krbPrincipalName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:582 -msgid "ldap_user_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:585 -msgid "The LDAP attribute that contains the user's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:592 -msgid "ldap_force_upper_case_realm (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:595 -msgid "" -"Some directory servers, for example Active Directory, might deliver the " -"realm part of the UPN in lower case, which might cause the authentication to " -"fail. Set this option to a non-zero value if you want to use an upper-case " -"realm." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:608 -msgid "ldap_enumeration_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:611 -msgid "" -"Specifies how many seconds SSSD has to wait before refreshing its cache of " -"enumerated records." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:616 sssd-ldap.5.xml:1808 -msgid "Default: 300" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:622 -msgid "ldap_purge_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:625 -msgid "" -"Determine how often to check the cache for inactive entries (such as groups " -"with no members and users who have never logged in) and remove them to save " -"space." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:631 -msgid "Setting this option to zero will disable the cache cleanup operation." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:635 -msgid "Default: 10800 (12 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:641 -msgid "ldap_user_fullname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:644 -msgid "The LDAP attribute that corresponds to the user's full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:648 sssd-ldap.5.xml:727 sssd-ldap.5.xml:828 -#: sssd-ldap.5.xml:919 sssd-ldap.5.xml:1663 sssd-ldap.5.xml:1881 -#: sssd-ipa.5.xml:422 -msgid "Default: cn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:654 -msgid "ldap_user_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:657 -msgid "The LDAP attribute that lists the user's group memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:661 sssd-ipa.5.xml:326 -msgid "Default: memberOf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:667 -msgid "ldap_user_authorized_service (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:670 -msgid "" -"If access_provider=ldap and ldap_access_order=authorized_service, SSSD will " -"use the presence of the authorizedService attribute in the user's LDAP entry " -"to determine access privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:677 -msgid "" -"An explicit deny (!svc) is resolved first. Second, SSSD searches for " -"explicit allow (svc) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:682 -msgid "Default: authorizedService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:688 -msgid "ldap_user_authorized_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:691 -msgid "" -"If access_provider=ldap and ldap_access_order=host, SSSD will use the " -"presence of the host attribute in the user's LDAP entry to determine access " -"privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:697 -msgid "" -"An explicit deny (!host) is resolved first. Second, SSSD searches for " -"explicit allow (host) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:702 -msgid "Default: host" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:708 -msgid "ldap_group_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:711 -msgid "The object class of a group entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:714 -msgid "Default: posixGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:720 -msgid "ldap_group_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:723 -msgid "The LDAP attribute that corresponds to the group name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:733 -msgid "ldap_group_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:736 -msgid "The LDAP attribute that corresponds to the group's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:746 -msgid "ldap_group_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:749 -msgid "The LDAP attribute that contains the names of the group's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:753 -msgid "Default: memberuid (rfc2307) / member (rfc2307bis)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:759 -msgid "ldap_group_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:762 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP group object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:772 -msgid "ldap_group_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:785 -msgid "ldap_group_nesting_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:788 -msgid "" -"If ldap_schema is set to a schema format that supports nested groups (e.g. " -"RFC2307bis), then this option controls how many levels of nesting SSSD will " -"follow. This option has no effect on the RFC2307 schema." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:795 -msgid "Default: 2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:801 -msgid "ldap_netgroup_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:804 -msgid "The object class of a netgroup entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:807 -msgid "In IPA provider, ipa_netgroup_object_class should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:811 -msgid "Default: nisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:817 -msgid "ldap_netgroup_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:820 -msgid "The LDAP attribute that corresponds to the netgroup name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:824 -msgid "In IPA provider, ipa_netgroup_name should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:834 -msgid "ldap_netgroup_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:837 -msgid "The LDAP attribute that contains the names of the netgroup's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:841 -msgid "In IPA provider, ipa_netgroup_member should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:845 -msgid "Default: memberNisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:851 -msgid "ldap_netgroup_triple (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:854 -msgid "" -"The LDAP attribute that contains the (host, user, domain) netgroup triples." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:858 sssd-ldap.5.xml:891 -msgid "This option is not available in IPA provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:861 -msgid "Default: nisNetgroupTriple" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:867 -msgid "ldap_netgroup_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:870 -msgid "" -"The LDAP attribute that contains the UUID/GUID of an LDAP netgroup object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:874 -msgid "In IPA provider, ipa_netgroup_uuid should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:884 -msgid "ldap_netgroup_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:900 -msgid "ldap_service_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:903 -msgid "The object class of a service entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:906 -msgid "Default: ipService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:912 -msgid "ldap_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:915 -msgid "" -"The LDAP attribute that contains the name of service attributes and their " -"aliases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:925 -msgid "ldap_service_port (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:928 -msgid "The LDAP attribute that contains the port managed by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:932 -msgid "Default: ipServicePort" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:938 -msgid "ldap_service_proto (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:941 -msgid "" -"The LDAP attribute that contains the protocols understood by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:945 -msgid "Default: ipServiceProtocol" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:951 -msgid "ldap_service_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:954 -msgid "An optional base DN to restrict service searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:958 sssd-ldap.5.xml:1918 sssd-ldap.5.xml:1937 -#: sssd-ldap.5.xml:1956 sssd-ldap.5.xml:2019 sssd-ldap.5.xml:2041 -#: sssd-ipa.5.xml:163 sssd-ipa.5.xml:187 -msgid "" -"See <quote>ldap_search_base</quote> for information about configuring " -"multiple search bases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:963 sssd-ldap.5.xml:1923 sssd-ldap.5.xml:1942 -#: sssd-ldap.5.xml:1961 sssd-ldap.5.xml:2024 sssd-ldap.5.xml:2046 -#: sssd-ipa.5.xml:173 sssd-ipa.5.xml:192 -msgid "Default: the value of <emphasis>ldap_search_base</emphasis>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:970 -msgid "ldap_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:973 -msgid "" -"Specifies the timeout (in seconds) that ldap searches are allowed to run " -"before they are cancelled and cached results are returned (and offline mode " -"is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:979 -msgid "" -"Note: this option is subject to change in future versions of the SSSD. It " -"will likely be replaced at some point by a series of timeouts for specific " -"lookup types." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:985 sssd-ldap.5.xml:1027 sssd-ldap.5.xml:1042 -msgid "Default: 6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:991 -msgid "ldap_enumeration_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:994 -msgid "" -"Specifies the timeout (in seconds) that ldap searches for user and group " -"enumerations are allowed to run before they are cancelled and cached results " -"are returned (and offline mode is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1001 -msgid "Default: 60" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1007 -msgid "ldap_network_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1010 -msgid "" -"Specifies the timeout (in seconds) after which the <citerefentry> " -"<refentrytitle>poll</refentrytitle> <manvolnum>2</manvolnum> </citerefentry>/" -"<citerefentry> <refentrytitle>select</refentrytitle> <manvolnum>2</" -"manvolnum> </citerefentry> following a <citerefentry> " -"<refentrytitle>connect</refentrytitle> <manvolnum>2</manvolnum> </" -"citerefentry> returns in case of no activity." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1033 -msgid "ldap_opt_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1036 -msgid "" -"Specifies a timeout (in seconds) after which calls to synchronous LDAP APIs " -"will abort if no response is received. Also controls the timeout when " -"communicating with the KDC in case of SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1048 -msgid "ldap_connection_expire_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1051 -msgid "" -"Specifies a timeout (in seconds) that a connection to an LDAP server will be " -"maintained. After this time, the connection will be re-established. If used " -"in parallel with SASL/GSSAPI, the sooner of the two values (this value vs. " -"the TGT lifetime) will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1059 -msgid "Default: 900 (15 minutes)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1065 -msgid "ldap_page_size (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1068 -msgid "" -"Specify the number of records to retrieve from LDAP in a single request. " -"Some LDAP servers enforce a maximum limit per-request." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1073 -msgid "Default: 1000" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1079 -msgid "ldap_disable_paging" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1082 -msgid "" -"Disable the LDAP paging control. This option should be used if the LDAP " -"server reports that it supports the LDAP paging control in its RootDSE but " -"it is not enabled or does not behave properly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1088 -msgid "" -"Example: OpenLDAP servers with the paging control module installed on the " -"server but not enabled will report it in the RootDSE but be unable to use it." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1094 -msgid "" -"Example: 389 DS has a bug where it can only support a one paging control at " -"a time on a single connection. On busy clients, this can result in some " -"requests being denied." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1103 -msgid "ldap_deref_threshold (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1106 -msgid "" -"Specify the number of group members that must be missing from the internal " -"cache in order to trigger a dereference lookup. If less members are missing, " -"they are looked up individually." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1112 -msgid "" -"You can turn off dereference lookups completely by setting the value to 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1116 -msgid "" -"A dereference lookup is a means of fetching all group members in a single " -"LDAP call. Different LDAP servers may implement different dereference " -"methods. The currently supported servers are 389/RHDS, OpenLDAP and Active " -"Directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1124 -msgid "" -"<emphasis>Note:</emphasis> If any of the search bases specifies a search " -"filter, then the dereference lookup performance enhancement will be disabled " -"regardless of this setting." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1137 -msgid "ldap_tls_reqcert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1140 -msgid "" -"Specifies what checks to perform on server certificates in a TLS session, if " -"any. It can be specified as one of the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1146 -msgid "" -"<emphasis>never</emphasis> = The client will not request or check any server " -"certificate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1150 -msgid "" -"<emphasis>allow</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, it will be ignored and the session proceeds normally." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1157 -msgid "" -"<emphasis>try</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, the session is immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1163 -msgid "" -"<emphasis>demand</emphasis> = The server certificate is requested. If no " -"certificate is provided, or a bad certificate is provided, the session is " -"immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1169 -msgid "<emphasis>hard</emphasis> = Same as <quote>demand</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1173 -msgid "Default: hard" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1179 -msgid "ldap_tls_cacert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1182 -msgid "" -"Specifies the file that contains certificates for all of the Certificate " -"Authorities that <command>sssd</command> will recognize." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1187 sssd-ldap.5.xml:1205 sssd-ldap.5.xml:1246 -msgid "" -"Default: use OpenLDAP defaults, typically in <filename>/etc/openldap/ldap." -"conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1194 -msgid "ldap_tls_cacertdir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1197 -msgid "" -"Specifies the path of a directory that contains Certificate Authority " -"certificates in separate individual files. Typically the file names need to " -"be the hash of the certificate followed by '.0'. If available, " -"<command>cacertdir_rehash</command> can be used to create the correct names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1212 -msgid "ldap_tls_cert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1215 -msgid "Specifies the file that contains the certificate for the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1219 sssd-ldap.5.xml:1231 sssd-ldap.5.xml:1979 -#: sssd-ldap.5.xml:2006 sssd-krb5.5.xml:359 -msgid "Default: not set" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1225 -msgid "ldap_tls_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1228 -msgid "Specifies the file that contains the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1237 -msgid "ldap_tls_cipher_suite (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1240 -msgid "" -"Specifies acceptable cipher suites. Typically this is a colon sperated " -"list. See <citerefentry><refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> for format." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1253 -msgid "ldap_id_use_start_tls (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1256 -msgid "" -"Specifies that the id_provider connection must also use <systemitem class=" -"\"protocol\">tls</systemitem> to protect the channel." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1266 -msgid "ldap_sasl_mech (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1269 -msgid "" -"Specify the SASL mechanism to use. Currently only GSSAPI is tested and " -"supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1273 sssd-ldap.5.xml:1428 -msgid "Default: none" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1279 -msgid "ldap_sasl_authid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1282 -msgid "" -"Specify the SASL authorization id to use. When GSSAPI is used, this " -"represents the Kerberos principal used for authentication to the directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1287 -msgid "Default: host/machine.fqdn@REALM" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1293 -msgid "ldap_sasl_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1296 -msgid "" -"If set to true, the LDAP library would perform a reverse lookup to " -"canonicalize the host name during a SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1301 -msgid "Default: false;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1307 -msgid "ldap_krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1310 -msgid "Specify the keytab to use when using SASL/GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1313 -msgid "Default: System keytab, normally <filename>/etc/krb5.keytab</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1319 -msgid "ldap_krb5_init_creds (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1322 -msgid "" -"Specifies that the id_provider should init Kerberos credentials (TGT). This " -"action is performed only if SASL is used and the mechanism selected is " -"GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1334 -msgid "ldap_krb5_ticket_lifetime (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1337 -msgid "Specifies the lifetime in seconds of the TGT if GSSAPI is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1341 -msgid "Default: 86400 (24 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1347 sssd-krb5.5.xml:74 -msgid "krb5_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1350 sssd-krb5.5.xml:77 -msgid "" -"Specifies the comma-separated list of IP addresses or hostnames of the " -"Kerberos servers to which SSSD should connect in the order of preference. " -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. An optional port number (preceded by a " -"colon) may be appended to the addresses or hostnames. If empty, service " -"discovery is enabled - for more information, refer to the <quote>SERVICE " -"DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1362 sssd-krb5.5.xml:89 -msgid "" -"When using service discovery for KDC or kpasswd servers, SSSD first searches " -"for DNS entries that specify _udp as the protocol and falls back to _tcp if " -"none are found." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1367 sssd-krb5.5.xml:94 -msgid "" -"This option was named <quote>krb5_kdcip</quote> in earlier releases of SSSD. " -"While the legacy name is recognized for the time being, users are advised to " -"migrate their config files to use <quote>krb5_server</quote> instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1376 sssd-ipa.5.xml:216 sssd-krb5.5.xml:103 -msgid "krb5_realm (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1379 -msgid "Specify the Kerberos REALM (for SASL/GSSAPI auth)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1382 -msgid "Default: System defaults, see <filename>/etc/krb5.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1388 sssd-ipa.5.xml:231 sssd-krb5.5.xml:409 -msgid "krb5_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1391 -msgid "" -"Specifies if the host principal should be canonicalized when connecting to " -"LDAP server. This feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1403 -msgid "ldap_pwd_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1406 -msgid "" -"Select the policy to evaluate the password expiration on the client side. " -"The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1411 -msgid "" -"<emphasis>none</emphasis> - No evaluation on the client side. This option " -"cannot disable server-side password policies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1416 -msgid "" -"<emphasis>shadow</emphasis> - Use <citerefentry><refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum></citerefentry> style attributes to " -"evaluate if the password has expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1422 -msgid "" -"<emphasis>mit_kerberos</emphasis> - Use the attributes used by MIT Kerberos " -"to determine if the password has expired. Use chpass_provider=krb5 to update " -"these attributes when the password is changed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1434 -msgid "ldap_referrals (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1437 -msgid "Specifies whether automatic referral chasing should be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1441 -msgid "" -"Please note that sssd only supports referral chasing when it is compiled " -"with OpenLDAP version 2.4.13 or higher." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1452 -msgid "ldap_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1455 -msgid "Specifies the service name to use when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1459 -msgid "Default: ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1465 -msgid "ldap_chpass_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1468 -msgid "" -"Specifies the service name to use to find an LDAP server which allows " -"password changes when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1473 -msgid "Default: not set, i.e. service discovery is disabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1479 -msgid "ldap_access_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1482 -msgid "" -"If using access_provider = ldap, this option is mandatory. It specifies an " -"LDAP search filter criteria that must be met for the user to be granted " -"access on this host. If access_provider = ldap and this option is not set, " -"it will result in all users being denied access. Use access_provider = allow " -"to change this default behavior." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1492 sssd-ldap.5.xml:1982 -msgid "Example:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1495 -#, no-wrap -msgid "" -"access_provider = ldap\n" -"ldap_access_filter = memberOf=cn=allowedusers,ou=Groups,dc=example,dc=com\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1499 -msgid "" -"This example means that access to this host is restricted to members of the " -"\"allowedusers\" group in ldap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1504 -msgid "" -"Offline caching for this feature is limited to determining whether the " -"user's last online login was granted access permission. If they were granted " -"access during their last login, they will continue to be granted access " -"while offline and vice-versa." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1512 sssd-ldap.5.xml:1562 -msgid "Default: Empty" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1518 -msgid "ldap_account_expire_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1521 -msgid "" -"With this option a client side evaluation of access control attributes can " -"be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1525 -msgid "" -"Please note that it is always recommended to use server side access control, " -"i.e. the LDAP server should deny the bind request with a suitable error code " -"even if the password is correct." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1532 -msgid "The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1535 -msgid "" -"<emphasis>shadow</emphasis>: use the value of ldap_user_shadow_expire to " -"determine if the account is expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1540 -msgid "" -"<emphasis>ad</emphasis>: use the value of the 32bit field " -"ldap_user_ad_user_account_control and allow access if the second bit is not " -"set. If the attribute is missing access is granted. Also the expiration time " -"of the account is checked." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1547 -msgid "" -"<emphasis>rhds</emphasis>, <emphasis>ipa</emphasis>, <emphasis>389ds</" -"emphasis>: use the value of ldap_ns_account_lock to check if access is " -"allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1553 -msgid "" -"<emphasis>nds</emphasis>: the values of " -"ldap_user_nds_login_allowed_time_map, ldap_user_nds_login_disabled and " -"ldap_user_nds_login_expiration_time are used to check if access is allowed. " -"If both attributes are missing access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1568 -msgid "ldap_access_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1571 -msgid "Comma separated list of access control options. Allowed values are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1575 -msgid "<emphasis>filter</emphasis>: use ldap_access_filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1578 -msgid "<emphasis>expire</emphasis>: use ldap_account_expire_policy" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1582 -msgid "" -"<emphasis>authorized_service</emphasis>: use the authorizedService attribute " -"to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1587 -msgid "<emphasis>host</emphasis>: use the host attribute to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1591 -msgid "Default: filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1594 -msgid "" -"Please note that it is a configuration error if a value is used more than " -"once." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1601 -msgid "ldap_deref (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1604 -msgid "" -"Specifies how alias dereferencing is done when performing a search. The " -"following options are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1609 -msgid "<emphasis>never</emphasis>: Aliases are never dereferenced." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1613 -msgid "" -"<emphasis>searching</emphasis>: Aliases are dereferenced in subordinates of " -"the base object, but not in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1618 -msgid "" -"<emphasis>finding</emphasis>: Aliases are only dereferenced when locating " -"the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1623 -msgid "" -"<emphasis>always</emphasis>: Aliases are dereferenced both in searching and " -"in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1628 -msgid "" -"Default: Empty (this is handled as <emphasis>never</emphasis> by the LDAP " -"client libraries)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:51 -msgid "" -"All of the common configuration options that apply to SSSD domains also " -"apply to LDAP domains. Refer to the <quote>DOMAIN SECTIONS</quote> section " -"of the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for full details. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1639 -msgid "SUDO OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1644 -msgid "ldap_sudorule_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1647 -msgid "The object class of a sudo rule entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1650 -msgid "Default: sudoRole" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1656 -msgid "ldap_sudorule_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1659 -msgid "The LDAP attribute that corresponds to the sudo rule name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1669 -msgid "ldap_sudorule_command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1672 -msgid "The LDAP attribute that corresponds to the command name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1676 -msgid "Default: sudoCommand" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1682 -msgid "ldap_sudorule_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1685 -msgid "" -"The LDAP attribute that corresponds to the host name (or host IP address, " -"host IP network, or host netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1690 -msgid "Default: sudoHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1696 -msgid "ldap_sudorule_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1699 -msgid "" -"The LDAP attribute that corresponds to the user name (or UID, group name or " -"user's netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1703 -msgid "Default: sudoUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1709 -msgid "ldap_sudorule_option (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1712 -msgid "The LDAP attribute that corresponds to the sudo options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1716 -msgid "Default: sudoOption" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1722 -msgid "ldap_sudorule_runasuser (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1725 -msgid "" -"The LDAP attribute that corresponds to the user name that commands may be " -"run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1729 -msgid "Default: sudoRunAsUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1735 -msgid "ldap_sudorule_runasgroup (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1738 -msgid "" -"The LDAP attribute that corresponds to the group name or group GID that " -"commands may be run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1742 -msgid "Default: sudoRunAsGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1748 -msgid "ldap_sudorule_notbefore (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1751 -msgid "" -"The LDAP attribute that corresponds to the start date/time for when the sudo " -"rule is valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1755 -msgid "Default: sudoNotBefore" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1761 -msgid "ldap_sudorule_notafter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1764 -msgid "" -"The LDAP attribute that corresponds to the expiration date/time, after which " -"the sudo rule will no longer be valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1769 -msgid "Default: sudoNotAfter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1775 -msgid "ldap_sudorule_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1778 -msgid "The LDAP attribute that corresponds to the ordering index of the rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1782 -msgid "Default: sudoOrder" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1788 -msgid "ldap_sudo_refresh_enabled (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1791 -msgid "" -"Enables periodical download of all sudo rules. The cache is purged before " -"each update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1801 -msgid "ldap_sudo_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1804 -msgid "" -"How many seconds SSSD has to wait before refreshing its cache of sudo rules." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1642 -msgid "<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1815 -msgid "" -"This manual page only describes attribute name mapping. For detailed " -"explanation of sudo related attribute semantics, see <citerefentry> " -"<refentrytitle>sudoers.ldap</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1825 -msgid "AUTOFS OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1827 -msgid "" -"Please note that the default values correspond to the default schema which " -"is RFC2307." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1834 -msgid "ldap_autofs_map_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1837 sssd-ldap.5.xml:1863 -msgid "The object class of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1840 sssd-ldap.5.xml:1867 -msgid "Default: automountMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1847 -msgid "ldap_autofs_map_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1850 -msgid "The name of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1853 -msgid "Default: ou" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1860 -msgid "ldap_autofs_entry_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1874 -msgid "ldap_autofs_entry_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1877 sssd-ldap.5.xml:1891 -msgid "" -"The key of an automount entry in LDAP. The entry usually corresponds to a " -"mount point." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1888 -msgid "ldap_autofs_entry_value (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1895 -msgid "Default: automountInformation" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1832 -msgid "" -"<placeholder type=\"variablelist\" id=\"0\"/> <placeholder type=" -"\"variablelist\" id=\"1\"/> <placeholder type=\"variablelist\" id=\"2\"/> " -"<placeholder type=\"variablelist\" id=\"3\"/> <placeholder type=" -"\"variablelist\" id=\"4\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1904 -msgid "ADVANCED OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1911 -msgid "ldap_netgroup_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1914 -msgid "" -"An optional base DN to restrict netgroup searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1930 -msgid "ldap_user_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1933 -msgid "An optional base DN to restrict user searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1949 -msgid "ldap_group_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1952 -msgid "An optional base DN to restrict group searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1968 -msgid "ldap_user_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1971 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict user searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1975 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_user_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1985 -#, no-wrap -msgid "" -" ldap_user_search_filter = (loginShell=/bin/tcsh)\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1988 -msgid "" -"This filter would restrict user searches to users that have their shell set " -"to /bin/tcsh." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1995 -msgid "ldap_group_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1998 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict group searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2002 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_group_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2012 -msgid "ldap_sudo_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2015 -msgid "" -"An optional base DN to restrict sudo rules searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2034 -msgid "ldap_autofs_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2037 -msgid "" -"An optional base DN to restrict automounter searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1906 -msgid "" -"These options are supported by LDAP domains, but they should be used with " -"caution. Please include them in your configuration only if you know what you " -"are doing. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2066 -msgid "" -"The following example assumes that SSSD is correctly configured and LDAP is " -"set to one of the domains in the <replaceable>[domains]</replaceable> " -"section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ldap.5.xml:2072 -#, no-wrap -msgid "" -" [domain/LDAP]\n" -" id_provider = ldap\n" -" auth_provider = ldap\n" -" ldap_uri = ldap://ldap.mydomain.org\n" -" ldap_search_base = dc=mydomain,dc=org\n" -" ldap_tls_reqcert = demand\n" -" cache_credentials = true\n" -" enumerate = true\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2071 sssd-simple.5.xml:134 sssd-ipa.5.xml:552 -#: sssd-krb5.5.xml:441 -msgid "<placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:2085 sssd_krb5_locator_plugin.8.xml:61 -msgid "NOTES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2087 -msgid "" -"The descriptions of some of the configuration options in this manual page " -"are based on the <citerefentry> <refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page from the OpenLDAP 2.4 " -"distribution." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2098 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <refentryinfo> -#: pam_sss.8.xml:8 include/upstream.xml:2 -msgid "" -"<productname>SSSD</productname> <orgname>The SSSD upstream - http://" -"fedorahosted.org/sssd</orgname>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: pam_sss.8.xml:13 pam_sss.8.xml:18 -msgid "pam_sss" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: pam_sss.8.xml:19 -msgid "PAM module for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: pam_sss.8.xml:24 -msgid "" -"<command>pam_sss.so</command> <arg choice='opt'> <replaceable>quiet</" -"replaceable> </arg> <arg choice='opt'> <replaceable>forward_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_first_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_authtok</" -"replaceable> </arg> <arg choice='opt'> <replaceable>retry=N</replaceable> </" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:45 -msgid "" -"<command>pam_sss.so</command> is the PAM interface to the System Security " -"Services daemon (SSSD). Errors and results are logged through <command>syslog" -"(3)</command> with the LOG_AUTHPRIV facility." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:55 -msgid "<option>quiet</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:58 -msgid "Suppress log messages for unknown users." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:63 -msgid "<option>forward_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:66 -msgid "" -"If <option>forward_pass</option> is set the entered password is put on the " -"stack for other PAM modules to use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:73 -msgid "<option>use_first_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:76 -msgid "" -"The argument use_first_pass forces the module to use a previous stacked " -"modules password and will never prompt the user - if no password is " -"available or the password is not appropriate, the user will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:84 -msgid "<option>use_authtok</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:87 -msgid "" -"When password changing enforce the module to set the new password to the one " -"provided by a previously stacked password module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:94 -msgid "<option>retry=N</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:97 -msgid "" -"If specified the user is asked another N times for a password if " -"authentication fails. Default is 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:99 -msgid "" -"Please note that this option might not work as expected if the application " -"calling PAM handles the user dialog on its own. A typical example is " -"<command>sshd</command> with <option>PasswordAuthentication</option>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:110 -msgid "MODULE TYPES PROVIDED" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:111 -msgid "" -"All module types (<option>account</option>, <option>auth</option>, " -"<option>password</option> and <option>session</option>) are provided." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:117 -msgid "FILES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:118 -msgid "" -"If a password reset by root fails, because the corresponding SSSD provider " -"does not support password resets, an individual message can be displayed. " -"This message can e.g. contain instructions about how to reset a password." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:123 -msgid "" -"The message is read from the file <filename>pam_sss_pw_reset_message.LOC</" -"filename> where LOC stands for a locale string returned by <citerefentry> " -"<refentrytitle>setlocale</refentrytitle><manvolnum>3</manvolnum> </" -"citerefentry>. If there is no matching file the content of " -"<filename>pam_sss_pw_reset_message.txt</filename> is displayed. Root must be " -"the owner of the files and only root may have read and write permissions " -"while all other users must have only read permissions." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:133 -msgid "" -"These files are searched in the directory <filename>/etc/sssd/customize/" -"DOMAIN_NAME/</filename>. If no matching file is present a generic message is " -"displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:141 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd_krb5_locator_plugin.8.xml:10 sssd_krb5_locator_plugin.8.xml:15 -msgid "sssd_krb5_locator_plugin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:22 -msgid "" -"The Kerberos locator plugin <command>sssd_krb5_locator_plugin</command> is " -"used by the Kerberos provider of <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry> to tell the Kerberos " -"libraries what Realm and which KDC to use. Typically this is done in " -"<citerefentry> <refentrytitle>krb5.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> which is always read by the Kerberos libraries. " -"To simplify the configuration the Realm and the KDC can be defined in " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> as described in <citerefentry> " -"<refentrytitle>sssd-krb5.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry> puts the Realm and the name or IP address of the KDC into " -"the environment variables SSSD_KRB5_REALM and SSSD_KRB5_KDC respectively. " -"When <command>sssd_krb5_locator_plugin</command> is called by the kerberos " -"libraries it reads and evaluates these variables and returns them to the " -"libraries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:63 -msgid "" -"Not all Kerberos implementations support the use of plugins. If " -"<command>sssd_krb5_locator_plugin</command> is not available on your system " -"you have to edit /etc/krb5.conf to reflect your Kerberos setup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:69 -msgid "" -"If the environment variable SSSD_KRB5_LOCATOR_DEBUG is set to any value " -"debug messages will be sent to stderr." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:77 -msgid "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-simple.5.xml:10 sssd-simple.5.xml:16 -msgid "sssd-simple" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd-simple.5.xml:17 -msgid "the configuration file for SSSD's 'simple' access-control provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:24 -msgid "" -"This manual page describes the configuration of the simple access-control " -"provider for <citerefentry> <refentrytitle>sssd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry>. For a detailed syntax reference, " -"refer to the <quote>FILE FORMAT</quote> section of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:38 -msgid "" -"The simple access provider grants or denies access based on an access or " -"deny list of user or group names. The following rules apply:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:43 -msgid "If all lists are empty, access is granted" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:47 -msgid "" -"If any list is provided, the order of evaluation is allow,deny. This means " -"that any matching deny rule will supersede any matched allow rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:54 -msgid "" -"If either or both \"allow\" lists are provided, all users are denied unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:60 -msgid "" -"If only \"deny\" lists are provided, all users are granted access unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:78 -msgid "simple_allow_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:81 -msgid "Comma separated list of users who are allowed to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:88 -msgid "simple_deny_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:91 -msgid "Comma separated list of users who are explicitly denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:97 -msgid "simple_allow_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:100 -msgid "" -"Comma separated list of groups that are allowed to log in. This applies only " -"to groups within this SSSD domain. Local groups are not evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:108 -msgid "simple_deny_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:111 -msgid "" -"Comma separated list of groups that are explicitly denied access. This " -"applies only to groups within this SSSD domain. Local groups are not " -"evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:70 sssd-ipa.5.xml:65 -msgid "" -"Refer to the section <quote>DOMAIN SECTIONS</quote> of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page for details on the configuration of an SSSD " -"domain. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:120 -msgid "" -"Please note that it is an configuration error if both, simple_allow_users " -"and simple_deny_users, are defined." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:128 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the simple access provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-simple.5.xml:135 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" access_provider = simple\n" -" simple_allow_users = user1, user2\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:145 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ipa.5.xml:10 sssd-ipa.5.xml:16 -msgid "sssd-ipa" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:23 -msgid "" -"This manual page describes the configuration of the IPA provider for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. For a detailed syntax reference, refer to the <quote>FILE " -"FORMAT</quote> section of the <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:36 -msgid "" -"The IPA provider is a back end used to connect to an IPA server. (Refer to " -"the freeipa.org web site for information about IPA servers.) This provider " -"requires that the machine be joined to the IPA domain; configuration is " -"almost entirely self-discovered and obtained directly from the server." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:43 -msgid "" -"The IPA provider accepts the same options used by the <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> identity provider and the <citerefentry> <refentrytitle>sssd-" -"krb5</refentrytitle> <manvolnum>5</manvolnum> </citerefentry> authentication " -"provider with some exceptions described below." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:55 -msgid "" -"However, it is neither necessary nor recommended to set these options. IPA " -"provider can also be used as an access and chpass provider. As an access " -"provider it uses HBAC (host-based access control) rules. Please refer to " -"freeipa.org for more information about HBAC. No configuration of access " -"provider is required on the client side." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:72 -msgid "ipa_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:75 -msgid "" -"Specifies the name of the IPA domain. This is optional. If not provided, " -"the configuration domain name is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:83 -msgid "ipa_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:86 -msgid "" -"The comma-separated list of IP addresses or hostnames of the IPA servers to " -"which SSSD should connect in the order of preference. For more information " -"on failover and server redundancy, see the <quote>FAILOVER</quote> section. " -"This is optional if autodiscovery is enabled. For more information on " -"service discovery, refer to the the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:99 -msgid "ipa_hostname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:102 -msgid "" -"Optional. May be set on machines where the hostname(5) does not reflect the " -"fully qualified name used in the IPA domain to identify this host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:110 -msgid "ipa_dyndns_update (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:113 -msgid "" -"Optional. This option tells SSSD to automatically update the DNS server " -"built into FreeIPA v2 with the IP address of this client." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:118 -msgid "" -"NOTE: On older systems (such as RHEL 5), for this behavior to work reliably, " -"the default Kerberos realm must be set properly in /etc/krb5.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:129 -msgid "ipa_dyndns_iface (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:132 -msgid "" -"Optional. Applicable only when ipa_dyndns_update is true. Choose the " -"interface whose IP address should be used for dynamic DNS updates." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:137 -msgid "Default: Use the IP address of the IPA LDAP connection" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:143 -msgid "ipa_hbac_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:146 -msgid "Optional. Use the given string as search base for HBAC related objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:150 -msgid "Default: Use base DN" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:156 -msgid "ipa_host_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:159 -msgid "Optional. Use the given string as search base for host objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:168 -msgid "" -"If filter is given in any of search bases and " -"<emphasis>ipa_hbac_support_srchost</emphasis> is set to False, the filter " -"will be ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:180 -msgid "ipa_selinux_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:183 -msgid "Optional. Use the given string as search base for SELinux user maps." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:199 sssd-krb5.5.xml:229 -msgid "krb5_validate (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:202 sssd-krb5.5.xml:232 -msgid "" -"Verify with the help of krb5_keytab that the TGT obtained has not been " -"spoofed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:209 -msgid "" -"Note that this default differs from the traditional Kerberos provider back " -"end." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:219 -msgid "" -"The name of the Kerberos realm. This is optional and defaults to the value " -"of <quote>ipa_domain</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:223 -msgid "" -"The name of the Kerberos realm has a special meaning in IPA - it is " -"converted into the base DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:234 -msgid "" -"Specifies if the host and user principal should be canonicalized when " -"connecting to IPA LDAP and also for AS requests. This feature is available " -"with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:247 -msgid "ipa_hbac_refresh (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:250 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server. " -"This will reduce the latency and load on the IPA server if there are many " -"access-control requests made in a short period." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:257 -msgid "Default: 5 (seconds)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:262 -msgid "ipa_hbac_treat_deny_as (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:265 -msgid "" -"This option specifies how to treat the deprecated DENY-type HBAC rules. As " -"of FreeIPA v2.1, DENY rules are no longer supported on the server. All users " -"of FreeIPA will need to migrate their rules to use only the ALLOW rules. The " -"client will support two modes of operation during this transition period:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:274 -msgid "" -"<emphasis>DENY_ALL</emphasis>: If any HBAC DENY rules are detected, all " -"users will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:279 -msgid "" -"<emphasis>IGNORE</emphasis>: SSSD will ignore any DENY rules. Be very " -"careful with this option, as it may result in opening unintended access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:284 -msgid "Default: DENY_ALL" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:289 -msgid "ipa_hbac_support_srchost (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:292 -msgid "" -"If this is set to false, then srchost as given to SSSD by PAM will be " -"ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:296 -msgid "" -"Note that if set to <emphasis>False</emphasis>, this option casuses filters " -"given in <emphasis>ipa_host_search_base</emphasis> to be ignored;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:307 -msgid "ipa_automount_location (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:310 -msgid "The automounter location this IPA client will be using" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:313 -msgid "Default: The location named \"default\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:319 -msgid "ipa_netgroup_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:322 -msgid "The LDAP attribute that lists netgroup's memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:331 -msgid "ipa_netgroup_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:334 -msgid "" -"The LDAP attribute that lists system users and groups that are direct " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:339 sssd-ipa.5.xml:434 -msgid "Default: memberUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:344 -msgid "ipa_netgroup_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:347 -msgid "" -"The LDAP attribute that lists hosts and host groups that are direct members " -"of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:351 sssd-ipa.5.xml:446 -msgid "Default: memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:356 -msgid "ipa_netgroup_member_ext_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:359 -msgid "" -"The LDAP attribute that lists FQDNs of hosts and host groups that are " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:363 -msgid "Default: externalHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:368 -msgid "ipa_netgroup_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:371 -msgid "The LDAP attribute that contains NIS domain name of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:375 -msgid "Default: nisDomainName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:381 -msgid "ipa_host_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:384 sssd-ipa.5.xml:407 -msgid "The object class of a host entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:387 sssd-ipa.5.xml:410 -msgid "Default: ipaHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:392 -msgid "ipa_host_fqdn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:395 -msgid "The LDAP attribute that contains FQDN of the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:398 -msgid "Default: fqdn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:404 -msgid "ipa_selinux_usermap_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:415 -msgid "ipa_selinux_usermap_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:418 -msgid "The LDAP attribute that contains the name of SELinux usermap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:427 -msgid "ipa_selinux_usermap_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:430 -msgid "" -"The LDAP attribute that contains all users / groups this rule match against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:439 -msgid "ipa_selinux_usermap_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:442 -msgid "" -"The LDAP attribute that contains all hosts / hostgroups this rule match " -"against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:451 -msgid "ipa_selinux_usermap_see_also (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:454 -msgid "" -"The LDAP attribute that contains DN of HBAC rule which can be used for " -"matching instead of memberUser and memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:459 -msgid "Default: seeAlso" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:464 -msgid "ipa_selinux_usermap_selinux_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:467 -msgid "The LDAP attribute that contains SELinux user string itself." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:471 -msgid "Default: ipaSELinuxUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:476 -msgid "ipa_selinux_usermap_enabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:479 -msgid "" -"The LDAP attribute that contains whether or not is user map enabled for " -"usage." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:483 -msgid "Default: ipaEnabledFlag" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:488 -msgid "ipa_selinux_usermap_user_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:491 -msgid "The LDAP attribute that contains user category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:495 -msgid "Default: userCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:500 -msgid "ipa_selinux_usermap_host_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:503 -msgid "The LDAP attribute that contains host category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:507 -msgid "Default: hostCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:512 -msgid "ipa_selinux_usermap_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:515 -msgid "The LDAP attribute that contains unique ID of the user map." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:519 -msgid "Default: ipaUniqueID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:524 -msgid "ipa_host_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:527 -msgid "The LDAP attribute that contains the host's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:531 -msgid "Default: ipaSshPubKey" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:546 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the ipa provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ipa.5.xml:553 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" id_provider = ipa\n" -" ipa_server = ipaserver.example.com\n" -" ipa_hostname = myhost.example.com\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:564 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.8.xml:10 sssd.8.xml:15 -msgid "sssd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.8.xml:16 -msgid "System Security Services Daemon" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sssd.8.xml:21 -msgid "" -"<command>sssd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:31 -msgid "" -"<command>SSSD</command> provides a set of daemons to manage access to remote " -"directories and authentication mechanisms. It provides an NSS and PAM " -"interface toward the system and a pluggable backend system to connect to " -"multiple different account sources as well as D-Bus interface. It is also " -"the basis to provide client auditing and policy services for projects like " -"FreeIPA. It provides a more robust database to store local users as well as " -"extended user data." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:46 -msgid "" -"<option>-d</option>,<option>--debug-level</option> <replaceable>LEVEL</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:53 -msgid "<option>--debug-timestamps=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:57 -msgid "<emphasis>1</emphasis>: Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:60 -msgid "<emphasis>0</emphasis>: Disable timestamp in the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:69 -msgid "<option>--debug-microseconds=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:73 -msgid "" -"<emphasis>1</emphasis>: Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:76 -msgid "<emphasis>0</emphasis>: Disable microseconds in timestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:79 -msgid "Default: 0" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:85 -msgid "<option>-f</option>,<option>--debug-to-files</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:89 -msgid "" -"Send the debug output to files instead of stderr. By default, the log files " -"are stored in <filename>/var/log/sssd</filename> and there are separate log " -"files for every SSSD service and domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:97 -msgid "<option>-D</option>,<option>--daemon</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:101 -msgid "Become a daemon after starting up." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:107 -msgid "<option>-i</option>,<option>--interactive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:111 -msgid "Run in the foreground, don't become a daemon." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:117 sss_debuglevel.8.xml:42 -msgid "<option>-c</option>,<option>--config</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:121 sss_debuglevel.8.xml:46 -msgid "" -"Specify a non-default config file. The default is <filename>/etc/sssd/sssd." -"conf</filename>. For reference on the config file syntax and options, " -"consult the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:135 -msgid "<option>--version</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:139 -msgid "Print version number and exit." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.8.xml:147 -msgid "Signals" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:150 -msgid "SIGTERM/SIGINT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:153 -msgid "" -"Informs the SSSD to gracefully terminate all of its child processes and then " -"shut down the monitor." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:159 -msgid "SIGHUP" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:162 -msgid "" -"Tells the SSSD to stop writing to its current debug file descriptors and to " -"close and reopen them. This is meant to facilitate log rolling with programs " -"like logrotate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:170 -msgid "SIGUSR1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:173 -msgid "" -"Tells the SSSD to simulate offline operation for one minute. This is mostly " -"useful for testing purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:179 -msgid "SIGUSR2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:182 -msgid "" -"Tells the SSSD to go online immediately. This is mostly useful for testing " -"purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:193 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_obfuscate.8.xml:10 sss_obfuscate.8.xml:15 -msgid "sss_obfuscate" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_obfuscate.8.xml:16 -msgid "obfuscate a clear text password" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_obfuscate.8.xml:21 -msgid "" -"<command>sss_obfuscate</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>[PASSWORD]</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:32 -msgid "" -"<command>sss_obfuscate</command> converts a given password into human-" -"unreadable format and places it into appropriate domain section of the SSSD " -"config file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:37 -msgid "" -"The cleartext password is read from standard input or entered " -"interactively. The obfuscated password is put into " -"<quote>ldap_default_authtok</quote> parameter of a given SSSD domain and the " -"<quote>ldap_default_authtok_type</quote> parameter is set to " -"<quote>obfuscated_password</quote>. Refer to <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more details on these parameters." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:49 -msgid "" -"Please note that obfuscating the password provides <emphasis>no real " -"security benefit</emphasis> as it is still possible for an attacker to " -"reverse-engineer the password back. Using better authentication mechanisms " -"such as client side certificates or GSSAPI is <emphasis>strongly</emphasis> " -"advised." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:63 -msgid "<option>-s</option>,<option>--stdin</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:67 -msgid "The password to obfuscate will be read from standard input." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:74 sss_ssh_authorizedkeys.1.xml:82 -#: sss_ssh_knownhostsproxy.1.xml:81 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>DOMAIN</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:79 -msgid "" -"The SSSD domain to use the password in. The default name is <quote>default</" -"quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:86 -msgid "" -"<option>-f</option>,<option>--file</option> <replaceable>FILE</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:91 -msgid "Read the config file specified by the positional parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:95 -msgid "Default: <filename>/etc/sssd/sssd.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:105 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_useradd.8.xml:10 sss_useradd.8.xml:15 -msgid "sss_useradd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_useradd.8.xml:16 -msgid "create a new user" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_useradd.8.xml:21 -msgid "" -"<command>sss_useradd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:32 -msgid "" -"<command>sss_useradd</command> creates a new user account using the values " -"specified on the command line plus the default values from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:43 -msgid "" -"<option>-u</option>,<option>--uid</option> <replaceable>UID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:48 -msgid "" -"Set the UID of the user to the value of <replaceable>UID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:55 sss_usermod.8.xml:43 -msgid "" -"<option>-c</option>,<option>--gecos</option> <replaceable>COMMENT</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:60 sss_usermod.8.xml:48 -msgid "" -"Any text string describing the user. Often used as the field for the user's " -"full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:67 sss_usermod.8.xml:55 -msgid "" -"<option>-h</option>,<option>--home</option> <replaceable>HOME_DIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:72 -msgid "" -"The home directory of the user account. The default is to append the " -"<replaceable>LOGIN</replaceable> name to <filename>/home</filename> and use " -"that as the home directory. The base that is prepended before " -"<replaceable>LOGIN</replaceable> is tunable with <quote>user_defaults/" -"baseDirectory</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:82 sss_usermod.8.xml:66 -msgid "" -"<option>-s</option>,<option>--shell</option> <replaceable>SHELL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:87 -msgid "" -"The user's login shell. The default is currently <filename>/bin/bash</" -"filename>. The default can be changed with <quote>user_defaults/" -"defaultShell</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:96 -msgid "" -"<option>-G</option>,<option>--groups</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:101 -msgid "A list of existing groups this user is also a member of." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:107 -msgid "<option>-m</option>,<option>--create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:111 -msgid "" -"Create the user's home directory if it does not exist. The files and " -"directories contained in the skeleton directory (which can be defined with " -"the -k option or in the config file) will be copied to the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:121 -msgid "<option>-M</option>,<option>--no-create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:125 -msgid "" -"Do not create the user's home directory. Overrides configuration settings." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:132 -msgid "" -"<option>-k</option>,<option>--skel</option> <replaceable>SKELDIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:137 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<command>sss_useradd</command>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:143 -msgid "" -"This option is only valid if the <option>-m</option> (or <option>--create-" -"home</option>) option is specified, or creation of home directories is set " -"to TRUE in the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:152 sss_usermod.8.xml:124 -msgid "" -"<option>-Z</option>,<option>--selinux-user</option> " -"<replaceable>SELINUX_USER</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:157 -msgid "" -"The SELinux user for the user's login. If not specified, the system default " -"will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:169 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-krb5.5.xml:10 sssd-krb5.5.xml:16 -msgid "sssd-krb5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:23 -msgid "" -"This manual page describes the configuration of the Kerberos 5 " -"authentication backend for <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry>. For a detailed " -"syntax reference, please refer to the <quote>FILE FORMAT</quote> section of " -"the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:36 -msgid "" -"The Kerberos 5 authentication backend contains auth and chpass providers. It " -"must be paired with identity provider in order to function properly (for " -"example, id_provider = ldap). Some information required by the Kerberos 5 " -"authentication backend must be provided by the identity provider, such as " -"the user's Kerberos Principal Name (UPN). The configuration of the identity " -"provider should have an entry to specify the UPN. Please refer to the man " -"page for the applicable identity provider for details on how to configure " -"this." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:47 -msgid "" -"This backend also provides access control based on the .k5login file in the " -"home directory of the user. See <citerefentry> <refentrytitle>.k5login</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry> for more details. " -"Please note that an empty .k5login file will deny all access to this user. " -"To activate this feature use 'access_provider = krb5' in your sssd " -"configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:55 -msgid "" -"In the case where the UPN is not available in the identity backend " -"<command>sssd</command> will construct a UPN using the format " -"<replaceable>username</replaceable>@<replaceable>krb5_realm</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:106 -msgid "" -"The name of the Kerberos realm. This option is required and must be " -"specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:113 -msgid "krb5_kpasswd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:116 -msgid "" -"If the change password service is not running on the KDC alternative servers " -"can be defined here. An optional port number (preceded by a colon) may be " -"appended to the addresses or hostnames." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:122 -msgid "" -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. Please note that even if there are no more " -"kpasswd servers to try the back end is not switch to offline if " -"authentication against the KDC is still possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:129 -msgid "Default: Use the KDC" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:135 -msgid "krb5_ccachedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:138 -msgid "" -"Directory to store credential caches. All the substitution sequences of " -"krb5_ccname_template can be used here, too, except %d and %P. If the " -"directory does not exist it will be created. If %u, %U, %p or %h are used a " -"private directory belonging to the user is created. Otherwise a public " -"directory with restricted deletion flag (aka sticky bit, see <citerefentry> " -"<refentrytitle>chmod</refentrytitle> <manvolnum>1</manvolnum> </" -"citerefentry> for details) is created." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:151 -msgid "Default: /tmp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:157 -msgid "krb5_ccname_template (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:171 -msgid "login UID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:174 -msgid "%p" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:175 -msgid "principal name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:179 -msgid "%r" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:180 -msgid "realm name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:183 -msgid "%h" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:184 -msgid "home directory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:189 -msgid "value of krb5ccache_dir" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:194 -msgid "%P" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:195 -msgid "the process ID of the sssd client" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:160 -msgid "" -"Location of the user's credential cache. Currently only file based " -"credential caches are supported. In the template the following sequences are " -"substituted: <placeholder type=\"variablelist\" id=\"0\"/> If the template " -"ends with 'XXXXXX' mkstemp(3) is used to create a unique filename in a safe " -"way." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:209 -msgid "Default: FILE:%d/krb5cc_%U_XXXXXX" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:215 -msgid "krb5_auth_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:218 -msgid "" -"Timeout in seconds after an online authentication or change password request " -"is aborted. If possible the authentication request is continued offline." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:241 -msgid "krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:244 -msgid "" -"The location of the keytab to use when validating credentials obtained from " -"KDCs." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:248 -msgid "Default: /etc/krb5.keytab" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:254 -msgid "krb5_store_password_if_offline (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:257 -msgid "" -"Store the password of the user if the provider is offline and use it to " -"request a TGT when the provider gets online again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:262 -msgid "" -"Please note that this feature currently only available on a Linux platform. " -"Passwords stored in this way are kept in plaintext in the kernel keyring and " -"are potentially accessible by the root user (with difficulty)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:275 -msgid "krb5_renewable_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:278 -msgid "" -"Request a renewable ticket with a total lifetime given by an integer " -"immediately followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:283 sssd-krb5.5.xml:319 -msgid "<emphasis>s</emphasis> seconds" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:286 sssd-krb5.5.xml:322 -msgid "<emphasis>m</emphasis> minutes" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:289 sssd-krb5.5.xml:325 -msgid "<emphasis>h</emphasis> hours" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:292 sssd-krb5.5.xml:328 -msgid "<emphasis>d</emphasis> days." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:295 sssd-krb5.5.xml:331 -msgid "If there is no delimiter <emphasis>s</emphasis> is assumed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:299 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"renewable lifetime to one and a half hours please use '90m' instead of " -"'1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:305 -msgid "Default: not set, i.e. the TGT is not renewable" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:311 -msgid "krb5_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:314 -msgid "" -"Request ticket with a with a lifetime given by an integer immediately " -"followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:335 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"lifetime to one and a half hours please use '90m' instead of '1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:340 -msgid "" -"Default: not set, i.e. the default ticket lifetime configured on the KDC." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:347 -msgid "krb5_renew_interval (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:350 -msgid "" -"The time in seconds between two checks if the TGT should be renewed. TGTs " -"are renewed if about half of their lifetime is exceeded." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:355 -msgid "If this option is not set or 0 the automatic renewal is disabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:365 -msgid "krb5_use_fast (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:368 -msgid "" -"Enables flexible authentication secure tunneling (FAST) for Kerberos pre-" -"authentication. The following options are supported:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:373 -msgid "" -"<emphasis>never</emphasis> use FAST, this is equivalent to not set this " -"option at all." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:377 -msgid "" -"<emphasis>try</emphasis> to use FAST, if the server does not support fast " -"continue without." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:381 -msgid "" -"<emphasis>demand</emphasis> to use FAST, fail if the server does not require " -"fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:385 -msgid "Default: not set, i.e. FAST is not used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:388 -msgid "Please note that a keytab is required to use fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:391 -msgid "" -"Please note also that sssd supports fast only with MIT Kerberos version 1.8 " -"and above. If sssd used with an older version using this option is a " -"configuration error." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:400 -msgid "krb5_fast_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:403 -msgid "Specifies the server principal to use for FAST." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:412 -msgid "" -"Specifies if the host and user principal should be canonicalized. This " -"feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:65 -msgid "" -"If the auth-module krb5 is used in a SSSD domain, the following options must " -"be used. See the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page, section <quote>DOMAIN " -"SECTIONS</quote> for details on the configuration of a SSSD domain. " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:434 -msgid "" -"The following example assumes that SSSD is correctly configured and FOO is " -"one of the domains in the <replaceable>[sssd]</replaceable> section. This " -"example shows only configuration of Kerberos authentication, it does not " -"include any identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-krb5.5.xml:442 -#, no-wrap -msgid "" -" [domain/FOO]\n" -" auth_provider = krb5\n" -" krb5_server = 192.168.1.1\n" -" krb5_realm = EXAMPLE.COM\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:453 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupadd.8.xml:10 sss_groupadd.8.xml:15 -msgid "sss_groupadd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupadd.8.xml:16 -msgid "create a new group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupadd.8.xml:21 -msgid "" -"<command>sss_groupadd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:32 -msgid "" -"<command>sss_groupadd</command> creates a new group. These groups are " -"compatible with POSIX groups, with the additional feature that they can " -"contain other groups as members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupadd.8.xml:43 -msgid "" -"<option>-g</option>,<option>--gid</option> <replaceable>GID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupadd.8.xml:48 -msgid "" -"Set the GID of the group to the value of <replaceable>GID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_userdel.8.xml:10 sss_userdel.8.xml:15 -msgid "sss_userdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_userdel.8.xml:16 -msgid "delete a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_userdel.8.xml:21 -msgid "" -"<command>sss_userdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:32 -msgid "" -"<command>sss_userdel</command> deletes a user identified by login name " -"<replaceable>LOGIN</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:44 -msgid "<option>-r</option>,<option>--remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:48 -msgid "" -"Files in the user's home directory will be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:56 -msgid "<option>-R</option>,<option>--no-remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:60 -msgid "" -"Files in the user's home directory will NOT be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:68 -msgid "<option>-f</option>,<option>--force</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:72 -msgid "" -"This option forces <command>sss_userdel</command> to remove the user's home " -"directory and mail spool, even if they are not owned by the specified user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:80 -msgid "<option>-k</option>,<option>--kick</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:84 -msgid "Before actually deleting the user, terminate all his processes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:95 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupdel.8.xml:10 sss_groupdel.8.xml:15 -msgid "sss_groupdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupdel.8.xml:16 -msgid "delete a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupdel.8.xml:21 -msgid "" -"<command>sss_groupdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:32 -msgid "" -"<command>sss_groupdel</command> deletes a group identified by its name " -"<replaceable>GROUP</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupshow.8.xml:10 sss_groupshow.8.xml:15 -msgid "sss_groupshow" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupshow.8.xml:16 -msgid "print properties of a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupshow.8.xml:21 -msgid "" -"<command>sss_groupshow</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:32 -msgid "" -"<command>sss_groupshow</command> displays information about a group " -"identified by its name <replaceable>GROUP</replaceable>. The information " -"includes the group ID number, members of the group and the parent group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupshow.8.xml:43 -msgid "<option>-R</option>,<option>--recursive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupshow.8.xml:47 -msgid "" -"Also print indirect group members in a tree-like hierarchy. Note that this " -"also affects printing parent groups - without <option>R</option>, only the " -"direct parent will be printed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_usermod.8.xml:10 sss_usermod.8.xml:15 -msgid "sss_usermod" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_usermod.8.xml:16 -msgid "modify a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_usermod.8.xml:21 -msgid "" -"<command>sss_usermod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:32 -msgid "" -"<command>sss_usermod</command> modifies the account specified by " -"<replaceable>LOGIN</replaceable> to reflect the changes that are specified " -"on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:60 -msgid "The home directory of the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:71 -msgid "The user's login shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:82 -msgid "" -"Append this user to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:96 -msgid "" -"Remove this user from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:103 -msgid "<option>-l</option>,<option>--lock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:107 -msgid "Lock the user account. The user won't be able to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:114 -msgid "<option>-u</option>,<option>--unlock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:118 -msgid "Unlock the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:129 -msgid "The SELinux user for the user's login." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:140 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_cache.8.xml:10 sss_cache.8.xml:15 -msgid "sss_cache" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_cache.8.xml:16 -msgid "perform cache cleanup" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_cache.8.xml:21 -msgid "" -"<command>sss_cache</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_cache.8.xml:31 -msgid "" -"<command>sss_cache</command> invalidates records in SSSD cache. Invalidated " -"records are forced to be reloaded from server as soon as related SSSD " -"backend is online." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:42 -msgid "" -"<option>-u</option>,<option>--user</option> <replaceable>login</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:47 -msgid "Invalidate specific user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:53 -msgid "<option>-U</option>,<option>--users</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:57 -msgid "" -"Invalidate all user records. This option overrides invalidation of specific " -"user if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:64 -msgid "" -"<option>-g</option>,<option>--group</option> <replaceable>group</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:69 -msgid "Invalidate specific group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:75 -msgid "<option>-G</option>,<option>--groups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:79 -msgid "" -"Invalidate all group records. This option overrides invalidation of specific " -"group if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:86 -msgid "" -"<option>-n</option>,<option>--netgroup</option> <replaceable>netgroup</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:91 -msgid "Invalidate specific netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:97 -msgid "<option>-N</option>,<option>--netgroups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:101 -msgid "" -"Invalidate all netgroup records. This option overrides invalidation of " -"specific netgroup if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:108 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>domain</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:113 -msgid "Restrict invalidation process only to a particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_debuglevel.8.xml:10 sss_debuglevel.8.xml:15 -msgid "sss_debuglevel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_debuglevel.8.xml:16 -msgid "change debug level while SSSD is running" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_debuglevel.8.xml:21 -msgid "" -"<command>sss_debuglevel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>NEW_DEBUG_LEVEL</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_debuglevel.8.xml:32 -msgid "" -"<command>sss_debuglevel</command> changes debug level of SSSD monitor and " -"providers to <replaceable>NEW_DEBUG_LEVEL</replaceable> while SSSD is " -"running." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_debuglevel.8.xml:59 -msgid "<replaceable>NEW_DEBUG_LEVEL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_authorizedkeys.1.xml:10 sss_ssh_authorizedkeys.1.xml:15 -msgid "sss_ssh_authorizedkeys" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_ssh_authorizedkeys.1.xml:11 sss_ssh_knownhostsproxy.1.xml:11 -msgid "1" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_authorizedkeys.1.xml:16 -msgid "get OpenSSH authorized keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_authorizedkeys.1.xml:21 -msgid "" -"<command>sss_ssh_authorizedkeys</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>USER</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:32 -msgid "" -"<command>sss_ssh_authorizedkeys</command> acquires SSH public keys for user " -"<replaceable>USER</replaceable> and outputs them in OpenSSH authorized_keys " -"format (see the <quote>AUTHORIZED_KEYS FILE FORMAT</quote> section of " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> for more information)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:41 -msgid "" -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_authorizedkeys</" -"command> for public key user authentication if it is compiled with support " -"for either <quote>AuthorizedKeysCommand</quote> or <quote>PubkeyAgent</" -"quote> <citerefentry> <refentrytitle>sshd_config</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:58 -#, no-wrap -msgid "AuthorizedKeysCommand /usr/bin/sss_ssh_authorizedkeys\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:51 -msgid "" -"If <quote>AuthorizedKeysCommand</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by putting the following directive " -"in <citerefentry> <refentrytitle>sshd_config</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry>: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:69 -#, no-wrap -msgid "PubKeyAgent /usr/bin/sss_ssh_authorizedkeys %u\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:62 -msgid "" -"If <quote>PubkeyAgent</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by using the following directive " -"for <citerefentry> <refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> configuration: <placeholder type=\"programlisting" -"\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_authorizedkeys.1.xml:87 -msgid "" -"Search for user public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:98 -msgid "" -"<citerefentry> <refentrytitle>sshd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sshd_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_knownhostsproxy</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_knownhostsproxy.1.xml:10 sss_ssh_knownhostsproxy.1.xml:15 -msgid "sss_ssh_knownhostsproxy" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_knownhostsproxy.1.xml:16 -msgid "get OpenSSH host keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_knownhostsproxy.1.xml:21 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>HOST</replaceable></arg> <arg " -"choice='opt'><replaceable>PROXY_COMMAND</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:33 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> acquires SSH host public keys for " -"host <replaceable>HOST</replaceable>, stores them in a custom OpenSSH " -"known_hosts file (see the <quote>SSH_KNOWN_HOSTS FILE FORMAT</quote> section " -"of <citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> for more information) <filename>/var/lib/sss/" -"pubconf/known_hosts</filename> and estabilishes connection to the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:43 -msgid "" -"If <replaceable>PROXY_COMMAND</replaceable> is specified, it is used to " -"create the connection to the host instead of opening a socket." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_knownhostsproxy.1.xml:55 -#, no-wrap -msgid "" -"ProxyCommand /usr/bin/sss_ssh_knownhostsproxy -p %p %h\n" -"GlobalKnownHostsFile2 /var/lib/sss/pubconf/known_hosts\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:48 -msgid "" -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_knownhostsproxy</" -"command> for host key authentication by using the following directives for " -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> configuration: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_ssh_knownhostsproxy.1.xml:69 -msgid "" -"<option>-p</option>,<option>--port</option> <replaceable>PORT</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:74 -msgid "" -"Use port <replaceable>PORT</replaceable> to connect to the host. By " -"default, port 22 is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:86 -msgid "" -"Search for host public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:97 -msgid "" -"<citerefentry> <refentrytitle>ssh</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>ssh_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_authorizedkeys</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/service_discovery.xml:2 -msgid "SERVICE DISCOVERY" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/service_discovery.xml:4 -msgid "" -"The service discovery feature allows back ends to automatically find the " -"appropriate servers to connect to using a special DNS query." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:9 -msgid "Configuration" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:11 -msgid "" -"If no servers are specified, the back end automatically uses service " -"discovery to try to find a server. Optionally, the user may choose to use " -"both fixed server addresses and service discovery by inserting a special " -"keyword, <quote>_srv_</quote>, in the list of servers. The order of " -"preference is maintained. This feature is useful if, for example, the user " -"prefers to use service discovery whenever possible, and fall back to a " -"specific server when no servers can be discovered using DNS." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:23 -msgid "The domain name" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:25 -msgid "" -"Please refer to the <quote>dns_discovery_domain</quote> parameter in the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for more details." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:35 -msgid "The protocol" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:37 -msgid "" -"The queries usually specify _tcp as the protocol. Exceptions are documented " -"in respective option description." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:42 -msgid "See Also" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:44 -msgid "" -"For more information on the service discovery mechanism, refer to RFC 2782." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/upstream.xml:1 -msgid "<placeholder type=\"refentryinfo\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/failover.xml:2 -msgid "FAILOVER" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/failover.xml:4 -msgid "" -"The failover feature allows back ends to automatically switch to a different " -"server if the primary server fails." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:8 -msgid "Failover Syntax" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:10 -msgid "" -"The list of servers is given as a comma-separated list; any number of spaces " -"is allowed around the comma. The servers are listed in order of preference. " -"The list can contain any number of servers." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:17 -msgid "The Failover Mechanism" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:19 -msgid "" -"The failover mechanism distinguishes between a machine and a service. The " -"back end first tries to resolve the hostname of a given machine; if this " -"resolution attempt fails, the machine is considered offline. No further " -"attempts are made to connect to this machine for any other service. If the " -"resolution attempt succeeds, the back end tries to connect to a service on " -"this machine. If the service connection attempt fails, then only this " -"particular service is considered offline and the back end automatically " -"switches over to the next service. The machine is still considered online " -"and might still be tried for another service." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:32 -msgid "" -"Further connection attempts are made to machines or services marked as " -"offline after a specified period of time; this is currently hard coded to 30 " -"seconds." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:37 -msgid "" -"If there are no more machines to try, the back end as a whole switches to " -"offline mode, and then attempts to reconnect every 30 seconds." -msgstr "" - -#. type: Content of: <varlistentry><term> -#: include/param_help.xml:3 -msgid "<option>-h</option>,<option>--help</option>" -msgstr "" - -#. type: Content of: <varlistentry><listitem><para> -#: include/param_help.xml:7 -msgid "Display help message and exit." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:3 -msgid "" -"Bit mask that indicates which debug levels will be visible. 0x0010 is the " -"default value as well as the lowest allowed value, 0xFFF0 is the most " -"verbose mode. This setting overrides the settings from config file." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:8 -msgid "Currently supported debug levels:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:11 -msgid "" -"<emphasis>0x0010</emphasis>: Fatal failures. Anything that would prevent " -"SSSD from starting up or causes it to cease running." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:15 -msgid "" -"<emphasis>0x0020</emphasis>: Critical failures. An error that doesn't kill " -"the SSSD, but one that indicates that at least one major feature is not " -"going to work properly." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:20 -msgid "" -"<emphasis>0x0040</emphasis>: Serious failures. An error announcing that a " -"particular request or operation has failed." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:24 -msgid "" -"<emphasis>0x0080</emphasis>: Minor failures. These are the errors that would " -"percolate down to cause the operation failure of 2." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:28 -msgid "<emphasis>0x0100</emphasis>: Configuration settings." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:31 -msgid "<emphasis>0x0200</emphasis>: Function data." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:34 -msgid "<emphasis>0x0400</emphasis>: Trace messages for operation functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:37 -msgid "" -"<emphasis>0x1000</emphasis>: Trace messages for internal control functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:40 -msgid "" -"<emphasis>0x2000</emphasis>: Contents of function-internal variables that " -"may be interesting." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:43 -msgid "<emphasis>0x4000</emphasis>: Extremely low-level tracing information." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:46 -msgid "" -"To log required debug levels, simply add their numbers together as shown in " -"following examples:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:49 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, critical failures, " -"serious failures and function data use 0x0270." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:53 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, configuration settings, " -"function data, trace messages for internal control functions use 0x1310." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:57 -msgid "" -"<emphasis>Note</emphasis>: This is new format of debug levels introduced in " -"1.7.0. Older format (numbers from 0-10) is compatible but deprecated." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/experimental.xml:1 -msgid "" -"<emphasis> This is an experimental feature, please use http://fedorahosted." -"org/sssd to report any issues. </emphasis>" -msgstr "" diff --git a/src/man/po/id.po b/src/man/po/id.po deleted file mode 100644 index c2d495cd2..000000000 --- a/src/man/po/id.po +++ /dev/null @@ -1,6747 +0,0 @@ -# SOME DESCRIPTIVE TITLE -# Copyright (C) YEAR Red Hat -# This file is distributed under the same license as the sssd-docs package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@redhat.com\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-12-23 15:35+0000\n" -"Last-Translator: FULL NAME <EMAIL@ADDRESS>\n" -"Language-Team: Indonesian <trans-id@lists.fedoraproject.org>\n" -"Language: id\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=1; plural=0\n" - -#. type: Content of: <reference><title> -#: sss_groupmod.8.xml:5 sssd.conf.5.xml:5 sssd-ldap.5.xml:5 pam_sss.8.xml:5 -#: sssd_krb5_locator_plugin.8.xml:5 sssd-simple.5.xml:5 sssd-ipa.5.xml:5 -#: sssd.8.xml:5 sss_obfuscate.8.xml:5 sss_useradd.8.xml:5 sssd-krb5.5.xml:5 -#: sss_groupadd.8.xml:5 sss_userdel.8.xml:5 sss_groupdel.8.xml:5 -#: sss_groupshow.8.xml:5 sss_usermod.8.xml:5 sss_cache.8.xml:5 -#: sss_debuglevel.8.xml:5 sss_ssh_authorizedkeys.1.xml:5 -#: sss_ssh_knownhostsproxy.1.xml:5 -msgid "SSSD Manual pages" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupmod.8.xml:10 sss_groupmod.8.xml:15 -msgid "sss_groupmod" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_groupmod.8.xml:11 pam_sss.8.xml:14 sssd_krb5_locator_plugin.8.xml:11 -#: sssd.8.xml:11 sss_obfuscate.8.xml:11 sss_useradd.8.xml:11 -#: sss_groupadd.8.xml:11 sss_userdel.8.xml:11 sss_groupdel.8.xml:11 -#: sss_groupshow.8.xml:11 sss_usermod.8.xml:11 sss_cache.8.xml:11 -#: sss_debuglevel.8.xml:11 -msgid "8" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupmod.8.xml:16 -msgid "modify a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupmod.8.xml:21 -msgid "" -"<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:30 sssd-ldap.5.xml:21 pam_sss.8.xml:44 -#: sssd_krb5_locator_plugin.8.xml:20 sssd-simple.5.xml:22 sssd-ipa.5.xml:21 -#: sssd.8.xml:29 sss_obfuscate.8.xml:30 sss_useradd.8.xml:30 -#: sssd-krb5.5.xml:21 sss_groupadd.8.xml:30 sss_userdel.8.xml:30 -#: sss_groupdel.8.xml:30 sss_groupshow.8.xml:30 sss_usermod.8.xml:30 -#: sss_cache.8.xml:29 sss_debuglevel.8.xml:30 sss_ssh_authorizedkeys.1.xml:30 -#: sss_ssh_knownhostsproxy.1.xml:31 -msgid "DESCRIPTION" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:32 -msgid "" -"<command>sss_groupmod</command> modifies the group to reflect the changes " -"that are specified on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:39 pam_sss.8.xml:51 sssd.8.xml:42 sss_obfuscate.8.xml:58 -#: sss_useradd.8.xml:39 sss_groupadd.8.xml:39 sss_userdel.8.xml:39 -#: sss_groupdel.8.xml:39 sss_groupshow.8.xml:39 sss_usermod.8.xml:39 -#: sss_cache.8.xml:38 sss_debuglevel.8.xml:38 sss_ssh_authorizedkeys.1.xml:78 -#: sss_ssh_knownhostsproxy.1.xml:65 -msgid "OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:43 sss_usermod.8.xml:77 -msgid "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:48 -msgid "" -"Append this group to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:57 sss_usermod.8.xml:91 -msgid "" -"<option>-r</option>,<option>--remove-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:62 -msgid "" -"Remove this group from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:72 sssd.conf.5.xml:1331 sssd-ldap.5.xml:2096 -#: pam_sss.8.xml:139 sssd_krb5_locator_plugin.8.xml:75 sssd-simple.5.xml:143 -#: sssd-ipa.5.xml:562 sssd.8.xml:191 sss_obfuscate.8.xml:103 -#: sss_useradd.8.xml:167 sssd-krb5.5.xml:451 sss_groupadd.8.xml:58 -#: sss_userdel.8.xml:93 sss_groupdel.8.xml:46 sss_groupshow.8.xml:58 -#: sss_usermod.8.xml:138 sss_ssh_authorizedkeys.1.xml:96 -#: sss_ssh_knownhostsproxy.1.xml:95 -msgid "SEE ALSO" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:74 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.conf.5.xml:10 sssd.conf.5.xml:16 -msgid "sssd.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sssd.conf.5.xml:11 sssd-ldap.5.xml:11 sssd-simple.5.xml:11 -#: sssd-ipa.5.xml:11 sssd-krb5.5.xml:11 -msgid "5" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><refmiscinfo> -#: sssd.conf.5.xml:12 sssd-ldap.5.xml:12 sssd-simple.5.xml:12 -#: sssd-ipa.5.xml:12 sssd-krb5.5.xml:12 -msgid "File Formats and Conventions" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.conf.5.xml:17 sssd-ldap.5.xml:17 sssd_krb5_locator_plugin.8.xml:16 -#: sssd-ipa.5.xml:17 sssd-krb5.5.xml:17 -msgid "the configuration file for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:21 -msgid "FILE FORMAT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:29 -#, no-wrap -msgid "" -" <replaceable>[section]</replaceable>\n" -" <replaceable>key</replaceable> = <replaceable>value</replaceable>\n" -" <replaceable>key2</replaceable> = <replaceable>value2,value3</replaceable>\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:24 -msgid "" -"The file has an ini-style syntax and consists of sections and parameters. A " -"section begins with the name of the section in square brackets and continues " -"until the next section begins. An example of section with single and multi-" -"valued parameters: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:36 -msgid "" -"The data types used are string (no quotes needed), integer and bool (with " -"values of <quote>TRUE/FALSE</quote>)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:41 -msgid "" -"A line comment starts with a hash sign (<quote>#</quote>) or a semicolon " -"(<quote>;</quote>)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:46 -msgid "" -"All sections can have an optional <replaceable>description</replaceable> " -"parameter. Its function is only as a label for the section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:52 -msgid "" -"<filename>sssd.conf</filename> must be a regular file, owned by root and " -"only root may read from or write to the file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:58 -msgid "SPECIAL SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:61 -msgid "The [sssd] section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><title> -#: sssd.conf.5.xml:70 sssd.conf.5.xml:1177 -msgid "Section parameters" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:72 -msgid "config_file_version (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:75 -msgid "" -"Indicates what is the syntax of the config file. SSSD 0.6.0 and later use " -"version 2." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:81 -msgid "services" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:84 -msgid "" -"Comma separated list of services that are started when sssd itself starts." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:88 -msgid "" -"Supported services: nss, pam <phrase condition=\"with_sudo\">, sudo</phrase>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:94 sssd.conf.5.xml:257 -msgid "reconnection_retries (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:97 sssd.conf.5.xml:260 -msgid "" -"Number of times services should attempt to reconnect in the event of a Data " -"Provider crash or restart before they give up" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:102 sssd.conf.5.xml:265 -msgid "Default: 3" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:107 -msgid "domains" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:110 -msgid "" -"A domain is a database containing user information. SSSD can use more " -"domains at the same time, but at least one must be configured or SSSD won't " -"start. This parameter described the list of domains in the order you want " -"them to be queried." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:120 -msgid "re_expression (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:123 -msgid "" -"Regular expression that describes how to parse the string containing user " -"name and domain into these components." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:127 -msgid "" -"Default: <quote>(?P<name>[^@]+)@?(?P<domain>[^@]*$)</quote> " -"which translates to \"the name is everything up to the <quote>@</quote> " -"sign, the domain everything after that\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:132 -msgid "" -"PLEASE NOTE: the support for non-unique named subpatterns is not available " -"on all platforms (e.g. RHEL5 and SLES10). Only platforms with libpcre " -"version 7 or higher can support non-unique named subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:139 -msgid "" -"PLEASE NOTE ALSO: older version of libpcre only support the Python syntax (?" -"P<name>) to label subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:146 -msgid "full_name_format (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:149 -msgid "" -"A <citerefentry> <refentrytitle>printf</refentrytitle> <manvolnum>3</" -"manvolnum> </citerefentry>-compatible format that describes how to translate " -"a (name, domain) tuple into a fully qualified name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:157 -msgid "Default: <quote>%1$s@%2$s</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:162 -msgid "try_inotify (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:165 -msgid "" -"SSSD monitors the state of resolv.conf to identify when it needs to update " -"its internal DNS resolver. By default, we will attempt to use inotify for " -"this, and will fall back to polling resolv.conf every five seconds if " -"inotify cannot be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:173 -msgid "" -"There are some limited situations where it is preferred that we should skip " -"even trying to use inotify. In these rare cases, this option should be set " -"to 'false'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:179 -msgid "" -"Default: true on platforms where inotify is supported. False on other " -"platforms." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:183 -msgid "" -"Note: this option will have no effect on platforms where inotify is " -"unavailable. On these platforms, polling will always be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:190 -msgid "krb5_rcache_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:193 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:197 -msgid "" -"This option accepts a special value __LIBKRB5_DEFAULTS__ that will instruct " -"SSSD to let libkrb5 decide the appropriate location for the replay cache." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:203 -msgid "" -"Default: Distribution-specific and specified at build-time. " -"(__LIBKRB5_DEFAULTS__ if not configured)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:63 -msgid "" -"Individual pieces of SSSD functionality are provided by special SSSD " -"services that are started and stopped together with SSSD. The services are " -"managed by a special service frequently called <quote>monitor</quote>. The " -"<quote>[sssd]</quote> section is used to configure the monitor as well as " -"some other important options like the identity domains. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:216 -msgid "SERVICES SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:218 -msgid "" -"Settings that can be used to configure different services are described in " -"this section. They should reside in the [<replaceable>$NAME</replaceable>] " -"section, for example, for NSS service, the section would be <quote>[nss]</" -"quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:225 -msgid "General service configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:227 -msgid "These options can be used to configure any service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:231 -msgid "debug_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:235 -msgid "debug_timestamps (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:238 -msgid "Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:241 sssd.conf.5.xml:376 sssd-ldap.5.xml:1328 -#: sssd-ldap.5.xml:1446 sssd-ipa.5.xml:206 sssd-ipa.5.xml:241 -msgid "Default: true" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:246 -msgid "debug_microseconds (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:249 -msgid "Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:252 sssd.conf.5.xml:641 sssd-ldap.5.xml:602 -#: sssd-ldap.5.xml:1260 sssd-ldap.5.xml:1397 sssd-ldap.5.xml:1795 -#: sssd-ipa.5.xml:123 sssd-ipa.5.xml:301 sssd-krb5.5.xml:235 -#: sssd-krb5.5.xml:269 sssd-krb5.5.xml:418 -msgid "Default: false" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:270 -msgid "command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:273 -msgid "" -"By default, the executable representing this service is called <command>sssd_" -"${service_name}</command>. This directive allows to change the executable " -"name for the service. In the vast majority of configurations, the default " -"values should suffice." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:281 -msgid "Default: <command>sssd_${service_name}</command>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:289 -msgid "NSS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:291 -msgid "" -"These options can be used to configure the Name Service Switch (NSS) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:296 -msgid "enum_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:299 -msgid "" -"How many seconds should nss_sss cache enumerations (requests for info about " -"all users)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:303 -msgid "Default: 120" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:308 -msgid "entry_cache_nowait_percentage (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:311 -msgid "" -"The entry cache can be set to automatically update entries in the background " -"if they are requested beyond a percentage of the entry_cache_timeout value " -"for the domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:317 -msgid "" -"For example, if the domain's entry_cache_timeout is set to 30s and " -"entry_cache_nowait_percentage is set to 50 (percent), entries that come in " -"after 15 seconds past the last cache update will be returned immediately, " -"but the SSSD will go and update the cache on its own, so that future " -"requests will not need to block waiting for a cache update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:327 -msgid "" -"Valid values for this option are 0-99 and represent a percentage of the " -"entry_cache_timeout for each domain. For performance reasons, this " -"percentage will never reduce the nowait timeout to less than 10 seconds. (0 " -"disables this feature)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:335 -msgid "Default: 50" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:340 -msgid "entry_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:343 -msgid "" -"Specifies for how many seconds nss_sss should cache negative cache hits " -"(that is, queries for invalid database entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:349 sssd.conf.5.xml:669 sssd-krb5.5.xml:223 -msgid "Default: 15" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:354 -msgid "filter_users, filter_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:357 -msgid "" -"Exclude certain users from being fetched from the sss NSS database. This is " -"particularly useful for system accounts. This option can also be set per-" -"domain or include fully-qualified names to filter only users from the " -"particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:364 -msgid "Default: root" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:369 -msgid "filter_users_in_groups (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:372 -msgid "" -"If you want filtered user still be group members set this option to false." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:381 -msgid "override_homedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:390 sssd-krb5.5.xml:166 -msgid "%u" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:391 sssd-krb5.5.xml:167 -msgid "login name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:394 sssd-krb5.5.xml:170 -msgid "%U" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:395 -msgid "UID number" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:398 sssd-krb5.5.xml:188 -msgid "%d" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:399 -msgid "domain name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:402 -msgid "%f" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:403 -msgid "fully qualified user name (user@domain)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:406 sssd-krb5.5.xml:200 -msgid "%%" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:407 sssd-krb5.5.xml:201 -msgid "a literal '%'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:384 -msgid "" -"Override the user's home directory. You can either provide an absolute value " -"or a template. In the template, the following sequences are substituted: " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:413 -msgid "This option can also be set per-domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:418 -msgid "allowed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:421 -msgid "" -"Restrict user shell to one of the listed values. The order of evaluation is:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:424 -msgid "1. If the shell is present in <quote>/etc/shells</quote>, it is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:428 -msgid "" -"2. If the shell is in the allowed_shells list but not in <quote>/etc/shells</" -"quote>, use the value of the shell_fallback parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:433 -msgid "" -"3. If the shell is not in the allowed_shells list and not in <quote>/etc/" -"shells</quote>, a nologin shell is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:438 -msgid "An empty string for shell is passed as-is to libc." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:441 -msgid "" -"The <quote>/etc/shells</quote> is only read on SSSD start up, which means " -"that a restart of the SSSD is required in case a new shell is installed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:445 -msgid "Default: Not set. The user shell is automatically used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:450 -msgid "vetoed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:453 -msgid "Replace any instance of these shells with the shell_fallback" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:458 -msgid "shell_fallback (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:461 -msgid "" -"The default shell to use if an allowed shell is not installed on the machine." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:465 -msgid "Default: /bin/sh" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:472 -msgid "PAM configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:474 -msgid "" -"These options can be used to configure the Pluggable Authentication Module " -"(PAM) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:479 -msgid "offline_credentials_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:482 -msgid "" -"If the authentication provider is offline, how long should we allow cached " -"logins (in days since the last successful online login)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:487 sssd.conf.5.xml:500 -msgid "Default: 0 (No limit)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:493 -msgid "offline_failed_login_attempts (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:496 -msgid "" -"If the authentication provider is offline, how many failed login attempts " -"are allowed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:506 -msgid "offline_failed_login_delay (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:509 -msgid "" -"The time in minutes which has to pass after offline_failed_login_attempts " -"has been reached before a new login attempt is possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:514 -msgid "" -"If set to 0 the user cannot authenticate offline if " -"offline_failed_login_attempts has been reached. Only a successful online " -"authentication can enable offline authentication again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:520 sssd.conf.5.xml:573 sssd.conf.5.xml:1093 -msgid "Default: 5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:526 -msgid "pam_verbosity (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:529 -msgid "" -"Controls what kind of messages are shown to the user during authentication. " -"The higher the number to more messages are displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:534 -msgid "Currently sssd supports the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:537 -msgid "<emphasis>0</emphasis>: do not show any message" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:540 -msgid "<emphasis>1</emphasis>: show only important messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:544 -msgid "<emphasis>2</emphasis>: show informational messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:547 -msgid "<emphasis>3</emphasis>: show all messages and debug information" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:551 sssd.8.xml:63 -msgid "Default: 1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:556 -msgid "pam_id_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:559 -msgid "" -"For any PAM request while SSSD is online, the SSSD will attempt to " -"immediately update the cached identity information for the user in order to " -"ensure that authentication takes place with the latest information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:565 -msgid "" -"A complete PAM conversation may perform multiple PAM requests, such as " -"account management and session opening. This option controls (on a per-" -"client-application basis) how long (in seconds) we can cache the identity " -"information to avoid excessive round-trips to the identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:579 -msgid "pam_pwd_expiration_warning (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:582 -msgid "Display a warning N days before the password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:585 -msgid "" -"Please note that the backend server has to provide information about the " -"expiration time of the password. If this information is missing, sssd " -"cannot display a warning." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:591 -msgid "Default: 7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:599 -msgid "SUDO configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:601 -msgid "These options can be used to configure the sudo service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:608 -msgid "sudo_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:611 -msgid "" -"For any sudo request that comes while SSSD is online, the SSSD will attempt " -"to update the cached rules in order to ensure that sudo has the latest " -"ruleset." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:617 -msgid "" -"The user may, however, run a couple of sudo commands successively, which " -"would trigger multiple LDAP requests. In order to speed up this use-case, " -"the sudo service maintains an in-memory cache that would be used for " -"performing fast replies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:624 -msgid "" -"This option controls how long (in seconds) can the sudo service cache rules " -"for a user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:628 -msgid "Default: 180" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:633 -msgid "sudo_timed (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:636 -msgid "" -"Whether or not to evaluate the sudoNotBefore and sudoNotAfter attributes " -"that implement time-dependent sudoers entries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:649 -msgid "AUTOFS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:651 -msgid "These options can be used to configure the autofs service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:659 -msgid "autofs_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:662 -msgid "" -"Specifies for how many seconds should the autofs responder negative cache " -"hits (that is, queries for invalid map entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:679 -msgid "DOMAIN SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:686 -msgid "min_id,max_id (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:689 -msgid "" -"UID and GID limits for the domain. If a domain contains an entry that is " -"outside these limits, it is ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:694 -msgid "" -"For users, this affects the primary GID limit. The user will not be returned " -"to NSS if either the UID or the primary GID is outside the range. For non-" -"primary group memberships, those that are in range will be reported as " -"expected." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:701 -msgid "Default: 1 for min_id, 0 (no limit) for max_id" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:707 -msgid "timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:710 -msgid "" -"Timeout in seconds between heartbeats for this domain. This is used to " -"ensure that the backend process is alive and capable of answering requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:715 sssd-ldap.5.xml:1131 -msgid "Default: 10" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:721 -msgid "enumerate (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:724 -msgid "" -"Determines if a domain can be enumerated. This parameter can have one of the " -"following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:728 -msgid "TRUE = Users and groups are enumerated" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:731 -msgid "FALSE = No enumerations for this domain" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:734 sssd.conf.5.xml:839 sssd.conf.5.xml:893 -msgid "Default: FALSE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:737 -msgid "" -"Note: Enabling enumeration has a moderate performance impact on SSSD while " -"enumeration is running. It may take up to several minutes after SSSD startup " -"to fully complete enumerations. During this time, individual requests for " -"information will go directly to LDAP, though it may be slow, due to the " -"heavy enumeration processing." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:747 -msgid "" -"While the first enumeration is running, requests for the complete user or " -"group lists may return no results until it completes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:752 -msgid "" -"Further, enabling enumeration may increase the time necessary to detect " -"network disconnection, as longer timeouts are required to ensure that " -"enumeration lookups are completed successfully. For more information, refer " -"to the man pages for the specific id_provider in use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:763 -msgid "entry_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:766 -msgid "" -"How many seconds should nss_sss consider entries valid before asking the " -"backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:770 -msgid "Default: 5400" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:776 -msgid "entry_cache_user_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:779 -msgid "" -"How many seconds should nss_sss consider user entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:783 sssd.conf.5.xml:796 sssd.conf.5.xml:809 -#: sssd.conf.5.xml:822 -msgid "Default: entry_cache_timeout" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:789 -msgid "entry_cache_group_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:792 -msgid "" -"How many seconds should nss_sss consider group entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:802 -msgid "entry_cache_netgroup_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:805 -msgid "" -"How many seconds should nss_sss consider netgroup entries valid before " -"asking the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:815 -msgid "entry_cache_service_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:818 -msgid "" -"How many seconds should nss_sss consider service entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:828 -msgid "cache_credentials (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:831 -msgid "Determines if user credentials are also cached in the local LDB cache" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:835 -msgid "User credentials are stored in a SHA512 hash, not in plaintext" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:844 -msgid "account_cache_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:847 -msgid "" -"Number of days entries are left in cache after last successful login before " -"being removed during a cleanup of the cache. 0 means keep forever. The " -"value of this parameter must be greater than or equal to " -"offline_credentials_expiration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:854 -msgid "Default: 0 (unlimited)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:860 -msgid "id_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:863 -msgid "The Data Provider identity backend to use for this domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:867 -msgid "Supported backends:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:870 -msgid "proxy: Support a legacy NSS provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:873 -msgid "local: SSSD internal local provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:876 -msgid "ldap: LDAP provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:882 -msgid "use_fully_qualified_names (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:885 -msgid "" -"If set to TRUE, all requests to this domain must use fully qualified names. " -"For example, if used in LOCAL domain that contains a \"test\" user, " -"<command>getent passwd test</command> wouldn't find the user while " -"<command>getent passwd test@LOCAL</command> would." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:898 -msgid "auth_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:901 -msgid "" -"The authentication provider used for the domain. Supported auth providers " -"are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:905 -msgid "" -"<quote>ldap</quote> for native LDAP authentication. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:912 -msgid "" -"<quote>krb5</quote> for Kerberos authentication. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:919 -msgid "" -"<quote>proxy</quote> for relaying authentication to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:922 -msgid "<quote>none</quote> disables authentication explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:925 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"authentication requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:931 -msgid "access_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:934 -msgid "" -"The access control provider used for the domain. There are two built-in " -"access providers (in addition to any included in installed backends) " -"Internal special providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:940 -msgid "<quote>permit</quote> always allow access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:943 -msgid "<quote>deny</quote> always deny access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:946 -msgid "" -"<quote>simple</quote> access control based on access or deny lists. See " -"<citerefentry> <refentrytitle>sssd-simple</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry> for more information on configuring the simple " -"access module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:953 -msgid "Default: <quote>permit</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:958 -msgid "chpass_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:961 -msgid "" -"The provider which should handle change password operations for the domain. " -"Supported change password providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:966 -msgid "" -"<quote>ipa</quote> to change a password stored in an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:974 -msgid "" -"<quote>ldap</quote> to change a password stored in a LDAP server. See " -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:982 -msgid "" -"<quote>krb5</quote> to change the Kerberos password. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:990 -msgid "" -"<quote>proxy</quote> for relaying password changes to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:994 -msgid "<quote>none</quote> disallows password changes explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:997 -msgid "" -"Default: <quote>auth_provider</quote> is used if it is set and can handle " -"change password requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1004 -msgid "sudo_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1010 -msgid "The SUDO provider used for the domain. Supported SUDO providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1014 -msgid "" -"<quote>ldap</quote> for rules stored in LDAP. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1021 -msgid "<quote>none</quote> disables SUDO explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1024 -msgid "Default: The value of <quote>id_provider</quote> is used if it is set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1030 -msgid "session_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1033 -msgid "" -"The provider which should handle loading of session settings. Supported " -"session providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1038 -msgid "" -"<quote>ipa</quote> to load session settings from an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1046 -msgid "<quote>none</quote> disallows fetching session settings explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1049 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"session loading requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1056 -msgid "lookup_family_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1059 -msgid "" -"Provides the ability to select preferred address family to use when " -"performing DNS lookups." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1063 -msgid "Supported values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1066 -msgid "ipv4_first: Try looking up IPv4 address, if that fails, try IPv6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1069 -msgid "ipv4_only: Only attempt to resolve hostnames to IPv4 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1072 -msgid "ipv6_first: Try looking up IPv6 address, if that fails, try IPv4" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1075 -msgid "ipv6_only: Only attempt to resolve hostnames to IPv6 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1078 -msgid "Default: ipv4_first" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1084 -msgid "dns_resolver_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1087 -msgid "" -"Defines the amount of time (in seconds) to wait for a reply from the DNS " -"resolver before assuming that it is unreachable. If this timeout is reached, " -"the domain will continue to operate in offline mode." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1099 -msgid "dns_discovery_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1102 -msgid "" -"If service discovery is used in the back end, specifies the domain part of " -"the service discovery DNS query." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1106 -msgid "Default: Use the domain part of machine's hostname" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1112 -msgid "override_gid (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1115 -msgid "Override the primary GID value with the one specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1121 -msgid "case_sensitive (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1124 -msgid "" -"Treat user and group names as case sensitive. At the moment, this option is " -"not supported in the local provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1129 -msgid "Default: True" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:681 -msgid "" -"These configuration options can be present in a domain configuration " -"section, that is, in a section called <quote>[domain/<replaceable>NAME</" -"replaceable>]</quote> <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1141 -msgid "proxy_pam_target (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1144 -msgid "The proxy target PAM proxies to." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1147 -msgid "" -"Default: not set by default, you have to take an existing pam configuration " -"or create a new one and add the service name here." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1155 -msgid "proxy_lib_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1158 -msgid "" -"The name of the NSS library to use in proxy domains. The NSS functions " -"searched for in the library are in the form of _nss_$(libName)_$(function), " -"for example _nss_files_getpwent." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1137 -msgid "" -"Options valid for proxy domains. <placeholder type=\"variablelist\" id=" -"\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:1170 -msgid "The local domain section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:1172 -msgid "" -"This section contains settings for domain that stores users and groups in " -"SSSD native database, that is, a domain that uses " -"<replaceable>id_provider=local</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1179 -msgid "default_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1182 -msgid "The default shell for users created with SSSD userspace tools." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1186 -msgid "Default: <filename>/bin/bash</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1191 -msgid "base_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1194 -msgid "" -"The tools append the login name to <replaceable>base_directory</replaceable> " -"and use that as the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1199 -msgid "Default: <filename>/home</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1204 -msgid "create_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1207 -msgid "" -"Indicate if a home directory should be created by default for new users. " -"Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1211 sssd.conf.5.xml:1223 -msgid "Default: TRUE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1216 -msgid "remove_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1219 -msgid "" -"Indicate if a home directory should be removed by default for deleted " -"users. Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1228 -msgid "homedir_umask (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1231 -msgid "" -"Used by <citerefentry> <refentrytitle>sss_useradd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry> to specify the default permissions " -"on a newly created home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1239 -msgid "Default: 077" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1244 -msgid "skel_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1247 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<citerefentry> <refentrytitle>sss_useradd</refentrytitle> <manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1257 -msgid "Default: <filename>/etc/skel</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1262 -msgid "mail_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1265 -msgid "" -"The mail spool directory. This is needed to manipulate the mailbox when its " -"corresponding user account is modified or deleted. If not specified, a " -"default value is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1272 -msgid "Default: <filename>/var/mail</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1277 -msgid "userdel_cmd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1280 -msgid "" -"The command that is run after a user is removed. The command us passed the " -"username of the user being removed as the first and only parameter. The " -"return code of the command is not taken into account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1286 -msgid "Default: None, no command is run" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:1296 sssd-ldap.5.xml:2064 sssd-simple.5.xml:126 -#: sssd-ipa.5.xml:544 sssd-krb5.5.xml:432 -msgid "EXAMPLE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:1302 -#, no-wrap -msgid "" -"[sssd]\n" -"domains = LDAP\n" -"services = nss, pam\n" -"config_file_version = 2\n" -"\n" -"[nss]\n" -"filter_groups = root\n" -"filter_users = root\n" -"\n" -"[pam]\n" -"\n" -"[domain/LDAP]\n" -"id_provider = ldap\n" -"ldap_uri = ldap://ldap.example.com\n" -"ldap_search_base = dc=example,dc=com\n" -"\n" -"auth_provider = krb5\n" -"krb5_server = kerberos.example.com\n" -"krb5_realm = EXAMPLE.COM\n" -"cache_credentials = true\n" -"\n" -"min_id = 10000\n" -"max_id = 20000\n" -"enumerate = False\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1298 -msgid "" -"The following example shows a typical SSSD config. It does not describe " -"configuration of the domains themselves - refer to documentation on " -"configuring domains for more details. <placeholder type=\"programlisting\" " -"id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1333 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>pam_sss</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ldap.5.xml:10 sssd-ldap.5.xml:16 -msgid "sssd-ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:23 -msgid "" -"This manual page describes the configuration of LDAP domains for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. Refer to the <quote>FILE FORMAT</quote> section of the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for detailed syntax information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:35 -msgid "You can configure SSSD to use more than one LDAP domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:38 -msgid "" -"LDAP back end supports id, auth, access and chpass providers. If you want to " -"authenticate against an LDAP server either TLS/SSL or LDAPS is required. " -"<command>sssd</command> <emphasis>does not</emphasis> support authentication " -"over an unencrypted channel. If the LDAP server is used only as an identity " -"provider, an encrypted channel is not needed. Please refer to " -"<quote>ldap_access_filter</quote> config option for more information about " -"using LDAP as an access provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:49 sssd-simple.5.xml:69 sssd-ipa.5.xml:64 -#: sssd-krb5.5.xml:63 -msgid "CONFIGURATION OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:60 -msgid "ldap_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:63 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference. Refer to the <quote>FAILOVER</" -"quote> section for more information on failover and server redundancy. If " -"not specified, service discovery is enabled. For more information, refer to " -"the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:70 -msgid "The format of the URI must match the format defined in RFC 2732:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:73 -msgid "ldap[s]://<host>[:port]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:76 -msgid "" -"For explicit IPv6 addresses, <host> must be enclosed in brackets []" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:79 -msgid "example: ldap://[fc00::126:25]:389" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:85 -msgid "ldap_chpass_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:88 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference to change the password of a user. " -"Refer to the <quote>FAILOVER</quote> section for more information on " -"failover and server redundancy." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:95 -msgid "To enable service discovery ldap_chpass_dns_service_name must be set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:99 -msgid "Default: empty, i.e. ldap_uri is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:105 -msgid "ldap_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:108 -msgid "The default base DN to use for performing LDAP user operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:112 -msgid "" -"Starting with SSSD 1.7.0, SSSD supports multiple search bases using the " -"syntax:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:116 -msgid "search_base[?scope?[filter][?search_base?scope?[filter]]*]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:119 -msgid "The scope can be one of \"base\", \"onelevel\" or \"subtree\"." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:122 -msgid "" -"The filter must be a valid LDAP search filter as specified by http://www." -"ietf.org/rfc/rfc2254.txt" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:126 -msgid "Examples:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:129 -msgid "" -"ldap_search_base = dc=example,dc=com (which is equivalent to) " -"ldap_search_base = dc=example,dc=com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:134 -msgid "" -"ldap_search_base = cn=host_specific,dc=example,dc=com?subtree?" -"(host=thishost)?dc=example.com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:137 -msgid "" -"Note: It is unsupported to have multiple search bases which reference " -"identically-named objects (for example, groups with the same name in two " -"different search bases). This will lead to unpredictable behavior on client " -"machines." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:144 -msgid "" -"Default: If not set, the value of the defaultNamingContext or namingContexts " -"attribute from the RootDSE of the LDAP server is used. If " -"defaultNamingContext does not exists or has an empty value namingContexts is " -"used. The namingContexts attribute must have a single value with the DN of " -"the search base of the LDAP server to make this work. Multiple values are " -"are not supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:158 -msgid "ldap_schema (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:161 -msgid "" -"Specifies the Schema Type in use on the target LDAP server. Depending on " -"the selected schema, the default attribute names retrieved from the servers " -"may vary. The way that some attributes are handled may also differ. Three " -"schema types are currently supported: rfc2307 rfc2307bis IPA The main " -"difference between these schema types is how group memberships are recorded " -"in the server. With rfc2307, group members are listed by name in the " -"<emphasis>memberUid</emphasis> attribute. With rfc2307bis and IPA, group " -"members are listed by DN and stored in the <emphasis>member</emphasis> " -"attribute." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:180 -msgid "Default: rfc2307" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:186 -msgid "ldap_default_bind_dn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:189 -msgid "The default bind DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:196 -msgid "ldap_default_authtok_type (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:199 -msgid "The type of the authentication token of the default bind DN." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:203 -msgid "The two mechanisms currently supported are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:206 -msgid "password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:209 -msgid "obfuscated_password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:212 -msgid "Default: password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:218 -msgid "ldap_default_authtok (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:221 -msgid "" -"The authentication token of the default bind DN. Only clear text passwords " -"are currently supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:228 -msgid "ldap_user_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:231 -msgid "The object class of a user entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:234 -msgid "Default: posixAccount" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:240 -msgid "ldap_user_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:243 -msgid "The LDAP attribute that corresponds to the user's login name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:247 -msgid "Default: uid" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:253 -msgid "ldap_user_uid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:256 -msgid "The LDAP attribute that corresponds to the user's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:260 -msgid "Default: uidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:266 -msgid "ldap_user_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:269 -msgid "The LDAP attribute that corresponds to the user's primary group id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:273 sssd-ldap.5.xml:740 -msgid "Default: gidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:279 -msgid "ldap_user_gecos (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:282 -msgid "The LDAP attribute that corresponds to the user's gecos field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:286 -msgid "Default: gecos" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:292 -msgid "ldap_user_home_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:295 -msgid "The LDAP attribute that contains the name of the user's home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:299 -msgid "Default: homeDirectory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:305 -msgid "ldap_user_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:308 -msgid "The LDAP attribute that contains the path to the user's default shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:312 -msgid "Default: loginShell" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:318 -msgid "ldap_user_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:321 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP user object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:325 sssd-ldap.5.xml:766 sssd-ldap.5.xml:878 -msgid "Default: nsUniqueId" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:331 -msgid "ldap_user_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:334 sssd-ldap.5.xml:775 sssd-ldap.5.xml:887 -msgid "" -"The LDAP attribute that contains timestamp of the last modification of the " -"parent object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:338 sssd-ldap.5.xml:779 sssd-ldap.5.xml:894 -msgid "Default: modifyTimestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:344 -msgid "ldap_user_shadow_last_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:347 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (date of " -"the last password change)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:357 -msgid "Default: shadowLastChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:363 -msgid "ldap_user_shadow_min (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:366 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (minimum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:375 -msgid "Default: shadowMin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:381 -msgid "ldap_user_shadow_max (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:384 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (maximum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:393 -msgid "Default: shadowMax" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:399 -msgid "ldap_user_shadow_warning (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:402 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password warning period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:412 -msgid "Default: shadowWarning" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:418 -msgid "ldap_user_shadow_inactive (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:421 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password inactivity period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:431 -msgid "Default: shadowInactive" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:437 -msgid "ldap_user_shadow_expire (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:440 -msgid "" -"When using ldap_pwd_policy=shadow or ldap_account_expire_policy=shadow, this " -"parameter contains the name of an LDAP attribute corresponding to its " -"<citerefentry> <refentrytitle>shadow</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> counterpart (account expiration date)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:450 -msgid "Default: shadowExpire" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:456 -msgid "ldap_user_krb_last_pwd_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:459 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time of last password change in " -"kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:465 -msgid "Default: krbLastPwdChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:471 -msgid "ldap_user_krb_password_expiration (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:474 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time when current password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:480 -msgid "Default: krbPasswordExpiration" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:486 -msgid "ldap_user_ad_account_expires (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:489 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the expiration time of the account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:494 -msgid "Default: accountExpires" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:500 -msgid "ldap_user_ad_user_account_control (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:503 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the user account control bit field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:508 -msgid "Default: userAccountControl" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:514 -msgid "ldap_ns_account_lock (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:517 -msgid "" -"When using ldap_account_expire_policy=rhds or equivalent, this parameter " -"determines if access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:522 -msgid "Default: nsAccountLock" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:528 -msgid "ldap_user_nds_login_disabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:531 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines if " -"access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:535 sssd-ldap.5.xml:549 -msgid "Default: loginDisabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:541 -msgid "ldap_user_nds_login_expiration_time (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:544 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines until " -"which date access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:555 -msgid "ldap_user_nds_login_allowed_time_map (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:558 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines the " -"hours of a day in a week when access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:563 -msgid "Default: loginAllowedTimeMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:569 -msgid "ldap_user_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:572 -msgid "" -"The LDAP attribute that contains the user's Kerberos User Principal Name " -"(UPN)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:576 -msgid "Default: krbPrincipalName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:582 -msgid "ldap_user_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:585 -msgid "The LDAP attribute that contains the user's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:592 -msgid "ldap_force_upper_case_realm (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:595 -msgid "" -"Some directory servers, for example Active Directory, might deliver the " -"realm part of the UPN in lower case, which might cause the authentication to " -"fail. Set this option to a non-zero value if you want to use an upper-case " -"realm." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:608 -msgid "ldap_enumeration_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:611 -msgid "" -"Specifies how many seconds SSSD has to wait before refreshing its cache of " -"enumerated records." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:616 sssd-ldap.5.xml:1808 -msgid "Default: 300" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:622 -msgid "ldap_purge_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:625 -msgid "" -"Determine how often to check the cache for inactive entries (such as groups " -"with no members and users who have never logged in) and remove them to save " -"space." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:631 -msgid "Setting this option to zero will disable the cache cleanup operation." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:635 -msgid "Default: 10800 (12 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:641 -msgid "ldap_user_fullname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:644 -msgid "The LDAP attribute that corresponds to the user's full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:648 sssd-ldap.5.xml:727 sssd-ldap.5.xml:828 -#: sssd-ldap.5.xml:919 sssd-ldap.5.xml:1663 sssd-ldap.5.xml:1881 -#: sssd-ipa.5.xml:422 -msgid "Default: cn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:654 -msgid "ldap_user_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:657 -msgid "The LDAP attribute that lists the user's group memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:661 sssd-ipa.5.xml:326 -msgid "Default: memberOf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:667 -msgid "ldap_user_authorized_service (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:670 -msgid "" -"If access_provider=ldap and ldap_access_order=authorized_service, SSSD will " -"use the presence of the authorizedService attribute in the user's LDAP entry " -"to determine access privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:677 -msgid "" -"An explicit deny (!svc) is resolved first. Second, SSSD searches for " -"explicit allow (svc) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:682 -msgid "Default: authorizedService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:688 -msgid "ldap_user_authorized_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:691 -msgid "" -"If access_provider=ldap and ldap_access_order=host, SSSD will use the " -"presence of the host attribute in the user's LDAP entry to determine access " -"privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:697 -msgid "" -"An explicit deny (!host) is resolved first. Second, SSSD searches for " -"explicit allow (host) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:702 -msgid "Default: host" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:708 -msgid "ldap_group_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:711 -msgid "The object class of a group entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:714 -msgid "Default: posixGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:720 -msgid "ldap_group_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:723 -msgid "The LDAP attribute that corresponds to the group name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:733 -msgid "ldap_group_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:736 -msgid "The LDAP attribute that corresponds to the group's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:746 -msgid "ldap_group_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:749 -msgid "The LDAP attribute that contains the names of the group's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:753 -msgid "Default: memberuid (rfc2307) / member (rfc2307bis)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:759 -msgid "ldap_group_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:762 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP group object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:772 -msgid "ldap_group_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:785 -msgid "ldap_group_nesting_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:788 -msgid "" -"If ldap_schema is set to a schema format that supports nested groups (e.g. " -"RFC2307bis), then this option controls how many levels of nesting SSSD will " -"follow. This option has no effect on the RFC2307 schema." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:795 -msgid "Default: 2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:801 -msgid "ldap_netgroup_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:804 -msgid "The object class of a netgroup entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:807 -msgid "In IPA provider, ipa_netgroup_object_class should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:811 -msgid "Default: nisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:817 -msgid "ldap_netgroup_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:820 -msgid "The LDAP attribute that corresponds to the netgroup name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:824 -msgid "In IPA provider, ipa_netgroup_name should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:834 -msgid "ldap_netgroup_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:837 -msgid "The LDAP attribute that contains the names of the netgroup's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:841 -msgid "In IPA provider, ipa_netgroup_member should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:845 -msgid "Default: memberNisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:851 -msgid "ldap_netgroup_triple (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:854 -msgid "" -"The LDAP attribute that contains the (host, user, domain) netgroup triples." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:858 sssd-ldap.5.xml:891 -msgid "This option is not available in IPA provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:861 -msgid "Default: nisNetgroupTriple" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:867 -msgid "ldap_netgroup_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:870 -msgid "" -"The LDAP attribute that contains the UUID/GUID of an LDAP netgroup object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:874 -msgid "In IPA provider, ipa_netgroup_uuid should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:884 -msgid "ldap_netgroup_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:900 -msgid "ldap_service_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:903 -msgid "The object class of a service entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:906 -msgid "Default: ipService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:912 -msgid "ldap_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:915 -msgid "" -"The LDAP attribute that contains the name of service attributes and their " -"aliases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:925 -msgid "ldap_service_port (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:928 -msgid "The LDAP attribute that contains the port managed by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:932 -msgid "Default: ipServicePort" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:938 -msgid "ldap_service_proto (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:941 -msgid "" -"The LDAP attribute that contains the protocols understood by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:945 -msgid "Default: ipServiceProtocol" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:951 -msgid "ldap_service_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:954 -msgid "An optional base DN to restrict service searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:958 sssd-ldap.5.xml:1918 sssd-ldap.5.xml:1937 -#: sssd-ldap.5.xml:1956 sssd-ldap.5.xml:2019 sssd-ldap.5.xml:2041 -#: sssd-ipa.5.xml:163 sssd-ipa.5.xml:187 -msgid "" -"See <quote>ldap_search_base</quote> for information about configuring " -"multiple search bases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:963 sssd-ldap.5.xml:1923 sssd-ldap.5.xml:1942 -#: sssd-ldap.5.xml:1961 sssd-ldap.5.xml:2024 sssd-ldap.5.xml:2046 -#: sssd-ipa.5.xml:173 sssd-ipa.5.xml:192 -msgid "Default: the value of <emphasis>ldap_search_base</emphasis>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:970 -msgid "ldap_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:973 -msgid "" -"Specifies the timeout (in seconds) that ldap searches are allowed to run " -"before they are cancelled and cached results are returned (and offline mode " -"is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:979 -msgid "" -"Note: this option is subject to change in future versions of the SSSD. It " -"will likely be replaced at some point by a series of timeouts for specific " -"lookup types." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:985 sssd-ldap.5.xml:1027 sssd-ldap.5.xml:1042 -msgid "Default: 6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:991 -msgid "ldap_enumeration_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:994 -msgid "" -"Specifies the timeout (in seconds) that ldap searches for user and group " -"enumerations are allowed to run before they are cancelled and cached results " -"are returned (and offline mode is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1001 -msgid "Default: 60" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1007 -msgid "ldap_network_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1010 -msgid "" -"Specifies the timeout (in seconds) after which the <citerefentry> " -"<refentrytitle>poll</refentrytitle> <manvolnum>2</manvolnum> </citerefentry>/" -"<citerefentry> <refentrytitle>select</refentrytitle> <manvolnum>2</" -"manvolnum> </citerefentry> following a <citerefentry> " -"<refentrytitle>connect</refentrytitle> <manvolnum>2</manvolnum> </" -"citerefentry> returns in case of no activity." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1033 -msgid "ldap_opt_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1036 -msgid "" -"Specifies a timeout (in seconds) after which calls to synchronous LDAP APIs " -"will abort if no response is received. Also controls the timeout when " -"communicating with the KDC in case of SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1048 -msgid "ldap_connection_expire_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1051 -msgid "" -"Specifies a timeout (in seconds) that a connection to an LDAP server will be " -"maintained. After this time, the connection will be re-established. If used " -"in parallel with SASL/GSSAPI, the sooner of the two values (this value vs. " -"the TGT lifetime) will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1059 -msgid "Default: 900 (15 minutes)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1065 -msgid "ldap_page_size (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1068 -msgid "" -"Specify the number of records to retrieve from LDAP in a single request. " -"Some LDAP servers enforce a maximum limit per-request." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1073 -msgid "Default: 1000" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1079 -msgid "ldap_disable_paging" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1082 -msgid "" -"Disable the LDAP paging control. This option should be used if the LDAP " -"server reports that it supports the LDAP paging control in its RootDSE but " -"it is not enabled or does not behave properly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1088 -msgid "" -"Example: OpenLDAP servers with the paging control module installed on the " -"server but not enabled will report it in the RootDSE but be unable to use it." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1094 -msgid "" -"Example: 389 DS has a bug where it can only support a one paging control at " -"a time on a single connection. On busy clients, this can result in some " -"requests being denied." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1103 -msgid "ldap_deref_threshold (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1106 -msgid "" -"Specify the number of group members that must be missing from the internal " -"cache in order to trigger a dereference lookup. If less members are missing, " -"they are looked up individually." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1112 -msgid "" -"You can turn off dereference lookups completely by setting the value to 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1116 -msgid "" -"A dereference lookup is a means of fetching all group members in a single " -"LDAP call. Different LDAP servers may implement different dereference " -"methods. The currently supported servers are 389/RHDS, OpenLDAP and Active " -"Directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1124 -msgid "" -"<emphasis>Note:</emphasis> If any of the search bases specifies a search " -"filter, then the dereference lookup performance enhancement will be disabled " -"regardless of this setting." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1137 -msgid "ldap_tls_reqcert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1140 -msgid "" -"Specifies what checks to perform on server certificates in a TLS session, if " -"any. It can be specified as one of the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1146 -msgid "" -"<emphasis>never</emphasis> = The client will not request or check any server " -"certificate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1150 -msgid "" -"<emphasis>allow</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, it will be ignored and the session proceeds normally." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1157 -msgid "" -"<emphasis>try</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, the session is immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1163 -msgid "" -"<emphasis>demand</emphasis> = The server certificate is requested. If no " -"certificate is provided, or a bad certificate is provided, the session is " -"immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1169 -msgid "<emphasis>hard</emphasis> = Same as <quote>demand</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1173 -msgid "Default: hard" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1179 -msgid "ldap_tls_cacert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1182 -msgid "" -"Specifies the file that contains certificates for all of the Certificate " -"Authorities that <command>sssd</command> will recognize." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1187 sssd-ldap.5.xml:1205 sssd-ldap.5.xml:1246 -msgid "" -"Default: use OpenLDAP defaults, typically in <filename>/etc/openldap/ldap." -"conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1194 -msgid "ldap_tls_cacertdir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1197 -msgid "" -"Specifies the path of a directory that contains Certificate Authority " -"certificates in separate individual files. Typically the file names need to " -"be the hash of the certificate followed by '.0'. If available, " -"<command>cacertdir_rehash</command> can be used to create the correct names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1212 -msgid "ldap_tls_cert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1215 -msgid "Specifies the file that contains the certificate for the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1219 sssd-ldap.5.xml:1231 sssd-ldap.5.xml:1979 -#: sssd-ldap.5.xml:2006 sssd-krb5.5.xml:359 -msgid "Default: not set" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1225 -msgid "ldap_tls_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1228 -msgid "Specifies the file that contains the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1237 -msgid "ldap_tls_cipher_suite (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1240 -msgid "" -"Specifies acceptable cipher suites. Typically this is a colon sperated " -"list. See <citerefentry><refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> for format." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1253 -msgid "ldap_id_use_start_tls (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1256 -msgid "" -"Specifies that the id_provider connection must also use <systemitem class=" -"\"protocol\">tls</systemitem> to protect the channel." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1266 -msgid "ldap_sasl_mech (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1269 -msgid "" -"Specify the SASL mechanism to use. Currently only GSSAPI is tested and " -"supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1273 sssd-ldap.5.xml:1428 -msgid "Default: none" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1279 -msgid "ldap_sasl_authid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1282 -msgid "" -"Specify the SASL authorization id to use. When GSSAPI is used, this " -"represents the Kerberos principal used for authentication to the directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1287 -msgid "Default: host/machine.fqdn@REALM" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1293 -msgid "ldap_sasl_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1296 -msgid "" -"If set to true, the LDAP library would perform a reverse lookup to " -"canonicalize the host name during a SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1301 -msgid "Default: false;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1307 -msgid "ldap_krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1310 -msgid "Specify the keytab to use when using SASL/GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1313 -msgid "Default: System keytab, normally <filename>/etc/krb5.keytab</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1319 -msgid "ldap_krb5_init_creds (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1322 -msgid "" -"Specifies that the id_provider should init Kerberos credentials (TGT). This " -"action is performed only if SASL is used and the mechanism selected is " -"GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1334 -msgid "ldap_krb5_ticket_lifetime (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1337 -msgid "Specifies the lifetime in seconds of the TGT if GSSAPI is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1341 -msgid "Default: 86400 (24 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1347 sssd-krb5.5.xml:74 -msgid "krb5_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1350 sssd-krb5.5.xml:77 -msgid "" -"Specifies the comma-separated list of IP addresses or hostnames of the " -"Kerberos servers to which SSSD should connect in the order of preference. " -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. An optional port number (preceded by a " -"colon) may be appended to the addresses or hostnames. If empty, service " -"discovery is enabled - for more information, refer to the <quote>SERVICE " -"DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1362 sssd-krb5.5.xml:89 -msgid "" -"When using service discovery for KDC or kpasswd servers, SSSD first searches " -"for DNS entries that specify _udp as the protocol and falls back to _tcp if " -"none are found." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1367 sssd-krb5.5.xml:94 -msgid "" -"This option was named <quote>krb5_kdcip</quote> in earlier releases of SSSD. " -"While the legacy name is recognized for the time being, users are advised to " -"migrate their config files to use <quote>krb5_server</quote> instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1376 sssd-ipa.5.xml:216 sssd-krb5.5.xml:103 -msgid "krb5_realm (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1379 -msgid "Specify the Kerberos REALM (for SASL/GSSAPI auth)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1382 -msgid "Default: System defaults, see <filename>/etc/krb5.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1388 sssd-ipa.5.xml:231 sssd-krb5.5.xml:409 -msgid "krb5_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1391 -msgid "" -"Specifies if the host principal should be canonicalized when connecting to " -"LDAP server. This feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1403 -msgid "ldap_pwd_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1406 -msgid "" -"Select the policy to evaluate the password expiration on the client side. " -"The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1411 -msgid "" -"<emphasis>none</emphasis> - No evaluation on the client side. This option " -"cannot disable server-side password policies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1416 -msgid "" -"<emphasis>shadow</emphasis> - Use <citerefentry><refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum></citerefentry> style attributes to " -"evaluate if the password has expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1422 -msgid "" -"<emphasis>mit_kerberos</emphasis> - Use the attributes used by MIT Kerberos " -"to determine if the password has expired. Use chpass_provider=krb5 to update " -"these attributes when the password is changed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1434 -msgid "ldap_referrals (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1437 -msgid "Specifies whether automatic referral chasing should be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1441 -msgid "" -"Please note that sssd only supports referral chasing when it is compiled " -"with OpenLDAP version 2.4.13 or higher." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1452 -msgid "ldap_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1455 -msgid "Specifies the service name to use when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1459 -msgid "Default: ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1465 -msgid "ldap_chpass_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1468 -msgid "" -"Specifies the service name to use to find an LDAP server which allows " -"password changes when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1473 -msgid "Default: not set, i.e. service discovery is disabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1479 -msgid "ldap_access_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1482 -msgid "" -"If using access_provider = ldap, this option is mandatory. It specifies an " -"LDAP search filter criteria that must be met for the user to be granted " -"access on this host. If access_provider = ldap and this option is not set, " -"it will result in all users being denied access. Use access_provider = allow " -"to change this default behavior." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1492 sssd-ldap.5.xml:1982 -msgid "Example:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1495 -#, no-wrap -msgid "" -"access_provider = ldap\n" -"ldap_access_filter = memberOf=cn=allowedusers,ou=Groups,dc=example,dc=com\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1499 -msgid "" -"This example means that access to this host is restricted to members of the " -"\"allowedusers\" group in ldap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1504 -msgid "" -"Offline caching for this feature is limited to determining whether the " -"user's last online login was granted access permission. If they were granted " -"access during their last login, they will continue to be granted access " -"while offline and vice-versa." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1512 sssd-ldap.5.xml:1562 -msgid "Default: Empty" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1518 -msgid "ldap_account_expire_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1521 -msgid "" -"With this option a client side evaluation of access control attributes can " -"be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1525 -msgid "" -"Please note that it is always recommended to use server side access control, " -"i.e. the LDAP server should deny the bind request with a suitable error code " -"even if the password is correct." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1532 -msgid "The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1535 -msgid "" -"<emphasis>shadow</emphasis>: use the value of ldap_user_shadow_expire to " -"determine if the account is expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1540 -msgid "" -"<emphasis>ad</emphasis>: use the value of the 32bit field " -"ldap_user_ad_user_account_control and allow access if the second bit is not " -"set. If the attribute is missing access is granted. Also the expiration time " -"of the account is checked." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1547 -msgid "" -"<emphasis>rhds</emphasis>, <emphasis>ipa</emphasis>, <emphasis>389ds</" -"emphasis>: use the value of ldap_ns_account_lock to check if access is " -"allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1553 -msgid "" -"<emphasis>nds</emphasis>: the values of " -"ldap_user_nds_login_allowed_time_map, ldap_user_nds_login_disabled and " -"ldap_user_nds_login_expiration_time are used to check if access is allowed. " -"If both attributes are missing access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1568 -msgid "ldap_access_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1571 -msgid "Comma separated list of access control options. Allowed values are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1575 -msgid "<emphasis>filter</emphasis>: use ldap_access_filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1578 -msgid "<emphasis>expire</emphasis>: use ldap_account_expire_policy" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1582 -msgid "" -"<emphasis>authorized_service</emphasis>: use the authorizedService attribute " -"to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1587 -msgid "<emphasis>host</emphasis>: use the host attribute to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1591 -msgid "Default: filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1594 -msgid "" -"Please note that it is a configuration error if a value is used more than " -"once." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1601 -msgid "ldap_deref (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1604 -msgid "" -"Specifies how alias dereferencing is done when performing a search. The " -"following options are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1609 -msgid "<emphasis>never</emphasis>: Aliases are never dereferenced." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1613 -msgid "" -"<emphasis>searching</emphasis>: Aliases are dereferenced in subordinates of " -"the base object, but not in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1618 -msgid "" -"<emphasis>finding</emphasis>: Aliases are only dereferenced when locating " -"the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1623 -msgid "" -"<emphasis>always</emphasis>: Aliases are dereferenced both in searching and " -"in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1628 -msgid "" -"Default: Empty (this is handled as <emphasis>never</emphasis> by the LDAP " -"client libraries)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:51 -msgid "" -"All of the common configuration options that apply to SSSD domains also " -"apply to LDAP domains. Refer to the <quote>DOMAIN SECTIONS</quote> section " -"of the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for full details. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1639 -msgid "SUDO OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1644 -msgid "ldap_sudorule_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1647 -msgid "The object class of a sudo rule entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1650 -msgid "Default: sudoRole" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1656 -msgid "ldap_sudorule_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1659 -msgid "The LDAP attribute that corresponds to the sudo rule name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1669 -msgid "ldap_sudorule_command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1672 -msgid "The LDAP attribute that corresponds to the command name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1676 -msgid "Default: sudoCommand" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1682 -msgid "ldap_sudorule_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1685 -msgid "" -"The LDAP attribute that corresponds to the host name (or host IP address, " -"host IP network, or host netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1690 -msgid "Default: sudoHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1696 -msgid "ldap_sudorule_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1699 -msgid "" -"The LDAP attribute that corresponds to the user name (or UID, group name or " -"user's netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1703 -msgid "Default: sudoUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1709 -msgid "ldap_sudorule_option (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1712 -msgid "The LDAP attribute that corresponds to the sudo options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1716 -msgid "Default: sudoOption" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1722 -msgid "ldap_sudorule_runasuser (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1725 -msgid "" -"The LDAP attribute that corresponds to the user name that commands may be " -"run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1729 -msgid "Default: sudoRunAsUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1735 -msgid "ldap_sudorule_runasgroup (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1738 -msgid "" -"The LDAP attribute that corresponds to the group name or group GID that " -"commands may be run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1742 -msgid "Default: sudoRunAsGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1748 -msgid "ldap_sudorule_notbefore (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1751 -msgid "" -"The LDAP attribute that corresponds to the start date/time for when the sudo " -"rule is valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1755 -msgid "Default: sudoNotBefore" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1761 -msgid "ldap_sudorule_notafter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1764 -msgid "" -"The LDAP attribute that corresponds to the expiration date/time, after which " -"the sudo rule will no longer be valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1769 -msgid "Default: sudoNotAfter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1775 -msgid "ldap_sudorule_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1778 -msgid "The LDAP attribute that corresponds to the ordering index of the rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1782 -msgid "Default: sudoOrder" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1788 -msgid "ldap_sudo_refresh_enabled (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1791 -msgid "" -"Enables periodical download of all sudo rules. The cache is purged before " -"each update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1801 -msgid "ldap_sudo_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1804 -msgid "" -"How many seconds SSSD has to wait before refreshing its cache of sudo rules." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1642 -msgid "<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1815 -msgid "" -"This manual page only describes attribute name mapping. For detailed " -"explanation of sudo related attribute semantics, see <citerefentry> " -"<refentrytitle>sudoers.ldap</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1825 -msgid "AUTOFS OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1827 -msgid "" -"Please note that the default values correspond to the default schema which " -"is RFC2307." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1834 -msgid "ldap_autofs_map_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1837 sssd-ldap.5.xml:1863 -msgid "The object class of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1840 sssd-ldap.5.xml:1867 -msgid "Default: automountMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1847 -msgid "ldap_autofs_map_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1850 -msgid "The name of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1853 -msgid "Default: ou" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1860 -msgid "ldap_autofs_entry_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1874 -msgid "ldap_autofs_entry_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1877 sssd-ldap.5.xml:1891 -msgid "" -"The key of an automount entry in LDAP. The entry usually corresponds to a " -"mount point." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1888 -msgid "ldap_autofs_entry_value (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1895 -msgid "Default: automountInformation" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1832 -msgid "" -"<placeholder type=\"variablelist\" id=\"0\"/> <placeholder type=" -"\"variablelist\" id=\"1\"/> <placeholder type=\"variablelist\" id=\"2\"/> " -"<placeholder type=\"variablelist\" id=\"3\"/> <placeholder type=" -"\"variablelist\" id=\"4\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1904 -msgid "ADVANCED OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1911 -msgid "ldap_netgroup_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1914 -msgid "" -"An optional base DN to restrict netgroup searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1930 -msgid "ldap_user_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1933 -msgid "An optional base DN to restrict user searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1949 -msgid "ldap_group_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1952 -msgid "An optional base DN to restrict group searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1968 -msgid "ldap_user_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1971 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict user searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1975 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_user_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1985 -#, no-wrap -msgid "" -" ldap_user_search_filter = (loginShell=/bin/tcsh)\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1988 -msgid "" -"This filter would restrict user searches to users that have their shell set " -"to /bin/tcsh." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1995 -msgid "ldap_group_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1998 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict group searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2002 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_group_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2012 -msgid "ldap_sudo_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2015 -msgid "" -"An optional base DN to restrict sudo rules searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2034 -msgid "ldap_autofs_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2037 -msgid "" -"An optional base DN to restrict automounter searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1906 -msgid "" -"These options are supported by LDAP domains, but they should be used with " -"caution. Please include them in your configuration only if you know what you " -"are doing. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2066 -msgid "" -"The following example assumes that SSSD is correctly configured and LDAP is " -"set to one of the domains in the <replaceable>[domains]</replaceable> " -"section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ldap.5.xml:2072 -#, no-wrap -msgid "" -" [domain/LDAP]\n" -" id_provider = ldap\n" -" auth_provider = ldap\n" -" ldap_uri = ldap://ldap.mydomain.org\n" -" ldap_search_base = dc=mydomain,dc=org\n" -" ldap_tls_reqcert = demand\n" -" cache_credentials = true\n" -" enumerate = true\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2071 sssd-simple.5.xml:134 sssd-ipa.5.xml:552 -#: sssd-krb5.5.xml:441 -msgid "<placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:2085 sssd_krb5_locator_plugin.8.xml:61 -msgid "NOTES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2087 -msgid "" -"The descriptions of some of the configuration options in this manual page " -"are based on the <citerefentry> <refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page from the OpenLDAP 2.4 " -"distribution." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2098 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <refentryinfo> -#: pam_sss.8.xml:8 include/upstream.xml:2 -msgid "" -"<productname>SSSD</productname> <orgname>The SSSD upstream - http://" -"fedorahosted.org/sssd</orgname>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: pam_sss.8.xml:13 pam_sss.8.xml:18 -msgid "pam_sss" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: pam_sss.8.xml:19 -msgid "PAM module for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: pam_sss.8.xml:24 -msgid "" -"<command>pam_sss.so</command> <arg choice='opt'> <replaceable>quiet</" -"replaceable> </arg> <arg choice='opt'> <replaceable>forward_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_first_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_authtok</" -"replaceable> </arg> <arg choice='opt'> <replaceable>retry=N</replaceable> </" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:45 -msgid "" -"<command>pam_sss.so</command> is the PAM interface to the System Security " -"Services daemon (SSSD). Errors and results are logged through <command>syslog" -"(3)</command> with the LOG_AUTHPRIV facility." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:55 -msgid "<option>quiet</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:58 -msgid "Suppress log messages for unknown users." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:63 -msgid "<option>forward_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:66 -msgid "" -"If <option>forward_pass</option> is set the entered password is put on the " -"stack for other PAM modules to use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:73 -msgid "<option>use_first_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:76 -msgid "" -"The argument use_first_pass forces the module to use a previous stacked " -"modules password and will never prompt the user - if no password is " -"available or the password is not appropriate, the user will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:84 -msgid "<option>use_authtok</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:87 -msgid "" -"When password changing enforce the module to set the new password to the one " -"provided by a previously stacked password module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:94 -msgid "<option>retry=N</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:97 -msgid "" -"If specified the user is asked another N times for a password if " -"authentication fails. Default is 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:99 -msgid "" -"Please note that this option might not work as expected if the application " -"calling PAM handles the user dialog on its own. A typical example is " -"<command>sshd</command> with <option>PasswordAuthentication</option>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:110 -msgid "MODULE TYPES PROVIDED" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:111 -msgid "" -"All module types (<option>account</option>, <option>auth</option>, " -"<option>password</option> and <option>session</option>) are provided." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:117 -msgid "FILES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:118 -msgid "" -"If a password reset by root fails, because the corresponding SSSD provider " -"does not support password resets, an individual message can be displayed. " -"This message can e.g. contain instructions about how to reset a password." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:123 -msgid "" -"The message is read from the file <filename>pam_sss_pw_reset_message.LOC</" -"filename> where LOC stands for a locale string returned by <citerefentry> " -"<refentrytitle>setlocale</refentrytitle><manvolnum>3</manvolnum> </" -"citerefentry>. If there is no matching file the content of " -"<filename>pam_sss_pw_reset_message.txt</filename> is displayed. Root must be " -"the owner of the files and only root may have read and write permissions " -"while all other users must have only read permissions." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:133 -msgid "" -"These files are searched in the directory <filename>/etc/sssd/customize/" -"DOMAIN_NAME/</filename>. If no matching file is present a generic message is " -"displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:141 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd_krb5_locator_plugin.8.xml:10 sssd_krb5_locator_plugin.8.xml:15 -msgid "sssd_krb5_locator_plugin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:22 -msgid "" -"The Kerberos locator plugin <command>sssd_krb5_locator_plugin</command> is " -"used by the Kerberos provider of <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry> to tell the Kerberos " -"libraries what Realm and which KDC to use. Typically this is done in " -"<citerefentry> <refentrytitle>krb5.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> which is always read by the Kerberos libraries. " -"To simplify the configuration the Realm and the KDC can be defined in " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> as described in <citerefentry> " -"<refentrytitle>sssd-krb5.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry> puts the Realm and the name or IP address of the KDC into " -"the environment variables SSSD_KRB5_REALM and SSSD_KRB5_KDC respectively. " -"When <command>sssd_krb5_locator_plugin</command> is called by the kerberos " -"libraries it reads and evaluates these variables and returns them to the " -"libraries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:63 -msgid "" -"Not all Kerberos implementations support the use of plugins. If " -"<command>sssd_krb5_locator_plugin</command> is not available on your system " -"you have to edit /etc/krb5.conf to reflect your Kerberos setup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:69 -msgid "" -"If the environment variable SSSD_KRB5_LOCATOR_DEBUG is set to any value " -"debug messages will be sent to stderr." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:77 -msgid "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-simple.5.xml:10 sssd-simple.5.xml:16 -msgid "sssd-simple" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd-simple.5.xml:17 -msgid "the configuration file for SSSD's 'simple' access-control provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:24 -msgid "" -"This manual page describes the configuration of the simple access-control " -"provider for <citerefentry> <refentrytitle>sssd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry>. For a detailed syntax reference, " -"refer to the <quote>FILE FORMAT</quote> section of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:38 -msgid "" -"The simple access provider grants or denies access based on an access or " -"deny list of user or group names. The following rules apply:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:43 -msgid "If all lists are empty, access is granted" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:47 -msgid "" -"If any list is provided, the order of evaluation is allow,deny. This means " -"that any matching deny rule will supersede any matched allow rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:54 -msgid "" -"If either or both \"allow\" lists are provided, all users are denied unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:60 -msgid "" -"If only \"deny\" lists are provided, all users are granted access unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:78 -msgid "simple_allow_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:81 -msgid "Comma separated list of users who are allowed to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:88 -msgid "simple_deny_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:91 -msgid "Comma separated list of users who are explicitly denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:97 -msgid "simple_allow_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:100 -msgid "" -"Comma separated list of groups that are allowed to log in. This applies only " -"to groups within this SSSD domain. Local groups are not evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:108 -msgid "simple_deny_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:111 -msgid "" -"Comma separated list of groups that are explicitly denied access. This " -"applies only to groups within this SSSD domain. Local groups are not " -"evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:70 sssd-ipa.5.xml:65 -msgid "" -"Refer to the section <quote>DOMAIN SECTIONS</quote> of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page for details on the configuration of an SSSD " -"domain. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:120 -msgid "" -"Please note that it is an configuration error if both, simple_allow_users " -"and simple_deny_users, are defined." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:128 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the simple access provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-simple.5.xml:135 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" access_provider = simple\n" -" simple_allow_users = user1, user2\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:145 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ipa.5.xml:10 sssd-ipa.5.xml:16 -msgid "sssd-ipa" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:23 -msgid "" -"This manual page describes the configuration of the IPA provider for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. For a detailed syntax reference, refer to the <quote>FILE " -"FORMAT</quote> section of the <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:36 -msgid "" -"The IPA provider is a back end used to connect to an IPA server. (Refer to " -"the freeipa.org web site for information about IPA servers.) This provider " -"requires that the machine be joined to the IPA domain; configuration is " -"almost entirely self-discovered and obtained directly from the server." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:43 -msgid "" -"The IPA provider accepts the same options used by the <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> identity provider and the <citerefentry> <refentrytitle>sssd-" -"krb5</refentrytitle> <manvolnum>5</manvolnum> </citerefentry> authentication " -"provider with some exceptions described below." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:55 -msgid "" -"However, it is neither necessary nor recommended to set these options. IPA " -"provider can also be used as an access and chpass provider. As an access " -"provider it uses HBAC (host-based access control) rules. Please refer to " -"freeipa.org for more information about HBAC. No configuration of access " -"provider is required on the client side." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:72 -msgid "ipa_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:75 -msgid "" -"Specifies the name of the IPA domain. This is optional. If not provided, " -"the configuration domain name is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:83 -msgid "ipa_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:86 -msgid "" -"The comma-separated list of IP addresses or hostnames of the IPA servers to " -"which SSSD should connect in the order of preference. For more information " -"on failover and server redundancy, see the <quote>FAILOVER</quote> section. " -"This is optional if autodiscovery is enabled. For more information on " -"service discovery, refer to the the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:99 -msgid "ipa_hostname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:102 -msgid "" -"Optional. May be set on machines where the hostname(5) does not reflect the " -"fully qualified name used in the IPA domain to identify this host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:110 -msgid "ipa_dyndns_update (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:113 -msgid "" -"Optional. This option tells SSSD to automatically update the DNS server " -"built into FreeIPA v2 with the IP address of this client." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:118 -msgid "" -"NOTE: On older systems (such as RHEL 5), for this behavior to work reliably, " -"the default Kerberos realm must be set properly in /etc/krb5.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:129 -msgid "ipa_dyndns_iface (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:132 -msgid "" -"Optional. Applicable only when ipa_dyndns_update is true. Choose the " -"interface whose IP address should be used for dynamic DNS updates." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:137 -msgid "Default: Use the IP address of the IPA LDAP connection" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:143 -msgid "ipa_hbac_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:146 -msgid "Optional. Use the given string as search base for HBAC related objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:150 -msgid "Default: Use base DN" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:156 -msgid "ipa_host_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:159 -msgid "Optional. Use the given string as search base for host objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:168 -msgid "" -"If filter is given in any of search bases and " -"<emphasis>ipa_hbac_support_srchost</emphasis> is set to False, the filter " -"will be ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:180 -msgid "ipa_selinux_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:183 -msgid "Optional. Use the given string as search base for SELinux user maps." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:199 sssd-krb5.5.xml:229 -msgid "krb5_validate (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:202 sssd-krb5.5.xml:232 -msgid "" -"Verify with the help of krb5_keytab that the TGT obtained has not been " -"spoofed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:209 -msgid "" -"Note that this default differs from the traditional Kerberos provider back " -"end." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:219 -msgid "" -"The name of the Kerberos realm. This is optional and defaults to the value " -"of <quote>ipa_domain</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:223 -msgid "" -"The name of the Kerberos realm has a special meaning in IPA - it is " -"converted into the base DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:234 -msgid "" -"Specifies if the host and user principal should be canonicalized when " -"connecting to IPA LDAP and also for AS requests. This feature is available " -"with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:247 -msgid "ipa_hbac_refresh (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:250 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server. " -"This will reduce the latency and load on the IPA server if there are many " -"access-control requests made in a short period." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:257 -msgid "Default: 5 (seconds)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:262 -msgid "ipa_hbac_treat_deny_as (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:265 -msgid "" -"This option specifies how to treat the deprecated DENY-type HBAC rules. As " -"of FreeIPA v2.1, DENY rules are no longer supported on the server. All users " -"of FreeIPA will need to migrate their rules to use only the ALLOW rules. The " -"client will support two modes of operation during this transition period:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:274 -msgid "" -"<emphasis>DENY_ALL</emphasis>: If any HBAC DENY rules are detected, all " -"users will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:279 -msgid "" -"<emphasis>IGNORE</emphasis>: SSSD will ignore any DENY rules. Be very " -"careful with this option, as it may result in opening unintended access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:284 -msgid "Default: DENY_ALL" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:289 -msgid "ipa_hbac_support_srchost (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:292 -msgid "" -"If this is set to false, then srchost as given to SSSD by PAM will be " -"ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:296 -msgid "" -"Note that if set to <emphasis>False</emphasis>, this option casuses filters " -"given in <emphasis>ipa_host_search_base</emphasis> to be ignored;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:307 -msgid "ipa_automount_location (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:310 -msgid "The automounter location this IPA client will be using" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:313 -msgid "Default: The location named \"default\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:319 -msgid "ipa_netgroup_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:322 -msgid "The LDAP attribute that lists netgroup's memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:331 -msgid "ipa_netgroup_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:334 -msgid "" -"The LDAP attribute that lists system users and groups that are direct " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:339 sssd-ipa.5.xml:434 -msgid "Default: memberUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:344 -msgid "ipa_netgroup_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:347 -msgid "" -"The LDAP attribute that lists hosts and host groups that are direct members " -"of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:351 sssd-ipa.5.xml:446 -msgid "Default: memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:356 -msgid "ipa_netgroup_member_ext_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:359 -msgid "" -"The LDAP attribute that lists FQDNs of hosts and host groups that are " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:363 -msgid "Default: externalHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:368 -msgid "ipa_netgroup_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:371 -msgid "The LDAP attribute that contains NIS domain name of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:375 -msgid "Default: nisDomainName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:381 -msgid "ipa_host_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:384 sssd-ipa.5.xml:407 -msgid "The object class of a host entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:387 sssd-ipa.5.xml:410 -msgid "Default: ipaHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:392 -msgid "ipa_host_fqdn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:395 -msgid "The LDAP attribute that contains FQDN of the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:398 -msgid "Default: fqdn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:404 -msgid "ipa_selinux_usermap_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:415 -msgid "ipa_selinux_usermap_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:418 -msgid "The LDAP attribute that contains the name of SELinux usermap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:427 -msgid "ipa_selinux_usermap_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:430 -msgid "" -"The LDAP attribute that contains all users / groups this rule match against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:439 -msgid "ipa_selinux_usermap_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:442 -msgid "" -"The LDAP attribute that contains all hosts / hostgroups this rule match " -"against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:451 -msgid "ipa_selinux_usermap_see_also (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:454 -msgid "" -"The LDAP attribute that contains DN of HBAC rule which can be used for " -"matching instead of memberUser and memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:459 -msgid "Default: seeAlso" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:464 -msgid "ipa_selinux_usermap_selinux_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:467 -msgid "The LDAP attribute that contains SELinux user string itself." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:471 -msgid "Default: ipaSELinuxUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:476 -msgid "ipa_selinux_usermap_enabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:479 -msgid "" -"The LDAP attribute that contains whether or not is user map enabled for " -"usage." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:483 -msgid "Default: ipaEnabledFlag" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:488 -msgid "ipa_selinux_usermap_user_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:491 -msgid "The LDAP attribute that contains user category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:495 -msgid "Default: userCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:500 -msgid "ipa_selinux_usermap_host_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:503 -msgid "The LDAP attribute that contains host category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:507 -msgid "Default: hostCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:512 -msgid "ipa_selinux_usermap_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:515 -msgid "The LDAP attribute that contains unique ID of the user map." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:519 -msgid "Default: ipaUniqueID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:524 -msgid "ipa_host_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:527 -msgid "The LDAP attribute that contains the host's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:531 -msgid "Default: ipaSshPubKey" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:546 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the ipa provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ipa.5.xml:553 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" id_provider = ipa\n" -" ipa_server = ipaserver.example.com\n" -" ipa_hostname = myhost.example.com\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:564 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.8.xml:10 sssd.8.xml:15 -msgid "sssd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.8.xml:16 -msgid "System Security Services Daemon" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sssd.8.xml:21 -msgid "" -"<command>sssd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:31 -msgid "" -"<command>SSSD</command> provides a set of daemons to manage access to remote " -"directories and authentication mechanisms. It provides an NSS and PAM " -"interface toward the system and a pluggable backend system to connect to " -"multiple different account sources as well as D-Bus interface. It is also " -"the basis to provide client auditing and policy services for projects like " -"FreeIPA. It provides a more robust database to store local users as well as " -"extended user data." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:46 -msgid "" -"<option>-d</option>,<option>--debug-level</option> <replaceable>LEVEL</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:53 -msgid "<option>--debug-timestamps=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:57 -msgid "<emphasis>1</emphasis>: Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:60 -msgid "<emphasis>0</emphasis>: Disable timestamp in the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:69 -msgid "<option>--debug-microseconds=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:73 -msgid "" -"<emphasis>1</emphasis>: Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:76 -msgid "<emphasis>0</emphasis>: Disable microseconds in timestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:79 -msgid "Default: 0" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:85 -msgid "<option>-f</option>,<option>--debug-to-files</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:89 -msgid "" -"Send the debug output to files instead of stderr. By default, the log files " -"are stored in <filename>/var/log/sssd</filename> and there are separate log " -"files for every SSSD service and domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:97 -msgid "<option>-D</option>,<option>--daemon</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:101 -msgid "Become a daemon after starting up." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:107 -msgid "<option>-i</option>,<option>--interactive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:111 -msgid "Run in the foreground, don't become a daemon." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:117 sss_debuglevel.8.xml:42 -msgid "<option>-c</option>,<option>--config</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:121 sss_debuglevel.8.xml:46 -msgid "" -"Specify a non-default config file. The default is <filename>/etc/sssd/sssd." -"conf</filename>. For reference on the config file syntax and options, " -"consult the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:135 -msgid "<option>--version</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:139 -msgid "Print version number and exit." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.8.xml:147 -msgid "Signals" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:150 -msgid "SIGTERM/SIGINT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:153 -msgid "" -"Informs the SSSD to gracefully terminate all of its child processes and then " -"shut down the monitor." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:159 -msgid "SIGHUP" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:162 -msgid "" -"Tells the SSSD to stop writing to its current debug file descriptors and to " -"close and reopen them. This is meant to facilitate log rolling with programs " -"like logrotate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:170 -msgid "SIGUSR1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:173 -msgid "" -"Tells the SSSD to simulate offline operation for one minute. This is mostly " -"useful for testing purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:179 -msgid "SIGUSR2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:182 -msgid "" -"Tells the SSSD to go online immediately. This is mostly useful for testing " -"purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:193 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_obfuscate.8.xml:10 sss_obfuscate.8.xml:15 -msgid "sss_obfuscate" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_obfuscate.8.xml:16 -msgid "obfuscate a clear text password" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_obfuscate.8.xml:21 -msgid "" -"<command>sss_obfuscate</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>[PASSWORD]</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:32 -msgid "" -"<command>sss_obfuscate</command> converts a given password into human-" -"unreadable format and places it into appropriate domain section of the SSSD " -"config file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:37 -msgid "" -"The cleartext password is read from standard input or entered " -"interactively. The obfuscated password is put into " -"<quote>ldap_default_authtok</quote> parameter of a given SSSD domain and the " -"<quote>ldap_default_authtok_type</quote> parameter is set to " -"<quote>obfuscated_password</quote>. Refer to <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more details on these parameters." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:49 -msgid "" -"Please note that obfuscating the password provides <emphasis>no real " -"security benefit</emphasis> as it is still possible for an attacker to " -"reverse-engineer the password back. Using better authentication mechanisms " -"such as client side certificates or GSSAPI is <emphasis>strongly</emphasis> " -"advised." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:63 -msgid "<option>-s</option>,<option>--stdin</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:67 -msgid "The password to obfuscate will be read from standard input." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:74 sss_ssh_authorizedkeys.1.xml:82 -#: sss_ssh_knownhostsproxy.1.xml:81 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>DOMAIN</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:79 -msgid "" -"The SSSD domain to use the password in. The default name is <quote>default</" -"quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:86 -msgid "" -"<option>-f</option>,<option>--file</option> <replaceable>FILE</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:91 -msgid "Read the config file specified by the positional parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:95 -msgid "Default: <filename>/etc/sssd/sssd.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:105 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_useradd.8.xml:10 sss_useradd.8.xml:15 -msgid "sss_useradd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_useradd.8.xml:16 -msgid "create a new user" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_useradd.8.xml:21 -msgid "" -"<command>sss_useradd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:32 -msgid "" -"<command>sss_useradd</command> creates a new user account using the values " -"specified on the command line plus the default values from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:43 -msgid "" -"<option>-u</option>,<option>--uid</option> <replaceable>UID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:48 -msgid "" -"Set the UID of the user to the value of <replaceable>UID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:55 sss_usermod.8.xml:43 -msgid "" -"<option>-c</option>,<option>--gecos</option> <replaceable>COMMENT</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:60 sss_usermod.8.xml:48 -msgid "" -"Any text string describing the user. Often used as the field for the user's " -"full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:67 sss_usermod.8.xml:55 -msgid "" -"<option>-h</option>,<option>--home</option> <replaceable>HOME_DIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:72 -msgid "" -"The home directory of the user account. The default is to append the " -"<replaceable>LOGIN</replaceable> name to <filename>/home</filename> and use " -"that as the home directory. The base that is prepended before " -"<replaceable>LOGIN</replaceable> is tunable with <quote>user_defaults/" -"baseDirectory</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:82 sss_usermod.8.xml:66 -msgid "" -"<option>-s</option>,<option>--shell</option> <replaceable>SHELL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:87 -msgid "" -"The user's login shell. The default is currently <filename>/bin/bash</" -"filename>. The default can be changed with <quote>user_defaults/" -"defaultShell</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:96 -msgid "" -"<option>-G</option>,<option>--groups</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:101 -msgid "A list of existing groups this user is also a member of." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:107 -msgid "<option>-m</option>,<option>--create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:111 -msgid "" -"Create the user's home directory if it does not exist. The files and " -"directories contained in the skeleton directory (which can be defined with " -"the -k option or in the config file) will be copied to the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:121 -msgid "<option>-M</option>,<option>--no-create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:125 -msgid "" -"Do not create the user's home directory. Overrides configuration settings." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:132 -msgid "" -"<option>-k</option>,<option>--skel</option> <replaceable>SKELDIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:137 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<command>sss_useradd</command>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:143 -msgid "" -"This option is only valid if the <option>-m</option> (or <option>--create-" -"home</option>) option is specified, or creation of home directories is set " -"to TRUE in the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:152 sss_usermod.8.xml:124 -msgid "" -"<option>-Z</option>,<option>--selinux-user</option> " -"<replaceable>SELINUX_USER</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:157 -msgid "" -"The SELinux user for the user's login. If not specified, the system default " -"will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:169 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-krb5.5.xml:10 sssd-krb5.5.xml:16 -msgid "sssd-krb5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:23 -msgid "" -"This manual page describes the configuration of the Kerberos 5 " -"authentication backend for <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry>. For a detailed " -"syntax reference, please refer to the <quote>FILE FORMAT</quote> section of " -"the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:36 -msgid "" -"The Kerberos 5 authentication backend contains auth and chpass providers. It " -"must be paired with identity provider in order to function properly (for " -"example, id_provider = ldap). Some information required by the Kerberos 5 " -"authentication backend must be provided by the identity provider, such as " -"the user's Kerberos Principal Name (UPN). The configuration of the identity " -"provider should have an entry to specify the UPN. Please refer to the man " -"page for the applicable identity provider for details on how to configure " -"this." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:47 -msgid "" -"This backend also provides access control based on the .k5login file in the " -"home directory of the user. See <citerefentry> <refentrytitle>.k5login</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry> for more details. " -"Please note that an empty .k5login file will deny all access to this user. " -"To activate this feature use 'access_provider = krb5' in your sssd " -"configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:55 -msgid "" -"In the case where the UPN is not available in the identity backend " -"<command>sssd</command> will construct a UPN using the format " -"<replaceable>username</replaceable>@<replaceable>krb5_realm</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:106 -msgid "" -"The name of the Kerberos realm. This option is required and must be " -"specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:113 -msgid "krb5_kpasswd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:116 -msgid "" -"If the change password service is not running on the KDC alternative servers " -"can be defined here. An optional port number (preceded by a colon) may be " -"appended to the addresses or hostnames." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:122 -msgid "" -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. Please note that even if there are no more " -"kpasswd servers to try the back end is not switch to offline if " -"authentication against the KDC is still possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:129 -msgid "Default: Use the KDC" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:135 -msgid "krb5_ccachedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:138 -msgid "" -"Directory to store credential caches. All the substitution sequences of " -"krb5_ccname_template can be used here, too, except %d and %P. If the " -"directory does not exist it will be created. If %u, %U, %p or %h are used a " -"private directory belonging to the user is created. Otherwise a public " -"directory with restricted deletion flag (aka sticky bit, see <citerefentry> " -"<refentrytitle>chmod</refentrytitle> <manvolnum>1</manvolnum> </" -"citerefentry> for details) is created." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:151 -msgid "Default: /tmp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:157 -msgid "krb5_ccname_template (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:171 -msgid "login UID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:174 -msgid "%p" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:175 -msgid "principal name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:179 -msgid "%r" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:180 -msgid "realm name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:183 -msgid "%h" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:184 -msgid "home directory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:189 -msgid "value of krb5ccache_dir" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:194 -msgid "%P" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:195 -msgid "the process ID of the sssd client" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:160 -msgid "" -"Location of the user's credential cache. Currently only file based " -"credential caches are supported. In the template the following sequences are " -"substituted: <placeholder type=\"variablelist\" id=\"0\"/> If the template " -"ends with 'XXXXXX' mkstemp(3) is used to create a unique filename in a safe " -"way." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:209 -msgid "Default: FILE:%d/krb5cc_%U_XXXXXX" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:215 -msgid "krb5_auth_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:218 -msgid "" -"Timeout in seconds after an online authentication or change password request " -"is aborted. If possible the authentication request is continued offline." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:241 -msgid "krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:244 -msgid "" -"The location of the keytab to use when validating credentials obtained from " -"KDCs." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:248 -msgid "Default: /etc/krb5.keytab" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:254 -msgid "krb5_store_password_if_offline (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:257 -msgid "" -"Store the password of the user if the provider is offline and use it to " -"request a TGT when the provider gets online again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:262 -msgid "" -"Please note that this feature currently only available on a Linux platform. " -"Passwords stored in this way are kept in plaintext in the kernel keyring and " -"are potentially accessible by the root user (with difficulty)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:275 -msgid "krb5_renewable_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:278 -msgid "" -"Request a renewable ticket with a total lifetime given by an integer " -"immediately followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:283 sssd-krb5.5.xml:319 -msgid "<emphasis>s</emphasis> seconds" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:286 sssd-krb5.5.xml:322 -msgid "<emphasis>m</emphasis> minutes" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:289 sssd-krb5.5.xml:325 -msgid "<emphasis>h</emphasis> hours" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:292 sssd-krb5.5.xml:328 -msgid "<emphasis>d</emphasis> days." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:295 sssd-krb5.5.xml:331 -msgid "If there is no delimiter <emphasis>s</emphasis> is assumed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:299 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"renewable lifetime to one and a half hours please use '90m' instead of " -"'1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:305 -msgid "Default: not set, i.e. the TGT is not renewable" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:311 -msgid "krb5_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:314 -msgid "" -"Request ticket with a with a lifetime given by an integer immediately " -"followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:335 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"lifetime to one and a half hours please use '90m' instead of '1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:340 -msgid "" -"Default: not set, i.e. the default ticket lifetime configured on the KDC." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:347 -msgid "krb5_renew_interval (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:350 -msgid "" -"The time in seconds between two checks if the TGT should be renewed. TGTs " -"are renewed if about half of their lifetime is exceeded." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:355 -msgid "If this option is not set or 0 the automatic renewal is disabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:365 -msgid "krb5_use_fast (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:368 -msgid "" -"Enables flexible authentication secure tunneling (FAST) for Kerberos pre-" -"authentication. The following options are supported:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:373 -msgid "" -"<emphasis>never</emphasis> use FAST, this is equivalent to not set this " -"option at all." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:377 -msgid "" -"<emphasis>try</emphasis> to use FAST, if the server does not support fast " -"continue without." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:381 -msgid "" -"<emphasis>demand</emphasis> to use FAST, fail if the server does not require " -"fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:385 -msgid "Default: not set, i.e. FAST is not used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:388 -msgid "Please note that a keytab is required to use fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:391 -msgid "" -"Please note also that sssd supports fast only with MIT Kerberos version 1.8 " -"and above. If sssd used with an older version using this option is a " -"configuration error." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:400 -msgid "krb5_fast_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:403 -msgid "Specifies the server principal to use for FAST." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:412 -msgid "" -"Specifies if the host and user principal should be canonicalized. This " -"feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:65 -msgid "" -"If the auth-module krb5 is used in a SSSD domain, the following options must " -"be used. See the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page, section <quote>DOMAIN " -"SECTIONS</quote> for details on the configuration of a SSSD domain. " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:434 -msgid "" -"The following example assumes that SSSD is correctly configured and FOO is " -"one of the domains in the <replaceable>[sssd]</replaceable> section. This " -"example shows only configuration of Kerberos authentication, it does not " -"include any identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-krb5.5.xml:442 -#, no-wrap -msgid "" -" [domain/FOO]\n" -" auth_provider = krb5\n" -" krb5_server = 192.168.1.1\n" -" krb5_realm = EXAMPLE.COM\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:453 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupadd.8.xml:10 sss_groupadd.8.xml:15 -msgid "sss_groupadd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupadd.8.xml:16 -msgid "create a new group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupadd.8.xml:21 -msgid "" -"<command>sss_groupadd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:32 -msgid "" -"<command>sss_groupadd</command> creates a new group. These groups are " -"compatible with POSIX groups, with the additional feature that they can " -"contain other groups as members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupadd.8.xml:43 -msgid "" -"<option>-g</option>,<option>--gid</option> <replaceable>GID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupadd.8.xml:48 -msgid "" -"Set the GID of the group to the value of <replaceable>GID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_userdel.8.xml:10 sss_userdel.8.xml:15 -msgid "sss_userdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_userdel.8.xml:16 -msgid "delete a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_userdel.8.xml:21 -msgid "" -"<command>sss_userdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:32 -msgid "" -"<command>sss_userdel</command> deletes a user identified by login name " -"<replaceable>LOGIN</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:44 -msgid "<option>-r</option>,<option>--remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:48 -msgid "" -"Files in the user's home directory will be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:56 -msgid "<option>-R</option>,<option>--no-remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:60 -msgid "" -"Files in the user's home directory will NOT be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:68 -msgid "<option>-f</option>,<option>--force</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:72 -msgid "" -"This option forces <command>sss_userdel</command> to remove the user's home " -"directory and mail spool, even if they are not owned by the specified user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:80 -msgid "<option>-k</option>,<option>--kick</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:84 -msgid "Before actually deleting the user, terminate all his processes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:95 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupdel.8.xml:10 sss_groupdel.8.xml:15 -msgid "sss_groupdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupdel.8.xml:16 -msgid "delete a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupdel.8.xml:21 -msgid "" -"<command>sss_groupdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:32 -msgid "" -"<command>sss_groupdel</command> deletes a group identified by its name " -"<replaceable>GROUP</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupshow.8.xml:10 sss_groupshow.8.xml:15 -msgid "sss_groupshow" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupshow.8.xml:16 -msgid "print properties of a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupshow.8.xml:21 -msgid "" -"<command>sss_groupshow</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:32 -msgid "" -"<command>sss_groupshow</command> displays information about a group " -"identified by its name <replaceable>GROUP</replaceable>. The information " -"includes the group ID number, members of the group and the parent group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupshow.8.xml:43 -msgid "<option>-R</option>,<option>--recursive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupshow.8.xml:47 -msgid "" -"Also print indirect group members in a tree-like hierarchy. Note that this " -"also affects printing parent groups - without <option>R</option>, only the " -"direct parent will be printed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_usermod.8.xml:10 sss_usermod.8.xml:15 -msgid "sss_usermod" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_usermod.8.xml:16 -msgid "modify a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_usermod.8.xml:21 -msgid "" -"<command>sss_usermod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:32 -msgid "" -"<command>sss_usermod</command> modifies the account specified by " -"<replaceable>LOGIN</replaceable> to reflect the changes that are specified " -"on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:60 -msgid "The home directory of the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:71 -msgid "The user's login shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:82 -msgid "" -"Append this user to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:96 -msgid "" -"Remove this user from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:103 -msgid "<option>-l</option>,<option>--lock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:107 -msgid "Lock the user account. The user won't be able to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:114 -msgid "<option>-u</option>,<option>--unlock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:118 -msgid "Unlock the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:129 -msgid "The SELinux user for the user's login." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:140 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_cache.8.xml:10 sss_cache.8.xml:15 -msgid "sss_cache" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_cache.8.xml:16 -msgid "perform cache cleanup" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_cache.8.xml:21 -msgid "" -"<command>sss_cache</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_cache.8.xml:31 -msgid "" -"<command>sss_cache</command> invalidates records in SSSD cache. Invalidated " -"records are forced to be reloaded from server as soon as related SSSD " -"backend is online." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:42 -msgid "" -"<option>-u</option>,<option>--user</option> <replaceable>login</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:47 -msgid "Invalidate specific user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:53 -msgid "<option>-U</option>,<option>--users</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:57 -msgid "" -"Invalidate all user records. This option overrides invalidation of specific " -"user if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:64 -msgid "" -"<option>-g</option>,<option>--group</option> <replaceable>group</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:69 -msgid "Invalidate specific group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:75 -msgid "<option>-G</option>,<option>--groups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:79 -msgid "" -"Invalidate all group records. This option overrides invalidation of specific " -"group if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:86 -msgid "" -"<option>-n</option>,<option>--netgroup</option> <replaceable>netgroup</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:91 -msgid "Invalidate specific netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:97 -msgid "<option>-N</option>,<option>--netgroups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:101 -msgid "" -"Invalidate all netgroup records. This option overrides invalidation of " -"specific netgroup if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:108 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>domain</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:113 -msgid "Restrict invalidation process only to a particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_debuglevel.8.xml:10 sss_debuglevel.8.xml:15 -msgid "sss_debuglevel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_debuglevel.8.xml:16 -msgid "change debug level while SSSD is running" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_debuglevel.8.xml:21 -msgid "" -"<command>sss_debuglevel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>NEW_DEBUG_LEVEL</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_debuglevel.8.xml:32 -msgid "" -"<command>sss_debuglevel</command> changes debug level of SSSD monitor and " -"providers to <replaceable>NEW_DEBUG_LEVEL</replaceable> while SSSD is " -"running." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_debuglevel.8.xml:59 -msgid "<replaceable>NEW_DEBUG_LEVEL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_authorizedkeys.1.xml:10 sss_ssh_authorizedkeys.1.xml:15 -msgid "sss_ssh_authorizedkeys" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_ssh_authorizedkeys.1.xml:11 sss_ssh_knownhostsproxy.1.xml:11 -msgid "1" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_authorizedkeys.1.xml:16 -msgid "get OpenSSH authorized keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_authorizedkeys.1.xml:21 -msgid "" -"<command>sss_ssh_authorizedkeys</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>USER</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:32 -msgid "" -"<command>sss_ssh_authorizedkeys</command> acquires SSH public keys for user " -"<replaceable>USER</replaceable> and outputs them in OpenSSH authorized_keys " -"format (see the <quote>AUTHORIZED_KEYS FILE FORMAT</quote> section of " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> for more information)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:41 -msgid "" -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_authorizedkeys</" -"command> for public key user authentication if it is compiled with support " -"for either <quote>AuthorizedKeysCommand</quote> or <quote>PubkeyAgent</" -"quote> <citerefentry> <refentrytitle>sshd_config</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:58 -#, no-wrap -msgid "AuthorizedKeysCommand /usr/bin/sss_ssh_authorizedkeys\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:51 -msgid "" -"If <quote>AuthorizedKeysCommand</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by putting the following directive " -"in <citerefentry> <refentrytitle>sshd_config</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry>: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:69 -#, no-wrap -msgid "PubKeyAgent /usr/bin/sss_ssh_authorizedkeys %u\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:62 -msgid "" -"If <quote>PubkeyAgent</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by using the following directive " -"for <citerefentry> <refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> configuration: <placeholder type=\"programlisting" -"\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_authorizedkeys.1.xml:87 -msgid "" -"Search for user public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:98 -msgid "" -"<citerefentry> <refentrytitle>sshd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sshd_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_knownhostsproxy</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_knownhostsproxy.1.xml:10 sss_ssh_knownhostsproxy.1.xml:15 -msgid "sss_ssh_knownhostsproxy" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_knownhostsproxy.1.xml:16 -msgid "get OpenSSH host keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_knownhostsproxy.1.xml:21 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>HOST</replaceable></arg> <arg " -"choice='opt'><replaceable>PROXY_COMMAND</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:33 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> acquires SSH host public keys for " -"host <replaceable>HOST</replaceable>, stores them in a custom OpenSSH " -"known_hosts file (see the <quote>SSH_KNOWN_HOSTS FILE FORMAT</quote> section " -"of <citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> for more information) <filename>/var/lib/sss/" -"pubconf/known_hosts</filename> and estabilishes connection to the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:43 -msgid "" -"If <replaceable>PROXY_COMMAND</replaceable> is specified, it is used to " -"create the connection to the host instead of opening a socket." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_knownhostsproxy.1.xml:55 -#, no-wrap -msgid "" -"ProxyCommand /usr/bin/sss_ssh_knownhostsproxy -p %p %h\n" -"GlobalKnownHostsFile2 /var/lib/sss/pubconf/known_hosts\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:48 -msgid "" -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_knownhostsproxy</" -"command> for host key authentication by using the following directives for " -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> configuration: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_ssh_knownhostsproxy.1.xml:69 -msgid "" -"<option>-p</option>,<option>--port</option> <replaceable>PORT</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:74 -msgid "" -"Use port <replaceable>PORT</replaceable> to connect to the host. By " -"default, port 22 is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:86 -msgid "" -"Search for host public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:97 -msgid "" -"<citerefentry> <refentrytitle>ssh</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>ssh_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_authorizedkeys</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/service_discovery.xml:2 -msgid "SERVICE DISCOVERY" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/service_discovery.xml:4 -msgid "" -"The service discovery feature allows back ends to automatically find the " -"appropriate servers to connect to using a special DNS query." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:9 -msgid "Configuration" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:11 -msgid "" -"If no servers are specified, the back end automatically uses service " -"discovery to try to find a server. Optionally, the user may choose to use " -"both fixed server addresses and service discovery by inserting a special " -"keyword, <quote>_srv_</quote>, in the list of servers. The order of " -"preference is maintained. This feature is useful if, for example, the user " -"prefers to use service discovery whenever possible, and fall back to a " -"specific server when no servers can be discovered using DNS." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:23 -msgid "The domain name" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:25 -msgid "" -"Please refer to the <quote>dns_discovery_domain</quote> parameter in the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for more details." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:35 -msgid "The protocol" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:37 -msgid "" -"The queries usually specify _tcp as the protocol. Exceptions are documented " -"in respective option description." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:42 -msgid "See Also" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:44 -msgid "" -"For more information on the service discovery mechanism, refer to RFC 2782." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/upstream.xml:1 -msgid "<placeholder type=\"refentryinfo\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/failover.xml:2 -msgid "FAILOVER" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/failover.xml:4 -msgid "" -"The failover feature allows back ends to automatically switch to a different " -"server if the primary server fails." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:8 -msgid "Failover Syntax" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:10 -msgid "" -"The list of servers is given as a comma-separated list; any number of spaces " -"is allowed around the comma. The servers are listed in order of preference. " -"The list can contain any number of servers." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:17 -msgid "The Failover Mechanism" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:19 -msgid "" -"The failover mechanism distinguishes between a machine and a service. The " -"back end first tries to resolve the hostname of a given machine; if this " -"resolution attempt fails, the machine is considered offline. No further " -"attempts are made to connect to this machine for any other service. If the " -"resolution attempt succeeds, the back end tries to connect to a service on " -"this machine. If the service connection attempt fails, then only this " -"particular service is considered offline and the back end automatically " -"switches over to the next service. The machine is still considered online " -"and might still be tried for another service." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:32 -msgid "" -"Further connection attempts are made to machines or services marked as " -"offline after a specified period of time; this is currently hard coded to 30 " -"seconds." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:37 -msgid "" -"If there are no more machines to try, the back end as a whole switches to " -"offline mode, and then attempts to reconnect every 30 seconds." -msgstr "" - -#. type: Content of: <varlistentry><term> -#: include/param_help.xml:3 -msgid "<option>-h</option>,<option>--help</option>" -msgstr "" - -#. type: Content of: <varlistentry><listitem><para> -#: include/param_help.xml:7 -msgid "Display help message and exit." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:3 -msgid "" -"Bit mask that indicates which debug levels will be visible. 0x0010 is the " -"default value as well as the lowest allowed value, 0xFFF0 is the most " -"verbose mode. This setting overrides the settings from config file." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:8 -msgid "Currently supported debug levels:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:11 -msgid "" -"<emphasis>0x0010</emphasis>: Fatal failures. Anything that would prevent " -"SSSD from starting up or causes it to cease running." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:15 -msgid "" -"<emphasis>0x0020</emphasis>: Critical failures. An error that doesn't kill " -"the SSSD, but one that indicates that at least one major feature is not " -"going to work properly." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:20 -msgid "" -"<emphasis>0x0040</emphasis>: Serious failures. An error announcing that a " -"particular request or operation has failed." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:24 -msgid "" -"<emphasis>0x0080</emphasis>: Minor failures. These are the errors that would " -"percolate down to cause the operation failure of 2." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:28 -msgid "<emphasis>0x0100</emphasis>: Configuration settings." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:31 -msgid "<emphasis>0x0200</emphasis>: Function data." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:34 -msgid "<emphasis>0x0400</emphasis>: Trace messages for operation functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:37 -msgid "" -"<emphasis>0x1000</emphasis>: Trace messages for internal control functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:40 -msgid "" -"<emphasis>0x2000</emphasis>: Contents of function-internal variables that " -"may be interesting." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:43 -msgid "<emphasis>0x4000</emphasis>: Extremely low-level tracing information." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:46 -msgid "" -"To log required debug levels, simply add their numbers together as shown in " -"following examples:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:49 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, critical failures, " -"serious failures and function data use 0x0270." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:53 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, configuration settings, " -"function data, trace messages for internal control functions use 0x1310." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:57 -msgid "" -"<emphasis>Note</emphasis>: This is new format of debug levels introduced in " -"1.7.0. Older format (numbers from 0-10) is compatible but deprecated." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/experimental.xml:1 -msgid "" -"<emphasis> This is an experimental feature, please use http://fedorahosted." -"org/sssd to report any issues. </emphasis>" -msgstr "" diff --git a/src/man/po/it.po b/src/man/po/it.po deleted file mode 100644 index f38818dba..000000000 --- a/src/man/po/it.po +++ /dev/null @@ -1,6747 +0,0 @@ -# SOME DESCRIPTIVE TITLE -# Copyright (C) YEAR Red Hat -# This file is distributed under the same license as the sssd-docs package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@redhat.com\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-12-23 15:35+0000\n" -"Last-Translator: FULL NAME <EMAIL@ADDRESS>\n" -"Language-Team: Italian <trans-it@lists.fedoraproject.org>\n" -"Language: it\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=2; plural=(n != 1)\n" - -#. type: Content of: <reference><title> -#: sss_groupmod.8.xml:5 sssd.conf.5.xml:5 sssd-ldap.5.xml:5 pam_sss.8.xml:5 -#: sssd_krb5_locator_plugin.8.xml:5 sssd-simple.5.xml:5 sssd-ipa.5.xml:5 -#: sssd.8.xml:5 sss_obfuscate.8.xml:5 sss_useradd.8.xml:5 sssd-krb5.5.xml:5 -#: sss_groupadd.8.xml:5 sss_userdel.8.xml:5 sss_groupdel.8.xml:5 -#: sss_groupshow.8.xml:5 sss_usermod.8.xml:5 sss_cache.8.xml:5 -#: sss_debuglevel.8.xml:5 sss_ssh_authorizedkeys.1.xml:5 -#: sss_ssh_knownhostsproxy.1.xml:5 -msgid "SSSD Manual pages" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupmod.8.xml:10 sss_groupmod.8.xml:15 -msgid "sss_groupmod" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_groupmod.8.xml:11 pam_sss.8.xml:14 sssd_krb5_locator_plugin.8.xml:11 -#: sssd.8.xml:11 sss_obfuscate.8.xml:11 sss_useradd.8.xml:11 -#: sss_groupadd.8.xml:11 sss_userdel.8.xml:11 sss_groupdel.8.xml:11 -#: sss_groupshow.8.xml:11 sss_usermod.8.xml:11 sss_cache.8.xml:11 -#: sss_debuglevel.8.xml:11 -msgid "8" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupmod.8.xml:16 -msgid "modify a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupmod.8.xml:21 -msgid "" -"<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:30 sssd-ldap.5.xml:21 pam_sss.8.xml:44 -#: sssd_krb5_locator_plugin.8.xml:20 sssd-simple.5.xml:22 sssd-ipa.5.xml:21 -#: sssd.8.xml:29 sss_obfuscate.8.xml:30 sss_useradd.8.xml:30 -#: sssd-krb5.5.xml:21 sss_groupadd.8.xml:30 sss_userdel.8.xml:30 -#: sss_groupdel.8.xml:30 sss_groupshow.8.xml:30 sss_usermod.8.xml:30 -#: sss_cache.8.xml:29 sss_debuglevel.8.xml:30 sss_ssh_authorizedkeys.1.xml:30 -#: sss_ssh_knownhostsproxy.1.xml:31 -msgid "DESCRIPTION" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:32 -msgid "" -"<command>sss_groupmod</command> modifies the group to reflect the changes " -"that are specified on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:39 pam_sss.8.xml:51 sssd.8.xml:42 sss_obfuscate.8.xml:58 -#: sss_useradd.8.xml:39 sss_groupadd.8.xml:39 sss_userdel.8.xml:39 -#: sss_groupdel.8.xml:39 sss_groupshow.8.xml:39 sss_usermod.8.xml:39 -#: sss_cache.8.xml:38 sss_debuglevel.8.xml:38 sss_ssh_authorizedkeys.1.xml:78 -#: sss_ssh_knownhostsproxy.1.xml:65 -msgid "OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:43 sss_usermod.8.xml:77 -msgid "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:48 -msgid "" -"Append this group to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:57 sss_usermod.8.xml:91 -msgid "" -"<option>-r</option>,<option>--remove-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:62 -msgid "" -"Remove this group from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:72 sssd.conf.5.xml:1331 sssd-ldap.5.xml:2096 -#: pam_sss.8.xml:139 sssd_krb5_locator_plugin.8.xml:75 sssd-simple.5.xml:143 -#: sssd-ipa.5.xml:562 sssd.8.xml:191 sss_obfuscate.8.xml:103 -#: sss_useradd.8.xml:167 sssd-krb5.5.xml:451 sss_groupadd.8.xml:58 -#: sss_userdel.8.xml:93 sss_groupdel.8.xml:46 sss_groupshow.8.xml:58 -#: sss_usermod.8.xml:138 sss_ssh_authorizedkeys.1.xml:96 -#: sss_ssh_knownhostsproxy.1.xml:95 -msgid "SEE ALSO" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:74 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.conf.5.xml:10 sssd.conf.5.xml:16 -msgid "sssd.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sssd.conf.5.xml:11 sssd-ldap.5.xml:11 sssd-simple.5.xml:11 -#: sssd-ipa.5.xml:11 sssd-krb5.5.xml:11 -msgid "5" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><refmiscinfo> -#: sssd.conf.5.xml:12 sssd-ldap.5.xml:12 sssd-simple.5.xml:12 -#: sssd-ipa.5.xml:12 sssd-krb5.5.xml:12 -msgid "File Formats and Conventions" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.conf.5.xml:17 sssd-ldap.5.xml:17 sssd_krb5_locator_plugin.8.xml:16 -#: sssd-ipa.5.xml:17 sssd-krb5.5.xml:17 -msgid "the configuration file for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:21 -msgid "FILE FORMAT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:29 -#, no-wrap -msgid "" -" <replaceable>[section]</replaceable>\n" -" <replaceable>key</replaceable> = <replaceable>value</replaceable>\n" -" <replaceable>key2</replaceable> = <replaceable>value2,value3</replaceable>\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:24 -msgid "" -"The file has an ini-style syntax and consists of sections and parameters. A " -"section begins with the name of the section in square brackets and continues " -"until the next section begins. An example of section with single and multi-" -"valued parameters: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:36 -msgid "" -"The data types used are string (no quotes needed), integer and bool (with " -"values of <quote>TRUE/FALSE</quote>)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:41 -msgid "" -"A line comment starts with a hash sign (<quote>#</quote>) or a semicolon " -"(<quote>;</quote>)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:46 -msgid "" -"All sections can have an optional <replaceable>description</replaceable> " -"parameter. Its function is only as a label for the section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:52 -msgid "" -"<filename>sssd.conf</filename> must be a regular file, owned by root and " -"only root may read from or write to the file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:58 -msgid "SPECIAL SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:61 -msgid "The [sssd] section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><title> -#: sssd.conf.5.xml:70 sssd.conf.5.xml:1177 -msgid "Section parameters" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:72 -msgid "config_file_version (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:75 -msgid "" -"Indicates what is the syntax of the config file. SSSD 0.6.0 and later use " -"version 2." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:81 -msgid "services" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:84 -msgid "" -"Comma separated list of services that are started when sssd itself starts." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:88 -msgid "" -"Supported services: nss, pam <phrase condition=\"with_sudo\">, sudo</phrase>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:94 sssd.conf.5.xml:257 -msgid "reconnection_retries (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:97 sssd.conf.5.xml:260 -msgid "" -"Number of times services should attempt to reconnect in the event of a Data " -"Provider crash or restart before they give up" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:102 sssd.conf.5.xml:265 -msgid "Default: 3" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:107 -msgid "domains" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:110 -msgid "" -"A domain is a database containing user information. SSSD can use more " -"domains at the same time, but at least one must be configured or SSSD won't " -"start. This parameter described the list of domains in the order you want " -"them to be queried." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:120 -msgid "re_expression (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:123 -msgid "" -"Regular expression that describes how to parse the string containing user " -"name and domain into these components." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:127 -msgid "" -"Default: <quote>(?P<name>[^@]+)@?(?P<domain>[^@]*$)</quote> " -"which translates to \"the name is everything up to the <quote>@</quote> " -"sign, the domain everything after that\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:132 -msgid "" -"PLEASE NOTE: the support for non-unique named subpatterns is not available " -"on all platforms (e.g. RHEL5 and SLES10). Only platforms with libpcre " -"version 7 or higher can support non-unique named subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:139 -msgid "" -"PLEASE NOTE ALSO: older version of libpcre only support the Python syntax (?" -"P<name>) to label subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:146 -msgid "full_name_format (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:149 -msgid "" -"A <citerefentry> <refentrytitle>printf</refentrytitle> <manvolnum>3</" -"manvolnum> </citerefentry>-compatible format that describes how to translate " -"a (name, domain) tuple into a fully qualified name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:157 -msgid "Default: <quote>%1$s@%2$s</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:162 -msgid "try_inotify (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:165 -msgid "" -"SSSD monitors the state of resolv.conf to identify when it needs to update " -"its internal DNS resolver. By default, we will attempt to use inotify for " -"this, and will fall back to polling resolv.conf every five seconds if " -"inotify cannot be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:173 -msgid "" -"There are some limited situations where it is preferred that we should skip " -"even trying to use inotify. In these rare cases, this option should be set " -"to 'false'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:179 -msgid "" -"Default: true on platforms where inotify is supported. False on other " -"platforms." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:183 -msgid "" -"Note: this option will have no effect on platforms where inotify is " -"unavailable. On these platforms, polling will always be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:190 -msgid "krb5_rcache_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:193 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:197 -msgid "" -"This option accepts a special value __LIBKRB5_DEFAULTS__ that will instruct " -"SSSD to let libkrb5 decide the appropriate location for the replay cache." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:203 -msgid "" -"Default: Distribution-specific and specified at build-time. " -"(__LIBKRB5_DEFAULTS__ if not configured)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:63 -msgid "" -"Individual pieces of SSSD functionality are provided by special SSSD " -"services that are started and stopped together with SSSD. The services are " -"managed by a special service frequently called <quote>monitor</quote>. The " -"<quote>[sssd]</quote> section is used to configure the monitor as well as " -"some other important options like the identity domains. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:216 -msgid "SERVICES SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:218 -msgid "" -"Settings that can be used to configure different services are described in " -"this section. They should reside in the [<replaceable>$NAME</replaceable>] " -"section, for example, for NSS service, the section would be <quote>[nss]</" -"quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:225 -msgid "General service configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:227 -msgid "These options can be used to configure any service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:231 -msgid "debug_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:235 -msgid "debug_timestamps (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:238 -msgid "Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:241 sssd.conf.5.xml:376 sssd-ldap.5.xml:1328 -#: sssd-ldap.5.xml:1446 sssd-ipa.5.xml:206 sssd-ipa.5.xml:241 -msgid "Default: true" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:246 -msgid "debug_microseconds (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:249 -msgid "Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:252 sssd.conf.5.xml:641 sssd-ldap.5.xml:602 -#: sssd-ldap.5.xml:1260 sssd-ldap.5.xml:1397 sssd-ldap.5.xml:1795 -#: sssd-ipa.5.xml:123 sssd-ipa.5.xml:301 sssd-krb5.5.xml:235 -#: sssd-krb5.5.xml:269 sssd-krb5.5.xml:418 -msgid "Default: false" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:270 -msgid "command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:273 -msgid "" -"By default, the executable representing this service is called <command>sssd_" -"${service_name}</command>. This directive allows to change the executable " -"name for the service. In the vast majority of configurations, the default " -"values should suffice." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:281 -msgid "Default: <command>sssd_${service_name}</command>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:289 -msgid "NSS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:291 -msgid "" -"These options can be used to configure the Name Service Switch (NSS) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:296 -msgid "enum_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:299 -msgid "" -"How many seconds should nss_sss cache enumerations (requests for info about " -"all users)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:303 -msgid "Default: 120" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:308 -msgid "entry_cache_nowait_percentage (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:311 -msgid "" -"The entry cache can be set to automatically update entries in the background " -"if they are requested beyond a percentage of the entry_cache_timeout value " -"for the domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:317 -msgid "" -"For example, if the domain's entry_cache_timeout is set to 30s and " -"entry_cache_nowait_percentage is set to 50 (percent), entries that come in " -"after 15 seconds past the last cache update will be returned immediately, " -"but the SSSD will go and update the cache on its own, so that future " -"requests will not need to block waiting for a cache update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:327 -msgid "" -"Valid values for this option are 0-99 and represent a percentage of the " -"entry_cache_timeout for each domain. For performance reasons, this " -"percentage will never reduce the nowait timeout to less than 10 seconds. (0 " -"disables this feature)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:335 -msgid "Default: 50" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:340 -msgid "entry_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:343 -msgid "" -"Specifies for how many seconds nss_sss should cache negative cache hits " -"(that is, queries for invalid database entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:349 sssd.conf.5.xml:669 sssd-krb5.5.xml:223 -msgid "Default: 15" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:354 -msgid "filter_users, filter_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:357 -msgid "" -"Exclude certain users from being fetched from the sss NSS database. This is " -"particularly useful for system accounts. This option can also be set per-" -"domain or include fully-qualified names to filter only users from the " -"particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:364 -msgid "Default: root" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:369 -msgid "filter_users_in_groups (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:372 -msgid "" -"If you want filtered user still be group members set this option to false." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:381 -msgid "override_homedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:390 sssd-krb5.5.xml:166 -msgid "%u" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:391 sssd-krb5.5.xml:167 -msgid "login name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:394 sssd-krb5.5.xml:170 -msgid "%U" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:395 -msgid "UID number" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:398 sssd-krb5.5.xml:188 -msgid "%d" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:399 -msgid "domain name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:402 -msgid "%f" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:403 -msgid "fully qualified user name (user@domain)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:406 sssd-krb5.5.xml:200 -msgid "%%" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:407 sssd-krb5.5.xml:201 -msgid "a literal '%'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:384 -msgid "" -"Override the user's home directory. You can either provide an absolute value " -"or a template. In the template, the following sequences are substituted: " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:413 -msgid "This option can also be set per-domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:418 -msgid "allowed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:421 -msgid "" -"Restrict user shell to one of the listed values. The order of evaluation is:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:424 -msgid "1. If the shell is present in <quote>/etc/shells</quote>, it is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:428 -msgid "" -"2. If the shell is in the allowed_shells list but not in <quote>/etc/shells</" -"quote>, use the value of the shell_fallback parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:433 -msgid "" -"3. If the shell is not in the allowed_shells list and not in <quote>/etc/" -"shells</quote>, a nologin shell is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:438 -msgid "An empty string for shell is passed as-is to libc." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:441 -msgid "" -"The <quote>/etc/shells</quote> is only read on SSSD start up, which means " -"that a restart of the SSSD is required in case a new shell is installed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:445 -msgid "Default: Not set. The user shell is automatically used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:450 -msgid "vetoed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:453 -msgid "Replace any instance of these shells with the shell_fallback" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:458 -msgid "shell_fallback (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:461 -msgid "" -"The default shell to use if an allowed shell is not installed on the machine." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:465 -msgid "Default: /bin/sh" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:472 -msgid "PAM configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:474 -msgid "" -"These options can be used to configure the Pluggable Authentication Module " -"(PAM) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:479 -msgid "offline_credentials_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:482 -msgid "" -"If the authentication provider is offline, how long should we allow cached " -"logins (in days since the last successful online login)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:487 sssd.conf.5.xml:500 -msgid "Default: 0 (No limit)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:493 -msgid "offline_failed_login_attempts (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:496 -msgid "" -"If the authentication provider is offline, how many failed login attempts " -"are allowed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:506 -msgid "offline_failed_login_delay (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:509 -msgid "" -"The time in minutes which has to pass after offline_failed_login_attempts " -"has been reached before a new login attempt is possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:514 -msgid "" -"If set to 0 the user cannot authenticate offline if " -"offline_failed_login_attempts has been reached. Only a successful online " -"authentication can enable offline authentication again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:520 sssd.conf.5.xml:573 sssd.conf.5.xml:1093 -msgid "Default: 5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:526 -msgid "pam_verbosity (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:529 -msgid "" -"Controls what kind of messages are shown to the user during authentication. " -"The higher the number to more messages are displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:534 -msgid "Currently sssd supports the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:537 -msgid "<emphasis>0</emphasis>: do not show any message" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:540 -msgid "<emphasis>1</emphasis>: show only important messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:544 -msgid "<emphasis>2</emphasis>: show informational messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:547 -msgid "<emphasis>3</emphasis>: show all messages and debug information" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:551 sssd.8.xml:63 -msgid "Default: 1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:556 -msgid "pam_id_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:559 -msgid "" -"For any PAM request while SSSD is online, the SSSD will attempt to " -"immediately update the cached identity information for the user in order to " -"ensure that authentication takes place with the latest information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:565 -msgid "" -"A complete PAM conversation may perform multiple PAM requests, such as " -"account management and session opening. This option controls (on a per-" -"client-application basis) how long (in seconds) we can cache the identity " -"information to avoid excessive round-trips to the identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:579 -msgid "pam_pwd_expiration_warning (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:582 -msgid "Display a warning N days before the password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:585 -msgid "" -"Please note that the backend server has to provide information about the " -"expiration time of the password. If this information is missing, sssd " -"cannot display a warning." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:591 -msgid "Default: 7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:599 -msgid "SUDO configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:601 -msgid "These options can be used to configure the sudo service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:608 -msgid "sudo_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:611 -msgid "" -"For any sudo request that comes while SSSD is online, the SSSD will attempt " -"to update the cached rules in order to ensure that sudo has the latest " -"ruleset." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:617 -msgid "" -"The user may, however, run a couple of sudo commands successively, which " -"would trigger multiple LDAP requests. In order to speed up this use-case, " -"the sudo service maintains an in-memory cache that would be used for " -"performing fast replies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:624 -msgid "" -"This option controls how long (in seconds) can the sudo service cache rules " -"for a user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:628 -msgid "Default: 180" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:633 -msgid "sudo_timed (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:636 -msgid "" -"Whether or not to evaluate the sudoNotBefore and sudoNotAfter attributes " -"that implement time-dependent sudoers entries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:649 -msgid "AUTOFS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:651 -msgid "These options can be used to configure the autofs service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:659 -msgid "autofs_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:662 -msgid "" -"Specifies for how many seconds should the autofs responder negative cache " -"hits (that is, queries for invalid map entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:679 -msgid "DOMAIN SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:686 -msgid "min_id,max_id (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:689 -msgid "" -"UID and GID limits for the domain. If a domain contains an entry that is " -"outside these limits, it is ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:694 -msgid "" -"For users, this affects the primary GID limit. The user will not be returned " -"to NSS if either the UID or the primary GID is outside the range. For non-" -"primary group memberships, those that are in range will be reported as " -"expected." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:701 -msgid "Default: 1 for min_id, 0 (no limit) for max_id" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:707 -msgid "timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:710 -msgid "" -"Timeout in seconds between heartbeats for this domain. This is used to " -"ensure that the backend process is alive and capable of answering requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:715 sssd-ldap.5.xml:1131 -msgid "Default: 10" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:721 -msgid "enumerate (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:724 -msgid "" -"Determines if a domain can be enumerated. This parameter can have one of the " -"following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:728 -msgid "TRUE = Users and groups are enumerated" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:731 -msgid "FALSE = No enumerations for this domain" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:734 sssd.conf.5.xml:839 sssd.conf.5.xml:893 -msgid "Default: FALSE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:737 -msgid "" -"Note: Enabling enumeration has a moderate performance impact on SSSD while " -"enumeration is running. It may take up to several minutes after SSSD startup " -"to fully complete enumerations. During this time, individual requests for " -"information will go directly to LDAP, though it may be slow, due to the " -"heavy enumeration processing." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:747 -msgid "" -"While the first enumeration is running, requests for the complete user or " -"group lists may return no results until it completes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:752 -msgid "" -"Further, enabling enumeration may increase the time necessary to detect " -"network disconnection, as longer timeouts are required to ensure that " -"enumeration lookups are completed successfully. For more information, refer " -"to the man pages for the specific id_provider in use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:763 -msgid "entry_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:766 -msgid "" -"How many seconds should nss_sss consider entries valid before asking the " -"backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:770 -msgid "Default: 5400" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:776 -msgid "entry_cache_user_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:779 -msgid "" -"How many seconds should nss_sss consider user entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:783 sssd.conf.5.xml:796 sssd.conf.5.xml:809 -#: sssd.conf.5.xml:822 -msgid "Default: entry_cache_timeout" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:789 -msgid "entry_cache_group_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:792 -msgid "" -"How many seconds should nss_sss consider group entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:802 -msgid "entry_cache_netgroup_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:805 -msgid "" -"How many seconds should nss_sss consider netgroup entries valid before " -"asking the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:815 -msgid "entry_cache_service_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:818 -msgid "" -"How many seconds should nss_sss consider service entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:828 -msgid "cache_credentials (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:831 -msgid "Determines if user credentials are also cached in the local LDB cache" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:835 -msgid "User credentials are stored in a SHA512 hash, not in plaintext" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:844 -msgid "account_cache_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:847 -msgid "" -"Number of days entries are left in cache after last successful login before " -"being removed during a cleanup of the cache. 0 means keep forever. The " -"value of this parameter must be greater than or equal to " -"offline_credentials_expiration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:854 -msgid "Default: 0 (unlimited)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:860 -msgid "id_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:863 -msgid "The Data Provider identity backend to use for this domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:867 -msgid "Supported backends:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:870 -msgid "proxy: Support a legacy NSS provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:873 -msgid "local: SSSD internal local provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:876 -msgid "ldap: LDAP provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:882 -msgid "use_fully_qualified_names (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:885 -msgid "" -"If set to TRUE, all requests to this domain must use fully qualified names. " -"For example, if used in LOCAL domain that contains a \"test\" user, " -"<command>getent passwd test</command> wouldn't find the user while " -"<command>getent passwd test@LOCAL</command> would." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:898 -msgid "auth_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:901 -msgid "" -"The authentication provider used for the domain. Supported auth providers " -"are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:905 -msgid "" -"<quote>ldap</quote> for native LDAP authentication. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:912 -msgid "" -"<quote>krb5</quote> for Kerberos authentication. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:919 -msgid "" -"<quote>proxy</quote> for relaying authentication to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:922 -msgid "<quote>none</quote> disables authentication explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:925 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"authentication requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:931 -msgid "access_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:934 -msgid "" -"The access control provider used for the domain. There are two built-in " -"access providers (in addition to any included in installed backends) " -"Internal special providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:940 -msgid "<quote>permit</quote> always allow access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:943 -msgid "<quote>deny</quote> always deny access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:946 -msgid "" -"<quote>simple</quote> access control based on access or deny lists. See " -"<citerefentry> <refentrytitle>sssd-simple</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry> for more information on configuring the simple " -"access module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:953 -msgid "Default: <quote>permit</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:958 -msgid "chpass_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:961 -msgid "" -"The provider which should handle change password operations for the domain. " -"Supported change password providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:966 -msgid "" -"<quote>ipa</quote> to change a password stored in an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:974 -msgid "" -"<quote>ldap</quote> to change a password stored in a LDAP server. See " -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:982 -msgid "" -"<quote>krb5</quote> to change the Kerberos password. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:990 -msgid "" -"<quote>proxy</quote> for relaying password changes to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:994 -msgid "<quote>none</quote> disallows password changes explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:997 -msgid "" -"Default: <quote>auth_provider</quote> is used if it is set and can handle " -"change password requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1004 -msgid "sudo_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1010 -msgid "The SUDO provider used for the domain. Supported SUDO providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1014 -msgid "" -"<quote>ldap</quote> for rules stored in LDAP. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1021 -msgid "<quote>none</quote> disables SUDO explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1024 -msgid "Default: The value of <quote>id_provider</quote> is used if it is set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1030 -msgid "session_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1033 -msgid "" -"The provider which should handle loading of session settings. Supported " -"session providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1038 -msgid "" -"<quote>ipa</quote> to load session settings from an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1046 -msgid "<quote>none</quote> disallows fetching session settings explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1049 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"session loading requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1056 -msgid "lookup_family_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1059 -msgid "" -"Provides the ability to select preferred address family to use when " -"performing DNS lookups." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1063 -msgid "Supported values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1066 -msgid "ipv4_first: Try looking up IPv4 address, if that fails, try IPv6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1069 -msgid "ipv4_only: Only attempt to resolve hostnames to IPv4 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1072 -msgid "ipv6_first: Try looking up IPv6 address, if that fails, try IPv4" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1075 -msgid "ipv6_only: Only attempt to resolve hostnames to IPv6 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1078 -msgid "Default: ipv4_first" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1084 -msgid "dns_resolver_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1087 -msgid "" -"Defines the amount of time (in seconds) to wait for a reply from the DNS " -"resolver before assuming that it is unreachable. If this timeout is reached, " -"the domain will continue to operate in offline mode." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1099 -msgid "dns_discovery_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1102 -msgid "" -"If service discovery is used in the back end, specifies the domain part of " -"the service discovery DNS query." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1106 -msgid "Default: Use the domain part of machine's hostname" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1112 -msgid "override_gid (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1115 -msgid "Override the primary GID value with the one specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1121 -msgid "case_sensitive (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1124 -msgid "" -"Treat user and group names as case sensitive. At the moment, this option is " -"not supported in the local provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1129 -msgid "Default: True" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:681 -msgid "" -"These configuration options can be present in a domain configuration " -"section, that is, in a section called <quote>[domain/<replaceable>NAME</" -"replaceable>]</quote> <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1141 -msgid "proxy_pam_target (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1144 -msgid "The proxy target PAM proxies to." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1147 -msgid "" -"Default: not set by default, you have to take an existing pam configuration " -"or create a new one and add the service name here." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1155 -msgid "proxy_lib_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1158 -msgid "" -"The name of the NSS library to use in proxy domains. The NSS functions " -"searched for in the library are in the form of _nss_$(libName)_$(function), " -"for example _nss_files_getpwent." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1137 -msgid "" -"Options valid for proxy domains. <placeholder type=\"variablelist\" id=" -"\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:1170 -msgid "The local domain section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:1172 -msgid "" -"This section contains settings for domain that stores users and groups in " -"SSSD native database, that is, a domain that uses " -"<replaceable>id_provider=local</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1179 -msgid "default_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1182 -msgid "The default shell for users created with SSSD userspace tools." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1186 -msgid "Default: <filename>/bin/bash</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1191 -msgid "base_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1194 -msgid "" -"The tools append the login name to <replaceable>base_directory</replaceable> " -"and use that as the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1199 -msgid "Default: <filename>/home</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1204 -msgid "create_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1207 -msgid "" -"Indicate if a home directory should be created by default for new users. " -"Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1211 sssd.conf.5.xml:1223 -msgid "Default: TRUE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1216 -msgid "remove_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1219 -msgid "" -"Indicate if a home directory should be removed by default for deleted " -"users. Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1228 -msgid "homedir_umask (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1231 -msgid "" -"Used by <citerefentry> <refentrytitle>sss_useradd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry> to specify the default permissions " -"on a newly created home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1239 -msgid "Default: 077" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1244 -msgid "skel_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1247 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<citerefentry> <refentrytitle>sss_useradd</refentrytitle> <manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1257 -msgid "Default: <filename>/etc/skel</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1262 -msgid "mail_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1265 -msgid "" -"The mail spool directory. This is needed to manipulate the mailbox when its " -"corresponding user account is modified or deleted. If not specified, a " -"default value is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1272 -msgid "Default: <filename>/var/mail</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1277 -msgid "userdel_cmd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1280 -msgid "" -"The command that is run after a user is removed. The command us passed the " -"username of the user being removed as the first and only parameter. The " -"return code of the command is not taken into account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1286 -msgid "Default: None, no command is run" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:1296 sssd-ldap.5.xml:2064 sssd-simple.5.xml:126 -#: sssd-ipa.5.xml:544 sssd-krb5.5.xml:432 -msgid "EXAMPLE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:1302 -#, no-wrap -msgid "" -"[sssd]\n" -"domains = LDAP\n" -"services = nss, pam\n" -"config_file_version = 2\n" -"\n" -"[nss]\n" -"filter_groups = root\n" -"filter_users = root\n" -"\n" -"[pam]\n" -"\n" -"[domain/LDAP]\n" -"id_provider = ldap\n" -"ldap_uri = ldap://ldap.example.com\n" -"ldap_search_base = dc=example,dc=com\n" -"\n" -"auth_provider = krb5\n" -"krb5_server = kerberos.example.com\n" -"krb5_realm = EXAMPLE.COM\n" -"cache_credentials = true\n" -"\n" -"min_id = 10000\n" -"max_id = 20000\n" -"enumerate = False\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1298 -msgid "" -"The following example shows a typical SSSD config. It does not describe " -"configuration of the domains themselves - refer to documentation on " -"configuring domains for more details. <placeholder type=\"programlisting\" " -"id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1333 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>pam_sss</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ldap.5.xml:10 sssd-ldap.5.xml:16 -msgid "sssd-ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:23 -msgid "" -"This manual page describes the configuration of LDAP domains for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. Refer to the <quote>FILE FORMAT</quote> section of the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for detailed syntax information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:35 -msgid "You can configure SSSD to use more than one LDAP domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:38 -msgid "" -"LDAP back end supports id, auth, access and chpass providers. If you want to " -"authenticate against an LDAP server either TLS/SSL or LDAPS is required. " -"<command>sssd</command> <emphasis>does not</emphasis> support authentication " -"over an unencrypted channel. If the LDAP server is used only as an identity " -"provider, an encrypted channel is not needed. Please refer to " -"<quote>ldap_access_filter</quote> config option for more information about " -"using LDAP as an access provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:49 sssd-simple.5.xml:69 sssd-ipa.5.xml:64 -#: sssd-krb5.5.xml:63 -msgid "CONFIGURATION OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:60 -msgid "ldap_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:63 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference. Refer to the <quote>FAILOVER</" -"quote> section for more information on failover and server redundancy. If " -"not specified, service discovery is enabled. For more information, refer to " -"the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:70 -msgid "The format of the URI must match the format defined in RFC 2732:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:73 -msgid "ldap[s]://<host>[:port]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:76 -msgid "" -"For explicit IPv6 addresses, <host> must be enclosed in brackets []" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:79 -msgid "example: ldap://[fc00::126:25]:389" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:85 -msgid "ldap_chpass_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:88 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference to change the password of a user. " -"Refer to the <quote>FAILOVER</quote> section for more information on " -"failover and server redundancy." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:95 -msgid "To enable service discovery ldap_chpass_dns_service_name must be set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:99 -msgid "Default: empty, i.e. ldap_uri is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:105 -msgid "ldap_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:108 -msgid "The default base DN to use for performing LDAP user operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:112 -msgid "" -"Starting with SSSD 1.7.0, SSSD supports multiple search bases using the " -"syntax:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:116 -msgid "search_base[?scope?[filter][?search_base?scope?[filter]]*]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:119 -msgid "The scope can be one of \"base\", \"onelevel\" or \"subtree\"." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:122 -msgid "" -"The filter must be a valid LDAP search filter as specified by http://www." -"ietf.org/rfc/rfc2254.txt" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:126 -msgid "Examples:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:129 -msgid "" -"ldap_search_base = dc=example,dc=com (which is equivalent to) " -"ldap_search_base = dc=example,dc=com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:134 -msgid "" -"ldap_search_base = cn=host_specific,dc=example,dc=com?subtree?" -"(host=thishost)?dc=example.com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:137 -msgid "" -"Note: It is unsupported to have multiple search bases which reference " -"identically-named objects (for example, groups with the same name in two " -"different search bases). This will lead to unpredictable behavior on client " -"machines." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:144 -msgid "" -"Default: If not set, the value of the defaultNamingContext or namingContexts " -"attribute from the RootDSE of the LDAP server is used. If " -"defaultNamingContext does not exists or has an empty value namingContexts is " -"used. The namingContexts attribute must have a single value with the DN of " -"the search base of the LDAP server to make this work. Multiple values are " -"are not supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:158 -msgid "ldap_schema (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:161 -msgid "" -"Specifies the Schema Type in use on the target LDAP server. Depending on " -"the selected schema, the default attribute names retrieved from the servers " -"may vary. The way that some attributes are handled may also differ. Three " -"schema types are currently supported: rfc2307 rfc2307bis IPA The main " -"difference between these schema types is how group memberships are recorded " -"in the server. With rfc2307, group members are listed by name in the " -"<emphasis>memberUid</emphasis> attribute. With rfc2307bis and IPA, group " -"members are listed by DN and stored in the <emphasis>member</emphasis> " -"attribute." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:180 -msgid "Default: rfc2307" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:186 -msgid "ldap_default_bind_dn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:189 -msgid "The default bind DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:196 -msgid "ldap_default_authtok_type (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:199 -msgid "The type of the authentication token of the default bind DN." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:203 -msgid "The two mechanisms currently supported are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:206 -msgid "password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:209 -msgid "obfuscated_password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:212 -msgid "Default: password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:218 -msgid "ldap_default_authtok (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:221 -msgid "" -"The authentication token of the default bind DN. Only clear text passwords " -"are currently supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:228 -msgid "ldap_user_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:231 -msgid "The object class of a user entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:234 -msgid "Default: posixAccount" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:240 -msgid "ldap_user_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:243 -msgid "The LDAP attribute that corresponds to the user's login name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:247 -msgid "Default: uid" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:253 -msgid "ldap_user_uid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:256 -msgid "The LDAP attribute that corresponds to the user's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:260 -msgid "Default: uidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:266 -msgid "ldap_user_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:269 -msgid "The LDAP attribute that corresponds to the user's primary group id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:273 sssd-ldap.5.xml:740 -msgid "Default: gidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:279 -msgid "ldap_user_gecos (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:282 -msgid "The LDAP attribute that corresponds to the user's gecos field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:286 -msgid "Default: gecos" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:292 -msgid "ldap_user_home_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:295 -msgid "The LDAP attribute that contains the name of the user's home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:299 -msgid "Default: homeDirectory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:305 -msgid "ldap_user_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:308 -msgid "The LDAP attribute that contains the path to the user's default shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:312 -msgid "Default: loginShell" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:318 -msgid "ldap_user_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:321 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP user object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:325 sssd-ldap.5.xml:766 sssd-ldap.5.xml:878 -msgid "Default: nsUniqueId" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:331 -msgid "ldap_user_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:334 sssd-ldap.5.xml:775 sssd-ldap.5.xml:887 -msgid "" -"The LDAP attribute that contains timestamp of the last modification of the " -"parent object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:338 sssd-ldap.5.xml:779 sssd-ldap.5.xml:894 -msgid "Default: modifyTimestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:344 -msgid "ldap_user_shadow_last_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:347 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (date of " -"the last password change)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:357 -msgid "Default: shadowLastChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:363 -msgid "ldap_user_shadow_min (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:366 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (minimum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:375 -msgid "Default: shadowMin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:381 -msgid "ldap_user_shadow_max (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:384 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (maximum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:393 -msgid "Default: shadowMax" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:399 -msgid "ldap_user_shadow_warning (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:402 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password warning period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:412 -msgid "Default: shadowWarning" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:418 -msgid "ldap_user_shadow_inactive (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:421 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password inactivity period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:431 -msgid "Default: shadowInactive" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:437 -msgid "ldap_user_shadow_expire (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:440 -msgid "" -"When using ldap_pwd_policy=shadow or ldap_account_expire_policy=shadow, this " -"parameter contains the name of an LDAP attribute corresponding to its " -"<citerefentry> <refentrytitle>shadow</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> counterpart (account expiration date)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:450 -msgid "Default: shadowExpire" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:456 -msgid "ldap_user_krb_last_pwd_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:459 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time of last password change in " -"kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:465 -msgid "Default: krbLastPwdChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:471 -msgid "ldap_user_krb_password_expiration (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:474 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time when current password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:480 -msgid "Default: krbPasswordExpiration" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:486 -msgid "ldap_user_ad_account_expires (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:489 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the expiration time of the account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:494 -msgid "Default: accountExpires" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:500 -msgid "ldap_user_ad_user_account_control (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:503 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the user account control bit field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:508 -msgid "Default: userAccountControl" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:514 -msgid "ldap_ns_account_lock (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:517 -msgid "" -"When using ldap_account_expire_policy=rhds or equivalent, this parameter " -"determines if access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:522 -msgid "Default: nsAccountLock" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:528 -msgid "ldap_user_nds_login_disabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:531 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines if " -"access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:535 sssd-ldap.5.xml:549 -msgid "Default: loginDisabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:541 -msgid "ldap_user_nds_login_expiration_time (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:544 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines until " -"which date access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:555 -msgid "ldap_user_nds_login_allowed_time_map (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:558 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines the " -"hours of a day in a week when access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:563 -msgid "Default: loginAllowedTimeMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:569 -msgid "ldap_user_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:572 -msgid "" -"The LDAP attribute that contains the user's Kerberos User Principal Name " -"(UPN)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:576 -msgid "Default: krbPrincipalName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:582 -msgid "ldap_user_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:585 -msgid "The LDAP attribute that contains the user's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:592 -msgid "ldap_force_upper_case_realm (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:595 -msgid "" -"Some directory servers, for example Active Directory, might deliver the " -"realm part of the UPN in lower case, which might cause the authentication to " -"fail. Set this option to a non-zero value if you want to use an upper-case " -"realm." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:608 -msgid "ldap_enumeration_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:611 -msgid "" -"Specifies how many seconds SSSD has to wait before refreshing its cache of " -"enumerated records." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:616 sssd-ldap.5.xml:1808 -msgid "Default: 300" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:622 -msgid "ldap_purge_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:625 -msgid "" -"Determine how often to check the cache for inactive entries (such as groups " -"with no members and users who have never logged in) and remove them to save " -"space." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:631 -msgid "Setting this option to zero will disable the cache cleanup operation." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:635 -msgid "Default: 10800 (12 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:641 -msgid "ldap_user_fullname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:644 -msgid "The LDAP attribute that corresponds to the user's full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:648 sssd-ldap.5.xml:727 sssd-ldap.5.xml:828 -#: sssd-ldap.5.xml:919 sssd-ldap.5.xml:1663 sssd-ldap.5.xml:1881 -#: sssd-ipa.5.xml:422 -msgid "Default: cn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:654 -msgid "ldap_user_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:657 -msgid "The LDAP attribute that lists the user's group memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:661 sssd-ipa.5.xml:326 -msgid "Default: memberOf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:667 -msgid "ldap_user_authorized_service (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:670 -msgid "" -"If access_provider=ldap and ldap_access_order=authorized_service, SSSD will " -"use the presence of the authorizedService attribute in the user's LDAP entry " -"to determine access privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:677 -msgid "" -"An explicit deny (!svc) is resolved first. Second, SSSD searches for " -"explicit allow (svc) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:682 -msgid "Default: authorizedService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:688 -msgid "ldap_user_authorized_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:691 -msgid "" -"If access_provider=ldap and ldap_access_order=host, SSSD will use the " -"presence of the host attribute in the user's LDAP entry to determine access " -"privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:697 -msgid "" -"An explicit deny (!host) is resolved first. Second, SSSD searches for " -"explicit allow (host) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:702 -msgid "Default: host" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:708 -msgid "ldap_group_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:711 -msgid "The object class of a group entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:714 -msgid "Default: posixGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:720 -msgid "ldap_group_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:723 -msgid "The LDAP attribute that corresponds to the group name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:733 -msgid "ldap_group_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:736 -msgid "The LDAP attribute that corresponds to the group's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:746 -msgid "ldap_group_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:749 -msgid "The LDAP attribute that contains the names of the group's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:753 -msgid "Default: memberuid (rfc2307) / member (rfc2307bis)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:759 -msgid "ldap_group_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:762 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP group object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:772 -msgid "ldap_group_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:785 -msgid "ldap_group_nesting_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:788 -msgid "" -"If ldap_schema is set to a schema format that supports nested groups (e.g. " -"RFC2307bis), then this option controls how many levels of nesting SSSD will " -"follow. This option has no effect on the RFC2307 schema." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:795 -msgid "Default: 2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:801 -msgid "ldap_netgroup_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:804 -msgid "The object class of a netgroup entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:807 -msgid "In IPA provider, ipa_netgroup_object_class should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:811 -msgid "Default: nisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:817 -msgid "ldap_netgroup_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:820 -msgid "The LDAP attribute that corresponds to the netgroup name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:824 -msgid "In IPA provider, ipa_netgroup_name should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:834 -msgid "ldap_netgroup_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:837 -msgid "The LDAP attribute that contains the names of the netgroup's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:841 -msgid "In IPA provider, ipa_netgroup_member should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:845 -msgid "Default: memberNisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:851 -msgid "ldap_netgroup_triple (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:854 -msgid "" -"The LDAP attribute that contains the (host, user, domain) netgroup triples." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:858 sssd-ldap.5.xml:891 -msgid "This option is not available in IPA provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:861 -msgid "Default: nisNetgroupTriple" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:867 -msgid "ldap_netgroup_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:870 -msgid "" -"The LDAP attribute that contains the UUID/GUID of an LDAP netgroup object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:874 -msgid "In IPA provider, ipa_netgroup_uuid should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:884 -msgid "ldap_netgroup_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:900 -msgid "ldap_service_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:903 -msgid "The object class of a service entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:906 -msgid "Default: ipService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:912 -msgid "ldap_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:915 -msgid "" -"The LDAP attribute that contains the name of service attributes and their " -"aliases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:925 -msgid "ldap_service_port (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:928 -msgid "The LDAP attribute that contains the port managed by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:932 -msgid "Default: ipServicePort" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:938 -msgid "ldap_service_proto (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:941 -msgid "" -"The LDAP attribute that contains the protocols understood by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:945 -msgid "Default: ipServiceProtocol" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:951 -msgid "ldap_service_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:954 -msgid "An optional base DN to restrict service searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:958 sssd-ldap.5.xml:1918 sssd-ldap.5.xml:1937 -#: sssd-ldap.5.xml:1956 sssd-ldap.5.xml:2019 sssd-ldap.5.xml:2041 -#: sssd-ipa.5.xml:163 sssd-ipa.5.xml:187 -msgid "" -"See <quote>ldap_search_base</quote> for information about configuring " -"multiple search bases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:963 sssd-ldap.5.xml:1923 sssd-ldap.5.xml:1942 -#: sssd-ldap.5.xml:1961 sssd-ldap.5.xml:2024 sssd-ldap.5.xml:2046 -#: sssd-ipa.5.xml:173 sssd-ipa.5.xml:192 -msgid "Default: the value of <emphasis>ldap_search_base</emphasis>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:970 -msgid "ldap_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:973 -msgid "" -"Specifies the timeout (in seconds) that ldap searches are allowed to run " -"before they are cancelled and cached results are returned (and offline mode " -"is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:979 -msgid "" -"Note: this option is subject to change in future versions of the SSSD. It " -"will likely be replaced at some point by a series of timeouts for specific " -"lookup types." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:985 sssd-ldap.5.xml:1027 sssd-ldap.5.xml:1042 -msgid "Default: 6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:991 -msgid "ldap_enumeration_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:994 -msgid "" -"Specifies the timeout (in seconds) that ldap searches for user and group " -"enumerations are allowed to run before they are cancelled and cached results " -"are returned (and offline mode is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1001 -msgid "Default: 60" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1007 -msgid "ldap_network_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1010 -msgid "" -"Specifies the timeout (in seconds) after which the <citerefentry> " -"<refentrytitle>poll</refentrytitle> <manvolnum>2</manvolnum> </citerefentry>/" -"<citerefentry> <refentrytitle>select</refentrytitle> <manvolnum>2</" -"manvolnum> </citerefentry> following a <citerefentry> " -"<refentrytitle>connect</refentrytitle> <manvolnum>2</manvolnum> </" -"citerefentry> returns in case of no activity." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1033 -msgid "ldap_opt_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1036 -msgid "" -"Specifies a timeout (in seconds) after which calls to synchronous LDAP APIs " -"will abort if no response is received. Also controls the timeout when " -"communicating with the KDC in case of SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1048 -msgid "ldap_connection_expire_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1051 -msgid "" -"Specifies a timeout (in seconds) that a connection to an LDAP server will be " -"maintained. After this time, the connection will be re-established. If used " -"in parallel with SASL/GSSAPI, the sooner of the two values (this value vs. " -"the TGT lifetime) will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1059 -msgid "Default: 900 (15 minutes)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1065 -msgid "ldap_page_size (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1068 -msgid "" -"Specify the number of records to retrieve from LDAP in a single request. " -"Some LDAP servers enforce a maximum limit per-request." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1073 -msgid "Default: 1000" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1079 -msgid "ldap_disable_paging" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1082 -msgid "" -"Disable the LDAP paging control. This option should be used if the LDAP " -"server reports that it supports the LDAP paging control in its RootDSE but " -"it is not enabled or does not behave properly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1088 -msgid "" -"Example: OpenLDAP servers with the paging control module installed on the " -"server but not enabled will report it in the RootDSE but be unable to use it." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1094 -msgid "" -"Example: 389 DS has a bug where it can only support a one paging control at " -"a time on a single connection. On busy clients, this can result in some " -"requests being denied." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1103 -msgid "ldap_deref_threshold (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1106 -msgid "" -"Specify the number of group members that must be missing from the internal " -"cache in order to trigger a dereference lookup. If less members are missing, " -"they are looked up individually." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1112 -msgid "" -"You can turn off dereference lookups completely by setting the value to 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1116 -msgid "" -"A dereference lookup is a means of fetching all group members in a single " -"LDAP call. Different LDAP servers may implement different dereference " -"methods. The currently supported servers are 389/RHDS, OpenLDAP and Active " -"Directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1124 -msgid "" -"<emphasis>Note:</emphasis> If any of the search bases specifies a search " -"filter, then the dereference lookup performance enhancement will be disabled " -"regardless of this setting." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1137 -msgid "ldap_tls_reqcert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1140 -msgid "" -"Specifies what checks to perform on server certificates in a TLS session, if " -"any. It can be specified as one of the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1146 -msgid "" -"<emphasis>never</emphasis> = The client will not request or check any server " -"certificate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1150 -msgid "" -"<emphasis>allow</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, it will be ignored and the session proceeds normally." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1157 -msgid "" -"<emphasis>try</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, the session is immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1163 -msgid "" -"<emphasis>demand</emphasis> = The server certificate is requested. If no " -"certificate is provided, or a bad certificate is provided, the session is " -"immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1169 -msgid "<emphasis>hard</emphasis> = Same as <quote>demand</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1173 -msgid "Default: hard" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1179 -msgid "ldap_tls_cacert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1182 -msgid "" -"Specifies the file that contains certificates for all of the Certificate " -"Authorities that <command>sssd</command> will recognize." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1187 sssd-ldap.5.xml:1205 sssd-ldap.5.xml:1246 -msgid "" -"Default: use OpenLDAP defaults, typically in <filename>/etc/openldap/ldap." -"conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1194 -msgid "ldap_tls_cacertdir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1197 -msgid "" -"Specifies the path of a directory that contains Certificate Authority " -"certificates in separate individual files. Typically the file names need to " -"be the hash of the certificate followed by '.0'. If available, " -"<command>cacertdir_rehash</command> can be used to create the correct names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1212 -msgid "ldap_tls_cert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1215 -msgid "Specifies the file that contains the certificate for the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1219 sssd-ldap.5.xml:1231 sssd-ldap.5.xml:1979 -#: sssd-ldap.5.xml:2006 sssd-krb5.5.xml:359 -msgid "Default: not set" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1225 -msgid "ldap_tls_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1228 -msgid "Specifies the file that contains the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1237 -msgid "ldap_tls_cipher_suite (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1240 -msgid "" -"Specifies acceptable cipher suites. Typically this is a colon sperated " -"list. See <citerefentry><refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> for format." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1253 -msgid "ldap_id_use_start_tls (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1256 -msgid "" -"Specifies that the id_provider connection must also use <systemitem class=" -"\"protocol\">tls</systemitem> to protect the channel." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1266 -msgid "ldap_sasl_mech (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1269 -msgid "" -"Specify the SASL mechanism to use. Currently only GSSAPI is tested and " -"supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1273 sssd-ldap.5.xml:1428 -msgid "Default: none" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1279 -msgid "ldap_sasl_authid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1282 -msgid "" -"Specify the SASL authorization id to use. When GSSAPI is used, this " -"represents the Kerberos principal used for authentication to the directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1287 -msgid "Default: host/machine.fqdn@REALM" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1293 -msgid "ldap_sasl_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1296 -msgid "" -"If set to true, the LDAP library would perform a reverse lookup to " -"canonicalize the host name during a SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1301 -msgid "Default: false;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1307 -msgid "ldap_krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1310 -msgid "Specify the keytab to use when using SASL/GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1313 -msgid "Default: System keytab, normally <filename>/etc/krb5.keytab</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1319 -msgid "ldap_krb5_init_creds (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1322 -msgid "" -"Specifies that the id_provider should init Kerberos credentials (TGT). This " -"action is performed only if SASL is used and the mechanism selected is " -"GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1334 -msgid "ldap_krb5_ticket_lifetime (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1337 -msgid "Specifies the lifetime in seconds of the TGT if GSSAPI is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1341 -msgid "Default: 86400 (24 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1347 sssd-krb5.5.xml:74 -msgid "krb5_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1350 sssd-krb5.5.xml:77 -msgid "" -"Specifies the comma-separated list of IP addresses or hostnames of the " -"Kerberos servers to which SSSD should connect in the order of preference. " -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. An optional port number (preceded by a " -"colon) may be appended to the addresses or hostnames. If empty, service " -"discovery is enabled - for more information, refer to the <quote>SERVICE " -"DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1362 sssd-krb5.5.xml:89 -msgid "" -"When using service discovery for KDC or kpasswd servers, SSSD first searches " -"for DNS entries that specify _udp as the protocol and falls back to _tcp if " -"none are found." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1367 sssd-krb5.5.xml:94 -msgid "" -"This option was named <quote>krb5_kdcip</quote> in earlier releases of SSSD. " -"While the legacy name is recognized for the time being, users are advised to " -"migrate their config files to use <quote>krb5_server</quote> instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1376 sssd-ipa.5.xml:216 sssd-krb5.5.xml:103 -msgid "krb5_realm (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1379 -msgid "Specify the Kerberos REALM (for SASL/GSSAPI auth)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1382 -msgid "Default: System defaults, see <filename>/etc/krb5.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1388 sssd-ipa.5.xml:231 sssd-krb5.5.xml:409 -msgid "krb5_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1391 -msgid "" -"Specifies if the host principal should be canonicalized when connecting to " -"LDAP server. This feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1403 -msgid "ldap_pwd_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1406 -msgid "" -"Select the policy to evaluate the password expiration on the client side. " -"The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1411 -msgid "" -"<emphasis>none</emphasis> - No evaluation on the client side. This option " -"cannot disable server-side password policies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1416 -msgid "" -"<emphasis>shadow</emphasis> - Use <citerefentry><refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum></citerefentry> style attributes to " -"evaluate if the password has expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1422 -msgid "" -"<emphasis>mit_kerberos</emphasis> - Use the attributes used by MIT Kerberos " -"to determine if the password has expired. Use chpass_provider=krb5 to update " -"these attributes when the password is changed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1434 -msgid "ldap_referrals (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1437 -msgid "Specifies whether automatic referral chasing should be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1441 -msgid "" -"Please note that sssd only supports referral chasing when it is compiled " -"with OpenLDAP version 2.4.13 or higher." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1452 -msgid "ldap_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1455 -msgid "Specifies the service name to use when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1459 -msgid "Default: ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1465 -msgid "ldap_chpass_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1468 -msgid "" -"Specifies the service name to use to find an LDAP server which allows " -"password changes when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1473 -msgid "Default: not set, i.e. service discovery is disabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1479 -msgid "ldap_access_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1482 -msgid "" -"If using access_provider = ldap, this option is mandatory. It specifies an " -"LDAP search filter criteria that must be met for the user to be granted " -"access on this host. If access_provider = ldap and this option is not set, " -"it will result in all users being denied access. Use access_provider = allow " -"to change this default behavior." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1492 sssd-ldap.5.xml:1982 -msgid "Example:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1495 -#, no-wrap -msgid "" -"access_provider = ldap\n" -"ldap_access_filter = memberOf=cn=allowedusers,ou=Groups,dc=example,dc=com\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1499 -msgid "" -"This example means that access to this host is restricted to members of the " -"\"allowedusers\" group in ldap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1504 -msgid "" -"Offline caching for this feature is limited to determining whether the " -"user's last online login was granted access permission. If they were granted " -"access during their last login, they will continue to be granted access " -"while offline and vice-versa." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1512 sssd-ldap.5.xml:1562 -msgid "Default: Empty" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1518 -msgid "ldap_account_expire_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1521 -msgid "" -"With this option a client side evaluation of access control attributes can " -"be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1525 -msgid "" -"Please note that it is always recommended to use server side access control, " -"i.e. the LDAP server should deny the bind request with a suitable error code " -"even if the password is correct." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1532 -msgid "The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1535 -msgid "" -"<emphasis>shadow</emphasis>: use the value of ldap_user_shadow_expire to " -"determine if the account is expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1540 -msgid "" -"<emphasis>ad</emphasis>: use the value of the 32bit field " -"ldap_user_ad_user_account_control and allow access if the second bit is not " -"set. If the attribute is missing access is granted. Also the expiration time " -"of the account is checked." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1547 -msgid "" -"<emphasis>rhds</emphasis>, <emphasis>ipa</emphasis>, <emphasis>389ds</" -"emphasis>: use the value of ldap_ns_account_lock to check if access is " -"allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1553 -msgid "" -"<emphasis>nds</emphasis>: the values of " -"ldap_user_nds_login_allowed_time_map, ldap_user_nds_login_disabled and " -"ldap_user_nds_login_expiration_time are used to check if access is allowed. " -"If both attributes are missing access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1568 -msgid "ldap_access_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1571 -msgid "Comma separated list of access control options. Allowed values are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1575 -msgid "<emphasis>filter</emphasis>: use ldap_access_filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1578 -msgid "<emphasis>expire</emphasis>: use ldap_account_expire_policy" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1582 -msgid "" -"<emphasis>authorized_service</emphasis>: use the authorizedService attribute " -"to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1587 -msgid "<emphasis>host</emphasis>: use the host attribute to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1591 -msgid "Default: filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1594 -msgid "" -"Please note that it is a configuration error if a value is used more than " -"once." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1601 -msgid "ldap_deref (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1604 -msgid "" -"Specifies how alias dereferencing is done when performing a search. The " -"following options are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1609 -msgid "<emphasis>never</emphasis>: Aliases are never dereferenced." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1613 -msgid "" -"<emphasis>searching</emphasis>: Aliases are dereferenced in subordinates of " -"the base object, but not in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1618 -msgid "" -"<emphasis>finding</emphasis>: Aliases are only dereferenced when locating " -"the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1623 -msgid "" -"<emphasis>always</emphasis>: Aliases are dereferenced both in searching and " -"in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1628 -msgid "" -"Default: Empty (this is handled as <emphasis>never</emphasis> by the LDAP " -"client libraries)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:51 -msgid "" -"All of the common configuration options that apply to SSSD domains also " -"apply to LDAP domains. Refer to the <quote>DOMAIN SECTIONS</quote> section " -"of the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for full details. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1639 -msgid "SUDO OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1644 -msgid "ldap_sudorule_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1647 -msgid "The object class of a sudo rule entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1650 -msgid "Default: sudoRole" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1656 -msgid "ldap_sudorule_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1659 -msgid "The LDAP attribute that corresponds to the sudo rule name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1669 -msgid "ldap_sudorule_command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1672 -msgid "The LDAP attribute that corresponds to the command name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1676 -msgid "Default: sudoCommand" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1682 -msgid "ldap_sudorule_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1685 -msgid "" -"The LDAP attribute that corresponds to the host name (or host IP address, " -"host IP network, or host netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1690 -msgid "Default: sudoHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1696 -msgid "ldap_sudorule_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1699 -msgid "" -"The LDAP attribute that corresponds to the user name (or UID, group name or " -"user's netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1703 -msgid "Default: sudoUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1709 -msgid "ldap_sudorule_option (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1712 -msgid "The LDAP attribute that corresponds to the sudo options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1716 -msgid "Default: sudoOption" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1722 -msgid "ldap_sudorule_runasuser (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1725 -msgid "" -"The LDAP attribute that corresponds to the user name that commands may be " -"run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1729 -msgid "Default: sudoRunAsUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1735 -msgid "ldap_sudorule_runasgroup (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1738 -msgid "" -"The LDAP attribute that corresponds to the group name or group GID that " -"commands may be run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1742 -msgid "Default: sudoRunAsGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1748 -msgid "ldap_sudorule_notbefore (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1751 -msgid "" -"The LDAP attribute that corresponds to the start date/time for when the sudo " -"rule is valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1755 -msgid "Default: sudoNotBefore" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1761 -msgid "ldap_sudorule_notafter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1764 -msgid "" -"The LDAP attribute that corresponds to the expiration date/time, after which " -"the sudo rule will no longer be valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1769 -msgid "Default: sudoNotAfter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1775 -msgid "ldap_sudorule_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1778 -msgid "The LDAP attribute that corresponds to the ordering index of the rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1782 -msgid "Default: sudoOrder" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1788 -msgid "ldap_sudo_refresh_enabled (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1791 -msgid "" -"Enables periodical download of all sudo rules. The cache is purged before " -"each update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1801 -msgid "ldap_sudo_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1804 -msgid "" -"How many seconds SSSD has to wait before refreshing its cache of sudo rules." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1642 -msgid "<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1815 -msgid "" -"This manual page only describes attribute name mapping. For detailed " -"explanation of sudo related attribute semantics, see <citerefentry> " -"<refentrytitle>sudoers.ldap</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1825 -msgid "AUTOFS OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1827 -msgid "" -"Please note that the default values correspond to the default schema which " -"is RFC2307." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1834 -msgid "ldap_autofs_map_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1837 sssd-ldap.5.xml:1863 -msgid "The object class of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1840 sssd-ldap.5.xml:1867 -msgid "Default: automountMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1847 -msgid "ldap_autofs_map_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1850 -msgid "The name of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1853 -msgid "Default: ou" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1860 -msgid "ldap_autofs_entry_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1874 -msgid "ldap_autofs_entry_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1877 sssd-ldap.5.xml:1891 -msgid "" -"The key of an automount entry in LDAP. The entry usually corresponds to a " -"mount point." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1888 -msgid "ldap_autofs_entry_value (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1895 -msgid "Default: automountInformation" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1832 -msgid "" -"<placeholder type=\"variablelist\" id=\"0\"/> <placeholder type=" -"\"variablelist\" id=\"1\"/> <placeholder type=\"variablelist\" id=\"2\"/> " -"<placeholder type=\"variablelist\" id=\"3\"/> <placeholder type=" -"\"variablelist\" id=\"4\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1904 -msgid "ADVANCED OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1911 -msgid "ldap_netgroup_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1914 -msgid "" -"An optional base DN to restrict netgroup searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1930 -msgid "ldap_user_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1933 -msgid "An optional base DN to restrict user searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1949 -msgid "ldap_group_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1952 -msgid "An optional base DN to restrict group searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1968 -msgid "ldap_user_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1971 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict user searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1975 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_user_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1985 -#, no-wrap -msgid "" -" ldap_user_search_filter = (loginShell=/bin/tcsh)\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1988 -msgid "" -"This filter would restrict user searches to users that have their shell set " -"to /bin/tcsh." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1995 -msgid "ldap_group_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1998 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict group searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2002 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_group_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2012 -msgid "ldap_sudo_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2015 -msgid "" -"An optional base DN to restrict sudo rules searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2034 -msgid "ldap_autofs_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2037 -msgid "" -"An optional base DN to restrict automounter searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1906 -msgid "" -"These options are supported by LDAP domains, but they should be used with " -"caution. Please include them in your configuration only if you know what you " -"are doing. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2066 -msgid "" -"The following example assumes that SSSD is correctly configured and LDAP is " -"set to one of the domains in the <replaceable>[domains]</replaceable> " -"section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ldap.5.xml:2072 -#, no-wrap -msgid "" -" [domain/LDAP]\n" -" id_provider = ldap\n" -" auth_provider = ldap\n" -" ldap_uri = ldap://ldap.mydomain.org\n" -" ldap_search_base = dc=mydomain,dc=org\n" -" ldap_tls_reqcert = demand\n" -" cache_credentials = true\n" -" enumerate = true\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2071 sssd-simple.5.xml:134 sssd-ipa.5.xml:552 -#: sssd-krb5.5.xml:441 -msgid "<placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:2085 sssd_krb5_locator_plugin.8.xml:61 -msgid "NOTES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2087 -msgid "" -"The descriptions of some of the configuration options in this manual page " -"are based on the <citerefentry> <refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page from the OpenLDAP 2.4 " -"distribution." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2098 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <refentryinfo> -#: pam_sss.8.xml:8 include/upstream.xml:2 -msgid "" -"<productname>SSSD</productname> <orgname>The SSSD upstream - http://" -"fedorahosted.org/sssd</orgname>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: pam_sss.8.xml:13 pam_sss.8.xml:18 -msgid "pam_sss" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: pam_sss.8.xml:19 -msgid "PAM module for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: pam_sss.8.xml:24 -msgid "" -"<command>pam_sss.so</command> <arg choice='opt'> <replaceable>quiet</" -"replaceable> </arg> <arg choice='opt'> <replaceable>forward_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_first_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_authtok</" -"replaceable> </arg> <arg choice='opt'> <replaceable>retry=N</replaceable> </" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:45 -msgid "" -"<command>pam_sss.so</command> is the PAM interface to the System Security " -"Services daemon (SSSD). Errors and results are logged through <command>syslog" -"(3)</command> with the LOG_AUTHPRIV facility." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:55 -msgid "<option>quiet</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:58 -msgid "Suppress log messages for unknown users." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:63 -msgid "<option>forward_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:66 -msgid "" -"If <option>forward_pass</option> is set the entered password is put on the " -"stack for other PAM modules to use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:73 -msgid "<option>use_first_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:76 -msgid "" -"The argument use_first_pass forces the module to use a previous stacked " -"modules password and will never prompt the user - if no password is " -"available or the password is not appropriate, the user will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:84 -msgid "<option>use_authtok</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:87 -msgid "" -"When password changing enforce the module to set the new password to the one " -"provided by a previously stacked password module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:94 -msgid "<option>retry=N</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:97 -msgid "" -"If specified the user is asked another N times for a password if " -"authentication fails. Default is 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:99 -msgid "" -"Please note that this option might not work as expected if the application " -"calling PAM handles the user dialog on its own. A typical example is " -"<command>sshd</command> with <option>PasswordAuthentication</option>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:110 -msgid "MODULE TYPES PROVIDED" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:111 -msgid "" -"All module types (<option>account</option>, <option>auth</option>, " -"<option>password</option> and <option>session</option>) are provided." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:117 -msgid "FILES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:118 -msgid "" -"If a password reset by root fails, because the corresponding SSSD provider " -"does not support password resets, an individual message can be displayed. " -"This message can e.g. contain instructions about how to reset a password." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:123 -msgid "" -"The message is read from the file <filename>pam_sss_pw_reset_message.LOC</" -"filename> where LOC stands for a locale string returned by <citerefentry> " -"<refentrytitle>setlocale</refentrytitle><manvolnum>3</manvolnum> </" -"citerefentry>. If there is no matching file the content of " -"<filename>pam_sss_pw_reset_message.txt</filename> is displayed. Root must be " -"the owner of the files and only root may have read and write permissions " -"while all other users must have only read permissions." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:133 -msgid "" -"These files are searched in the directory <filename>/etc/sssd/customize/" -"DOMAIN_NAME/</filename>. If no matching file is present a generic message is " -"displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:141 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd_krb5_locator_plugin.8.xml:10 sssd_krb5_locator_plugin.8.xml:15 -msgid "sssd_krb5_locator_plugin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:22 -msgid "" -"The Kerberos locator plugin <command>sssd_krb5_locator_plugin</command> is " -"used by the Kerberos provider of <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry> to tell the Kerberos " -"libraries what Realm and which KDC to use. Typically this is done in " -"<citerefentry> <refentrytitle>krb5.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> which is always read by the Kerberos libraries. " -"To simplify the configuration the Realm and the KDC can be defined in " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> as described in <citerefentry> " -"<refentrytitle>sssd-krb5.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry> puts the Realm and the name or IP address of the KDC into " -"the environment variables SSSD_KRB5_REALM and SSSD_KRB5_KDC respectively. " -"When <command>sssd_krb5_locator_plugin</command> is called by the kerberos " -"libraries it reads and evaluates these variables and returns them to the " -"libraries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:63 -msgid "" -"Not all Kerberos implementations support the use of plugins. If " -"<command>sssd_krb5_locator_plugin</command> is not available on your system " -"you have to edit /etc/krb5.conf to reflect your Kerberos setup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:69 -msgid "" -"If the environment variable SSSD_KRB5_LOCATOR_DEBUG is set to any value " -"debug messages will be sent to stderr." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:77 -msgid "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-simple.5.xml:10 sssd-simple.5.xml:16 -msgid "sssd-simple" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd-simple.5.xml:17 -msgid "the configuration file for SSSD's 'simple' access-control provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:24 -msgid "" -"This manual page describes the configuration of the simple access-control " -"provider for <citerefentry> <refentrytitle>sssd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry>. For a detailed syntax reference, " -"refer to the <quote>FILE FORMAT</quote> section of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:38 -msgid "" -"The simple access provider grants or denies access based on an access or " -"deny list of user or group names. The following rules apply:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:43 -msgid "If all lists are empty, access is granted" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:47 -msgid "" -"If any list is provided, the order of evaluation is allow,deny. This means " -"that any matching deny rule will supersede any matched allow rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:54 -msgid "" -"If either or both \"allow\" lists are provided, all users are denied unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:60 -msgid "" -"If only \"deny\" lists are provided, all users are granted access unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:78 -msgid "simple_allow_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:81 -msgid "Comma separated list of users who are allowed to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:88 -msgid "simple_deny_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:91 -msgid "Comma separated list of users who are explicitly denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:97 -msgid "simple_allow_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:100 -msgid "" -"Comma separated list of groups that are allowed to log in. This applies only " -"to groups within this SSSD domain. Local groups are not evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:108 -msgid "simple_deny_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:111 -msgid "" -"Comma separated list of groups that are explicitly denied access. This " -"applies only to groups within this SSSD domain. Local groups are not " -"evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:70 sssd-ipa.5.xml:65 -msgid "" -"Refer to the section <quote>DOMAIN SECTIONS</quote> of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page for details on the configuration of an SSSD " -"domain. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:120 -msgid "" -"Please note that it is an configuration error if both, simple_allow_users " -"and simple_deny_users, are defined." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:128 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the simple access provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-simple.5.xml:135 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" access_provider = simple\n" -" simple_allow_users = user1, user2\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:145 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ipa.5.xml:10 sssd-ipa.5.xml:16 -msgid "sssd-ipa" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:23 -msgid "" -"This manual page describes the configuration of the IPA provider for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. For a detailed syntax reference, refer to the <quote>FILE " -"FORMAT</quote> section of the <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:36 -msgid "" -"The IPA provider is a back end used to connect to an IPA server. (Refer to " -"the freeipa.org web site for information about IPA servers.) This provider " -"requires that the machine be joined to the IPA domain; configuration is " -"almost entirely self-discovered and obtained directly from the server." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:43 -msgid "" -"The IPA provider accepts the same options used by the <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> identity provider and the <citerefentry> <refentrytitle>sssd-" -"krb5</refentrytitle> <manvolnum>5</manvolnum> </citerefentry> authentication " -"provider with some exceptions described below." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:55 -msgid "" -"However, it is neither necessary nor recommended to set these options. IPA " -"provider can also be used as an access and chpass provider. As an access " -"provider it uses HBAC (host-based access control) rules. Please refer to " -"freeipa.org for more information about HBAC. No configuration of access " -"provider is required on the client side." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:72 -msgid "ipa_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:75 -msgid "" -"Specifies the name of the IPA domain. This is optional. If not provided, " -"the configuration domain name is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:83 -msgid "ipa_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:86 -msgid "" -"The comma-separated list of IP addresses or hostnames of the IPA servers to " -"which SSSD should connect in the order of preference. For more information " -"on failover and server redundancy, see the <quote>FAILOVER</quote> section. " -"This is optional if autodiscovery is enabled. For more information on " -"service discovery, refer to the the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:99 -msgid "ipa_hostname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:102 -msgid "" -"Optional. May be set on machines where the hostname(5) does not reflect the " -"fully qualified name used in the IPA domain to identify this host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:110 -msgid "ipa_dyndns_update (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:113 -msgid "" -"Optional. This option tells SSSD to automatically update the DNS server " -"built into FreeIPA v2 with the IP address of this client." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:118 -msgid "" -"NOTE: On older systems (such as RHEL 5), for this behavior to work reliably, " -"the default Kerberos realm must be set properly in /etc/krb5.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:129 -msgid "ipa_dyndns_iface (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:132 -msgid "" -"Optional. Applicable only when ipa_dyndns_update is true. Choose the " -"interface whose IP address should be used for dynamic DNS updates." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:137 -msgid "Default: Use the IP address of the IPA LDAP connection" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:143 -msgid "ipa_hbac_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:146 -msgid "Optional. Use the given string as search base for HBAC related objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:150 -msgid "Default: Use base DN" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:156 -msgid "ipa_host_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:159 -msgid "Optional. Use the given string as search base for host objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:168 -msgid "" -"If filter is given in any of search bases and " -"<emphasis>ipa_hbac_support_srchost</emphasis> is set to False, the filter " -"will be ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:180 -msgid "ipa_selinux_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:183 -msgid "Optional. Use the given string as search base for SELinux user maps." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:199 sssd-krb5.5.xml:229 -msgid "krb5_validate (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:202 sssd-krb5.5.xml:232 -msgid "" -"Verify with the help of krb5_keytab that the TGT obtained has not been " -"spoofed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:209 -msgid "" -"Note that this default differs from the traditional Kerberos provider back " -"end." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:219 -msgid "" -"The name of the Kerberos realm. This is optional and defaults to the value " -"of <quote>ipa_domain</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:223 -msgid "" -"The name of the Kerberos realm has a special meaning in IPA - it is " -"converted into the base DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:234 -msgid "" -"Specifies if the host and user principal should be canonicalized when " -"connecting to IPA LDAP and also for AS requests. This feature is available " -"with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:247 -msgid "ipa_hbac_refresh (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:250 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server. " -"This will reduce the latency and load on the IPA server if there are many " -"access-control requests made in a short period." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:257 -msgid "Default: 5 (seconds)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:262 -msgid "ipa_hbac_treat_deny_as (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:265 -msgid "" -"This option specifies how to treat the deprecated DENY-type HBAC rules. As " -"of FreeIPA v2.1, DENY rules are no longer supported on the server. All users " -"of FreeIPA will need to migrate their rules to use only the ALLOW rules. The " -"client will support two modes of operation during this transition period:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:274 -msgid "" -"<emphasis>DENY_ALL</emphasis>: If any HBAC DENY rules are detected, all " -"users will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:279 -msgid "" -"<emphasis>IGNORE</emphasis>: SSSD will ignore any DENY rules. Be very " -"careful with this option, as it may result in opening unintended access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:284 -msgid "Default: DENY_ALL" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:289 -msgid "ipa_hbac_support_srchost (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:292 -msgid "" -"If this is set to false, then srchost as given to SSSD by PAM will be " -"ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:296 -msgid "" -"Note that if set to <emphasis>False</emphasis>, this option casuses filters " -"given in <emphasis>ipa_host_search_base</emphasis> to be ignored;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:307 -msgid "ipa_automount_location (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:310 -msgid "The automounter location this IPA client will be using" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:313 -msgid "Default: The location named \"default\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:319 -msgid "ipa_netgroup_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:322 -msgid "The LDAP attribute that lists netgroup's memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:331 -msgid "ipa_netgroup_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:334 -msgid "" -"The LDAP attribute that lists system users and groups that are direct " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:339 sssd-ipa.5.xml:434 -msgid "Default: memberUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:344 -msgid "ipa_netgroup_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:347 -msgid "" -"The LDAP attribute that lists hosts and host groups that are direct members " -"of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:351 sssd-ipa.5.xml:446 -msgid "Default: memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:356 -msgid "ipa_netgroup_member_ext_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:359 -msgid "" -"The LDAP attribute that lists FQDNs of hosts and host groups that are " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:363 -msgid "Default: externalHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:368 -msgid "ipa_netgroup_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:371 -msgid "The LDAP attribute that contains NIS domain name of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:375 -msgid "Default: nisDomainName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:381 -msgid "ipa_host_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:384 sssd-ipa.5.xml:407 -msgid "The object class of a host entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:387 sssd-ipa.5.xml:410 -msgid "Default: ipaHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:392 -msgid "ipa_host_fqdn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:395 -msgid "The LDAP attribute that contains FQDN of the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:398 -msgid "Default: fqdn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:404 -msgid "ipa_selinux_usermap_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:415 -msgid "ipa_selinux_usermap_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:418 -msgid "The LDAP attribute that contains the name of SELinux usermap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:427 -msgid "ipa_selinux_usermap_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:430 -msgid "" -"The LDAP attribute that contains all users / groups this rule match against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:439 -msgid "ipa_selinux_usermap_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:442 -msgid "" -"The LDAP attribute that contains all hosts / hostgroups this rule match " -"against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:451 -msgid "ipa_selinux_usermap_see_also (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:454 -msgid "" -"The LDAP attribute that contains DN of HBAC rule which can be used for " -"matching instead of memberUser and memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:459 -msgid "Default: seeAlso" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:464 -msgid "ipa_selinux_usermap_selinux_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:467 -msgid "The LDAP attribute that contains SELinux user string itself." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:471 -msgid "Default: ipaSELinuxUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:476 -msgid "ipa_selinux_usermap_enabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:479 -msgid "" -"The LDAP attribute that contains whether or not is user map enabled for " -"usage." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:483 -msgid "Default: ipaEnabledFlag" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:488 -msgid "ipa_selinux_usermap_user_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:491 -msgid "The LDAP attribute that contains user category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:495 -msgid "Default: userCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:500 -msgid "ipa_selinux_usermap_host_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:503 -msgid "The LDAP attribute that contains host category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:507 -msgid "Default: hostCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:512 -msgid "ipa_selinux_usermap_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:515 -msgid "The LDAP attribute that contains unique ID of the user map." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:519 -msgid "Default: ipaUniqueID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:524 -msgid "ipa_host_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:527 -msgid "The LDAP attribute that contains the host's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:531 -msgid "Default: ipaSshPubKey" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:546 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the ipa provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ipa.5.xml:553 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" id_provider = ipa\n" -" ipa_server = ipaserver.example.com\n" -" ipa_hostname = myhost.example.com\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:564 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.8.xml:10 sssd.8.xml:15 -msgid "sssd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.8.xml:16 -msgid "System Security Services Daemon" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sssd.8.xml:21 -msgid "" -"<command>sssd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:31 -msgid "" -"<command>SSSD</command> provides a set of daemons to manage access to remote " -"directories and authentication mechanisms. It provides an NSS and PAM " -"interface toward the system and a pluggable backend system to connect to " -"multiple different account sources as well as D-Bus interface. It is also " -"the basis to provide client auditing and policy services for projects like " -"FreeIPA. It provides a more robust database to store local users as well as " -"extended user data." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:46 -msgid "" -"<option>-d</option>,<option>--debug-level</option> <replaceable>LEVEL</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:53 -msgid "<option>--debug-timestamps=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:57 -msgid "<emphasis>1</emphasis>: Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:60 -msgid "<emphasis>0</emphasis>: Disable timestamp in the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:69 -msgid "<option>--debug-microseconds=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:73 -msgid "" -"<emphasis>1</emphasis>: Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:76 -msgid "<emphasis>0</emphasis>: Disable microseconds in timestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:79 -msgid "Default: 0" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:85 -msgid "<option>-f</option>,<option>--debug-to-files</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:89 -msgid "" -"Send the debug output to files instead of stderr. By default, the log files " -"are stored in <filename>/var/log/sssd</filename> and there are separate log " -"files for every SSSD service and domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:97 -msgid "<option>-D</option>,<option>--daemon</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:101 -msgid "Become a daemon after starting up." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:107 -msgid "<option>-i</option>,<option>--interactive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:111 -msgid "Run in the foreground, don't become a daemon." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:117 sss_debuglevel.8.xml:42 -msgid "<option>-c</option>,<option>--config</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:121 sss_debuglevel.8.xml:46 -msgid "" -"Specify a non-default config file. The default is <filename>/etc/sssd/sssd." -"conf</filename>. For reference on the config file syntax and options, " -"consult the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:135 -msgid "<option>--version</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:139 -msgid "Print version number and exit." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.8.xml:147 -msgid "Signals" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:150 -msgid "SIGTERM/SIGINT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:153 -msgid "" -"Informs the SSSD to gracefully terminate all of its child processes and then " -"shut down the monitor." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:159 -msgid "SIGHUP" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:162 -msgid "" -"Tells the SSSD to stop writing to its current debug file descriptors and to " -"close and reopen them. This is meant to facilitate log rolling with programs " -"like logrotate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:170 -msgid "SIGUSR1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:173 -msgid "" -"Tells the SSSD to simulate offline operation for one minute. This is mostly " -"useful for testing purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:179 -msgid "SIGUSR2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:182 -msgid "" -"Tells the SSSD to go online immediately. This is mostly useful for testing " -"purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:193 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_obfuscate.8.xml:10 sss_obfuscate.8.xml:15 -msgid "sss_obfuscate" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_obfuscate.8.xml:16 -msgid "obfuscate a clear text password" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_obfuscate.8.xml:21 -msgid "" -"<command>sss_obfuscate</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>[PASSWORD]</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:32 -msgid "" -"<command>sss_obfuscate</command> converts a given password into human-" -"unreadable format and places it into appropriate domain section of the SSSD " -"config file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:37 -msgid "" -"The cleartext password is read from standard input or entered " -"interactively. The obfuscated password is put into " -"<quote>ldap_default_authtok</quote> parameter of a given SSSD domain and the " -"<quote>ldap_default_authtok_type</quote> parameter is set to " -"<quote>obfuscated_password</quote>. Refer to <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more details on these parameters." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:49 -msgid "" -"Please note that obfuscating the password provides <emphasis>no real " -"security benefit</emphasis> as it is still possible for an attacker to " -"reverse-engineer the password back. Using better authentication mechanisms " -"such as client side certificates or GSSAPI is <emphasis>strongly</emphasis> " -"advised." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:63 -msgid "<option>-s</option>,<option>--stdin</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:67 -msgid "The password to obfuscate will be read from standard input." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:74 sss_ssh_authorizedkeys.1.xml:82 -#: sss_ssh_knownhostsproxy.1.xml:81 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>DOMAIN</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:79 -msgid "" -"The SSSD domain to use the password in. The default name is <quote>default</" -"quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:86 -msgid "" -"<option>-f</option>,<option>--file</option> <replaceable>FILE</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:91 -msgid "Read the config file specified by the positional parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:95 -msgid "Default: <filename>/etc/sssd/sssd.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:105 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_useradd.8.xml:10 sss_useradd.8.xml:15 -msgid "sss_useradd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_useradd.8.xml:16 -msgid "create a new user" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_useradd.8.xml:21 -msgid "" -"<command>sss_useradd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:32 -msgid "" -"<command>sss_useradd</command> creates a new user account using the values " -"specified on the command line plus the default values from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:43 -msgid "" -"<option>-u</option>,<option>--uid</option> <replaceable>UID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:48 -msgid "" -"Set the UID of the user to the value of <replaceable>UID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:55 sss_usermod.8.xml:43 -msgid "" -"<option>-c</option>,<option>--gecos</option> <replaceable>COMMENT</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:60 sss_usermod.8.xml:48 -msgid "" -"Any text string describing the user. Often used as the field for the user's " -"full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:67 sss_usermod.8.xml:55 -msgid "" -"<option>-h</option>,<option>--home</option> <replaceable>HOME_DIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:72 -msgid "" -"The home directory of the user account. The default is to append the " -"<replaceable>LOGIN</replaceable> name to <filename>/home</filename> and use " -"that as the home directory. The base that is prepended before " -"<replaceable>LOGIN</replaceable> is tunable with <quote>user_defaults/" -"baseDirectory</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:82 sss_usermod.8.xml:66 -msgid "" -"<option>-s</option>,<option>--shell</option> <replaceable>SHELL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:87 -msgid "" -"The user's login shell. The default is currently <filename>/bin/bash</" -"filename>. The default can be changed with <quote>user_defaults/" -"defaultShell</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:96 -msgid "" -"<option>-G</option>,<option>--groups</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:101 -msgid "A list of existing groups this user is also a member of." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:107 -msgid "<option>-m</option>,<option>--create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:111 -msgid "" -"Create the user's home directory if it does not exist. The files and " -"directories contained in the skeleton directory (which can be defined with " -"the -k option or in the config file) will be copied to the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:121 -msgid "<option>-M</option>,<option>--no-create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:125 -msgid "" -"Do not create the user's home directory. Overrides configuration settings." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:132 -msgid "" -"<option>-k</option>,<option>--skel</option> <replaceable>SKELDIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:137 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<command>sss_useradd</command>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:143 -msgid "" -"This option is only valid if the <option>-m</option> (or <option>--create-" -"home</option>) option is specified, or creation of home directories is set " -"to TRUE in the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:152 sss_usermod.8.xml:124 -msgid "" -"<option>-Z</option>,<option>--selinux-user</option> " -"<replaceable>SELINUX_USER</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:157 -msgid "" -"The SELinux user for the user's login. If not specified, the system default " -"will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:169 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-krb5.5.xml:10 sssd-krb5.5.xml:16 -msgid "sssd-krb5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:23 -msgid "" -"This manual page describes the configuration of the Kerberos 5 " -"authentication backend for <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry>. For a detailed " -"syntax reference, please refer to the <quote>FILE FORMAT</quote> section of " -"the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:36 -msgid "" -"The Kerberos 5 authentication backend contains auth and chpass providers. It " -"must be paired with identity provider in order to function properly (for " -"example, id_provider = ldap). Some information required by the Kerberos 5 " -"authentication backend must be provided by the identity provider, such as " -"the user's Kerberos Principal Name (UPN). The configuration of the identity " -"provider should have an entry to specify the UPN. Please refer to the man " -"page for the applicable identity provider for details on how to configure " -"this." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:47 -msgid "" -"This backend also provides access control based on the .k5login file in the " -"home directory of the user. See <citerefentry> <refentrytitle>.k5login</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry> for more details. " -"Please note that an empty .k5login file will deny all access to this user. " -"To activate this feature use 'access_provider = krb5' in your sssd " -"configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:55 -msgid "" -"In the case where the UPN is not available in the identity backend " -"<command>sssd</command> will construct a UPN using the format " -"<replaceable>username</replaceable>@<replaceable>krb5_realm</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:106 -msgid "" -"The name of the Kerberos realm. This option is required and must be " -"specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:113 -msgid "krb5_kpasswd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:116 -msgid "" -"If the change password service is not running on the KDC alternative servers " -"can be defined here. An optional port number (preceded by a colon) may be " -"appended to the addresses or hostnames." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:122 -msgid "" -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. Please note that even if there are no more " -"kpasswd servers to try the back end is not switch to offline if " -"authentication against the KDC is still possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:129 -msgid "Default: Use the KDC" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:135 -msgid "krb5_ccachedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:138 -msgid "" -"Directory to store credential caches. All the substitution sequences of " -"krb5_ccname_template can be used here, too, except %d and %P. If the " -"directory does not exist it will be created. If %u, %U, %p or %h are used a " -"private directory belonging to the user is created. Otherwise a public " -"directory with restricted deletion flag (aka sticky bit, see <citerefentry> " -"<refentrytitle>chmod</refentrytitle> <manvolnum>1</manvolnum> </" -"citerefentry> for details) is created." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:151 -msgid "Default: /tmp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:157 -msgid "krb5_ccname_template (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:171 -msgid "login UID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:174 -msgid "%p" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:175 -msgid "principal name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:179 -msgid "%r" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:180 -msgid "realm name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:183 -msgid "%h" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:184 -msgid "home directory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:189 -msgid "value of krb5ccache_dir" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:194 -msgid "%P" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:195 -msgid "the process ID of the sssd client" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:160 -msgid "" -"Location of the user's credential cache. Currently only file based " -"credential caches are supported. In the template the following sequences are " -"substituted: <placeholder type=\"variablelist\" id=\"0\"/> If the template " -"ends with 'XXXXXX' mkstemp(3) is used to create a unique filename in a safe " -"way." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:209 -msgid "Default: FILE:%d/krb5cc_%U_XXXXXX" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:215 -msgid "krb5_auth_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:218 -msgid "" -"Timeout in seconds after an online authentication or change password request " -"is aborted. If possible the authentication request is continued offline." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:241 -msgid "krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:244 -msgid "" -"The location of the keytab to use when validating credentials obtained from " -"KDCs." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:248 -msgid "Default: /etc/krb5.keytab" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:254 -msgid "krb5_store_password_if_offline (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:257 -msgid "" -"Store the password of the user if the provider is offline and use it to " -"request a TGT when the provider gets online again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:262 -msgid "" -"Please note that this feature currently only available on a Linux platform. " -"Passwords stored in this way are kept in plaintext in the kernel keyring and " -"are potentially accessible by the root user (with difficulty)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:275 -msgid "krb5_renewable_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:278 -msgid "" -"Request a renewable ticket with a total lifetime given by an integer " -"immediately followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:283 sssd-krb5.5.xml:319 -msgid "<emphasis>s</emphasis> seconds" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:286 sssd-krb5.5.xml:322 -msgid "<emphasis>m</emphasis> minutes" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:289 sssd-krb5.5.xml:325 -msgid "<emphasis>h</emphasis> hours" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:292 sssd-krb5.5.xml:328 -msgid "<emphasis>d</emphasis> days." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:295 sssd-krb5.5.xml:331 -msgid "If there is no delimiter <emphasis>s</emphasis> is assumed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:299 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"renewable lifetime to one and a half hours please use '90m' instead of " -"'1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:305 -msgid "Default: not set, i.e. the TGT is not renewable" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:311 -msgid "krb5_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:314 -msgid "" -"Request ticket with a with a lifetime given by an integer immediately " -"followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:335 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"lifetime to one and a half hours please use '90m' instead of '1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:340 -msgid "" -"Default: not set, i.e. the default ticket lifetime configured on the KDC." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:347 -msgid "krb5_renew_interval (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:350 -msgid "" -"The time in seconds between two checks if the TGT should be renewed. TGTs " -"are renewed if about half of their lifetime is exceeded." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:355 -msgid "If this option is not set or 0 the automatic renewal is disabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:365 -msgid "krb5_use_fast (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:368 -msgid "" -"Enables flexible authentication secure tunneling (FAST) for Kerberos pre-" -"authentication. The following options are supported:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:373 -msgid "" -"<emphasis>never</emphasis> use FAST, this is equivalent to not set this " -"option at all." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:377 -msgid "" -"<emphasis>try</emphasis> to use FAST, if the server does not support fast " -"continue without." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:381 -msgid "" -"<emphasis>demand</emphasis> to use FAST, fail if the server does not require " -"fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:385 -msgid "Default: not set, i.e. FAST is not used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:388 -msgid "Please note that a keytab is required to use fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:391 -msgid "" -"Please note also that sssd supports fast only with MIT Kerberos version 1.8 " -"and above. If sssd used with an older version using this option is a " -"configuration error." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:400 -msgid "krb5_fast_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:403 -msgid "Specifies the server principal to use for FAST." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:412 -msgid "" -"Specifies if the host and user principal should be canonicalized. This " -"feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:65 -msgid "" -"If the auth-module krb5 is used in a SSSD domain, the following options must " -"be used. See the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page, section <quote>DOMAIN " -"SECTIONS</quote> for details on the configuration of a SSSD domain. " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:434 -msgid "" -"The following example assumes that SSSD is correctly configured and FOO is " -"one of the domains in the <replaceable>[sssd]</replaceable> section. This " -"example shows only configuration of Kerberos authentication, it does not " -"include any identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-krb5.5.xml:442 -#, no-wrap -msgid "" -" [domain/FOO]\n" -" auth_provider = krb5\n" -" krb5_server = 192.168.1.1\n" -" krb5_realm = EXAMPLE.COM\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:453 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupadd.8.xml:10 sss_groupadd.8.xml:15 -msgid "sss_groupadd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupadd.8.xml:16 -msgid "create a new group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupadd.8.xml:21 -msgid "" -"<command>sss_groupadd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:32 -msgid "" -"<command>sss_groupadd</command> creates a new group. These groups are " -"compatible with POSIX groups, with the additional feature that they can " -"contain other groups as members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupadd.8.xml:43 -msgid "" -"<option>-g</option>,<option>--gid</option> <replaceable>GID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupadd.8.xml:48 -msgid "" -"Set the GID of the group to the value of <replaceable>GID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_userdel.8.xml:10 sss_userdel.8.xml:15 -msgid "sss_userdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_userdel.8.xml:16 -msgid "delete a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_userdel.8.xml:21 -msgid "" -"<command>sss_userdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:32 -msgid "" -"<command>sss_userdel</command> deletes a user identified by login name " -"<replaceable>LOGIN</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:44 -msgid "<option>-r</option>,<option>--remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:48 -msgid "" -"Files in the user's home directory will be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:56 -msgid "<option>-R</option>,<option>--no-remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:60 -msgid "" -"Files in the user's home directory will NOT be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:68 -msgid "<option>-f</option>,<option>--force</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:72 -msgid "" -"This option forces <command>sss_userdel</command> to remove the user's home " -"directory and mail spool, even if they are not owned by the specified user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:80 -msgid "<option>-k</option>,<option>--kick</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:84 -msgid "Before actually deleting the user, terminate all his processes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:95 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupdel.8.xml:10 sss_groupdel.8.xml:15 -msgid "sss_groupdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupdel.8.xml:16 -msgid "delete a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupdel.8.xml:21 -msgid "" -"<command>sss_groupdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:32 -msgid "" -"<command>sss_groupdel</command> deletes a group identified by its name " -"<replaceable>GROUP</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupshow.8.xml:10 sss_groupshow.8.xml:15 -msgid "sss_groupshow" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupshow.8.xml:16 -msgid "print properties of a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupshow.8.xml:21 -msgid "" -"<command>sss_groupshow</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:32 -msgid "" -"<command>sss_groupshow</command> displays information about a group " -"identified by its name <replaceable>GROUP</replaceable>. The information " -"includes the group ID number, members of the group and the parent group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupshow.8.xml:43 -msgid "<option>-R</option>,<option>--recursive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupshow.8.xml:47 -msgid "" -"Also print indirect group members in a tree-like hierarchy. Note that this " -"also affects printing parent groups - without <option>R</option>, only the " -"direct parent will be printed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_usermod.8.xml:10 sss_usermod.8.xml:15 -msgid "sss_usermod" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_usermod.8.xml:16 -msgid "modify a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_usermod.8.xml:21 -msgid "" -"<command>sss_usermod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:32 -msgid "" -"<command>sss_usermod</command> modifies the account specified by " -"<replaceable>LOGIN</replaceable> to reflect the changes that are specified " -"on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:60 -msgid "The home directory of the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:71 -msgid "The user's login shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:82 -msgid "" -"Append this user to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:96 -msgid "" -"Remove this user from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:103 -msgid "<option>-l</option>,<option>--lock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:107 -msgid "Lock the user account. The user won't be able to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:114 -msgid "<option>-u</option>,<option>--unlock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:118 -msgid "Unlock the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:129 -msgid "The SELinux user for the user's login." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:140 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_cache.8.xml:10 sss_cache.8.xml:15 -msgid "sss_cache" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_cache.8.xml:16 -msgid "perform cache cleanup" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_cache.8.xml:21 -msgid "" -"<command>sss_cache</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_cache.8.xml:31 -msgid "" -"<command>sss_cache</command> invalidates records in SSSD cache. Invalidated " -"records are forced to be reloaded from server as soon as related SSSD " -"backend is online." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:42 -msgid "" -"<option>-u</option>,<option>--user</option> <replaceable>login</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:47 -msgid "Invalidate specific user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:53 -msgid "<option>-U</option>,<option>--users</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:57 -msgid "" -"Invalidate all user records. This option overrides invalidation of specific " -"user if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:64 -msgid "" -"<option>-g</option>,<option>--group</option> <replaceable>group</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:69 -msgid "Invalidate specific group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:75 -msgid "<option>-G</option>,<option>--groups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:79 -msgid "" -"Invalidate all group records. This option overrides invalidation of specific " -"group if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:86 -msgid "" -"<option>-n</option>,<option>--netgroup</option> <replaceable>netgroup</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:91 -msgid "Invalidate specific netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:97 -msgid "<option>-N</option>,<option>--netgroups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:101 -msgid "" -"Invalidate all netgroup records. This option overrides invalidation of " -"specific netgroup if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:108 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>domain</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:113 -msgid "Restrict invalidation process only to a particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_debuglevel.8.xml:10 sss_debuglevel.8.xml:15 -msgid "sss_debuglevel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_debuglevel.8.xml:16 -msgid "change debug level while SSSD is running" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_debuglevel.8.xml:21 -msgid "" -"<command>sss_debuglevel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>NEW_DEBUG_LEVEL</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_debuglevel.8.xml:32 -msgid "" -"<command>sss_debuglevel</command> changes debug level of SSSD monitor and " -"providers to <replaceable>NEW_DEBUG_LEVEL</replaceable> while SSSD is " -"running." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_debuglevel.8.xml:59 -msgid "<replaceable>NEW_DEBUG_LEVEL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_authorizedkeys.1.xml:10 sss_ssh_authorizedkeys.1.xml:15 -msgid "sss_ssh_authorizedkeys" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_ssh_authorizedkeys.1.xml:11 sss_ssh_knownhostsproxy.1.xml:11 -msgid "1" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_authorizedkeys.1.xml:16 -msgid "get OpenSSH authorized keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_authorizedkeys.1.xml:21 -msgid "" -"<command>sss_ssh_authorizedkeys</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>USER</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:32 -msgid "" -"<command>sss_ssh_authorizedkeys</command> acquires SSH public keys for user " -"<replaceable>USER</replaceable> and outputs them in OpenSSH authorized_keys " -"format (see the <quote>AUTHORIZED_KEYS FILE FORMAT</quote> section of " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> for more information)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:41 -msgid "" -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_authorizedkeys</" -"command> for public key user authentication if it is compiled with support " -"for either <quote>AuthorizedKeysCommand</quote> or <quote>PubkeyAgent</" -"quote> <citerefentry> <refentrytitle>sshd_config</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:58 -#, no-wrap -msgid "AuthorizedKeysCommand /usr/bin/sss_ssh_authorizedkeys\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:51 -msgid "" -"If <quote>AuthorizedKeysCommand</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by putting the following directive " -"in <citerefentry> <refentrytitle>sshd_config</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry>: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:69 -#, no-wrap -msgid "PubKeyAgent /usr/bin/sss_ssh_authorizedkeys %u\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:62 -msgid "" -"If <quote>PubkeyAgent</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by using the following directive " -"for <citerefentry> <refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> configuration: <placeholder type=\"programlisting" -"\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_authorizedkeys.1.xml:87 -msgid "" -"Search for user public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:98 -msgid "" -"<citerefentry> <refentrytitle>sshd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sshd_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_knownhostsproxy</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_knownhostsproxy.1.xml:10 sss_ssh_knownhostsproxy.1.xml:15 -msgid "sss_ssh_knownhostsproxy" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_knownhostsproxy.1.xml:16 -msgid "get OpenSSH host keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_knownhostsproxy.1.xml:21 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>HOST</replaceable></arg> <arg " -"choice='opt'><replaceable>PROXY_COMMAND</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:33 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> acquires SSH host public keys for " -"host <replaceable>HOST</replaceable>, stores them in a custom OpenSSH " -"known_hosts file (see the <quote>SSH_KNOWN_HOSTS FILE FORMAT</quote> section " -"of <citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> for more information) <filename>/var/lib/sss/" -"pubconf/known_hosts</filename> and estabilishes connection to the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:43 -msgid "" -"If <replaceable>PROXY_COMMAND</replaceable> is specified, it is used to " -"create the connection to the host instead of opening a socket." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_knownhostsproxy.1.xml:55 -#, no-wrap -msgid "" -"ProxyCommand /usr/bin/sss_ssh_knownhostsproxy -p %p %h\n" -"GlobalKnownHostsFile2 /var/lib/sss/pubconf/known_hosts\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:48 -msgid "" -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_knownhostsproxy</" -"command> for host key authentication by using the following directives for " -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> configuration: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_ssh_knownhostsproxy.1.xml:69 -msgid "" -"<option>-p</option>,<option>--port</option> <replaceable>PORT</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:74 -msgid "" -"Use port <replaceable>PORT</replaceable> to connect to the host. By " -"default, port 22 is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:86 -msgid "" -"Search for host public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:97 -msgid "" -"<citerefentry> <refentrytitle>ssh</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>ssh_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_authorizedkeys</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/service_discovery.xml:2 -msgid "SERVICE DISCOVERY" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/service_discovery.xml:4 -msgid "" -"The service discovery feature allows back ends to automatically find the " -"appropriate servers to connect to using a special DNS query." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:9 -msgid "Configuration" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:11 -msgid "" -"If no servers are specified, the back end automatically uses service " -"discovery to try to find a server. Optionally, the user may choose to use " -"both fixed server addresses and service discovery by inserting a special " -"keyword, <quote>_srv_</quote>, in the list of servers. The order of " -"preference is maintained. This feature is useful if, for example, the user " -"prefers to use service discovery whenever possible, and fall back to a " -"specific server when no servers can be discovered using DNS." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:23 -msgid "The domain name" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:25 -msgid "" -"Please refer to the <quote>dns_discovery_domain</quote> parameter in the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for more details." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:35 -msgid "The protocol" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:37 -msgid "" -"The queries usually specify _tcp as the protocol. Exceptions are documented " -"in respective option description." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:42 -msgid "See Also" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:44 -msgid "" -"For more information on the service discovery mechanism, refer to RFC 2782." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/upstream.xml:1 -msgid "<placeholder type=\"refentryinfo\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/failover.xml:2 -msgid "FAILOVER" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/failover.xml:4 -msgid "" -"The failover feature allows back ends to automatically switch to a different " -"server if the primary server fails." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:8 -msgid "Failover Syntax" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:10 -msgid "" -"The list of servers is given as a comma-separated list; any number of spaces " -"is allowed around the comma. The servers are listed in order of preference. " -"The list can contain any number of servers." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:17 -msgid "The Failover Mechanism" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:19 -msgid "" -"The failover mechanism distinguishes between a machine and a service. The " -"back end first tries to resolve the hostname of a given machine; if this " -"resolution attempt fails, the machine is considered offline. No further " -"attempts are made to connect to this machine for any other service. If the " -"resolution attempt succeeds, the back end tries to connect to a service on " -"this machine. If the service connection attempt fails, then only this " -"particular service is considered offline and the back end automatically " -"switches over to the next service. The machine is still considered online " -"and might still be tried for another service." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:32 -msgid "" -"Further connection attempts are made to machines or services marked as " -"offline after a specified period of time; this is currently hard coded to 30 " -"seconds." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:37 -msgid "" -"If there are no more machines to try, the back end as a whole switches to " -"offline mode, and then attempts to reconnect every 30 seconds." -msgstr "" - -#. type: Content of: <varlistentry><term> -#: include/param_help.xml:3 -msgid "<option>-h</option>,<option>--help</option>" -msgstr "" - -#. type: Content of: <varlistentry><listitem><para> -#: include/param_help.xml:7 -msgid "Display help message and exit." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:3 -msgid "" -"Bit mask that indicates which debug levels will be visible. 0x0010 is the " -"default value as well as the lowest allowed value, 0xFFF0 is the most " -"verbose mode. This setting overrides the settings from config file." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:8 -msgid "Currently supported debug levels:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:11 -msgid "" -"<emphasis>0x0010</emphasis>: Fatal failures. Anything that would prevent " -"SSSD from starting up or causes it to cease running." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:15 -msgid "" -"<emphasis>0x0020</emphasis>: Critical failures. An error that doesn't kill " -"the SSSD, but one that indicates that at least one major feature is not " -"going to work properly." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:20 -msgid "" -"<emphasis>0x0040</emphasis>: Serious failures. An error announcing that a " -"particular request or operation has failed." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:24 -msgid "" -"<emphasis>0x0080</emphasis>: Minor failures. These are the errors that would " -"percolate down to cause the operation failure of 2." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:28 -msgid "<emphasis>0x0100</emphasis>: Configuration settings." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:31 -msgid "<emphasis>0x0200</emphasis>: Function data." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:34 -msgid "<emphasis>0x0400</emphasis>: Trace messages for operation functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:37 -msgid "" -"<emphasis>0x1000</emphasis>: Trace messages for internal control functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:40 -msgid "" -"<emphasis>0x2000</emphasis>: Contents of function-internal variables that " -"may be interesting." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:43 -msgid "<emphasis>0x4000</emphasis>: Extremely low-level tracing information." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:46 -msgid "" -"To log required debug levels, simply add their numbers together as shown in " -"following examples:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:49 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, critical failures, " -"serious failures and function data use 0x0270." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:53 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, configuration settings, " -"function data, trace messages for internal control functions use 0x1310." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:57 -msgid "" -"<emphasis>Note</emphasis>: This is new format of debug levels introduced in " -"1.7.0. Older format (numbers from 0-10) is compatible but deprecated." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/experimental.xml:1 -msgid "" -"<emphasis> This is an experimental feature, please use http://fedorahosted." -"org/sssd to report any issues. </emphasis>" -msgstr "" diff --git a/src/man/po/ja.po b/src/man/po/ja.po index 85f747a91..f3794f923 100644 --- a/src/man/po/ja.po +++ b/src/man/po/ja.po @@ -11,7 +11,7 @@ msgstr "" "Project-Id-Version: SSSD\n" "Report-Msgid-Bugs-To: sssd-devel@redhat.com\n" "POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2012-02-28 13:11+0000\n" +"PO-Revision-Date: 2012-03-09 23:57+0000\n" "Last-Translator: Tomoyuki KATO <tomo@dream.daynight.jp>\n" "Language-Team: Japanese <trans-ja@lists.fedoraproject.org>\n" "Language: ja\n" @@ -467,6 +467,8 @@ msgid "" "This option accepts a special value __LIBKRB5_DEFAULTS__ that will instruct " "SSSD to let libkrb5 decide the appropriate location for the replay cache." msgstr "" +"このオプションは、libkrb5 がリプレイキャッシュに対する適切な場所を決められる" +"よう SSSD に指示する、特別な値 __LIBKRB5_DEFAULTS__ を受け付けます。" #. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:203 @@ -696,6 +698,10 @@ msgid "" "domain or include fully-qualified names to filter only users from the " "particular domain." msgstr "" +"sss NSS データベースから取り出されたものから特定のユーザーを除外します。これ" +"はとくにシステムアカウントに対して有効です。このオプションはドメインごとに設" +"定できます。または特定のドメインからユーザーのみをフィルターするために完全修" +"飾名を含めることができます。" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:364 @@ -777,6 +783,9 @@ msgid "" "or a template. In the template, the following sequences are substituted: " "<placeholder type=\"variablelist\" id=\"0\"/>" msgstr "" +"ユーザーのホームディレクトリーを上書きします。絶対パスまたはテンプレートを提" +"供できます。テンプレートでは、以下のシーケンスが置換されます: <placeholder " +"type=\"variablelist\" id=\"0\"/>" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:413 @@ -831,6 +840,9 @@ msgid "" "The <quote>/etc/shells</quote> is only read on SSSD start up, which means " "that a restart of the SSSD is required in case a new shell is installed." msgstr "" +"<quote>/etc/shells</quote> は SSSD が開始されるときにのみ読み込まれます。これ" +"は新しいシェルがインストールされた場合 SSSD の再起動が必要になることを意味し" +"ます。" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:445 @@ -932,6 +944,9 @@ msgid "" "offline_failed_login_attempts has been reached. Only a successful online " "authentication can enable offline authentication again." msgstr "" +"0 に設定されていると、offline_failed_login_attempts に達した場合、ユーザーが" +"オフライン認証できません。オンライン認証に成功すると、再びオフライン認証を有" +"効にできます。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:520 sssd.conf.5.xml:573 sssd.conf.5.xml:1093 @@ -994,6 +1009,8 @@ msgid "" "immediately update the cached identity information for the user in order to " "ensure that authentication takes place with the latest information." msgstr "" +"SSSD がオンラインの間はすべての PAM 要求に対して、ユーザーが最新の情報で認証" +"されるよう、SSSD は直ちにキャッシュされた識別情報を更新しようとします。" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:565 @@ -1003,6 +1020,10 @@ msgid "" "client-application basis) how long (in seconds) we can cache the identity " "information to avoid excessive round-trips to the identity provider." msgstr "" +"完全な PAM のやりとりは、アカウント管理やセッション開始のように、複数の PAM " +"要求を実行できます。このオプションは、識別プロバイダーに対する過剰なラウンド" +"トリップを避けるために識別情報をキャッシュできる時間(秒数)を(クライアント" +"アプリケーションごとに)制御します。" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:579 @@ -1021,6 +1042,8 @@ msgid "" "expiration time of the password. If this information is missing, sssd " "cannot display a warning." msgstr "" +"バックエンドのサーバーがパスワードの有効期間に関する情報を提供する必要がある" +"ことに注意してください。この情報がなければ、sssd は警告を表示します。" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:591 @@ -1049,6 +1072,8 @@ msgid "" "to update the cached rules in order to ensure that sudo has the latest " "ruleset." msgstr "" +"SSSD がオンラインの間はすべての sudo 要求に対して、sudo が確実に最新のルール" +"セットを持つよう、SSSD はキャッシュされたルールを更新しようとします。" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:617 @@ -1058,6 +1083,9 @@ msgid "" "the sudo service maintains an in-memory cache that would be used for " "performing fast replies." msgstr "" +"しかしながら、ユーザーが複数の sudo コマンドを正常に実行できます。これは複数" +"の LDAP 要求を発行します。この使用法を高速化するために、sudo サービスは素早い" +"応答を返すために使用されるインメモリーキャッシュを保持します。" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:624 @@ -1065,6 +1093,8 @@ msgid "" "This option controls how long (in seconds) can the sudo service cache rules " "for a user." msgstr "" +"このオプションは sudo サービスがユーザーのルールをキャッシュできる時間(秒単" +"位)を制御します。" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:628 @@ -1082,6 +1112,8 @@ msgid "" "Whether or not to evaluate the sudoNotBefore and sudoNotAfter attributes " "that implement time-dependent sudoers entries." msgstr "" +"時間依存の sudoers エントリーを実装する sudoNotBefore と sudoNotAfter の属性" +"を評価するかしないかです。" #. type: Content of: <reference><refentry><refsect1><refsect2><title> #: sssd.conf.5.xml:649 @@ -1100,19 +1132,14 @@ msgstr "autofs_negative_timeout (整数)" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:662 -#, fuzzy -#| msgid "" -#| "Specifies for how many seconds nss_sss should cache negative cache hits " -#| "(that is, queries for invalid database entries, like nonexistent ones) " -#| "before asking the back end again." msgid "" "Specifies for how many seconds should the autofs responder negative cache " "hits (that is, queries for invalid map entries, like nonexistent ones) " "before asking the back end again." msgstr "" -"nss_sss が再びバックエンドに問い合わせる前にネガティブキャッシュヒット(つま" -"り、存在しないドメインのように、無効なデータベースエントリーに対する問い合わ" -"せ)をキャッシュする秒数を指定します。" +"autofs レスポンダーのネガティブキャッシュ(つまり、存在しないもののように、無" +"効なマップエントリーに対する問い合わせ)が再びバックエンドに問い合わせる前に" +"ヒットする秒数を指定します。" #. type: Content of: <reference><refentry><refsect1><title> #: sssd.conf.5.xml:679 @@ -1141,6 +1168,9 @@ msgid "" "primary group memberships, those that are in range will be reported as " "expected." msgstr "" +"ユーザーに対して、これはプライマリー GID 制限に影響します。 UID またはプライ" +"マリー GID が範囲外ならば、ユーザーは NSS に返されません。非プライマリーメン" +"バーに対して、範囲内にあるものは予期されたものとして報告されます。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:701 @@ -1158,6 +1188,8 @@ msgid "" "Timeout in seconds between heartbeats for this domain. This is used to " "ensure that the backend process is alive and capable of answering requests." msgstr "" +"このドメインに対するハートビート間隔(秒単位)。バックエンドのプロセスが有効" +"であり、要求に答えられる能力があることを確実にするために使用されます。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:715 sssd-ldap.5.xml:1131 @@ -1175,6 +1207,8 @@ msgid "" "Determines if a domain can be enumerated. This parameter can have one of the " "following values:" msgstr "" +"ドメインが列挙できるかを決定します。このパラメーターは以下の値のどれかである" +"必要があります:" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:728 @@ -1200,6 +1234,10 @@ msgid "" "information will go directly to LDAP, though it may be slow, due to the " "heavy enumeration processing." msgstr "" +"注: 列挙を有効にすることにより、列挙の実行中に SSSD にわずかな性能の影響があ" +"ります。列挙を完全に完了するには SSSD が開始後に数分間時間がかかります。この" +"間は、それぞれの情報の要求は直接 LDAP に行きますが、重い列挙処理のため、それ" +"は遅いかもしれません。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:747 @@ -1207,6 +1245,8 @@ msgid "" "While the first enumeration is running, requests for the complete user or " "group lists may return no results until it completes." msgstr "" +"最初の列挙が実行中の間、完全なユーザーまたはグループの一覧に対する要求は、そ" +"れが完了するまで結果を返しません。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:752 @@ -1216,6 +1256,10 @@ msgid "" "enumeration lookups are completed successfully. For more information, refer " "to the man pages for the specific id_provider in use." msgstr "" +"さらに、列挙を有効にすることにより、挙の検索が確実に正しく完了するよりも長く" +"する必要があるので、ネットワーク切断を検知するために必要な時間が増える可能性" +"があります。詳細は使用している具体的な id_provider のマニュアルページを参照し" +"てください。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:763 @@ -1228,6 +1272,8 @@ msgid "" "How many seconds should nss_sss consider entries valid before asking the " "backend again" msgstr "" +"nss_sss が再びバックエンドに問い合わせる前にエントリーを有効であると考える秒" +"数です。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:770 @@ -1305,6 +1351,8 @@ msgstr "cache_credentials (論理値)" #: sssd.conf.5.xml:831 msgid "Determines if user credentials are also cached in the local LDB cache" msgstr "" +"ユーザーのクレディンシャルがローカル LDB キャッシュにキャッシュされるかどうか" +"を決めます" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:835 @@ -1325,6 +1373,9 @@ msgid "" "value of this parameter must be greater than or equal to " "offline_credentials_expiration." msgstr "" +"正常にログイン後、キャッシュのクリーンアップ中にエントリーが削除される前の日" +"数です。 0 は永久に保持することを意味します。このパラメーターの値は " +"offline_credentials_expiration と同等以上でなければいけません。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:854 @@ -1340,6 +1391,7 @@ msgstr "id_provider (文字列)" #: sssd.conf.5.xml:863 msgid "The Data Provider identity backend to use for this domain." msgstr "" +"このドメインに対して使用するデータプロバイダーの識別情報のバックエンドです。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:867 @@ -1374,6 +1426,10 @@ msgid "" "<command>getent passwd test</command> wouldn't find the user while " "<command>getent passwd test@LOCAL</command> would." msgstr "" +"TRUE に設定されていると、このドメインへのすべての要求は完全修飾名を使用する必" +"要があります。たとえば、 \"test\" ユーザーを含む LOCAL ドメインにおいて使用さ" +"れていると、<command>getent passwd test</command> はユーザーを見つけられませ" +"んが、<command>getent passwd test@LOCAL</command> は見つけられます。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:898 @@ -1466,6 +1522,10 @@ msgid "" "manvolnum></citerefentry> for more information on configuring the simple " "access module." msgstr "" +"<quote>simple</quote> アクセス制御はアクセスまたは拒否の一覧に基づきます。" +"simple アクセスモジュールの設定に関する詳細は <citerefentry> " +"<refentrytitle>sssd-simple</refentrytitle> <manvolnum>5</manvolnum></" +"citerefentry> を参照してください。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:953 @@ -1483,6 +1543,8 @@ msgid "" "The provider which should handle change password operations for the domain. " "Supported change password providers are:" msgstr "" +"ドメインに対するパスワード変更操作を取り扱うプロバイダーです。サポートされる" +"パスワード変更プロバイダーは次のとおりです:" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:966 @@ -1624,6 +1686,8 @@ msgid "" "Provides the ability to select preferred address family to use when " "performing DNS lookups." msgstr "" +"DNS 検索を実行するときに使用する、優先アドレスファミリーを選択する機能を提供" +"します。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1063 @@ -1671,6 +1735,9 @@ msgid "" "resolver before assuming that it is unreachable. If this timeout is reached, " "the domain will continue to operate in offline mode." msgstr "" +"DNS リゾルバーが到達不可能であると仮定するまでに、そこからの応答を待つ時間" +"(秒単位)を定義します。このタイムアウトに達すると、ドメインはオフラインモー" +"ドにて操作を継続します。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:1099 @@ -1683,6 +1750,8 @@ msgid "" "If service discovery is used in the back end, specifies the domain part of " "the service discovery DNS query." msgstr "" +"サービス検索がバックエンドで使用されていると、サービス検索 DNS クエリーのドメ" +"イン部分を指定します。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1106 @@ -1710,6 +1779,8 @@ msgid "" "Treat user and group names as case sensitive. At the moment, this option is " "not supported in the local provider." msgstr "" +"ユーザー名とグループ名が大文字小文字を区別するよう取り扱います。今のところ、" +"このオプションはローカルプロバイダーにおいてサポートされません。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1129 @@ -1723,6 +1794,9 @@ msgid "" "section, that is, in a section called <quote>[domain/<replaceable>NAME</" "replaceable>]</quote> <placeholder type=\"variablelist\" id=\"0\"/>" msgstr "" +"これらの設定オプションはドメイン設定のセクション、つまり <quote>[domain/" +"<replaceable>NAME</replaceable>]</quote> に存在します <placeholder type=" +"\"variablelist\" id=\"0\"/>" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:1141 @@ -1740,6 +1814,8 @@ msgid "" "Default: not set by default, you have to take an existing pam configuration " "or create a new one and add the service name here." msgstr "" +"初期値: 設定されません。既存の PAM 設定を使用するか、新しく作成してサービス名" +"をここに追加する必要があります。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:1155 @@ -1753,6 +1829,9 @@ msgid "" "searched for in the library are in the form of _nss_$(libName)_$(function), " "for example _nss_files_getpwent." msgstr "" +"プロキシードメインにおいて使用する NSS ライブラリーの名前です。ライブラリーに" +"おいて検索する NSS 関数は _nss_$(libName)_$(function) の形式です。たとえば " +"_nss_files_getpwent です。" #. type: Content of: <reference><refentry><refsect1><para> #: sssd.conf.5.xml:1137 @@ -1902,6 +1981,9 @@ msgid "" "corresponding user account is modified or deleted. If not specified, a " "default value is used." msgstr "" +"メールスプールディレクトリーです。これに対応するユーザーアカウントが変更また" +"は削除されたとき、これを操作する必要があります。指定されていなければ、初期値" +"が使用されます。" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1272 @@ -1920,6 +2002,9 @@ msgid "" "username of the user being removed as the first and only parameter. The " "return code of the command is not taken into account." msgstr "" +"ユーザーの削除後に実行されるコマンドです。コマンドは最初の唯一のパラメーター" +"として削除されるユーザーのユーザー名を渡します。コマンドの返り値は考慮されま" +"せん。" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1286 @@ -1994,6 +2079,9 @@ msgid "" "configuring domains for more details. <placeholder type=\"programlisting\" " "id=\"0\"/>" msgstr "" +"以下の例は SSSD の一般的な設定を示します。ドメイン自身の設定を説明していませ" +"ん - ドメインの設定に関する詳細はドキュメントを参照してください。 " +"<placeholder type=\"programlisting\" id=\"0\"/>" #. type: Content of: <reference><refentry><refsect1><para> #: sssd.conf.5.xml:1333 @@ -2042,6 +2130,11 @@ msgid "" "<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" "manvolnum> </citerefentry> manual page for detailed syntax information." msgstr "" +"このマニュアルページは <citerefentry> <refentrytitle>sssd</refentrytitle> " +"<manvolnum>8</manvolnum> </citerefentry> 向けの LDAP ドメインの設定を説明して" +"います。詳細な構文については <citerefentry> <refentrytitle>sssd.conf</" +"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> マニュアルページの " +"<quote>ファイル形式</quote> セクションを参照してください。" #. type: Content of: <reference><refentry><refsect1><para> #: sssd-ldap.5.xml:35 @@ -2059,6 +2152,13 @@ msgid "" "<quote>ldap_access_filter</quote> config option for more information about " "using LDAP as an access provider." msgstr "" +"LDAP バックエンドは id, auth, access および chpass プロバイダーをサポートしま" +"す。 LDAP サーバーに対して認証したければ、 TLS/SSL または LDAPS のどちらかが" +"必要になります。 <command>sssd</command> は暗号化されないチャネルにおける認証" +"はサポート<emphasis>されません</emphasis>。 LDAP サーバーが識別プロバイダーと" +"してのみ使用されるならば、暗号化チャネルは必要ありません。アクセスプロバイ" +"ダーとして LDAP を使用することの詳細は <quote>ldap_access_filter</quote> 設定" +"オプションを参照してください。" #. type: Content of: <reference><refentry><refsect1><title> #: sssd-ldap.5.xml:49 sssd-simple.5.xml:69 sssd-ipa.5.xml:64 @@ -2228,6 +2328,14 @@ msgid "" "members are listed by DN and stored in the <emphasis>member</emphasis> " "attribute." msgstr "" +"ターゲット LDAP サーバーにおいて使用中のスキーマ形式を指定します。選択された" +"スキーマに応じて、サーバーから取得される属性名の初期変わります。処理されるい" +"くつかの属性も変わります。現在 3 つのスキーマ形式がサポートされます: " +"rfc2307, rfc2307bis, IPA 。これらのスキーマ形式のおもな違いは、グループのメン" +"バーがサーバーにおいてどのように記録されるかです。rfc2307 を使用すると、グ" +"ループのメンバーは <emphasis>memberUid</emphasis> 属性に名前により一覧化され" +"ます。rfc2307bis および IPA を使用すると、グループのメンバーは DN により一覧" +"化され、<emphasis>member</emphasis> 属性に保存されます。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:180 @@ -2785,6 +2893,9 @@ msgid "" "with no members and users who have never logged in) and remove them to save " "space." msgstr "" +"使用していないエントリー(メンバーのいないグループやログインしたことがない" +"ユーザーなど)に対してキャッシュを確認して、保存領域を節約するためにそれらを" +"削除する間隔を決めます。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:631 @@ -2870,6 +2981,9 @@ msgid "" "presence of the host attribute in the user's LDAP entry to determine access " "privilege." msgstr "" +"access_provider=ldap かつ ldap_access_order=host ならば、 SSSD はアクセス権限" +"を決めるために、ユーザーの LDAP エントリーにあるホスト属性の存在を使用しま" +"す。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:697 @@ -2877,6 +2991,8 @@ msgid "" "An explicit deny (!host) is resolved first. Second, SSSD searches for " "explicit allow (host) and finally for allow_all (*)." msgstr "" +"明示的な拒否 (!host) がまず解決されます。次に SSSD が明示的な許可 (host) を検" +"索します。最後にすべて許可 (*) が検索されます。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:702 @@ -2960,6 +3076,9 @@ msgid "" "RFC2307bis), then this option controls how many levels of nesting SSSD will " "follow. This option has no effect on the RFC2307 schema." msgstr "" +"ldap_schema が入れ子グループ (例: RFC2307bis) をサポートするスキーマ形式に設" +"定されていると、このオプションが入れ子 SSSD がしたがうレベルを制御します。こ" +"のオプションは RFC2307 スキーマにおいて効果がありません。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:795 @@ -3175,6 +3294,9 @@ msgid "" "will likely be replaced at some point by a series of timeouts for specific " "lookup types." msgstr "" +"注: このオプションは SSSD の将来のバージョンにおいて変更される可能性がありま" +"す。特定の種類の検索のために一連のタイムアウトによりある時点に置き換えられる" +"かもしれません。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:985 sssd-ldap.5.xml:1027 sssd-ldap.5.xml:1042 @@ -3214,6 +3336,11 @@ msgid "" "<refentrytitle>connect</refentrytitle> <manvolnum>2</manvolnum> </" "citerefentry> returns in case of no activity." msgstr "" +"<citerefentry> <refentrytitle>connect</refentrytitle> <manvolnum>2</" +"manvolnum> </citerefentry> に続けて <citerefentry> <refentrytitle>poll</" +"refentrytitle> <manvolnum>2</manvolnum> </citerefentry>/<citerefentry> " +"<refentrytitle>select</refentrytitle> <manvolnum>2</manvolnum> </" +"citerefentry> が未使用を返した後のタイムアウト(秒単位)を指定します。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1033 @@ -3227,6 +3354,8 @@ msgid "" "will abort if no response is received. Also controls the timeout when " "communicating with the KDC in case of SASL bind." msgstr "" +"同期 LDAP API を呼び出しが未応答の場合に中止された後のタイムアウト(秒単位)" +"を指定します。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1048 @@ -3258,6 +3387,8 @@ msgid "" "Specify the number of records to retrieve from LDAP in a single request. " "Some LDAP servers enforce a maximum limit per-request." msgstr "" +"1 回の要求で LDAP から取得するレコード数を指定します。いくつかの LDAP サー" +"バーは 1 要求あたりの最大数の制限を強制します。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1073 @@ -3297,6 +3428,9 @@ msgid "" "a time on a single connection. On busy clients, this can result in some " "requests being denied." msgstr "" +"例: 389 DS は単一の接続において同時に 1 つのページ制御のみをサポートします。" +"負荷の高いクライアントにおいては、いくつかの要求が拒否される結果になる可能性" +"があります。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1103 @@ -3345,6 +3479,8 @@ msgid "" "Specifies what checks to perform on server certificates in a TLS session, if " "any. It can be specified as one of the following values:" msgstr "" +"もしあれば、 TLS セッションにおいてサーバー証明書において実行するためにチェッ" +"クするものを指定します。以下の値のうち 1 つを指定できます:" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1146 @@ -3352,6 +3488,8 @@ msgid "" "<emphasis>never</emphasis> = The client will not request or check any server " "certificate." msgstr "" +"<emphasis>never</emphasis> = クライアントがすべてのサーバー証明書を要求または" +"確認しません。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1150 @@ -3360,6 +3498,9 @@ msgid "" "certificate is provided, the session proceeds normally. If a bad certificate " "is provided, it will be ignored and the session proceeds normally." msgstr "" +"<emphasis>allow</emphasis> = サーバー証明書が要求されます。証明書が提供されな" +"ければ、セッションが通常通り進められます。不正な証明書が提供されると、それは" +"無視され、セッションが通常通り進められます。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1157 @@ -3368,6 +3509,9 @@ msgid "" "certificate is provided, the session proceeds normally. If a bad certificate " "is provided, the session is immediately terminated." msgstr "" +"<emphasis>try</emphasis> = サーバー証明書が要求されます。証明書が提供されなけ" +"れば、セッションが通常通り進められます。不正な証明書が提供されると、セッショ" +"ンが直ちに終了します。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1163 @@ -3376,6 +3520,8 @@ msgid "" "certificate is provided, or a bad certificate is provided, the session is " "immediately terminated." msgstr "" +"<emphasis>demand</emphasis> = サーバー証明書が要求されます。証明書が提供され" +"なければ、もしくは不正な証明書が提供されれば、セッションが直ちに終了します。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1169 @@ -3398,6 +3544,9 @@ msgid "" "Specifies the file that contains certificates for all of the Certificate " "Authorities that <command>sssd</command> will recognize." msgstr "" +"Specifies the file that contains certificates for all of the Certificate " +"Authorities that <command>sssd</command> が認識するすべての認証局に対する証明" +"書を含むファイルを指定します。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1187 sssd-ldap.5.xml:1205 sssd-ldap.5.xml:1246 @@ -3421,6 +3570,10 @@ msgid "" "be the hash of the certificate followed by '.0'. If available, " "<command>cacertdir_rehash</command> can be used to create the correct names." msgstr "" +"個別のファイルに CA 証明書を含むディレクトリーのパスを指定します。一般的に" +"ファイル名は '.0' で終わる証明書のハッシュである必要があります。利用可能なら" +"ば、<command>cacertdir_rehash</command> は正しい名前を作成するために使用でき" +"ます。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1212 @@ -3460,6 +3613,9 @@ msgid "" "list. See <citerefentry><refentrytitle>ldap.conf</refentrytitle> " "<manvolnum>5</manvolnum></citerefentry> for format." msgstr "" +"利用可能な暗号機能を指定します。これは一般的にコロン区切りの一覧です。形式に" +"ついては <citerefentry><refentrytitle>ldap.conf</refentrytitle> " +"<manvolnum>5</manvolnum></citerefentry> を参照してください。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1253 @@ -3472,6 +3628,8 @@ msgid "" "Specifies that the id_provider connection must also use <systemitem class=" "\"protocol\">tls</systemitem> to protect the channel." msgstr "" +"チャネルを保護するために <systemitem class=\"protocol\">tls</systemitem> も使" +"用する必要がある id_provider 接続を指定します。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1266 @@ -3522,6 +3680,8 @@ msgid "" "If set to true, the LDAP library would perform a reverse lookup to " "canonicalize the host name during a SASL bind." msgstr "" +"真に設定されていると、 LDAP ライブラリーは SASL バインド中にホスト名を正規化" +"するために逆引きを実行します。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1301 @@ -3556,6 +3716,9 @@ msgid "" "action is performed only if SASL is used and the mechanism selected is " "GSSAPI." msgstr "" +"Kerberos クレディンシャル (TGT) を初期化する id_provider を指定します。この操" +"作は、 SASL が使用され、選択されたメカニズムが GSSAPI である場合のみ実行され" +"ます。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1334 @@ -3649,6 +3812,8 @@ msgid "" "Select the policy to evaluate the password expiration on the client side. " "The following values are allowed:" msgstr "" +"クライアント側においてパスワード期限切れを評価するためのポリシーを選択しま" +"す。以下の値が許容されます:" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1411 @@ -3656,6 +3821,8 @@ msgid "" "<emphasis>none</emphasis> - No evaluation on the client side. This option " "cannot disable server-side password policies." msgstr "" +"<emphasis>none</emphasis> - クライアント側において評価しません。このオプショ" +"ンはサーバー側のパスワードポリシーを無効にできません。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1416 @@ -3675,6 +3842,9 @@ msgid "" "to determine if the password has expired. Use chpass_provider=krb5 to update " "these attributes when the password is changed." msgstr "" +"<emphasis>mit_kerberos</emphasis> - パスワードが期限切れしているかを決定する" +"ために MIT Kerberos により使用される属性を使用します。パスワードが変更される" +"とき、これらの属性を更新するために chpass_provider=krb5 を使用します。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1434 @@ -3684,7 +3854,7 @@ msgstr "ldap_referrals (論理値)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1437 msgid "Specifies whether automatic referral chasing should be enabled." -msgstr "" +msgstr "自動参照追跡が有効化されるかを指定します。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1441 @@ -3692,6 +3862,8 @@ msgid "" "Please note that sssd only supports referral chasing when it is compiled " "with OpenLDAP version 2.4.13 or higher." msgstr "" +"OpenLDAP バージョン 2.4.13 およびそれ以降とともにコンパイルされているとき、 " +"sssd のみが参照追跡をサポートすることに注意してください。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1452 @@ -3742,6 +3914,11 @@ msgid "" "it will result in all users being denied access. Use access_provider = allow " "to change this default behavior." msgstr "" +"access_provider = ldap を使用しているならば、このオプションは必須です。このホ" +"ストにおいてアクセスが許可されるユーザーに対して満たされる必要がある LDAP 検" +"索フィルター基準を指定します。 access_provider = ldap かつこのオプションが設" +"定されていないと、すべてのユーザーがアクセスを拒否される結果になります。この" +"初期値による動作を変更するには access_provider = allow を使用します。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1492 sssd-ldap.5.xml:1982 @@ -3766,6 +3943,8 @@ msgid "" "This example means that access to this host is restricted to members of the " "\"allowedusers\" group in ldap." msgstr "" +"この例は、このホストへのアクセスが LDAP にある \"allowedusers\" グループのメ" +"ンバーに制限されることを意味します。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1504 @@ -3792,6 +3971,8 @@ msgid "" "With this option a client side evaluation of access control attributes can " "be enabled." msgstr "" +"このオプションを使用すると、アクセス制御属性のクライアント側評価が有効になり" +"ます。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1525 @@ -3800,6 +3981,9 @@ msgid "" "i.e. the LDAP server should deny the bind request with a suitable error code " "even if the password is correct." msgstr "" +"必ずサーバー側のアクセス制御を使用することが推奨されることに注意してくださ" +"い。つまり、パスワードが正しいときさえ、適切なエラーコードでバインド要求を拒" +"否します。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1532 @@ -3812,6 +3996,8 @@ msgid "" "<emphasis>shadow</emphasis>: use the value of ldap_user_shadow_expire to " "determine if the account is expired." msgstr "" +"<emphasis>shadow</emphasis>: アカウントが失効しているかを決めるために " +"ldap_user_shadow_expire の値を使用します。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1540 @@ -3892,7 +4078,7 @@ msgstr "初期値: filter" msgid "" "Please note that it is a configuration error if a value is used more than " "once." -msgstr "" +msgstr "値が複数使用されていると設定エラーになることに注意してください。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1601 @@ -3905,6 +4091,8 @@ msgid "" "Specifies how alias dereferencing is done when performing a search. The " "following options are allowed:" msgstr "" +"検索を実行するときにどのように参照解決を実行するかを指定します。以下のオプ" +"ションが許容されます:" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1609 @@ -3917,6 +4105,8 @@ msgid "" "<emphasis>searching</emphasis>: Aliases are dereferenced in subordinates of " "the base object, but not in locating the base object of the search." msgstr "" +"<emphasis>searching</emphasis>: エイリアスはベースオブジェクトの下位に参照解" +"決されますが、検索のベースオブジェクトの位置を探すときはされません。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1618 @@ -3924,6 +4114,8 @@ msgid "" "<emphasis>finding</emphasis>: Aliases are only dereferenced when locating " "the base object of the search." msgstr "" +"<emphasis>finding</emphasis>: エイリアスは検索のベースオブジェクトの位置を探" +"すときのみ参照解決されます。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1623 @@ -3931,6 +4123,8 @@ msgid "" "<emphasis>always</emphasis>: Aliases are dereferenced both in searching and " "in locating the base object of the search." msgstr "" +"<emphasis>always</emphasis>: エイリアスは検索のベースオブジェクトを検索すると" +"きも位置を検索するときも参照解決されます。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1628 @@ -3950,6 +4144,11 @@ msgid "" "manvolnum> </citerefentry> manual page for full details. <placeholder type=" "\"variablelist\" id=\"0\"/>" msgstr "" +"SSSD ドメインに適用するすべての全体設定オプションを LDAP ドメインに適用しま" +"す。完全な詳細は <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " +"<manvolnum>5</manvolnum> </citerefentry> マニュアルページの <quote>ドメインセ" +"クション</quote> を参照してください。 <placeholder type=\"variablelist\" id=" +"\"0\"/>" #. type: Content of: <reference><refentry><refsect1><title> #: sssd-ldap.5.xml:1639 @@ -4168,22 +4367,15 @@ msgstr "<placeholder type=\"variablelist\" id=\"0\"/>" #. type: Content of: <reference><refentry><refsect1><para> #: sssd-ldap.5.xml:1815 -#, fuzzy -#| msgid "" -#| "The skeleton directory, which contains files and directories to be copied " -#| "in the user's home directory, when the home directory is created by " -#| "<citerefentry> <refentrytitle>sss_useradd</refentrytitle> <manvolnum>8</" -#| "manvolnum> </citerefentry>" msgid "" "This manual page only describes attribute name mapping. For detailed " "explanation of sudo related attribute semantics, see <citerefentry> " "<refentrytitle>sudoers.ldap</refentrytitle><manvolnum>5</manvolnum> </" "citerefentry>" msgstr "" -"ホームディレクトリーが <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry> により作成されると" -"き、ユーザーのホームディレクトリーにコピーされるファイルおよびディレクトリー" -"を含む、スケルトンディレクトリーです。" +"このマニュアルページは属性名マッピングのみを説明します。 sudo に関連する属性" +"セマンティックの詳細な説明は <citerefentry> <refentrytitle>sudoers.ldap</" +"refentrytitle><manvolnum>5</manvolnum> </citerefentry> を参照してください" #. type: Content of: <reference><refentry><refsect1><title> #: sssd-ldap.5.xml:1825 @@ -4564,6 +4756,9 @@ msgid "" "modules password and will never prompt the user - if no password is " "available or the password is not appropriate, the user will be denied access." msgstr "" +"引数 use_first_pass は強制的にモジュールが前にスタックされたモジュールのパス" +"ワードを使用して、ユーザーに入力させません。パスワードが何も利用可能ではな" +"い、またはパスワードが適切でなければ、ユーザーがアクセスを拒否されます。" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: pam_sss.8.xml:84 @@ -4576,6 +4771,8 @@ msgid "" "When password changing enforce the module to set the new password to the one " "provided by a previously stacked password module." msgstr "" +"パスワードを変更するとき、モジュールが強制的に新しいパスワードを、前にスタッ" +"クされたパスワードモジュールに設定します。" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: pam_sss.8.xml:94 @@ -4588,6 +4785,8 @@ msgid "" "If specified the user is asked another N times for a password if " "authentication fails. Default is 0." msgstr "" +"指定されていると、認証に失敗した場合にパスワードをあと N 回ユーザーに問い合わ" +"せます。初期値は 0 です。" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: pam_sss.8.xml:99 @@ -4738,6 +4937,11 @@ msgid "" "<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" "citerefentry> manual page." msgstr "" +"このマニュアルは <citerefentry> <refentrytitle>sssd</refentrytitle> " +"<manvolnum>8</manvolnum> </citerefentry> に対して簡単なアクセス制御の設定を説" +"明しています。詳細は <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " +"<manvolnum>5</manvolnum> </citerefentry> マニュアルページの <quote>ファイル形" +"式</quote> セクションを参照してください。" #. type: Content of: <reference><refentry><refsect1><para> #: sssd-simple.5.xml:38 @@ -4745,6 +4949,8 @@ msgid "" "The simple access provider grants or denies access based on an access or " "deny list of user or group names. The following rules apply:" msgstr "" +"シンプルアクセスプロバイダーは、ユーザー名またはグループ名のアクセスまたは拒" +"否の一覧に基づいてアクセスを許可または拒否します。以下の例を適用します:" #. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> #: sssd-simple.5.xml:43 @@ -4757,6 +4963,9 @@ msgid "" "If any list is provided, the order of evaluation is allow,deny. This means " "that any matching deny rule will supersede any matched allow rule." msgstr "" +"何らかの一覧が提供されていると、許可(allow)、拒否(deny)の順に評価されま" +"す。拒否ルールに一致するすべてのものは、許可ルールに一致するすべてのものを更" +"新することを意味します。" #. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> #: sssd-simple.5.xml:54 @@ -4764,6 +4973,8 @@ msgid "" "If either or both \"allow\" lists are provided, all users are denied unless " "they appear in the list." msgstr "" +"\"allow\" 一覧が提供されていると、すべてのユーザーはこの一覧に表れなければ拒" +"否されます。" #. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> #: sssd-simple.5.xml:60 @@ -4771,6 +4982,8 @@ msgid "" "If only \"deny\" lists are provided, all users are granted access unless " "they appear in the list." msgstr "" +"\"deny\" 一覧のみが提供されていると、ユーザーがこの一覧に表れない限り、すべて" +"のユーザーがアクセスを許可されます。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-simple.5.xml:78 @@ -4891,6 +5104,11 @@ msgid "" "FORMAT</quote> section of the <citerefentry> <refentrytitle>sssd.conf</" "refentrytitle> <manvolnum>5</manvolnum> </citerefentry> manual page." msgstr "" +"このマニュアルページは <citerefentry> <refentrytitle>sssd</refentrytitle> " +"<manvolnum>8</manvolnum> </citerefentry> に対する IPA プロバイダーの設定を説" +"明しています。詳細な構文の参考資料は <citerefentry> <refentrytitle>sssd." +"conf</refentrytitle> <manvolnum>5</manvolnum> </citerefentry> マニュアルペー" +"ジの <quote>ファイル形式</quote> を参照してください。" #. type: Content of: <reference><refentry><refsect1><para> #: sssd-ipa.5.xml:36 @@ -4900,6 +5118,10 @@ msgid "" "requires that the machine be joined to the IPA domain; configuration is " "almost entirely self-discovered and obtained directly from the server." msgstr "" +"IPA プロバイダーは IPA サーバーに接続するために使用されるバックエンドです。" +"(IPA サーバーに関する詳細は freeipa.org のウェブサイトを参照してください。)" +"このプロバイダーは、マシンが IPA ドメインに参加していて、設定がすでに全体的に" +"自己検索され、サーバーから直接取得されている必要があります。" #. type: Content of: <reference><refentry><refsect1><para> #: sssd-ipa.5.xml:43 @@ -5070,6 +5292,7 @@ msgid "" "Verify with the help of krb5_keytab that the TGT obtained has not been " "spoofed." msgstr "" +"取得された TGT が改ざんされていないかを krb5_keytab の支援で確認します。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:209 @@ -5105,6 +5328,8 @@ msgid "" "connecting to IPA LDAP and also for AS requests. This feature is available " "with MIT Kerberos >= 1.7" msgstr "" +"IPA LDAP と AS 要求に対して接続するとき、ホストとユーザープリンシパルを正規化" +"するかを指定します。この機能は MIT Kerberos >= 1.7 で利用可能です。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:247 @@ -5475,6 +5700,9 @@ msgid "" "com is one of the domains in the <replaceable>[sssd]</replaceable> section. " "This examples shows only the ipa provider-specific options." msgstr "" +"以下の例は、SSSD が正しく設定され、example.com が <replaceable>[sssd]</" +"replaceable> セクションにあるドメインの 1 つであることを仮定しています。この" +"例は IPA プロバイダー固有のオプションのみを示しています。" #. type: Content of: <reference><refentry><refsect1><para><programlisting> #: sssd-ipa.5.xml:553 @@ -5677,6 +5905,9 @@ msgid "" "close and reopen them. This is meant to facilitate log rolling with programs " "like logrotate." msgstr "" +"SSSD が現在のデバッグファイルディスクリプターに書き込むことを止めて、それらを" +"閉じてから開きなおすよう指示します。これは logrotate のようなプログラムを用い" +"てログローテーションを促進することを意味します。" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sssd.8.xml:170 @@ -5689,6 +5920,8 @@ msgid "" "Tells the SSSD to simulate offline operation for one minute. This is mostly " "useful for testing purposes." msgstr "" +"SSSD に 1 分間オフライン操作をシミュレーションするよう指示します。テスト目的" +"のためにほぼ有用です。" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sssd.8.xml:179 @@ -5701,6 +5934,7 @@ msgid "" "Tells the SSSD to go online immediately. This is mostly useful for testing " "purposes." msgstr "" +"SSSD に直ちにオンラインになるよう指示します。テスト目的のためにほぼ有用です。" #. type: Content of: <reference><refentry><refsect1><para> #: sssd.8.xml:193 @@ -5771,6 +6005,13 @@ msgid "" "<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" "citerefentry> for more details on these parameters." msgstr "" +"平文のパスワードは、標準入力から読み込まれます、または対話的に入力されます。" +"解読しにくくされたパスワードが指定された SSSD ドメインの " +"<quote>ldap_default_authtok</quote> パラメータに置かれます。また " +"<quote>ldap_default_authtok_type</quote> パラメーターが " +"<quote>obfuscated_password</quote> に設定されます。これらのパラメーターの詳細" +"は <citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" +"manvolnum> </citerefentry> を参照してください。" #. type: Content of: <reference><refentry><refsect1><para> #: sss_obfuscate.8.xml:49 @@ -6109,6 +6350,9 @@ msgid "" "<command>sssd</command> will construct a UPN using the format " "<replaceable>username</replaceable>@<replaceable>krb5_realm</replaceable>." msgstr "" +"UPN が識別バックエンド <command>sssd</command> において利用できない場合は、形" +"式 <replaceable>username</replaceable>@<replaceable>krb5_realm</replaceable> " +"を使用して UPN を構築します。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-krb5.5.xml:106 @@ -6247,6 +6491,8 @@ msgid "" "Timeout in seconds after an online authentication or change password request " "is aborted. If possible the authentication request is continued offline." msgstr "" +"オンライン認証またはパスワード変更要求が中止された後の秒単位のタイムアウトで" +"す。可能ならば、認証要求がオフラインで継続されます。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-krb5.5.xml:241 @@ -6324,7 +6570,7 @@ msgstr "<emphasis>d</emphasis> 日。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-krb5.5.xml:295 sssd-krb5.5.xml:331 msgid "If there is no delimiter <emphasis>s</emphasis> is assumed." -msgstr "" +msgstr "デリミター <emphasis>s</emphasis> がないと仮定されている場合です。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-krb5.5.xml:299 @@ -6333,6 +6579,8 @@ msgid "" "renewable lifetime to one and a half hours please use '90m' instead of " "'1h30m'." msgstr "" +"単位は混在できないことに注意してください。更新可能な生存期間を1時間半に設定し" +"たければ、 '1h30m' の代わりに '90m' を使用してください。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-krb5.5.xml:305 @@ -6357,6 +6605,8 @@ msgid "" "Please note that it is not possible to mix units. If you want to set the " "lifetime to one and a half hours please use '90m' instead of '1h30m'." msgstr "" +"単位は混在できないことに注意してください。更新可能な生存期間を1時間半に設定し" +"たければ、 '1h30m' の代わりに '90m' を使用してください。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-krb5.5.xml:340 @@ -6377,6 +6627,8 @@ msgid "" "The time in seconds between two checks if the TGT should be renewed. TGTs " "are renewed if about half of their lifetime is exceeded." msgstr "" +"TGT を更新すべきかを確認する秒単位の間隔。生存期間の半分が超えていると、 TGT " +"は更新されます。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-krb5.5.xml:355 @@ -6396,6 +6648,8 @@ msgid "" "Enables flexible authentication secure tunneling (FAST) for Kerberos pre-" "authentication. The following options are supported:" msgstr "" +"Kerberos の事前認証のために flexible authentication secure tunneling (FAST) " +"を有効化します。以下のオプションがサポートされます:" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-krb5.5.xml:373 @@ -6441,6 +6695,9 @@ msgid "" "and above. If sssd used with an older version using this option is a " "configuration error." msgstr "" +"sssd は MIT Kerberos バージョン 1.8 およびそれ以上のみで fast をサポートする" +"ことに注意してください。 sssd が古いバージョンで使用していると、このオプショ" +"ンは設定エラーになります。" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-krb5.5.xml:400 @@ -6458,6 +6715,8 @@ msgid "" "Specifies if the host and user principal should be canonicalized. This " "feature is available with MIT Kerberos >= 1.7" msgstr "" +"ホストおよびユーザーのプリンシパルが正規化されるかどうかを指定します。この機" +"能は MIT Kerberos >= 1.7 にて利用可能です。" #. type: Content of: <reference><refentry><refsect1><para> #: sssd-krb5.5.xml:65 @@ -6468,6 +6727,11 @@ msgid "" "SECTIONS</quote> for details on the configuration of a SSSD domain. " "<placeholder type=\"variablelist\" id=\"0\"/>" msgstr "" +"認証モジュール krb5 が SSSD ドメインにおいて使用されていると、以下のオプショ" +"ンが使用される必要があります。 SSSD ドメインの設定における詳細は " +"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" +"manvolnum> </citerefentry> マニュアルページの <quote>ドメインセクション</" +"quote> を参照してください。 <placeholder type=\"variablelist\" id=\"0\"/>" #. type: Content of: <reference><refentry><refsect1><para> #: sssd-krb5.5.xml:434 @@ -6763,6 +7027,9 @@ msgid "" "identified by its name <replaceable>GROUP</replaceable>. The information " "includes the group ID number, members of the group and the parent group." msgstr "" +"<command>sss_groupshow</command> はその名前 <replaceable>GROUP</replaceable> " +"により識別されるグループに関する情報を表示します。情報はグループ ID 番号、グ" +"ループのメンバーおよび親グループを含みます。" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_groupshow.8.xml:43 @@ -6826,6 +7093,9 @@ msgid "" "<replaceable>LOGIN</replaceable> to reflect the changes that are specified " "on the command line." msgstr "" +"<command>sss_usermod</command> は、コマンドラインにおいて指定された変更を反映" +"するために、 <replaceable>LOGIN</replaceable> により指定されたアカウントを変" +"更します。" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_usermod.8.xml:60 @@ -6844,13 +7114,16 @@ msgid "" "replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " "a comma separated list of group names." msgstr "" +"このユーザーを <replaceable>GROUPS</replaceable> パラメーターにより指定された" +"グループに追加します。 <replaceable>GROUPS</replaceable> パラメーターはグルー" +"プ名のカンマ区切り一覧です。" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_usermod.8.xml:96 msgid "" "Remove this user from groups specified by the <replaceable>GROUPS</" "replaceable> parameter." -msgstr "" +msgstr "<replaceable>GROUPS</replaceable> " #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_usermod.8.xml:103 @@ -6902,27 +7175,21 @@ msgstr "" #. type: Content of: <reference><refentry><refnamediv><refname> #: sss_cache.8.xml:10 sss_cache.8.xml:15 -#, fuzzy -#| msgid "sss_obfuscate" msgid "sss_cache" -msgstr "sss_obfuscate" +msgstr "sss_cache" #. type: Content of: <reference><refentry><refnamediv><refpurpose> #: sss_cache.8.xml:16 msgid "perform cache cleanup" -msgstr "" +msgstr "キャッシュクリーンアップを実行する" #. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> #: sss_cache.8.xml:21 -#, fuzzy -#| msgid "" -#| "<command>sssd</command> <arg choice='opt'> <replaceable>options</" -#| "replaceable> </arg>" msgid "" "<command>sss_cache</command> <arg choice='opt'> <replaceable>options</" "replaceable> </arg>" msgstr "" -"<command>sssd</command> <arg choice='opt'> <replaceable>options</" +"<command>sss_cache</command> <arg choice='opt'> <replaceable>options</" "replaceable> </arg>" #. type: Content of: <reference><refentry><refsect1><para> @@ -6932,28 +7199,26 @@ msgid "" "records are forced to be reloaded from server as soon as related SSSD " "backend is online." msgstr "" +"<command>sss_cache</command> は SSSD キャッシュにあるレコードを無効にします。" +"無効化されたレコードは、関連する SSSD バックエンドがオンラインになるとすぐ" +"に、サーバーから強制的に再読み込みされます。" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:42 -#, fuzzy -#| msgid "" -#| "<option>-u</option>,<option>--uid</option> <replaceable>UID</replaceable>" msgid "" "<option>-u</option>,<option>--user</option> <replaceable>login</replaceable>" msgstr "" -"<option>-u</option>,<option>--uid</option> <replaceable>UID</replaceable>" +"<option>-u</option>,<option>--user</option> <replaceable>login</replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:47 msgid "Invalidate specific user." -msgstr "" +msgstr "特定のユーザーを無効にします。" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:53 -#, fuzzy -#| msgid "<option>-h</option>,<option>--help</option>" msgid "<option>-U</option>,<option>--users</option>" -msgstr "<option>-h</option>,<option>--help</option>" +msgstr "<option>-U</option>,<option>--users</option>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:57 @@ -6961,30 +7226,25 @@ msgid "" "Invalidate all user records. This option overrides invalidation of specific " "user if it was also set." msgstr "" +"すべてのユーザーレコードを無効にします。このオプションも設定されていると、こ" +"れが特定のユーザーの無効化を上書きします。" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:64 -#, fuzzy -#| msgid "" -#| "<option>-G</option>,<option>--groups</option> <replaceable>GROUPS</" -#| "replaceable>" msgid "" "<option>-g</option>,<option>--group</option> <replaceable>group</replaceable>" msgstr "" -"<option>-G</option>,<option>--groups</option> <replaceable>GROUPS</" -"replaceable>" +"<option>-g</option>,<option>--group</option> <replaceable>group</replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:69 msgid "Invalidate specific group." -msgstr "" +msgstr "特定のグループを無効にします。" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:75 -#, fuzzy -#| msgid "<option>-r</option>,<option>--remove</option>" msgid "<option>-G</option>,<option>--groups</option>" -msgstr "<option>-r</option>,<option>--remove</option>" +msgstr "<option>-G</option>,<option>--groups</option>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:79 @@ -6992,31 +7252,27 @@ msgid "" "Invalidate all group records. This option overrides invalidation of specific " "group if it was also set." msgstr "" +"すべてのグループレコードを無効にします。このオプションも設定されていると、こ" +"れが特定のグループの無効化を上書きします。" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:86 -#, fuzzy -#| msgid "" -#| "<option>-G</option>,<option>--groups</option> <replaceable>GROUPS</" -#| "replaceable>" msgid "" "<option>-n</option>,<option>--netgroup</option> <replaceable>netgroup</" "replaceable>" msgstr "" -"<option>-G</option>,<option>--groups</option> <replaceable>GROUPS</" +"<option>-n</option>,<option>--netgroup</option> <replaceable>netgroup</" "replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:91 msgid "Invalidate specific netgroup." -msgstr "" +msgstr "特定のネットワークグループを無効にします。" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:97 -#, fuzzy -#| msgid "<option>-h</option>,<option>--help</option>" msgid "<option>-N</option>,<option>--netgroups</option>" -msgstr "<option>-h</option>,<option>--help</option>" +msgstr "<option>-N</option>,<option>--netgroups</option>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:101 @@ -7024,52 +7280,43 @@ msgid "" "Invalidate all netgroup records. This option overrides invalidation of " "specific netgroup if it was also set." msgstr "" +"すべてのネットワークグループレコードを無効にします。このオプションが設定され" +"ていると、これが特定のネットワークグループの無効化を上書きします。" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:108 -#, fuzzy -#| msgid "" -#| "<option>-d</option>,<option>--domain</option> <replaceable>DOMAIN</" -#| "replaceable>" msgid "" "<option>-d</option>,<option>--domain</option> <replaceable>domain</" "replaceable>" msgstr "" -"<option>-d</option>,<option>--domain</option> <replaceable>DOMAIN</" +"<option>-d</option>,<option>--domain</option> <replaceable>domain</" "replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:113 msgid "Restrict invalidation process only to a particular domain." -msgstr "" +msgstr "無効化プロセスを特定のドメインのみに制限します。" #. type: Content of: <reference><refentry><refnamediv><refname> #: sss_debuglevel.8.xml:10 sss_debuglevel.8.xml:15 -#, fuzzy -#| msgid "sss_userdel" msgid "sss_debuglevel" -msgstr "sss_userdel" +msgstr "sss_debuglevel" #. type: Content of: <reference><refentry><refnamediv><refpurpose> #: sss_debuglevel.8.xml:16 msgid "change debug level while SSSD is running" -msgstr "" +msgstr "SSSD が実行中にデバッグレベルを変更する" #. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> #: sss_debuglevel.8.xml:21 -#, fuzzy -#| msgid "" -#| "<command>sss_userdel</command> <arg choice='opt'> <replaceable>options</" -#| "replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -#| "arg>" msgid "" "<command>sss_debuglevel</command> <arg choice='opt'> <replaceable>options</" "replaceable> </arg> <arg choice='plain'><replaceable>NEW_DEBUG_LEVEL</" "replaceable></arg>" msgstr "" -"<command>sss_userdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" +"<command>sss_debuglevel</command> <arg choice='opt'> <replaceable>options</" +"replaceable> </arg> <arg choice='plain'><replaceable>NEW_DEBUG_LEVEL</" +"replaceable></arg>" #. type: Content of: <reference><refentry><refsect1><para> #: sss_debuglevel.8.xml:32 @@ -7078,42 +7325,40 @@ msgid "" "providers to <replaceable>NEW_DEBUG_LEVEL</replaceable> while SSSD is " "running." msgstr "" +"<command>sss_debuglevel</command> は SSSD が実行中に SSSD モニターとプロバイ" +"ダーのデバッグレベルを <replaceable>NEW_DEBUG_LEVEL</replaceable> に変更しま" +"す。" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_debuglevel.8.xml:59 msgid "<replaceable>NEW_DEBUG_LEVEL</replaceable>" -msgstr "" +msgstr "<replaceable>NEW_DEBUG_LEVEL</replaceable>" #. type: Content of: <reference><refentry><refnamediv><refname> #: sss_ssh_authorizedkeys.1.xml:10 sss_ssh_authorizedkeys.1.xml:15 msgid "sss_ssh_authorizedkeys" -msgstr "" +msgstr "sss_ssh_authorizedkeys" #. type: Content of: <reference><refentry><refmeta><manvolnum> #: sss_ssh_authorizedkeys.1.xml:11 sss_ssh_knownhostsproxy.1.xml:11 msgid "1" -msgstr "" +msgstr "1" #. type: Content of: <reference><refentry><refnamediv><refpurpose> #: sss_ssh_authorizedkeys.1.xml:16 msgid "get OpenSSH authorized keys" -msgstr "" +msgstr "OpenSSH 認可キーを取得する" #. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> #: sss_ssh_authorizedkeys.1.xml:21 -#, fuzzy -#| msgid "" -#| "<command>sss_userdel</command> <arg choice='opt'> <replaceable>options</" -#| "replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -#| "arg>" msgid "" "<command>sss_ssh_authorizedkeys</command> <arg choice='opt'> " "<replaceable>options</replaceable> </arg> <arg " "choice='plain'><replaceable>USER</replaceable></arg>" msgstr "" -"<command>sss_userdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" +"<command>sss_ssh_authorizedkeys</command> <arg choice='opt'> " +"<replaceable>options</replaceable> </arg> <arg " +"choice='plain'><replaceable>USER</replaceable></arg>" #. type: Content of: <reference><refentry><refsect1><para> #: sss_ssh_authorizedkeys.1.xml:32 @@ -7124,16 +7369,14 @@ msgid "" "<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" "citerefentry> for more information)." msgstr "" +"<command>sss_ssh_authorizedkeys</command> はユーザー <replaceable>USER</" +"replaceable> の SSH 公開鍵を取得して、 OpenSSH authorized_keys 形式に出力しま" +"す (詳細は <citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</" +"manvolnum></citerefentry> の <quote>AUTHORIZED_KEYS FILE FORMAT</quote> セク" +"ションを参照してください)。" #. type: Content of: <reference><refentry><refsect1><para> #: sss_ssh_authorizedkeys.1.xml:41 -#, fuzzy -#| msgid "" -#| "<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -#| "manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -#| "refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -#| "<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </" -#| "citerefentry>" msgid "" "<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" "citerefentry> can be configured to use <command>sss_ssh_authorizedkeys</" @@ -7142,24 +7385,21 @@ msgid "" "quote> <citerefentry> <refentrytitle>sshd_config</refentrytitle> " "<manvolnum>5</manvolnum></citerefentry> options." msgstr "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" +"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" +"citerefentry> は、 <quote>AuthorizedKeysCommand</quote> または " +"<quote>PubkeyAgent</quote> <citerefentry> <refentrytitle>sshd_config</" +"refentrytitle> <manvolnum>5</manvolnum></citerefentry> オプションのサポート付" +"きでコンパイルされていると、公開鍵ユーザー認証のために " +"<command>sss_ssh_authorizedkeys</command> を使用するために設定できます。" #. type: Content of: <reference><refentry><refsect1><para><programlisting> #: sss_ssh_authorizedkeys.1.xml:58 #, no-wrap msgid "AuthorizedKeysCommand /usr/bin/sss_ssh_authorizedkeys\n" -msgstr "" +msgstr "AuthorizedKeysCommand /usr/bin/sss_ssh_authorizedkeys\n" #. type: Content of: <reference><refentry><refsect1><para> #: sss_ssh_authorizedkeys.1.xml:51 -#, fuzzy -#| msgid "" -#| "<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -#| "manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd</" -#| "refentrytitle><manvolnum>8</manvolnum> </citerefentry>" msgid "" "If <quote>AuthorizedKeysCommand</quote> is supported, " "<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" @@ -7167,23 +7407,21 @@ msgid "" "in <citerefentry> <refentrytitle>sshd_config</refentrytitle> <manvolnum>5</" "manvolnum></citerefentry>: <placeholder type=\"programlisting\" id=\"0\"/>" msgstr "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" +"<quote>AuthorizedKeysCommand</quote> がサポートされていると、 " +"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" +"citerefentry> は <citerefentry> <refentrytitle>sshd_config</refentrytitle> " +"<manvolnum>5</manvolnum></citerefentry> に以下のディレクティブを置くことによ" +"り、これを使用するために設定できます: <placeholder type=\"programlisting\" " +"id=\"0\"/>" #. type: Content of: <reference><refentry><refsect1><para><programlisting> #: sss_ssh_authorizedkeys.1.xml:69 #, no-wrap msgid "PubKeyAgent /usr/bin/sss_ssh_authorizedkeys %u\n" -msgstr "" +msgstr "PubKeyAgent /usr/bin/sss_ssh_authorizedkeys %u\n" #. type: Content of: <reference><refentry><refsect1><para> #: sss_ssh_authorizedkeys.1.xml:62 -#, fuzzy -#| msgid "" -#| "<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -#| "manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd</" -#| "refentrytitle><manvolnum>8</manvolnum> </citerefentry>" msgid "" "If <quote>PubkeyAgent</quote> is supported, " "<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" @@ -7192,25 +7430,23 @@ msgid "" "manvolnum></citerefentry> configuration: <placeholder type=\"programlisting" "\" id=\"0\"/>" msgstr "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" +"<quote>PubkeyAgent</quote> がサポートされていると、 " +"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" +"citerefentry> は <citerefentry> <refentrytitle>sshd</refentrytitle> " +"<manvolnum>8</manvolnum></citerefentry> 設定に以下のディレクティブを置くこと" +"により、これを使用するために設定できます: <placeholder type=\"programlisting" +"\" id=\"0\"/>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_ssh_authorizedkeys.1.xml:87 msgid "" "Search for user public keys in SSSD domain <replaceable>DOMAIN</replaceable>." msgstr "" +"SSSD ドメイン <replaceable>DOMAIN</replaceable> にあるユーザーの公開鍵を検索" +"します。" #. type: Content of: <reference><refentry><refsect1><para> #: sss_ssh_authorizedkeys.1.xml:98 -#, fuzzy -#| msgid "" -#| "<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -#| "manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -#| "refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -#| "<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </" -#| "citerefentry>" msgid "" "<citerefentry> <refentrytitle>sshd</refentrytitle><manvolnum>8</manvolnum> </" "citerefentry>, <citerefentry> <refentrytitle>sshd_config</" @@ -7218,37 +7454,34 @@ msgid "" "<refentrytitle>sss_ssh_knownhostsproxy</refentrytitle><manvolnum>1</" "manvolnum> </citerefentry>." msgstr "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" +"<citerefentry> <refentrytitle>sshd</refentrytitle><manvolnum>8</manvolnum> </" +"citerefentry>, <citerefentry> <refentrytitle>sshd_config</" "refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" +"<refentrytitle>sss_ssh_knownhostsproxy</refentrytitle><manvolnum>1</" +"manvolnum> </citerefentry>." #. type: Content of: <reference><refentry><refnamediv><refname> #: sss_ssh_knownhostsproxy.1.xml:10 sss_ssh_knownhostsproxy.1.xml:15 msgid "sss_ssh_knownhostsproxy" -msgstr "" +msgstr "sss_ssh_knownhostsproxy" #. type: Content of: <reference><refentry><refnamediv><refpurpose> #: sss_ssh_knownhostsproxy.1.xml:16 msgid "get OpenSSH host keys" -msgstr "" +msgstr "OpenSSH ホストキーを取得します" #. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> #: sss_ssh_knownhostsproxy.1.xml:21 -#, fuzzy -#| msgid "" -#| "<command>sss_groupshow</command> <arg choice='opt'> <replaceable>options</" -#| "replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -#| "arg>" msgid "" "<command>sss_ssh_knownhostsproxy</command> <arg choice='opt'> " "<replaceable>options</replaceable> </arg> <arg " "choice='plain'><replaceable>HOST</replaceable></arg> <arg " "choice='opt'><replaceable>PROXY_COMMAND</replaceable></arg>" msgstr "" -"<command>sss_groupshow</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" +"<command>sss_ssh_knownhostsproxy</command> <arg choice='opt'> " +"<replaceable>options</replaceable> </arg> <arg " +"choice='plain'><replaceable>HOST</replaceable></arg> <arg " +"choice='opt'><replaceable>PROXY_COMMAND</replaceable></arg>" #. type: Content of: <reference><refentry><refsect1><para> #: sss_ssh_knownhostsproxy.1.xml:33 @@ -7260,6 +7493,12 @@ msgid "" "manvolnum></citerefentry> for more information) <filename>/var/lib/sss/" "pubconf/known_hosts</filename> and estabilishes connection to the host." msgstr "" +"<command>sss_ssh_knownhostsproxy</command> はホスト <replaceable>HOST</" +"replaceable> の SSH ホスト鍵を取得して、個別の OpenSSH known_hosts ファイル " +"(詳細は <citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</" +"manvolnum></citerefentry> の <quote>SSH_KNOWN_HOSTS FILE FORMAT</quote> セク" +"ションを参照してください) <filename>/var/lib/sss/pubconf/known_hosts</" +"filename> に保存して、ホストへの接続を確立します。" #. type: Content of: <reference><refentry><refsect1><para> #: sss_ssh_knownhostsproxy.1.xml:43 @@ -7267,6 +7506,8 @@ msgid "" "If <replaceable>PROXY_COMMAND</replaceable> is specified, it is used to " "create the connection to the host instead of opening a socket." msgstr "" +"<replaceable>PROXY_COMMAND</replaceable> が指定されていると、ソケットを開く代" +"わりにホストへの接続を作成するために使用されます。" #. type: Content of: <reference><refentry><refsect1><para><programlisting> #: sss_ssh_knownhostsproxy.1.xml:55 @@ -7275,16 +7516,11 @@ msgid "" "ProxyCommand /usr/bin/sss_ssh_knownhostsproxy -p %p %h\n" "GlobalKnownHostsFile2 /var/lib/sss/pubconf/known_hosts\n" msgstr "" +"ProxyCommand /usr/bin/sss_ssh_knownhostsproxy -p %p %h\n" +"GlobalKnownHostsFile2 /var/lib/sss/pubconf/known_hosts\n" #. type: Content of: <reference><refentry><refsect1><para> #: sss_ssh_knownhostsproxy.1.xml:48 -#, fuzzy -#| msgid "" -#| "<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -#| "manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -#| "refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -#| "<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </" -#| "citerefentry>" msgid "" "<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" "citerefentry> can be configured to use <command>sss_ssh_knownhostsproxy</" @@ -7292,22 +7528,19 @@ msgid "" "<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" "citerefentry> configuration: <placeholder type=\"programlisting\" id=\"0\"/>" msgstr "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" +"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" +"citerefentry> は <citerefentry><refentrytitle>ssh</refentrytitle> " +"<manvolnum>1</manvolnum></citerefentry> 設定に対して以下のディレクティブを使" +"用することにより、ホストキー認証に <command>sss_ssh_knownhostsproxy</" +"command> を使用するために設定できます: <placeholder type=\"programlisting\" " +"id=\"0\"/>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_ssh_knownhostsproxy.1.xml:69 -#, fuzzy -#| msgid "" -#| "<option>-c</option>,<option>--gecos</option> <replaceable>COMMENT</" -#| "replaceable>" msgid "" "<option>-p</option>,<option>--port</option> <replaceable>PORT</replaceable>" msgstr "" -"<option>-c</option>,<option>--gecos</option> <replaceable>COMMENT</" -"replaceable>" +"<option>-p</option>,<option>--port</option> <replaceable>PORT</replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_ssh_knownhostsproxy.1.xml:74 @@ -7315,22 +7548,19 @@ msgid "" "Use port <replaceable>PORT</replaceable> to connect to the host. By " "default, port 22 is used." msgstr "" +"ホストに接続するためにポート <replaceable>PORT</replaceable> を使用します。初" +"期値ではポート 22 が使用されます。" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_ssh_knownhostsproxy.1.xml:86 msgid "" "Search for host public keys in SSSD domain <replaceable>DOMAIN</replaceable>." msgstr "" +"SSSD ドメイン <replaceable>DOMAIN</replaceable> においてホスト公開鍵を検索し" +"ます。" #. type: Content of: <reference><refentry><refsect1><para> #: sss_ssh_knownhostsproxy.1.xml:97 -#, fuzzy -#| msgid "" -#| "<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -#| "manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -#| "refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -#| "<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </" -#| "citerefentry>" msgid "" "<citerefentry> <refentrytitle>ssh</refentrytitle><manvolnum>8</manvolnum> </" "citerefentry>, <citerefentry> <refentrytitle>ssh_config</" @@ -7338,10 +7568,11 @@ msgid "" "<refentrytitle>sss_ssh_authorizedkeys</refentrytitle><manvolnum>1</" "manvolnum> </citerefentry>." msgstr "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" +"<citerefentry> <refentrytitle>ssh</refentrytitle><manvolnum>8</manvolnum> </" +"citerefentry>, <citerefentry> <refentrytitle>ssh_config</" "refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" +"<refentrytitle>sss_ssh_authorizedkeys</refentrytitle><manvolnum>1</" +"manvolnum> </citerefentry>." #. type: Content of: <refsect1><title> #: include/service_discovery.xml:2 @@ -7354,6 +7585,8 @@ msgid "" "The service discovery feature allows back ends to automatically find the " "appropriate servers to connect to using a special DNS query." msgstr "" +"サービス探索機能により、バックエンドが特別な DNS 問い合わせを使用して、接続す" +"るための適切なサービスを自動的に検索できます。" #. type: Content of: <refsect1><refsect2><title> #: include/service_discovery.xml:9 @@ -7399,6 +7632,8 @@ msgid "" "The queries usually specify _tcp as the protocol. Exceptions are documented " "in respective option description." msgstr "" +"問い合わせは通常プロトコルとして _tcp を指定します。その他はそれぞれのオプ" +"ションの説明にドキュメント化されています。" #. type: Content of: <refsect1><refsect2><title> #: include/service_discovery.xml:42 @@ -7497,13 +7732,14 @@ msgid "" "default value as well as the lowest allowed value, 0xFFF0 is the most " "verbose mode. This setting overrides the settings from config file." msgstr "" +"デバッグレベルを指示するビットマスクは見ることができます。 0x0010 は初期値で" +"あり、利用できる最小値です。 0xFFF0 は最も冗長なモードです。この設定は設定" +"ファイルの設定により上書きされます。" #. type: Content of: <listitem><para> #: include/debug_levels.xml:8 -#, fuzzy -#| msgid "Currently sssd supports the following values:" msgid "Currently supported debug levels:" -msgstr "現在 sssd は以下の値をサポートします:" +msgstr "現在サポートされるデバッグレベル:" #. type: Content of: <listitem><para> #: include/debug_levels.xml:11 @@ -7511,6 +7747,8 @@ msgid "" "<emphasis>0x0010</emphasis>: Fatal failures. Anything that would prevent " "SSSD from starting up or causes it to cease running." msgstr "" +"<emphasis>0x0010</emphasis>: 致命的なエラー。 SSSD が開始するのを妨げる、また" +"は実行を中断させることすべてです。" #. type: Content of: <listitem><para> #: include/debug_levels.xml:15 @@ -7519,6 +7757,8 @@ msgid "" "the SSSD, but one that indicates that at least one major feature is not " "going to work properly." msgstr "" +"<emphasis>0x0020</emphasis>: 重大なエラー。 SSSD が強制停止しないが、複数の機" +"能が正しく動作しないエラーです。" #. type: Content of: <listitem><para> #: include/debug_levels.xml:20 @@ -7526,6 +7766,8 @@ msgid "" "<emphasis>0x0040</emphasis>: Serious failures. An error announcing that a " "particular request or operation has failed." msgstr "" +"<emphasis>0x0040</emphasis>: 深刻なエラー。特定の要求や操作が失敗したことを通" +"知するエラーです。" #. type: Content of: <listitem><para> #: include/debug_levels.xml:24 @@ -7533,35 +7775,29 @@ msgid "" "<emphasis>0x0080</emphasis>: Minor failures. These are the errors that would " "percolate down to cause the operation failure of 2." msgstr "" +"<emphasis>0x0080</emphasis>: 軽微なエラー。これらは 2 の操作失敗を引き起こす" +"よう下にしみだすエラーです。" #. type: Content of: <listitem><para> #: include/debug_levels.xml:28 -#, fuzzy -#| msgid "<emphasis>2</emphasis>: show informational messages" msgid "<emphasis>0x0100</emphasis>: Configuration settings." -msgstr "<emphasis>2</emphasis>: 情報レベルのメッセージを表示する" +msgstr "<emphasis>0x0100</emphasis>: 設定値の設定です。" #. type: Content of: <listitem><para> #: include/debug_levels.xml:31 -#, fuzzy -#| msgid "<emphasis>s</emphasis> seconds" msgid "<emphasis>0x0200</emphasis>: Function data." -msgstr "<emphasis>s</emphasis> 秒" +msgstr "<emphasis>0x0200</emphasis>: 関数のデータです。" #. type: Content of: <listitem><para> #: include/debug_levels.xml:34 -#, fuzzy -#| msgid "<emphasis>3</emphasis>: show all messages and debug information" msgid "<emphasis>0x0400</emphasis>: Trace messages for operation functions." -msgstr "<emphasis>3</emphasis>: すべてのメッセージとデバッグ情報を表示する" +msgstr "<emphasis>0x0400</emphasis>: 操作関数のトレースメッセージです。" #. type: Content of: <listitem><para> #: include/debug_levels.xml:37 -#, fuzzy -#| msgid "<emphasis>3</emphasis>: show all messages and debug information" msgid "" "<emphasis>0x1000</emphasis>: Trace messages for internal control functions." -msgstr "<emphasis>3</emphasis>: すべてのメッセージとデバッグ情報を表示する" +msgstr "<emphasis>0x1000</emphasis>: 内部制御関数のトレースメッセージです。" #. type: Content of: <listitem><para> #: include/debug_levels.xml:40 @@ -7569,13 +7805,12 @@ msgid "" "<emphasis>0x2000</emphasis>: Contents of function-internal variables that " "may be interesting." msgstr "" +"<emphasis>0x2000</emphasis>: 興味があるかもしれない関数の内部変数の内容です。" #. type: Content of: <listitem><para> #: include/debug_levels.xml:43 -#, fuzzy -#| msgid "<emphasis>3</emphasis>: show all messages and debug information" msgid "<emphasis>0x4000</emphasis>: Extremely low-level tracing information." -msgstr "<emphasis>3</emphasis>: すべてのメッセージとデバッグ情報を表示する" +msgstr "<emphasis>0x4000</emphasis>: 極めて低レベルのトレース情報です。" #. type: Content of: <listitem><para> #: include/debug_levels.xml:46 @@ -7583,6 +7818,8 @@ msgid "" "To log required debug levels, simply add their numbers together as shown in " "following examples:" msgstr "" +"必要となるデバッグレベルをログに取得するには、以下の例に示されるようにこれら" +"の数字を単に追加します:" #. type: Content of: <listitem><para> #: include/debug_levels.xml:49 @@ -7590,6 +7827,8 @@ msgid "" "<emphasis>Example</emphasis>: To log fatal failures, critical failures, " "serious failures and function data use 0x0270." msgstr "" +"<emphasis>例</emphasis>: 致命的なエラー、重大なエラー、深刻なエラーおよび関数" +"データをログに取得するには 0x0270 を使用します。" #. type: Content of: <listitem><para> #: include/debug_levels.xml:53 @@ -7597,6 +7836,8 @@ msgid "" "<emphasis>Example</emphasis>: To log fatal failures, configuration settings, " "function data, trace messages for internal control functions use 0x1310." msgstr "" +"<emphasis>例</emphasis>: 致命的なエラー、設定値の設定、関数データ、内部制御関" +"数のトレースメッセージをログに取得するには 0x1310 を使用します。" #. type: Content of: <listitem><para> #: include/debug_levels.xml:57 @@ -7604,6 +7845,8 @@ msgid "" "<emphasis>Note</emphasis>: This is new format of debug levels introduced in " "1.7.0. Older format (numbers from 0-10) is compatible but deprecated." msgstr "" +"<emphasis>注</emphasis>: これは 1.7.0 において導入されたデバッグレベルの新し" +"い形式です。古い形式(0-10 の数字)は互換性がありますが、推奨されません。" #. type: Content of: outside any tag (error?) #: include/experimental.xml:1 @@ -7611,3 +7854,5 @@ msgid "" "<emphasis> This is an experimental feature, please use http://fedorahosted." "org/sssd to report any issues. </emphasis>" msgstr "" +"<emphasis> これは実験的な機能です、何らかの問題を報告するには http://" +"fedorahosted.org/sssd を使用してください。 </emphasis>" diff --git a/src/man/po/ja_JP.po b/src/man/po/ja_JP.po deleted file mode 100644 index 01d742714..000000000 --- a/src/man/po/ja_JP.po +++ /dev/null @@ -1,6747 +0,0 @@ -# SOME DESCRIPTIVE TITLE -# Copyright (C) YEAR Red Hat -# This file is distributed under the same license as the sssd-docs package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@redhat.com\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-12-23 15:35+0000\n" -"Last-Translator: FULL NAME <EMAIL@ADDRESS>\n" -"Language-Team: LANGUAGE <LL@li.org>\n" -"Language: ja_JP\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=1; plural=0\n" - -#. type: Content of: <reference><title> -#: sss_groupmod.8.xml:5 sssd.conf.5.xml:5 sssd-ldap.5.xml:5 pam_sss.8.xml:5 -#: sssd_krb5_locator_plugin.8.xml:5 sssd-simple.5.xml:5 sssd-ipa.5.xml:5 -#: sssd.8.xml:5 sss_obfuscate.8.xml:5 sss_useradd.8.xml:5 sssd-krb5.5.xml:5 -#: sss_groupadd.8.xml:5 sss_userdel.8.xml:5 sss_groupdel.8.xml:5 -#: sss_groupshow.8.xml:5 sss_usermod.8.xml:5 sss_cache.8.xml:5 -#: sss_debuglevel.8.xml:5 sss_ssh_authorizedkeys.1.xml:5 -#: sss_ssh_knownhostsproxy.1.xml:5 -msgid "SSSD Manual pages" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupmod.8.xml:10 sss_groupmod.8.xml:15 -msgid "sss_groupmod" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_groupmod.8.xml:11 pam_sss.8.xml:14 sssd_krb5_locator_plugin.8.xml:11 -#: sssd.8.xml:11 sss_obfuscate.8.xml:11 sss_useradd.8.xml:11 -#: sss_groupadd.8.xml:11 sss_userdel.8.xml:11 sss_groupdel.8.xml:11 -#: sss_groupshow.8.xml:11 sss_usermod.8.xml:11 sss_cache.8.xml:11 -#: sss_debuglevel.8.xml:11 -msgid "8" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupmod.8.xml:16 -msgid "modify a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupmod.8.xml:21 -msgid "" -"<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:30 sssd-ldap.5.xml:21 pam_sss.8.xml:44 -#: sssd_krb5_locator_plugin.8.xml:20 sssd-simple.5.xml:22 sssd-ipa.5.xml:21 -#: sssd.8.xml:29 sss_obfuscate.8.xml:30 sss_useradd.8.xml:30 -#: sssd-krb5.5.xml:21 sss_groupadd.8.xml:30 sss_userdel.8.xml:30 -#: sss_groupdel.8.xml:30 sss_groupshow.8.xml:30 sss_usermod.8.xml:30 -#: sss_cache.8.xml:29 sss_debuglevel.8.xml:30 sss_ssh_authorizedkeys.1.xml:30 -#: sss_ssh_knownhostsproxy.1.xml:31 -msgid "DESCRIPTION" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:32 -msgid "" -"<command>sss_groupmod</command> modifies the group to reflect the changes " -"that are specified on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:39 pam_sss.8.xml:51 sssd.8.xml:42 sss_obfuscate.8.xml:58 -#: sss_useradd.8.xml:39 sss_groupadd.8.xml:39 sss_userdel.8.xml:39 -#: sss_groupdel.8.xml:39 sss_groupshow.8.xml:39 sss_usermod.8.xml:39 -#: sss_cache.8.xml:38 sss_debuglevel.8.xml:38 sss_ssh_authorizedkeys.1.xml:78 -#: sss_ssh_knownhostsproxy.1.xml:65 -msgid "OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:43 sss_usermod.8.xml:77 -msgid "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:48 -msgid "" -"Append this group to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:57 sss_usermod.8.xml:91 -msgid "" -"<option>-r</option>,<option>--remove-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:62 -msgid "" -"Remove this group from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:72 sssd.conf.5.xml:1331 sssd-ldap.5.xml:2096 -#: pam_sss.8.xml:139 sssd_krb5_locator_plugin.8.xml:75 sssd-simple.5.xml:143 -#: sssd-ipa.5.xml:562 sssd.8.xml:191 sss_obfuscate.8.xml:103 -#: sss_useradd.8.xml:167 sssd-krb5.5.xml:451 sss_groupadd.8.xml:58 -#: sss_userdel.8.xml:93 sss_groupdel.8.xml:46 sss_groupshow.8.xml:58 -#: sss_usermod.8.xml:138 sss_ssh_authorizedkeys.1.xml:96 -#: sss_ssh_knownhostsproxy.1.xml:95 -msgid "SEE ALSO" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:74 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.conf.5.xml:10 sssd.conf.5.xml:16 -msgid "sssd.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sssd.conf.5.xml:11 sssd-ldap.5.xml:11 sssd-simple.5.xml:11 -#: sssd-ipa.5.xml:11 sssd-krb5.5.xml:11 -msgid "5" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><refmiscinfo> -#: sssd.conf.5.xml:12 sssd-ldap.5.xml:12 sssd-simple.5.xml:12 -#: sssd-ipa.5.xml:12 sssd-krb5.5.xml:12 -msgid "File Formats and Conventions" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.conf.5.xml:17 sssd-ldap.5.xml:17 sssd_krb5_locator_plugin.8.xml:16 -#: sssd-ipa.5.xml:17 sssd-krb5.5.xml:17 -msgid "the configuration file for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:21 -msgid "FILE FORMAT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:29 -#, no-wrap -msgid "" -" <replaceable>[section]</replaceable>\n" -" <replaceable>key</replaceable> = <replaceable>value</replaceable>\n" -" <replaceable>key2</replaceable> = <replaceable>value2,value3</replaceable>\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:24 -msgid "" -"The file has an ini-style syntax and consists of sections and parameters. A " -"section begins with the name of the section in square brackets and continues " -"until the next section begins. An example of section with single and multi-" -"valued parameters: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:36 -msgid "" -"The data types used are string (no quotes needed), integer and bool (with " -"values of <quote>TRUE/FALSE</quote>)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:41 -msgid "" -"A line comment starts with a hash sign (<quote>#</quote>) or a semicolon " -"(<quote>;</quote>)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:46 -msgid "" -"All sections can have an optional <replaceable>description</replaceable> " -"parameter. Its function is only as a label for the section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:52 -msgid "" -"<filename>sssd.conf</filename> must be a regular file, owned by root and " -"only root may read from or write to the file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:58 -msgid "SPECIAL SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:61 -msgid "The [sssd] section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><title> -#: sssd.conf.5.xml:70 sssd.conf.5.xml:1177 -msgid "Section parameters" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:72 -msgid "config_file_version (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:75 -msgid "" -"Indicates what is the syntax of the config file. SSSD 0.6.0 and later use " -"version 2." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:81 -msgid "services" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:84 -msgid "" -"Comma separated list of services that are started when sssd itself starts." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:88 -msgid "" -"Supported services: nss, pam <phrase condition=\"with_sudo\">, sudo</phrase>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:94 sssd.conf.5.xml:257 -msgid "reconnection_retries (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:97 sssd.conf.5.xml:260 -msgid "" -"Number of times services should attempt to reconnect in the event of a Data " -"Provider crash or restart before they give up" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:102 sssd.conf.5.xml:265 -msgid "Default: 3" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:107 -msgid "domains" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:110 -msgid "" -"A domain is a database containing user information. SSSD can use more " -"domains at the same time, but at least one must be configured or SSSD won't " -"start. This parameter described the list of domains in the order you want " -"them to be queried." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:120 -msgid "re_expression (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:123 -msgid "" -"Regular expression that describes how to parse the string containing user " -"name and domain into these components." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:127 -msgid "" -"Default: <quote>(?P<name>[^@]+)@?(?P<domain>[^@]*$)</quote> " -"which translates to \"the name is everything up to the <quote>@</quote> " -"sign, the domain everything after that\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:132 -msgid "" -"PLEASE NOTE: the support for non-unique named subpatterns is not available " -"on all platforms (e.g. RHEL5 and SLES10). Only platforms with libpcre " -"version 7 or higher can support non-unique named subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:139 -msgid "" -"PLEASE NOTE ALSO: older version of libpcre only support the Python syntax (?" -"P<name>) to label subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:146 -msgid "full_name_format (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:149 -msgid "" -"A <citerefentry> <refentrytitle>printf</refentrytitle> <manvolnum>3</" -"manvolnum> </citerefentry>-compatible format that describes how to translate " -"a (name, domain) tuple into a fully qualified name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:157 -msgid "Default: <quote>%1$s@%2$s</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:162 -msgid "try_inotify (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:165 -msgid "" -"SSSD monitors the state of resolv.conf to identify when it needs to update " -"its internal DNS resolver. By default, we will attempt to use inotify for " -"this, and will fall back to polling resolv.conf every five seconds if " -"inotify cannot be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:173 -msgid "" -"There are some limited situations where it is preferred that we should skip " -"even trying to use inotify. In these rare cases, this option should be set " -"to 'false'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:179 -msgid "" -"Default: true on platforms where inotify is supported. False on other " -"platforms." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:183 -msgid "" -"Note: this option will have no effect on platforms where inotify is " -"unavailable. On these platforms, polling will always be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:190 -msgid "krb5_rcache_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:193 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:197 -msgid "" -"This option accepts a special value __LIBKRB5_DEFAULTS__ that will instruct " -"SSSD to let libkrb5 decide the appropriate location for the replay cache." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:203 -msgid "" -"Default: Distribution-specific and specified at build-time. " -"(__LIBKRB5_DEFAULTS__ if not configured)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:63 -msgid "" -"Individual pieces of SSSD functionality are provided by special SSSD " -"services that are started and stopped together with SSSD. The services are " -"managed by a special service frequently called <quote>monitor</quote>. The " -"<quote>[sssd]</quote> section is used to configure the monitor as well as " -"some other important options like the identity domains. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:216 -msgid "SERVICES SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:218 -msgid "" -"Settings that can be used to configure different services are described in " -"this section. They should reside in the [<replaceable>$NAME</replaceable>] " -"section, for example, for NSS service, the section would be <quote>[nss]</" -"quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:225 -msgid "General service configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:227 -msgid "These options can be used to configure any service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:231 -msgid "debug_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:235 -msgid "debug_timestamps (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:238 -msgid "Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:241 sssd.conf.5.xml:376 sssd-ldap.5.xml:1328 -#: sssd-ldap.5.xml:1446 sssd-ipa.5.xml:206 sssd-ipa.5.xml:241 -msgid "Default: true" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:246 -msgid "debug_microseconds (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:249 -msgid "Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:252 sssd.conf.5.xml:641 sssd-ldap.5.xml:602 -#: sssd-ldap.5.xml:1260 sssd-ldap.5.xml:1397 sssd-ldap.5.xml:1795 -#: sssd-ipa.5.xml:123 sssd-ipa.5.xml:301 sssd-krb5.5.xml:235 -#: sssd-krb5.5.xml:269 sssd-krb5.5.xml:418 -msgid "Default: false" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:270 -msgid "command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:273 -msgid "" -"By default, the executable representing this service is called <command>sssd_" -"${service_name}</command>. This directive allows to change the executable " -"name for the service. In the vast majority of configurations, the default " -"values should suffice." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:281 -msgid "Default: <command>sssd_${service_name}</command>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:289 -msgid "NSS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:291 -msgid "" -"These options can be used to configure the Name Service Switch (NSS) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:296 -msgid "enum_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:299 -msgid "" -"How many seconds should nss_sss cache enumerations (requests for info about " -"all users)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:303 -msgid "Default: 120" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:308 -msgid "entry_cache_nowait_percentage (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:311 -msgid "" -"The entry cache can be set to automatically update entries in the background " -"if they are requested beyond a percentage of the entry_cache_timeout value " -"for the domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:317 -msgid "" -"For example, if the domain's entry_cache_timeout is set to 30s and " -"entry_cache_nowait_percentage is set to 50 (percent), entries that come in " -"after 15 seconds past the last cache update will be returned immediately, " -"but the SSSD will go and update the cache on its own, so that future " -"requests will not need to block waiting for a cache update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:327 -msgid "" -"Valid values for this option are 0-99 and represent a percentage of the " -"entry_cache_timeout for each domain. For performance reasons, this " -"percentage will never reduce the nowait timeout to less than 10 seconds. (0 " -"disables this feature)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:335 -msgid "Default: 50" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:340 -msgid "entry_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:343 -msgid "" -"Specifies for how many seconds nss_sss should cache negative cache hits " -"(that is, queries for invalid database entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:349 sssd.conf.5.xml:669 sssd-krb5.5.xml:223 -msgid "Default: 15" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:354 -msgid "filter_users, filter_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:357 -msgid "" -"Exclude certain users from being fetched from the sss NSS database. This is " -"particularly useful for system accounts. This option can also be set per-" -"domain or include fully-qualified names to filter only users from the " -"particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:364 -msgid "Default: root" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:369 -msgid "filter_users_in_groups (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:372 -msgid "" -"If you want filtered user still be group members set this option to false." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:381 -msgid "override_homedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:390 sssd-krb5.5.xml:166 -msgid "%u" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:391 sssd-krb5.5.xml:167 -msgid "login name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:394 sssd-krb5.5.xml:170 -msgid "%U" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:395 -msgid "UID number" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:398 sssd-krb5.5.xml:188 -msgid "%d" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:399 -msgid "domain name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:402 -msgid "%f" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:403 -msgid "fully qualified user name (user@domain)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:406 sssd-krb5.5.xml:200 -msgid "%%" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:407 sssd-krb5.5.xml:201 -msgid "a literal '%'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:384 -msgid "" -"Override the user's home directory. You can either provide an absolute value " -"or a template. In the template, the following sequences are substituted: " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:413 -msgid "This option can also be set per-domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:418 -msgid "allowed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:421 -msgid "" -"Restrict user shell to one of the listed values. The order of evaluation is:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:424 -msgid "1. If the shell is present in <quote>/etc/shells</quote>, it is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:428 -msgid "" -"2. If the shell is in the allowed_shells list but not in <quote>/etc/shells</" -"quote>, use the value of the shell_fallback parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:433 -msgid "" -"3. If the shell is not in the allowed_shells list and not in <quote>/etc/" -"shells</quote>, a nologin shell is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:438 -msgid "An empty string for shell is passed as-is to libc." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:441 -msgid "" -"The <quote>/etc/shells</quote> is only read on SSSD start up, which means " -"that a restart of the SSSD is required in case a new shell is installed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:445 -msgid "Default: Not set. The user shell is automatically used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:450 -msgid "vetoed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:453 -msgid "Replace any instance of these shells with the shell_fallback" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:458 -msgid "shell_fallback (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:461 -msgid "" -"The default shell to use if an allowed shell is not installed on the machine." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:465 -msgid "Default: /bin/sh" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:472 -msgid "PAM configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:474 -msgid "" -"These options can be used to configure the Pluggable Authentication Module " -"(PAM) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:479 -msgid "offline_credentials_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:482 -msgid "" -"If the authentication provider is offline, how long should we allow cached " -"logins (in days since the last successful online login)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:487 sssd.conf.5.xml:500 -msgid "Default: 0 (No limit)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:493 -msgid "offline_failed_login_attempts (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:496 -msgid "" -"If the authentication provider is offline, how many failed login attempts " -"are allowed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:506 -msgid "offline_failed_login_delay (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:509 -msgid "" -"The time in minutes which has to pass after offline_failed_login_attempts " -"has been reached before a new login attempt is possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:514 -msgid "" -"If set to 0 the user cannot authenticate offline if " -"offline_failed_login_attempts has been reached. Only a successful online " -"authentication can enable offline authentication again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:520 sssd.conf.5.xml:573 sssd.conf.5.xml:1093 -msgid "Default: 5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:526 -msgid "pam_verbosity (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:529 -msgid "" -"Controls what kind of messages are shown to the user during authentication. " -"The higher the number to more messages are displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:534 -msgid "Currently sssd supports the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:537 -msgid "<emphasis>0</emphasis>: do not show any message" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:540 -msgid "<emphasis>1</emphasis>: show only important messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:544 -msgid "<emphasis>2</emphasis>: show informational messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:547 -msgid "<emphasis>3</emphasis>: show all messages and debug information" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:551 sssd.8.xml:63 -msgid "Default: 1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:556 -msgid "pam_id_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:559 -msgid "" -"For any PAM request while SSSD is online, the SSSD will attempt to " -"immediately update the cached identity information for the user in order to " -"ensure that authentication takes place with the latest information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:565 -msgid "" -"A complete PAM conversation may perform multiple PAM requests, such as " -"account management and session opening. This option controls (on a per-" -"client-application basis) how long (in seconds) we can cache the identity " -"information to avoid excessive round-trips to the identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:579 -msgid "pam_pwd_expiration_warning (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:582 -msgid "Display a warning N days before the password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:585 -msgid "" -"Please note that the backend server has to provide information about the " -"expiration time of the password. If this information is missing, sssd " -"cannot display a warning." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:591 -msgid "Default: 7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:599 -msgid "SUDO configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:601 -msgid "These options can be used to configure the sudo service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:608 -msgid "sudo_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:611 -msgid "" -"For any sudo request that comes while SSSD is online, the SSSD will attempt " -"to update the cached rules in order to ensure that sudo has the latest " -"ruleset." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:617 -msgid "" -"The user may, however, run a couple of sudo commands successively, which " -"would trigger multiple LDAP requests. In order to speed up this use-case, " -"the sudo service maintains an in-memory cache that would be used for " -"performing fast replies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:624 -msgid "" -"This option controls how long (in seconds) can the sudo service cache rules " -"for a user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:628 -msgid "Default: 180" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:633 -msgid "sudo_timed (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:636 -msgid "" -"Whether or not to evaluate the sudoNotBefore and sudoNotAfter attributes " -"that implement time-dependent sudoers entries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:649 -msgid "AUTOFS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:651 -msgid "These options can be used to configure the autofs service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:659 -msgid "autofs_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:662 -msgid "" -"Specifies for how many seconds should the autofs responder negative cache " -"hits (that is, queries for invalid map entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:679 -msgid "DOMAIN SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:686 -msgid "min_id,max_id (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:689 -msgid "" -"UID and GID limits for the domain. If a domain contains an entry that is " -"outside these limits, it is ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:694 -msgid "" -"For users, this affects the primary GID limit. The user will not be returned " -"to NSS if either the UID or the primary GID is outside the range. For non-" -"primary group memberships, those that are in range will be reported as " -"expected." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:701 -msgid "Default: 1 for min_id, 0 (no limit) for max_id" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:707 -msgid "timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:710 -msgid "" -"Timeout in seconds between heartbeats for this domain. This is used to " -"ensure that the backend process is alive and capable of answering requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:715 sssd-ldap.5.xml:1131 -msgid "Default: 10" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:721 -msgid "enumerate (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:724 -msgid "" -"Determines if a domain can be enumerated. This parameter can have one of the " -"following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:728 -msgid "TRUE = Users and groups are enumerated" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:731 -msgid "FALSE = No enumerations for this domain" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:734 sssd.conf.5.xml:839 sssd.conf.5.xml:893 -msgid "Default: FALSE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:737 -msgid "" -"Note: Enabling enumeration has a moderate performance impact on SSSD while " -"enumeration is running. It may take up to several minutes after SSSD startup " -"to fully complete enumerations. During this time, individual requests for " -"information will go directly to LDAP, though it may be slow, due to the " -"heavy enumeration processing." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:747 -msgid "" -"While the first enumeration is running, requests for the complete user or " -"group lists may return no results until it completes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:752 -msgid "" -"Further, enabling enumeration may increase the time necessary to detect " -"network disconnection, as longer timeouts are required to ensure that " -"enumeration lookups are completed successfully. For more information, refer " -"to the man pages for the specific id_provider in use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:763 -msgid "entry_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:766 -msgid "" -"How many seconds should nss_sss consider entries valid before asking the " -"backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:770 -msgid "Default: 5400" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:776 -msgid "entry_cache_user_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:779 -msgid "" -"How many seconds should nss_sss consider user entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:783 sssd.conf.5.xml:796 sssd.conf.5.xml:809 -#: sssd.conf.5.xml:822 -msgid "Default: entry_cache_timeout" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:789 -msgid "entry_cache_group_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:792 -msgid "" -"How many seconds should nss_sss consider group entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:802 -msgid "entry_cache_netgroup_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:805 -msgid "" -"How many seconds should nss_sss consider netgroup entries valid before " -"asking the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:815 -msgid "entry_cache_service_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:818 -msgid "" -"How many seconds should nss_sss consider service entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:828 -msgid "cache_credentials (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:831 -msgid "Determines if user credentials are also cached in the local LDB cache" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:835 -msgid "User credentials are stored in a SHA512 hash, not in plaintext" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:844 -msgid "account_cache_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:847 -msgid "" -"Number of days entries are left in cache after last successful login before " -"being removed during a cleanup of the cache. 0 means keep forever. The " -"value of this parameter must be greater than or equal to " -"offline_credentials_expiration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:854 -msgid "Default: 0 (unlimited)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:860 -msgid "id_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:863 -msgid "The Data Provider identity backend to use for this domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:867 -msgid "Supported backends:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:870 -msgid "proxy: Support a legacy NSS provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:873 -msgid "local: SSSD internal local provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:876 -msgid "ldap: LDAP provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:882 -msgid "use_fully_qualified_names (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:885 -msgid "" -"If set to TRUE, all requests to this domain must use fully qualified names. " -"For example, if used in LOCAL domain that contains a \"test\" user, " -"<command>getent passwd test</command> wouldn't find the user while " -"<command>getent passwd test@LOCAL</command> would." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:898 -msgid "auth_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:901 -msgid "" -"The authentication provider used for the domain. Supported auth providers " -"are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:905 -msgid "" -"<quote>ldap</quote> for native LDAP authentication. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:912 -msgid "" -"<quote>krb5</quote> for Kerberos authentication. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:919 -msgid "" -"<quote>proxy</quote> for relaying authentication to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:922 -msgid "<quote>none</quote> disables authentication explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:925 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"authentication requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:931 -msgid "access_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:934 -msgid "" -"The access control provider used for the domain. There are two built-in " -"access providers (in addition to any included in installed backends) " -"Internal special providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:940 -msgid "<quote>permit</quote> always allow access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:943 -msgid "<quote>deny</quote> always deny access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:946 -msgid "" -"<quote>simple</quote> access control based on access or deny lists. See " -"<citerefentry> <refentrytitle>sssd-simple</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry> for more information on configuring the simple " -"access module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:953 -msgid "Default: <quote>permit</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:958 -msgid "chpass_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:961 -msgid "" -"The provider which should handle change password operations for the domain. " -"Supported change password providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:966 -msgid "" -"<quote>ipa</quote> to change a password stored in an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:974 -msgid "" -"<quote>ldap</quote> to change a password stored in a LDAP server. See " -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:982 -msgid "" -"<quote>krb5</quote> to change the Kerberos password. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:990 -msgid "" -"<quote>proxy</quote> for relaying password changes to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:994 -msgid "<quote>none</quote> disallows password changes explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:997 -msgid "" -"Default: <quote>auth_provider</quote> is used if it is set and can handle " -"change password requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1004 -msgid "sudo_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1010 -msgid "The SUDO provider used for the domain. Supported SUDO providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1014 -msgid "" -"<quote>ldap</quote> for rules stored in LDAP. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1021 -msgid "<quote>none</quote> disables SUDO explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1024 -msgid "Default: The value of <quote>id_provider</quote> is used if it is set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1030 -msgid "session_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1033 -msgid "" -"The provider which should handle loading of session settings. Supported " -"session providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1038 -msgid "" -"<quote>ipa</quote> to load session settings from an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1046 -msgid "<quote>none</quote> disallows fetching session settings explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1049 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"session loading requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1056 -msgid "lookup_family_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1059 -msgid "" -"Provides the ability to select preferred address family to use when " -"performing DNS lookups." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1063 -msgid "Supported values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1066 -msgid "ipv4_first: Try looking up IPv4 address, if that fails, try IPv6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1069 -msgid "ipv4_only: Only attempt to resolve hostnames to IPv4 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1072 -msgid "ipv6_first: Try looking up IPv6 address, if that fails, try IPv4" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1075 -msgid "ipv6_only: Only attempt to resolve hostnames to IPv6 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1078 -msgid "Default: ipv4_first" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1084 -msgid "dns_resolver_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1087 -msgid "" -"Defines the amount of time (in seconds) to wait for a reply from the DNS " -"resolver before assuming that it is unreachable. If this timeout is reached, " -"the domain will continue to operate in offline mode." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1099 -msgid "dns_discovery_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1102 -msgid "" -"If service discovery is used in the back end, specifies the domain part of " -"the service discovery DNS query." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1106 -msgid "Default: Use the domain part of machine's hostname" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1112 -msgid "override_gid (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1115 -msgid "Override the primary GID value with the one specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1121 -msgid "case_sensitive (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1124 -msgid "" -"Treat user and group names as case sensitive. At the moment, this option is " -"not supported in the local provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1129 -msgid "Default: True" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:681 -msgid "" -"These configuration options can be present in a domain configuration " -"section, that is, in a section called <quote>[domain/<replaceable>NAME</" -"replaceable>]</quote> <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1141 -msgid "proxy_pam_target (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1144 -msgid "The proxy target PAM proxies to." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1147 -msgid "" -"Default: not set by default, you have to take an existing pam configuration " -"or create a new one and add the service name here." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1155 -msgid "proxy_lib_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1158 -msgid "" -"The name of the NSS library to use in proxy domains. The NSS functions " -"searched for in the library are in the form of _nss_$(libName)_$(function), " -"for example _nss_files_getpwent." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1137 -msgid "" -"Options valid for proxy domains. <placeholder type=\"variablelist\" id=" -"\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:1170 -msgid "The local domain section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:1172 -msgid "" -"This section contains settings for domain that stores users and groups in " -"SSSD native database, that is, a domain that uses " -"<replaceable>id_provider=local</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1179 -msgid "default_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1182 -msgid "The default shell for users created with SSSD userspace tools." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1186 -msgid "Default: <filename>/bin/bash</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1191 -msgid "base_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1194 -msgid "" -"The tools append the login name to <replaceable>base_directory</replaceable> " -"and use that as the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1199 -msgid "Default: <filename>/home</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1204 -msgid "create_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1207 -msgid "" -"Indicate if a home directory should be created by default for new users. " -"Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1211 sssd.conf.5.xml:1223 -msgid "Default: TRUE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1216 -msgid "remove_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1219 -msgid "" -"Indicate if a home directory should be removed by default for deleted " -"users. Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1228 -msgid "homedir_umask (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1231 -msgid "" -"Used by <citerefentry> <refentrytitle>sss_useradd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry> to specify the default permissions " -"on a newly created home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1239 -msgid "Default: 077" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1244 -msgid "skel_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1247 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<citerefentry> <refentrytitle>sss_useradd</refentrytitle> <manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1257 -msgid "Default: <filename>/etc/skel</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1262 -msgid "mail_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1265 -msgid "" -"The mail spool directory. This is needed to manipulate the mailbox when its " -"corresponding user account is modified or deleted. If not specified, a " -"default value is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1272 -msgid "Default: <filename>/var/mail</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1277 -msgid "userdel_cmd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1280 -msgid "" -"The command that is run after a user is removed. The command us passed the " -"username of the user being removed as the first and only parameter. The " -"return code of the command is not taken into account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1286 -msgid "Default: None, no command is run" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:1296 sssd-ldap.5.xml:2064 sssd-simple.5.xml:126 -#: sssd-ipa.5.xml:544 sssd-krb5.5.xml:432 -msgid "EXAMPLE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:1302 -#, no-wrap -msgid "" -"[sssd]\n" -"domains = LDAP\n" -"services = nss, pam\n" -"config_file_version = 2\n" -"\n" -"[nss]\n" -"filter_groups = root\n" -"filter_users = root\n" -"\n" -"[pam]\n" -"\n" -"[domain/LDAP]\n" -"id_provider = ldap\n" -"ldap_uri = ldap://ldap.example.com\n" -"ldap_search_base = dc=example,dc=com\n" -"\n" -"auth_provider = krb5\n" -"krb5_server = kerberos.example.com\n" -"krb5_realm = EXAMPLE.COM\n" -"cache_credentials = true\n" -"\n" -"min_id = 10000\n" -"max_id = 20000\n" -"enumerate = False\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1298 -msgid "" -"The following example shows a typical SSSD config. It does not describe " -"configuration of the domains themselves - refer to documentation on " -"configuring domains for more details. <placeholder type=\"programlisting\" " -"id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1333 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>pam_sss</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ldap.5.xml:10 sssd-ldap.5.xml:16 -msgid "sssd-ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:23 -msgid "" -"This manual page describes the configuration of LDAP domains for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. Refer to the <quote>FILE FORMAT</quote> section of the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for detailed syntax information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:35 -msgid "You can configure SSSD to use more than one LDAP domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:38 -msgid "" -"LDAP back end supports id, auth, access and chpass providers. If you want to " -"authenticate against an LDAP server either TLS/SSL or LDAPS is required. " -"<command>sssd</command> <emphasis>does not</emphasis> support authentication " -"over an unencrypted channel. If the LDAP server is used only as an identity " -"provider, an encrypted channel is not needed. Please refer to " -"<quote>ldap_access_filter</quote> config option for more information about " -"using LDAP as an access provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:49 sssd-simple.5.xml:69 sssd-ipa.5.xml:64 -#: sssd-krb5.5.xml:63 -msgid "CONFIGURATION OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:60 -msgid "ldap_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:63 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference. Refer to the <quote>FAILOVER</" -"quote> section for more information on failover and server redundancy. If " -"not specified, service discovery is enabled. For more information, refer to " -"the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:70 -msgid "The format of the URI must match the format defined in RFC 2732:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:73 -msgid "ldap[s]://<host>[:port]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:76 -msgid "" -"For explicit IPv6 addresses, <host> must be enclosed in brackets []" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:79 -msgid "example: ldap://[fc00::126:25]:389" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:85 -msgid "ldap_chpass_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:88 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference to change the password of a user. " -"Refer to the <quote>FAILOVER</quote> section for more information on " -"failover and server redundancy." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:95 -msgid "To enable service discovery ldap_chpass_dns_service_name must be set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:99 -msgid "Default: empty, i.e. ldap_uri is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:105 -msgid "ldap_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:108 -msgid "The default base DN to use for performing LDAP user operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:112 -msgid "" -"Starting with SSSD 1.7.0, SSSD supports multiple search bases using the " -"syntax:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:116 -msgid "search_base[?scope?[filter][?search_base?scope?[filter]]*]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:119 -msgid "The scope can be one of \"base\", \"onelevel\" or \"subtree\"." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:122 -msgid "" -"The filter must be a valid LDAP search filter as specified by http://www." -"ietf.org/rfc/rfc2254.txt" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:126 -msgid "Examples:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:129 -msgid "" -"ldap_search_base = dc=example,dc=com (which is equivalent to) " -"ldap_search_base = dc=example,dc=com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:134 -msgid "" -"ldap_search_base = cn=host_specific,dc=example,dc=com?subtree?" -"(host=thishost)?dc=example.com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:137 -msgid "" -"Note: It is unsupported to have multiple search bases which reference " -"identically-named objects (for example, groups with the same name in two " -"different search bases). This will lead to unpredictable behavior on client " -"machines." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:144 -msgid "" -"Default: If not set, the value of the defaultNamingContext or namingContexts " -"attribute from the RootDSE of the LDAP server is used. If " -"defaultNamingContext does not exists or has an empty value namingContexts is " -"used. The namingContexts attribute must have a single value with the DN of " -"the search base of the LDAP server to make this work. Multiple values are " -"are not supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:158 -msgid "ldap_schema (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:161 -msgid "" -"Specifies the Schema Type in use on the target LDAP server. Depending on " -"the selected schema, the default attribute names retrieved from the servers " -"may vary. The way that some attributes are handled may also differ. Three " -"schema types are currently supported: rfc2307 rfc2307bis IPA The main " -"difference between these schema types is how group memberships are recorded " -"in the server. With rfc2307, group members are listed by name in the " -"<emphasis>memberUid</emphasis> attribute. With rfc2307bis and IPA, group " -"members are listed by DN and stored in the <emphasis>member</emphasis> " -"attribute." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:180 -msgid "Default: rfc2307" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:186 -msgid "ldap_default_bind_dn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:189 -msgid "The default bind DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:196 -msgid "ldap_default_authtok_type (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:199 -msgid "The type of the authentication token of the default bind DN." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:203 -msgid "The two mechanisms currently supported are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:206 -msgid "password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:209 -msgid "obfuscated_password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:212 -msgid "Default: password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:218 -msgid "ldap_default_authtok (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:221 -msgid "" -"The authentication token of the default bind DN. Only clear text passwords " -"are currently supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:228 -msgid "ldap_user_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:231 -msgid "The object class of a user entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:234 -msgid "Default: posixAccount" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:240 -msgid "ldap_user_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:243 -msgid "The LDAP attribute that corresponds to the user's login name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:247 -msgid "Default: uid" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:253 -msgid "ldap_user_uid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:256 -msgid "The LDAP attribute that corresponds to the user's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:260 -msgid "Default: uidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:266 -msgid "ldap_user_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:269 -msgid "The LDAP attribute that corresponds to the user's primary group id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:273 sssd-ldap.5.xml:740 -msgid "Default: gidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:279 -msgid "ldap_user_gecos (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:282 -msgid "The LDAP attribute that corresponds to the user's gecos field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:286 -msgid "Default: gecos" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:292 -msgid "ldap_user_home_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:295 -msgid "The LDAP attribute that contains the name of the user's home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:299 -msgid "Default: homeDirectory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:305 -msgid "ldap_user_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:308 -msgid "The LDAP attribute that contains the path to the user's default shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:312 -msgid "Default: loginShell" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:318 -msgid "ldap_user_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:321 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP user object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:325 sssd-ldap.5.xml:766 sssd-ldap.5.xml:878 -msgid "Default: nsUniqueId" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:331 -msgid "ldap_user_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:334 sssd-ldap.5.xml:775 sssd-ldap.5.xml:887 -msgid "" -"The LDAP attribute that contains timestamp of the last modification of the " -"parent object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:338 sssd-ldap.5.xml:779 sssd-ldap.5.xml:894 -msgid "Default: modifyTimestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:344 -msgid "ldap_user_shadow_last_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:347 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (date of " -"the last password change)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:357 -msgid "Default: shadowLastChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:363 -msgid "ldap_user_shadow_min (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:366 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (minimum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:375 -msgid "Default: shadowMin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:381 -msgid "ldap_user_shadow_max (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:384 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (maximum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:393 -msgid "Default: shadowMax" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:399 -msgid "ldap_user_shadow_warning (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:402 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password warning period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:412 -msgid "Default: shadowWarning" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:418 -msgid "ldap_user_shadow_inactive (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:421 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password inactivity period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:431 -msgid "Default: shadowInactive" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:437 -msgid "ldap_user_shadow_expire (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:440 -msgid "" -"When using ldap_pwd_policy=shadow or ldap_account_expire_policy=shadow, this " -"parameter contains the name of an LDAP attribute corresponding to its " -"<citerefentry> <refentrytitle>shadow</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> counterpart (account expiration date)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:450 -msgid "Default: shadowExpire" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:456 -msgid "ldap_user_krb_last_pwd_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:459 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time of last password change in " -"kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:465 -msgid "Default: krbLastPwdChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:471 -msgid "ldap_user_krb_password_expiration (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:474 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time when current password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:480 -msgid "Default: krbPasswordExpiration" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:486 -msgid "ldap_user_ad_account_expires (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:489 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the expiration time of the account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:494 -msgid "Default: accountExpires" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:500 -msgid "ldap_user_ad_user_account_control (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:503 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the user account control bit field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:508 -msgid "Default: userAccountControl" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:514 -msgid "ldap_ns_account_lock (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:517 -msgid "" -"When using ldap_account_expire_policy=rhds or equivalent, this parameter " -"determines if access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:522 -msgid "Default: nsAccountLock" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:528 -msgid "ldap_user_nds_login_disabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:531 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines if " -"access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:535 sssd-ldap.5.xml:549 -msgid "Default: loginDisabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:541 -msgid "ldap_user_nds_login_expiration_time (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:544 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines until " -"which date access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:555 -msgid "ldap_user_nds_login_allowed_time_map (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:558 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines the " -"hours of a day in a week when access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:563 -msgid "Default: loginAllowedTimeMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:569 -msgid "ldap_user_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:572 -msgid "" -"The LDAP attribute that contains the user's Kerberos User Principal Name " -"(UPN)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:576 -msgid "Default: krbPrincipalName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:582 -msgid "ldap_user_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:585 -msgid "The LDAP attribute that contains the user's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:592 -msgid "ldap_force_upper_case_realm (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:595 -msgid "" -"Some directory servers, for example Active Directory, might deliver the " -"realm part of the UPN in lower case, which might cause the authentication to " -"fail. Set this option to a non-zero value if you want to use an upper-case " -"realm." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:608 -msgid "ldap_enumeration_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:611 -msgid "" -"Specifies how many seconds SSSD has to wait before refreshing its cache of " -"enumerated records." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:616 sssd-ldap.5.xml:1808 -msgid "Default: 300" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:622 -msgid "ldap_purge_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:625 -msgid "" -"Determine how often to check the cache for inactive entries (such as groups " -"with no members and users who have never logged in) and remove them to save " -"space." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:631 -msgid "Setting this option to zero will disable the cache cleanup operation." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:635 -msgid "Default: 10800 (12 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:641 -msgid "ldap_user_fullname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:644 -msgid "The LDAP attribute that corresponds to the user's full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:648 sssd-ldap.5.xml:727 sssd-ldap.5.xml:828 -#: sssd-ldap.5.xml:919 sssd-ldap.5.xml:1663 sssd-ldap.5.xml:1881 -#: sssd-ipa.5.xml:422 -msgid "Default: cn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:654 -msgid "ldap_user_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:657 -msgid "The LDAP attribute that lists the user's group memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:661 sssd-ipa.5.xml:326 -msgid "Default: memberOf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:667 -msgid "ldap_user_authorized_service (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:670 -msgid "" -"If access_provider=ldap and ldap_access_order=authorized_service, SSSD will " -"use the presence of the authorizedService attribute in the user's LDAP entry " -"to determine access privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:677 -msgid "" -"An explicit deny (!svc) is resolved first. Second, SSSD searches for " -"explicit allow (svc) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:682 -msgid "Default: authorizedService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:688 -msgid "ldap_user_authorized_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:691 -msgid "" -"If access_provider=ldap and ldap_access_order=host, SSSD will use the " -"presence of the host attribute in the user's LDAP entry to determine access " -"privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:697 -msgid "" -"An explicit deny (!host) is resolved first. Second, SSSD searches for " -"explicit allow (host) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:702 -msgid "Default: host" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:708 -msgid "ldap_group_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:711 -msgid "The object class of a group entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:714 -msgid "Default: posixGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:720 -msgid "ldap_group_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:723 -msgid "The LDAP attribute that corresponds to the group name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:733 -msgid "ldap_group_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:736 -msgid "The LDAP attribute that corresponds to the group's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:746 -msgid "ldap_group_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:749 -msgid "The LDAP attribute that contains the names of the group's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:753 -msgid "Default: memberuid (rfc2307) / member (rfc2307bis)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:759 -msgid "ldap_group_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:762 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP group object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:772 -msgid "ldap_group_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:785 -msgid "ldap_group_nesting_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:788 -msgid "" -"If ldap_schema is set to a schema format that supports nested groups (e.g. " -"RFC2307bis), then this option controls how many levels of nesting SSSD will " -"follow. This option has no effect on the RFC2307 schema." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:795 -msgid "Default: 2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:801 -msgid "ldap_netgroup_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:804 -msgid "The object class of a netgroup entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:807 -msgid "In IPA provider, ipa_netgroup_object_class should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:811 -msgid "Default: nisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:817 -msgid "ldap_netgroup_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:820 -msgid "The LDAP attribute that corresponds to the netgroup name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:824 -msgid "In IPA provider, ipa_netgroup_name should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:834 -msgid "ldap_netgroup_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:837 -msgid "The LDAP attribute that contains the names of the netgroup's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:841 -msgid "In IPA provider, ipa_netgroup_member should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:845 -msgid "Default: memberNisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:851 -msgid "ldap_netgroup_triple (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:854 -msgid "" -"The LDAP attribute that contains the (host, user, domain) netgroup triples." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:858 sssd-ldap.5.xml:891 -msgid "This option is not available in IPA provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:861 -msgid "Default: nisNetgroupTriple" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:867 -msgid "ldap_netgroup_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:870 -msgid "" -"The LDAP attribute that contains the UUID/GUID of an LDAP netgroup object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:874 -msgid "In IPA provider, ipa_netgroup_uuid should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:884 -msgid "ldap_netgroup_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:900 -msgid "ldap_service_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:903 -msgid "The object class of a service entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:906 -msgid "Default: ipService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:912 -msgid "ldap_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:915 -msgid "" -"The LDAP attribute that contains the name of service attributes and their " -"aliases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:925 -msgid "ldap_service_port (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:928 -msgid "The LDAP attribute that contains the port managed by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:932 -msgid "Default: ipServicePort" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:938 -msgid "ldap_service_proto (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:941 -msgid "" -"The LDAP attribute that contains the protocols understood by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:945 -msgid "Default: ipServiceProtocol" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:951 -msgid "ldap_service_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:954 -msgid "An optional base DN to restrict service searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:958 sssd-ldap.5.xml:1918 sssd-ldap.5.xml:1937 -#: sssd-ldap.5.xml:1956 sssd-ldap.5.xml:2019 sssd-ldap.5.xml:2041 -#: sssd-ipa.5.xml:163 sssd-ipa.5.xml:187 -msgid "" -"See <quote>ldap_search_base</quote> for information about configuring " -"multiple search bases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:963 sssd-ldap.5.xml:1923 sssd-ldap.5.xml:1942 -#: sssd-ldap.5.xml:1961 sssd-ldap.5.xml:2024 sssd-ldap.5.xml:2046 -#: sssd-ipa.5.xml:173 sssd-ipa.5.xml:192 -msgid "Default: the value of <emphasis>ldap_search_base</emphasis>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:970 -msgid "ldap_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:973 -msgid "" -"Specifies the timeout (in seconds) that ldap searches are allowed to run " -"before they are cancelled and cached results are returned (and offline mode " -"is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:979 -msgid "" -"Note: this option is subject to change in future versions of the SSSD. It " -"will likely be replaced at some point by a series of timeouts for specific " -"lookup types." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:985 sssd-ldap.5.xml:1027 sssd-ldap.5.xml:1042 -msgid "Default: 6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:991 -msgid "ldap_enumeration_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:994 -msgid "" -"Specifies the timeout (in seconds) that ldap searches for user and group " -"enumerations are allowed to run before they are cancelled and cached results " -"are returned (and offline mode is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1001 -msgid "Default: 60" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1007 -msgid "ldap_network_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1010 -msgid "" -"Specifies the timeout (in seconds) after which the <citerefentry> " -"<refentrytitle>poll</refentrytitle> <manvolnum>2</manvolnum> </citerefentry>/" -"<citerefentry> <refentrytitle>select</refentrytitle> <manvolnum>2</" -"manvolnum> </citerefentry> following a <citerefentry> " -"<refentrytitle>connect</refentrytitle> <manvolnum>2</manvolnum> </" -"citerefentry> returns in case of no activity." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1033 -msgid "ldap_opt_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1036 -msgid "" -"Specifies a timeout (in seconds) after which calls to synchronous LDAP APIs " -"will abort if no response is received. Also controls the timeout when " -"communicating with the KDC in case of SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1048 -msgid "ldap_connection_expire_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1051 -msgid "" -"Specifies a timeout (in seconds) that a connection to an LDAP server will be " -"maintained. After this time, the connection will be re-established. If used " -"in parallel with SASL/GSSAPI, the sooner of the two values (this value vs. " -"the TGT lifetime) will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1059 -msgid "Default: 900 (15 minutes)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1065 -msgid "ldap_page_size (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1068 -msgid "" -"Specify the number of records to retrieve from LDAP in a single request. " -"Some LDAP servers enforce a maximum limit per-request." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1073 -msgid "Default: 1000" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1079 -msgid "ldap_disable_paging" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1082 -msgid "" -"Disable the LDAP paging control. This option should be used if the LDAP " -"server reports that it supports the LDAP paging control in its RootDSE but " -"it is not enabled or does not behave properly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1088 -msgid "" -"Example: OpenLDAP servers with the paging control module installed on the " -"server but not enabled will report it in the RootDSE but be unable to use it." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1094 -msgid "" -"Example: 389 DS has a bug where it can only support a one paging control at " -"a time on a single connection. On busy clients, this can result in some " -"requests being denied." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1103 -msgid "ldap_deref_threshold (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1106 -msgid "" -"Specify the number of group members that must be missing from the internal " -"cache in order to trigger a dereference lookup. If less members are missing, " -"they are looked up individually." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1112 -msgid "" -"You can turn off dereference lookups completely by setting the value to 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1116 -msgid "" -"A dereference lookup is a means of fetching all group members in a single " -"LDAP call. Different LDAP servers may implement different dereference " -"methods. The currently supported servers are 389/RHDS, OpenLDAP and Active " -"Directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1124 -msgid "" -"<emphasis>Note:</emphasis> If any of the search bases specifies a search " -"filter, then the dereference lookup performance enhancement will be disabled " -"regardless of this setting." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1137 -msgid "ldap_tls_reqcert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1140 -msgid "" -"Specifies what checks to perform on server certificates in a TLS session, if " -"any. It can be specified as one of the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1146 -msgid "" -"<emphasis>never</emphasis> = The client will not request or check any server " -"certificate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1150 -msgid "" -"<emphasis>allow</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, it will be ignored and the session proceeds normally." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1157 -msgid "" -"<emphasis>try</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, the session is immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1163 -msgid "" -"<emphasis>demand</emphasis> = The server certificate is requested. If no " -"certificate is provided, or a bad certificate is provided, the session is " -"immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1169 -msgid "<emphasis>hard</emphasis> = Same as <quote>demand</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1173 -msgid "Default: hard" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1179 -msgid "ldap_tls_cacert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1182 -msgid "" -"Specifies the file that contains certificates for all of the Certificate " -"Authorities that <command>sssd</command> will recognize." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1187 sssd-ldap.5.xml:1205 sssd-ldap.5.xml:1246 -msgid "" -"Default: use OpenLDAP defaults, typically in <filename>/etc/openldap/ldap." -"conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1194 -msgid "ldap_tls_cacertdir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1197 -msgid "" -"Specifies the path of a directory that contains Certificate Authority " -"certificates in separate individual files. Typically the file names need to " -"be the hash of the certificate followed by '.0'. If available, " -"<command>cacertdir_rehash</command> can be used to create the correct names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1212 -msgid "ldap_tls_cert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1215 -msgid "Specifies the file that contains the certificate for the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1219 sssd-ldap.5.xml:1231 sssd-ldap.5.xml:1979 -#: sssd-ldap.5.xml:2006 sssd-krb5.5.xml:359 -msgid "Default: not set" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1225 -msgid "ldap_tls_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1228 -msgid "Specifies the file that contains the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1237 -msgid "ldap_tls_cipher_suite (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1240 -msgid "" -"Specifies acceptable cipher suites. Typically this is a colon sperated " -"list. See <citerefentry><refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> for format." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1253 -msgid "ldap_id_use_start_tls (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1256 -msgid "" -"Specifies that the id_provider connection must also use <systemitem class=" -"\"protocol\">tls</systemitem> to protect the channel." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1266 -msgid "ldap_sasl_mech (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1269 -msgid "" -"Specify the SASL mechanism to use. Currently only GSSAPI is tested and " -"supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1273 sssd-ldap.5.xml:1428 -msgid "Default: none" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1279 -msgid "ldap_sasl_authid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1282 -msgid "" -"Specify the SASL authorization id to use. When GSSAPI is used, this " -"represents the Kerberos principal used for authentication to the directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1287 -msgid "Default: host/machine.fqdn@REALM" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1293 -msgid "ldap_sasl_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1296 -msgid "" -"If set to true, the LDAP library would perform a reverse lookup to " -"canonicalize the host name during a SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1301 -msgid "Default: false;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1307 -msgid "ldap_krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1310 -msgid "Specify the keytab to use when using SASL/GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1313 -msgid "Default: System keytab, normally <filename>/etc/krb5.keytab</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1319 -msgid "ldap_krb5_init_creds (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1322 -msgid "" -"Specifies that the id_provider should init Kerberos credentials (TGT). This " -"action is performed only if SASL is used and the mechanism selected is " -"GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1334 -msgid "ldap_krb5_ticket_lifetime (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1337 -msgid "Specifies the lifetime in seconds of the TGT if GSSAPI is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1341 -msgid "Default: 86400 (24 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1347 sssd-krb5.5.xml:74 -msgid "krb5_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1350 sssd-krb5.5.xml:77 -msgid "" -"Specifies the comma-separated list of IP addresses or hostnames of the " -"Kerberos servers to which SSSD should connect in the order of preference. " -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. An optional port number (preceded by a " -"colon) may be appended to the addresses or hostnames. If empty, service " -"discovery is enabled - for more information, refer to the <quote>SERVICE " -"DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1362 sssd-krb5.5.xml:89 -msgid "" -"When using service discovery for KDC or kpasswd servers, SSSD first searches " -"for DNS entries that specify _udp as the protocol and falls back to _tcp if " -"none are found." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1367 sssd-krb5.5.xml:94 -msgid "" -"This option was named <quote>krb5_kdcip</quote> in earlier releases of SSSD. " -"While the legacy name is recognized for the time being, users are advised to " -"migrate their config files to use <quote>krb5_server</quote> instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1376 sssd-ipa.5.xml:216 sssd-krb5.5.xml:103 -msgid "krb5_realm (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1379 -msgid "Specify the Kerberos REALM (for SASL/GSSAPI auth)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1382 -msgid "Default: System defaults, see <filename>/etc/krb5.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1388 sssd-ipa.5.xml:231 sssd-krb5.5.xml:409 -msgid "krb5_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1391 -msgid "" -"Specifies if the host principal should be canonicalized when connecting to " -"LDAP server. This feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1403 -msgid "ldap_pwd_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1406 -msgid "" -"Select the policy to evaluate the password expiration on the client side. " -"The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1411 -msgid "" -"<emphasis>none</emphasis> - No evaluation on the client side. This option " -"cannot disable server-side password policies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1416 -msgid "" -"<emphasis>shadow</emphasis> - Use <citerefentry><refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum></citerefentry> style attributes to " -"evaluate if the password has expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1422 -msgid "" -"<emphasis>mit_kerberos</emphasis> - Use the attributes used by MIT Kerberos " -"to determine if the password has expired. Use chpass_provider=krb5 to update " -"these attributes when the password is changed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1434 -msgid "ldap_referrals (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1437 -msgid "Specifies whether automatic referral chasing should be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1441 -msgid "" -"Please note that sssd only supports referral chasing when it is compiled " -"with OpenLDAP version 2.4.13 or higher." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1452 -msgid "ldap_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1455 -msgid "Specifies the service name to use when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1459 -msgid "Default: ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1465 -msgid "ldap_chpass_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1468 -msgid "" -"Specifies the service name to use to find an LDAP server which allows " -"password changes when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1473 -msgid "Default: not set, i.e. service discovery is disabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1479 -msgid "ldap_access_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1482 -msgid "" -"If using access_provider = ldap, this option is mandatory. It specifies an " -"LDAP search filter criteria that must be met for the user to be granted " -"access on this host. If access_provider = ldap and this option is not set, " -"it will result in all users being denied access. Use access_provider = allow " -"to change this default behavior." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1492 sssd-ldap.5.xml:1982 -msgid "Example:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1495 -#, no-wrap -msgid "" -"access_provider = ldap\n" -"ldap_access_filter = memberOf=cn=allowedusers,ou=Groups,dc=example,dc=com\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1499 -msgid "" -"This example means that access to this host is restricted to members of the " -"\"allowedusers\" group in ldap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1504 -msgid "" -"Offline caching for this feature is limited to determining whether the " -"user's last online login was granted access permission. If they were granted " -"access during their last login, they will continue to be granted access " -"while offline and vice-versa." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1512 sssd-ldap.5.xml:1562 -msgid "Default: Empty" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1518 -msgid "ldap_account_expire_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1521 -msgid "" -"With this option a client side evaluation of access control attributes can " -"be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1525 -msgid "" -"Please note that it is always recommended to use server side access control, " -"i.e. the LDAP server should deny the bind request with a suitable error code " -"even if the password is correct." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1532 -msgid "The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1535 -msgid "" -"<emphasis>shadow</emphasis>: use the value of ldap_user_shadow_expire to " -"determine if the account is expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1540 -msgid "" -"<emphasis>ad</emphasis>: use the value of the 32bit field " -"ldap_user_ad_user_account_control and allow access if the second bit is not " -"set. If the attribute is missing access is granted. Also the expiration time " -"of the account is checked." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1547 -msgid "" -"<emphasis>rhds</emphasis>, <emphasis>ipa</emphasis>, <emphasis>389ds</" -"emphasis>: use the value of ldap_ns_account_lock to check if access is " -"allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1553 -msgid "" -"<emphasis>nds</emphasis>: the values of " -"ldap_user_nds_login_allowed_time_map, ldap_user_nds_login_disabled and " -"ldap_user_nds_login_expiration_time are used to check if access is allowed. " -"If both attributes are missing access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1568 -msgid "ldap_access_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1571 -msgid "Comma separated list of access control options. Allowed values are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1575 -msgid "<emphasis>filter</emphasis>: use ldap_access_filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1578 -msgid "<emphasis>expire</emphasis>: use ldap_account_expire_policy" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1582 -msgid "" -"<emphasis>authorized_service</emphasis>: use the authorizedService attribute " -"to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1587 -msgid "<emphasis>host</emphasis>: use the host attribute to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1591 -msgid "Default: filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1594 -msgid "" -"Please note that it is a configuration error if a value is used more than " -"once." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1601 -msgid "ldap_deref (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1604 -msgid "" -"Specifies how alias dereferencing is done when performing a search. The " -"following options are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1609 -msgid "<emphasis>never</emphasis>: Aliases are never dereferenced." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1613 -msgid "" -"<emphasis>searching</emphasis>: Aliases are dereferenced in subordinates of " -"the base object, but not in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1618 -msgid "" -"<emphasis>finding</emphasis>: Aliases are only dereferenced when locating " -"the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1623 -msgid "" -"<emphasis>always</emphasis>: Aliases are dereferenced both in searching and " -"in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1628 -msgid "" -"Default: Empty (this is handled as <emphasis>never</emphasis> by the LDAP " -"client libraries)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:51 -msgid "" -"All of the common configuration options that apply to SSSD domains also " -"apply to LDAP domains. Refer to the <quote>DOMAIN SECTIONS</quote> section " -"of the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for full details. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1639 -msgid "SUDO OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1644 -msgid "ldap_sudorule_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1647 -msgid "The object class of a sudo rule entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1650 -msgid "Default: sudoRole" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1656 -msgid "ldap_sudorule_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1659 -msgid "The LDAP attribute that corresponds to the sudo rule name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1669 -msgid "ldap_sudorule_command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1672 -msgid "The LDAP attribute that corresponds to the command name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1676 -msgid "Default: sudoCommand" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1682 -msgid "ldap_sudorule_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1685 -msgid "" -"The LDAP attribute that corresponds to the host name (or host IP address, " -"host IP network, or host netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1690 -msgid "Default: sudoHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1696 -msgid "ldap_sudorule_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1699 -msgid "" -"The LDAP attribute that corresponds to the user name (or UID, group name or " -"user's netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1703 -msgid "Default: sudoUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1709 -msgid "ldap_sudorule_option (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1712 -msgid "The LDAP attribute that corresponds to the sudo options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1716 -msgid "Default: sudoOption" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1722 -msgid "ldap_sudorule_runasuser (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1725 -msgid "" -"The LDAP attribute that corresponds to the user name that commands may be " -"run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1729 -msgid "Default: sudoRunAsUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1735 -msgid "ldap_sudorule_runasgroup (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1738 -msgid "" -"The LDAP attribute that corresponds to the group name or group GID that " -"commands may be run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1742 -msgid "Default: sudoRunAsGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1748 -msgid "ldap_sudorule_notbefore (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1751 -msgid "" -"The LDAP attribute that corresponds to the start date/time for when the sudo " -"rule is valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1755 -msgid "Default: sudoNotBefore" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1761 -msgid "ldap_sudorule_notafter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1764 -msgid "" -"The LDAP attribute that corresponds to the expiration date/time, after which " -"the sudo rule will no longer be valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1769 -msgid "Default: sudoNotAfter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1775 -msgid "ldap_sudorule_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1778 -msgid "The LDAP attribute that corresponds to the ordering index of the rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1782 -msgid "Default: sudoOrder" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1788 -msgid "ldap_sudo_refresh_enabled (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1791 -msgid "" -"Enables periodical download of all sudo rules. The cache is purged before " -"each update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1801 -msgid "ldap_sudo_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1804 -msgid "" -"How many seconds SSSD has to wait before refreshing its cache of sudo rules." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1642 -msgid "<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1815 -msgid "" -"This manual page only describes attribute name mapping. For detailed " -"explanation of sudo related attribute semantics, see <citerefentry> " -"<refentrytitle>sudoers.ldap</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1825 -msgid "AUTOFS OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1827 -msgid "" -"Please note that the default values correspond to the default schema which " -"is RFC2307." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1834 -msgid "ldap_autofs_map_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1837 sssd-ldap.5.xml:1863 -msgid "The object class of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1840 sssd-ldap.5.xml:1867 -msgid "Default: automountMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1847 -msgid "ldap_autofs_map_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1850 -msgid "The name of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1853 -msgid "Default: ou" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1860 -msgid "ldap_autofs_entry_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1874 -msgid "ldap_autofs_entry_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1877 sssd-ldap.5.xml:1891 -msgid "" -"The key of an automount entry in LDAP. The entry usually corresponds to a " -"mount point." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1888 -msgid "ldap_autofs_entry_value (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1895 -msgid "Default: automountInformation" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1832 -msgid "" -"<placeholder type=\"variablelist\" id=\"0\"/> <placeholder type=" -"\"variablelist\" id=\"1\"/> <placeholder type=\"variablelist\" id=\"2\"/> " -"<placeholder type=\"variablelist\" id=\"3\"/> <placeholder type=" -"\"variablelist\" id=\"4\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1904 -msgid "ADVANCED OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1911 -msgid "ldap_netgroup_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1914 -msgid "" -"An optional base DN to restrict netgroup searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1930 -msgid "ldap_user_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1933 -msgid "An optional base DN to restrict user searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1949 -msgid "ldap_group_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1952 -msgid "An optional base DN to restrict group searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1968 -msgid "ldap_user_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1971 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict user searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1975 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_user_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1985 -#, no-wrap -msgid "" -" ldap_user_search_filter = (loginShell=/bin/tcsh)\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1988 -msgid "" -"This filter would restrict user searches to users that have their shell set " -"to /bin/tcsh." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1995 -msgid "ldap_group_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1998 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict group searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2002 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_group_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2012 -msgid "ldap_sudo_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2015 -msgid "" -"An optional base DN to restrict sudo rules searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2034 -msgid "ldap_autofs_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2037 -msgid "" -"An optional base DN to restrict automounter searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1906 -msgid "" -"These options are supported by LDAP domains, but they should be used with " -"caution. Please include them in your configuration only if you know what you " -"are doing. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2066 -msgid "" -"The following example assumes that SSSD is correctly configured and LDAP is " -"set to one of the domains in the <replaceable>[domains]</replaceable> " -"section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ldap.5.xml:2072 -#, no-wrap -msgid "" -" [domain/LDAP]\n" -" id_provider = ldap\n" -" auth_provider = ldap\n" -" ldap_uri = ldap://ldap.mydomain.org\n" -" ldap_search_base = dc=mydomain,dc=org\n" -" ldap_tls_reqcert = demand\n" -" cache_credentials = true\n" -" enumerate = true\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2071 sssd-simple.5.xml:134 sssd-ipa.5.xml:552 -#: sssd-krb5.5.xml:441 -msgid "<placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:2085 sssd_krb5_locator_plugin.8.xml:61 -msgid "NOTES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2087 -msgid "" -"The descriptions of some of the configuration options in this manual page " -"are based on the <citerefentry> <refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page from the OpenLDAP 2.4 " -"distribution." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2098 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <refentryinfo> -#: pam_sss.8.xml:8 include/upstream.xml:2 -msgid "" -"<productname>SSSD</productname> <orgname>The SSSD upstream - http://" -"fedorahosted.org/sssd</orgname>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: pam_sss.8.xml:13 pam_sss.8.xml:18 -msgid "pam_sss" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: pam_sss.8.xml:19 -msgid "PAM module for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: pam_sss.8.xml:24 -msgid "" -"<command>pam_sss.so</command> <arg choice='opt'> <replaceable>quiet</" -"replaceable> </arg> <arg choice='opt'> <replaceable>forward_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_first_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_authtok</" -"replaceable> </arg> <arg choice='opt'> <replaceable>retry=N</replaceable> </" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:45 -msgid "" -"<command>pam_sss.so</command> is the PAM interface to the System Security " -"Services daemon (SSSD). Errors and results are logged through <command>syslog" -"(3)</command> with the LOG_AUTHPRIV facility." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:55 -msgid "<option>quiet</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:58 -msgid "Suppress log messages for unknown users." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:63 -msgid "<option>forward_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:66 -msgid "" -"If <option>forward_pass</option> is set the entered password is put on the " -"stack for other PAM modules to use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:73 -msgid "<option>use_first_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:76 -msgid "" -"The argument use_first_pass forces the module to use a previous stacked " -"modules password and will never prompt the user - if no password is " -"available or the password is not appropriate, the user will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:84 -msgid "<option>use_authtok</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:87 -msgid "" -"When password changing enforce the module to set the new password to the one " -"provided by a previously stacked password module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:94 -msgid "<option>retry=N</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:97 -msgid "" -"If specified the user is asked another N times for a password if " -"authentication fails. Default is 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:99 -msgid "" -"Please note that this option might not work as expected if the application " -"calling PAM handles the user dialog on its own. A typical example is " -"<command>sshd</command> with <option>PasswordAuthentication</option>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:110 -msgid "MODULE TYPES PROVIDED" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:111 -msgid "" -"All module types (<option>account</option>, <option>auth</option>, " -"<option>password</option> and <option>session</option>) are provided." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:117 -msgid "FILES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:118 -msgid "" -"If a password reset by root fails, because the corresponding SSSD provider " -"does not support password resets, an individual message can be displayed. " -"This message can e.g. contain instructions about how to reset a password." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:123 -msgid "" -"The message is read from the file <filename>pam_sss_pw_reset_message.LOC</" -"filename> where LOC stands for a locale string returned by <citerefentry> " -"<refentrytitle>setlocale</refentrytitle><manvolnum>3</manvolnum> </" -"citerefentry>. If there is no matching file the content of " -"<filename>pam_sss_pw_reset_message.txt</filename> is displayed. Root must be " -"the owner of the files and only root may have read and write permissions " -"while all other users must have only read permissions." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:133 -msgid "" -"These files are searched in the directory <filename>/etc/sssd/customize/" -"DOMAIN_NAME/</filename>. If no matching file is present a generic message is " -"displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:141 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd_krb5_locator_plugin.8.xml:10 sssd_krb5_locator_plugin.8.xml:15 -msgid "sssd_krb5_locator_plugin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:22 -msgid "" -"The Kerberos locator plugin <command>sssd_krb5_locator_plugin</command> is " -"used by the Kerberos provider of <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry> to tell the Kerberos " -"libraries what Realm and which KDC to use. Typically this is done in " -"<citerefentry> <refentrytitle>krb5.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> which is always read by the Kerberos libraries. " -"To simplify the configuration the Realm and the KDC can be defined in " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> as described in <citerefentry> " -"<refentrytitle>sssd-krb5.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry> puts the Realm and the name or IP address of the KDC into " -"the environment variables SSSD_KRB5_REALM and SSSD_KRB5_KDC respectively. " -"When <command>sssd_krb5_locator_plugin</command> is called by the kerberos " -"libraries it reads and evaluates these variables and returns them to the " -"libraries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:63 -msgid "" -"Not all Kerberos implementations support the use of plugins. If " -"<command>sssd_krb5_locator_plugin</command> is not available on your system " -"you have to edit /etc/krb5.conf to reflect your Kerberos setup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:69 -msgid "" -"If the environment variable SSSD_KRB5_LOCATOR_DEBUG is set to any value " -"debug messages will be sent to stderr." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:77 -msgid "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-simple.5.xml:10 sssd-simple.5.xml:16 -msgid "sssd-simple" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd-simple.5.xml:17 -msgid "the configuration file for SSSD's 'simple' access-control provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:24 -msgid "" -"This manual page describes the configuration of the simple access-control " -"provider for <citerefentry> <refentrytitle>sssd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry>. For a detailed syntax reference, " -"refer to the <quote>FILE FORMAT</quote> section of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:38 -msgid "" -"The simple access provider grants or denies access based on an access or " -"deny list of user or group names. The following rules apply:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:43 -msgid "If all lists are empty, access is granted" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:47 -msgid "" -"If any list is provided, the order of evaluation is allow,deny. This means " -"that any matching deny rule will supersede any matched allow rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:54 -msgid "" -"If either or both \"allow\" lists are provided, all users are denied unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:60 -msgid "" -"If only \"deny\" lists are provided, all users are granted access unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:78 -msgid "simple_allow_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:81 -msgid "Comma separated list of users who are allowed to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:88 -msgid "simple_deny_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:91 -msgid "Comma separated list of users who are explicitly denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:97 -msgid "simple_allow_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:100 -msgid "" -"Comma separated list of groups that are allowed to log in. This applies only " -"to groups within this SSSD domain. Local groups are not evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:108 -msgid "simple_deny_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:111 -msgid "" -"Comma separated list of groups that are explicitly denied access. This " -"applies only to groups within this SSSD domain. Local groups are not " -"evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:70 sssd-ipa.5.xml:65 -msgid "" -"Refer to the section <quote>DOMAIN SECTIONS</quote> of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page for details on the configuration of an SSSD " -"domain. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:120 -msgid "" -"Please note that it is an configuration error if both, simple_allow_users " -"and simple_deny_users, are defined." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:128 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the simple access provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-simple.5.xml:135 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" access_provider = simple\n" -" simple_allow_users = user1, user2\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:145 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ipa.5.xml:10 sssd-ipa.5.xml:16 -msgid "sssd-ipa" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:23 -msgid "" -"This manual page describes the configuration of the IPA provider for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. For a detailed syntax reference, refer to the <quote>FILE " -"FORMAT</quote> section of the <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:36 -msgid "" -"The IPA provider is a back end used to connect to an IPA server. (Refer to " -"the freeipa.org web site for information about IPA servers.) This provider " -"requires that the machine be joined to the IPA domain; configuration is " -"almost entirely self-discovered and obtained directly from the server." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:43 -msgid "" -"The IPA provider accepts the same options used by the <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> identity provider and the <citerefentry> <refentrytitle>sssd-" -"krb5</refentrytitle> <manvolnum>5</manvolnum> </citerefentry> authentication " -"provider with some exceptions described below." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:55 -msgid "" -"However, it is neither necessary nor recommended to set these options. IPA " -"provider can also be used as an access and chpass provider. As an access " -"provider it uses HBAC (host-based access control) rules. Please refer to " -"freeipa.org for more information about HBAC. No configuration of access " -"provider is required on the client side." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:72 -msgid "ipa_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:75 -msgid "" -"Specifies the name of the IPA domain. This is optional. If not provided, " -"the configuration domain name is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:83 -msgid "ipa_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:86 -msgid "" -"The comma-separated list of IP addresses or hostnames of the IPA servers to " -"which SSSD should connect in the order of preference. For more information " -"on failover and server redundancy, see the <quote>FAILOVER</quote> section. " -"This is optional if autodiscovery is enabled. For more information on " -"service discovery, refer to the the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:99 -msgid "ipa_hostname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:102 -msgid "" -"Optional. May be set on machines where the hostname(5) does not reflect the " -"fully qualified name used in the IPA domain to identify this host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:110 -msgid "ipa_dyndns_update (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:113 -msgid "" -"Optional. This option tells SSSD to automatically update the DNS server " -"built into FreeIPA v2 with the IP address of this client." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:118 -msgid "" -"NOTE: On older systems (such as RHEL 5), for this behavior to work reliably, " -"the default Kerberos realm must be set properly in /etc/krb5.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:129 -msgid "ipa_dyndns_iface (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:132 -msgid "" -"Optional. Applicable only when ipa_dyndns_update is true. Choose the " -"interface whose IP address should be used for dynamic DNS updates." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:137 -msgid "Default: Use the IP address of the IPA LDAP connection" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:143 -msgid "ipa_hbac_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:146 -msgid "Optional. Use the given string as search base for HBAC related objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:150 -msgid "Default: Use base DN" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:156 -msgid "ipa_host_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:159 -msgid "Optional. Use the given string as search base for host objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:168 -msgid "" -"If filter is given in any of search bases and " -"<emphasis>ipa_hbac_support_srchost</emphasis> is set to False, the filter " -"will be ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:180 -msgid "ipa_selinux_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:183 -msgid "Optional. Use the given string as search base for SELinux user maps." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:199 sssd-krb5.5.xml:229 -msgid "krb5_validate (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:202 sssd-krb5.5.xml:232 -msgid "" -"Verify with the help of krb5_keytab that the TGT obtained has not been " -"spoofed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:209 -msgid "" -"Note that this default differs from the traditional Kerberos provider back " -"end." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:219 -msgid "" -"The name of the Kerberos realm. This is optional and defaults to the value " -"of <quote>ipa_domain</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:223 -msgid "" -"The name of the Kerberos realm has a special meaning in IPA - it is " -"converted into the base DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:234 -msgid "" -"Specifies if the host and user principal should be canonicalized when " -"connecting to IPA LDAP and also for AS requests. This feature is available " -"with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:247 -msgid "ipa_hbac_refresh (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:250 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server. " -"This will reduce the latency and load on the IPA server if there are many " -"access-control requests made in a short period." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:257 -msgid "Default: 5 (seconds)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:262 -msgid "ipa_hbac_treat_deny_as (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:265 -msgid "" -"This option specifies how to treat the deprecated DENY-type HBAC rules. As " -"of FreeIPA v2.1, DENY rules are no longer supported on the server. All users " -"of FreeIPA will need to migrate their rules to use only the ALLOW rules. The " -"client will support two modes of operation during this transition period:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:274 -msgid "" -"<emphasis>DENY_ALL</emphasis>: If any HBAC DENY rules are detected, all " -"users will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:279 -msgid "" -"<emphasis>IGNORE</emphasis>: SSSD will ignore any DENY rules. Be very " -"careful with this option, as it may result in opening unintended access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:284 -msgid "Default: DENY_ALL" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:289 -msgid "ipa_hbac_support_srchost (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:292 -msgid "" -"If this is set to false, then srchost as given to SSSD by PAM will be " -"ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:296 -msgid "" -"Note that if set to <emphasis>False</emphasis>, this option casuses filters " -"given in <emphasis>ipa_host_search_base</emphasis> to be ignored;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:307 -msgid "ipa_automount_location (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:310 -msgid "The automounter location this IPA client will be using" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:313 -msgid "Default: The location named \"default\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:319 -msgid "ipa_netgroup_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:322 -msgid "The LDAP attribute that lists netgroup's memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:331 -msgid "ipa_netgroup_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:334 -msgid "" -"The LDAP attribute that lists system users and groups that are direct " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:339 sssd-ipa.5.xml:434 -msgid "Default: memberUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:344 -msgid "ipa_netgroup_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:347 -msgid "" -"The LDAP attribute that lists hosts and host groups that are direct members " -"of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:351 sssd-ipa.5.xml:446 -msgid "Default: memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:356 -msgid "ipa_netgroup_member_ext_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:359 -msgid "" -"The LDAP attribute that lists FQDNs of hosts and host groups that are " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:363 -msgid "Default: externalHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:368 -msgid "ipa_netgroup_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:371 -msgid "The LDAP attribute that contains NIS domain name of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:375 -msgid "Default: nisDomainName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:381 -msgid "ipa_host_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:384 sssd-ipa.5.xml:407 -msgid "The object class of a host entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:387 sssd-ipa.5.xml:410 -msgid "Default: ipaHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:392 -msgid "ipa_host_fqdn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:395 -msgid "The LDAP attribute that contains FQDN of the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:398 -msgid "Default: fqdn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:404 -msgid "ipa_selinux_usermap_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:415 -msgid "ipa_selinux_usermap_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:418 -msgid "The LDAP attribute that contains the name of SELinux usermap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:427 -msgid "ipa_selinux_usermap_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:430 -msgid "" -"The LDAP attribute that contains all users / groups this rule match against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:439 -msgid "ipa_selinux_usermap_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:442 -msgid "" -"The LDAP attribute that contains all hosts / hostgroups this rule match " -"against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:451 -msgid "ipa_selinux_usermap_see_also (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:454 -msgid "" -"The LDAP attribute that contains DN of HBAC rule which can be used for " -"matching instead of memberUser and memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:459 -msgid "Default: seeAlso" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:464 -msgid "ipa_selinux_usermap_selinux_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:467 -msgid "The LDAP attribute that contains SELinux user string itself." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:471 -msgid "Default: ipaSELinuxUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:476 -msgid "ipa_selinux_usermap_enabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:479 -msgid "" -"The LDAP attribute that contains whether or not is user map enabled for " -"usage." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:483 -msgid "Default: ipaEnabledFlag" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:488 -msgid "ipa_selinux_usermap_user_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:491 -msgid "The LDAP attribute that contains user category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:495 -msgid "Default: userCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:500 -msgid "ipa_selinux_usermap_host_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:503 -msgid "The LDAP attribute that contains host category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:507 -msgid "Default: hostCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:512 -msgid "ipa_selinux_usermap_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:515 -msgid "The LDAP attribute that contains unique ID of the user map." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:519 -msgid "Default: ipaUniqueID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:524 -msgid "ipa_host_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:527 -msgid "The LDAP attribute that contains the host's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:531 -msgid "Default: ipaSshPubKey" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:546 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the ipa provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ipa.5.xml:553 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" id_provider = ipa\n" -" ipa_server = ipaserver.example.com\n" -" ipa_hostname = myhost.example.com\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:564 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.8.xml:10 sssd.8.xml:15 -msgid "sssd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.8.xml:16 -msgid "System Security Services Daemon" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sssd.8.xml:21 -msgid "" -"<command>sssd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:31 -msgid "" -"<command>SSSD</command> provides a set of daemons to manage access to remote " -"directories and authentication mechanisms. It provides an NSS and PAM " -"interface toward the system and a pluggable backend system to connect to " -"multiple different account sources as well as D-Bus interface. It is also " -"the basis to provide client auditing and policy services for projects like " -"FreeIPA. It provides a more robust database to store local users as well as " -"extended user data." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:46 -msgid "" -"<option>-d</option>,<option>--debug-level</option> <replaceable>LEVEL</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:53 -msgid "<option>--debug-timestamps=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:57 -msgid "<emphasis>1</emphasis>: Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:60 -msgid "<emphasis>0</emphasis>: Disable timestamp in the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:69 -msgid "<option>--debug-microseconds=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:73 -msgid "" -"<emphasis>1</emphasis>: Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:76 -msgid "<emphasis>0</emphasis>: Disable microseconds in timestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:79 -msgid "Default: 0" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:85 -msgid "<option>-f</option>,<option>--debug-to-files</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:89 -msgid "" -"Send the debug output to files instead of stderr. By default, the log files " -"are stored in <filename>/var/log/sssd</filename> and there are separate log " -"files for every SSSD service and domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:97 -msgid "<option>-D</option>,<option>--daemon</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:101 -msgid "Become a daemon after starting up." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:107 -msgid "<option>-i</option>,<option>--interactive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:111 -msgid "Run in the foreground, don't become a daemon." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:117 sss_debuglevel.8.xml:42 -msgid "<option>-c</option>,<option>--config</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:121 sss_debuglevel.8.xml:46 -msgid "" -"Specify a non-default config file. The default is <filename>/etc/sssd/sssd." -"conf</filename>. For reference on the config file syntax and options, " -"consult the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:135 -msgid "<option>--version</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:139 -msgid "Print version number and exit." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.8.xml:147 -msgid "Signals" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:150 -msgid "SIGTERM/SIGINT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:153 -msgid "" -"Informs the SSSD to gracefully terminate all of its child processes and then " -"shut down the monitor." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:159 -msgid "SIGHUP" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:162 -msgid "" -"Tells the SSSD to stop writing to its current debug file descriptors and to " -"close and reopen them. This is meant to facilitate log rolling with programs " -"like logrotate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:170 -msgid "SIGUSR1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:173 -msgid "" -"Tells the SSSD to simulate offline operation for one minute. This is mostly " -"useful for testing purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:179 -msgid "SIGUSR2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:182 -msgid "" -"Tells the SSSD to go online immediately. This is mostly useful for testing " -"purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:193 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_obfuscate.8.xml:10 sss_obfuscate.8.xml:15 -msgid "sss_obfuscate" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_obfuscate.8.xml:16 -msgid "obfuscate a clear text password" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_obfuscate.8.xml:21 -msgid "" -"<command>sss_obfuscate</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>[PASSWORD]</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:32 -msgid "" -"<command>sss_obfuscate</command> converts a given password into human-" -"unreadable format and places it into appropriate domain section of the SSSD " -"config file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:37 -msgid "" -"The cleartext password is read from standard input or entered " -"interactively. The obfuscated password is put into " -"<quote>ldap_default_authtok</quote> parameter of a given SSSD domain and the " -"<quote>ldap_default_authtok_type</quote> parameter is set to " -"<quote>obfuscated_password</quote>. Refer to <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more details on these parameters." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:49 -msgid "" -"Please note that obfuscating the password provides <emphasis>no real " -"security benefit</emphasis> as it is still possible for an attacker to " -"reverse-engineer the password back. Using better authentication mechanisms " -"such as client side certificates or GSSAPI is <emphasis>strongly</emphasis> " -"advised." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:63 -msgid "<option>-s</option>,<option>--stdin</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:67 -msgid "The password to obfuscate will be read from standard input." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:74 sss_ssh_authorizedkeys.1.xml:82 -#: sss_ssh_knownhostsproxy.1.xml:81 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>DOMAIN</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:79 -msgid "" -"The SSSD domain to use the password in. The default name is <quote>default</" -"quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:86 -msgid "" -"<option>-f</option>,<option>--file</option> <replaceable>FILE</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:91 -msgid "Read the config file specified by the positional parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:95 -msgid "Default: <filename>/etc/sssd/sssd.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:105 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_useradd.8.xml:10 sss_useradd.8.xml:15 -msgid "sss_useradd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_useradd.8.xml:16 -msgid "create a new user" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_useradd.8.xml:21 -msgid "" -"<command>sss_useradd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:32 -msgid "" -"<command>sss_useradd</command> creates a new user account using the values " -"specified on the command line plus the default values from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:43 -msgid "" -"<option>-u</option>,<option>--uid</option> <replaceable>UID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:48 -msgid "" -"Set the UID of the user to the value of <replaceable>UID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:55 sss_usermod.8.xml:43 -msgid "" -"<option>-c</option>,<option>--gecos</option> <replaceable>COMMENT</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:60 sss_usermod.8.xml:48 -msgid "" -"Any text string describing the user. Often used as the field for the user's " -"full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:67 sss_usermod.8.xml:55 -msgid "" -"<option>-h</option>,<option>--home</option> <replaceable>HOME_DIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:72 -msgid "" -"The home directory of the user account. The default is to append the " -"<replaceable>LOGIN</replaceable> name to <filename>/home</filename> and use " -"that as the home directory. The base that is prepended before " -"<replaceable>LOGIN</replaceable> is tunable with <quote>user_defaults/" -"baseDirectory</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:82 sss_usermod.8.xml:66 -msgid "" -"<option>-s</option>,<option>--shell</option> <replaceable>SHELL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:87 -msgid "" -"The user's login shell. The default is currently <filename>/bin/bash</" -"filename>. The default can be changed with <quote>user_defaults/" -"defaultShell</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:96 -msgid "" -"<option>-G</option>,<option>--groups</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:101 -msgid "A list of existing groups this user is also a member of." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:107 -msgid "<option>-m</option>,<option>--create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:111 -msgid "" -"Create the user's home directory if it does not exist. The files and " -"directories contained in the skeleton directory (which can be defined with " -"the -k option or in the config file) will be copied to the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:121 -msgid "<option>-M</option>,<option>--no-create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:125 -msgid "" -"Do not create the user's home directory. Overrides configuration settings." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:132 -msgid "" -"<option>-k</option>,<option>--skel</option> <replaceable>SKELDIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:137 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<command>sss_useradd</command>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:143 -msgid "" -"This option is only valid if the <option>-m</option> (or <option>--create-" -"home</option>) option is specified, or creation of home directories is set " -"to TRUE in the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:152 sss_usermod.8.xml:124 -msgid "" -"<option>-Z</option>,<option>--selinux-user</option> " -"<replaceable>SELINUX_USER</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:157 -msgid "" -"The SELinux user for the user's login. If not specified, the system default " -"will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:169 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-krb5.5.xml:10 sssd-krb5.5.xml:16 -msgid "sssd-krb5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:23 -msgid "" -"This manual page describes the configuration of the Kerberos 5 " -"authentication backend for <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry>. For a detailed " -"syntax reference, please refer to the <quote>FILE FORMAT</quote> section of " -"the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:36 -msgid "" -"The Kerberos 5 authentication backend contains auth and chpass providers. It " -"must be paired with identity provider in order to function properly (for " -"example, id_provider = ldap). Some information required by the Kerberos 5 " -"authentication backend must be provided by the identity provider, such as " -"the user's Kerberos Principal Name (UPN). The configuration of the identity " -"provider should have an entry to specify the UPN. Please refer to the man " -"page for the applicable identity provider for details on how to configure " -"this." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:47 -msgid "" -"This backend also provides access control based on the .k5login file in the " -"home directory of the user. See <citerefentry> <refentrytitle>.k5login</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry> for more details. " -"Please note that an empty .k5login file will deny all access to this user. " -"To activate this feature use 'access_provider = krb5' in your sssd " -"configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:55 -msgid "" -"In the case where the UPN is not available in the identity backend " -"<command>sssd</command> will construct a UPN using the format " -"<replaceable>username</replaceable>@<replaceable>krb5_realm</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:106 -msgid "" -"The name of the Kerberos realm. This option is required and must be " -"specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:113 -msgid "krb5_kpasswd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:116 -msgid "" -"If the change password service is not running on the KDC alternative servers " -"can be defined here. An optional port number (preceded by a colon) may be " -"appended to the addresses or hostnames." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:122 -msgid "" -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. Please note that even if there are no more " -"kpasswd servers to try the back end is not switch to offline if " -"authentication against the KDC is still possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:129 -msgid "Default: Use the KDC" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:135 -msgid "krb5_ccachedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:138 -msgid "" -"Directory to store credential caches. All the substitution sequences of " -"krb5_ccname_template can be used here, too, except %d and %P. If the " -"directory does not exist it will be created. If %u, %U, %p or %h are used a " -"private directory belonging to the user is created. Otherwise a public " -"directory with restricted deletion flag (aka sticky bit, see <citerefentry> " -"<refentrytitle>chmod</refentrytitle> <manvolnum>1</manvolnum> </" -"citerefentry> for details) is created." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:151 -msgid "Default: /tmp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:157 -msgid "krb5_ccname_template (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:171 -msgid "login UID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:174 -msgid "%p" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:175 -msgid "principal name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:179 -msgid "%r" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:180 -msgid "realm name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:183 -msgid "%h" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:184 -msgid "home directory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:189 -msgid "value of krb5ccache_dir" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:194 -msgid "%P" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:195 -msgid "the process ID of the sssd client" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:160 -msgid "" -"Location of the user's credential cache. Currently only file based " -"credential caches are supported. In the template the following sequences are " -"substituted: <placeholder type=\"variablelist\" id=\"0\"/> If the template " -"ends with 'XXXXXX' mkstemp(3) is used to create a unique filename in a safe " -"way." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:209 -msgid "Default: FILE:%d/krb5cc_%U_XXXXXX" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:215 -msgid "krb5_auth_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:218 -msgid "" -"Timeout in seconds after an online authentication or change password request " -"is aborted. If possible the authentication request is continued offline." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:241 -msgid "krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:244 -msgid "" -"The location of the keytab to use when validating credentials obtained from " -"KDCs." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:248 -msgid "Default: /etc/krb5.keytab" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:254 -msgid "krb5_store_password_if_offline (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:257 -msgid "" -"Store the password of the user if the provider is offline and use it to " -"request a TGT when the provider gets online again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:262 -msgid "" -"Please note that this feature currently only available on a Linux platform. " -"Passwords stored in this way are kept in plaintext in the kernel keyring and " -"are potentially accessible by the root user (with difficulty)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:275 -msgid "krb5_renewable_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:278 -msgid "" -"Request a renewable ticket with a total lifetime given by an integer " -"immediately followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:283 sssd-krb5.5.xml:319 -msgid "<emphasis>s</emphasis> seconds" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:286 sssd-krb5.5.xml:322 -msgid "<emphasis>m</emphasis> minutes" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:289 sssd-krb5.5.xml:325 -msgid "<emphasis>h</emphasis> hours" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:292 sssd-krb5.5.xml:328 -msgid "<emphasis>d</emphasis> days." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:295 sssd-krb5.5.xml:331 -msgid "If there is no delimiter <emphasis>s</emphasis> is assumed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:299 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"renewable lifetime to one and a half hours please use '90m' instead of " -"'1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:305 -msgid "Default: not set, i.e. the TGT is not renewable" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:311 -msgid "krb5_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:314 -msgid "" -"Request ticket with a with a lifetime given by an integer immediately " -"followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:335 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"lifetime to one and a half hours please use '90m' instead of '1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:340 -msgid "" -"Default: not set, i.e. the default ticket lifetime configured on the KDC." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:347 -msgid "krb5_renew_interval (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:350 -msgid "" -"The time in seconds between two checks if the TGT should be renewed. TGTs " -"are renewed if about half of their lifetime is exceeded." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:355 -msgid "If this option is not set or 0 the automatic renewal is disabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:365 -msgid "krb5_use_fast (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:368 -msgid "" -"Enables flexible authentication secure tunneling (FAST) for Kerberos pre-" -"authentication. The following options are supported:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:373 -msgid "" -"<emphasis>never</emphasis> use FAST, this is equivalent to not set this " -"option at all." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:377 -msgid "" -"<emphasis>try</emphasis> to use FAST, if the server does not support fast " -"continue without." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:381 -msgid "" -"<emphasis>demand</emphasis> to use FAST, fail if the server does not require " -"fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:385 -msgid "Default: not set, i.e. FAST is not used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:388 -msgid "Please note that a keytab is required to use fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:391 -msgid "" -"Please note also that sssd supports fast only with MIT Kerberos version 1.8 " -"and above. If sssd used with an older version using this option is a " -"configuration error." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:400 -msgid "krb5_fast_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:403 -msgid "Specifies the server principal to use for FAST." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:412 -msgid "" -"Specifies if the host and user principal should be canonicalized. This " -"feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:65 -msgid "" -"If the auth-module krb5 is used in a SSSD domain, the following options must " -"be used. See the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page, section <quote>DOMAIN " -"SECTIONS</quote> for details on the configuration of a SSSD domain. " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:434 -msgid "" -"The following example assumes that SSSD is correctly configured and FOO is " -"one of the domains in the <replaceable>[sssd]</replaceable> section. This " -"example shows only configuration of Kerberos authentication, it does not " -"include any identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-krb5.5.xml:442 -#, no-wrap -msgid "" -" [domain/FOO]\n" -" auth_provider = krb5\n" -" krb5_server = 192.168.1.1\n" -" krb5_realm = EXAMPLE.COM\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:453 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupadd.8.xml:10 sss_groupadd.8.xml:15 -msgid "sss_groupadd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupadd.8.xml:16 -msgid "create a new group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupadd.8.xml:21 -msgid "" -"<command>sss_groupadd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:32 -msgid "" -"<command>sss_groupadd</command> creates a new group. These groups are " -"compatible with POSIX groups, with the additional feature that they can " -"contain other groups as members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupadd.8.xml:43 -msgid "" -"<option>-g</option>,<option>--gid</option> <replaceable>GID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupadd.8.xml:48 -msgid "" -"Set the GID of the group to the value of <replaceable>GID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_userdel.8.xml:10 sss_userdel.8.xml:15 -msgid "sss_userdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_userdel.8.xml:16 -msgid "delete a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_userdel.8.xml:21 -msgid "" -"<command>sss_userdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:32 -msgid "" -"<command>sss_userdel</command> deletes a user identified by login name " -"<replaceable>LOGIN</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:44 -msgid "<option>-r</option>,<option>--remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:48 -msgid "" -"Files in the user's home directory will be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:56 -msgid "<option>-R</option>,<option>--no-remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:60 -msgid "" -"Files in the user's home directory will NOT be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:68 -msgid "<option>-f</option>,<option>--force</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:72 -msgid "" -"This option forces <command>sss_userdel</command> to remove the user's home " -"directory and mail spool, even if they are not owned by the specified user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:80 -msgid "<option>-k</option>,<option>--kick</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:84 -msgid "Before actually deleting the user, terminate all his processes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:95 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupdel.8.xml:10 sss_groupdel.8.xml:15 -msgid "sss_groupdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupdel.8.xml:16 -msgid "delete a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupdel.8.xml:21 -msgid "" -"<command>sss_groupdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:32 -msgid "" -"<command>sss_groupdel</command> deletes a group identified by its name " -"<replaceable>GROUP</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupshow.8.xml:10 sss_groupshow.8.xml:15 -msgid "sss_groupshow" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupshow.8.xml:16 -msgid "print properties of a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupshow.8.xml:21 -msgid "" -"<command>sss_groupshow</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:32 -msgid "" -"<command>sss_groupshow</command> displays information about a group " -"identified by its name <replaceable>GROUP</replaceable>. The information " -"includes the group ID number, members of the group and the parent group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupshow.8.xml:43 -msgid "<option>-R</option>,<option>--recursive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupshow.8.xml:47 -msgid "" -"Also print indirect group members in a tree-like hierarchy. Note that this " -"also affects printing parent groups - without <option>R</option>, only the " -"direct parent will be printed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_usermod.8.xml:10 sss_usermod.8.xml:15 -msgid "sss_usermod" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_usermod.8.xml:16 -msgid "modify a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_usermod.8.xml:21 -msgid "" -"<command>sss_usermod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:32 -msgid "" -"<command>sss_usermod</command> modifies the account specified by " -"<replaceable>LOGIN</replaceable> to reflect the changes that are specified " -"on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:60 -msgid "The home directory of the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:71 -msgid "The user's login shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:82 -msgid "" -"Append this user to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:96 -msgid "" -"Remove this user from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:103 -msgid "<option>-l</option>,<option>--lock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:107 -msgid "Lock the user account. The user won't be able to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:114 -msgid "<option>-u</option>,<option>--unlock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:118 -msgid "Unlock the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:129 -msgid "The SELinux user for the user's login." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:140 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_cache.8.xml:10 sss_cache.8.xml:15 -msgid "sss_cache" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_cache.8.xml:16 -msgid "perform cache cleanup" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_cache.8.xml:21 -msgid "" -"<command>sss_cache</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_cache.8.xml:31 -msgid "" -"<command>sss_cache</command> invalidates records in SSSD cache. Invalidated " -"records are forced to be reloaded from server as soon as related SSSD " -"backend is online." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:42 -msgid "" -"<option>-u</option>,<option>--user</option> <replaceable>login</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:47 -msgid "Invalidate specific user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:53 -msgid "<option>-U</option>,<option>--users</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:57 -msgid "" -"Invalidate all user records. This option overrides invalidation of specific " -"user if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:64 -msgid "" -"<option>-g</option>,<option>--group</option> <replaceable>group</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:69 -msgid "Invalidate specific group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:75 -msgid "<option>-G</option>,<option>--groups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:79 -msgid "" -"Invalidate all group records. This option overrides invalidation of specific " -"group if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:86 -msgid "" -"<option>-n</option>,<option>--netgroup</option> <replaceable>netgroup</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:91 -msgid "Invalidate specific netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:97 -msgid "<option>-N</option>,<option>--netgroups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:101 -msgid "" -"Invalidate all netgroup records. This option overrides invalidation of " -"specific netgroup if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:108 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>domain</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:113 -msgid "Restrict invalidation process only to a particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_debuglevel.8.xml:10 sss_debuglevel.8.xml:15 -msgid "sss_debuglevel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_debuglevel.8.xml:16 -msgid "change debug level while SSSD is running" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_debuglevel.8.xml:21 -msgid "" -"<command>sss_debuglevel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>NEW_DEBUG_LEVEL</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_debuglevel.8.xml:32 -msgid "" -"<command>sss_debuglevel</command> changes debug level of SSSD monitor and " -"providers to <replaceable>NEW_DEBUG_LEVEL</replaceable> while SSSD is " -"running." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_debuglevel.8.xml:59 -msgid "<replaceable>NEW_DEBUG_LEVEL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_authorizedkeys.1.xml:10 sss_ssh_authorizedkeys.1.xml:15 -msgid "sss_ssh_authorizedkeys" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_ssh_authorizedkeys.1.xml:11 sss_ssh_knownhostsproxy.1.xml:11 -msgid "1" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_authorizedkeys.1.xml:16 -msgid "get OpenSSH authorized keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_authorizedkeys.1.xml:21 -msgid "" -"<command>sss_ssh_authorizedkeys</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>USER</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:32 -msgid "" -"<command>sss_ssh_authorizedkeys</command> acquires SSH public keys for user " -"<replaceable>USER</replaceable> and outputs them in OpenSSH authorized_keys " -"format (see the <quote>AUTHORIZED_KEYS FILE FORMAT</quote> section of " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> for more information)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:41 -msgid "" -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_authorizedkeys</" -"command> for public key user authentication if it is compiled with support " -"for either <quote>AuthorizedKeysCommand</quote> or <quote>PubkeyAgent</" -"quote> <citerefentry> <refentrytitle>sshd_config</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:58 -#, no-wrap -msgid "AuthorizedKeysCommand /usr/bin/sss_ssh_authorizedkeys\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:51 -msgid "" -"If <quote>AuthorizedKeysCommand</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by putting the following directive " -"in <citerefentry> <refentrytitle>sshd_config</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry>: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:69 -#, no-wrap -msgid "PubKeyAgent /usr/bin/sss_ssh_authorizedkeys %u\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:62 -msgid "" -"If <quote>PubkeyAgent</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by using the following directive " -"for <citerefentry> <refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> configuration: <placeholder type=\"programlisting" -"\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_authorizedkeys.1.xml:87 -msgid "" -"Search for user public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:98 -msgid "" -"<citerefentry> <refentrytitle>sshd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sshd_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_knownhostsproxy</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_knownhostsproxy.1.xml:10 sss_ssh_knownhostsproxy.1.xml:15 -msgid "sss_ssh_knownhostsproxy" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_knownhostsproxy.1.xml:16 -msgid "get OpenSSH host keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_knownhostsproxy.1.xml:21 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>HOST</replaceable></arg> <arg " -"choice='opt'><replaceable>PROXY_COMMAND</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:33 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> acquires SSH host public keys for " -"host <replaceable>HOST</replaceable>, stores them in a custom OpenSSH " -"known_hosts file (see the <quote>SSH_KNOWN_HOSTS FILE FORMAT</quote> section " -"of <citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> for more information) <filename>/var/lib/sss/" -"pubconf/known_hosts</filename> and estabilishes connection to the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:43 -msgid "" -"If <replaceable>PROXY_COMMAND</replaceable> is specified, it is used to " -"create the connection to the host instead of opening a socket." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_knownhostsproxy.1.xml:55 -#, no-wrap -msgid "" -"ProxyCommand /usr/bin/sss_ssh_knownhostsproxy -p %p %h\n" -"GlobalKnownHostsFile2 /var/lib/sss/pubconf/known_hosts\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:48 -msgid "" -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_knownhostsproxy</" -"command> for host key authentication by using the following directives for " -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> configuration: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_ssh_knownhostsproxy.1.xml:69 -msgid "" -"<option>-p</option>,<option>--port</option> <replaceable>PORT</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:74 -msgid "" -"Use port <replaceable>PORT</replaceable> to connect to the host. By " -"default, port 22 is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:86 -msgid "" -"Search for host public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:97 -msgid "" -"<citerefentry> <refentrytitle>ssh</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>ssh_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_authorizedkeys</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/service_discovery.xml:2 -msgid "SERVICE DISCOVERY" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/service_discovery.xml:4 -msgid "" -"The service discovery feature allows back ends to automatically find the " -"appropriate servers to connect to using a special DNS query." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:9 -msgid "Configuration" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:11 -msgid "" -"If no servers are specified, the back end automatically uses service " -"discovery to try to find a server. Optionally, the user may choose to use " -"both fixed server addresses and service discovery by inserting a special " -"keyword, <quote>_srv_</quote>, in the list of servers. The order of " -"preference is maintained. This feature is useful if, for example, the user " -"prefers to use service discovery whenever possible, and fall back to a " -"specific server when no servers can be discovered using DNS." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:23 -msgid "The domain name" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:25 -msgid "" -"Please refer to the <quote>dns_discovery_domain</quote> parameter in the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for more details." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:35 -msgid "The protocol" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:37 -msgid "" -"The queries usually specify _tcp as the protocol. Exceptions are documented " -"in respective option description." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:42 -msgid "See Also" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:44 -msgid "" -"For more information on the service discovery mechanism, refer to RFC 2782." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/upstream.xml:1 -msgid "<placeholder type=\"refentryinfo\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/failover.xml:2 -msgid "FAILOVER" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/failover.xml:4 -msgid "" -"The failover feature allows back ends to automatically switch to a different " -"server if the primary server fails." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:8 -msgid "Failover Syntax" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:10 -msgid "" -"The list of servers is given as a comma-separated list; any number of spaces " -"is allowed around the comma. The servers are listed in order of preference. " -"The list can contain any number of servers." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:17 -msgid "The Failover Mechanism" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:19 -msgid "" -"The failover mechanism distinguishes between a machine and a service. The " -"back end first tries to resolve the hostname of a given machine; if this " -"resolution attempt fails, the machine is considered offline. No further " -"attempts are made to connect to this machine for any other service. If the " -"resolution attempt succeeds, the back end tries to connect to a service on " -"this machine. If the service connection attempt fails, then only this " -"particular service is considered offline and the back end automatically " -"switches over to the next service. The machine is still considered online " -"and might still be tried for another service." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:32 -msgid "" -"Further connection attempts are made to machines or services marked as " -"offline after a specified period of time; this is currently hard coded to 30 " -"seconds." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:37 -msgid "" -"If there are no more machines to try, the back end as a whole switches to " -"offline mode, and then attempts to reconnect every 30 seconds." -msgstr "" - -#. type: Content of: <varlistentry><term> -#: include/param_help.xml:3 -msgid "<option>-h</option>,<option>--help</option>" -msgstr "" - -#. type: Content of: <varlistentry><listitem><para> -#: include/param_help.xml:7 -msgid "Display help message and exit." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:3 -msgid "" -"Bit mask that indicates which debug levels will be visible. 0x0010 is the " -"default value as well as the lowest allowed value, 0xFFF0 is the most " -"verbose mode. This setting overrides the settings from config file." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:8 -msgid "Currently supported debug levels:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:11 -msgid "" -"<emphasis>0x0010</emphasis>: Fatal failures. Anything that would prevent " -"SSSD from starting up or causes it to cease running." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:15 -msgid "" -"<emphasis>0x0020</emphasis>: Critical failures. An error that doesn't kill " -"the SSSD, but one that indicates that at least one major feature is not " -"going to work properly." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:20 -msgid "" -"<emphasis>0x0040</emphasis>: Serious failures. An error announcing that a " -"particular request or operation has failed." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:24 -msgid "" -"<emphasis>0x0080</emphasis>: Minor failures. These are the errors that would " -"percolate down to cause the operation failure of 2." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:28 -msgid "<emphasis>0x0100</emphasis>: Configuration settings." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:31 -msgid "<emphasis>0x0200</emphasis>: Function data." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:34 -msgid "<emphasis>0x0400</emphasis>: Trace messages for operation functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:37 -msgid "" -"<emphasis>0x1000</emphasis>: Trace messages for internal control functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:40 -msgid "" -"<emphasis>0x2000</emphasis>: Contents of function-internal variables that " -"may be interesting." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:43 -msgid "<emphasis>0x4000</emphasis>: Extremely low-level tracing information." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:46 -msgid "" -"To log required debug levels, simply add their numbers together as shown in " -"following examples:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:49 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, critical failures, " -"serious failures and function data use 0x0270." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:53 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, configuration settings, " -"function data, trace messages for internal control functions use 0x1310." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:57 -msgid "" -"<emphasis>Note</emphasis>: This is new format of debug levels introduced in " -"1.7.0. Older format (numbers from 0-10) is compatible but deprecated." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/experimental.xml:1 -msgid "" -"<emphasis> This is an experimental feature, please use http://fedorahosted." -"org/sssd to report any issues. </emphasis>" -msgstr "" diff --git a/src/man/po/ko.po b/src/man/po/ko.po deleted file mode 100644 index 1c24032b1..000000000 --- a/src/man/po/ko.po +++ /dev/null @@ -1,6747 +0,0 @@ -# SOME DESCRIPTIVE TITLE -# Copyright (C) YEAR Red Hat -# This file is distributed under the same license as the sssd-docs package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@redhat.com\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-12-23 15:35+0000\n" -"Last-Translator: FULL NAME <EMAIL@ADDRESS>\n" -"Language-Team: Korean (http://www.transifex.net/projects/p/fedora/team/ko/)\n" -"Language: ko\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=1; plural=0\n" - -#. type: Content of: <reference><title> -#: sss_groupmod.8.xml:5 sssd.conf.5.xml:5 sssd-ldap.5.xml:5 pam_sss.8.xml:5 -#: sssd_krb5_locator_plugin.8.xml:5 sssd-simple.5.xml:5 sssd-ipa.5.xml:5 -#: sssd.8.xml:5 sss_obfuscate.8.xml:5 sss_useradd.8.xml:5 sssd-krb5.5.xml:5 -#: sss_groupadd.8.xml:5 sss_userdel.8.xml:5 sss_groupdel.8.xml:5 -#: sss_groupshow.8.xml:5 sss_usermod.8.xml:5 sss_cache.8.xml:5 -#: sss_debuglevel.8.xml:5 sss_ssh_authorizedkeys.1.xml:5 -#: sss_ssh_knownhostsproxy.1.xml:5 -msgid "SSSD Manual pages" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupmod.8.xml:10 sss_groupmod.8.xml:15 -msgid "sss_groupmod" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_groupmod.8.xml:11 pam_sss.8.xml:14 sssd_krb5_locator_plugin.8.xml:11 -#: sssd.8.xml:11 sss_obfuscate.8.xml:11 sss_useradd.8.xml:11 -#: sss_groupadd.8.xml:11 sss_userdel.8.xml:11 sss_groupdel.8.xml:11 -#: sss_groupshow.8.xml:11 sss_usermod.8.xml:11 sss_cache.8.xml:11 -#: sss_debuglevel.8.xml:11 -msgid "8" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupmod.8.xml:16 -msgid "modify a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupmod.8.xml:21 -msgid "" -"<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:30 sssd-ldap.5.xml:21 pam_sss.8.xml:44 -#: sssd_krb5_locator_plugin.8.xml:20 sssd-simple.5.xml:22 sssd-ipa.5.xml:21 -#: sssd.8.xml:29 sss_obfuscate.8.xml:30 sss_useradd.8.xml:30 -#: sssd-krb5.5.xml:21 sss_groupadd.8.xml:30 sss_userdel.8.xml:30 -#: sss_groupdel.8.xml:30 sss_groupshow.8.xml:30 sss_usermod.8.xml:30 -#: sss_cache.8.xml:29 sss_debuglevel.8.xml:30 sss_ssh_authorizedkeys.1.xml:30 -#: sss_ssh_knownhostsproxy.1.xml:31 -msgid "DESCRIPTION" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:32 -msgid "" -"<command>sss_groupmod</command> modifies the group to reflect the changes " -"that are specified on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:39 pam_sss.8.xml:51 sssd.8.xml:42 sss_obfuscate.8.xml:58 -#: sss_useradd.8.xml:39 sss_groupadd.8.xml:39 sss_userdel.8.xml:39 -#: sss_groupdel.8.xml:39 sss_groupshow.8.xml:39 sss_usermod.8.xml:39 -#: sss_cache.8.xml:38 sss_debuglevel.8.xml:38 sss_ssh_authorizedkeys.1.xml:78 -#: sss_ssh_knownhostsproxy.1.xml:65 -msgid "OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:43 sss_usermod.8.xml:77 -msgid "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:48 -msgid "" -"Append this group to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:57 sss_usermod.8.xml:91 -msgid "" -"<option>-r</option>,<option>--remove-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:62 -msgid "" -"Remove this group from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:72 sssd.conf.5.xml:1331 sssd-ldap.5.xml:2096 -#: pam_sss.8.xml:139 sssd_krb5_locator_plugin.8.xml:75 sssd-simple.5.xml:143 -#: sssd-ipa.5.xml:562 sssd.8.xml:191 sss_obfuscate.8.xml:103 -#: sss_useradd.8.xml:167 sssd-krb5.5.xml:451 sss_groupadd.8.xml:58 -#: sss_userdel.8.xml:93 sss_groupdel.8.xml:46 sss_groupshow.8.xml:58 -#: sss_usermod.8.xml:138 sss_ssh_authorizedkeys.1.xml:96 -#: sss_ssh_knownhostsproxy.1.xml:95 -msgid "SEE ALSO" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:74 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.conf.5.xml:10 sssd.conf.5.xml:16 -msgid "sssd.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sssd.conf.5.xml:11 sssd-ldap.5.xml:11 sssd-simple.5.xml:11 -#: sssd-ipa.5.xml:11 sssd-krb5.5.xml:11 -msgid "5" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><refmiscinfo> -#: sssd.conf.5.xml:12 sssd-ldap.5.xml:12 sssd-simple.5.xml:12 -#: sssd-ipa.5.xml:12 sssd-krb5.5.xml:12 -msgid "File Formats and Conventions" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.conf.5.xml:17 sssd-ldap.5.xml:17 sssd_krb5_locator_plugin.8.xml:16 -#: sssd-ipa.5.xml:17 sssd-krb5.5.xml:17 -msgid "the configuration file for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:21 -msgid "FILE FORMAT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:29 -#, no-wrap -msgid "" -" <replaceable>[section]</replaceable>\n" -" <replaceable>key</replaceable> = <replaceable>value</replaceable>\n" -" <replaceable>key2</replaceable> = <replaceable>value2,value3</replaceable>\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:24 -msgid "" -"The file has an ini-style syntax and consists of sections and parameters. A " -"section begins with the name of the section in square brackets and continues " -"until the next section begins. An example of section with single and multi-" -"valued parameters: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:36 -msgid "" -"The data types used are string (no quotes needed), integer and bool (with " -"values of <quote>TRUE/FALSE</quote>)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:41 -msgid "" -"A line comment starts with a hash sign (<quote>#</quote>) or a semicolon " -"(<quote>;</quote>)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:46 -msgid "" -"All sections can have an optional <replaceable>description</replaceable> " -"parameter. Its function is only as a label for the section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:52 -msgid "" -"<filename>sssd.conf</filename> must be a regular file, owned by root and " -"only root may read from or write to the file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:58 -msgid "SPECIAL SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:61 -msgid "The [sssd] section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><title> -#: sssd.conf.5.xml:70 sssd.conf.5.xml:1177 -msgid "Section parameters" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:72 -msgid "config_file_version (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:75 -msgid "" -"Indicates what is the syntax of the config file. SSSD 0.6.0 and later use " -"version 2." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:81 -msgid "services" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:84 -msgid "" -"Comma separated list of services that are started when sssd itself starts." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:88 -msgid "" -"Supported services: nss, pam <phrase condition=\"with_sudo\">, sudo</phrase>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:94 sssd.conf.5.xml:257 -msgid "reconnection_retries (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:97 sssd.conf.5.xml:260 -msgid "" -"Number of times services should attempt to reconnect in the event of a Data " -"Provider crash or restart before they give up" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:102 sssd.conf.5.xml:265 -msgid "Default: 3" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:107 -msgid "domains" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:110 -msgid "" -"A domain is a database containing user information. SSSD can use more " -"domains at the same time, but at least one must be configured or SSSD won't " -"start. This parameter described the list of domains in the order you want " -"them to be queried." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:120 -msgid "re_expression (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:123 -msgid "" -"Regular expression that describes how to parse the string containing user " -"name and domain into these components." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:127 -msgid "" -"Default: <quote>(?P<name>[^@]+)@?(?P<domain>[^@]*$)</quote> " -"which translates to \"the name is everything up to the <quote>@</quote> " -"sign, the domain everything after that\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:132 -msgid "" -"PLEASE NOTE: the support for non-unique named subpatterns is not available " -"on all platforms (e.g. RHEL5 and SLES10). Only platforms with libpcre " -"version 7 or higher can support non-unique named subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:139 -msgid "" -"PLEASE NOTE ALSO: older version of libpcre only support the Python syntax (?" -"P<name>) to label subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:146 -msgid "full_name_format (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:149 -msgid "" -"A <citerefentry> <refentrytitle>printf</refentrytitle> <manvolnum>3</" -"manvolnum> </citerefentry>-compatible format that describes how to translate " -"a (name, domain) tuple into a fully qualified name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:157 -msgid "Default: <quote>%1$s@%2$s</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:162 -msgid "try_inotify (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:165 -msgid "" -"SSSD monitors the state of resolv.conf to identify when it needs to update " -"its internal DNS resolver. By default, we will attempt to use inotify for " -"this, and will fall back to polling resolv.conf every five seconds if " -"inotify cannot be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:173 -msgid "" -"There are some limited situations where it is preferred that we should skip " -"even trying to use inotify. In these rare cases, this option should be set " -"to 'false'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:179 -msgid "" -"Default: true on platforms where inotify is supported. False on other " -"platforms." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:183 -msgid "" -"Note: this option will have no effect on platforms where inotify is " -"unavailable. On these platforms, polling will always be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:190 -msgid "krb5_rcache_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:193 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:197 -msgid "" -"This option accepts a special value __LIBKRB5_DEFAULTS__ that will instruct " -"SSSD to let libkrb5 decide the appropriate location for the replay cache." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:203 -msgid "" -"Default: Distribution-specific and specified at build-time. " -"(__LIBKRB5_DEFAULTS__ if not configured)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:63 -msgid "" -"Individual pieces of SSSD functionality are provided by special SSSD " -"services that are started and stopped together with SSSD. The services are " -"managed by a special service frequently called <quote>monitor</quote>. The " -"<quote>[sssd]</quote> section is used to configure the monitor as well as " -"some other important options like the identity domains. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:216 -msgid "SERVICES SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:218 -msgid "" -"Settings that can be used to configure different services are described in " -"this section. They should reside in the [<replaceable>$NAME</replaceable>] " -"section, for example, for NSS service, the section would be <quote>[nss]</" -"quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:225 -msgid "General service configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:227 -msgid "These options can be used to configure any service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:231 -msgid "debug_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:235 -msgid "debug_timestamps (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:238 -msgid "Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:241 sssd.conf.5.xml:376 sssd-ldap.5.xml:1328 -#: sssd-ldap.5.xml:1446 sssd-ipa.5.xml:206 sssd-ipa.5.xml:241 -msgid "Default: true" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:246 -msgid "debug_microseconds (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:249 -msgid "Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:252 sssd.conf.5.xml:641 sssd-ldap.5.xml:602 -#: sssd-ldap.5.xml:1260 sssd-ldap.5.xml:1397 sssd-ldap.5.xml:1795 -#: sssd-ipa.5.xml:123 sssd-ipa.5.xml:301 sssd-krb5.5.xml:235 -#: sssd-krb5.5.xml:269 sssd-krb5.5.xml:418 -msgid "Default: false" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:270 -msgid "command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:273 -msgid "" -"By default, the executable representing this service is called <command>sssd_" -"${service_name}</command>. This directive allows to change the executable " -"name for the service. In the vast majority of configurations, the default " -"values should suffice." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:281 -msgid "Default: <command>sssd_${service_name}</command>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:289 -msgid "NSS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:291 -msgid "" -"These options can be used to configure the Name Service Switch (NSS) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:296 -msgid "enum_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:299 -msgid "" -"How many seconds should nss_sss cache enumerations (requests for info about " -"all users)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:303 -msgid "Default: 120" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:308 -msgid "entry_cache_nowait_percentage (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:311 -msgid "" -"The entry cache can be set to automatically update entries in the background " -"if they are requested beyond a percentage of the entry_cache_timeout value " -"for the domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:317 -msgid "" -"For example, if the domain's entry_cache_timeout is set to 30s and " -"entry_cache_nowait_percentage is set to 50 (percent), entries that come in " -"after 15 seconds past the last cache update will be returned immediately, " -"but the SSSD will go and update the cache on its own, so that future " -"requests will not need to block waiting for a cache update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:327 -msgid "" -"Valid values for this option are 0-99 and represent a percentage of the " -"entry_cache_timeout for each domain. For performance reasons, this " -"percentage will never reduce the nowait timeout to less than 10 seconds. (0 " -"disables this feature)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:335 -msgid "Default: 50" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:340 -msgid "entry_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:343 -msgid "" -"Specifies for how many seconds nss_sss should cache negative cache hits " -"(that is, queries for invalid database entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:349 sssd.conf.5.xml:669 sssd-krb5.5.xml:223 -msgid "Default: 15" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:354 -msgid "filter_users, filter_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:357 -msgid "" -"Exclude certain users from being fetched from the sss NSS database. This is " -"particularly useful for system accounts. This option can also be set per-" -"domain or include fully-qualified names to filter only users from the " -"particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:364 -msgid "Default: root" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:369 -msgid "filter_users_in_groups (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:372 -msgid "" -"If you want filtered user still be group members set this option to false." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:381 -msgid "override_homedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:390 sssd-krb5.5.xml:166 -msgid "%u" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:391 sssd-krb5.5.xml:167 -msgid "login name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:394 sssd-krb5.5.xml:170 -msgid "%U" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:395 -msgid "UID number" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:398 sssd-krb5.5.xml:188 -msgid "%d" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:399 -msgid "domain name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:402 -msgid "%f" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:403 -msgid "fully qualified user name (user@domain)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:406 sssd-krb5.5.xml:200 -msgid "%%" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:407 sssd-krb5.5.xml:201 -msgid "a literal '%'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:384 -msgid "" -"Override the user's home directory. You can either provide an absolute value " -"or a template. In the template, the following sequences are substituted: " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:413 -msgid "This option can also be set per-domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:418 -msgid "allowed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:421 -msgid "" -"Restrict user shell to one of the listed values. The order of evaluation is:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:424 -msgid "1. If the shell is present in <quote>/etc/shells</quote>, it is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:428 -msgid "" -"2. If the shell is in the allowed_shells list but not in <quote>/etc/shells</" -"quote>, use the value of the shell_fallback parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:433 -msgid "" -"3. If the shell is not in the allowed_shells list and not in <quote>/etc/" -"shells</quote>, a nologin shell is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:438 -msgid "An empty string for shell is passed as-is to libc." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:441 -msgid "" -"The <quote>/etc/shells</quote> is only read on SSSD start up, which means " -"that a restart of the SSSD is required in case a new shell is installed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:445 -msgid "Default: Not set. The user shell is automatically used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:450 -msgid "vetoed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:453 -msgid "Replace any instance of these shells with the shell_fallback" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:458 -msgid "shell_fallback (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:461 -msgid "" -"The default shell to use if an allowed shell is not installed on the machine." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:465 -msgid "Default: /bin/sh" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:472 -msgid "PAM configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:474 -msgid "" -"These options can be used to configure the Pluggable Authentication Module " -"(PAM) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:479 -msgid "offline_credentials_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:482 -msgid "" -"If the authentication provider is offline, how long should we allow cached " -"logins (in days since the last successful online login)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:487 sssd.conf.5.xml:500 -msgid "Default: 0 (No limit)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:493 -msgid "offline_failed_login_attempts (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:496 -msgid "" -"If the authentication provider is offline, how many failed login attempts " -"are allowed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:506 -msgid "offline_failed_login_delay (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:509 -msgid "" -"The time in minutes which has to pass after offline_failed_login_attempts " -"has been reached before a new login attempt is possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:514 -msgid "" -"If set to 0 the user cannot authenticate offline if " -"offline_failed_login_attempts has been reached. Only a successful online " -"authentication can enable offline authentication again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:520 sssd.conf.5.xml:573 sssd.conf.5.xml:1093 -msgid "Default: 5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:526 -msgid "pam_verbosity (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:529 -msgid "" -"Controls what kind of messages are shown to the user during authentication. " -"The higher the number to more messages are displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:534 -msgid "Currently sssd supports the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:537 -msgid "<emphasis>0</emphasis>: do not show any message" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:540 -msgid "<emphasis>1</emphasis>: show only important messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:544 -msgid "<emphasis>2</emphasis>: show informational messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:547 -msgid "<emphasis>3</emphasis>: show all messages and debug information" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:551 sssd.8.xml:63 -msgid "Default: 1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:556 -msgid "pam_id_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:559 -msgid "" -"For any PAM request while SSSD is online, the SSSD will attempt to " -"immediately update the cached identity information for the user in order to " -"ensure that authentication takes place with the latest information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:565 -msgid "" -"A complete PAM conversation may perform multiple PAM requests, such as " -"account management and session opening. This option controls (on a per-" -"client-application basis) how long (in seconds) we can cache the identity " -"information to avoid excessive round-trips to the identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:579 -msgid "pam_pwd_expiration_warning (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:582 -msgid "Display a warning N days before the password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:585 -msgid "" -"Please note that the backend server has to provide information about the " -"expiration time of the password. If this information is missing, sssd " -"cannot display a warning." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:591 -msgid "Default: 7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:599 -msgid "SUDO configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:601 -msgid "These options can be used to configure the sudo service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:608 -msgid "sudo_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:611 -msgid "" -"For any sudo request that comes while SSSD is online, the SSSD will attempt " -"to update the cached rules in order to ensure that sudo has the latest " -"ruleset." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:617 -msgid "" -"The user may, however, run a couple of sudo commands successively, which " -"would trigger multiple LDAP requests. In order to speed up this use-case, " -"the sudo service maintains an in-memory cache that would be used for " -"performing fast replies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:624 -msgid "" -"This option controls how long (in seconds) can the sudo service cache rules " -"for a user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:628 -msgid "Default: 180" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:633 -msgid "sudo_timed (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:636 -msgid "" -"Whether or not to evaluate the sudoNotBefore and sudoNotAfter attributes " -"that implement time-dependent sudoers entries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:649 -msgid "AUTOFS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:651 -msgid "These options can be used to configure the autofs service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:659 -msgid "autofs_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:662 -msgid "" -"Specifies for how many seconds should the autofs responder negative cache " -"hits (that is, queries for invalid map entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:679 -msgid "DOMAIN SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:686 -msgid "min_id,max_id (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:689 -msgid "" -"UID and GID limits for the domain. If a domain contains an entry that is " -"outside these limits, it is ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:694 -msgid "" -"For users, this affects the primary GID limit. The user will not be returned " -"to NSS if either the UID or the primary GID is outside the range. For non-" -"primary group memberships, those that are in range will be reported as " -"expected." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:701 -msgid "Default: 1 for min_id, 0 (no limit) for max_id" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:707 -msgid "timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:710 -msgid "" -"Timeout in seconds between heartbeats for this domain. This is used to " -"ensure that the backend process is alive and capable of answering requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:715 sssd-ldap.5.xml:1131 -msgid "Default: 10" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:721 -msgid "enumerate (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:724 -msgid "" -"Determines if a domain can be enumerated. This parameter can have one of the " -"following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:728 -msgid "TRUE = Users and groups are enumerated" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:731 -msgid "FALSE = No enumerations for this domain" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:734 sssd.conf.5.xml:839 sssd.conf.5.xml:893 -msgid "Default: FALSE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:737 -msgid "" -"Note: Enabling enumeration has a moderate performance impact on SSSD while " -"enumeration is running. It may take up to several minutes after SSSD startup " -"to fully complete enumerations. During this time, individual requests for " -"information will go directly to LDAP, though it may be slow, due to the " -"heavy enumeration processing." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:747 -msgid "" -"While the first enumeration is running, requests for the complete user or " -"group lists may return no results until it completes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:752 -msgid "" -"Further, enabling enumeration may increase the time necessary to detect " -"network disconnection, as longer timeouts are required to ensure that " -"enumeration lookups are completed successfully. For more information, refer " -"to the man pages for the specific id_provider in use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:763 -msgid "entry_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:766 -msgid "" -"How many seconds should nss_sss consider entries valid before asking the " -"backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:770 -msgid "Default: 5400" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:776 -msgid "entry_cache_user_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:779 -msgid "" -"How many seconds should nss_sss consider user entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:783 sssd.conf.5.xml:796 sssd.conf.5.xml:809 -#: sssd.conf.5.xml:822 -msgid "Default: entry_cache_timeout" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:789 -msgid "entry_cache_group_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:792 -msgid "" -"How many seconds should nss_sss consider group entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:802 -msgid "entry_cache_netgroup_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:805 -msgid "" -"How many seconds should nss_sss consider netgroup entries valid before " -"asking the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:815 -msgid "entry_cache_service_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:818 -msgid "" -"How many seconds should nss_sss consider service entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:828 -msgid "cache_credentials (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:831 -msgid "Determines if user credentials are also cached in the local LDB cache" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:835 -msgid "User credentials are stored in a SHA512 hash, not in plaintext" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:844 -msgid "account_cache_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:847 -msgid "" -"Number of days entries are left in cache after last successful login before " -"being removed during a cleanup of the cache. 0 means keep forever. The " -"value of this parameter must be greater than or equal to " -"offline_credentials_expiration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:854 -msgid "Default: 0 (unlimited)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:860 -msgid "id_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:863 -msgid "The Data Provider identity backend to use for this domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:867 -msgid "Supported backends:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:870 -msgid "proxy: Support a legacy NSS provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:873 -msgid "local: SSSD internal local provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:876 -msgid "ldap: LDAP provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:882 -msgid "use_fully_qualified_names (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:885 -msgid "" -"If set to TRUE, all requests to this domain must use fully qualified names. " -"For example, if used in LOCAL domain that contains a \"test\" user, " -"<command>getent passwd test</command> wouldn't find the user while " -"<command>getent passwd test@LOCAL</command> would." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:898 -msgid "auth_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:901 -msgid "" -"The authentication provider used for the domain. Supported auth providers " -"are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:905 -msgid "" -"<quote>ldap</quote> for native LDAP authentication. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:912 -msgid "" -"<quote>krb5</quote> for Kerberos authentication. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:919 -msgid "" -"<quote>proxy</quote> for relaying authentication to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:922 -msgid "<quote>none</quote> disables authentication explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:925 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"authentication requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:931 -msgid "access_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:934 -msgid "" -"The access control provider used for the domain. There are two built-in " -"access providers (in addition to any included in installed backends) " -"Internal special providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:940 -msgid "<quote>permit</quote> always allow access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:943 -msgid "<quote>deny</quote> always deny access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:946 -msgid "" -"<quote>simple</quote> access control based on access or deny lists. See " -"<citerefentry> <refentrytitle>sssd-simple</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry> for more information on configuring the simple " -"access module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:953 -msgid "Default: <quote>permit</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:958 -msgid "chpass_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:961 -msgid "" -"The provider which should handle change password operations for the domain. " -"Supported change password providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:966 -msgid "" -"<quote>ipa</quote> to change a password stored in an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:974 -msgid "" -"<quote>ldap</quote> to change a password stored in a LDAP server. See " -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:982 -msgid "" -"<quote>krb5</quote> to change the Kerberos password. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:990 -msgid "" -"<quote>proxy</quote> for relaying password changes to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:994 -msgid "<quote>none</quote> disallows password changes explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:997 -msgid "" -"Default: <quote>auth_provider</quote> is used if it is set and can handle " -"change password requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1004 -msgid "sudo_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1010 -msgid "The SUDO provider used for the domain. Supported SUDO providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1014 -msgid "" -"<quote>ldap</quote> for rules stored in LDAP. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1021 -msgid "<quote>none</quote> disables SUDO explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1024 -msgid "Default: The value of <quote>id_provider</quote> is used if it is set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1030 -msgid "session_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1033 -msgid "" -"The provider which should handle loading of session settings. Supported " -"session providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1038 -msgid "" -"<quote>ipa</quote> to load session settings from an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1046 -msgid "<quote>none</quote> disallows fetching session settings explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1049 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"session loading requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1056 -msgid "lookup_family_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1059 -msgid "" -"Provides the ability to select preferred address family to use when " -"performing DNS lookups." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1063 -msgid "Supported values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1066 -msgid "ipv4_first: Try looking up IPv4 address, if that fails, try IPv6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1069 -msgid "ipv4_only: Only attempt to resolve hostnames to IPv4 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1072 -msgid "ipv6_first: Try looking up IPv6 address, if that fails, try IPv4" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1075 -msgid "ipv6_only: Only attempt to resolve hostnames to IPv6 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1078 -msgid "Default: ipv4_first" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1084 -msgid "dns_resolver_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1087 -msgid "" -"Defines the amount of time (in seconds) to wait for a reply from the DNS " -"resolver before assuming that it is unreachable. If this timeout is reached, " -"the domain will continue to operate in offline mode." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1099 -msgid "dns_discovery_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1102 -msgid "" -"If service discovery is used in the back end, specifies the domain part of " -"the service discovery DNS query." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1106 -msgid "Default: Use the domain part of machine's hostname" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1112 -msgid "override_gid (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1115 -msgid "Override the primary GID value with the one specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1121 -msgid "case_sensitive (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1124 -msgid "" -"Treat user and group names as case sensitive. At the moment, this option is " -"not supported in the local provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1129 -msgid "Default: True" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:681 -msgid "" -"These configuration options can be present in a domain configuration " -"section, that is, in a section called <quote>[domain/<replaceable>NAME</" -"replaceable>]</quote> <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1141 -msgid "proxy_pam_target (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1144 -msgid "The proxy target PAM proxies to." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1147 -msgid "" -"Default: not set by default, you have to take an existing pam configuration " -"or create a new one and add the service name here." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1155 -msgid "proxy_lib_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1158 -msgid "" -"The name of the NSS library to use in proxy domains. The NSS functions " -"searched for in the library are in the form of _nss_$(libName)_$(function), " -"for example _nss_files_getpwent." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1137 -msgid "" -"Options valid for proxy domains. <placeholder type=\"variablelist\" id=" -"\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:1170 -msgid "The local domain section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:1172 -msgid "" -"This section contains settings for domain that stores users and groups in " -"SSSD native database, that is, a domain that uses " -"<replaceable>id_provider=local</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1179 -msgid "default_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1182 -msgid "The default shell for users created with SSSD userspace tools." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1186 -msgid "Default: <filename>/bin/bash</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1191 -msgid "base_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1194 -msgid "" -"The tools append the login name to <replaceable>base_directory</replaceable> " -"and use that as the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1199 -msgid "Default: <filename>/home</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1204 -msgid "create_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1207 -msgid "" -"Indicate if a home directory should be created by default for new users. " -"Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1211 sssd.conf.5.xml:1223 -msgid "Default: TRUE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1216 -msgid "remove_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1219 -msgid "" -"Indicate if a home directory should be removed by default for deleted " -"users. Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1228 -msgid "homedir_umask (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1231 -msgid "" -"Used by <citerefentry> <refentrytitle>sss_useradd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry> to specify the default permissions " -"on a newly created home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1239 -msgid "Default: 077" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1244 -msgid "skel_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1247 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<citerefentry> <refentrytitle>sss_useradd</refentrytitle> <manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1257 -msgid "Default: <filename>/etc/skel</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1262 -msgid "mail_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1265 -msgid "" -"The mail spool directory. This is needed to manipulate the mailbox when its " -"corresponding user account is modified or deleted. If not specified, a " -"default value is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1272 -msgid "Default: <filename>/var/mail</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1277 -msgid "userdel_cmd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1280 -msgid "" -"The command that is run after a user is removed. The command us passed the " -"username of the user being removed as the first and only parameter. The " -"return code of the command is not taken into account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1286 -msgid "Default: None, no command is run" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:1296 sssd-ldap.5.xml:2064 sssd-simple.5.xml:126 -#: sssd-ipa.5.xml:544 sssd-krb5.5.xml:432 -msgid "EXAMPLE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:1302 -#, no-wrap -msgid "" -"[sssd]\n" -"domains = LDAP\n" -"services = nss, pam\n" -"config_file_version = 2\n" -"\n" -"[nss]\n" -"filter_groups = root\n" -"filter_users = root\n" -"\n" -"[pam]\n" -"\n" -"[domain/LDAP]\n" -"id_provider = ldap\n" -"ldap_uri = ldap://ldap.example.com\n" -"ldap_search_base = dc=example,dc=com\n" -"\n" -"auth_provider = krb5\n" -"krb5_server = kerberos.example.com\n" -"krb5_realm = EXAMPLE.COM\n" -"cache_credentials = true\n" -"\n" -"min_id = 10000\n" -"max_id = 20000\n" -"enumerate = False\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1298 -msgid "" -"The following example shows a typical SSSD config. It does not describe " -"configuration of the domains themselves - refer to documentation on " -"configuring domains for more details. <placeholder type=\"programlisting\" " -"id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1333 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>pam_sss</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ldap.5.xml:10 sssd-ldap.5.xml:16 -msgid "sssd-ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:23 -msgid "" -"This manual page describes the configuration of LDAP domains for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. Refer to the <quote>FILE FORMAT</quote> section of the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for detailed syntax information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:35 -msgid "You can configure SSSD to use more than one LDAP domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:38 -msgid "" -"LDAP back end supports id, auth, access and chpass providers. If you want to " -"authenticate against an LDAP server either TLS/SSL or LDAPS is required. " -"<command>sssd</command> <emphasis>does not</emphasis> support authentication " -"over an unencrypted channel. If the LDAP server is used only as an identity " -"provider, an encrypted channel is not needed. Please refer to " -"<quote>ldap_access_filter</quote> config option for more information about " -"using LDAP as an access provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:49 sssd-simple.5.xml:69 sssd-ipa.5.xml:64 -#: sssd-krb5.5.xml:63 -msgid "CONFIGURATION OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:60 -msgid "ldap_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:63 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference. Refer to the <quote>FAILOVER</" -"quote> section for more information on failover and server redundancy. If " -"not specified, service discovery is enabled. For more information, refer to " -"the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:70 -msgid "The format of the URI must match the format defined in RFC 2732:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:73 -msgid "ldap[s]://<host>[:port]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:76 -msgid "" -"For explicit IPv6 addresses, <host> must be enclosed in brackets []" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:79 -msgid "example: ldap://[fc00::126:25]:389" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:85 -msgid "ldap_chpass_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:88 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference to change the password of a user. " -"Refer to the <quote>FAILOVER</quote> section for more information on " -"failover and server redundancy." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:95 -msgid "To enable service discovery ldap_chpass_dns_service_name must be set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:99 -msgid "Default: empty, i.e. ldap_uri is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:105 -msgid "ldap_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:108 -msgid "The default base DN to use for performing LDAP user operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:112 -msgid "" -"Starting with SSSD 1.7.0, SSSD supports multiple search bases using the " -"syntax:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:116 -msgid "search_base[?scope?[filter][?search_base?scope?[filter]]*]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:119 -msgid "The scope can be one of \"base\", \"onelevel\" or \"subtree\"." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:122 -msgid "" -"The filter must be a valid LDAP search filter as specified by http://www." -"ietf.org/rfc/rfc2254.txt" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:126 -msgid "Examples:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:129 -msgid "" -"ldap_search_base = dc=example,dc=com (which is equivalent to) " -"ldap_search_base = dc=example,dc=com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:134 -msgid "" -"ldap_search_base = cn=host_specific,dc=example,dc=com?subtree?" -"(host=thishost)?dc=example.com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:137 -msgid "" -"Note: It is unsupported to have multiple search bases which reference " -"identically-named objects (for example, groups with the same name in two " -"different search bases). This will lead to unpredictable behavior on client " -"machines." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:144 -msgid "" -"Default: If not set, the value of the defaultNamingContext or namingContexts " -"attribute from the RootDSE of the LDAP server is used. If " -"defaultNamingContext does not exists or has an empty value namingContexts is " -"used. The namingContexts attribute must have a single value with the DN of " -"the search base of the LDAP server to make this work. Multiple values are " -"are not supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:158 -msgid "ldap_schema (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:161 -msgid "" -"Specifies the Schema Type in use on the target LDAP server. Depending on " -"the selected schema, the default attribute names retrieved from the servers " -"may vary. The way that some attributes are handled may also differ. Three " -"schema types are currently supported: rfc2307 rfc2307bis IPA The main " -"difference between these schema types is how group memberships are recorded " -"in the server. With rfc2307, group members are listed by name in the " -"<emphasis>memberUid</emphasis> attribute. With rfc2307bis and IPA, group " -"members are listed by DN and stored in the <emphasis>member</emphasis> " -"attribute." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:180 -msgid "Default: rfc2307" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:186 -msgid "ldap_default_bind_dn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:189 -msgid "The default bind DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:196 -msgid "ldap_default_authtok_type (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:199 -msgid "The type of the authentication token of the default bind DN." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:203 -msgid "The two mechanisms currently supported are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:206 -msgid "password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:209 -msgid "obfuscated_password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:212 -msgid "Default: password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:218 -msgid "ldap_default_authtok (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:221 -msgid "" -"The authentication token of the default bind DN. Only clear text passwords " -"are currently supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:228 -msgid "ldap_user_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:231 -msgid "The object class of a user entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:234 -msgid "Default: posixAccount" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:240 -msgid "ldap_user_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:243 -msgid "The LDAP attribute that corresponds to the user's login name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:247 -msgid "Default: uid" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:253 -msgid "ldap_user_uid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:256 -msgid "The LDAP attribute that corresponds to the user's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:260 -msgid "Default: uidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:266 -msgid "ldap_user_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:269 -msgid "The LDAP attribute that corresponds to the user's primary group id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:273 sssd-ldap.5.xml:740 -msgid "Default: gidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:279 -msgid "ldap_user_gecos (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:282 -msgid "The LDAP attribute that corresponds to the user's gecos field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:286 -msgid "Default: gecos" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:292 -msgid "ldap_user_home_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:295 -msgid "The LDAP attribute that contains the name of the user's home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:299 -msgid "Default: homeDirectory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:305 -msgid "ldap_user_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:308 -msgid "The LDAP attribute that contains the path to the user's default shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:312 -msgid "Default: loginShell" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:318 -msgid "ldap_user_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:321 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP user object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:325 sssd-ldap.5.xml:766 sssd-ldap.5.xml:878 -msgid "Default: nsUniqueId" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:331 -msgid "ldap_user_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:334 sssd-ldap.5.xml:775 sssd-ldap.5.xml:887 -msgid "" -"The LDAP attribute that contains timestamp of the last modification of the " -"parent object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:338 sssd-ldap.5.xml:779 sssd-ldap.5.xml:894 -msgid "Default: modifyTimestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:344 -msgid "ldap_user_shadow_last_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:347 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (date of " -"the last password change)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:357 -msgid "Default: shadowLastChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:363 -msgid "ldap_user_shadow_min (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:366 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (minimum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:375 -msgid "Default: shadowMin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:381 -msgid "ldap_user_shadow_max (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:384 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (maximum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:393 -msgid "Default: shadowMax" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:399 -msgid "ldap_user_shadow_warning (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:402 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password warning period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:412 -msgid "Default: shadowWarning" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:418 -msgid "ldap_user_shadow_inactive (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:421 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password inactivity period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:431 -msgid "Default: shadowInactive" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:437 -msgid "ldap_user_shadow_expire (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:440 -msgid "" -"When using ldap_pwd_policy=shadow or ldap_account_expire_policy=shadow, this " -"parameter contains the name of an LDAP attribute corresponding to its " -"<citerefentry> <refentrytitle>shadow</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> counterpart (account expiration date)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:450 -msgid "Default: shadowExpire" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:456 -msgid "ldap_user_krb_last_pwd_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:459 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time of last password change in " -"kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:465 -msgid "Default: krbLastPwdChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:471 -msgid "ldap_user_krb_password_expiration (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:474 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time when current password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:480 -msgid "Default: krbPasswordExpiration" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:486 -msgid "ldap_user_ad_account_expires (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:489 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the expiration time of the account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:494 -msgid "Default: accountExpires" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:500 -msgid "ldap_user_ad_user_account_control (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:503 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the user account control bit field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:508 -msgid "Default: userAccountControl" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:514 -msgid "ldap_ns_account_lock (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:517 -msgid "" -"When using ldap_account_expire_policy=rhds or equivalent, this parameter " -"determines if access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:522 -msgid "Default: nsAccountLock" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:528 -msgid "ldap_user_nds_login_disabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:531 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines if " -"access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:535 sssd-ldap.5.xml:549 -msgid "Default: loginDisabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:541 -msgid "ldap_user_nds_login_expiration_time (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:544 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines until " -"which date access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:555 -msgid "ldap_user_nds_login_allowed_time_map (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:558 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines the " -"hours of a day in a week when access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:563 -msgid "Default: loginAllowedTimeMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:569 -msgid "ldap_user_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:572 -msgid "" -"The LDAP attribute that contains the user's Kerberos User Principal Name " -"(UPN)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:576 -msgid "Default: krbPrincipalName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:582 -msgid "ldap_user_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:585 -msgid "The LDAP attribute that contains the user's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:592 -msgid "ldap_force_upper_case_realm (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:595 -msgid "" -"Some directory servers, for example Active Directory, might deliver the " -"realm part of the UPN in lower case, which might cause the authentication to " -"fail. Set this option to a non-zero value if you want to use an upper-case " -"realm." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:608 -msgid "ldap_enumeration_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:611 -msgid "" -"Specifies how many seconds SSSD has to wait before refreshing its cache of " -"enumerated records." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:616 sssd-ldap.5.xml:1808 -msgid "Default: 300" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:622 -msgid "ldap_purge_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:625 -msgid "" -"Determine how often to check the cache for inactive entries (such as groups " -"with no members and users who have never logged in) and remove them to save " -"space." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:631 -msgid "Setting this option to zero will disable the cache cleanup operation." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:635 -msgid "Default: 10800 (12 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:641 -msgid "ldap_user_fullname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:644 -msgid "The LDAP attribute that corresponds to the user's full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:648 sssd-ldap.5.xml:727 sssd-ldap.5.xml:828 -#: sssd-ldap.5.xml:919 sssd-ldap.5.xml:1663 sssd-ldap.5.xml:1881 -#: sssd-ipa.5.xml:422 -msgid "Default: cn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:654 -msgid "ldap_user_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:657 -msgid "The LDAP attribute that lists the user's group memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:661 sssd-ipa.5.xml:326 -msgid "Default: memberOf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:667 -msgid "ldap_user_authorized_service (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:670 -msgid "" -"If access_provider=ldap and ldap_access_order=authorized_service, SSSD will " -"use the presence of the authorizedService attribute in the user's LDAP entry " -"to determine access privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:677 -msgid "" -"An explicit deny (!svc) is resolved first. Second, SSSD searches for " -"explicit allow (svc) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:682 -msgid "Default: authorizedService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:688 -msgid "ldap_user_authorized_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:691 -msgid "" -"If access_provider=ldap and ldap_access_order=host, SSSD will use the " -"presence of the host attribute in the user's LDAP entry to determine access " -"privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:697 -msgid "" -"An explicit deny (!host) is resolved first. Second, SSSD searches for " -"explicit allow (host) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:702 -msgid "Default: host" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:708 -msgid "ldap_group_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:711 -msgid "The object class of a group entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:714 -msgid "Default: posixGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:720 -msgid "ldap_group_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:723 -msgid "The LDAP attribute that corresponds to the group name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:733 -msgid "ldap_group_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:736 -msgid "The LDAP attribute that corresponds to the group's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:746 -msgid "ldap_group_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:749 -msgid "The LDAP attribute that contains the names of the group's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:753 -msgid "Default: memberuid (rfc2307) / member (rfc2307bis)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:759 -msgid "ldap_group_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:762 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP group object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:772 -msgid "ldap_group_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:785 -msgid "ldap_group_nesting_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:788 -msgid "" -"If ldap_schema is set to a schema format that supports nested groups (e.g. " -"RFC2307bis), then this option controls how many levels of nesting SSSD will " -"follow. This option has no effect on the RFC2307 schema." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:795 -msgid "Default: 2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:801 -msgid "ldap_netgroup_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:804 -msgid "The object class of a netgroup entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:807 -msgid "In IPA provider, ipa_netgroup_object_class should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:811 -msgid "Default: nisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:817 -msgid "ldap_netgroup_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:820 -msgid "The LDAP attribute that corresponds to the netgroup name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:824 -msgid "In IPA provider, ipa_netgroup_name should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:834 -msgid "ldap_netgroup_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:837 -msgid "The LDAP attribute that contains the names of the netgroup's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:841 -msgid "In IPA provider, ipa_netgroup_member should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:845 -msgid "Default: memberNisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:851 -msgid "ldap_netgroup_triple (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:854 -msgid "" -"The LDAP attribute that contains the (host, user, domain) netgroup triples." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:858 sssd-ldap.5.xml:891 -msgid "This option is not available in IPA provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:861 -msgid "Default: nisNetgroupTriple" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:867 -msgid "ldap_netgroup_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:870 -msgid "" -"The LDAP attribute that contains the UUID/GUID of an LDAP netgroup object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:874 -msgid "In IPA provider, ipa_netgroup_uuid should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:884 -msgid "ldap_netgroup_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:900 -msgid "ldap_service_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:903 -msgid "The object class of a service entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:906 -msgid "Default: ipService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:912 -msgid "ldap_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:915 -msgid "" -"The LDAP attribute that contains the name of service attributes and their " -"aliases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:925 -msgid "ldap_service_port (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:928 -msgid "The LDAP attribute that contains the port managed by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:932 -msgid "Default: ipServicePort" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:938 -msgid "ldap_service_proto (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:941 -msgid "" -"The LDAP attribute that contains the protocols understood by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:945 -msgid "Default: ipServiceProtocol" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:951 -msgid "ldap_service_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:954 -msgid "An optional base DN to restrict service searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:958 sssd-ldap.5.xml:1918 sssd-ldap.5.xml:1937 -#: sssd-ldap.5.xml:1956 sssd-ldap.5.xml:2019 sssd-ldap.5.xml:2041 -#: sssd-ipa.5.xml:163 sssd-ipa.5.xml:187 -msgid "" -"See <quote>ldap_search_base</quote> for information about configuring " -"multiple search bases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:963 sssd-ldap.5.xml:1923 sssd-ldap.5.xml:1942 -#: sssd-ldap.5.xml:1961 sssd-ldap.5.xml:2024 sssd-ldap.5.xml:2046 -#: sssd-ipa.5.xml:173 sssd-ipa.5.xml:192 -msgid "Default: the value of <emphasis>ldap_search_base</emphasis>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:970 -msgid "ldap_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:973 -msgid "" -"Specifies the timeout (in seconds) that ldap searches are allowed to run " -"before they are cancelled and cached results are returned (and offline mode " -"is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:979 -msgid "" -"Note: this option is subject to change in future versions of the SSSD. It " -"will likely be replaced at some point by a series of timeouts for specific " -"lookup types." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:985 sssd-ldap.5.xml:1027 sssd-ldap.5.xml:1042 -msgid "Default: 6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:991 -msgid "ldap_enumeration_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:994 -msgid "" -"Specifies the timeout (in seconds) that ldap searches for user and group " -"enumerations are allowed to run before they are cancelled and cached results " -"are returned (and offline mode is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1001 -msgid "Default: 60" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1007 -msgid "ldap_network_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1010 -msgid "" -"Specifies the timeout (in seconds) after which the <citerefentry> " -"<refentrytitle>poll</refentrytitle> <manvolnum>2</manvolnum> </citerefentry>/" -"<citerefentry> <refentrytitle>select</refentrytitle> <manvolnum>2</" -"manvolnum> </citerefentry> following a <citerefentry> " -"<refentrytitle>connect</refentrytitle> <manvolnum>2</manvolnum> </" -"citerefentry> returns in case of no activity." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1033 -msgid "ldap_opt_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1036 -msgid "" -"Specifies a timeout (in seconds) after which calls to synchronous LDAP APIs " -"will abort if no response is received. Also controls the timeout when " -"communicating with the KDC in case of SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1048 -msgid "ldap_connection_expire_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1051 -msgid "" -"Specifies a timeout (in seconds) that a connection to an LDAP server will be " -"maintained. After this time, the connection will be re-established. If used " -"in parallel with SASL/GSSAPI, the sooner of the two values (this value vs. " -"the TGT lifetime) will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1059 -msgid "Default: 900 (15 minutes)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1065 -msgid "ldap_page_size (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1068 -msgid "" -"Specify the number of records to retrieve from LDAP in a single request. " -"Some LDAP servers enforce a maximum limit per-request." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1073 -msgid "Default: 1000" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1079 -msgid "ldap_disable_paging" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1082 -msgid "" -"Disable the LDAP paging control. This option should be used if the LDAP " -"server reports that it supports the LDAP paging control in its RootDSE but " -"it is not enabled or does not behave properly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1088 -msgid "" -"Example: OpenLDAP servers with the paging control module installed on the " -"server but not enabled will report it in the RootDSE but be unable to use it." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1094 -msgid "" -"Example: 389 DS has a bug where it can only support a one paging control at " -"a time on a single connection. On busy clients, this can result in some " -"requests being denied." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1103 -msgid "ldap_deref_threshold (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1106 -msgid "" -"Specify the number of group members that must be missing from the internal " -"cache in order to trigger a dereference lookup. If less members are missing, " -"they are looked up individually." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1112 -msgid "" -"You can turn off dereference lookups completely by setting the value to 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1116 -msgid "" -"A dereference lookup is a means of fetching all group members in a single " -"LDAP call. Different LDAP servers may implement different dereference " -"methods. The currently supported servers are 389/RHDS, OpenLDAP and Active " -"Directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1124 -msgid "" -"<emphasis>Note:</emphasis> If any of the search bases specifies a search " -"filter, then the dereference lookup performance enhancement will be disabled " -"regardless of this setting." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1137 -msgid "ldap_tls_reqcert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1140 -msgid "" -"Specifies what checks to perform on server certificates in a TLS session, if " -"any. It can be specified as one of the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1146 -msgid "" -"<emphasis>never</emphasis> = The client will not request or check any server " -"certificate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1150 -msgid "" -"<emphasis>allow</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, it will be ignored and the session proceeds normally." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1157 -msgid "" -"<emphasis>try</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, the session is immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1163 -msgid "" -"<emphasis>demand</emphasis> = The server certificate is requested. If no " -"certificate is provided, or a bad certificate is provided, the session is " -"immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1169 -msgid "<emphasis>hard</emphasis> = Same as <quote>demand</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1173 -msgid "Default: hard" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1179 -msgid "ldap_tls_cacert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1182 -msgid "" -"Specifies the file that contains certificates for all of the Certificate " -"Authorities that <command>sssd</command> will recognize." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1187 sssd-ldap.5.xml:1205 sssd-ldap.5.xml:1246 -msgid "" -"Default: use OpenLDAP defaults, typically in <filename>/etc/openldap/ldap." -"conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1194 -msgid "ldap_tls_cacertdir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1197 -msgid "" -"Specifies the path of a directory that contains Certificate Authority " -"certificates in separate individual files. Typically the file names need to " -"be the hash of the certificate followed by '.0'. If available, " -"<command>cacertdir_rehash</command> can be used to create the correct names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1212 -msgid "ldap_tls_cert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1215 -msgid "Specifies the file that contains the certificate for the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1219 sssd-ldap.5.xml:1231 sssd-ldap.5.xml:1979 -#: sssd-ldap.5.xml:2006 sssd-krb5.5.xml:359 -msgid "Default: not set" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1225 -msgid "ldap_tls_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1228 -msgid "Specifies the file that contains the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1237 -msgid "ldap_tls_cipher_suite (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1240 -msgid "" -"Specifies acceptable cipher suites. Typically this is a colon sperated " -"list. See <citerefentry><refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> for format." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1253 -msgid "ldap_id_use_start_tls (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1256 -msgid "" -"Specifies that the id_provider connection must also use <systemitem class=" -"\"protocol\">tls</systemitem> to protect the channel." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1266 -msgid "ldap_sasl_mech (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1269 -msgid "" -"Specify the SASL mechanism to use. Currently only GSSAPI is tested and " -"supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1273 sssd-ldap.5.xml:1428 -msgid "Default: none" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1279 -msgid "ldap_sasl_authid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1282 -msgid "" -"Specify the SASL authorization id to use. When GSSAPI is used, this " -"represents the Kerberos principal used for authentication to the directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1287 -msgid "Default: host/machine.fqdn@REALM" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1293 -msgid "ldap_sasl_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1296 -msgid "" -"If set to true, the LDAP library would perform a reverse lookup to " -"canonicalize the host name during a SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1301 -msgid "Default: false;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1307 -msgid "ldap_krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1310 -msgid "Specify the keytab to use when using SASL/GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1313 -msgid "Default: System keytab, normally <filename>/etc/krb5.keytab</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1319 -msgid "ldap_krb5_init_creds (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1322 -msgid "" -"Specifies that the id_provider should init Kerberos credentials (TGT). This " -"action is performed only if SASL is used and the mechanism selected is " -"GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1334 -msgid "ldap_krb5_ticket_lifetime (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1337 -msgid "Specifies the lifetime in seconds of the TGT if GSSAPI is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1341 -msgid "Default: 86400 (24 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1347 sssd-krb5.5.xml:74 -msgid "krb5_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1350 sssd-krb5.5.xml:77 -msgid "" -"Specifies the comma-separated list of IP addresses or hostnames of the " -"Kerberos servers to which SSSD should connect in the order of preference. " -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. An optional port number (preceded by a " -"colon) may be appended to the addresses or hostnames. If empty, service " -"discovery is enabled - for more information, refer to the <quote>SERVICE " -"DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1362 sssd-krb5.5.xml:89 -msgid "" -"When using service discovery for KDC or kpasswd servers, SSSD first searches " -"for DNS entries that specify _udp as the protocol and falls back to _tcp if " -"none are found." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1367 sssd-krb5.5.xml:94 -msgid "" -"This option was named <quote>krb5_kdcip</quote> in earlier releases of SSSD. " -"While the legacy name is recognized for the time being, users are advised to " -"migrate their config files to use <quote>krb5_server</quote> instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1376 sssd-ipa.5.xml:216 sssd-krb5.5.xml:103 -msgid "krb5_realm (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1379 -msgid "Specify the Kerberos REALM (for SASL/GSSAPI auth)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1382 -msgid "Default: System defaults, see <filename>/etc/krb5.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1388 sssd-ipa.5.xml:231 sssd-krb5.5.xml:409 -msgid "krb5_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1391 -msgid "" -"Specifies if the host principal should be canonicalized when connecting to " -"LDAP server. This feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1403 -msgid "ldap_pwd_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1406 -msgid "" -"Select the policy to evaluate the password expiration on the client side. " -"The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1411 -msgid "" -"<emphasis>none</emphasis> - No evaluation on the client side. This option " -"cannot disable server-side password policies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1416 -msgid "" -"<emphasis>shadow</emphasis> - Use <citerefentry><refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum></citerefentry> style attributes to " -"evaluate if the password has expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1422 -msgid "" -"<emphasis>mit_kerberos</emphasis> - Use the attributes used by MIT Kerberos " -"to determine if the password has expired. Use chpass_provider=krb5 to update " -"these attributes when the password is changed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1434 -msgid "ldap_referrals (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1437 -msgid "Specifies whether automatic referral chasing should be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1441 -msgid "" -"Please note that sssd only supports referral chasing when it is compiled " -"with OpenLDAP version 2.4.13 or higher." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1452 -msgid "ldap_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1455 -msgid "Specifies the service name to use when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1459 -msgid "Default: ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1465 -msgid "ldap_chpass_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1468 -msgid "" -"Specifies the service name to use to find an LDAP server which allows " -"password changes when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1473 -msgid "Default: not set, i.e. service discovery is disabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1479 -msgid "ldap_access_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1482 -msgid "" -"If using access_provider = ldap, this option is mandatory. It specifies an " -"LDAP search filter criteria that must be met for the user to be granted " -"access on this host. If access_provider = ldap and this option is not set, " -"it will result in all users being denied access. Use access_provider = allow " -"to change this default behavior." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1492 sssd-ldap.5.xml:1982 -msgid "Example:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1495 -#, no-wrap -msgid "" -"access_provider = ldap\n" -"ldap_access_filter = memberOf=cn=allowedusers,ou=Groups,dc=example,dc=com\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1499 -msgid "" -"This example means that access to this host is restricted to members of the " -"\"allowedusers\" group in ldap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1504 -msgid "" -"Offline caching for this feature is limited to determining whether the " -"user's last online login was granted access permission. If they were granted " -"access during their last login, they will continue to be granted access " -"while offline and vice-versa." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1512 sssd-ldap.5.xml:1562 -msgid "Default: Empty" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1518 -msgid "ldap_account_expire_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1521 -msgid "" -"With this option a client side evaluation of access control attributes can " -"be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1525 -msgid "" -"Please note that it is always recommended to use server side access control, " -"i.e. the LDAP server should deny the bind request with a suitable error code " -"even if the password is correct." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1532 -msgid "The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1535 -msgid "" -"<emphasis>shadow</emphasis>: use the value of ldap_user_shadow_expire to " -"determine if the account is expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1540 -msgid "" -"<emphasis>ad</emphasis>: use the value of the 32bit field " -"ldap_user_ad_user_account_control and allow access if the second bit is not " -"set. If the attribute is missing access is granted. Also the expiration time " -"of the account is checked." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1547 -msgid "" -"<emphasis>rhds</emphasis>, <emphasis>ipa</emphasis>, <emphasis>389ds</" -"emphasis>: use the value of ldap_ns_account_lock to check if access is " -"allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1553 -msgid "" -"<emphasis>nds</emphasis>: the values of " -"ldap_user_nds_login_allowed_time_map, ldap_user_nds_login_disabled and " -"ldap_user_nds_login_expiration_time are used to check if access is allowed. " -"If both attributes are missing access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1568 -msgid "ldap_access_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1571 -msgid "Comma separated list of access control options. Allowed values are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1575 -msgid "<emphasis>filter</emphasis>: use ldap_access_filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1578 -msgid "<emphasis>expire</emphasis>: use ldap_account_expire_policy" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1582 -msgid "" -"<emphasis>authorized_service</emphasis>: use the authorizedService attribute " -"to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1587 -msgid "<emphasis>host</emphasis>: use the host attribute to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1591 -msgid "Default: filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1594 -msgid "" -"Please note that it is a configuration error if a value is used more than " -"once." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1601 -msgid "ldap_deref (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1604 -msgid "" -"Specifies how alias dereferencing is done when performing a search. The " -"following options are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1609 -msgid "<emphasis>never</emphasis>: Aliases are never dereferenced." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1613 -msgid "" -"<emphasis>searching</emphasis>: Aliases are dereferenced in subordinates of " -"the base object, but not in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1618 -msgid "" -"<emphasis>finding</emphasis>: Aliases are only dereferenced when locating " -"the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1623 -msgid "" -"<emphasis>always</emphasis>: Aliases are dereferenced both in searching and " -"in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1628 -msgid "" -"Default: Empty (this is handled as <emphasis>never</emphasis> by the LDAP " -"client libraries)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:51 -msgid "" -"All of the common configuration options that apply to SSSD domains also " -"apply to LDAP domains. Refer to the <quote>DOMAIN SECTIONS</quote> section " -"of the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for full details. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1639 -msgid "SUDO OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1644 -msgid "ldap_sudorule_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1647 -msgid "The object class of a sudo rule entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1650 -msgid "Default: sudoRole" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1656 -msgid "ldap_sudorule_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1659 -msgid "The LDAP attribute that corresponds to the sudo rule name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1669 -msgid "ldap_sudorule_command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1672 -msgid "The LDAP attribute that corresponds to the command name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1676 -msgid "Default: sudoCommand" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1682 -msgid "ldap_sudorule_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1685 -msgid "" -"The LDAP attribute that corresponds to the host name (or host IP address, " -"host IP network, or host netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1690 -msgid "Default: sudoHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1696 -msgid "ldap_sudorule_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1699 -msgid "" -"The LDAP attribute that corresponds to the user name (or UID, group name or " -"user's netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1703 -msgid "Default: sudoUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1709 -msgid "ldap_sudorule_option (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1712 -msgid "The LDAP attribute that corresponds to the sudo options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1716 -msgid "Default: sudoOption" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1722 -msgid "ldap_sudorule_runasuser (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1725 -msgid "" -"The LDAP attribute that corresponds to the user name that commands may be " -"run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1729 -msgid "Default: sudoRunAsUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1735 -msgid "ldap_sudorule_runasgroup (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1738 -msgid "" -"The LDAP attribute that corresponds to the group name or group GID that " -"commands may be run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1742 -msgid "Default: sudoRunAsGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1748 -msgid "ldap_sudorule_notbefore (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1751 -msgid "" -"The LDAP attribute that corresponds to the start date/time for when the sudo " -"rule is valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1755 -msgid "Default: sudoNotBefore" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1761 -msgid "ldap_sudorule_notafter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1764 -msgid "" -"The LDAP attribute that corresponds to the expiration date/time, after which " -"the sudo rule will no longer be valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1769 -msgid "Default: sudoNotAfter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1775 -msgid "ldap_sudorule_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1778 -msgid "The LDAP attribute that corresponds to the ordering index of the rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1782 -msgid "Default: sudoOrder" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1788 -msgid "ldap_sudo_refresh_enabled (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1791 -msgid "" -"Enables periodical download of all sudo rules. The cache is purged before " -"each update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1801 -msgid "ldap_sudo_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1804 -msgid "" -"How many seconds SSSD has to wait before refreshing its cache of sudo rules." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1642 -msgid "<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1815 -msgid "" -"This manual page only describes attribute name mapping. For detailed " -"explanation of sudo related attribute semantics, see <citerefentry> " -"<refentrytitle>sudoers.ldap</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1825 -msgid "AUTOFS OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1827 -msgid "" -"Please note that the default values correspond to the default schema which " -"is RFC2307." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1834 -msgid "ldap_autofs_map_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1837 sssd-ldap.5.xml:1863 -msgid "The object class of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1840 sssd-ldap.5.xml:1867 -msgid "Default: automountMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1847 -msgid "ldap_autofs_map_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1850 -msgid "The name of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1853 -msgid "Default: ou" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1860 -msgid "ldap_autofs_entry_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1874 -msgid "ldap_autofs_entry_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1877 sssd-ldap.5.xml:1891 -msgid "" -"The key of an automount entry in LDAP. The entry usually corresponds to a " -"mount point." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1888 -msgid "ldap_autofs_entry_value (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1895 -msgid "Default: automountInformation" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1832 -msgid "" -"<placeholder type=\"variablelist\" id=\"0\"/> <placeholder type=" -"\"variablelist\" id=\"1\"/> <placeholder type=\"variablelist\" id=\"2\"/> " -"<placeholder type=\"variablelist\" id=\"3\"/> <placeholder type=" -"\"variablelist\" id=\"4\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1904 -msgid "ADVANCED OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1911 -msgid "ldap_netgroup_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1914 -msgid "" -"An optional base DN to restrict netgroup searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1930 -msgid "ldap_user_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1933 -msgid "An optional base DN to restrict user searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1949 -msgid "ldap_group_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1952 -msgid "An optional base DN to restrict group searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1968 -msgid "ldap_user_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1971 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict user searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1975 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_user_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1985 -#, no-wrap -msgid "" -" ldap_user_search_filter = (loginShell=/bin/tcsh)\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1988 -msgid "" -"This filter would restrict user searches to users that have their shell set " -"to /bin/tcsh." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1995 -msgid "ldap_group_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1998 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict group searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2002 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_group_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2012 -msgid "ldap_sudo_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2015 -msgid "" -"An optional base DN to restrict sudo rules searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2034 -msgid "ldap_autofs_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2037 -msgid "" -"An optional base DN to restrict automounter searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1906 -msgid "" -"These options are supported by LDAP domains, but they should be used with " -"caution. Please include them in your configuration only if you know what you " -"are doing. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2066 -msgid "" -"The following example assumes that SSSD is correctly configured and LDAP is " -"set to one of the domains in the <replaceable>[domains]</replaceable> " -"section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ldap.5.xml:2072 -#, no-wrap -msgid "" -" [domain/LDAP]\n" -" id_provider = ldap\n" -" auth_provider = ldap\n" -" ldap_uri = ldap://ldap.mydomain.org\n" -" ldap_search_base = dc=mydomain,dc=org\n" -" ldap_tls_reqcert = demand\n" -" cache_credentials = true\n" -" enumerate = true\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2071 sssd-simple.5.xml:134 sssd-ipa.5.xml:552 -#: sssd-krb5.5.xml:441 -msgid "<placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:2085 sssd_krb5_locator_plugin.8.xml:61 -msgid "NOTES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2087 -msgid "" -"The descriptions of some of the configuration options in this manual page " -"are based on the <citerefentry> <refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page from the OpenLDAP 2.4 " -"distribution." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2098 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <refentryinfo> -#: pam_sss.8.xml:8 include/upstream.xml:2 -msgid "" -"<productname>SSSD</productname> <orgname>The SSSD upstream - http://" -"fedorahosted.org/sssd</orgname>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: pam_sss.8.xml:13 pam_sss.8.xml:18 -msgid "pam_sss" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: pam_sss.8.xml:19 -msgid "PAM module for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: pam_sss.8.xml:24 -msgid "" -"<command>pam_sss.so</command> <arg choice='opt'> <replaceable>quiet</" -"replaceable> </arg> <arg choice='opt'> <replaceable>forward_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_first_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_authtok</" -"replaceable> </arg> <arg choice='opt'> <replaceable>retry=N</replaceable> </" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:45 -msgid "" -"<command>pam_sss.so</command> is the PAM interface to the System Security " -"Services daemon (SSSD). Errors and results are logged through <command>syslog" -"(3)</command> with the LOG_AUTHPRIV facility." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:55 -msgid "<option>quiet</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:58 -msgid "Suppress log messages for unknown users." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:63 -msgid "<option>forward_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:66 -msgid "" -"If <option>forward_pass</option> is set the entered password is put on the " -"stack for other PAM modules to use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:73 -msgid "<option>use_first_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:76 -msgid "" -"The argument use_first_pass forces the module to use a previous stacked " -"modules password and will never prompt the user - if no password is " -"available or the password is not appropriate, the user will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:84 -msgid "<option>use_authtok</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:87 -msgid "" -"When password changing enforce the module to set the new password to the one " -"provided by a previously stacked password module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:94 -msgid "<option>retry=N</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:97 -msgid "" -"If specified the user is asked another N times for a password if " -"authentication fails. Default is 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:99 -msgid "" -"Please note that this option might not work as expected if the application " -"calling PAM handles the user dialog on its own. A typical example is " -"<command>sshd</command> with <option>PasswordAuthentication</option>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:110 -msgid "MODULE TYPES PROVIDED" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:111 -msgid "" -"All module types (<option>account</option>, <option>auth</option>, " -"<option>password</option> and <option>session</option>) are provided." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:117 -msgid "FILES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:118 -msgid "" -"If a password reset by root fails, because the corresponding SSSD provider " -"does not support password resets, an individual message can be displayed. " -"This message can e.g. contain instructions about how to reset a password." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:123 -msgid "" -"The message is read from the file <filename>pam_sss_pw_reset_message.LOC</" -"filename> where LOC stands for a locale string returned by <citerefentry> " -"<refentrytitle>setlocale</refentrytitle><manvolnum>3</manvolnum> </" -"citerefentry>. If there is no matching file the content of " -"<filename>pam_sss_pw_reset_message.txt</filename> is displayed. Root must be " -"the owner of the files and only root may have read and write permissions " -"while all other users must have only read permissions." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:133 -msgid "" -"These files are searched in the directory <filename>/etc/sssd/customize/" -"DOMAIN_NAME/</filename>. If no matching file is present a generic message is " -"displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:141 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd_krb5_locator_plugin.8.xml:10 sssd_krb5_locator_plugin.8.xml:15 -msgid "sssd_krb5_locator_plugin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:22 -msgid "" -"The Kerberos locator plugin <command>sssd_krb5_locator_plugin</command> is " -"used by the Kerberos provider of <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry> to tell the Kerberos " -"libraries what Realm and which KDC to use. Typically this is done in " -"<citerefentry> <refentrytitle>krb5.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> which is always read by the Kerberos libraries. " -"To simplify the configuration the Realm and the KDC can be defined in " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> as described in <citerefentry> " -"<refentrytitle>sssd-krb5.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry> puts the Realm and the name or IP address of the KDC into " -"the environment variables SSSD_KRB5_REALM and SSSD_KRB5_KDC respectively. " -"When <command>sssd_krb5_locator_plugin</command> is called by the kerberos " -"libraries it reads and evaluates these variables and returns them to the " -"libraries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:63 -msgid "" -"Not all Kerberos implementations support the use of plugins. If " -"<command>sssd_krb5_locator_plugin</command> is not available on your system " -"you have to edit /etc/krb5.conf to reflect your Kerberos setup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:69 -msgid "" -"If the environment variable SSSD_KRB5_LOCATOR_DEBUG is set to any value " -"debug messages will be sent to stderr." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:77 -msgid "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-simple.5.xml:10 sssd-simple.5.xml:16 -msgid "sssd-simple" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd-simple.5.xml:17 -msgid "the configuration file for SSSD's 'simple' access-control provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:24 -msgid "" -"This manual page describes the configuration of the simple access-control " -"provider for <citerefentry> <refentrytitle>sssd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry>. For a detailed syntax reference, " -"refer to the <quote>FILE FORMAT</quote> section of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:38 -msgid "" -"The simple access provider grants or denies access based on an access or " -"deny list of user or group names. The following rules apply:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:43 -msgid "If all lists are empty, access is granted" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:47 -msgid "" -"If any list is provided, the order of evaluation is allow,deny. This means " -"that any matching deny rule will supersede any matched allow rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:54 -msgid "" -"If either or both \"allow\" lists are provided, all users are denied unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:60 -msgid "" -"If only \"deny\" lists are provided, all users are granted access unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:78 -msgid "simple_allow_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:81 -msgid "Comma separated list of users who are allowed to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:88 -msgid "simple_deny_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:91 -msgid "Comma separated list of users who are explicitly denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:97 -msgid "simple_allow_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:100 -msgid "" -"Comma separated list of groups that are allowed to log in. This applies only " -"to groups within this SSSD domain. Local groups are not evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:108 -msgid "simple_deny_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:111 -msgid "" -"Comma separated list of groups that are explicitly denied access. This " -"applies only to groups within this SSSD domain. Local groups are not " -"evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:70 sssd-ipa.5.xml:65 -msgid "" -"Refer to the section <quote>DOMAIN SECTIONS</quote> of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page for details on the configuration of an SSSD " -"domain. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:120 -msgid "" -"Please note that it is an configuration error if both, simple_allow_users " -"and simple_deny_users, are defined." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:128 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the simple access provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-simple.5.xml:135 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" access_provider = simple\n" -" simple_allow_users = user1, user2\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:145 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ipa.5.xml:10 sssd-ipa.5.xml:16 -msgid "sssd-ipa" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:23 -msgid "" -"This manual page describes the configuration of the IPA provider for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. For a detailed syntax reference, refer to the <quote>FILE " -"FORMAT</quote> section of the <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:36 -msgid "" -"The IPA provider is a back end used to connect to an IPA server. (Refer to " -"the freeipa.org web site for information about IPA servers.) This provider " -"requires that the machine be joined to the IPA domain; configuration is " -"almost entirely self-discovered and obtained directly from the server." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:43 -msgid "" -"The IPA provider accepts the same options used by the <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> identity provider and the <citerefentry> <refentrytitle>sssd-" -"krb5</refentrytitle> <manvolnum>5</manvolnum> </citerefentry> authentication " -"provider with some exceptions described below." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:55 -msgid "" -"However, it is neither necessary nor recommended to set these options. IPA " -"provider can also be used as an access and chpass provider. As an access " -"provider it uses HBAC (host-based access control) rules. Please refer to " -"freeipa.org for more information about HBAC. No configuration of access " -"provider is required on the client side." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:72 -msgid "ipa_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:75 -msgid "" -"Specifies the name of the IPA domain. This is optional. If not provided, " -"the configuration domain name is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:83 -msgid "ipa_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:86 -msgid "" -"The comma-separated list of IP addresses or hostnames of the IPA servers to " -"which SSSD should connect in the order of preference. For more information " -"on failover and server redundancy, see the <quote>FAILOVER</quote> section. " -"This is optional if autodiscovery is enabled. For more information on " -"service discovery, refer to the the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:99 -msgid "ipa_hostname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:102 -msgid "" -"Optional. May be set on machines where the hostname(5) does not reflect the " -"fully qualified name used in the IPA domain to identify this host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:110 -msgid "ipa_dyndns_update (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:113 -msgid "" -"Optional. This option tells SSSD to automatically update the DNS server " -"built into FreeIPA v2 with the IP address of this client." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:118 -msgid "" -"NOTE: On older systems (such as RHEL 5), for this behavior to work reliably, " -"the default Kerberos realm must be set properly in /etc/krb5.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:129 -msgid "ipa_dyndns_iface (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:132 -msgid "" -"Optional. Applicable only when ipa_dyndns_update is true. Choose the " -"interface whose IP address should be used for dynamic DNS updates." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:137 -msgid "Default: Use the IP address of the IPA LDAP connection" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:143 -msgid "ipa_hbac_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:146 -msgid "Optional. Use the given string as search base for HBAC related objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:150 -msgid "Default: Use base DN" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:156 -msgid "ipa_host_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:159 -msgid "Optional. Use the given string as search base for host objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:168 -msgid "" -"If filter is given in any of search bases and " -"<emphasis>ipa_hbac_support_srchost</emphasis> is set to False, the filter " -"will be ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:180 -msgid "ipa_selinux_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:183 -msgid "Optional. Use the given string as search base for SELinux user maps." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:199 sssd-krb5.5.xml:229 -msgid "krb5_validate (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:202 sssd-krb5.5.xml:232 -msgid "" -"Verify with the help of krb5_keytab that the TGT obtained has not been " -"spoofed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:209 -msgid "" -"Note that this default differs from the traditional Kerberos provider back " -"end." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:219 -msgid "" -"The name of the Kerberos realm. This is optional and defaults to the value " -"of <quote>ipa_domain</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:223 -msgid "" -"The name of the Kerberos realm has a special meaning in IPA - it is " -"converted into the base DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:234 -msgid "" -"Specifies if the host and user principal should be canonicalized when " -"connecting to IPA LDAP and also for AS requests. This feature is available " -"with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:247 -msgid "ipa_hbac_refresh (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:250 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server. " -"This will reduce the latency and load on the IPA server if there are many " -"access-control requests made in a short period." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:257 -msgid "Default: 5 (seconds)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:262 -msgid "ipa_hbac_treat_deny_as (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:265 -msgid "" -"This option specifies how to treat the deprecated DENY-type HBAC rules. As " -"of FreeIPA v2.1, DENY rules are no longer supported on the server. All users " -"of FreeIPA will need to migrate their rules to use only the ALLOW rules. The " -"client will support two modes of operation during this transition period:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:274 -msgid "" -"<emphasis>DENY_ALL</emphasis>: If any HBAC DENY rules are detected, all " -"users will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:279 -msgid "" -"<emphasis>IGNORE</emphasis>: SSSD will ignore any DENY rules. Be very " -"careful with this option, as it may result in opening unintended access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:284 -msgid "Default: DENY_ALL" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:289 -msgid "ipa_hbac_support_srchost (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:292 -msgid "" -"If this is set to false, then srchost as given to SSSD by PAM will be " -"ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:296 -msgid "" -"Note that if set to <emphasis>False</emphasis>, this option casuses filters " -"given in <emphasis>ipa_host_search_base</emphasis> to be ignored;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:307 -msgid "ipa_automount_location (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:310 -msgid "The automounter location this IPA client will be using" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:313 -msgid "Default: The location named \"default\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:319 -msgid "ipa_netgroup_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:322 -msgid "The LDAP attribute that lists netgroup's memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:331 -msgid "ipa_netgroup_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:334 -msgid "" -"The LDAP attribute that lists system users and groups that are direct " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:339 sssd-ipa.5.xml:434 -msgid "Default: memberUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:344 -msgid "ipa_netgroup_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:347 -msgid "" -"The LDAP attribute that lists hosts and host groups that are direct members " -"of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:351 sssd-ipa.5.xml:446 -msgid "Default: memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:356 -msgid "ipa_netgroup_member_ext_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:359 -msgid "" -"The LDAP attribute that lists FQDNs of hosts and host groups that are " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:363 -msgid "Default: externalHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:368 -msgid "ipa_netgroup_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:371 -msgid "The LDAP attribute that contains NIS domain name of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:375 -msgid "Default: nisDomainName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:381 -msgid "ipa_host_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:384 sssd-ipa.5.xml:407 -msgid "The object class of a host entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:387 sssd-ipa.5.xml:410 -msgid "Default: ipaHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:392 -msgid "ipa_host_fqdn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:395 -msgid "The LDAP attribute that contains FQDN of the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:398 -msgid "Default: fqdn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:404 -msgid "ipa_selinux_usermap_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:415 -msgid "ipa_selinux_usermap_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:418 -msgid "The LDAP attribute that contains the name of SELinux usermap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:427 -msgid "ipa_selinux_usermap_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:430 -msgid "" -"The LDAP attribute that contains all users / groups this rule match against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:439 -msgid "ipa_selinux_usermap_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:442 -msgid "" -"The LDAP attribute that contains all hosts / hostgroups this rule match " -"against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:451 -msgid "ipa_selinux_usermap_see_also (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:454 -msgid "" -"The LDAP attribute that contains DN of HBAC rule which can be used for " -"matching instead of memberUser and memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:459 -msgid "Default: seeAlso" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:464 -msgid "ipa_selinux_usermap_selinux_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:467 -msgid "The LDAP attribute that contains SELinux user string itself." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:471 -msgid "Default: ipaSELinuxUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:476 -msgid "ipa_selinux_usermap_enabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:479 -msgid "" -"The LDAP attribute that contains whether or not is user map enabled for " -"usage." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:483 -msgid "Default: ipaEnabledFlag" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:488 -msgid "ipa_selinux_usermap_user_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:491 -msgid "The LDAP attribute that contains user category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:495 -msgid "Default: userCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:500 -msgid "ipa_selinux_usermap_host_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:503 -msgid "The LDAP attribute that contains host category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:507 -msgid "Default: hostCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:512 -msgid "ipa_selinux_usermap_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:515 -msgid "The LDAP attribute that contains unique ID of the user map." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:519 -msgid "Default: ipaUniqueID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:524 -msgid "ipa_host_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:527 -msgid "The LDAP attribute that contains the host's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:531 -msgid "Default: ipaSshPubKey" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:546 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the ipa provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ipa.5.xml:553 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" id_provider = ipa\n" -" ipa_server = ipaserver.example.com\n" -" ipa_hostname = myhost.example.com\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:564 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.8.xml:10 sssd.8.xml:15 -msgid "sssd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.8.xml:16 -msgid "System Security Services Daemon" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sssd.8.xml:21 -msgid "" -"<command>sssd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:31 -msgid "" -"<command>SSSD</command> provides a set of daemons to manage access to remote " -"directories and authentication mechanisms. It provides an NSS and PAM " -"interface toward the system and a pluggable backend system to connect to " -"multiple different account sources as well as D-Bus interface. It is also " -"the basis to provide client auditing and policy services for projects like " -"FreeIPA. It provides a more robust database to store local users as well as " -"extended user data." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:46 -msgid "" -"<option>-d</option>,<option>--debug-level</option> <replaceable>LEVEL</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:53 -msgid "<option>--debug-timestamps=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:57 -msgid "<emphasis>1</emphasis>: Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:60 -msgid "<emphasis>0</emphasis>: Disable timestamp in the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:69 -msgid "<option>--debug-microseconds=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:73 -msgid "" -"<emphasis>1</emphasis>: Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:76 -msgid "<emphasis>0</emphasis>: Disable microseconds in timestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:79 -msgid "Default: 0" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:85 -msgid "<option>-f</option>,<option>--debug-to-files</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:89 -msgid "" -"Send the debug output to files instead of stderr. By default, the log files " -"are stored in <filename>/var/log/sssd</filename> and there are separate log " -"files for every SSSD service and domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:97 -msgid "<option>-D</option>,<option>--daemon</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:101 -msgid "Become a daemon after starting up." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:107 -msgid "<option>-i</option>,<option>--interactive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:111 -msgid "Run in the foreground, don't become a daemon." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:117 sss_debuglevel.8.xml:42 -msgid "<option>-c</option>,<option>--config</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:121 sss_debuglevel.8.xml:46 -msgid "" -"Specify a non-default config file. The default is <filename>/etc/sssd/sssd." -"conf</filename>. For reference on the config file syntax and options, " -"consult the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:135 -msgid "<option>--version</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:139 -msgid "Print version number and exit." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.8.xml:147 -msgid "Signals" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:150 -msgid "SIGTERM/SIGINT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:153 -msgid "" -"Informs the SSSD to gracefully terminate all of its child processes and then " -"shut down the monitor." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:159 -msgid "SIGHUP" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:162 -msgid "" -"Tells the SSSD to stop writing to its current debug file descriptors and to " -"close and reopen them. This is meant to facilitate log rolling with programs " -"like logrotate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:170 -msgid "SIGUSR1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:173 -msgid "" -"Tells the SSSD to simulate offline operation for one minute. This is mostly " -"useful for testing purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:179 -msgid "SIGUSR2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:182 -msgid "" -"Tells the SSSD to go online immediately. This is mostly useful for testing " -"purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:193 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_obfuscate.8.xml:10 sss_obfuscate.8.xml:15 -msgid "sss_obfuscate" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_obfuscate.8.xml:16 -msgid "obfuscate a clear text password" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_obfuscate.8.xml:21 -msgid "" -"<command>sss_obfuscate</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>[PASSWORD]</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:32 -msgid "" -"<command>sss_obfuscate</command> converts a given password into human-" -"unreadable format and places it into appropriate domain section of the SSSD " -"config file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:37 -msgid "" -"The cleartext password is read from standard input or entered " -"interactively. The obfuscated password is put into " -"<quote>ldap_default_authtok</quote> parameter of a given SSSD domain and the " -"<quote>ldap_default_authtok_type</quote> parameter is set to " -"<quote>obfuscated_password</quote>. Refer to <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more details on these parameters." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:49 -msgid "" -"Please note that obfuscating the password provides <emphasis>no real " -"security benefit</emphasis> as it is still possible for an attacker to " -"reverse-engineer the password back. Using better authentication mechanisms " -"such as client side certificates or GSSAPI is <emphasis>strongly</emphasis> " -"advised." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:63 -msgid "<option>-s</option>,<option>--stdin</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:67 -msgid "The password to obfuscate will be read from standard input." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:74 sss_ssh_authorizedkeys.1.xml:82 -#: sss_ssh_knownhostsproxy.1.xml:81 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>DOMAIN</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:79 -msgid "" -"The SSSD domain to use the password in. The default name is <quote>default</" -"quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:86 -msgid "" -"<option>-f</option>,<option>--file</option> <replaceable>FILE</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:91 -msgid "Read the config file specified by the positional parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:95 -msgid "Default: <filename>/etc/sssd/sssd.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:105 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_useradd.8.xml:10 sss_useradd.8.xml:15 -msgid "sss_useradd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_useradd.8.xml:16 -msgid "create a new user" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_useradd.8.xml:21 -msgid "" -"<command>sss_useradd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:32 -msgid "" -"<command>sss_useradd</command> creates a new user account using the values " -"specified on the command line plus the default values from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:43 -msgid "" -"<option>-u</option>,<option>--uid</option> <replaceable>UID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:48 -msgid "" -"Set the UID of the user to the value of <replaceable>UID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:55 sss_usermod.8.xml:43 -msgid "" -"<option>-c</option>,<option>--gecos</option> <replaceable>COMMENT</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:60 sss_usermod.8.xml:48 -msgid "" -"Any text string describing the user. Often used as the field for the user's " -"full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:67 sss_usermod.8.xml:55 -msgid "" -"<option>-h</option>,<option>--home</option> <replaceable>HOME_DIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:72 -msgid "" -"The home directory of the user account. The default is to append the " -"<replaceable>LOGIN</replaceable> name to <filename>/home</filename> and use " -"that as the home directory. The base that is prepended before " -"<replaceable>LOGIN</replaceable> is tunable with <quote>user_defaults/" -"baseDirectory</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:82 sss_usermod.8.xml:66 -msgid "" -"<option>-s</option>,<option>--shell</option> <replaceable>SHELL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:87 -msgid "" -"The user's login shell. The default is currently <filename>/bin/bash</" -"filename>. The default can be changed with <quote>user_defaults/" -"defaultShell</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:96 -msgid "" -"<option>-G</option>,<option>--groups</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:101 -msgid "A list of existing groups this user is also a member of." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:107 -msgid "<option>-m</option>,<option>--create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:111 -msgid "" -"Create the user's home directory if it does not exist. The files and " -"directories contained in the skeleton directory (which can be defined with " -"the -k option or in the config file) will be copied to the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:121 -msgid "<option>-M</option>,<option>--no-create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:125 -msgid "" -"Do not create the user's home directory. Overrides configuration settings." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:132 -msgid "" -"<option>-k</option>,<option>--skel</option> <replaceable>SKELDIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:137 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<command>sss_useradd</command>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:143 -msgid "" -"This option is only valid if the <option>-m</option> (or <option>--create-" -"home</option>) option is specified, or creation of home directories is set " -"to TRUE in the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:152 sss_usermod.8.xml:124 -msgid "" -"<option>-Z</option>,<option>--selinux-user</option> " -"<replaceable>SELINUX_USER</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:157 -msgid "" -"The SELinux user for the user's login. If not specified, the system default " -"will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:169 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-krb5.5.xml:10 sssd-krb5.5.xml:16 -msgid "sssd-krb5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:23 -msgid "" -"This manual page describes the configuration of the Kerberos 5 " -"authentication backend for <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry>. For a detailed " -"syntax reference, please refer to the <quote>FILE FORMAT</quote> section of " -"the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:36 -msgid "" -"The Kerberos 5 authentication backend contains auth and chpass providers. It " -"must be paired with identity provider in order to function properly (for " -"example, id_provider = ldap). Some information required by the Kerberos 5 " -"authentication backend must be provided by the identity provider, such as " -"the user's Kerberos Principal Name (UPN). The configuration of the identity " -"provider should have an entry to specify the UPN. Please refer to the man " -"page for the applicable identity provider for details on how to configure " -"this." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:47 -msgid "" -"This backend also provides access control based on the .k5login file in the " -"home directory of the user. See <citerefentry> <refentrytitle>.k5login</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry> for more details. " -"Please note that an empty .k5login file will deny all access to this user. " -"To activate this feature use 'access_provider = krb5' in your sssd " -"configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:55 -msgid "" -"In the case where the UPN is not available in the identity backend " -"<command>sssd</command> will construct a UPN using the format " -"<replaceable>username</replaceable>@<replaceable>krb5_realm</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:106 -msgid "" -"The name of the Kerberos realm. This option is required and must be " -"specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:113 -msgid "krb5_kpasswd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:116 -msgid "" -"If the change password service is not running on the KDC alternative servers " -"can be defined here. An optional port number (preceded by a colon) may be " -"appended to the addresses or hostnames." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:122 -msgid "" -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. Please note that even if there are no more " -"kpasswd servers to try the back end is not switch to offline if " -"authentication against the KDC is still possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:129 -msgid "Default: Use the KDC" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:135 -msgid "krb5_ccachedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:138 -msgid "" -"Directory to store credential caches. All the substitution sequences of " -"krb5_ccname_template can be used here, too, except %d and %P. If the " -"directory does not exist it will be created. If %u, %U, %p or %h are used a " -"private directory belonging to the user is created. Otherwise a public " -"directory with restricted deletion flag (aka sticky bit, see <citerefentry> " -"<refentrytitle>chmod</refentrytitle> <manvolnum>1</manvolnum> </" -"citerefentry> for details) is created." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:151 -msgid "Default: /tmp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:157 -msgid "krb5_ccname_template (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:171 -msgid "login UID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:174 -msgid "%p" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:175 -msgid "principal name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:179 -msgid "%r" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:180 -msgid "realm name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:183 -msgid "%h" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:184 -msgid "home directory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:189 -msgid "value of krb5ccache_dir" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:194 -msgid "%P" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:195 -msgid "the process ID of the sssd client" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:160 -msgid "" -"Location of the user's credential cache. Currently only file based " -"credential caches are supported. In the template the following sequences are " -"substituted: <placeholder type=\"variablelist\" id=\"0\"/> If the template " -"ends with 'XXXXXX' mkstemp(3) is used to create a unique filename in a safe " -"way." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:209 -msgid "Default: FILE:%d/krb5cc_%U_XXXXXX" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:215 -msgid "krb5_auth_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:218 -msgid "" -"Timeout in seconds after an online authentication or change password request " -"is aborted. If possible the authentication request is continued offline." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:241 -msgid "krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:244 -msgid "" -"The location of the keytab to use when validating credentials obtained from " -"KDCs." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:248 -msgid "Default: /etc/krb5.keytab" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:254 -msgid "krb5_store_password_if_offline (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:257 -msgid "" -"Store the password of the user if the provider is offline and use it to " -"request a TGT when the provider gets online again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:262 -msgid "" -"Please note that this feature currently only available on a Linux platform. " -"Passwords stored in this way are kept in plaintext in the kernel keyring and " -"are potentially accessible by the root user (with difficulty)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:275 -msgid "krb5_renewable_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:278 -msgid "" -"Request a renewable ticket with a total lifetime given by an integer " -"immediately followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:283 sssd-krb5.5.xml:319 -msgid "<emphasis>s</emphasis> seconds" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:286 sssd-krb5.5.xml:322 -msgid "<emphasis>m</emphasis> minutes" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:289 sssd-krb5.5.xml:325 -msgid "<emphasis>h</emphasis> hours" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:292 sssd-krb5.5.xml:328 -msgid "<emphasis>d</emphasis> days." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:295 sssd-krb5.5.xml:331 -msgid "If there is no delimiter <emphasis>s</emphasis> is assumed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:299 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"renewable lifetime to one and a half hours please use '90m' instead of " -"'1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:305 -msgid "Default: not set, i.e. the TGT is not renewable" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:311 -msgid "krb5_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:314 -msgid "" -"Request ticket with a with a lifetime given by an integer immediately " -"followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:335 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"lifetime to one and a half hours please use '90m' instead of '1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:340 -msgid "" -"Default: not set, i.e. the default ticket lifetime configured on the KDC." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:347 -msgid "krb5_renew_interval (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:350 -msgid "" -"The time in seconds between two checks if the TGT should be renewed. TGTs " -"are renewed if about half of their lifetime is exceeded." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:355 -msgid "If this option is not set or 0 the automatic renewal is disabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:365 -msgid "krb5_use_fast (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:368 -msgid "" -"Enables flexible authentication secure tunneling (FAST) for Kerberos pre-" -"authentication. The following options are supported:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:373 -msgid "" -"<emphasis>never</emphasis> use FAST, this is equivalent to not set this " -"option at all." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:377 -msgid "" -"<emphasis>try</emphasis> to use FAST, if the server does not support fast " -"continue without." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:381 -msgid "" -"<emphasis>demand</emphasis> to use FAST, fail if the server does not require " -"fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:385 -msgid "Default: not set, i.e. FAST is not used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:388 -msgid "Please note that a keytab is required to use fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:391 -msgid "" -"Please note also that sssd supports fast only with MIT Kerberos version 1.8 " -"and above. If sssd used with an older version using this option is a " -"configuration error." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:400 -msgid "krb5_fast_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:403 -msgid "Specifies the server principal to use for FAST." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:412 -msgid "" -"Specifies if the host and user principal should be canonicalized. This " -"feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:65 -msgid "" -"If the auth-module krb5 is used in a SSSD domain, the following options must " -"be used. See the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page, section <quote>DOMAIN " -"SECTIONS</quote> for details on the configuration of a SSSD domain. " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:434 -msgid "" -"The following example assumes that SSSD is correctly configured and FOO is " -"one of the domains in the <replaceable>[sssd]</replaceable> section. This " -"example shows only configuration of Kerberos authentication, it does not " -"include any identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-krb5.5.xml:442 -#, no-wrap -msgid "" -" [domain/FOO]\n" -" auth_provider = krb5\n" -" krb5_server = 192.168.1.1\n" -" krb5_realm = EXAMPLE.COM\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:453 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupadd.8.xml:10 sss_groupadd.8.xml:15 -msgid "sss_groupadd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupadd.8.xml:16 -msgid "create a new group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupadd.8.xml:21 -msgid "" -"<command>sss_groupadd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:32 -msgid "" -"<command>sss_groupadd</command> creates a new group. These groups are " -"compatible with POSIX groups, with the additional feature that they can " -"contain other groups as members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupadd.8.xml:43 -msgid "" -"<option>-g</option>,<option>--gid</option> <replaceable>GID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupadd.8.xml:48 -msgid "" -"Set the GID of the group to the value of <replaceable>GID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_userdel.8.xml:10 sss_userdel.8.xml:15 -msgid "sss_userdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_userdel.8.xml:16 -msgid "delete a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_userdel.8.xml:21 -msgid "" -"<command>sss_userdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:32 -msgid "" -"<command>sss_userdel</command> deletes a user identified by login name " -"<replaceable>LOGIN</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:44 -msgid "<option>-r</option>,<option>--remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:48 -msgid "" -"Files in the user's home directory will be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:56 -msgid "<option>-R</option>,<option>--no-remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:60 -msgid "" -"Files in the user's home directory will NOT be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:68 -msgid "<option>-f</option>,<option>--force</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:72 -msgid "" -"This option forces <command>sss_userdel</command> to remove the user's home " -"directory and mail spool, even if they are not owned by the specified user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:80 -msgid "<option>-k</option>,<option>--kick</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:84 -msgid "Before actually deleting the user, terminate all his processes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:95 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupdel.8.xml:10 sss_groupdel.8.xml:15 -msgid "sss_groupdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupdel.8.xml:16 -msgid "delete a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupdel.8.xml:21 -msgid "" -"<command>sss_groupdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:32 -msgid "" -"<command>sss_groupdel</command> deletes a group identified by its name " -"<replaceable>GROUP</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupshow.8.xml:10 sss_groupshow.8.xml:15 -msgid "sss_groupshow" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupshow.8.xml:16 -msgid "print properties of a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupshow.8.xml:21 -msgid "" -"<command>sss_groupshow</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:32 -msgid "" -"<command>sss_groupshow</command> displays information about a group " -"identified by its name <replaceable>GROUP</replaceable>. The information " -"includes the group ID number, members of the group and the parent group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupshow.8.xml:43 -msgid "<option>-R</option>,<option>--recursive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupshow.8.xml:47 -msgid "" -"Also print indirect group members in a tree-like hierarchy. Note that this " -"also affects printing parent groups - without <option>R</option>, only the " -"direct parent will be printed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_usermod.8.xml:10 sss_usermod.8.xml:15 -msgid "sss_usermod" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_usermod.8.xml:16 -msgid "modify a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_usermod.8.xml:21 -msgid "" -"<command>sss_usermod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:32 -msgid "" -"<command>sss_usermod</command> modifies the account specified by " -"<replaceable>LOGIN</replaceable> to reflect the changes that are specified " -"on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:60 -msgid "The home directory of the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:71 -msgid "The user's login shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:82 -msgid "" -"Append this user to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:96 -msgid "" -"Remove this user from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:103 -msgid "<option>-l</option>,<option>--lock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:107 -msgid "Lock the user account. The user won't be able to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:114 -msgid "<option>-u</option>,<option>--unlock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:118 -msgid "Unlock the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:129 -msgid "The SELinux user for the user's login." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:140 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_cache.8.xml:10 sss_cache.8.xml:15 -msgid "sss_cache" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_cache.8.xml:16 -msgid "perform cache cleanup" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_cache.8.xml:21 -msgid "" -"<command>sss_cache</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_cache.8.xml:31 -msgid "" -"<command>sss_cache</command> invalidates records in SSSD cache. Invalidated " -"records are forced to be reloaded from server as soon as related SSSD " -"backend is online." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:42 -msgid "" -"<option>-u</option>,<option>--user</option> <replaceable>login</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:47 -msgid "Invalidate specific user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:53 -msgid "<option>-U</option>,<option>--users</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:57 -msgid "" -"Invalidate all user records. This option overrides invalidation of specific " -"user if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:64 -msgid "" -"<option>-g</option>,<option>--group</option> <replaceable>group</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:69 -msgid "Invalidate specific group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:75 -msgid "<option>-G</option>,<option>--groups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:79 -msgid "" -"Invalidate all group records. This option overrides invalidation of specific " -"group if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:86 -msgid "" -"<option>-n</option>,<option>--netgroup</option> <replaceable>netgroup</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:91 -msgid "Invalidate specific netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:97 -msgid "<option>-N</option>,<option>--netgroups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:101 -msgid "" -"Invalidate all netgroup records. This option overrides invalidation of " -"specific netgroup if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:108 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>domain</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:113 -msgid "Restrict invalidation process only to a particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_debuglevel.8.xml:10 sss_debuglevel.8.xml:15 -msgid "sss_debuglevel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_debuglevel.8.xml:16 -msgid "change debug level while SSSD is running" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_debuglevel.8.xml:21 -msgid "" -"<command>sss_debuglevel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>NEW_DEBUG_LEVEL</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_debuglevel.8.xml:32 -msgid "" -"<command>sss_debuglevel</command> changes debug level of SSSD monitor and " -"providers to <replaceable>NEW_DEBUG_LEVEL</replaceable> while SSSD is " -"running." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_debuglevel.8.xml:59 -msgid "<replaceable>NEW_DEBUG_LEVEL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_authorizedkeys.1.xml:10 sss_ssh_authorizedkeys.1.xml:15 -msgid "sss_ssh_authorizedkeys" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_ssh_authorizedkeys.1.xml:11 sss_ssh_knownhostsproxy.1.xml:11 -msgid "1" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_authorizedkeys.1.xml:16 -msgid "get OpenSSH authorized keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_authorizedkeys.1.xml:21 -msgid "" -"<command>sss_ssh_authorizedkeys</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>USER</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:32 -msgid "" -"<command>sss_ssh_authorizedkeys</command> acquires SSH public keys for user " -"<replaceable>USER</replaceable> and outputs them in OpenSSH authorized_keys " -"format (see the <quote>AUTHORIZED_KEYS FILE FORMAT</quote> section of " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> for more information)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:41 -msgid "" -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_authorizedkeys</" -"command> for public key user authentication if it is compiled with support " -"for either <quote>AuthorizedKeysCommand</quote> or <quote>PubkeyAgent</" -"quote> <citerefentry> <refentrytitle>sshd_config</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:58 -#, no-wrap -msgid "AuthorizedKeysCommand /usr/bin/sss_ssh_authorizedkeys\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:51 -msgid "" -"If <quote>AuthorizedKeysCommand</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by putting the following directive " -"in <citerefentry> <refentrytitle>sshd_config</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry>: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:69 -#, no-wrap -msgid "PubKeyAgent /usr/bin/sss_ssh_authorizedkeys %u\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:62 -msgid "" -"If <quote>PubkeyAgent</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by using the following directive " -"for <citerefentry> <refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> configuration: <placeholder type=\"programlisting" -"\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_authorizedkeys.1.xml:87 -msgid "" -"Search for user public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:98 -msgid "" -"<citerefentry> <refentrytitle>sshd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sshd_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_knownhostsproxy</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_knownhostsproxy.1.xml:10 sss_ssh_knownhostsproxy.1.xml:15 -msgid "sss_ssh_knownhostsproxy" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_knownhostsproxy.1.xml:16 -msgid "get OpenSSH host keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_knownhostsproxy.1.xml:21 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>HOST</replaceable></arg> <arg " -"choice='opt'><replaceable>PROXY_COMMAND</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:33 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> acquires SSH host public keys for " -"host <replaceable>HOST</replaceable>, stores them in a custom OpenSSH " -"known_hosts file (see the <quote>SSH_KNOWN_HOSTS FILE FORMAT</quote> section " -"of <citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> for more information) <filename>/var/lib/sss/" -"pubconf/known_hosts</filename> and estabilishes connection to the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:43 -msgid "" -"If <replaceable>PROXY_COMMAND</replaceable> is specified, it is used to " -"create the connection to the host instead of opening a socket." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_knownhostsproxy.1.xml:55 -#, no-wrap -msgid "" -"ProxyCommand /usr/bin/sss_ssh_knownhostsproxy -p %p %h\n" -"GlobalKnownHostsFile2 /var/lib/sss/pubconf/known_hosts\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:48 -msgid "" -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_knownhostsproxy</" -"command> for host key authentication by using the following directives for " -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> configuration: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_ssh_knownhostsproxy.1.xml:69 -msgid "" -"<option>-p</option>,<option>--port</option> <replaceable>PORT</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:74 -msgid "" -"Use port <replaceable>PORT</replaceable> to connect to the host. By " -"default, port 22 is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:86 -msgid "" -"Search for host public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:97 -msgid "" -"<citerefentry> <refentrytitle>ssh</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>ssh_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_authorizedkeys</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/service_discovery.xml:2 -msgid "SERVICE DISCOVERY" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/service_discovery.xml:4 -msgid "" -"The service discovery feature allows back ends to automatically find the " -"appropriate servers to connect to using a special DNS query." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:9 -msgid "Configuration" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:11 -msgid "" -"If no servers are specified, the back end automatically uses service " -"discovery to try to find a server. Optionally, the user may choose to use " -"both fixed server addresses and service discovery by inserting a special " -"keyword, <quote>_srv_</quote>, in the list of servers. The order of " -"preference is maintained. This feature is useful if, for example, the user " -"prefers to use service discovery whenever possible, and fall back to a " -"specific server when no servers can be discovered using DNS." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:23 -msgid "The domain name" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:25 -msgid "" -"Please refer to the <quote>dns_discovery_domain</quote> parameter in the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for more details." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:35 -msgid "The protocol" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:37 -msgid "" -"The queries usually specify _tcp as the protocol. Exceptions are documented " -"in respective option description." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:42 -msgid "See Also" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:44 -msgid "" -"For more information on the service discovery mechanism, refer to RFC 2782." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/upstream.xml:1 -msgid "<placeholder type=\"refentryinfo\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/failover.xml:2 -msgid "FAILOVER" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/failover.xml:4 -msgid "" -"The failover feature allows back ends to automatically switch to a different " -"server if the primary server fails." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:8 -msgid "Failover Syntax" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:10 -msgid "" -"The list of servers is given as a comma-separated list; any number of spaces " -"is allowed around the comma. The servers are listed in order of preference. " -"The list can contain any number of servers." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:17 -msgid "The Failover Mechanism" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:19 -msgid "" -"The failover mechanism distinguishes between a machine and a service. The " -"back end first tries to resolve the hostname of a given machine; if this " -"resolution attempt fails, the machine is considered offline. No further " -"attempts are made to connect to this machine for any other service. If the " -"resolution attempt succeeds, the back end tries to connect to a service on " -"this machine. If the service connection attempt fails, then only this " -"particular service is considered offline and the back end automatically " -"switches over to the next service. The machine is still considered online " -"and might still be tried for another service." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:32 -msgid "" -"Further connection attempts are made to machines or services marked as " -"offline after a specified period of time; this is currently hard coded to 30 " -"seconds." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:37 -msgid "" -"If there are no more machines to try, the back end as a whole switches to " -"offline mode, and then attempts to reconnect every 30 seconds." -msgstr "" - -#. type: Content of: <varlistentry><term> -#: include/param_help.xml:3 -msgid "<option>-h</option>,<option>--help</option>" -msgstr "" - -#. type: Content of: <varlistentry><listitem><para> -#: include/param_help.xml:7 -msgid "Display help message and exit." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:3 -msgid "" -"Bit mask that indicates which debug levels will be visible. 0x0010 is the " -"default value as well as the lowest allowed value, 0xFFF0 is the most " -"verbose mode. This setting overrides the settings from config file." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:8 -msgid "Currently supported debug levels:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:11 -msgid "" -"<emphasis>0x0010</emphasis>: Fatal failures. Anything that would prevent " -"SSSD from starting up or causes it to cease running." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:15 -msgid "" -"<emphasis>0x0020</emphasis>: Critical failures. An error that doesn't kill " -"the SSSD, but one that indicates that at least one major feature is not " -"going to work properly." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:20 -msgid "" -"<emphasis>0x0040</emphasis>: Serious failures. An error announcing that a " -"particular request or operation has failed." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:24 -msgid "" -"<emphasis>0x0080</emphasis>: Minor failures. These are the errors that would " -"percolate down to cause the operation failure of 2." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:28 -msgid "<emphasis>0x0100</emphasis>: Configuration settings." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:31 -msgid "<emphasis>0x0200</emphasis>: Function data." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:34 -msgid "<emphasis>0x0400</emphasis>: Trace messages for operation functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:37 -msgid "" -"<emphasis>0x1000</emphasis>: Trace messages for internal control functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:40 -msgid "" -"<emphasis>0x2000</emphasis>: Contents of function-internal variables that " -"may be interesting." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:43 -msgid "<emphasis>0x4000</emphasis>: Extremely low-level tracing information." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:46 -msgid "" -"To log required debug levels, simply add their numbers together as shown in " -"following examples:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:49 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, critical failures, " -"serious failures and function data use 0x0270." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:53 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, configuration settings, " -"function data, trace messages for internal control functions use 0x1310." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:57 -msgid "" -"<emphasis>Note</emphasis>: This is new format of debug levels introduced in " -"1.7.0. Older format (numbers from 0-10) is compatible but deprecated." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/experimental.xml:1 -msgid "" -"<emphasis> This is an experimental feature, please use http://fedorahosted." -"org/sssd to report any issues. </emphasis>" -msgstr "" diff --git a/src/man/po/lt.po b/src/man/po/lt.po deleted file mode 100644 index 07052ad1d..000000000 --- a/src/man/po/lt.po +++ /dev/null @@ -1,6749 +0,0 @@ -# SOME DESCRIPTIVE TITLE -# Copyright (C) YEAR Red Hat -# This file is distributed under the same license as the sssd-docs package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@redhat.com\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-12-23 15:35+0000\n" -"Last-Translator: FULL NAME <EMAIL@ADDRESS>\n" -"Language-Team: Lithuanian (http://www.transifex.net/projects/p/fedora/team/" -"lt/)\n" -"Language: lt\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=3; plural=(n%10==1 && n%100!=11 ? 0 : n%10>=2 && (n" -"%100<10 || n%100>=20) ? 1 : 2)\n" - -#. type: Content of: <reference><title> -#: sss_groupmod.8.xml:5 sssd.conf.5.xml:5 sssd-ldap.5.xml:5 pam_sss.8.xml:5 -#: sssd_krb5_locator_plugin.8.xml:5 sssd-simple.5.xml:5 sssd-ipa.5.xml:5 -#: sssd.8.xml:5 sss_obfuscate.8.xml:5 sss_useradd.8.xml:5 sssd-krb5.5.xml:5 -#: sss_groupadd.8.xml:5 sss_userdel.8.xml:5 sss_groupdel.8.xml:5 -#: sss_groupshow.8.xml:5 sss_usermod.8.xml:5 sss_cache.8.xml:5 -#: sss_debuglevel.8.xml:5 sss_ssh_authorizedkeys.1.xml:5 -#: sss_ssh_knownhostsproxy.1.xml:5 -msgid "SSSD Manual pages" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupmod.8.xml:10 sss_groupmod.8.xml:15 -msgid "sss_groupmod" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_groupmod.8.xml:11 pam_sss.8.xml:14 sssd_krb5_locator_plugin.8.xml:11 -#: sssd.8.xml:11 sss_obfuscate.8.xml:11 sss_useradd.8.xml:11 -#: sss_groupadd.8.xml:11 sss_userdel.8.xml:11 sss_groupdel.8.xml:11 -#: sss_groupshow.8.xml:11 sss_usermod.8.xml:11 sss_cache.8.xml:11 -#: sss_debuglevel.8.xml:11 -msgid "8" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupmod.8.xml:16 -msgid "modify a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupmod.8.xml:21 -msgid "" -"<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:30 sssd-ldap.5.xml:21 pam_sss.8.xml:44 -#: sssd_krb5_locator_plugin.8.xml:20 sssd-simple.5.xml:22 sssd-ipa.5.xml:21 -#: sssd.8.xml:29 sss_obfuscate.8.xml:30 sss_useradd.8.xml:30 -#: sssd-krb5.5.xml:21 sss_groupadd.8.xml:30 sss_userdel.8.xml:30 -#: sss_groupdel.8.xml:30 sss_groupshow.8.xml:30 sss_usermod.8.xml:30 -#: sss_cache.8.xml:29 sss_debuglevel.8.xml:30 sss_ssh_authorizedkeys.1.xml:30 -#: sss_ssh_knownhostsproxy.1.xml:31 -msgid "DESCRIPTION" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:32 -msgid "" -"<command>sss_groupmod</command> modifies the group to reflect the changes " -"that are specified on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:39 pam_sss.8.xml:51 sssd.8.xml:42 sss_obfuscate.8.xml:58 -#: sss_useradd.8.xml:39 sss_groupadd.8.xml:39 sss_userdel.8.xml:39 -#: sss_groupdel.8.xml:39 sss_groupshow.8.xml:39 sss_usermod.8.xml:39 -#: sss_cache.8.xml:38 sss_debuglevel.8.xml:38 sss_ssh_authorizedkeys.1.xml:78 -#: sss_ssh_knownhostsproxy.1.xml:65 -msgid "OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:43 sss_usermod.8.xml:77 -msgid "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:48 -msgid "" -"Append this group to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:57 sss_usermod.8.xml:91 -msgid "" -"<option>-r</option>,<option>--remove-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:62 -msgid "" -"Remove this group from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:72 sssd.conf.5.xml:1331 sssd-ldap.5.xml:2096 -#: pam_sss.8.xml:139 sssd_krb5_locator_plugin.8.xml:75 sssd-simple.5.xml:143 -#: sssd-ipa.5.xml:562 sssd.8.xml:191 sss_obfuscate.8.xml:103 -#: sss_useradd.8.xml:167 sssd-krb5.5.xml:451 sss_groupadd.8.xml:58 -#: sss_userdel.8.xml:93 sss_groupdel.8.xml:46 sss_groupshow.8.xml:58 -#: sss_usermod.8.xml:138 sss_ssh_authorizedkeys.1.xml:96 -#: sss_ssh_knownhostsproxy.1.xml:95 -msgid "SEE ALSO" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:74 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.conf.5.xml:10 sssd.conf.5.xml:16 -msgid "sssd.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sssd.conf.5.xml:11 sssd-ldap.5.xml:11 sssd-simple.5.xml:11 -#: sssd-ipa.5.xml:11 sssd-krb5.5.xml:11 -msgid "5" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><refmiscinfo> -#: sssd.conf.5.xml:12 sssd-ldap.5.xml:12 sssd-simple.5.xml:12 -#: sssd-ipa.5.xml:12 sssd-krb5.5.xml:12 -msgid "File Formats and Conventions" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.conf.5.xml:17 sssd-ldap.5.xml:17 sssd_krb5_locator_plugin.8.xml:16 -#: sssd-ipa.5.xml:17 sssd-krb5.5.xml:17 -msgid "the configuration file for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:21 -msgid "FILE FORMAT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:29 -#, no-wrap -msgid "" -" <replaceable>[section]</replaceable>\n" -" <replaceable>key</replaceable> = <replaceable>value</replaceable>\n" -" <replaceable>key2</replaceable> = <replaceable>value2,value3</replaceable>\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:24 -msgid "" -"The file has an ini-style syntax and consists of sections and parameters. A " -"section begins with the name of the section in square brackets and continues " -"until the next section begins. An example of section with single and multi-" -"valued parameters: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:36 -msgid "" -"The data types used are string (no quotes needed), integer and bool (with " -"values of <quote>TRUE/FALSE</quote>)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:41 -msgid "" -"A line comment starts with a hash sign (<quote>#</quote>) or a semicolon " -"(<quote>;</quote>)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:46 -msgid "" -"All sections can have an optional <replaceable>description</replaceable> " -"parameter. Its function is only as a label for the section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:52 -msgid "" -"<filename>sssd.conf</filename> must be a regular file, owned by root and " -"only root may read from or write to the file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:58 -msgid "SPECIAL SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:61 -msgid "The [sssd] section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><title> -#: sssd.conf.5.xml:70 sssd.conf.5.xml:1177 -msgid "Section parameters" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:72 -msgid "config_file_version (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:75 -msgid "" -"Indicates what is the syntax of the config file. SSSD 0.6.0 and later use " -"version 2." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:81 -msgid "services" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:84 -msgid "" -"Comma separated list of services that are started when sssd itself starts." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:88 -msgid "" -"Supported services: nss, pam <phrase condition=\"with_sudo\">, sudo</phrase>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:94 sssd.conf.5.xml:257 -msgid "reconnection_retries (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:97 sssd.conf.5.xml:260 -msgid "" -"Number of times services should attempt to reconnect in the event of a Data " -"Provider crash or restart before they give up" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:102 sssd.conf.5.xml:265 -msgid "Default: 3" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:107 -msgid "domains" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:110 -msgid "" -"A domain is a database containing user information. SSSD can use more " -"domains at the same time, but at least one must be configured or SSSD won't " -"start. This parameter described the list of domains in the order you want " -"them to be queried." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:120 -msgid "re_expression (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:123 -msgid "" -"Regular expression that describes how to parse the string containing user " -"name and domain into these components." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:127 -msgid "" -"Default: <quote>(?P<name>[^@]+)@?(?P<domain>[^@]*$)</quote> " -"which translates to \"the name is everything up to the <quote>@</quote> " -"sign, the domain everything after that\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:132 -msgid "" -"PLEASE NOTE: the support for non-unique named subpatterns is not available " -"on all platforms (e.g. RHEL5 and SLES10). Only platforms with libpcre " -"version 7 or higher can support non-unique named subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:139 -msgid "" -"PLEASE NOTE ALSO: older version of libpcre only support the Python syntax (?" -"P<name>) to label subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:146 -msgid "full_name_format (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:149 -msgid "" -"A <citerefentry> <refentrytitle>printf</refentrytitle> <manvolnum>3</" -"manvolnum> </citerefentry>-compatible format that describes how to translate " -"a (name, domain) tuple into a fully qualified name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:157 -msgid "Default: <quote>%1$s@%2$s</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:162 -msgid "try_inotify (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:165 -msgid "" -"SSSD monitors the state of resolv.conf to identify when it needs to update " -"its internal DNS resolver. By default, we will attempt to use inotify for " -"this, and will fall back to polling resolv.conf every five seconds if " -"inotify cannot be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:173 -msgid "" -"There are some limited situations where it is preferred that we should skip " -"even trying to use inotify. In these rare cases, this option should be set " -"to 'false'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:179 -msgid "" -"Default: true on platforms where inotify is supported. False on other " -"platforms." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:183 -msgid "" -"Note: this option will have no effect on platforms where inotify is " -"unavailable. On these platforms, polling will always be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:190 -msgid "krb5_rcache_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:193 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:197 -msgid "" -"This option accepts a special value __LIBKRB5_DEFAULTS__ that will instruct " -"SSSD to let libkrb5 decide the appropriate location for the replay cache." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:203 -msgid "" -"Default: Distribution-specific and specified at build-time. " -"(__LIBKRB5_DEFAULTS__ if not configured)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:63 -msgid "" -"Individual pieces of SSSD functionality are provided by special SSSD " -"services that are started and stopped together with SSSD. The services are " -"managed by a special service frequently called <quote>monitor</quote>. The " -"<quote>[sssd]</quote> section is used to configure the monitor as well as " -"some other important options like the identity domains. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:216 -msgid "SERVICES SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:218 -msgid "" -"Settings that can be used to configure different services are described in " -"this section. They should reside in the [<replaceable>$NAME</replaceable>] " -"section, for example, for NSS service, the section would be <quote>[nss]</" -"quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:225 -msgid "General service configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:227 -msgid "These options can be used to configure any service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:231 -msgid "debug_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:235 -msgid "debug_timestamps (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:238 -msgid "Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:241 sssd.conf.5.xml:376 sssd-ldap.5.xml:1328 -#: sssd-ldap.5.xml:1446 sssd-ipa.5.xml:206 sssd-ipa.5.xml:241 -msgid "Default: true" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:246 -msgid "debug_microseconds (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:249 -msgid "Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:252 sssd.conf.5.xml:641 sssd-ldap.5.xml:602 -#: sssd-ldap.5.xml:1260 sssd-ldap.5.xml:1397 sssd-ldap.5.xml:1795 -#: sssd-ipa.5.xml:123 sssd-ipa.5.xml:301 sssd-krb5.5.xml:235 -#: sssd-krb5.5.xml:269 sssd-krb5.5.xml:418 -msgid "Default: false" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:270 -msgid "command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:273 -msgid "" -"By default, the executable representing this service is called <command>sssd_" -"${service_name}</command>. This directive allows to change the executable " -"name for the service. In the vast majority of configurations, the default " -"values should suffice." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:281 -msgid "Default: <command>sssd_${service_name}</command>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:289 -msgid "NSS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:291 -msgid "" -"These options can be used to configure the Name Service Switch (NSS) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:296 -msgid "enum_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:299 -msgid "" -"How many seconds should nss_sss cache enumerations (requests for info about " -"all users)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:303 -msgid "Default: 120" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:308 -msgid "entry_cache_nowait_percentage (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:311 -msgid "" -"The entry cache can be set to automatically update entries in the background " -"if they are requested beyond a percentage of the entry_cache_timeout value " -"for the domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:317 -msgid "" -"For example, if the domain's entry_cache_timeout is set to 30s and " -"entry_cache_nowait_percentage is set to 50 (percent), entries that come in " -"after 15 seconds past the last cache update will be returned immediately, " -"but the SSSD will go and update the cache on its own, so that future " -"requests will not need to block waiting for a cache update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:327 -msgid "" -"Valid values for this option are 0-99 and represent a percentage of the " -"entry_cache_timeout for each domain. For performance reasons, this " -"percentage will never reduce the nowait timeout to less than 10 seconds. (0 " -"disables this feature)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:335 -msgid "Default: 50" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:340 -msgid "entry_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:343 -msgid "" -"Specifies for how many seconds nss_sss should cache negative cache hits " -"(that is, queries for invalid database entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:349 sssd.conf.5.xml:669 sssd-krb5.5.xml:223 -msgid "Default: 15" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:354 -msgid "filter_users, filter_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:357 -msgid "" -"Exclude certain users from being fetched from the sss NSS database. This is " -"particularly useful for system accounts. This option can also be set per-" -"domain or include fully-qualified names to filter only users from the " -"particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:364 -msgid "Default: root" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:369 -msgid "filter_users_in_groups (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:372 -msgid "" -"If you want filtered user still be group members set this option to false." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:381 -msgid "override_homedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:390 sssd-krb5.5.xml:166 -msgid "%u" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:391 sssd-krb5.5.xml:167 -msgid "login name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:394 sssd-krb5.5.xml:170 -msgid "%U" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:395 -msgid "UID number" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:398 sssd-krb5.5.xml:188 -msgid "%d" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:399 -msgid "domain name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:402 -msgid "%f" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:403 -msgid "fully qualified user name (user@domain)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:406 sssd-krb5.5.xml:200 -msgid "%%" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:407 sssd-krb5.5.xml:201 -msgid "a literal '%'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:384 -msgid "" -"Override the user's home directory. You can either provide an absolute value " -"or a template. In the template, the following sequences are substituted: " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:413 -msgid "This option can also be set per-domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:418 -msgid "allowed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:421 -msgid "" -"Restrict user shell to one of the listed values. The order of evaluation is:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:424 -msgid "1. If the shell is present in <quote>/etc/shells</quote>, it is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:428 -msgid "" -"2. If the shell is in the allowed_shells list but not in <quote>/etc/shells</" -"quote>, use the value of the shell_fallback parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:433 -msgid "" -"3. If the shell is not in the allowed_shells list and not in <quote>/etc/" -"shells</quote>, a nologin shell is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:438 -msgid "An empty string for shell is passed as-is to libc." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:441 -msgid "" -"The <quote>/etc/shells</quote> is only read on SSSD start up, which means " -"that a restart of the SSSD is required in case a new shell is installed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:445 -msgid "Default: Not set. The user shell is automatically used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:450 -msgid "vetoed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:453 -msgid "Replace any instance of these shells with the shell_fallback" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:458 -msgid "shell_fallback (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:461 -msgid "" -"The default shell to use if an allowed shell is not installed on the machine." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:465 -msgid "Default: /bin/sh" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:472 -msgid "PAM configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:474 -msgid "" -"These options can be used to configure the Pluggable Authentication Module " -"(PAM) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:479 -msgid "offline_credentials_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:482 -msgid "" -"If the authentication provider is offline, how long should we allow cached " -"logins (in days since the last successful online login)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:487 sssd.conf.5.xml:500 -msgid "Default: 0 (No limit)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:493 -msgid "offline_failed_login_attempts (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:496 -msgid "" -"If the authentication provider is offline, how many failed login attempts " -"are allowed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:506 -msgid "offline_failed_login_delay (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:509 -msgid "" -"The time in minutes which has to pass after offline_failed_login_attempts " -"has been reached before a new login attempt is possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:514 -msgid "" -"If set to 0 the user cannot authenticate offline if " -"offline_failed_login_attempts has been reached. Only a successful online " -"authentication can enable offline authentication again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:520 sssd.conf.5.xml:573 sssd.conf.5.xml:1093 -msgid "Default: 5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:526 -msgid "pam_verbosity (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:529 -msgid "" -"Controls what kind of messages are shown to the user during authentication. " -"The higher the number to more messages are displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:534 -msgid "Currently sssd supports the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:537 -msgid "<emphasis>0</emphasis>: do not show any message" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:540 -msgid "<emphasis>1</emphasis>: show only important messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:544 -msgid "<emphasis>2</emphasis>: show informational messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:547 -msgid "<emphasis>3</emphasis>: show all messages and debug information" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:551 sssd.8.xml:63 -msgid "Default: 1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:556 -msgid "pam_id_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:559 -msgid "" -"For any PAM request while SSSD is online, the SSSD will attempt to " -"immediately update the cached identity information for the user in order to " -"ensure that authentication takes place with the latest information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:565 -msgid "" -"A complete PAM conversation may perform multiple PAM requests, such as " -"account management and session opening. This option controls (on a per-" -"client-application basis) how long (in seconds) we can cache the identity " -"information to avoid excessive round-trips to the identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:579 -msgid "pam_pwd_expiration_warning (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:582 -msgid "Display a warning N days before the password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:585 -msgid "" -"Please note that the backend server has to provide information about the " -"expiration time of the password. If this information is missing, sssd " -"cannot display a warning." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:591 -msgid "Default: 7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:599 -msgid "SUDO configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:601 -msgid "These options can be used to configure the sudo service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:608 -msgid "sudo_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:611 -msgid "" -"For any sudo request that comes while SSSD is online, the SSSD will attempt " -"to update the cached rules in order to ensure that sudo has the latest " -"ruleset." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:617 -msgid "" -"The user may, however, run a couple of sudo commands successively, which " -"would trigger multiple LDAP requests. In order to speed up this use-case, " -"the sudo service maintains an in-memory cache that would be used for " -"performing fast replies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:624 -msgid "" -"This option controls how long (in seconds) can the sudo service cache rules " -"for a user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:628 -msgid "Default: 180" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:633 -msgid "sudo_timed (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:636 -msgid "" -"Whether or not to evaluate the sudoNotBefore and sudoNotAfter attributes " -"that implement time-dependent sudoers entries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:649 -msgid "AUTOFS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:651 -msgid "These options can be used to configure the autofs service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:659 -msgid "autofs_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:662 -msgid "" -"Specifies for how many seconds should the autofs responder negative cache " -"hits (that is, queries for invalid map entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:679 -msgid "DOMAIN SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:686 -msgid "min_id,max_id (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:689 -msgid "" -"UID and GID limits for the domain. If a domain contains an entry that is " -"outside these limits, it is ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:694 -msgid "" -"For users, this affects the primary GID limit. The user will not be returned " -"to NSS if either the UID or the primary GID is outside the range. For non-" -"primary group memberships, those that are in range will be reported as " -"expected." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:701 -msgid "Default: 1 for min_id, 0 (no limit) for max_id" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:707 -msgid "timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:710 -msgid "" -"Timeout in seconds between heartbeats for this domain. This is used to " -"ensure that the backend process is alive and capable of answering requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:715 sssd-ldap.5.xml:1131 -msgid "Default: 10" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:721 -msgid "enumerate (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:724 -msgid "" -"Determines if a domain can be enumerated. This parameter can have one of the " -"following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:728 -msgid "TRUE = Users and groups are enumerated" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:731 -msgid "FALSE = No enumerations for this domain" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:734 sssd.conf.5.xml:839 sssd.conf.5.xml:893 -msgid "Default: FALSE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:737 -msgid "" -"Note: Enabling enumeration has a moderate performance impact on SSSD while " -"enumeration is running. It may take up to several minutes after SSSD startup " -"to fully complete enumerations. During this time, individual requests for " -"information will go directly to LDAP, though it may be slow, due to the " -"heavy enumeration processing." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:747 -msgid "" -"While the first enumeration is running, requests for the complete user or " -"group lists may return no results until it completes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:752 -msgid "" -"Further, enabling enumeration may increase the time necessary to detect " -"network disconnection, as longer timeouts are required to ensure that " -"enumeration lookups are completed successfully. For more information, refer " -"to the man pages for the specific id_provider in use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:763 -msgid "entry_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:766 -msgid "" -"How many seconds should nss_sss consider entries valid before asking the " -"backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:770 -msgid "Default: 5400" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:776 -msgid "entry_cache_user_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:779 -msgid "" -"How many seconds should nss_sss consider user entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:783 sssd.conf.5.xml:796 sssd.conf.5.xml:809 -#: sssd.conf.5.xml:822 -msgid "Default: entry_cache_timeout" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:789 -msgid "entry_cache_group_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:792 -msgid "" -"How many seconds should nss_sss consider group entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:802 -msgid "entry_cache_netgroup_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:805 -msgid "" -"How many seconds should nss_sss consider netgroup entries valid before " -"asking the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:815 -msgid "entry_cache_service_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:818 -msgid "" -"How many seconds should nss_sss consider service entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:828 -msgid "cache_credentials (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:831 -msgid "Determines if user credentials are also cached in the local LDB cache" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:835 -msgid "User credentials are stored in a SHA512 hash, not in plaintext" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:844 -msgid "account_cache_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:847 -msgid "" -"Number of days entries are left in cache after last successful login before " -"being removed during a cleanup of the cache. 0 means keep forever. The " -"value of this parameter must be greater than or equal to " -"offline_credentials_expiration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:854 -msgid "Default: 0 (unlimited)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:860 -msgid "id_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:863 -msgid "The Data Provider identity backend to use for this domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:867 -msgid "Supported backends:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:870 -msgid "proxy: Support a legacy NSS provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:873 -msgid "local: SSSD internal local provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:876 -msgid "ldap: LDAP provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:882 -msgid "use_fully_qualified_names (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:885 -msgid "" -"If set to TRUE, all requests to this domain must use fully qualified names. " -"For example, if used in LOCAL domain that contains a \"test\" user, " -"<command>getent passwd test</command> wouldn't find the user while " -"<command>getent passwd test@LOCAL</command> would." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:898 -msgid "auth_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:901 -msgid "" -"The authentication provider used for the domain. Supported auth providers " -"are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:905 -msgid "" -"<quote>ldap</quote> for native LDAP authentication. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:912 -msgid "" -"<quote>krb5</quote> for Kerberos authentication. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:919 -msgid "" -"<quote>proxy</quote> for relaying authentication to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:922 -msgid "<quote>none</quote> disables authentication explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:925 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"authentication requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:931 -msgid "access_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:934 -msgid "" -"The access control provider used for the domain. There are two built-in " -"access providers (in addition to any included in installed backends) " -"Internal special providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:940 -msgid "<quote>permit</quote> always allow access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:943 -msgid "<quote>deny</quote> always deny access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:946 -msgid "" -"<quote>simple</quote> access control based on access or deny lists. See " -"<citerefentry> <refentrytitle>sssd-simple</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry> for more information on configuring the simple " -"access module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:953 -msgid "Default: <quote>permit</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:958 -msgid "chpass_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:961 -msgid "" -"The provider which should handle change password operations for the domain. " -"Supported change password providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:966 -msgid "" -"<quote>ipa</quote> to change a password stored in an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:974 -msgid "" -"<quote>ldap</quote> to change a password stored in a LDAP server. See " -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:982 -msgid "" -"<quote>krb5</quote> to change the Kerberos password. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:990 -msgid "" -"<quote>proxy</quote> for relaying password changes to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:994 -msgid "<quote>none</quote> disallows password changes explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:997 -msgid "" -"Default: <quote>auth_provider</quote> is used if it is set and can handle " -"change password requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1004 -msgid "sudo_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1010 -msgid "The SUDO provider used for the domain. Supported SUDO providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1014 -msgid "" -"<quote>ldap</quote> for rules stored in LDAP. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1021 -msgid "<quote>none</quote> disables SUDO explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1024 -msgid "Default: The value of <quote>id_provider</quote> is used if it is set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1030 -msgid "session_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1033 -msgid "" -"The provider which should handle loading of session settings. Supported " -"session providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1038 -msgid "" -"<quote>ipa</quote> to load session settings from an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1046 -msgid "<quote>none</quote> disallows fetching session settings explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1049 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"session loading requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1056 -msgid "lookup_family_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1059 -msgid "" -"Provides the ability to select preferred address family to use when " -"performing DNS lookups." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1063 -msgid "Supported values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1066 -msgid "ipv4_first: Try looking up IPv4 address, if that fails, try IPv6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1069 -msgid "ipv4_only: Only attempt to resolve hostnames to IPv4 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1072 -msgid "ipv6_first: Try looking up IPv6 address, if that fails, try IPv4" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1075 -msgid "ipv6_only: Only attempt to resolve hostnames to IPv6 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1078 -msgid "Default: ipv4_first" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1084 -msgid "dns_resolver_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1087 -msgid "" -"Defines the amount of time (in seconds) to wait for a reply from the DNS " -"resolver before assuming that it is unreachable. If this timeout is reached, " -"the domain will continue to operate in offline mode." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1099 -msgid "dns_discovery_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1102 -msgid "" -"If service discovery is used in the back end, specifies the domain part of " -"the service discovery DNS query." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1106 -msgid "Default: Use the domain part of machine's hostname" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1112 -msgid "override_gid (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1115 -msgid "Override the primary GID value with the one specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1121 -msgid "case_sensitive (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1124 -msgid "" -"Treat user and group names as case sensitive. At the moment, this option is " -"not supported in the local provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1129 -msgid "Default: True" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:681 -msgid "" -"These configuration options can be present in a domain configuration " -"section, that is, in a section called <quote>[domain/<replaceable>NAME</" -"replaceable>]</quote> <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1141 -msgid "proxy_pam_target (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1144 -msgid "The proxy target PAM proxies to." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1147 -msgid "" -"Default: not set by default, you have to take an existing pam configuration " -"or create a new one and add the service name here." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1155 -msgid "proxy_lib_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1158 -msgid "" -"The name of the NSS library to use in proxy domains. The NSS functions " -"searched for in the library are in the form of _nss_$(libName)_$(function), " -"for example _nss_files_getpwent." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1137 -msgid "" -"Options valid for proxy domains. <placeholder type=\"variablelist\" id=" -"\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:1170 -msgid "The local domain section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:1172 -msgid "" -"This section contains settings for domain that stores users and groups in " -"SSSD native database, that is, a domain that uses " -"<replaceable>id_provider=local</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1179 -msgid "default_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1182 -msgid "The default shell for users created with SSSD userspace tools." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1186 -msgid "Default: <filename>/bin/bash</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1191 -msgid "base_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1194 -msgid "" -"The tools append the login name to <replaceable>base_directory</replaceable> " -"and use that as the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1199 -msgid "Default: <filename>/home</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1204 -msgid "create_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1207 -msgid "" -"Indicate if a home directory should be created by default for new users. " -"Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1211 sssd.conf.5.xml:1223 -msgid "Default: TRUE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1216 -msgid "remove_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1219 -msgid "" -"Indicate if a home directory should be removed by default for deleted " -"users. Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1228 -msgid "homedir_umask (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1231 -msgid "" -"Used by <citerefentry> <refentrytitle>sss_useradd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry> to specify the default permissions " -"on a newly created home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1239 -msgid "Default: 077" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1244 -msgid "skel_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1247 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<citerefentry> <refentrytitle>sss_useradd</refentrytitle> <manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1257 -msgid "Default: <filename>/etc/skel</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1262 -msgid "mail_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1265 -msgid "" -"The mail spool directory. This is needed to manipulate the mailbox when its " -"corresponding user account is modified or deleted. If not specified, a " -"default value is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1272 -msgid "Default: <filename>/var/mail</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1277 -msgid "userdel_cmd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1280 -msgid "" -"The command that is run after a user is removed. The command us passed the " -"username of the user being removed as the first and only parameter. The " -"return code of the command is not taken into account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1286 -msgid "Default: None, no command is run" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:1296 sssd-ldap.5.xml:2064 sssd-simple.5.xml:126 -#: sssd-ipa.5.xml:544 sssd-krb5.5.xml:432 -msgid "EXAMPLE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:1302 -#, no-wrap -msgid "" -"[sssd]\n" -"domains = LDAP\n" -"services = nss, pam\n" -"config_file_version = 2\n" -"\n" -"[nss]\n" -"filter_groups = root\n" -"filter_users = root\n" -"\n" -"[pam]\n" -"\n" -"[domain/LDAP]\n" -"id_provider = ldap\n" -"ldap_uri = ldap://ldap.example.com\n" -"ldap_search_base = dc=example,dc=com\n" -"\n" -"auth_provider = krb5\n" -"krb5_server = kerberos.example.com\n" -"krb5_realm = EXAMPLE.COM\n" -"cache_credentials = true\n" -"\n" -"min_id = 10000\n" -"max_id = 20000\n" -"enumerate = False\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1298 -msgid "" -"The following example shows a typical SSSD config. It does not describe " -"configuration of the domains themselves - refer to documentation on " -"configuring domains for more details. <placeholder type=\"programlisting\" " -"id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1333 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>pam_sss</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ldap.5.xml:10 sssd-ldap.5.xml:16 -msgid "sssd-ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:23 -msgid "" -"This manual page describes the configuration of LDAP domains for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. Refer to the <quote>FILE FORMAT</quote> section of the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for detailed syntax information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:35 -msgid "You can configure SSSD to use more than one LDAP domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:38 -msgid "" -"LDAP back end supports id, auth, access and chpass providers. If you want to " -"authenticate against an LDAP server either TLS/SSL or LDAPS is required. " -"<command>sssd</command> <emphasis>does not</emphasis> support authentication " -"over an unencrypted channel. If the LDAP server is used only as an identity " -"provider, an encrypted channel is not needed. Please refer to " -"<quote>ldap_access_filter</quote> config option for more information about " -"using LDAP as an access provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:49 sssd-simple.5.xml:69 sssd-ipa.5.xml:64 -#: sssd-krb5.5.xml:63 -msgid "CONFIGURATION OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:60 -msgid "ldap_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:63 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference. Refer to the <quote>FAILOVER</" -"quote> section for more information on failover and server redundancy. If " -"not specified, service discovery is enabled. For more information, refer to " -"the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:70 -msgid "The format of the URI must match the format defined in RFC 2732:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:73 -msgid "ldap[s]://<host>[:port]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:76 -msgid "" -"For explicit IPv6 addresses, <host> must be enclosed in brackets []" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:79 -msgid "example: ldap://[fc00::126:25]:389" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:85 -msgid "ldap_chpass_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:88 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference to change the password of a user. " -"Refer to the <quote>FAILOVER</quote> section for more information on " -"failover and server redundancy." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:95 -msgid "To enable service discovery ldap_chpass_dns_service_name must be set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:99 -msgid "Default: empty, i.e. ldap_uri is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:105 -msgid "ldap_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:108 -msgid "The default base DN to use for performing LDAP user operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:112 -msgid "" -"Starting with SSSD 1.7.0, SSSD supports multiple search bases using the " -"syntax:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:116 -msgid "search_base[?scope?[filter][?search_base?scope?[filter]]*]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:119 -msgid "The scope can be one of \"base\", \"onelevel\" or \"subtree\"." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:122 -msgid "" -"The filter must be a valid LDAP search filter as specified by http://www." -"ietf.org/rfc/rfc2254.txt" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:126 -msgid "Examples:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:129 -msgid "" -"ldap_search_base = dc=example,dc=com (which is equivalent to) " -"ldap_search_base = dc=example,dc=com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:134 -msgid "" -"ldap_search_base = cn=host_specific,dc=example,dc=com?subtree?" -"(host=thishost)?dc=example.com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:137 -msgid "" -"Note: It is unsupported to have multiple search bases which reference " -"identically-named objects (for example, groups with the same name in two " -"different search bases). This will lead to unpredictable behavior on client " -"machines." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:144 -msgid "" -"Default: If not set, the value of the defaultNamingContext or namingContexts " -"attribute from the RootDSE of the LDAP server is used. If " -"defaultNamingContext does not exists or has an empty value namingContexts is " -"used. The namingContexts attribute must have a single value with the DN of " -"the search base of the LDAP server to make this work. Multiple values are " -"are not supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:158 -msgid "ldap_schema (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:161 -msgid "" -"Specifies the Schema Type in use on the target LDAP server. Depending on " -"the selected schema, the default attribute names retrieved from the servers " -"may vary. The way that some attributes are handled may also differ. Three " -"schema types are currently supported: rfc2307 rfc2307bis IPA The main " -"difference between these schema types is how group memberships are recorded " -"in the server. With rfc2307, group members are listed by name in the " -"<emphasis>memberUid</emphasis> attribute. With rfc2307bis and IPA, group " -"members are listed by DN and stored in the <emphasis>member</emphasis> " -"attribute." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:180 -msgid "Default: rfc2307" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:186 -msgid "ldap_default_bind_dn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:189 -msgid "The default bind DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:196 -msgid "ldap_default_authtok_type (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:199 -msgid "The type of the authentication token of the default bind DN." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:203 -msgid "The two mechanisms currently supported are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:206 -msgid "password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:209 -msgid "obfuscated_password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:212 -msgid "Default: password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:218 -msgid "ldap_default_authtok (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:221 -msgid "" -"The authentication token of the default bind DN. Only clear text passwords " -"are currently supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:228 -msgid "ldap_user_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:231 -msgid "The object class of a user entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:234 -msgid "Default: posixAccount" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:240 -msgid "ldap_user_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:243 -msgid "The LDAP attribute that corresponds to the user's login name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:247 -msgid "Default: uid" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:253 -msgid "ldap_user_uid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:256 -msgid "The LDAP attribute that corresponds to the user's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:260 -msgid "Default: uidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:266 -msgid "ldap_user_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:269 -msgid "The LDAP attribute that corresponds to the user's primary group id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:273 sssd-ldap.5.xml:740 -msgid "Default: gidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:279 -msgid "ldap_user_gecos (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:282 -msgid "The LDAP attribute that corresponds to the user's gecos field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:286 -msgid "Default: gecos" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:292 -msgid "ldap_user_home_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:295 -msgid "The LDAP attribute that contains the name of the user's home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:299 -msgid "Default: homeDirectory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:305 -msgid "ldap_user_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:308 -msgid "The LDAP attribute that contains the path to the user's default shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:312 -msgid "Default: loginShell" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:318 -msgid "ldap_user_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:321 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP user object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:325 sssd-ldap.5.xml:766 sssd-ldap.5.xml:878 -msgid "Default: nsUniqueId" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:331 -msgid "ldap_user_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:334 sssd-ldap.5.xml:775 sssd-ldap.5.xml:887 -msgid "" -"The LDAP attribute that contains timestamp of the last modification of the " -"parent object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:338 sssd-ldap.5.xml:779 sssd-ldap.5.xml:894 -msgid "Default: modifyTimestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:344 -msgid "ldap_user_shadow_last_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:347 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (date of " -"the last password change)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:357 -msgid "Default: shadowLastChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:363 -msgid "ldap_user_shadow_min (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:366 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (minimum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:375 -msgid "Default: shadowMin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:381 -msgid "ldap_user_shadow_max (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:384 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (maximum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:393 -msgid "Default: shadowMax" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:399 -msgid "ldap_user_shadow_warning (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:402 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password warning period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:412 -msgid "Default: shadowWarning" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:418 -msgid "ldap_user_shadow_inactive (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:421 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password inactivity period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:431 -msgid "Default: shadowInactive" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:437 -msgid "ldap_user_shadow_expire (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:440 -msgid "" -"When using ldap_pwd_policy=shadow or ldap_account_expire_policy=shadow, this " -"parameter contains the name of an LDAP attribute corresponding to its " -"<citerefentry> <refentrytitle>shadow</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> counterpart (account expiration date)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:450 -msgid "Default: shadowExpire" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:456 -msgid "ldap_user_krb_last_pwd_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:459 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time of last password change in " -"kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:465 -msgid "Default: krbLastPwdChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:471 -msgid "ldap_user_krb_password_expiration (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:474 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time when current password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:480 -msgid "Default: krbPasswordExpiration" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:486 -msgid "ldap_user_ad_account_expires (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:489 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the expiration time of the account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:494 -msgid "Default: accountExpires" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:500 -msgid "ldap_user_ad_user_account_control (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:503 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the user account control bit field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:508 -msgid "Default: userAccountControl" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:514 -msgid "ldap_ns_account_lock (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:517 -msgid "" -"When using ldap_account_expire_policy=rhds or equivalent, this parameter " -"determines if access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:522 -msgid "Default: nsAccountLock" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:528 -msgid "ldap_user_nds_login_disabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:531 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines if " -"access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:535 sssd-ldap.5.xml:549 -msgid "Default: loginDisabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:541 -msgid "ldap_user_nds_login_expiration_time (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:544 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines until " -"which date access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:555 -msgid "ldap_user_nds_login_allowed_time_map (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:558 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines the " -"hours of a day in a week when access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:563 -msgid "Default: loginAllowedTimeMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:569 -msgid "ldap_user_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:572 -msgid "" -"The LDAP attribute that contains the user's Kerberos User Principal Name " -"(UPN)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:576 -msgid "Default: krbPrincipalName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:582 -msgid "ldap_user_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:585 -msgid "The LDAP attribute that contains the user's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:592 -msgid "ldap_force_upper_case_realm (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:595 -msgid "" -"Some directory servers, for example Active Directory, might deliver the " -"realm part of the UPN in lower case, which might cause the authentication to " -"fail. Set this option to a non-zero value if you want to use an upper-case " -"realm." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:608 -msgid "ldap_enumeration_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:611 -msgid "" -"Specifies how many seconds SSSD has to wait before refreshing its cache of " -"enumerated records." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:616 sssd-ldap.5.xml:1808 -msgid "Default: 300" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:622 -msgid "ldap_purge_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:625 -msgid "" -"Determine how often to check the cache for inactive entries (such as groups " -"with no members and users who have never logged in) and remove them to save " -"space." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:631 -msgid "Setting this option to zero will disable the cache cleanup operation." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:635 -msgid "Default: 10800 (12 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:641 -msgid "ldap_user_fullname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:644 -msgid "The LDAP attribute that corresponds to the user's full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:648 sssd-ldap.5.xml:727 sssd-ldap.5.xml:828 -#: sssd-ldap.5.xml:919 sssd-ldap.5.xml:1663 sssd-ldap.5.xml:1881 -#: sssd-ipa.5.xml:422 -msgid "Default: cn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:654 -msgid "ldap_user_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:657 -msgid "The LDAP attribute that lists the user's group memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:661 sssd-ipa.5.xml:326 -msgid "Default: memberOf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:667 -msgid "ldap_user_authorized_service (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:670 -msgid "" -"If access_provider=ldap and ldap_access_order=authorized_service, SSSD will " -"use the presence of the authorizedService attribute in the user's LDAP entry " -"to determine access privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:677 -msgid "" -"An explicit deny (!svc) is resolved first. Second, SSSD searches for " -"explicit allow (svc) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:682 -msgid "Default: authorizedService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:688 -msgid "ldap_user_authorized_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:691 -msgid "" -"If access_provider=ldap and ldap_access_order=host, SSSD will use the " -"presence of the host attribute in the user's LDAP entry to determine access " -"privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:697 -msgid "" -"An explicit deny (!host) is resolved first. Second, SSSD searches for " -"explicit allow (host) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:702 -msgid "Default: host" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:708 -msgid "ldap_group_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:711 -msgid "The object class of a group entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:714 -msgid "Default: posixGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:720 -msgid "ldap_group_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:723 -msgid "The LDAP attribute that corresponds to the group name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:733 -msgid "ldap_group_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:736 -msgid "The LDAP attribute that corresponds to the group's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:746 -msgid "ldap_group_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:749 -msgid "The LDAP attribute that contains the names of the group's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:753 -msgid "Default: memberuid (rfc2307) / member (rfc2307bis)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:759 -msgid "ldap_group_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:762 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP group object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:772 -msgid "ldap_group_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:785 -msgid "ldap_group_nesting_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:788 -msgid "" -"If ldap_schema is set to a schema format that supports nested groups (e.g. " -"RFC2307bis), then this option controls how many levels of nesting SSSD will " -"follow. This option has no effect on the RFC2307 schema." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:795 -msgid "Default: 2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:801 -msgid "ldap_netgroup_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:804 -msgid "The object class of a netgroup entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:807 -msgid "In IPA provider, ipa_netgroup_object_class should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:811 -msgid "Default: nisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:817 -msgid "ldap_netgroup_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:820 -msgid "The LDAP attribute that corresponds to the netgroup name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:824 -msgid "In IPA provider, ipa_netgroup_name should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:834 -msgid "ldap_netgroup_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:837 -msgid "The LDAP attribute that contains the names of the netgroup's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:841 -msgid "In IPA provider, ipa_netgroup_member should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:845 -msgid "Default: memberNisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:851 -msgid "ldap_netgroup_triple (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:854 -msgid "" -"The LDAP attribute that contains the (host, user, domain) netgroup triples." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:858 sssd-ldap.5.xml:891 -msgid "This option is not available in IPA provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:861 -msgid "Default: nisNetgroupTriple" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:867 -msgid "ldap_netgroup_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:870 -msgid "" -"The LDAP attribute that contains the UUID/GUID of an LDAP netgroup object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:874 -msgid "In IPA provider, ipa_netgroup_uuid should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:884 -msgid "ldap_netgroup_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:900 -msgid "ldap_service_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:903 -msgid "The object class of a service entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:906 -msgid "Default: ipService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:912 -msgid "ldap_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:915 -msgid "" -"The LDAP attribute that contains the name of service attributes and their " -"aliases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:925 -msgid "ldap_service_port (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:928 -msgid "The LDAP attribute that contains the port managed by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:932 -msgid "Default: ipServicePort" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:938 -msgid "ldap_service_proto (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:941 -msgid "" -"The LDAP attribute that contains the protocols understood by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:945 -msgid "Default: ipServiceProtocol" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:951 -msgid "ldap_service_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:954 -msgid "An optional base DN to restrict service searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:958 sssd-ldap.5.xml:1918 sssd-ldap.5.xml:1937 -#: sssd-ldap.5.xml:1956 sssd-ldap.5.xml:2019 sssd-ldap.5.xml:2041 -#: sssd-ipa.5.xml:163 sssd-ipa.5.xml:187 -msgid "" -"See <quote>ldap_search_base</quote> for information about configuring " -"multiple search bases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:963 sssd-ldap.5.xml:1923 sssd-ldap.5.xml:1942 -#: sssd-ldap.5.xml:1961 sssd-ldap.5.xml:2024 sssd-ldap.5.xml:2046 -#: sssd-ipa.5.xml:173 sssd-ipa.5.xml:192 -msgid "Default: the value of <emphasis>ldap_search_base</emphasis>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:970 -msgid "ldap_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:973 -msgid "" -"Specifies the timeout (in seconds) that ldap searches are allowed to run " -"before they are cancelled and cached results are returned (and offline mode " -"is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:979 -msgid "" -"Note: this option is subject to change in future versions of the SSSD. It " -"will likely be replaced at some point by a series of timeouts for specific " -"lookup types." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:985 sssd-ldap.5.xml:1027 sssd-ldap.5.xml:1042 -msgid "Default: 6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:991 -msgid "ldap_enumeration_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:994 -msgid "" -"Specifies the timeout (in seconds) that ldap searches for user and group " -"enumerations are allowed to run before they are cancelled and cached results " -"are returned (and offline mode is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1001 -msgid "Default: 60" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1007 -msgid "ldap_network_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1010 -msgid "" -"Specifies the timeout (in seconds) after which the <citerefentry> " -"<refentrytitle>poll</refentrytitle> <manvolnum>2</manvolnum> </citerefentry>/" -"<citerefentry> <refentrytitle>select</refentrytitle> <manvolnum>2</" -"manvolnum> </citerefentry> following a <citerefentry> " -"<refentrytitle>connect</refentrytitle> <manvolnum>2</manvolnum> </" -"citerefentry> returns in case of no activity." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1033 -msgid "ldap_opt_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1036 -msgid "" -"Specifies a timeout (in seconds) after which calls to synchronous LDAP APIs " -"will abort if no response is received. Also controls the timeout when " -"communicating with the KDC in case of SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1048 -msgid "ldap_connection_expire_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1051 -msgid "" -"Specifies a timeout (in seconds) that a connection to an LDAP server will be " -"maintained. After this time, the connection will be re-established. If used " -"in parallel with SASL/GSSAPI, the sooner of the two values (this value vs. " -"the TGT lifetime) will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1059 -msgid "Default: 900 (15 minutes)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1065 -msgid "ldap_page_size (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1068 -msgid "" -"Specify the number of records to retrieve from LDAP in a single request. " -"Some LDAP servers enforce a maximum limit per-request." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1073 -msgid "Default: 1000" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1079 -msgid "ldap_disable_paging" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1082 -msgid "" -"Disable the LDAP paging control. This option should be used if the LDAP " -"server reports that it supports the LDAP paging control in its RootDSE but " -"it is not enabled or does not behave properly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1088 -msgid "" -"Example: OpenLDAP servers with the paging control module installed on the " -"server but not enabled will report it in the RootDSE but be unable to use it." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1094 -msgid "" -"Example: 389 DS has a bug where it can only support a one paging control at " -"a time on a single connection. On busy clients, this can result in some " -"requests being denied." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1103 -msgid "ldap_deref_threshold (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1106 -msgid "" -"Specify the number of group members that must be missing from the internal " -"cache in order to trigger a dereference lookup. If less members are missing, " -"they are looked up individually." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1112 -msgid "" -"You can turn off dereference lookups completely by setting the value to 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1116 -msgid "" -"A dereference lookup is a means of fetching all group members in a single " -"LDAP call. Different LDAP servers may implement different dereference " -"methods. The currently supported servers are 389/RHDS, OpenLDAP and Active " -"Directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1124 -msgid "" -"<emphasis>Note:</emphasis> If any of the search bases specifies a search " -"filter, then the dereference lookup performance enhancement will be disabled " -"regardless of this setting." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1137 -msgid "ldap_tls_reqcert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1140 -msgid "" -"Specifies what checks to perform on server certificates in a TLS session, if " -"any. It can be specified as one of the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1146 -msgid "" -"<emphasis>never</emphasis> = The client will not request or check any server " -"certificate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1150 -msgid "" -"<emphasis>allow</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, it will be ignored and the session proceeds normally." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1157 -msgid "" -"<emphasis>try</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, the session is immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1163 -msgid "" -"<emphasis>demand</emphasis> = The server certificate is requested. If no " -"certificate is provided, or a bad certificate is provided, the session is " -"immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1169 -msgid "<emphasis>hard</emphasis> = Same as <quote>demand</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1173 -msgid "Default: hard" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1179 -msgid "ldap_tls_cacert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1182 -msgid "" -"Specifies the file that contains certificates for all of the Certificate " -"Authorities that <command>sssd</command> will recognize." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1187 sssd-ldap.5.xml:1205 sssd-ldap.5.xml:1246 -msgid "" -"Default: use OpenLDAP defaults, typically in <filename>/etc/openldap/ldap." -"conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1194 -msgid "ldap_tls_cacertdir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1197 -msgid "" -"Specifies the path of a directory that contains Certificate Authority " -"certificates in separate individual files. Typically the file names need to " -"be the hash of the certificate followed by '.0'. If available, " -"<command>cacertdir_rehash</command> can be used to create the correct names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1212 -msgid "ldap_tls_cert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1215 -msgid "Specifies the file that contains the certificate for the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1219 sssd-ldap.5.xml:1231 sssd-ldap.5.xml:1979 -#: sssd-ldap.5.xml:2006 sssd-krb5.5.xml:359 -msgid "Default: not set" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1225 -msgid "ldap_tls_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1228 -msgid "Specifies the file that contains the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1237 -msgid "ldap_tls_cipher_suite (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1240 -msgid "" -"Specifies acceptable cipher suites. Typically this is a colon sperated " -"list. See <citerefentry><refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> for format." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1253 -msgid "ldap_id_use_start_tls (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1256 -msgid "" -"Specifies that the id_provider connection must also use <systemitem class=" -"\"protocol\">tls</systemitem> to protect the channel." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1266 -msgid "ldap_sasl_mech (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1269 -msgid "" -"Specify the SASL mechanism to use. Currently only GSSAPI is tested and " -"supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1273 sssd-ldap.5.xml:1428 -msgid "Default: none" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1279 -msgid "ldap_sasl_authid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1282 -msgid "" -"Specify the SASL authorization id to use. When GSSAPI is used, this " -"represents the Kerberos principal used for authentication to the directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1287 -msgid "Default: host/machine.fqdn@REALM" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1293 -msgid "ldap_sasl_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1296 -msgid "" -"If set to true, the LDAP library would perform a reverse lookup to " -"canonicalize the host name during a SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1301 -msgid "Default: false;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1307 -msgid "ldap_krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1310 -msgid "Specify the keytab to use when using SASL/GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1313 -msgid "Default: System keytab, normally <filename>/etc/krb5.keytab</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1319 -msgid "ldap_krb5_init_creds (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1322 -msgid "" -"Specifies that the id_provider should init Kerberos credentials (TGT). This " -"action is performed only if SASL is used and the mechanism selected is " -"GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1334 -msgid "ldap_krb5_ticket_lifetime (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1337 -msgid "Specifies the lifetime in seconds of the TGT if GSSAPI is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1341 -msgid "Default: 86400 (24 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1347 sssd-krb5.5.xml:74 -msgid "krb5_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1350 sssd-krb5.5.xml:77 -msgid "" -"Specifies the comma-separated list of IP addresses or hostnames of the " -"Kerberos servers to which SSSD should connect in the order of preference. " -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. An optional port number (preceded by a " -"colon) may be appended to the addresses or hostnames. If empty, service " -"discovery is enabled - for more information, refer to the <quote>SERVICE " -"DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1362 sssd-krb5.5.xml:89 -msgid "" -"When using service discovery for KDC or kpasswd servers, SSSD first searches " -"for DNS entries that specify _udp as the protocol and falls back to _tcp if " -"none are found." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1367 sssd-krb5.5.xml:94 -msgid "" -"This option was named <quote>krb5_kdcip</quote> in earlier releases of SSSD. " -"While the legacy name is recognized for the time being, users are advised to " -"migrate their config files to use <quote>krb5_server</quote> instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1376 sssd-ipa.5.xml:216 sssd-krb5.5.xml:103 -msgid "krb5_realm (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1379 -msgid "Specify the Kerberos REALM (for SASL/GSSAPI auth)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1382 -msgid "Default: System defaults, see <filename>/etc/krb5.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1388 sssd-ipa.5.xml:231 sssd-krb5.5.xml:409 -msgid "krb5_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1391 -msgid "" -"Specifies if the host principal should be canonicalized when connecting to " -"LDAP server. This feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1403 -msgid "ldap_pwd_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1406 -msgid "" -"Select the policy to evaluate the password expiration on the client side. " -"The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1411 -msgid "" -"<emphasis>none</emphasis> - No evaluation on the client side. This option " -"cannot disable server-side password policies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1416 -msgid "" -"<emphasis>shadow</emphasis> - Use <citerefentry><refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum></citerefentry> style attributes to " -"evaluate if the password has expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1422 -msgid "" -"<emphasis>mit_kerberos</emphasis> - Use the attributes used by MIT Kerberos " -"to determine if the password has expired. Use chpass_provider=krb5 to update " -"these attributes when the password is changed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1434 -msgid "ldap_referrals (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1437 -msgid "Specifies whether automatic referral chasing should be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1441 -msgid "" -"Please note that sssd only supports referral chasing when it is compiled " -"with OpenLDAP version 2.4.13 or higher." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1452 -msgid "ldap_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1455 -msgid "Specifies the service name to use when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1459 -msgid "Default: ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1465 -msgid "ldap_chpass_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1468 -msgid "" -"Specifies the service name to use to find an LDAP server which allows " -"password changes when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1473 -msgid "Default: not set, i.e. service discovery is disabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1479 -msgid "ldap_access_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1482 -msgid "" -"If using access_provider = ldap, this option is mandatory. It specifies an " -"LDAP search filter criteria that must be met for the user to be granted " -"access on this host. If access_provider = ldap and this option is not set, " -"it will result in all users being denied access. Use access_provider = allow " -"to change this default behavior." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1492 sssd-ldap.5.xml:1982 -msgid "Example:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1495 -#, no-wrap -msgid "" -"access_provider = ldap\n" -"ldap_access_filter = memberOf=cn=allowedusers,ou=Groups,dc=example,dc=com\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1499 -msgid "" -"This example means that access to this host is restricted to members of the " -"\"allowedusers\" group in ldap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1504 -msgid "" -"Offline caching for this feature is limited to determining whether the " -"user's last online login was granted access permission. If they were granted " -"access during their last login, they will continue to be granted access " -"while offline and vice-versa." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1512 sssd-ldap.5.xml:1562 -msgid "Default: Empty" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1518 -msgid "ldap_account_expire_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1521 -msgid "" -"With this option a client side evaluation of access control attributes can " -"be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1525 -msgid "" -"Please note that it is always recommended to use server side access control, " -"i.e. the LDAP server should deny the bind request with a suitable error code " -"even if the password is correct." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1532 -msgid "The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1535 -msgid "" -"<emphasis>shadow</emphasis>: use the value of ldap_user_shadow_expire to " -"determine if the account is expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1540 -msgid "" -"<emphasis>ad</emphasis>: use the value of the 32bit field " -"ldap_user_ad_user_account_control and allow access if the second bit is not " -"set. If the attribute is missing access is granted. Also the expiration time " -"of the account is checked." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1547 -msgid "" -"<emphasis>rhds</emphasis>, <emphasis>ipa</emphasis>, <emphasis>389ds</" -"emphasis>: use the value of ldap_ns_account_lock to check if access is " -"allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1553 -msgid "" -"<emphasis>nds</emphasis>: the values of " -"ldap_user_nds_login_allowed_time_map, ldap_user_nds_login_disabled and " -"ldap_user_nds_login_expiration_time are used to check if access is allowed. " -"If both attributes are missing access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1568 -msgid "ldap_access_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1571 -msgid "Comma separated list of access control options. Allowed values are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1575 -msgid "<emphasis>filter</emphasis>: use ldap_access_filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1578 -msgid "<emphasis>expire</emphasis>: use ldap_account_expire_policy" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1582 -msgid "" -"<emphasis>authorized_service</emphasis>: use the authorizedService attribute " -"to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1587 -msgid "<emphasis>host</emphasis>: use the host attribute to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1591 -msgid "Default: filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1594 -msgid "" -"Please note that it is a configuration error if a value is used more than " -"once." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1601 -msgid "ldap_deref (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1604 -msgid "" -"Specifies how alias dereferencing is done when performing a search. The " -"following options are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1609 -msgid "<emphasis>never</emphasis>: Aliases are never dereferenced." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1613 -msgid "" -"<emphasis>searching</emphasis>: Aliases are dereferenced in subordinates of " -"the base object, but not in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1618 -msgid "" -"<emphasis>finding</emphasis>: Aliases are only dereferenced when locating " -"the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1623 -msgid "" -"<emphasis>always</emphasis>: Aliases are dereferenced both in searching and " -"in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1628 -msgid "" -"Default: Empty (this is handled as <emphasis>never</emphasis> by the LDAP " -"client libraries)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:51 -msgid "" -"All of the common configuration options that apply to SSSD domains also " -"apply to LDAP domains. Refer to the <quote>DOMAIN SECTIONS</quote> section " -"of the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for full details. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1639 -msgid "SUDO OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1644 -msgid "ldap_sudorule_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1647 -msgid "The object class of a sudo rule entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1650 -msgid "Default: sudoRole" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1656 -msgid "ldap_sudorule_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1659 -msgid "The LDAP attribute that corresponds to the sudo rule name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1669 -msgid "ldap_sudorule_command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1672 -msgid "The LDAP attribute that corresponds to the command name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1676 -msgid "Default: sudoCommand" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1682 -msgid "ldap_sudorule_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1685 -msgid "" -"The LDAP attribute that corresponds to the host name (or host IP address, " -"host IP network, or host netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1690 -msgid "Default: sudoHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1696 -msgid "ldap_sudorule_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1699 -msgid "" -"The LDAP attribute that corresponds to the user name (or UID, group name or " -"user's netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1703 -msgid "Default: sudoUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1709 -msgid "ldap_sudorule_option (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1712 -msgid "The LDAP attribute that corresponds to the sudo options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1716 -msgid "Default: sudoOption" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1722 -msgid "ldap_sudorule_runasuser (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1725 -msgid "" -"The LDAP attribute that corresponds to the user name that commands may be " -"run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1729 -msgid "Default: sudoRunAsUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1735 -msgid "ldap_sudorule_runasgroup (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1738 -msgid "" -"The LDAP attribute that corresponds to the group name or group GID that " -"commands may be run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1742 -msgid "Default: sudoRunAsGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1748 -msgid "ldap_sudorule_notbefore (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1751 -msgid "" -"The LDAP attribute that corresponds to the start date/time for when the sudo " -"rule is valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1755 -msgid "Default: sudoNotBefore" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1761 -msgid "ldap_sudorule_notafter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1764 -msgid "" -"The LDAP attribute that corresponds to the expiration date/time, after which " -"the sudo rule will no longer be valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1769 -msgid "Default: sudoNotAfter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1775 -msgid "ldap_sudorule_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1778 -msgid "The LDAP attribute that corresponds to the ordering index of the rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1782 -msgid "Default: sudoOrder" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1788 -msgid "ldap_sudo_refresh_enabled (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1791 -msgid "" -"Enables periodical download of all sudo rules. The cache is purged before " -"each update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1801 -msgid "ldap_sudo_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1804 -msgid "" -"How many seconds SSSD has to wait before refreshing its cache of sudo rules." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1642 -msgid "<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1815 -msgid "" -"This manual page only describes attribute name mapping. For detailed " -"explanation of sudo related attribute semantics, see <citerefentry> " -"<refentrytitle>sudoers.ldap</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1825 -msgid "AUTOFS OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1827 -msgid "" -"Please note that the default values correspond to the default schema which " -"is RFC2307." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1834 -msgid "ldap_autofs_map_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1837 sssd-ldap.5.xml:1863 -msgid "The object class of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1840 sssd-ldap.5.xml:1867 -msgid "Default: automountMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1847 -msgid "ldap_autofs_map_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1850 -msgid "The name of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1853 -msgid "Default: ou" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1860 -msgid "ldap_autofs_entry_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1874 -msgid "ldap_autofs_entry_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1877 sssd-ldap.5.xml:1891 -msgid "" -"The key of an automount entry in LDAP. The entry usually corresponds to a " -"mount point." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1888 -msgid "ldap_autofs_entry_value (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1895 -msgid "Default: automountInformation" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1832 -msgid "" -"<placeholder type=\"variablelist\" id=\"0\"/> <placeholder type=" -"\"variablelist\" id=\"1\"/> <placeholder type=\"variablelist\" id=\"2\"/> " -"<placeholder type=\"variablelist\" id=\"3\"/> <placeholder type=" -"\"variablelist\" id=\"4\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1904 -msgid "ADVANCED OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1911 -msgid "ldap_netgroup_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1914 -msgid "" -"An optional base DN to restrict netgroup searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1930 -msgid "ldap_user_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1933 -msgid "An optional base DN to restrict user searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1949 -msgid "ldap_group_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1952 -msgid "An optional base DN to restrict group searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1968 -msgid "ldap_user_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1971 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict user searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1975 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_user_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1985 -#, no-wrap -msgid "" -" ldap_user_search_filter = (loginShell=/bin/tcsh)\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1988 -msgid "" -"This filter would restrict user searches to users that have their shell set " -"to /bin/tcsh." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1995 -msgid "ldap_group_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1998 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict group searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2002 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_group_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2012 -msgid "ldap_sudo_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2015 -msgid "" -"An optional base DN to restrict sudo rules searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2034 -msgid "ldap_autofs_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2037 -msgid "" -"An optional base DN to restrict automounter searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1906 -msgid "" -"These options are supported by LDAP domains, but they should be used with " -"caution. Please include them in your configuration only if you know what you " -"are doing. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2066 -msgid "" -"The following example assumes that SSSD is correctly configured and LDAP is " -"set to one of the domains in the <replaceable>[domains]</replaceable> " -"section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ldap.5.xml:2072 -#, no-wrap -msgid "" -" [domain/LDAP]\n" -" id_provider = ldap\n" -" auth_provider = ldap\n" -" ldap_uri = ldap://ldap.mydomain.org\n" -" ldap_search_base = dc=mydomain,dc=org\n" -" ldap_tls_reqcert = demand\n" -" cache_credentials = true\n" -" enumerate = true\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2071 sssd-simple.5.xml:134 sssd-ipa.5.xml:552 -#: sssd-krb5.5.xml:441 -msgid "<placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:2085 sssd_krb5_locator_plugin.8.xml:61 -msgid "NOTES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2087 -msgid "" -"The descriptions of some of the configuration options in this manual page " -"are based on the <citerefentry> <refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page from the OpenLDAP 2.4 " -"distribution." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2098 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <refentryinfo> -#: pam_sss.8.xml:8 include/upstream.xml:2 -msgid "" -"<productname>SSSD</productname> <orgname>The SSSD upstream - http://" -"fedorahosted.org/sssd</orgname>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: pam_sss.8.xml:13 pam_sss.8.xml:18 -msgid "pam_sss" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: pam_sss.8.xml:19 -msgid "PAM module for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: pam_sss.8.xml:24 -msgid "" -"<command>pam_sss.so</command> <arg choice='opt'> <replaceable>quiet</" -"replaceable> </arg> <arg choice='opt'> <replaceable>forward_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_first_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_authtok</" -"replaceable> </arg> <arg choice='opt'> <replaceable>retry=N</replaceable> </" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:45 -msgid "" -"<command>pam_sss.so</command> is the PAM interface to the System Security " -"Services daemon (SSSD). Errors and results are logged through <command>syslog" -"(3)</command> with the LOG_AUTHPRIV facility." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:55 -msgid "<option>quiet</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:58 -msgid "Suppress log messages for unknown users." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:63 -msgid "<option>forward_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:66 -msgid "" -"If <option>forward_pass</option> is set the entered password is put on the " -"stack for other PAM modules to use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:73 -msgid "<option>use_first_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:76 -msgid "" -"The argument use_first_pass forces the module to use a previous stacked " -"modules password and will never prompt the user - if no password is " -"available or the password is not appropriate, the user will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:84 -msgid "<option>use_authtok</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:87 -msgid "" -"When password changing enforce the module to set the new password to the one " -"provided by a previously stacked password module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:94 -msgid "<option>retry=N</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:97 -msgid "" -"If specified the user is asked another N times for a password if " -"authentication fails. Default is 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:99 -msgid "" -"Please note that this option might not work as expected if the application " -"calling PAM handles the user dialog on its own. A typical example is " -"<command>sshd</command> with <option>PasswordAuthentication</option>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:110 -msgid "MODULE TYPES PROVIDED" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:111 -msgid "" -"All module types (<option>account</option>, <option>auth</option>, " -"<option>password</option> and <option>session</option>) are provided." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:117 -msgid "FILES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:118 -msgid "" -"If a password reset by root fails, because the corresponding SSSD provider " -"does not support password resets, an individual message can be displayed. " -"This message can e.g. contain instructions about how to reset a password." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:123 -msgid "" -"The message is read from the file <filename>pam_sss_pw_reset_message.LOC</" -"filename> where LOC stands for a locale string returned by <citerefentry> " -"<refentrytitle>setlocale</refentrytitle><manvolnum>3</manvolnum> </" -"citerefentry>. If there is no matching file the content of " -"<filename>pam_sss_pw_reset_message.txt</filename> is displayed. Root must be " -"the owner of the files and only root may have read and write permissions " -"while all other users must have only read permissions." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:133 -msgid "" -"These files are searched in the directory <filename>/etc/sssd/customize/" -"DOMAIN_NAME/</filename>. If no matching file is present a generic message is " -"displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:141 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd_krb5_locator_plugin.8.xml:10 sssd_krb5_locator_plugin.8.xml:15 -msgid "sssd_krb5_locator_plugin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:22 -msgid "" -"The Kerberos locator plugin <command>sssd_krb5_locator_plugin</command> is " -"used by the Kerberos provider of <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry> to tell the Kerberos " -"libraries what Realm and which KDC to use. Typically this is done in " -"<citerefentry> <refentrytitle>krb5.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> which is always read by the Kerberos libraries. " -"To simplify the configuration the Realm and the KDC can be defined in " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> as described in <citerefentry> " -"<refentrytitle>sssd-krb5.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry> puts the Realm and the name or IP address of the KDC into " -"the environment variables SSSD_KRB5_REALM and SSSD_KRB5_KDC respectively. " -"When <command>sssd_krb5_locator_plugin</command> is called by the kerberos " -"libraries it reads and evaluates these variables and returns them to the " -"libraries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:63 -msgid "" -"Not all Kerberos implementations support the use of plugins. If " -"<command>sssd_krb5_locator_plugin</command> is not available on your system " -"you have to edit /etc/krb5.conf to reflect your Kerberos setup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:69 -msgid "" -"If the environment variable SSSD_KRB5_LOCATOR_DEBUG is set to any value " -"debug messages will be sent to stderr." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:77 -msgid "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-simple.5.xml:10 sssd-simple.5.xml:16 -msgid "sssd-simple" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd-simple.5.xml:17 -msgid "the configuration file for SSSD's 'simple' access-control provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:24 -msgid "" -"This manual page describes the configuration of the simple access-control " -"provider for <citerefentry> <refentrytitle>sssd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry>. For a detailed syntax reference, " -"refer to the <quote>FILE FORMAT</quote> section of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:38 -msgid "" -"The simple access provider grants or denies access based on an access or " -"deny list of user or group names. The following rules apply:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:43 -msgid "If all lists are empty, access is granted" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:47 -msgid "" -"If any list is provided, the order of evaluation is allow,deny. This means " -"that any matching deny rule will supersede any matched allow rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:54 -msgid "" -"If either or both \"allow\" lists are provided, all users are denied unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:60 -msgid "" -"If only \"deny\" lists are provided, all users are granted access unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:78 -msgid "simple_allow_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:81 -msgid "Comma separated list of users who are allowed to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:88 -msgid "simple_deny_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:91 -msgid "Comma separated list of users who are explicitly denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:97 -msgid "simple_allow_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:100 -msgid "" -"Comma separated list of groups that are allowed to log in. This applies only " -"to groups within this SSSD domain. Local groups are not evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:108 -msgid "simple_deny_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:111 -msgid "" -"Comma separated list of groups that are explicitly denied access. This " -"applies only to groups within this SSSD domain. Local groups are not " -"evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:70 sssd-ipa.5.xml:65 -msgid "" -"Refer to the section <quote>DOMAIN SECTIONS</quote> of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page for details on the configuration of an SSSD " -"domain. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:120 -msgid "" -"Please note that it is an configuration error if both, simple_allow_users " -"and simple_deny_users, are defined." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:128 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the simple access provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-simple.5.xml:135 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" access_provider = simple\n" -" simple_allow_users = user1, user2\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:145 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ipa.5.xml:10 sssd-ipa.5.xml:16 -msgid "sssd-ipa" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:23 -msgid "" -"This manual page describes the configuration of the IPA provider for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. For a detailed syntax reference, refer to the <quote>FILE " -"FORMAT</quote> section of the <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:36 -msgid "" -"The IPA provider is a back end used to connect to an IPA server. (Refer to " -"the freeipa.org web site for information about IPA servers.) This provider " -"requires that the machine be joined to the IPA domain; configuration is " -"almost entirely self-discovered and obtained directly from the server." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:43 -msgid "" -"The IPA provider accepts the same options used by the <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> identity provider and the <citerefentry> <refentrytitle>sssd-" -"krb5</refentrytitle> <manvolnum>5</manvolnum> </citerefentry> authentication " -"provider with some exceptions described below." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:55 -msgid "" -"However, it is neither necessary nor recommended to set these options. IPA " -"provider can also be used as an access and chpass provider. As an access " -"provider it uses HBAC (host-based access control) rules. Please refer to " -"freeipa.org for more information about HBAC. No configuration of access " -"provider is required on the client side." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:72 -msgid "ipa_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:75 -msgid "" -"Specifies the name of the IPA domain. This is optional. If not provided, " -"the configuration domain name is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:83 -msgid "ipa_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:86 -msgid "" -"The comma-separated list of IP addresses or hostnames of the IPA servers to " -"which SSSD should connect in the order of preference. For more information " -"on failover and server redundancy, see the <quote>FAILOVER</quote> section. " -"This is optional if autodiscovery is enabled. For more information on " -"service discovery, refer to the the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:99 -msgid "ipa_hostname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:102 -msgid "" -"Optional. May be set on machines where the hostname(5) does not reflect the " -"fully qualified name used in the IPA domain to identify this host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:110 -msgid "ipa_dyndns_update (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:113 -msgid "" -"Optional. This option tells SSSD to automatically update the DNS server " -"built into FreeIPA v2 with the IP address of this client." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:118 -msgid "" -"NOTE: On older systems (such as RHEL 5), for this behavior to work reliably, " -"the default Kerberos realm must be set properly in /etc/krb5.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:129 -msgid "ipa_dyndns_iface (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:132 -msgid "" -"Optional. Applicable only when ipa_dyndns_update is true. Choose the " -"interface whose IP address should be used for dynamic DNS updates." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:137 -msgid "Default: Use the IP address of the IPA LDAP connection" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:143 -msgid "ipa_hbac_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:146 -msgid "Optional. Use the given string as search base for HBAC related objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:150 -msgid "Default: Use base DN" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:156 -msgid "ipa_host_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:159 -msgid "Optional. Use the given string as search base for host objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:168 -msgid "" -"If filter is given in any of search bases and " -"<emphasis>ipa_hbac_support_srchost</emphasis> is set to False, the filter " -"will be ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:180 -msgid "ipa_selinux_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:183 -msgid "Optional. Use the given string as search base for SELinux user maps." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:199 sssd-krb5.5.xml:229 -msgid "krb5_validate (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:202 sssd-krb5.5.xml:232 -msgid "" -"Verify with the help of krb5_keytab that the TGT obtained has not been " -"spoofed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:209 -msgid "" -"Note that this default differs from the traditional Kerberos provider back " -"end." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:219 -msgid "" -"The name of the Kerberos realm. This is optional and defaults to the value " -"of <quote>ipa_domain</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:223 -msgid "" -"The name of the Kerberos realm has a special meaning in IPA - it is " -"converted into the base DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:234 -msgid "" -"Specifies if the host and user principal should be canonicalized when " -"connecting to IPA LDAP and also for AS requests. This feature is available " -"with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:247 -msgid "ipa_hbac_refresh (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:250 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server. " -"This will reduce the latency and load on the IPA server if there are many " -"access-control requests made in a short period." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:257 -msgid "Default: 5 (seconds)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:262 -msgid "ipa_hbac_treat_deny_as (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:265 -msgid "" -"This option specifies how to treat the deprecated DENY-type HBAC rules. As " -"of FreeIPA v2.1, DENY rules are no longer supported on the server. All users " -"of FreeIPA will need to migrate their rules to use only the ALLOW rules. The " -"client will support two modes of operation during this transition period:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:274 -msgid "" -"<emphasis>DENY_ALL</emphasis>: If any HBAC DENY rules are detected, all " -"users will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:279 -msgid "" -"<emphasis>IGNORE</emphasis>: SSSD will ignore any DENY rules. Be very " -"careful with this option, as it may result in opening unintended access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:284 -msgid "Default: DENY_ALL" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:289 -msgid "ipa_hbac_support_srchost (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:292 -msgid "" -"If this is set to false, then srchost as given to SSSD by PAM will be " -"ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:296 -msgid "" -"Note that if set to <emphasis>False</emphasis>, this option casuses filters " -"given in <emphasis>ipa_host_search_base</emphasis> to be ignored;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:307 -msgid "ipa_automount_location (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:310 -msgid "The automounter location this IPA client will be using" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:313 -msgid "Default: The location named \"default\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:319 -msgid "ipa_netgroup_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:322 -msgid "The LDAP attribute that lists netgroup's memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:331 -msgid "ipa_netgroup_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:334 -msgid "" -"The LDAP attribute that lists system users and groups that are direct " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:339 sssd-ipa.5.xml:434 -msgid "Default: memberUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:344 -msgid "ipa_netgroup_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:347 -msgid "" -"The LDAP attribute that lists hosts and host groups that are direct members " -"of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:351 sssd-ipa.5.xml:446 -msgid "Default: memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:356 -msgid "ipa_netgroup_member_ext_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:359 -msgid "" -"The LDAP attribute that lists FQDNs of hosts and host groups that are " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:363 -msgid "Default: externalHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:368 -msgid "ipa_netgroup_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:371 -msgid "The LDAP attribute that contains NIS domain name of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:375 -msgid "Default: nisDomainName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:381 -msgid "ipa_host_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:384 sssd-ipa.5.xml:407 -msgid "The object class of a host entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:387 sssd-ipa.5.xml:410 -msgid "Default: ipaHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:392 -msgid "ipa_host_fqdn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:395 -msgid "The LDAP attribute that contains FQDN of the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:398 -msgid "Default: fqdn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:404 -msgid "ipa_selinux_usermap_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:415 -msgid "ipa_selinux_usermap_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:418 -msgid "The LDAP attribute that contains the name of SELinux usermap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:427 -msgid "ipa_selinux_usermap_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:430 -msgid "" -"The LDAP attribute that contains all users / groups this rule match against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:439 -msgid "ipa_selinux_usermap_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:442 -msgid "" -"The LDAP attribute that contains all hosts / hostgroups this rule match " -"against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:451 -msgid "ipa_selinux_usermap_see_also (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:454 -msgid "" -"The LDAP attribute that contains DN of HBAC rule which can be used for " -"matching instead of memberUser and memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:459 -msgid "Default: seeAlso" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:464 -msgid "ipa_selinux_usermap_selinux_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:467 -msgid "The LDAP attribute that contains SELinux user string itself." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:471 -msgid "Default: ipaSELinuxUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:476 -msgid "ipa_selinux_usermap_enabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:479 -msgid "" -"The LDAP attribute that contains whether or not is user map enabled for " -"usage." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:483 -msgid "Default: ipaEnabledFlag" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:488 -msgid "ipa_selinux_usermap_user_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:491 -msgid "The LDAP attribute that contains user category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:495 -msgid "Default: userCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:500 -msgid "ipa_selinux_usermap_host_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:503 -msgid "The LDAP attribute that contains host category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:507 -msgid "Default: hostCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:512 -msgid "ipa_selinux_usermap_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:515 -msgid "The LDAP attribute that contains unique ID of the user map." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:519 -msgid "Default: ipaUniqueID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:524 -msgid "ipa_host_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:527 -msgid "The LDAP attribute that contains the host's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:531 -msgid "Default: ipaSshPubKey" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:546 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the ipa provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ipa.5.xml:553 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" id_provider = ipa\n" -" ipa_server = ipaserver.example.com\n" -" ipa_hostname = myhost.example.com\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:564 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.8.xml:10 sssd.8.xml:15 -msgid "sssd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.8.xml:16 -msgid "System Security Services Daemon" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sssd.8.xml:21 -msgid "" -"<command>sssd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:31 -msgid "" -"<command>SSSD</command> provides a set of daemons to manage access to remote " -"directories and authentication mechanisms. It provides an NSS and PAM " -"interface toward the system and a pluggable backend system to connect to " -"multiple different account sources as well as D-Bus interface. It is also " -"the basis to provide client auditing and policy services for projects like " -"FreeIPA. It provides a more robust database to store local users as well as " -"extended user data." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:46 -msgid "" -"<option>-d</option>,<option>--debug-level</option> <replaceable>LEVEL</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:53 -msgid "<option>--debug-timestamps=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:57 -msgid "<emphasis>1</emphasis>: Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:60 -msgid "<emphasis>0</emphasis>: Disable timestamp in the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:69 -msgid "<option>--debug-microseconds=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:73 -msgid "" -"<emphasis>1</emphasis>: Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:76 -msgid "<emphasis>0</emphasis>: Disable microseconds in timestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:79 -msgid "Default: 0" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:85 -msgid "<option>-f</option>,<option>--debug-to-files</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:89 -msgid "" -"Send the debug output to files instead of stderr. By default, the log files " -"are stored in <filename>/var/log/sssd</filename> and there are separate log " -"files for every SSSD service and domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:97 -msgid "<option>-D</option>,<option>--daemon</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:101 -msgid "Become a daemon after starting up." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:107 -msgid "<option>-i</option>,<option>--interactive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:111 -msgid "Run in the foreground, don't become a daemon." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:117 sss_debuglevel.8.xml:42 -msgid "<option>-c</option>,<option>--config</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:121 sss_debuglevel.8.xml:46 -msgid "" -"Specify a non-default config file. The default is <filename>/etc/sssd/sssd." -"conf</filename>. For reference on the config file syntax and options, " -"consult the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:135 -msgid "<option>--version</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:139 -msgid "Print version number and exit." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.8.xml:147 -msgid "Signals" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:150 -msgid "SIGTERM/SIGINT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:153 -msgid "" -"Informs the SSSD to gracefully terminate all of its child processes and then " -"shut down the monitor." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:159 -msgid "SIGHUP" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:162 -msgid "" -"Tells the SSSD to stop writing to its current debug file descriptors and to " -"close and reopen them. This is meant to facilitate log rolling with programs " -"like logrotate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:170 -msgid "SIGUSR1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:173 -msgid "" -"Tells the SSSD to simulate offline operation for one minute. This is mostly " -"useful for testing purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:179 -msgid "SIGUSR2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:182 -msgid "" -"Tells the SSSD to go online immediately. This is mostly useful for testing " -"purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:193 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_obfuscate.8.xml:10 sss_obfuscate.8.xml:15 -msgid "sss_obfuscate" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_obfuscate.8.xml:16 -msgid "obfuscate a clear text password" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_obfuscate.8.xml:21 -msgid "" -"<command>sss_obfuscate</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>[PASSWORD]</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:32 -msgid "" -"<command>sss_obfuscate</command> converts a given password into human-" -"unreadable format and places it into appropriate domain section of the SSSD " -"config file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:37 -msgid "" -"The cleartext password is read from standard input or entered " -"interactively. The obfuscated password is put into " -"<quote>ldap_default_authtok</quote> parameter of a given SSSD domain and the " -"<quote>ldap_default_authtok_type</quote> parameter is set to " -"<quote>obfuscated_password</quote>. Refer to <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more details on these parameters." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:49 -msgid "" -"Please note that obfuscating the password provides <emphasis>no real " -"security benefit</emphasis> as it is still possible for an attacker to " -"reverse-engineer the password back. Using better authentication mechanisms " -"such as client side certificates or GSSAPI is <emphasis>strongly</emphasis> " -"advised." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:63 -msgid "<option>-s</option>,<option>--stdin</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:67 -msgid "The password to obfuscate will be read from standard input." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:74 sss_ssh_authorizedkeys.1.xml:82 -#: sss_ssh_knownhostsproxy.1.xml:81 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>DOMAIN</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:79 -msgid "" -"The SSSD domain to use the password in. The default name is <quote>default</" -"quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:86 -msgid "" -"<option>-f</option>,<option>--file</option> <replaceable>FILE</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:91 -msgid "Read the config file specified by the positional parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:95 -msgid "Default: <filename>/etc/sssd/sssd.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:105 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_useradd.8.xml:10 sss_useradd.8.xml:15 -msgid "sss_useradd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_useradd.8.xml:16 -msgid "create a new user" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_useradd.8.xml:21 -msgid "" -"<command>sss_useradd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:32 -msgid "" -"<command>sss_useradd</command> creates a new user account using the values " -"specified on the command line plus the default values from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:43 -msgid "" -"<option>-u</option>,<option>--uid</option> <replaceable>UID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:48 -msgid "" -"Set the UID of the user to the value of <replaceable>UID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:55 sss_usermod.8.xml:43 -msgid "" -"<option>-c</option>,<option>--gecos</option> <replaceable>COMMENT</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:60 sss_usermod.8.xml:48 -msgid "" -"Any text string describing the user. Often used as the field for the user's " -"full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:67 sss_usermod.8.xml:55 -msgid "" -"<option>-h</option>,<option>--home</option> <replaceable>HOME_DIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:72 -msgid "" -"The home directory of the user account. The default is to append the " -"<replaceable>LOGIN</replaceable> name to <filename>/home</filename> and use " -"that as the home directory. The base that is prepended before " -"<replaceable>LOGIN</replaceable> is tunable with <quote>user_defaults/" -"baseDirectory</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:82 sss_usermod.8.xml:66 -msgid "" -"<option>-s</option>,<option>--shell</option> <replaceable>SHELL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:87 -msgid "" -"The user's login shell. The default is currently <filename>/bin/bash</" -"filename>. The default can be changed with <quote>user_defaults/" -"defaultShell</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:96 -msgid "" -"<option>-G</option>,<option>--groups</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:101 -msgid "A list of existing groups this user is also a member of." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:107 -msgid "<option>-m</option>,<option>--create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:111 -msgid "" -"Create the user's home directory if it does not exist. The files and " -"directories contained in the skeleton directory (which can be defined with " -"the -k option or in the config file) will be copied to the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:121 -msgid "<option>-M</option>,<option>--no-create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:125 -msgid "" -"Do not create the user's home directory. Overrides configuration settings." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:132 -msgid "" -"<option>-k</option>,<option>--skel</option> <replaceable>SKELDIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:137 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<command>sss_useradd</command>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:143 -msgid "" -"This option is only valid if the <option>-m</option> (or <option>--create-" -"home</option>) option is specified, or creation of home directories is set " -"to TRUE in the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:152 sss_usermod.8.xml:124 -msgid "" -"<option>-Z</option>,<option>--selinux-user</option> " -"<replaceable>SELINUX_USER</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:157 -msgid "" -"The SELinux user for the user's login. If not specified, the system default " -"will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:169 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-krb5.5.xml:10 sssd-krb5.5.xml:16 -msgid "sssd-krb5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:23 -msgid "" -"This manual page describes the configuration of the Kerberos 5 " -"authentication backend for <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry>. For a detailed " -"syntax reference, please refer to the <quote>FILE FORMAT</quote> section of " -"the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:36 -msgid "" -"The Kerberos 5 authentication backend contains auth and chpass providers. It " -"must be paired with identity provider in order to function properly (for " -"example, id_provider = ldap). Some information required by the Kerberos 5 " -"authentication backend must be provided by the identity provider, such as " -"the user's Kerberos Principal Name (UPN). The configuration of the identity " -"provider should have an entry to specify the UPN. Please refer to the man " -"page for the applicable identity provider for details on how to configure " -"this." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:47 -msgid "" -"This backend also provides access control based on the .k5login file in the " -"home directory of the user. See <citerefentry> <refentrytitle>.k5login</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry> for more details. " -"Please note that an empty .k5login file will deny all access to this user. " -"To activate this feature use 'access_provider = krb5' in your sssd " -"configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:55 -msgid "" -"In the case where the UPN is not available in the identity backend " -"<command>sssd</command> will construct a UPN using the format " -"<replaceable>username</replaceable>@<replaceable>krb5_realm</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:106 -msgid "" -"The name of the Kerberos realm. This option is required and must be " -"specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:113 -msgid "krb5_kpasswd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:116 -msgid "" -"If the change password service is not running on the KDC alternative servers " -"can be defined here. An optional port number (preceded by a colon) may be " -"appended to the addresses or hostnames." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:122 -msgid "" -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. Please note that even if there are no more " -"kpasswd servers to try the back end is not switch to offline if " -"authentication against the KDC is still possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:129 -msgid "Default: Use the KDC" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:135 -msgid "krb5_ccachedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:138 -msgid "" -"Directory to store credential caches. All the substitution sequences of " -"krb5_ccname_template can be used here, too, except %d and %P. If the " -"directory does not exist it will be created. If %u, %U, %p or %h are used a " -"private directory belonging to the user is created. Otherwise a public " -"directory with restricted deletion flag (aka sticky bit, see <citerefentry> " -"<refentrytitle>chmod</refentrytitle> <manvolnum>1</manvolnum> </" -"citerefentry> for details) is created." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:151 -msgid "Default: /tmp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:157 -msgid "krb5_ccname_template (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:171 -msgid "login UID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:174 -msgid "%p" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:175 -msgid "principal name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:179 -msgid "%r" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:180 -msgid "realm name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:183 -msgid "%h" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:184 -msgid "home directory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:189 -msgid "value of krb5ccache_dir" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:194 -msgid "%P" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:195 -msgid "the process ID of the sssd client" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:160 -msgid "" -"Location of the user's credential cache. Currently only file based " -"credential caches are supported. In the template the following sequences are " -"substituted: <placeholder type=\"variablelist\" id=\"0\"/> If the template " -"ends with 'XXXXXX' mkstemp(3) is used to create a unique filename in a safe " -"way." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:209 -msgid "Default: FILE:%d/krb5cc_%U_XXXXXX" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:215 -msgid "krb5_auth_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:218 -msgid "" -"Timeout in seconds after an online authentication or change password request " -"is aborted. If possible the authentication request is continued offline." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:241 -msgid "krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:244 -msgid "" -"The location of the keytab to use when validating credentials obtained from " -"KDCs." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:248 -msgid "Default: /etc/krb5.keytab" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:254 -msgid "krb5_store_password_if_offline (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:257 -msgid "" -"Store the password of the user if the provider is offline and use it to " -"request a TGT when the provider gets online again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:262 -msgid "" -"Please note that this feature currently only available on a Linux platform. " -"Passwords stored in this way are kept in plaintext in the kernel keyring and " -"are potentially accessible by the root user (with difficulty)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:275 -msgid "krb5_renewable_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:278 -msgid "" -"Request a renewable ticket with a total lifetime given by an integer " -"immediately followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:283 sssd-krb5.5.xml:319 -msgid "<emphasis>s</emphasis> seconds" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:286 sssd-krb5.5.xml:322 -msgid "<emphasis>m</emphasis> minutes" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:289 sssd-krb5.5.xml:325 -msgid "<emphasis>h</emphasis> hours" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:292 sssd-krb5.5.xml:328 -msgid "<emphasis>d</emphasis> days." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:295 sssd-krb5.5.xml:331 -msgid "If there is no delimiter <emphasis>s</emphasis> is assumed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:299 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"renewable lifetime to one and a half hours please use '90m' instead of " -"'1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:305 -msgid "Default: not set, i.e. the TGT is not renewable" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:311 -msgid "krb5_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:314 -msgid "" -"Request ticket with a with a lifetime given by an integer immediately " -"followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:335 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"lifetime to one and a half hours please use '90m' instead of '1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:340 -msgid "" -"Default: not set, i.e. the default ticket lifetime configured on the KDC." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:347 -msgid "krb5_renew_interval (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:350 -msgid "" -"The time in seconds between two checks if the TGT should be renewed. TGTs " -"are renewed if about half of their lifetime is exceeded." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:355 -msgid "If this option is not set or 0 the automatic renewal is disabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:365 -msgid "krb5_use_fast (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:368 -msgid "" -"Enables flexible authentication secure tunneling (FAST) for Kerberos pre-" -"authentication. The following options are supported:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:373 -msgid "" -"<emphasis>never</emphasis> use FAST, this is equivalent to not set this " -"option at all." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:377 -msgid "" -"<emphasis>try</emphasis> to use FAST, if the server does not support fast " -"continue without." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:381 -msgid "" -"<emphasis>demand</emphasis> to use FAST, fail if the server does not require " -"fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:385 -msgid "Default: not set, i.e. FAST is not used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:388 -msgid "Please note that a keytab is required to use fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:391 -msgid "" -"Please note also that sssd supports fast only with MIT Kerberos version 1.8 " -"and above. If sssd used with an older version using this option is a " -"configuration error." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:400 -msgid "krb5_fast_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:403 -msgid "Specifies the server principal to use for FAST." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:412 -msgid "" -"Specifies if the host and user principal should be canonicalized. This " -"feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:65 -msgid "" -"If the auth-module krb5 is used in a SSSD domain, the following options must " -"be used. See the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page, section <quote>DOMAIN " -"SECTIONS</quote> for details on the configuration of a SSSD domain. " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:434 -msgid "" -"The following example assumes that SSSD is correctly configured and FOO is " -"one of the domains in the <replaceable>[sssd]</replaceable> section. This " -"example shows only configuration of Kerberos authentication, it does not " -"include any identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-krb5.5.xml:442 -#, no-wrap -msgid "" -" [domain/FOO]\n" -" auth_provider = krb5\n" -" krb5_server = 192.168.1.1\n" -" krb5_realm = EXAMPLE.COM\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:453 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupadd.8.xml:10 sss_groupadd.8.xml:15 -msgid "sss_groupadd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupadd.8.xml:16 -msgid "create a new group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupadd.8.xml:21 -msgid "" -"<command>sss_groupadd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:32 -msgid "" -"<command>sss_groupadd</command> creates a new group. These groups are " -"compatible with POSIX groups, with the additional feature that they can " -"contain other groups as members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupadd.8.xml:43 -msgid "" -"<option>-g</option>,<option>--gid</option> <replaceable>GID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupadd.8.xml:48 -msgid "" -"Set the GID of the group to the value of <replaceable>GID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_userdel.8.xml:10 sss_userdel.8.xml:15 -msgid "sss_userdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_userdel.8.xml:16 -msgid "delete a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_userdel.8.xml:21 -msgid "" -"<command>sss_userdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:32 -msgid "" -"<command>sss_userdel</command> deletes a user identified by login name " -"<replaceable>LOGIN</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:44 -msgid "<option>-r</option>,<option>--remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:48 -msgid "" -"Files in the user's home directory will be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:56 -msgid "<option>-R</option>,<option>--no-remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:60 -msgid "" -"Files in the user's home directory will NOT be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:68 -msgid "<option>-f</option>,<option>--force</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:72 -msgid "" -"This option forces <command>sss_userdel</command> to remove the user's home " -"directory and mail spool, even if they are not owned by the specified user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:80 -msgid "<option>-k</option>,<option>--kick</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:84 -msgid "Before actually deleting the user, terminate all his processes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:95 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupdel.8.xml:10 sss_groupdel.8.xml:15 -msgid "sss_groupdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupdel.8.xml:16 -msgid "delete a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupdel.8.xml:21 -msgid "" -"<command>sss_groupdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:32 -msgid "" -"<command>sss_groupdel</command> deletes a group identified by its name " -"<replaceable>GROUP</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupshow.8.xml:10 sss_groupshow.8.xml:15 -msgid "sss_groupshow" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupshow.8.xml:16 -msgid "print properties of a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupshow.8.xml:21 -msgid "" -"<command>sss_groupshow</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:32 -msgid "" -"<command>sss_groupshow</command> displays information about a group " -"identified by its name <replaceable>GROUP</replaceable>. The information " -"includes the group ID number, members of the group and the parent group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupshow.8.xml:43 -msgid "<option>-R</option>,<option>--recursive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupshow.8.xml:47 -msgid "" -"Also print indirect group members in a tree-like hierarchy. Note that this " -"also affects printing parent groups - without <option>R</option>, only the " -"direct parent will be printed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_usermod.8.xml:10 sss_usermod.8.xml:15 -msgid "sss_usermod" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_usermod.8.xml:16 -msgid "modify a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_usermod.8.xml:21 -msgid "" -"<command>sss_usermod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:32 -msgid "" -"<command>sss_usermod</command> modifies the account specified by " -"<replaceable>LOGIN</replaceable> to reflect the changes that are specified " -"on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:60 -msgid "The home directory of the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:71 -msgid "The user's login shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:82 -msgid "" -"Append this user to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:96 -msgid "" -"Remove this user from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:103 -msgid "<option>-l</option>,<option>--lock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:107 -msgid "Lock the user account. The user won't be able to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:114 -msgid "<option>-u</option>,<option>--unlock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:118 -msgid "Unlock the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:129 -msgid "The SELinux user for the user's login." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:140 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_cache.8.xml:10 sss_cache.8.xml:15 -msgid "sss_cache" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_cache.8.xml:16 -msgid "perform cache cleanup" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_cache.8.xml:21 -msgid "" -"<command>sss_cache</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_cache.8.xml:31 -msgid "" -"<command>sss_cache</command> invalidates records in SSSD cache. Invalidated " -"records are forced to be reloaded from server as soon as related SSSD " -"backend is online." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:42 -msgid "" -"<option>-u</option>,<option>--user</option> <replaceable>login</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:47 -msgid "Invalidate specific user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:53 -msgid "<option>-U</option>,<option>--users</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:57 -msgid "" -"Invalidate all user records. This option overrides invalidation of specific " -"user if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:64 -msgid "" -"<option>-g</option>,<option>--group</option> <replaceable>group</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:69 -msgid "Invalidate specific group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:75 -msgid "<option>-G</option>,<option>--groups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:79 -msgid "" -"Invalidate all group records. This option overrides invalidation of specific " -"group if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:86 -msgid "" -"<option>-n</option>,<option>--netgroup</option> <replaceable>netgroup</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:91 -msgid "Invalidate specific netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:97 -msgid "<option>-N</option>,<option>--netgroups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:101 -msgid "" -"Invalidate all netgroup records. This option overrides invalidation of " -"specific netgroup if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:108 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>domain</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:113 -msgid "Restrict invalidation process only to a particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_debuglevel.8.xml:10 sss_debuglevel.8.xml:15 -msgid "sss_debuglevel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_debuglevel.8.xml:16 -msgid "change debug level while SSSD is running" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_debuglevel.8.xml:21 -msgid "" -"<command>sss_debuglevel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>NEW_DEBUG_LEVEL</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_debuglevel.8.xml:32 -msgid "" -"<command>sss_debuglevel</command> changes debug level of SSSD monitor and " -"providers to <replaceable>NEW_DEBUG_LEVEL</replaceable> while SSSD is " -"running." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_debuglevel.8.xml:59 -msgid "<replaceable>NEW_DEBUG_LEVEL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_authorizedkeys.1.xml:10 sss_ssh_authorizedkeys.1.xml:15 -msgid "sss_ssh_authorizedkeys" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_ssh_authorizedkeys.1.xml:11 sss_ssh_knownhostsproxy.1.xml:11 -msgid "1" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_authorizedkeys.1.xml:16 -msgid "get OpenSSH authorized keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_authorizedkeys.1.xml:21 -msgid "" -"<command>sss_ssh_authorizedkeys</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>USER</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:32 -msgid "" -"<command>sss_ssh_authorizedkeys</command> acquires SSH public keys for user " -"<replaceable>USER</replaceable> and outputs them in OpenSSH authorized_keys " -"format (see the <quote>AUTHORIZED_KEYS FILE FORMAT</quote> section of " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> for more information)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:41 -msgid "" -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_authorizedkeys</" -"command> for public key user authentication if it is compiled with support " -"for either <quote>AuthorizedKeysCommand</quote> or <quote>PubkeyAgent</" -"quote> <citerefentry> <refentrytitle>sshd_config</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:58 -#, no-wrap -msgid "AuthorizedKeysCommand /usr/bin/sss_ssh_authorizedkeys\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:51 -msgid "" -"If <quote>AuthorizedKeysCommand</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by putting the following directive " -"in <citerefentry> <refentrytitle>sshd_config</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry>: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:69 -#, no-wrap -msgid "PubKeyAgent /usr/bin/sss_ssh_authorizedkeys %u\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:62 -msgid "" -"If <quote>PubkeyAgent</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by using the following directive " -"for <citerefentry> <refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> configuration: <placeholder type=\"programlisting" -"\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_authorizedkeys.1.xml:87 -msgid "" -"Search for user public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:98 -msgid "" -"<citerefentry> <refentrytitle>sshd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sshd_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_knownhostsproxy</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_knownhostsproxy.1.xml:10 sss_ssh_knownhostsproxy.1.xml:15 -msgid "sss_ssh_knownhostsproxy" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_knownhostsproxy.1.xml:16 -msgid "get OpenSSH host keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_knownhostsproxy.1.xml:21 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>HOST</replaceable></arg> <arg " -"choice='opt'><replaceable>PROXY_COMMAND</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:33 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> acquires SSH host public keys for " -"host <replaceable>HOST</replaceable>, stores them in a custom OpenSSH " -"known_hosts file (see the <quote>SSH_KNOWN_HOSTS FILE FORMAT</quote> section " -"of <citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> for more information) <filename>/var/lib/sss/" -"pubconf/known_hosts</filename> and estabilishes connection to the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:43 -msgid "" -"If <replaceable>PROXY_COMMAND</replaceable> is specified, it is used to " -"create the connection to the host instead of opening a socket." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_knownhostsproxy.1.xml:55 -#, no-wrap -msgid "" -"ProxyCommand /usr/bin/sss_ssh_knownhostsproxy -p %p %h\n" -"GlobalKnownHostsFile2 /var/lib/sss/pubconf/known_hosts\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:48 -msgid "" -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_knownhostsproxy</" -"command> for host key authentication by using the following directives for " -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> configuration: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_ssh_knownhostsproxy.1.xml:69 -msgid "" -"<option>-p</option>,<option>--port</option> <replaceable>PORT</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:74 -msgid "" -"Use port <replaceable>PORT</replaceable> to connect to the host. By " -"default, port 22 is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:86 -msgid "" -"Search for host public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:97 -msgid "" -"<citerefentry> <refentrytitle>ssh</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>ssh_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_authorizedkeys</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/service_discovery.xml:2 -msgid "SERVICE DISCOVERY" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/service_discovery.xml:4 -msgid "" -"The service discovery feature allows back ends to automatically find the " -"appropriate servers to connect to using a special DNS query." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:9 -msgid "Configuration" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:11 -msgid "" -"If no servers are specified, the back end automatically uses service " -"discovery to try to find a server. Optionally, the user may choose to use " -"both fixed server addresses and service discovery by inserting a special " -"keyword, <quote>_srv_</quote>, in the list of servers. The order of " -"preference is maintained. This feature is useful if, for example, the user " -"prefers to use service discovery whenever possible, and fall back to a " -"specific server when no servers can be discovered using DNS." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:23 -msgid "The domain name" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:25 -msgid "" -"Please refer to the <quote>dns_discovery_domain</quote> parameter in the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for more details." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:35 -msgid "The protocol" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:37 -msgid "" -"The queries usually specify _tcp as the protocol. Exceptions are documented " -"in respective option description." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:42 -msgid "See Also" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:44 -msgid "" -"For more information on the service discovery mechanism, refer to RFC 2782." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/upstream.xml:1 -msgid "<placeholder type=\"refentryinfo\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/failover.xml:2 -msgid "FAILOVER" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/failover.xml:4 -msgid "" -"The failover feature allows back ends to automatically switch to a different " -"server if the primary server fails." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:8 -msgid "Failover Syntax" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:10 -msgid "" -"The list of servers is given as a comma-separated list; any number of spaces " -"is allowed around the comma. The servers are listed in order of preference. " -"The list can contain any number of servers." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:17 -msgid "The Failover Mechanism" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:19 -msgid "" -"The failover mechanism distinguishes between a machine and a service. The " -"back end first tries to resolve the hostname of a given machine; if this " -"resolution attempt fails, the machine is considered offline. No further " -"attempts are made to connect to this machine for any other service. If the " -"resolution attempt succeeds, the back end tries to connect to a service on " -"this machine. If the service connection attempt fails, then only this " -"particular service is considered offline and the back end automatically " -"switches over to the next service. The machine is still considered online " -"and might still be tried for another service." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:32 -msgid "" -"Further connection attempts are made to machines or services marked as " -"offline after a specified period of time; this is currently hard coded to 30 " -"seconds." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:37 -msgid "" -"If there are no more machines to try, the back end as a whole switches to " -"offline mode, and then attempts to reconnect every 30 seconds." -msgstr "" - -#. type: Content of: <varlistentry><term> -#: include/param_help.xml:3 -msgid "<option>-h</option>,<option>--help</option>" -msgstr "" - -#. type: Content of: <varlistentry><listitem><para> -#: include/param_help.xml:7 -msgid "Display help message and exit." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:3 -msgid "" -"Bit mask that indicates which debug levels will be visible. 0x0010 is the " -"default value as well as the lowest allowed value, 0xFFF0 is the most " -"verbose mode. This setting overrides the settings from config file." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:8 -msgid "Currently supported debug levels:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:11 -msgid "" -"<emphasis>0x0010</emphasis>: Fatal failures. Anything that would prevent " -"SSSD from starting up or causes it to cease running." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:15 -msgid "" -"<emphasis>0x0020</emphasis>: Critical failures. An error that doesn't kill " -"the SSSD, but one that indicates that at least one major feature is not " -"going to work properly." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:20 -msgid "" -"<emphasis>0x0040</emphasis>: Serious failures. An error announcing that a " -"particular request or operation has failed." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:24 -msgid "" -"<emphasis>0x0080</emphasis>: Minor failures. These are the errors that would " -"percolate down to cause the operation failure of 2." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:28 -msgid "<emphasis>0x0100</emphasis>: Configuration settings." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:31 -msgid "<emphasis>0x0200</emphasis>: Function data." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:34 -msgid "<emphasis>0x0400</emphasis>: Trace messages for operation functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:37 -msgid "" -"<emphasis>0x1000</emphasis>: Trace messages for internal control functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:40 -msgid "" -"<emphasis>0x2000</emphasis>: Contents of function-internal variables that " -"may be interesting." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:43 -msgid "<emphasis>0x4000</emphasis>: Extremely low-level tracing information." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:46 -msgid "" -"To log required debug levels, simply add their numbers together as shown in " -"following examples:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:49 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, critical failures, " -"serious failures and function data use 0x0270." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:53 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, configuration settings, " -"function data, trace messages for internal control functions use 0x1310." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:57 -msgid "" -"<emphasis>Note</emphasis>: This is new format of debug levels introduced in " -"1.7.0. Older format (numbers from 0-10) is compatible but deprecated." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/experimental.xml:1 -msgid "" -"<emphasis> This is an experimental feature, please use http://fedorahosted." -"org/sssd to report any issues. </emphasis>" -msgstr "" diff --git a/src/man/po/mr.po b/src/man/po/mr.po deleted file mode 100644 index ea67b7036..000000000 --- a/src/man/po/mr.po +++ /dev/null @@ -1,6748 +0,0 @@ -# SOME DESCRIPTIVE TITLE -# Copyright (C) YEAR Red Hat -# This file is distributed under the same license as the sssd-docs package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@redhat.com\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2012-02-14 13:10+0000\n" -"Last-Translator: sgallagh <sgallagh@redhat.com>\n" -"Language-Team: Marathi (http://www.transifex.net/projects/p/fedora/language/" -"mr/)\n" -"Language: mr\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=2; plural=(n != 1)\n" - -#. type: Content of: <reference><title> -#: sss_groupmod.8.xml:5 sssd.conf.5.xml:5 sssd-ldap.5.xml:5 pam_sss.8.xml:5 -#: sssd_krb5_locator_plugin.8.xml:5 sssd-simple.5.xml:5 sssd-ipa.5.xml:5 -#: sssd.8.xml:5 sss_obfuscate.8.xml:5 sss_useradd.8.xml:5 sssd-krb5.5.xml:5 -#: sss_groupadd.8.xml:5 sss_userdel.8.xml:5 sss_groupdel.8.xml:5 -#: sss_groupshow.8.xml:5 sss_usermod.8.xml:5 sss_cache.8.xml:5 -#: sss_debuglevel.8.xml:5 sss_ssh_authorizedkeys.1.xml:5 -#: sss_ssh_knownhostsproxy.1.xml:5 -msgid "SSSD Manual pages" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupmod.8.xml:10 sss_groupmod.8.xml:15 -msgid "sss_groupmod" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_groupmod.8.xml:11 pam_sss.8.xml:14 sssd_krb5_locator_plugin.8.xml:11 -#: sssd.8.xml:11 sss_obfuscate.8.xml:11 sss_useradd.8.xml:11 -#: sss_groupadd.8.xml:11 sss_userdel.8.xml:11 sss_groupdel.8.xml:11 -#: sss_groupshow.8.xml:11 sss_usermod.8.xml:11 sss_cache.8.xml:11 -#: sss_debuglevel.8.xml:11 -msgid "8" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupmod.8.xml:16 -msgid "modify a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupmod.8.xml:21 -msgid "" -"<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:30 sssd-ldap.5.xml:21 pam_sss.8.xml:44 -#: sssd_krb5_locator_plugin.8.xml:20 sssd-simple.5.xml:22 sssd-ipa.5.xml:21 -#: sssd.8.xml:29 sss_obfuscate.8.xml:30 sss_useradd.8.xml:30 -#: sssd-krb5.5.xml:21 sss_groupadd.8.xml:30 sss_userdel.8.xml:30 -#: sss_groupdel.8.xml:30 sss_groupshow.8.xml:30 sss_usermod.8.xml:30 -#: sss_cache.8.xml:29 sss_debuglevel.8.xml:30 sss_ssh_authorizedkeys.1.xml:30 -#: sss_ssh_knownhostsproxy.1.xml:31 -msgid "DESCRIPTION" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:32 -msgid "" -"<command>sss_groupmod</command> modifies the group to reflect the changes " -"that are specified on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:39 pam_sss.8.xml:51 sssd.8.xml:42 sss_obfuscate.8.xml:58 -#: sss_useradd.8.xml:39 sss_groupadd.8.xml:39 sss_userdel.8.xml:39 -#: sss_groupdel.8.xml:39 sss_groupshow.8.xml:39 sss_usermod.8.xml:39 -#: sss_cache.8.xml:38 sss_debuglevel.8.xml:38 sss_ssh_authorizedkeys.1.xml:78 -#: sss_ssh_knownhostsproxy.1.xml:65 -msgid "OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:43 sss_usermod.8.xml:77 -msgid "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:48 -msgid "" -"Append this group to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:57 sss_usermod.8.xml:91 -msgid "" -"<option>-r</option>,<option>--remove-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:62 -msgid "" -"Remove this group from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:72 sssd.conf.5.xml:1331 sssd-ldap.5.xml:2096 -#: pam_sss.8.xml:139 sssd_krb5_locator_plugin.8.xml:75 sssd-simple.5.xml:143 -#: sssd-ipa.5.xml:562 sssd.8.xml:191 sss_obfuscate.8.xml:103 -#: sss_useradd.8.xml:167 sssd-krb5.5.xml:451 sss_groupadd.8.xml:58 -#: sss_userdel.8.xml:93 sss_groupdel.8.xml:46 sss_groupshow.8.xml:58 -#: sss_usermod.8.xml:138 sss_ssh_authorizedkeys.1.xml:96 -#: sss_ssh_knownhostsproxy.1.xml:95 -msgid "SEE ALSO" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:74 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.conf.5.xml:10 sssd.conf.5.xml:16 -msgid "sssd.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sssd.conf.5.xml:11 sssd-ldap.5.xml:11 sssd-simple.5.xml:11 -#: sssd-ipa.5.xml:11 sssd-krb5.5.xml:11 -msgid "5" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><refmiscinfo> -#: sssd.conf.5.xml:12 sssd-ldap.5.xml:12 sssd-simple.5.xml:12 -#: sssd-ipa.5.xml:12 sssd-krb5.5.xml:12 -msgid "File Formats and Conventions" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.conf.5.xml:17 sssd-ldap.5.xml:17 sssd_krb5_locator_plugin.8.xml:16 -#: sssd-ipa.5.xml:17 sssd-krb5.5.xml:17 -msgid "the configuration file for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:21 -msgid "FILE FORMAT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:29 -#, no-wrap -msgid "" -" <replaceable>[section]</replaceable>\n" -" <replaceable>key</replaceable> = <replaceable>value</replaceable>\n" -" <replaceable>key2</replaceable> = <replaceable>value2,value3</replaceable>\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:24 -msgid "" -"The file has an ini-style syntax and consists of sections and parameters. A " -"section begins with the name of the section in square brackets and continues " -"until the next section begins. An example of section with single and multi-" -"valued parameters: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:36 -msgid "" -"The data types used are string (no quotes needed), integer and bool (with " -"values of <quote>TRUE/FALSE</quote>)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:41 -msgid "" -"A line comment starts with a hash sign (<quote>#</quote>) or a semicolon " -"(<quote>;</quote>)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:46 -msgid "" -"All sections can have an optional <replaceable>description</replaceable> " -"parameter. Its function is only as a label for the section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:52 -msgid "" -"<filename>sssd.conf</filename> must be a regular file, owned by root and " -"only root may read from or write to the file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:58 -msgid "SPECIAL SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:61 -msgid "The [sssd] section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><title> -#: sssd.conf.5.xml:70 sssd.conf.5.xml:1177 -msgid "Section parameters" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:72 -msgid "config_file_version (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:75 -msgid "" -"Indicates what is the syntax of the config file. SSSD 0.6.0 and later use " -"version 2." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:81 -msgid "services" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:84 -msgid "" -"Comma separated list of services that are started when sssd itself starts." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:88 -msgid "" -"Supported services: nss, pam <phrase condition=\"with_sudo\">, sudo</phrase>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:94 sssd.conf.5.xml:257 -msgid "reconnection_retries (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:97 sssd.conf.5.xml:260 -msgid "" -"Number of times services should attempt to reconnect in the event of a Data " -"Provider crash or restart before they give up" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:102 sssd.conf.5.xml:265 -msgid "Default: 3" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:107 -msgid "domains" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:110 -msgid "" -"A domain is a database containing user information. SSSD can use more " -"domains at the same time, but at least one must be configured or SSSD won't " -"start. This parameter described the list of domains in the order you want " -"them to be queried." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:120 -msgid "re_expression (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:123 -msgid "" -"Regular expression that describes how to parse the string containing user " -"name and domain into these components." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:127 -msgid "" -"Default: <quote>(?P<name>[^@]+)@?(?P<domain>[^@]*$)</quote> " -"which translates to \"the name is everything up to the <quote>@</quote> " -"sign, the domain everything after that\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:132 -msgid "" -"PLEASE NOTE: the support for non-unique named subpatterns is not available " -"on all platforms (e.g. RHEL5 and SLES10). Only platforms with libpcre " -"version 7 or higher can support non-unique named subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:139 -msgid "" -"PLEASE NOTE ALSO: older version of libpcre only support the Python syntax (?" -"P<name>) to label subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:146 -msgid "full_name_format (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:149 -msgid "" -"A <citerefentry> <refentrytitle>printf</refentrytitle> <manvolnum>3</" -"manvolnum> </citerefentry>-compatible format that describes how to translate " -"a (name, domain) tuple into a fully qualified name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:157 -msgid "Default: <quote>%1$s@%2$s</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:162 -msgid "try_inotify (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:165 -msgid "" -"SSSD monitors the state of resolv.conf to identify when it needs to update " -"its internal DNS resolver. By default, we will attempt to use inotify for " -"this, and will fall back to polling resolv.conf every five seconds if " -"inotify cannot be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:173 -msgid "" -"There are some limited situations where it is preferred that we should skip " -"even trying to use inotify. In these rare cases, this option should be set " -"to 'false'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:179 -msgid "" -"Default: true on platforms where inotify is supported. False on other " -"platforms." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:183 -msgid "" -"Note: this option will have no effect on platforms where inotify is " -"unavailable. On these platforms, polling will always be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:190 -msgid "krb5_rcache_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:193 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:197 -msgid "" -"This option accepts a special value __LIBKRB5_DEFAULTS__ that will instruct " -"SSSD to let libkrb5 decide the appropriate location for the replay cache." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:203 -msgid "" -"Default: Distribution-specific and specified at build-time. " -"(__LIBKRB5_DEFAULTS__ if not configured)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:63 -msgid "" -"Individual pieces of SSSD functionality are provided by special SSSD " -"services that are started and stopped together with SSSD. The services are " -"managed by a special service frequently called <quote>monitor</quote>. The " -"<quote>[sssd]</quote> section is used to configure the monitor as well as " -"some other important options like the identity domains. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:216 -msgid "SERVICES SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:218 -msgid "" -"Settings that can be used to configure different services are described in " -"this section. They should reside in the [<replaceable>$NAME</replaceable>] " -"section, for example, for NSS service, the section would be <quote>[nss]</" -"quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:225 -msgid "General service configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:227 -msgid "These options can be used to configure any service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:231 -msgid "debug_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:235 -msgid "debug_timestamps (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:238 -msgid "Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:241 sssd.conf.5.xml:376 sssd-ldap.5.xml:1328 -#: sssd-ldap.5.xml:1446 sssd-ipa.5.xml:206 sssd-ipa.5.xml:241 -msgid "Default: true" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:246 -msgid "debug_microseconds (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:249 -msgid "Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:252 sssd.conf.5.xml:641 sssd-ldap.5.xml:602 -#: sssd-ldap.5.xml:1260 sssd-ldap.5.xml:1397 sssd-ldap.5.xml:1795 -#: sssd-ipa.5.xml:123 sssd-ipa.5.xml:301 sssd-krb5.5.xml:235 -#: sssd-krb5.5.xml:269 sssd-krb5.5.xml:418 -msgid "Default: false" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:270 -msgid "command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:273 -msgid "" -"By default, the executable representing this service is called <command>sssd_" -"${service_name}</command>. This directive allows to change the executable " -"name for the service. In the vast majority of configurations, the default " -"values should suffice." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:281 -msgid "Default: <command>sssd_${service_name}</command>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:289 -msgid "NSS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:291 -msgid "" -"These options can be used to configure the Name Service Switch (NSS) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:296 -msgid "enum_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:299 -msgid "" -"How many seconds should nss_sss cache enumerations (requests for info about " -"all users)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:303 -msgid "Default: 120" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:308 -msgid "entry_cache_nowait_percentage (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:311 -msgid "" -"The entry cache can be set to automatically update entries in the background " -"if they are requested beyond a percentage of the entry_cache_timeout value " -"for the domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:317 -msgid "" -"For example, if the domain's entry_cache_timeout is set to 30s and " -"entry_cache_nowait_percentage is set to 50 (percent), entries that come in " -"after 15 seconds past the last cache update will be returned immediately, " -"but the SSSD will go and update the cache on its own, so that future " -"requests will not need to block waiting for a cache update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:327 -msgid "" -"Valid values for this option are 0-99 and represent a percentage of the " -"entry_cache_timeout for each domain. For performance reasons, this " -"percentage will never reduce the nowait timeout to less than 10 seconds. (0 " -"disables this feature)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:335 -msgid "Default: 50" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:340 -msgid "entry_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:343 -msgid "" -"Specifies for how many seconds nss_sss should cache negative cache hits " -"(that is, queries for invalid database entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:349 sssd.conf.5.xml:669 sssd-krb5.5.xml:223 -msgid "Default: 15" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:354 -msgid "filter_users, filter_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:357 -msgid "" -"Exclude certain users from being fetched from the sss NSS database. This is " -"particularly useful for system accounts. This option can also be set per-" -"domain or include fully-qualified names to filter only users from the " -"particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:364 -msgid "Default: root" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:369 -msgid "filter_users_in_groups (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:372 -msgid "" -"If you want filtered user still be group members set this option to false." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:381 -msgid "override_homedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:390 sssd-krb5.5.xml:166 -msgid "%u" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:391 sssd-krb5.5.xml:167 -msgid "login name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:394 sssd-krb5.5.xml:170 -msgid "%U" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:395 -msgid "UID number" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:398 sssd-krb5.5.xml:188 -msgid "%d" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:399 -msgid "domain name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:402 -msgid "%f" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:403 -msgid "fully qualified user name (user@domain)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:406 sssd-krb5.5.xml:200 -msgid "%%" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:407 sssd-krb5.5.xml:201 -msgid "a literal '%'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:384 -msgid "" -"Override the user's home directory. You can either provide an absolute value " -"or a template. In the template, the following sequences are substituted: " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:413 -msgid "This option can also be set per-domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:418 -msgid "allowed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:421 -msgid "" -"Restrict user shell to one of the listed values. The order of evaluation is:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:424 -msgid "1. If the shell is present in <quote>/etc/shells</quote>, it is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:428 -msgid "" -"2. If the shell is in the allowed_shells list but not in <quote>/etc/shells</" -"quote>, use the value of the shell_fallback parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:433 -msgid "" -"3. If the shell is not in the allowed_shells list and not in <quote>/etc/" -"shells</quote>, a nologin shell is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:438 -msgid "An empty string for shell is passed as-is to libc." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:441 -msgid "" -"The <quote>/etc/shells</quote> is only read on SSSD start up, which means " -"that a restart of the SSSD is required in case a new shell is installed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:445 -msgid "Default: Not set. The user shell is automatically used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:450 -msgid "vetoed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:453 -msgid "Replace any instance of these shells with the shell_fallback" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:458 -msgid "shell_fallback (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:461 -msgid "" -"The default shell to use if an allowed shell is not installed on the machine." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:465 -msgid "Default: /bin/sh" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:472 -msgid "PAM configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:474 -msgid "" -"These options can be used to configure the Pluggable Authentication Module " -"(PAM) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:479 -msgid "offline_credentials_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:482 -msgid "" -"If the authentication provider is offline, how long should we allow cached " -"logins (in days since the last successful online login)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:487 sssd.conf.5.xml:500 -msgid "Default: 0 (No limit)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:493 -msgid "offline_failed_login_attempts (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:496 -msgid "" -"If the authentication provider is offline, how many failed login attempts " -"are allowed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:506 -msgid "offline_failed_login_delay (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:509 -msgid "" -"The time in minutes which has to pass after offline_failed_login_attempts " -"has been reached before a new login attempt is possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:514 -msgid "" -"If set to 0 the user cannot authenticate offline if " -"offline_failed_login_attempts has been reached. Only a successful online " -"authentication can enable offline authentication again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:520 sssd.conf.5.xml:573 sssd.conf.5.xml:1093 -msgid "Default: 5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:526 -msgid "pam_verbosity (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:529 -msgid "" -"Controls what kind of messages are shown to the user during authentication. " -"The higher the number to more messages are displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:534 -msgid "Currently sssd supports the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:537 -msgid "<emphasis>0</emphasis>: do not show any message" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:540 -msgid "<emphasis>1</emphasis>: show only important messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:544 -msgid "<emphasis>2</emphasis>: show informational messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:547 -msgid "<emphasis>3</emphasis>: show all messages and debug information" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:551 sssd.8.xml:63 -msgid "Default: 1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:556 -msgid "pam_id_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:559 -msgid "" -"For any PAM request while SSSD is online, the SSSD will attempt to " -"immediately update the cached identity information for the user in order to " -"ensure that authentication takes place with the latest information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:565 -msgid "" -"A complete PAM conversation may perform multiple PAM requests, such as " -"account management and session opening. This option controls (on a per-" -"client-application basis) how long (in seconds) we can cache the identity " -"information to avoid excessive round-trips to the identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:579 -msgid "pam_pwd_expiration_warning (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:582 -msgid "Display a warning N days before the password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:585 -msgid "" -"Please note that the backend server has to provide information about the " -"expiration time of the password. If this information is missing, sssd " -"cannot display a warning." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:591 -msgid "Default: 7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:599 -msgid "SUDO configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:601 -msgid "These options can be used to configure the sudo service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:608 -msgid "sudo_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:611 -msgid "" -"For any sudo request that comes while SSSD is online, the SSSD will attempt " -"to update the cached rules in order to ensure that sudo has the latest " -"ruleset." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:617 -msgid "" -"The user may, however, run a couple of sudo commands successively, which " -"would trigger multiple LDAP requests. In order to speed up this use-case, " -"the sudo service maintains an in-memory cache that would be used for " -"performing fast replies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:624 -msgid "" -"This option controls how long (in seconds) can the sudo service cache rules " -"for a user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:628 -msgid "Default: 180" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:633 -msgid "sudo_timed (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:636 -msgid "" -"Whether or not to evaluate the sudoNotBefore and sudoNotAfter attributes " -"that implement time-dependent sudoers entries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:649 -msgid "AUTOFS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:651 -msgid "These options can be used to configure the autofs service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:659 -msgid "autofs_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:662 -msgid "" -"Specifies for how many seconds should the autofs responder negative cache " -"hits (that is, queries for invalid map entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:679 -msgid "DOMAIN SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:686 -msgid "min_id,max_id (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:689 -msgid "" -"UID and GID limits for the domain. If a domain contains an entry that is " -"outside these limits, it is ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:694 -msgid "" -"For users, this affects the primary GID limit. The user will not be returned " -"to NSS if either the UID or the primary GID is outside the range. For non-" -"primary group memberships, those that are in range will be reported as " -"expected." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:701 -msgid "Default: 1 for min_id, 0 (no limit) for max_id" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:707 -msgid "timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:710 -msgid "" -"Timeout in seconds between heartbeats for this domain. This is used to " -"ensure that the backend process is alive and capable of answering requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:715 sssd-ldap.5.xml:1131 -msgid "Default: 10" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:721 -msgid "enumerate (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:724 -msgid "" -"Determines if a domain can be enumerated. This parameter can have one of the " -"following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:728 -msgid "TRUE = Users and groups are enumerated" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:731 -msgid "FALSE = No enumerations for this domain" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:734 sssd.conf.5.xml:839 sssd.conf.5.xml:893 -msgid "Default: FALSE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:737 -msgid "" -"Note: Enabling enumeration has a moderate performance impact on SSSD while " -"enumeration is running. It may take up to several minutes after SSSD startup " -"to fully complete enumerations. During this time, individual requests for " -"information will go directly to LDAP, though it may be slow, due to the " -"heavy enumeration processing." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:747 -msgid "" -"While the first enumeration is running, requests for the complete user or " -"group lists may return no results until it completes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:752 -msgid "" -"Further, enabling enumeration may increase the time necessary to detect " -"network disconnection, as longer timeouts are required to ensure that " -"enumeration lookups are completed successfully. For more information, refer " -"to the man pages for the specific id_provider in use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:763 -msgid "entry_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:766 -msgid "" -"How many seconds should nss_sss consider entries valid before asking the " -"backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:770 -msgid "Default: 5400" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:776 -msgid "entry_cache_user_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:779 -msgid "" -"How many seconds should nss_sss consider user entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:783 sssd.conf.5.xml:796 sssd.conf.5.xml:809 -#: sssd.conf.5.xml:822 -msgid "Default: entry_cache_timeout" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:789 -msgid "entry_cache_group_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:792 -msgid "" -"How many seconds should nss_sss consider group entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:802 -msgid "entry_cache_netgroup_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:805 -msgid "" -"How many seconds should nss_sss consider netgroup entries valid before " -"asking the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:815 -msgid "entry_cache_service_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:818 -msgid "" -"How many seconds should nss_sss consider service entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:828 -msgid "cache_credentials (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:831 -msgid "Determines if user credentials are also cached in the local LDB cache" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:835 -msgid "User credentials are stored in a SHA512 hash, not in plaintext" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:844 -msgid "account_cache_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:847 -msgid "" -"Number of days entries are left in cache after last successful login before " -"being removed during a cleanup of the cache. 0 means keep forever. The " -"value of this parameter must be greater than or equal to " -"offline_credentials_expiration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:854 -msgid "Default: 0 (unlimited)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:860 -msgid "id_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:863 -msgid "The Data Provider identity backend to use for this domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:867 -msgid "Supported backends:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:870 -msgid "proxy: Support a legacy NSS provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:873 -msgid "local: SSSD internal local provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:876 -msgid "ldap: LDAP provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:882 -msgid "use_fully_qualified_names (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:885 -msgid "" -"If set to TRUE, all requests to this domain must use fully qualified names. " -"For example, if used in LOCAL domain that contains a \"test\" user, " -"<command>getent passwd test</command> wouldn't find the user while " -"<command>getent passwd test@LOCAL</command> would." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:898 -msgid "auth_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:901 -msgid "" -"The authentication provider used for the domain. Supported auth providers " -"are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:905 -msgid "" -"<quote>ldap</quote> for native LDAP authentication. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:912 -msgid "" -"<quote>krb5</quote> for Kerberos authentication. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:919 -msgid "" -"<quote>proxy</quote> for relaying authentication to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:922 -msgid "<quote>none</quote> disables authentication explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:925 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"authentication requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:931 -msgid "access_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:934 -msgid "" -"The access control provider used for the domain. There are two built-in " -"access providers (in addition to any included in installed backends) " -"Internal special providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:940 -msgid "<quote>permit</quote> always allow access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:943 -msgid "<quote>deny</quote> always deny access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:946 -msgid "" -"<quote>simple</quote> access control based on access or deny lists. See " -"<citerefentry> <refentrytitle>sssd-simple</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry> for more information on configuring the simple " -"access module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:953 -msgid "Default: <quote>permit</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:958 -msgid "chpass_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:961 -msgid "" -"The provider which should handle change password operations for the domain. " -"Supported change password providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:966 -msgid "" -"<quote>ipa</quote> to change a password stored in an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:974 -msgid "" -"<quote>ldap</quote> to change a password stored in a LDAP server. See " -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:982 -msgid "" -"<quote>krb5</quote> to change the Kerberos password. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:990 -msgid "" -"<quote>proxy</quote> for relaying password changes to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:994 -msgid "<quote>none</quote> disallows password changes explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:997 -msgid "" -"Default: <quote>auth_provider</quote> is used if it is set and can handle " -"change password requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1004 -msgid "sudo_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1010 -msgid "The SUDO provider used for the domain. Supported SUDO providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1014 -msgid "" -"<quote>ldap</quote> for rules stored in LDAP. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1021 -msgid "<quote>none</quote> disables SUDO explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1024 -msgid "Default: The value of <quote>id_provider</quote> is used if it is set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1030 -msgid "session_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1033 -msgid "" -"The provider which should handle loading of session settings. Supported " -"session providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1038 -msgid "" -"<quote>ipa</quote> to load session settings from an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1046 -msgid "<quote>none</quote> disallows fetching session settings explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1049 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"session loading requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1056 -msgid "lookup_family_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1059 -msgid "" -"Provides the ability to select preferred address family to use when " -"performing DNS lookups." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1063 -msgid "Supported values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1066 -msgid "ipv4_first: Try looking up IPv4 address, if that fails, try IPv6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1069 -msgid "ipv4_only: Only attempt to resolve hostnames to IPv4 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1072 -msgid "ipv6_first: Try looking up IPv6 address, if that fails, try IPv4" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1075 -msgid "ipv6_only: Only attempt to resolve hostnames to IPv6 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1078 -msgid "Default: ipv4_first" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1084 -msgid "dns_resolver_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1087 -msgid "" -"Defines the amount of time (in seconds) to wait for a reply from the DNS " -"resolver before assuming that it is unreachable. If this timeout is reached, " -"the domain will continue to operate in offline mode." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1099 -msgid "dns_discovery_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1102 -msgid "" -"If service discovery is used in the back end, specifies the domain part of " -"the service discovery DNS query." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1106 -msgid "Default: Use the domain part of machine's hostname" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1112 -msgid "override_gid (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1115 -msgid "Override the primary GID value with the one specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1121 -msgid "case_sensitive (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1124 -msgid "" -"Treat user and group names as case sensitive. At the moment, this option is " -"not supported in the local provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1129 -msgid "Default: True" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:681 -msgid "" -"These configuration options can be present in a domain configuration " -"section, that is, in a section called <quote>[domain/<replaceable>NAME</" -"replaceable>]</quote> <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1141 -msgid "proxy_pam_target (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1144 -msgid "The proxy target PAM proxies to." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1147 -msgid "" -"Default: not set by default, you have to take an existing pam configuration " -"or create a new one and add the service name here." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1155 -msgid "proxy_lib_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1158 -msgid "" -"The name of the NSS library to use in proxy domains. The NSS functions " -"searched for in the library are in the form of _nss_$(libName)_$(function), " -"for example _nss_files_getpwent." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1137 -msgid "" -"Options valid for proxy domains. <placeholder type=\"variablelist\" id=" -"\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:1170 -msgid "The local domain section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:1172 -msgid "" -"This section contains settings for domain that stores users and groups in " -"SSSD native database, that is, a domain that uses " -"<replaceable>id_provider=local</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1179 -msgid "default_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1182 -msgid "The default shell for users created with SSSD userspace tools." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1186 -msgid "Default: <filename>/bin/bash</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1191 -msgid "base_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1194 -msgid "" -"The tools append the login name to <replaceable>base_directory</replaceable> " -"and use that as the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1199 -msgid "Default: <filename>/home</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1204 -msgid "create_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1207 -msgid "" -"Indicate if a home directory should be created by default for new users. " -"Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1211 sssd.conf.5.xml:1223 -msgid "Default: TRUE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1216 -msgid "remove_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1219 -msgid "" -"Indicate if a home directory should be removed by default for deleted " -"users. Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1228 -msgid "homedir_umask (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1231 -msgid "" -"Used by <citerefentry> <refentrytitle>sss_useradd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry> to specify the default permissions " -"on a newly created home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1239 -msgid "Default: 077" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1244 -msgid "skel_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1247 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<citerefentry> <refentrytitle>sss_useradd</refentrytitle> <manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1257 -msgid "Default: <filename>/etc/skel</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1262 -msgid "mail_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1265 -msgid "" -"The mail spool directory. This is needed to manipulate the mailbox when its " -"corresponding user account is modified or deleted. If not specified, a " -"default value is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1272 -msgid "Default: <filename>/var/mail</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1277 -msgid "userdel_cmd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1280 -msgid "" -"The command that is run after a user is removed. The command us passed the " -"username of the user being removed as the first and only parameter. The " -"return code of the command is not taken into account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1286 -msgid "Default: None, no command is run" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:1296 sssd-ldap.5.xml:2064 sssd-simple.5.xml:126 -#: sssd-ipa.5.xml:544 sssd-krb5.5.xml:432 -msgid "EXAMPLE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:1302 -#, no-wrap -msgid "" -"[sssd]\n" -"domains = LDAP\n" -"services = nss, pam\n" -"config_file_version = 2\n" -"\n" -"[nss]\n" -"filter_groups = root\n" -"filter_users = root\n" -"\n" -"[pam]\n" -"\n" -"[domain/LDAP]\n" -"id_provider = ldap\n" -"ldap_uri = ldap://ldap.example.com\n" -"ldap_search_base = dc=example,dc=com\n" -"\n" -"auth_provider = krb5\n" -"krb5_server = kerberos.example.com\n" -"krb5_realm = EXAMPLE.COM\n" -"cache_credentials = true\n" -"\n" -"min_id = 10000\n" -"max_id = 20000\n" -"enumerate = False\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1298 -msgid "" -"The following example shows a typical SSSD config. It does not describe " -"configuration of the domains themselves - refer to documentation on " -"configuring domains for more details. <placeholder type=\"programlisting\" " -"id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1333 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>pam_sss</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ldap.5.xml:10 sssd-ldap.5.xml:16 -msgid "sssd-ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:23 -msgid "" -"This manual page describes the configuration of LDAP domains for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. Refer to the <quote>FILE FORMAT</quote> section of the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for detailed syntax information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:35 -msgid "You can configure SSSD to use more than one LDAP domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:38 -msgid "" -"LDAP back end supports id, auth, access and chpass providers. If you want to " -"authenticate against an LDAP server either TLS/SSL or LDAPS is required. " -"<command>sssd</command> <emphasis>does not</emphasis> support authentication " -"over an unencrypted channel. If the LDAP server is used only as an identity " -"provider, an encrypted channel is not needed. Please refer to " -"<quote>ldap_access_filter</quote> config option for more information about " -"using LDAP as an access provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:49 sssd-simple.5.xml:69 sssd-ipa.5.xml:64 -#: sssd-krb5.5.xml:63 -msgid "CONFIGURATION OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:60 -msgid "ldap_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:63 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference. Refer to the <quote>FAILOVER</" -"quote> section for more information on failover and server redundancy. If " -"not specified, service discovery is enabled. For more information, refer to " -"the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:70 -msgid "The format of the URI must match the format defined in RFC 2732:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:73 -msgid "ldap[s]://<host>[:port]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:76 -msgid "" -"For explicit IPv6 addresses, <host> must be enclosed in brackets []" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:79 -msgid "example: ldap://[fc00::126:25]:389" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:85 -msgid "ldap_chpass_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:88 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference to change the password of a user. " -"Refer to the <quote>FAILOVER</quote> section for more information on " -"failover and server redundancy." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:95 -msgid "To enable service discovery ldap_chpass_dns_service_name must be set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:99 -msgid "Default: empty, i.e. ldap_uri is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:105 -msgid "ldap_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:108 -msgid "The default base DN to use for performing LDAP user operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:112 -msgid "" -"Starting with SSSD 1.7.0, SSSD supports multiple search bases using the " -"syntax:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:116 -msgid "search_base[?scope?[filter][?search_base?scope?[filter]]*]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:119 -msgid "The scope can be one of \"base\", \"onelevel\" or \"subtree\"." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:122 -msgid "" -"The filter must be a valid LDAP search filter as specified by http://www." -"ietf.org/rfc/rfc2254.txt" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:126 -msgid "Examples:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:129 -msgid "" -"ldap_search_base = dc=example,dc=com (which is equivalent to) " -"ldap_search_base = dc=example,dc=com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:134 -msgid "" -"ldap_search_base = cn=host_specific,dc=example,dc=com?subtree?" -"(host=thishost)?dc=example.com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:137 -msgid "" -"Note: It is unsupported to have multiple search bases which reference " -"identically-named objects (for example, groups with the same name in two " -"different search bases). This will lead to unpredictable behavior on client " -"machines." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:144 -msgid "" -"Default: If not set, the value of the defaultNamingContext or namingContexts " -"attribute from the RootDSE of the LDAP server is used. If " -"defaultNamingContext does not exists or has an empty value namingContexts is " -"used. The namingContexts attribute must have a single value with the DN of " -"the search base of the LDAP server to make this work. Multiple values are " -"are not supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:158 -msgid "ldap_schema (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:161 -msgid "" -"Specifies the Schema Type in use on the target LDAP server. Depending on " -"the selected schema, the default attribute names retrieved from the servers " -"may vary. The way that some attributes are handled may also differ. Three " -"schema types are currently supported: rfc2307 rfc2307bis IPA The main " -"difference between these schema types is how group memberships are recorded " -"in the server. With rfc2307, group members are listed by name in the " -"<emphasis>memberUid</emphasis> attribute. With rfc2307bis and IPA, group " -"members are listed by DN and stored in the <emphasis>member</emphasis> " -"attribute." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:180 -msgid "Default: rfc2307" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:186 -msgid "ldap_default_bind_dn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:189 -msgid "The default bind DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:196 -msgid "ldap_default_authtok_type (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:199 -msgid "The type of the authentication token of the default bind DN." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:203 -msgid "The two mechanisms currently supported are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:206 -msgid "password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:209 -msgid "obfuscated_password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:212 -msgid "Default: password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:218 -msgid "ldap_default_authtok (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:221 -msgid "" -"The authentication token of the default bind DN. Only clear text passwords " -"are currently supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:228 -msgid "ldap_user_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:231 -msgid "The object class of a user entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:234 -msgid "Default: posixAccount" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:240 -msgid "ldap_user_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:243 -msgid "The LDAP attribute that corresponds to the user's login name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:247 -msgid "Default: uid" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:253 -msgid "ldap_user_uid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:256 -msgid "The LDAP attribute that corresponds to the user's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:260 -msgid "Default: uidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:266 -msgid "ldap_user_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:269 -msgid "The LDAP attribute that corresponds to the user's primary group id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:273 sssd-ldap.5.xml:740 -msgid "Default: gidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:279 -msgid "ldap_user_gecos (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:282 -msgid "The LDAP attribute that corresponds to the user's gecos field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:286 -msgid "Default: gecos" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:292 -msgid "ldap_user_home_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:295 -msgid "The LDAP attribute that contains the name of the user's home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:299 -msgid "Default: homeDirectory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:305 -msgid "ldap_user_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:308 -msgid "The LDAP attribute that contains the path to the user's default shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:312 -msgid "Default: loginShell" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:318 -msgid "ldap_user_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:321 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP user object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:325 sssd-ldap.5.xml:766 sssd-ldap.5.xml:878 -msgid "Default: nsUniqueId" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:331 -msgid "ldap_user_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:334 sssd-ldap.5.xml:775 sssd-ldap.5.xml:887 -msgid "" -"The LDAP attribute that contains timestamp of the last modification of the " -"parent object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:338 sssd-ldap.5.xml:779 sssd-ldap.5.xml:894 -msgid "Default: modifyTimestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:344 -msgid "ldap_user_shadow_last_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:347 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (date of " -"the last password change)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:357 -msgid "Default: shadowLastChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:363 -msgid "ldap_user_shadow_min (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:366 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (minimum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:375 -msgid "Default: shadowMin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:381 -msgid "ldap_user_shadow_max (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:384 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (maximum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:393 -msgid "Default: shadowMax" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:399 -msgid "ldap_user_shadow_warning (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:402 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password warning period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:412 -msgid "Default: shadowWarning" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:418 -msgid "ldap_user_shadow_inactive (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:421 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password inactivity period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:431 -msgid "Default: shadowInactive" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:437 -msgid "ldap_user_shadow_expire (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:440 -msgid "" -"When using ldap_pwd_policy=shadow or ldap_account_expire_policy=shadow, this " -"parameter contains the name of an LDAP attribute corresponding to its " -"<citerefentry> <refentrytitle>shadow</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> counterpart (account expiration date)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:450 -msgid "Default: shadowExpire" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:456 -msgid "ldap_user_krb_last_pwd_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:459 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time of last password change in " -"kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:465 -msgid "Default: krbLastPwdChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:471 -msgid "ldap_user_krb_password_expiration (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:474 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time when current password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:480 -msgid "Default: krbPasswordExpiration" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:486 -msgid "ldap_user_ad_account_expires (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:489 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the expiration time of the account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:494 -msgid "Default: accountExpires" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:500 -msgid "ldap_user_ad_user_account_control (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:503 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the user account control bit field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:508 -msgid "Default: userAccountControl" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:514 -msgid "ldap_ns_account_lock (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:517 -msgid "" -"When using ldap_account_expire_policy=rhds or equivalent, this parameter " -"determines if access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:522 -msgid "Default: nsAccountLock" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:528 -msgid "ldap_user_nds_login_disabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:531 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines if " -"access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:535 sssd-ldap.5.xml:549 -msgid "Default: loginDisabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:541 -msgid "ldap_user_nds_login_expiration_time (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:544 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines until " -"which date access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:555 -msgid "ldap_user_nds_login_allowed_time_map (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:558 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines the " -"hours of a day in a week when access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:563 -msgid "Default: loginAllowedTimeMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:569 -msgid "ldap_user_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:572 -msgid "" -"The LDAP attribute that contains the user's Kerberos User Principal Name " -"(UPN)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:576 -msgid "Default: krbPrincipalName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:582 -msgid "ldap_user_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:585 -msgid "The LDAP attribute that contains the user's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:592 -msgid "ldap_force_upper_case_realm (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:595 -msgid "" -"Some directory servers, for example Active Directory, might deliver the " -"realm part of the UPN in lower case, which might cause the authentication to " -"fail. Set this option to a non-zero value if you want to use an upper-case " -"realm." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:608 -msgid "ldap_enumeration_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:611 -msgid "" -"Specifies how many seconds SSSD has to wait before refreshing its cache of " -"enumerated records." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:616 sssd-ldap.5.xml:1808 -msgid "Default: 300" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:622 -msgid "ldap_purge_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:625 -msgid "" -"Determine how often to check the cache for inactive entries (such as groups " -"with no members and users who have never logged in) and remove them to save " -"space." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:631 -msgid "Setting this option to zero will disable the cache cleanup operation." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:635 -msgid "Default: 10800 (12 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:641 -msgid "ldap_user_fullname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:644 -msgid "The LDAP attribute that corresponds to the user's full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:648 sssd-ldap.5.xml:727 sssd-ldap.5.xml:828 -#: sssd-ldap.5.xml:919 sssd-ldap.5.xml:1663 sssd-ldap.5.xml:1881 -#: sssd-ipa.5.xml:422 -msgid "Default: cn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:654 -msgid "ldap_user_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:657 -msgid "The LDAP attribute that lists the user's group memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:661 sssd-ipa.5.xml:326 -msgid "Default: memberOf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:667 -msgid "ldap_user_authorized_service (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:670 -msgid "" -"If access_provider=ldap and ldap_access_order=authorized_service, SSSD will " -"use the presence of the authorizedService attribute in the user's LDAP entry " -"to determine access privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:677 -msgid "" -"An explicit deny (!svc) is resolved first. Second, SSSD searches for " -"explicit allow (svc) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:682 -msgid "Default: authorizedService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:688 -msgid "ldap_user_authorized_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:691 -msgid "" -"If access_provider=ldap and ldap_access_order=host, SSSD will use the " -"presence of the host attribute in the user's LDAP entry to determine access " -"privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:697 -msgid "" -"An explicit deny (!host) is resolved first. Second, SSSD searches for " -"explicit allow (host) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:702 -msgid "Default: host" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:708 -msgid "ldap_group_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:711 -msgid "The object class of a group entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:714 -msgid "Default: posixGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:720 -msgid "ldap_group_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:723 -msgid "The LDAP attribute that corresponds to the group name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:733 -msgid "ldap_group_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:736 -msgid "The LDAP attribute that corresponds to the group's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:746 -msgid "ldap_group_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:749 -msgid "The LDAP attribute that contains the names of the group's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:753 -msgid "Default: memberuid (rfc2307) / member (rfc2307bis)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:759 -msgid "ldap_group_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:762 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP group object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:772 -msgid "ldap_group_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:785 -msgid "ldap_group_nesting_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:788 -msgid "" -"If ldap_schema is set to a schema format that supports nested groups (e.g. " -"RFC2307bis), then this option controls how many levels of nesting SSSD will " -"follow. This option has no effect on the RFC2307 schema." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:795 -msgid "Default: 2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:801 -msgid "ldap_netgroup_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:804 -msgid "The object class of a netgroup entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:807 -msgid "In IPA provider, ipa_netgroup_object_class should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:811 -msgid "Default: nisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:817 -msgid "ldap_netgroup_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:820 -msgid "The LDAP attribute that corresponds to the netgroup name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:824 -msgid "In IPA provider, ipa_netgroup_name should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:834 -msgid "ldap_netgroup_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:837 -msgid "The LDAP attribute that contains the names of the netgroup's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:841 -msgid "In IPA provider, ipa_netgroup_member should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:845 -msgid "Default: memberNisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:851 -msgid "ldap_netgroup_triple (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:854 -msgid "" -"The LDAP attribute that contains the (host, user, domain) netgroup triples." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:858 sssd-ldap.5.xml:891 -msgid "This option is not available in IPA provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:861 -msgid "Default: nisNetgroupTriple" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:867 -msgid "ldap_netgroup_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:870 -msgid "" -"The LDAP attribute that contains the UUID/GUID of an LDAP netgroup object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:874 -msgid "In IPA provider, ipa_netgroup_uuid should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:884 -msgid "ldap_netgroup_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:900 -msgid "ldap_service_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:903 -msgid "The object class of a service entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:906 -msgid "Default: ipService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:912 -msgid "ldap_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:915 -msgid "" -"The LDAP attribute that contains the name of service attributes and their " -"aliases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:925 -msgid "ldap_service_port (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:928 -msgid "The LDAP attribute that contains the port managed by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:932 -msgid "Default: ipServicePort" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:938 -msgid "ldap_service_proto (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:941 -msgid "" -"The LDAP attribute that contains the protocols understood by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:945 -msgid "Default: ipServiceProtocol" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:951 -msgid "ldap_service_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:954 -msgid "An optional base DN to restrict service searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:958 sssd-ldap.5.xml:1918 sssd-ldap.5.xml:1937 -#: sssd-ldap.5.xml:1956 sssd-ldap.5.xml:2019 sssd-ldap.5.xml:2041 -#: sssd-ipa.5.xml:163 sssd-ipa.5.xml:187 -msgid "" -"See <quote>ldap_search_base</quote> for information about configuring " -"multiple search bases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:963 sssd-ldap.5.xml:1923 sssd-ldap.5.xml:1942 -#: sssd-ldap.5.xml:1961 sssd-ldap.5.xml:2024 sssd-ldap.5.xml:2046 -#: sssd-ipa.5.xml:173 sssd-ipa.5.xml:192 -msgid "Default: the value of <emphasis>ldap_search_base</emphasis>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:970 -msgid "ldap_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:973 -msgid "" -"Specifies the timeout (in seconds) that ldap searches are allowed to run " -"before they are cancelled and cached results are returned (and offline mode " -"is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:979 -msgid "" -"Note: this option is subject to change in future versions of the SSSD. It " -"will likely be replaced at some point by a series of timeouts for specific " -"lookup types." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:985 sssd-ldap.5.xml:1027 sssd-ldap.5.xml:1042 -msgid "Default: 6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:991 -msgid "ldap_enumeration_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:994 -msgid "" -"Specifies the timeout (in seconds) that ldap searches for user and group " -"enumerations are allowed to run before they are cancelled and cached results " -"are returned (and offline mode is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1001 -msgid "Default: 60" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1007 -msgid "ldap_network_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1010 -msgid "" -"Specifies the timeout (in seconds) after which the <citerefentry> " -"<refentrytitle>poll</refentrytitle> <manvolnum>2</manvolnum> </citerefentry>/" -"<citerefentry> <refentrytitle>select</refentrytitle> <manvolnum>2</" -"manvolnum> </citerefentry> following a <citerefentry> " -"<refentrytitle>connect</refentrytitle> <manvolnum>2</manvolnum> </" -"citerefentry> returns in case of no activity." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1033 -msgid "ldap_opt_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1036 -msgid "" -"Specifies a timeout (in seconds) after which calls to synchronous LDAP APIs " -"will abort if no response is received. Also controls the timeout when " -"communicating with the KDC in case of SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1048 -msgid "ldap_connection_expire_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1051 -msgid "" -"Specifies a timeout (in seconds) that a connection to an LDAP server will be " -"maintained. After this time, the connection will be re-established. If used " -"in parallel with SASL/GSSAPI, the sooner of the two values (this value vs. " -"the TGT lifetime) will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1059 -msgid "Default: 900 (15 minutes)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1065 -msgid "ldap_page_size (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1068 -msgid "" -"Specify the number of records to retrieve from LDAP in a single request. " -"Some LDAP servers enforce a maximum limit per-request." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1073 -msgid "Default: 1000" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1079 -msgid "ldap_disable_paging" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1082 -msgid "" -"Disable the LDAP paging control. This option should be used if the LDAP " -"server reports that it supports the LDAP paging control in its RootDSE but " -"it is not enabled or does not behave properly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1088 -msgid "" -"Example: OpenLDAP servers with the paging control module installed on the " -"server but not enabled will report it in the RootDSE but be unable to use it." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1094 -msgid "" -"Example: 389 DS has a bug where it can only support a one paging control at " -"a time on a single connection. On busy clients, this can result in some " -"requests being denied." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1103 -msgid "ldap_deref_threshold (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1106 -msgid "" -"Specify the number of group members that must be missing from the internal " -"cache in order to trigger a dereference lookup. If less members are missing, " -"they are looked up individually." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1112 -msgid "" -"You can turn off dereference lookups completely by setting the value to 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1116 -msgid "" -"A dereference lookup is a means of fetching all group members in a single " -"LDAP call. Different LDAP servers may implement different dereference " -"methods. The currently supported servers are 389/RHDS, OpenLDAP and Active " -"Directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1124 -msgid "" -"<emphasis>Note:</emphasis> If any of the search bases specifies a search " -"filter, then the dereference lookup performance enhancement will be disabled " -"regardless of this setting." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1137 -msgid "ldap_tls_reqcert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1140 -msgid "" -"Specifies what checks to perform on server certificates in a TLS session, if " -"any. It can be specified as one of the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1146 -msgid "" -"<emphasis>never</emphasis> = The client will not request or check any server " -"certificate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1150 -msgid "" -"<emphasis>allow</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, it will be ignored and the session proceeds normally." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1157 -msgid "" -"<emphasis>try</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, the session is immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1163 -msgid "" -"<emphasis>demand</emphasis> = The server certificate is requested. If no " -"certificate is provided, or a bad certificate is provided, the session is " -"immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1169 -msgid "<emphasis>hard</emphasis> = Same as <quote>demand</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1173 -msgid "Default: hard" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1179 -msgid "ldap_tls_cacert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1182 -msgid "" -"Specifies the file that contains certificates for all of the Certificate " -"Authorities that <command>sssd</command> will recognize." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1187 sssd-ldap.5.xml:1205 sssd-ldap.5.xml:1246 -msgid "" -"Default: use OpenLDAP defaults, typically in <filename>/etc/openldap/ldap." -"conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1194 -msgid "ldap_tls_cacertdir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1197 -msgid "" -"Specifies the path of a directory that contains Certificate Authority " -"certificates in separate individual files. Typically the file names need to " -"be the hash of the certificate followed by '.0'. If available, " -"<command>cacertdir_rehash</command> can be used to create the correct names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1212 -msgid "ldap_tls_cert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1215 -msgid "Specifies the file that contains the certificate for the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1219 sssd-ldap.5.xml:1231 sssd-ldap.5.xml:1979 -#: sssd-ldap.5.xml:2006 sssd-krb5.5.xml:359 -msgid "Default: not set" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1225 -msgid "ldap_tls_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1228 -msgid "Specifies the file that contains the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1237 -msgid "ldap_tls_cipher_suite (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1240 -msgid "" -"Specifies acceptable cipher suites. Typically this is a colon sperated " -"list. See <citerefentry><refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> for format." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1253 -msgid "ldap_id_use_start_tls (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1256 -msgid "" -"Specifies that the id_provider connection must also use <systemitem class=" -"\"protocol\">tls</systemitem> to protect the channel." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1266 -msgid "ldap_sasl_mech (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1269 -msgid "" -"Specify the SASL mechanism to use. Currently only GSSAPI is tested and " -"supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1273 sssd-ldap.5.xml:1428 -msgid "Default: none" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1279 -msgid "ldap_sasl_authid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1282 -msgid "" -"Specify the SASL authorization id to use. When GSSAPI is used, this " -"represents the Kerberos principal used for authentication to the directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1287 -msgid "Default: host/machine.fqdn@REALM" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1293 -msgid "ldap_sasl_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1296 -msgid "" -"If set to true, the LDAP library would perform a reverse lookup to " -"canonicalize the host name during a SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1301 -msgid "Default: false;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1307 -msgid "ldap_krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1310 -msgid "Specify the keytab to use when using SASL/GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1313 -msgid "Default: System keytab, normally <filename>/etc/krb5.keytab</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1319 -msgid "ldap_krb5_init_creds (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1322 -msgid "" -"Specifies that the id_provider should init Kerberos credentials (TGT). This " -"action is performed only if SASL is used and the mechanism selected is " -"GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1334 -msgid "ldap_krb5_ticket_lifetime (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1337 -msgid "Specifies the lifetime in seconds of the TGT if GSSAPI is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1341 -msgid "Default: 86400 (24 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1347 sssd-krb5.5.xml:74 -msgid "krb5_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1350 sssd-krb5.5.xml:77 -msgid "" -"Specifies the comma-separated list of IP addresses or hostnames of the " -"Kerberos servers to which SSSD should connect in the order of preference. " -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. An optional port number (preceded by a " -"colon) may be appended to the addresses or hostnames. If empty, service " -"discovery is enabled - for more information, refer to the <quote>SERVICE " -"DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1362 sssd-krb5.5.xml:89 -msgid "" -"When using service discovery for KDC or kpasswd servers, SSSD first searches " -"for DNS entries that specify _udp as the protocol and falls back to _tcp if " -"none are found." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1367 sssd-krb5.5.xml:94 -msgid "" -"This option was named <quote>krb5_kdcip</quote> in earlier releases of SSSD. " -"While the legacy name is recognized for the time being, users are advised to " -"migrate their config files to use <quote>krb5_server</quote> instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1376 sssd-ipa.5.xml:216 sssd-krb5.5.xml:103 -msgid "krb5_realm (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1379 -msgid "Specify the Kerberos REALM (for SASL/GSSAPI auth)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1382 -msgid "Default: System defaults, see <filename>/etc/krb5.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1388 sssd-ipa.5.xml:231 sssd-krb5.5.xml:409 -msgid "krb5_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1391 -msgid "" -"Specifies if the host principal should be canonicalized when connecting to " -"LDAP server. This feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1403 -msgid "ldap_pwd_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1406 -msgid "" -"Select the policy to evaluate the password expiration on the client side. " -"The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1411 -msgid "" -"<emphasis>none</emphasis> - No evaluation on the client side. This option " -"cannot disable server-side password policies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1416 -msgid "" -"<emphasis>shadow</emphasis> - Use <citerefentry><refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum></citerefentry> style attributes to " -"evaluate if the password has expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1422 -msgid "" -"<emphasis>mit_kerberos</emphasis> - Use the attributes used by MIT Kerberos " -"to determine if the password has expired. Use chpass_provider=krb5 to update " -"these attributes when the password is changed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1434 -msgid "ldap_referrals (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1437 -msgid "Specifies whether automatic referral chasing should be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1441 -msgid "" -"Please note that sssd only supports referral chasing when it is compiled " -"with OpenLDAP version 2.4.13 or higher." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1452 -msgid "ldap_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1455 -msgid "Specifies the service name to use when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1459 -msgid "Default: ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1465 -msgid "ldap_chpass_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1468 -msgid "" -"Specifies the service name to use to find an LDAP server which allows " -"password changes when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1473 -msgid "Default: not set, i.e. service discovery is disabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1479 -msgid "ldap_access_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1482 -msgid "" -"If using access_provider = ldap, this option is mandatory. It specifies an " -"LDAP search filter criteria that must be met for the user to be granted " -"access on this host. If access_provider = ldap and this option is not set, " -"it will result in all users being denied access. Use access_provider = allow " -"to change this default behavior." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1492 sssd-ldap.5.xml:1982 -msgid "Example:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1495 -#, no-wrap -msgid "" -"access_provider = ldap\n" -"ldap_access_filter = memberOf=cn=allowedusers,ou=Groups,dc=example,dc=com\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1499 -msgid "" -"This example means that access to this host is restricted to members of the " -"\"allowedusers\" group in ldap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1504 -msgid "" -"Offline caching for this feature is limited to determining whether the " -"user's last online login was granted access permission. If they were granted " -"access during their last login, they will continue to be granted access " -"while offline and vice-versa." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1512 sssd-ldap.5.xml:1562 -msgid "Default: Empty" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1518 -msgid "ldap_account_expire_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1521 -msgid "" -"With this option a client side evaluation of access control attributes can " -"be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1525 -msgid "" -"Please note that it is always recommended to use server side access control, " -"i.e. the LDAP server should deny the bind request with a suitable error code " -"even if the password is correct." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1532 -msgid "The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1535 -msgid "" -"<emphasis>shadow</emphasis>: use the value of ldap_user_shadow_expire to " -"determine if the account is expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1540 -msgid "" -"<emphasis>ad</emphasis>: use the value of the 32bit field " -"ldap_user_ad_user_account_control and allow access if the second bit is not " -"set. If the attribute is missing access is granted. Also the expiration time " -"of the account is checked." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1547 -msgid "" -"<emphasis>rhds</emphasis>, <emphasis>ipa</emphasis>, <emphasis>389ds</" -"emphasis>: use the value of ldap_ns_account_lock to check if access is " -"allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1553 -msgid "" -"<emphasis>nds</emphasis>: the values of " -"ldap_user_nds_login_allowed_time_map, ldap_user_nds_login_disabled and " -"ldap_user_nds_login_expiration_time are used to check if access is allowed. " -"If both attributes are missing access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1568 -msgid "ldap_access_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1571 -msgid "Comma separated list of access control options. Allowed values are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1575 -msgid "<emphasis>filter</emphasis>: use ldap_access_filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1578 -msgid "<emphasis>expire</emphasis>: use ldap_account_expire_policy" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1582 -msgid "" -"<emphasis>authorized_service</emphasis>: use the authorizedService attribute " -"to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1587 -msgid "<emphasis>host</emphasis>: use the host attribute to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1591 -msgid "Default: filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1594 -msgid "" -"Please note that it is a configuration error if a value is used more than " -"once." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1601 -msgid "ldap_deref (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1604 -msgid "" -"Specifies how alias dereferencing is done when performing a search. The " -"following options are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1609 -msgid "<emphasis>never</emphasis>: Aliases are never dereferenced." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1613 -msgid "" -"<emphasis>searching</emphasis>: Aliases are dereferenced in subordinates of " -"the base object, but not in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1618 -msgid "" -"<emphasis>finding</emphasis>: Aliases are only dereferenced when locating " -"the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1623 -msgid "" -"<emphasis>always</emphasis>: Aliases are dereferenced both in searching and " -"in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1628 -msgid "" -"Default: Empty (this is handled as <emphasis>never</emphasis> by the LDAP " -"client libraries)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:51 -msgid "" -"All of the common configuration options that apply to SSSD domains also " -"apply to LDAP domains. Refer to the <quote>DOMAIN SECTIONS</quote> section " -"of the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for full details. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1639 -msgid "SUDO OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1644 -msgid "ldap_sudorule_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1647 -msgid "The object class of a sudo rule entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1650 -msgid "Default: sudoRole" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1656 -msgid "ldap_sudorule_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1659 -msgid "The LDAP attribute that corresponds to the sudo rule name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1669 -msgid "ldap_sudorule_command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1672 -msgid "The LDAP attribute that corresponds to the command name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1676 -msgid "Default: sudoCommand" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1682 -msgid "ldap_sudorule_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1685 -msgid "" -"The LDAP attribute that corresponds to the host name (or host IP address, " -"host IP network, or host netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1690 -msgid "Default: sudoHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1696 -msgid "ldap_sudorule_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1699 -msgid "" -"The LDAP attribute that corresponds to the user name (or UID, group name or " -"user's netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1703 -msgid "Default: sudoUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1709 -msgid "ldap_sudorule_option (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1712 -msgid "The LDAP attribute that corresponds to the sudo options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1716 -msgid "Default: sudoOption" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1722 -msgid "ldap_sudorule_runasuser (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1725 -msgid "" -"The LDAP attribute that corresponds to the user name that commands may be " -"run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1729 -msgid "Default: sudoRunAsUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1735 -msgid "ldap_sudorule_runasgroup (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1738 -msgid "" -"The LDAP attribute that corresponds to the group name or group GID that " -"commands may be run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1742 -msgid "Default: sudoRunAsGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1748 -msgid "ldap_sudorule_notbefore (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1751 -msgid "" -"The LDAP attribute that corresponds to the start date/time for when the sudo " -"rule is valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1755 -msgid "Default: sudoNotBefore" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1761 -msgid "ldap_sudorule_notafter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1764 -msgid "" -"The LDAP attribute that corresponds to the expiration date/time, after which " -"the sudo rule will no longer be valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1769 -msgid "Default: sudoNotAfter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1775 -msgid "ldap_sudorule_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1778 -msgid "The LDAP attribute that corresponds to the ordering index of the rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1782 -msgid "Default: sudoOrder" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1788 -msgid "ldap_sudo_refresh_enabled (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1791 -msgid "" -"Enables periodical download of all sudo rules. The cache is purged before " -"each update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1801 -msgid "ldap_sudo_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1804 -msgid "" -"How many seconds SSSD has to wait before refreshing its cache of sudo rules." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1642 -msgid "<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1815 -msgid "" -"This manual page only describes attribute name mapping. For detailed " -"explanation of sudo related attribute semantics, see <citerefentry> " -"<refentrytitle>sudoers.ldap</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1825 -msgid "AUTOFS OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1827 -msgid "" -"Please note that the default values correspond to the default schema which " -"is RFC2307." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1834 -msgid "ldap_autofs_map_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1837 sssd-ldap.5.xml:1863 -msgid "The object class of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1840 sssd-ldap.5.xml:1867 -msgid "Default: automountMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1847 -msgid "ldap_autofs_map_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1850 -msgid "The name of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1853 -msgid "Default: ou" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1860 -msgid "ldap_autofs_entry_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1874 -msgid "ldap_autofs_entry_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1877 sssd-ldap.5.xml:1891 -msgid "" -"The key of an automount entry in LDAP. The entry usually corresponds to a " -"mount point." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1888 -msgid "ldap_autofs_entry_value (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1895 -msgid "Default: automountInformation" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1832 -msgid "" -"<placeholder type=\"variablelist\" id=\"0\"/> <placeholder type=" -"\"variablelist\" id=\"1\"/> <placeholder type=\"variablelist\" id=\"2\"/> " -"<placeholder type=\"variablelist\" id=\"3\"/> <placeholder type=" -"\"variablelist\" id=\"4\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1904 -msgid "ADVANCED OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1911 -msgid "ldap_netgroup_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1914 -msgid "" -"An optional base DN to restrict netgroup searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1930 -msgid "ldap_user_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1933 -msgid "An optional base DN to restrict user searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1949 -msgid "ldap_group_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1952 -msgid "An optional base DN to restrict group searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1968 -msgid "ldap_user_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1971 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict user searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1975 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_user_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1985 -#, no-wrap -msgid "" -" ldap_user_search_filter = (loginShell=/bin/tcsh)\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1988 -msgid "" -"This filter would restrict user searches to users that have their shell set " -"to /bin/tcsh." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1995 -msgid "ldap_group_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1998 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict group searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2002 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_group_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2012 -msgid "ldap_sudo_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2015 -msgid "" -"An optional base DN to restrict sudo rules searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2034 -msgid "ldap_autofs_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2037 -msgid "" -"An optional base DN to restrict automounter searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1906 -msgid "" -"These options are supported by LDAP domains, but they should be used with " -"caution. Please include them in your configuration only if you know what you " -"are doing. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2066 -msgid "" -"The following example assumes that SSSD is correctly configured and LDAP is " -"set to one of the domains in the <replaceable>[domains]</replaceable> " -"section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ldap.5.xml:2072 -#, no-wrap -msgid "" -" [domain/LDAP]\n" -" id_provider = ldap\n" -" auth_provider = ldap\n" -" ldap_uri = ldap://ldap.mydomain.org\n" -" ldap_search_base = dc=mydomain,dc=org\n" -" ldap_tls_reqcert = demand\n" -" cache_credentials = true\n" -" enumerate = true\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2071 sssd-simple.5.xml:134 sssd-ipa.5.xml:552 -#: sssd-krb5.5.xml:441 -msgid "<placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:2085 sssd_krb5_locator_plugin.8.xml:61 -msgid "NOTES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2087 -msgid "" -"The descriptions of some of the configuration options in this manual page " -"are based on the <citerefentry> <refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page from the OpenLDAP 2.4 " -"distribution." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2098 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <refentryinfo> -#: pam_sss.8.xml:8 include/upstream.xml:2 -msgid "" -"<productname>SSSD</productname> <orgname>The SSSD upstream - http://" -"fedorahosted.org/sssd</orgname>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: pam_sss.8.xml:13 pam_sss.8.xml:18 -msgid "pam_sss" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: pam_sss.8.xml:19 -msgid "PAM module for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: pam_sss.8.xml:24 -msgid "" -"<command>pam_sss.so</command> <arg choice='opt'> <replaceable>quiet</" -"replaceable> </arg> <arg choice='opt'> <replaceable>forward_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_first_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_authtok</" -"replaceable> </arg> <arg choice='opt'> <replaceable>retry=N</replaceable> </" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:45 -msgid "" -"<command>pam_sss.so</command> is the PAM interface to the System Security " -"Services daemon (SSSD). Errors and results are logged through <command>syslog" -"(3)</command> with the LOG_AUTHPRIV facility." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:55 -msgid "<option>quiet</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:58 -msgid "Suppress log messages for unknown users." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:63 -msgid "<option>forward_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:66 -msgid "" -"If <option>forward_pass</option> is set the entered password is put on the " -"stack for other PAM modules to use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:73 -msgid "<option>use_first_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:76 -msgid "" -"The argument use_first_pass forces the module to use a previous stacked " -"modules password and will never prompt the user - if no password is " -"available or the password is not appropriate, the user will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:84 -msgid "<option>use_authtok</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:87 -msgid "" -"When password changing enforce the module to set the new password to the one " -"provided by a previously stacked password module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:94 -msgid "<option>retry=N</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:97 -msgid "" -"If specified the user is asked another N times for a password if " -"authentication fails. Default is 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:99 -msgid "" -"Please note that this option might not work as expected if the application " -"calling PAM handles the user dialog on its own. A typical example is " -"<command>sshd</command> with <option>PasswordAuthentication</option>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:110 -msgid "MODULE TYPES PROVIDED" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:111 -msgid "" -"All module types (<option>account</option>, <option>auth</option>, " -"<option>password</option> and <option>session</option>) are provided." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:117 -msgid "FILES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:118 -msgid "" -"If a password reset by root fails, because the corresponding SSSD provider " -"does not support password resets, an individual message can be displayed. " -"This message can e.g. contain instructions about how to reset a password." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:123 -msgid "" -"The message is read from the file <filename>pam_sss_pw_reset_message.LOC</" -"filename> where LOC stands for a locale string returned by <citerefentry> " -"<refentrytitle>setlocale</refentrytitle><manvolnum>3</manvolnum> </" -"citerefentry>. If there is no matching file the content of " -"<filename>pam_sss_pw_reset_message.txt</filename> is displayed. Root must be " -"the owner of the files and only root may have read and write permissions " -"while all other users must have only read permissions." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:133 -msgid "" -"These files are searched in the directory <filename>/etc/sssd/customize/" -"DOMAIN_NAME/</filename>. If no matching file is present a generic message is " -"displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:141 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd_krb5_locator_plugin.8.xml:10 sssd_krb5_locator_plugin.8.xml:15 -msgid "sssd_krb5_locator_plugin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:22 -msgid "" -"The Kerberos locator plugin <command>sssd_krb5_locator_plugin</command> is " -"used by the Kerberos provider of <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry> to tell the Kerberos " -"libraries what Realm and which KDC to use. Typically this is done in " -"<citerefentry> <refentrytitle>krb5.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> which is always read by the Kerberos libraries. " -"To simplify the configuration the Realm and the KDC can be defined in " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> as described in <citerefentry> " -"<refentrytitle>sssd-krb5.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry> puts the Realm and the name or IP address of the KDC into " -"the environment variables SSSD_KRB5_REALM and SSSD_KRB5_KDC respectively. " -"When <command>sssd_krb5_locator_plugin</command> is called by the kerberos " -"libraries it reads and evaluates these variables and returns them to the " -"libraries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:63 -msgid "" -"Not all Kerberos implementations support the use of plugins. If " -"<command>sssd_krb5_locator_plugin</command> is not available on your system " -"you have to edit /etc/krb5.conf to reflect your Kerberos setup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:69 -msgid "" -"If the environment variable SSSD_KRB5_LOCATOR_DEBUG is set to any value " -"debug messages will be sent to stderr." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:77 -msgid "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-simple.5.xml:10 sssd-simple.5.xml:16 -msgid "sssd-simple" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd-simple.5.xml:17 -msgid "the configuration file for SSSD's 'simple' access-control provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:24 -msgid "" -"This manual page describes the configuration of the simple access-control " -"provider for <citerefentry> <refentrytitle>sssd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry>. For a detailed syntax reference, " -"refer to the <quote>FILE FORMAT</quote> section of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:38 -msgid "" -"The simple access provider grants or denies access based on an access or " -"deny list of user or group names. The following rules apply:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:43 -msgid "If all lists are empty, access is granted" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:47 -msgid "" -"If any list is provided, the order of evaluation is allow,deny. This means " -"that any matching deny rule will supersede any matched allow rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:54 -msgid "" -"If either or both \"allow\" lists are provided, all users are denied unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:60 -msgid "" -"If only \"deny\" lists are provided, all users are granted access unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:78 -msgid "simple_allow_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:81 -msgid "Comma separated list of users who are allowed to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:88 -msgid "simple_deny_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:91 -msgid "Comma separated list of users who are explicitly denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:97 -msgid "simple_allow_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:100 -msgid "" -"Comma separated list of groups that are allowed to log in. This applies only " -"to groups within this SSSD domain. Local groups are not evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:108 -msgid "simple_deny_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:111 -msgid "" -"Comma separated list of groups that are explicitly denied access. This " -"applies only to groups within this SSSD domain. Local groups are not " -"evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:70 sssd-ipa.5.xml:65 -msgid "" -"Refer to the section <quote>DOMAIN SECTIONS</quote> of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page for details on the configuration of an SSSD " -"domain. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:120 -msgid "" -"Please note that it is an configuration error if both, simple_allow_users " -"and simple_deny_users, are defined." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:128 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the simple access provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-simple.5.xml:135 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" access_provider = simple\n" -" simple_allow_users = user1, user2\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:145 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ipa.5.xml:10 sssd-ipa.5.xml:16 -msgid "sssd-ipa" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:23 -msgid "" -"This manual page describes the configuration of the IPA provider for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. For a detailed syntax reference, refer to the <quote>FILE " -"FORMAT</quote> section of the <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:36 -msgid "" -"The IPA provider is a back end used to connect to an IPA server. (Refer to " -"the freeipa.org web site for information about IPA servers.) This provider " -"requires that the machine be joined to the IPA domain; configuration is " -"almost entirely self-discovered and obtained directly from the server." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:43 -msgid "" -"The IPA provider accepts the same options used by the <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> identity provider and the <citerefentry> <refentrytitle>sssd-" -"krb5</refentrytitle> <manvolnum>5</manvolnum> </citerefentry> authentication " -"provider with some exceptions described below." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:55 -msgid "" -"However, it is neither necessary nor recommended to set these options. IPA " -"provider can also be used as an access and chpass provider. As an access " -"provider it uses HBAC (host-based access control) rules. Please refer to " -"freeipa.org for more information about HBAC. No configuration of access " -"provider is required on the client side." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:72 -msgid "ipa_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:75 -msgid "" -"Specifies the name of the IPA domain. This is optional. If not provided, " -"the configuration domain name is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:83 -msgid "ipa_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:86 -msgid "" -"The comma-separated list of IP addresses or hostnames of the IPA servers to " -"which SSSD should connect in the order of preference. For more information " -"on failover and server redundancy, see the <quote>FAILOVER</quote> section. " -"This is optional if autodiscovery is enabled. For more information on " -"service discovery, refer to the the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:99 -msgid "ipa_hostname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:102 -msgid "" -"Optional. May be set on machines where the hostname(5) does not reflect the " -"fully qualified name used in the IPA domain to identify this host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:110 -msgid "ipa_dyndns_update (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:113 -msgid "" -"Optional. This option tells SSSD to automatically update the DNS server " -"built into FreeIPA v2 with the IP address of this client." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:118 -msgid "" -"NOTE: On older systems (such as RHEL 5), for this behavior to work reliably, " -"the default Kerberos realm must be set properly in /etc/krb5.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:129 -msgid "ipa_dyndns_iface (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:132 -msgid "" -"Optional. Applicable only when ipa_dyndns_update is true. Choose the " -"interface whose IP address should be used for dynamic DNS updates." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:137 -msgid "Default: Use the IP address of the IPA LDAP connection" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:143 -msgid "ipa_hbac_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:146 -msgid "Optional. Use the given string as search base for HBAC related objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:150 -msgid "Default: Use base DN" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:156 -msgid "ipa_host_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:159 -msgid "Optional. Use the given string as search base for host objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:168 -msgid "" -"If filter is given in any of search bases and " -"<emphasis>ipa_hbac_support_srchost</emphasis> is set to False, the filter " -"will be ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:180 -msgid "ipa_selinux_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:183 -msgid "Optional. Use the given string as search base for SELinux user maps." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:199 sssd-krb5.5.xml:229 -msgid "krb5_validate (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:202 sssd-krb5.5.xml:232 -msgid "" -"Verify with the help of krb5_keytab that the TGT obtained has not been " -"spoofed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:209 -msgid "" -"Note that this default differs from the traditional Kerberos provider back " -"end." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:219 -msgid "" -"The name of the Kerberos realm. This is optional and defaults to the value " -"of <quote>ipa_domain</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:223 -msgid "" -"The name of the Kerberos realm has a special meaning in IPA - it is " -"converted into the base DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:234 -msgid "" -"Specifies if the host and user principal should be canonicalized when " -"connecting to IPA LDAP and also for AS requests. This feature is available " -"with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:247 -msgid "ipa_hbac_refresh (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:250 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server. " -"This will reduce the latency and load on the IPA server if there are many " -"access-control requests made in a short period." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:257 -msgid "Default: 5 (seconds)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:262 -msgid "ipa_hbac_treat_deny_as (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:265 -msgid "" -"This option specifies how to treat the deprecated DENY-type HBAC rules. As " -"of FreeIPA v2.1, DENY rules are no longer supported on the server. All users " -"of FreeIPA will need to migrate their rules to use only the ALLOW rules. The " -"client will support two modes of operation during this transition period:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:274 -msgid "" -"<emphasis>DENY_ALL</emphasis>: If any HBAC DENY rules are detected, all " -"users will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:279 -msgid "" -"<emphasis>IGNORE</emphasis>: SSSD will ignore any DENY rules. Be very " -"careful with this option, as it may result in opening unintended access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:284 -msgid "Default: DENY_ALL" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:289 -msgid "ipa_hbac_support_srchost (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:292 -msgid "" -"If this is set to false, then srchost as given to SSSD by PAM will be " -"ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:296 -msgid "" -"Note that if set to <emphasis>False</emphasis>, this option casuses filters " -"given in <emphasis>ipa_host_search_base</emphasis> to be ignored;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:307 -msgid "ipa_automount_location (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:310 -msgid "The automounter location this IPA client will be using" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:313 -msgid "Default: The location named \"default\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:319 -msgid "ipa_netgroup_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:322 -msgid "The LDAP attribute that lists netgroup's memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:331 -msgid "ipa_netgroup_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:334 -msgid "" -"The LDAP attribute that lists system users and groups that are direct " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:339 sssd-ipa.5.xml:434 -msgid "Default: memberUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:344 -msgid "ipa_netgroup_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:347 -msgid "" -"The LDAP attribute that lists hosts and host groups that are direct members " -"of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:351 sssd-ipa.5.xml:446 -msgid "Default: memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:356 -msgid "ipa_netgroup_member_ext_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:359 -msgid "" -"The LDAP attribute that lists FQDNs of hosts and host groups that are " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:363 -msgid "Default: externalHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:368 -msgid "ipa_netgroup_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:371 -msgid "The LDAP attribute that contains NIS domain name of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:375 -msgid "Default: nisDomainName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:381 -msgid "ipa_host_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:384 sssd-ipa.5.xml:407 -msgid "The object class of a host entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:387 sssd-ipa.5.xml:410 -msgid "Default: ipaHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:392 -msgid "ipa_host_fqdn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:395 -msgid "The LDAP attribute that contains FQDN of the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:398 -msgid "Default: fqdn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:404 -msgid "ipa_selinux_usermap_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:415 -msgid "ipa_selinux_usermap_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:418 -msgid "The LDAP attribute that contains the name of SELinux usermap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:427 -msgid "ipa_selinux_usermap_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:430 -msgid "" -"The LDAP attribute that contains all users / groups this rule match against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:439 -msgid "ipa_selinux_usermap_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:442 -msgid "" -"The LDAP attribute that contains all hosts / hostgroups this rule match " -"against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:451 -msgid "ipa_selinux_usermap_see_also (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:454 -msgid "" -"The LDAP attribute that contains DN of HBAC rule which can be used for " -"matching instead of memberUser and memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:459 -msgid "Default: seeAlso" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:464 -msgid "ipa_selinux_usermap_selinux_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:467 -msgid "The LDAP attribute that contains SELinux user string itself." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:471 -msgid "Default: ipaSELinuxUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:476 -msgid "ipa_selinux_usermap_enabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:479 -msgid "" -"The LDAP attribute that contains whether or not is user map enabled for " -"usage." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:483 -msgid "Default: ipaEnabledFlag" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:488 -msgid "ipa_selinux_usermap_user_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:491 -msgid "The LDAP attribute that contains user category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:495 -msgid "Default: userCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:500 -msgid "ipa_selinux_usermap_host_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:503 -msgid "The LDAP attribute that contains host category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:507 -msgid "Default: hostCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:512 -msgid "ipa_selinux_usermap_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:515 -msgid "The LDAP attribute that contains unique ID of the user map." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:519 -msgid "Default: ipaUniqueID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:524 -msgid "ipa_host_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:527 -msgid "The LDAP attribute that contains the host's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:531 -msgid "Default: ipaSshPubKey" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:546 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the ipa provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ipa.5.xml:553 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" id_provider = ipa\n" -" ipa_server = ipaserver.example.com\n" -" ipa_hostname = myhost.example.com\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:564 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.8.xml:10 sssd.8.xml:15 -msgid "sssd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.8.xml:16 -msgid "System Security Services Daemon" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sssd.8.xml:21 -msgid "" -"<command>sssd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:31 -msgid "" -"<command>SSSD</command> provides a set of daemons to manage access to remote " -"directories and authentication mechanisms. It provides an NSS and PAM " -"interface toward the system and a pluggable backend system to connect to " -"multiple different account sources as well as D-Bus interface. It is also " -"the basis to provide client auditing and policy services for projects like " -"FreeIPA. It provides a more robust database to store local users as well as " -"extended user data." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:46 -msgid "" -"<option>-d</option>,<option>--debug-level</option> <replaceable>LEVEL</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:53 -msgid "<option>--debug-timestamps=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:57 -msgid "<emphasis>1</emphasis>: Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:60 -msgid "<emphasis>0</emphasis>: Disable timestamp in the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:69 -msgid "<option>--debug-microseconds=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:73 -msgid "" -"<emphasis>1</emphasis>: Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:76 -msgid "<emphasis>0</emphasis>: Disable microseconds in timestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:79 -msgid "Default: 0" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:85 -msgid "<option>-f</option>,<option>--debug-to-files</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:89 -msgid "" -"Send the debug output to files instead of stderr. By default, the log files " -"are stored in <filename>/var/log/sssd</filename> and there are separate log " -"files for every SSSD service and domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:97 -msgid "<option>-D</option>,<option>--daemon</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:101 -msgid "Become a daemon after starting up." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:107 -msgid "<option>-i</option>,<option>--interactive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:111 -msgid "Run in the foreground, don't become a daemon." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:117 sss_debuglevel.8.xml:42 -msgid "<option>-c</option>,<option>--config</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:121 sss_debuglevel.8.xml:46 -msgid "" -"Specify a non-default config file. The default is <filename>/etc/sssd/sssd." -"conf</filename>. For reference on the config file syntax and options, " -"consult the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:135 -msgid "<option>--version</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:139 -msgid "Print version number and exit." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.8.xml:147 -msgid "Signals" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:150 -msgid "SIGTERM/SIGINT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:153 -msgid "" -"Informs the SSSD to gracefully terminate all of its child processes and then " -"shut down the monitor." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:159 -msgid "SIGHUP" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:162 -msgid "" -"Tells the SSSD to stop writing to its current debug file descriptors and to " -"close and reopen them. This is meant to facilitate log rolling with programs " -"like logrotate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:170 -msgid "SIGUSR1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:173 -msgid "" -"Tells the SSSD to simulate offline operation for one minute. This is mostly " -"useful for testing purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:179 -msgid "SIGUSR2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:182 -msgid "" -"Tells the SSSD to go online immediately. This is mostly useful for testing " -"purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:193 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_obfuscate.8.xml:10 sss_obfuscate.8.xml:15 -msgid "sss_obfuscate" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_obfuscate.8.xml:16 -msgid "obfuscate a clear text password" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_obfuscate.8.xml:21 -msgid "" -"<command>sss_obfuscate</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>[PASSWORD]</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:32 -msgid "" -"<command>sss_obfuscate</command> converts a given password into human-" -"unreadable format and places it into appropriate domain section of the SSSD " -"config file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:37 -msgid "" -"The cleartext password is read from standard input or entered " -"interactively. The obfuscated password is put into " -"<quote>ldap_default_authtok</quote> parameter of a given SSSD domain and the " -"<quote>ldap_default_authtok_type</quote> parameter is set to " -"<quote>obfuscated_password</quote>. Refer to <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more details on these parameters." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:49 -msgid "" -"Please note that obfuscating the password provides <emphasis>no real " -"security benefit</emphasis> as it is still possible for an attacker to " -"reverse-engineer the password back. Using better authentication mechanisms " -"such as client side certificates or GSSAPI is <emphasis>strongly</emphasis> " -"advised." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:63 -msgid "<option>-s</option>,<option>--stdin</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:67 -msgid "The password to obfuscate will be read from standard input." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:74 sss_ssh_authorizedkeys.1.xml:82 -#: sss_ssh_knownhostsproxy.1.xml:81 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>DOMAIN</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:79 -msgid "" -"The SSSD domain to use the password in. The default name is <quote>default</" -"quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:86 -msgid "" -"<option>-f</option>,<option>--file</option> <replaceable>FILE</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:91 -msgid "Read the config file specified by the positional parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:95 -msgid "Default: <filename>/etc/sssd/sssd.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:105 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_useradd.8.xml:10 sss_useradd.8.xml:15 -msgid "sss_useradd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_useradd.8.xml:16 -msgid "create a new user" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_useradd.8.xml:21 -msgid "" -"<command>sss_useradd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:32 -msgid "" -"<command>sss_useradd</command> creates a new user account using the values " -"specified on the command line plus the default values from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:43 -msgid "" -"<option>-u</option>,<option>--uid</option> <replaceable>UID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:48 -msgid "" -"Set the UID of the user to the value of <replaceable>UID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:55 sss_usermod.8.xml:43 -msgid "" -"<option>-c</option>,<option>--gecos</option> <replaceable>COMMENT</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:60 sss_usermod.8.xml:48 -msgid "" -"Any text string describing the user. Often used as the field for the user's " -"full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:67 sss_usermod.8.xml:55 -msgid "" -"<option>-h</option>,<option>--home</option> <replaceable>HOME_DIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:72 -msgid "" -"The home directory of the user account. The default is to append the " -"<replaceable>LOGIN</replaceable> name to <filename>/home</filename> and use " -"that as the home directory. The base that is prepended before " -"<replaceable>LOGIN</replaceable> is tunable with <quote>user_defaults/" -"baseDirectory</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:82 sss_usermod.8.xml:66 -msgid "" -"<option>-s</option>,<option>--shell</option> <replaceable>SHELL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:87 -msgid "" -"The user's login shell. The default is currently <filename>/bin/bash</" -"filename>. The default can be changed with <quote>user_defaults/" -"defaultShell</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:96 -msgid "" -"<option>-G</option>,<option>--groups</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:101 -msgid "A list of existing groups this user is also a member of." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:107 -msgid "<option>-m</option>,<option>--create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:111 -msgid "" -"Create the user's home directory if it does not exist. The files and " -"directories contained in the skeleton directory (which can be defined with " -"the -k option or in the config file) will be copied to the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:121 -msgid "<option>-M</option>,<option>--no-create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:125 -msgid "" -"Do not create the user's home directory. Overrides configuration settings." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:132 -msgid "" -"<option>-k</option>,<option>--skel</option> <replaceable>SKELDIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:137 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<command>sss_useradd</command>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:143 -msgid "" -"This option is only valid if the <option>-m</option> (or <option>--create-" -"home</option>) option is specified, or creation of home directories is set " -"to TRUE in the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:152 sss_usermod.8.xml:124 -msgid "" -"<option>-Z</option>,<option>--selinux-user</option> " -"<replaceable>SELINUX_USER</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:157 -msgid "" -"The SELinux user for the user's login. If not specified, the system default " -"will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:169 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-krb5.5.xml:10 sssd-krb5.5.xml:16 -msgid "sssd-krb5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:23 -msgid "" -"This manual page describes the configuration of the Kerberos 5 " -"authentication backend for <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry>. For a detailed " -"syntax reference, please refer to the <quote>FILE FORMAT</quote> section of " -"the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:36 -msgid "" -"The Kerberos 5 authentication backend contains auth and chpass providers. It " -"must be paired with identity provider in order to function properly (for " -"example, id_provider = ldap). Some information required by the Kerberos 5 " -"authentication backend must be provided by the identity provider, such as " -"the user's Kerberos Principal Name (UPN). The configuration of the identity " -"provider should have an entry to specify the UPN. Please refer to the man " -"page for the applicable identity provider for details on how to configure " -"this." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:47 -msgid "" -"This backend also provides access control based on the .k5login file in the " -"home directory of the user. See <citerefentry> <refentrytitle>.k5login</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry> for more details. " -"Please note that an empty .k5login file will deny all access to this user. " -"To activate this feature use 'access_provider = krb5' in your sssd " -"configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:55 -msgid "" -"In the case where the UPN is not available in the identity backend " -"<command>sssd</command> will construct a UPN using the format " -"<replaceable>username</replaceable>@<replaceable>krb5_realm</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:106 -msgid "" -"The name of the Kerberos realm. This option is required and must be " -"specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:113 -msgid "krb5_kpasswd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:116 -msgid "" -"If the change password service is not running on the KDC alternative servers " -"can be defined here. An optional port number (preceded by a colon) may be " -"appended to the addresses or hostnames." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:122 -msgid "" -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. Please note that even if there are no more " -"kpasswd servers to try the back end is not switch to offline if " -"authentication against the KDC is still possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:129 -msgid "Default: Use the KDC" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:135 -msgid "krb5_ccachedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:138 -msgid "" -"Directory to store credential caches. All the substitution sequences of " -"krb5_ccname_template can be used here, too, except %d and %P. If the " -"directory does not exist it will be created. If %u, %U, %p or %h are used a " -"private directory belonging to the user is created. Otherwise a public " -"directory with restricted deletion flag (aka sticky bit, see <citerefentry> " -"<refentrytitle>chmod</refentrytitle> <manvolnum>1</manvolnum> </" -"citerefentry> for details) is created." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:151 -msgid "Default: /tmp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:157 -msgid "krb5_ccname_template (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:171 -msgid "login UID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:174 -msgid "%p" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:175 -msgid "principal name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:179 -msgid "%r" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:180 -msgid "realm name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:183 -msgid "%h" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:184 -msgid "home directory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:189 -msgid "value of krb5ccache_dir" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:194 -msgid "%P" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:195 -msgid "the process ID of the sssd client" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:160 -msgid "" -"Location of the user's credential cache. Currently only file based " -"credential caches are supported. In the template the following sequences are " -"substituted: <placeholder type=\"variablelist\" id=\"0\"/> If the template " -"ends with 'XXXXXX' mkstemp(3) is used to create a unique filename in a safe " -"way." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:209 -msgid "Default: FILE:%d/krb5cc_%U_XXXXXX" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:215 -msgid "krb5_auth_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:218 -msgid "" -"Timeout in seconds after an online authentication or change password request " -"is aborted. If possible the authentication request is continued offline." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:241 -msgid "krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:244 -msgid "" -"The location of the keytab to use when validating credentials obtained from " -"KDCs." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:248 -msgid "Default: /etc/krb5.keytab" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:254 -msgid "krb5_store_password_if_offline (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:257 -msgid "" -"Store the password of the user if the provider is offline and use it to " -"request a TGT when the provider gets online again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:262 -msgid "" -"Please note that this feature currently only available on a Linux platform. " -"Passwords stored in this way are kept in plaintext in the kernel keyring and " -"are potentially accessible by the root user (with difficulty)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:275 -msgid "krb5_renewable_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:278 -msgid "" -"Request a renewable ticket with a total lifetime given by an integer " -"immediately followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:283 sssd-krb5.5.xml:319 -msgid "<emphasis>s</emphasis> seconds" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:286 sssd-krb5.5.xml:322 -msgid "<emphasis>m</emphasis> minutes" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:289 sssd-krb5.5.xml:325 -msgid "<emphasis>h</emphasis> hours" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:292 sssd-krb5.5.xml:328 -msgid "<emphasis>d</emphasis> days." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:295 sssd-krb5.5.xml:331 -msgid "If there is no delimiter <emphasis>s</emphasis> is assumed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:299 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"renewable lifetime to one and a half hours please use '90m' instead of " -"'1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:305 -msgid "Default: not set, i.e. the TGT is not renewable" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:311 -msgid "krb5_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:314 -msgid "" -"Request ticket with a with a lifetime given by an integer immediately " -"followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:335 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"lifetime to one and a half hours please use '90m' instead of '1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:340 -msgid "" -"Default: not set, i.e. the default ticket lifetime configured on the KDC." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:347 -msgid "krb5_renew_interval (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:350 -msgid "" -"The time in seconds between two checks if the TGT should be renewed. TGTs " -"are renewed if about half of their lifetime is exceeded." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:355 -msgid "If this option is not set or 0 the automatic renewal is disabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:365 -msgid "krb5_use_fast (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:368 -msgid "" -"Enables flexible authentication secure tunneling (FAST) for Kerberos pre-" -"authentication. The following options are supported:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:373 -msgid "" -"<emphasis>never</emphasis> use FAST, this is equivalent to not set this " -"option at all." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:377 -msgid "" -"<emphasis>try</emphasis> to use FAST, if the server does not support fast " -"continue without." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:381 -msgid "" -"<emphasis>demand</emphasis> to use FAST, fail if the server does not require " -"fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:385 -msgid "Default: not set, i.e. FAST is not used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:388 -msgid "Please note that a keytab is required to use fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:391 -msgid "" -"Please note also that sssd supports fast only with MIT Kerberos version 1.8 " -"and above. If sssd used with an older version using this option is a " -"configuration error." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:400 -msgid "krb5_fast_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:403 -msgid "Specifies the server principal to use for FAST." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:412 -msgid "" -"Specifies if the host and user principal should be canonicalized. This " -"feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:65 -msgid "" -"If the auth-module krb5 is used in a SSSD domain, the following options must " -"be used. See the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page, section <quote>DOMAIN " -"SECTIONS</quote> for details on the configuration of a SSSD domain. " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:434 -msgid "" -"The following example assumes that SSSD is correctly configured and FOO is " -"one of the domains in the <replaceable>[sssd]</replaceable> section. This " -"example shows only configuration of Kerberos authentication, it does not " -"include any identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-krb5.5.xml:442 -#, no-wrap -msgid "" -" [domain/FOO]\n" -" auth_provider = krb5\n" -" krb5_server = 192.168.1.1\n" -" krb5_realm = EXAMPLE.COM\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:453 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupadd.8.xml:10 sss_groupadd.8.xml:15 -msgid "sss_groupadd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupadd.8.xml:16 -msgid "create a new group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupadd.8.xml:21 -msgid "" -"<command>sss_groupadd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:32 -msgid "" -"<command>sss_groupadd</command> creates a new group. These groups are " -"compatible with POSIX groups, with the additional feature that they can " -"contain other groups as members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupadd.8.xml:43 -msgid "" -"<option>-g</option>,<option>--gid</option> <replaceable>GID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupadd.8.xml:48 -msgid "" -"Set the GID of the group to the value of <replaceable>GID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_userdel.8.xml:10 sss_userdel.8.xml:15 -msgid "sss_userdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_userdel.8.xml:16 -msgid "delete a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_userdel.8.xml:21 -msgid "" -"<command>sss_userdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:32 -msgid "" -"<command>sss_userdel</command> deletes a user identified by login name " -"<replaceable>LOGIN</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:44 -msgid "<option>-r</option>,<option>--remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:48 -msgid "" -"Files in the user's home directory will be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:56 -msgid "<option>-R</option>,<option>--no-remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:60 -msgid "" -"Files in the user's home directory will NOT be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:68 -msgid "<option>-f</option>,<option>--force</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:72 -msgid "" -"This option forces <command>sss_userdel</command> to remove the user's home " -"directory and mail spool, even if they are not owned by the specified user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:80 -msgid "<option>-k</option>,<option>--kick</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:84 -msgid "Before actually deleting the user, terminate all his processes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:95 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupdel.8.xml:10 sss_groupdel.8.xml:15 -msgid "sss_groupdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupdel.8.xml:16 -msgid "delete a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupdel.8.xml:21 -msgid "" -"<command>sss_groupdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:32 -msgid "" -"<command>sss_groupdel</command> deletes a group identified by its name " -"<replaceable>GROUP</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupshow.8.xml:10 sss_groupshow.8.xml:15 -msgid "sss_groupshow" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupshow.8.xml:16 -msgid "print properties of a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupshow.8.xml:21 -msgid "" -"<command>sss_groupshow</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:32 -msgid "" -"<command>sss_groupshow</command> displays information about a group " -"identified by its name <replaceable>GROUP</replaceable>. The information " -"includes the group ID number, members of the group and the parent group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupshow.8.xml:43 -msgid "<option>-R</option>,<option>--recursive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupshow.8.xml:47 -msgid "" -"Also print indirect group members in a tree-like hierarchy. Note that this " -"also affects printing parent groups - without <option>R</option>, only the " -"direct parent will be printed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_usermod.8.xml:10 sss_usermod.8.xml:15 -msgid "sss_usermod" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_usermod.8.xml:16 -msgid "modify a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_usermod.8.xml:21 -msgid "" -"<command>sss_usermod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:32 -msgid "" -"<command>sss_usermod</command> modifies the account specified by " -"<replaceable>LOGIN</replaceable> to reflect the changes that are specified " -"on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:60 -msgid "The home directory of the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:71 -msgid "The user's login shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:82 -msgid "" -"Append this user to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:96 -msgid "" -"Remove this user from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:103 -msgid "<option>-l</option>,<option>--lock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:107 -msgid "Lock the user account. The user won't be able to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:114 -msgid "<option>-u</option>,<option>--unlock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:118 -msgid "Unlock the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:129 -msgid "The SELinux user for the user's login." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:140 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_cache.8.xml:10 sss_cache.8.xml:15 -msgid "sss_cache" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_cache.8.xml:16 -msgid "perform cache cleanup" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_cache.8.xml:21 -msgid "" -"<command>sss_cache</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_cache.8.xml:31 -msgid "" -"<command>sss_cache</command> invalidates records in SSSD cache. Invalidated " -"records are forced to be reloaded from server as soon as related SSSD " -"backend is online." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:42 -msgid "" -"<option>-u</option>,<option>--user</option> <replaceable>login</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:47 -msgid "Invalidate specific user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:53 -msgid "<option>-U</option>,<option>--users</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:57 -msgid "" -"Invalidate all user records. This option overrides invalidation of specific " -"user if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:64 -msgid "" -"<option>-g</option>,<option>--group</option> <replaceable>group</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:69 -msgid "Invalidate specific group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:75 -msgid "<option>-G</option>,<option>--groups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:79 -msgid "" -"Invalidate all group records. This option overrides invalidation of specific " -"group if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:86 -msgid "" -"<option>-n</option>,<option>--netgroup</option> <replaceable>netgroup</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:91 -msgid "Invalidate specific netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:97 -msgid "<option>-N</option>,<option>--netgroups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:101 -msgid "" -"Invalidate all netgroup records. This option overrides invalidation of " -"specific netgroup if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:108 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>domain</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:113 -msgid "Restrict invalidation process only to a particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_debuglevel.8.xml:10 sss_debuglevel.8.xml:15 -msgid "sss_debuglevel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_debuglevel.8.xml:16 -msgid "change debug level while SSSD is running" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_debuglevel.8.xml:21 -msgid "" -"<command>sss_debuglevel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>NEW_DEBUG_LEVEL</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_debuglevel.8.xml:32 -msgid "" -"<command>sss_debuglevel</command> changes debug level of SSSD monitor and " -"providers to <replaceable>NEW_DEBUG_LEVEL</replaceable> while SSSD is " -"running." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_debuglevel.8.xml:59 -msgid "<replaceable>NEW_DEBUG_LEVEL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_authorizedkeys.1.xml:10 sss_ssh_authorizedkeys.1.xml:15 -msgid "sss_ssh_authorizedkeys" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_ssh_authorizedkeys.1.xml:11 sss_ssh_knownhostsproxy.1.xml:11 -msgid "1" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_authorizedkeys.1.xml:16 -msgid "get OpenSSH authorized keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_authorizedkeys.1.xml:21 -msgid "" -"<command>sss_ssh_authorizedkeys</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>USER</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:32 -msgid "" -"<command>sss_ssh_authorizedkeys</command> acquires SSH public keys for user " -"<replaceable>USER</replaceable> and outputs them in OpenSSH authorized_keys " -"format (see the <quote>AUTHORIZED_KEYS FILE FORMAT</quote> section of " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> for more information)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:41 -msgid "" -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_authorizedkeys</" -"command> for public key user authentication if it is compiled with support " -"for either <quote>AuthorizedKeysCommand</quote> or <quote>PubkeyAgent</" -"quote> <citerefentry> <refentrytitle>sshd_config</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:58 -#, no-wrap -msgid "AuthorizedKeysCommand /usr/bin/sss_ssh_authorizedkeys\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:51 -msgid "" -"If <quote>AuthorizedKeysCommand</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by putting the following directive " -"in <citerefentry> <refentrytitle>sshd_config</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry>: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:69 -#, no-wrap -msgid "PubKeyAgent /usr/bin/sss_ssh_authorizedkeys %u\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:62 -msgid "" -"If <quote>PubkeyAgent</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by using the following directive " -"for <citerefentry> <refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> configuration: <placeholder type=\"programlisting" -"\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_authorizedkeys.1.xml:87 -msgid "" -"Search for user public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:98 -msgid "" -"<citerefentry> <refentrytitle>sshd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sshd_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_knownhostsproxy</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_knownhostsproxy.1.xml:10 sss_ssh_knownhostsproxy.1.xml:15 -msgid "sss_ssh_knownhostsproxy" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_knownhostsproxy.1.xml:16 -msgid "get OpenSSH host keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_knownhostsproxy.1.xml:21 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>HOST</replaceable></arg> <arg " -"choice='opt'><replaceable>PROXY_COMMAND</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:33 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> acquires SSH host public keys for " -"host <replaceable>HOST</replaceable>, stores them in a custom OpenSSH " -"known_hosts file (see the <quote>SSH_KNOWN_HOSTS FILE FORMAT</quote> section " -"of <citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> for more information) <filename>/var/lib/sss/" -"pubconf/known_hosts</filename> and estabilishes connection to the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:43 -msgid "" -"If <replaceable>PROXY_COMMAND</replaceable> is specified, it is used to " -"create the connection to the host instead of opening a socket." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_knownhostsproxy.1.xml:55 -#, no-wrap -msgid "" -"ProxyCommand /usr/bin/sss_ssh_knownhostsproxy -p %p %h\n" -"GlobalKnownHostsFile2 /var/lib/sss/pubconf/known_hosts\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:48 -msgid "" -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_knownhostsproxy</" -"command> for host key authentication by using the following directives for " -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> configuration: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_ssh_knownhostsproxy.1.xml:69 -msgid "" -"<option>-p</option>,<option>--port</option> <replaceable>PORT</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:74 -msgid "" -"Use port <replaceable>PORT</replaceable> to connect to the host. By " -"default, port 22 is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:86 -msgid "" -"Search for host public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:97 -msgid "" -"<citerefentry> <refentrytitle>ssh</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>ssh_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_authorizedkeys</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/service_discovery.xml:2 -msgid "SERVICE DISCOVERY" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/service_discovery.xml:4 -msgid "" -"The service discovery feature allows back ends to automatically find the " -"appropriate servers to connect to using a special DNS query." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:9 -msgid "Configuration" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:11 -msgid "" -"If no servers are specified, the back end automatically uses service " -"discovery to try to find a server. Optionally, the user may choose to use " -"both fixed server addresses and service discovery by inserting a special " -"keyword, <quote>_srv_</quote>, in the list of servers. The order of " -"preference is maintained. This feature is useful if, for example, the user " -"prefers to use service discovery whenever possible, and fall back to a " -"specific server when no servers can be discovered using DNS." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:23 -msgid "The domain name" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:25 -msgid "" -"Please refer to the <quote>dns_discovery_domain</quote> parameter in the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for more details." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:35 -msgid "The protocol" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:37 -msgid "" -"The queries usually specify _tcp as the protocol. Exceptions are documented " -"in respective option description." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:42 -msgid "See Also" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:44 -msgid "" -"For more information on the service discovery mechanism, refer to RFC 2782." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/upstream.xml:1 -msgid "<placeholder type=\"refentryinfo\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/failover.xml:2 -msgid "FAILOVER" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/failover.xml:4 -msgid "" -"The failover feature allows back ends to automatically switch to a different " -"server if the primary server fails." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:8 -msgid "Failover Syntax" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:10 -msgid "" -"The list of servers is given as a comma-separated list; any number of spaces " -"is allowed around the comma. The servers are listed in order of preference. " -"The list can contain any number of servers." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:17 -msgid "The Failover Mechanism" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:19 -msgid "" -"The failover mechanism distinguishes between a machine and a service. The " -"back end first tries to resolve the hostname of a given machine; if this " -"resolution attempt fails, the machine is considered offline. No further " -"attempts are made to connect to this machine for any other service. If the " -"resolution attempt succeeds, the back end tries to connect to a service on " -"this machine. If the service connection attempt fails, then only this " -"particular service is considered offline and the back end automatically " -"switches over to the next service. The machine is still considered online " -"and might still be tried for another service." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:32 -msgid "" -"Further connection attempts are made to machines or services marked as " -"offline after a specified period of time; this is currently hard coded to 30 " -"seconds." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:37 -msgid "" -"If there are no more machines to try, the back end as a whole switches to " -"offline mode, and then attempts to reconnect every 30 seconds." -msgstr "" - -#. type: Content of: <varlistentry><term> -#: include/param_help.xml:3 -msgid "<option>-h</option>,<option>--help</option>" -msgstr "" - -#. type: Content of: <varlistentry><listitem><para> -#: include/param_help.xml:7 -msgid "Display help message and exit." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:3 -msgid "" -"Bit mask that indicates which debug levels will be visible. 0x0010 is the " -"default value as well as the lowest allowed value, 0xFFF0 is the most " -"verbose mode. This setting overrides the settings from config file." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:8 -msgid "Currently supported debug levels:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:11 -msgid "" -"<emphasis>0x0010</emphasis>: Fatal failures. Anything that would prevent " -"SSSD from starting up or causes it to cease running." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:15 -msgid "" -"<emphasis>0x0020</emphasis>: Critical failures. An error that doesn't kill " -"the SSSD, but one that indicates that at least one major feature is not " -"going to work properly." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:20 -msgid "" -"<emphasis>0x0040</emphasis>: Serious failures. An error announcing that a " -"particular request or operation has failed." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:24 -msgid "" -"<emphasis>0x0080</emphasis>: Minor failures. These are the errors that would " -"percolate down to cause the operation failure of 2." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:28 -msgid "<emphasis>0x0100</emphasis>: Configuration settings." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:31 -msgid "<emphasis>0x0200</emphasis>: Function data." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:34 -msgid "<emphasis>0x0400</emphasis>: Trace messages for operation functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:37 -msgid "" -"<emphasis>0x1000</emphasis>: Trace messages for internal control functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:40 -msgid "" -"<emphasis>0x2000</emphasis>: Contents of function-internal variables that " -"may be interesting." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:43 -msgid "<emphasis>0x4000</emphasis>: Extremely low-level tracing information." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:46 -msgid "" -"To log required debug levels, simply add their numbers together as shown in " -"following examples:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:49 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, critical failures, " -"serious failures and function data use 0x0270." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:53 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, configuration settings, " -"function data, trace messages for internal control functions use 0x1310." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:57 -msgid "" -"<emphasis>Note</emphasis>: This is new format of debug levels introduced in " -"1.7.0. Older format (numbers from 0-10) is compatible but deprecated." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/experimental.xml:1 -msgid "" -"<emphasis> This is an experimental feature, please use http://fedorahosted." -"org/sssd to report any issues. </emphasis>" -msgstr "" diff --git a/src/man/po/nb.po b/src/man/po/nb.po deleted file mode 100644 index 364d47322..000000000 --- a/src/man/po/nb.po +++ /dev/null @@ -1,6747 +0,0 @@ -# SOME DESCRIPTIVE TITLE -# Copyright (C) YEAR Red Hat -# This file is distributed under the same license as the sssd-docs package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@redhat.com\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-12-23 15:35+0000\n" -"Last-Translator: FULL NAME <EMAIL@ADDRESS>\n" -"Language-Team: Norwegian Bokmål <i18n-nb@lister.ping.uio.no>\n" -"Language: nb\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=2; plural=(n != 1)\n" - -#. type: Content of: <reference><title> -#: sss_groupmod.8.xml:5 sssd.conf.5.xml:5 sssd-ldap.5.xml:5 pam_sss.8.xml:5 -#: sssd_krb5_locator_plugin.8.xml:5 sssd-simple.5.xml:5 sssd-ipa.5.xml:5 -#: sssd.8.xml:5 sss_obfuscate.8.xml:5 sss_useradd.8.xml:5 sssd-krb5.5.xml:5 -#: sss_groupadd.8.xml:5 sss_userdel.8.xml:5 sss_groupdel.8.xml:5 -#: sss_groupshow.8.xml:5 sss_usermod.8.xml:5 sss_cache.8.xml:5 -#: sss_debuglevel.8.xml:5 sss_ssh_authorizedkeys.1.xml:5 -#: sss_ssh_knownhostsproxy.1.xml:5 -msgid "SSSD Manual pages" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupmod.8.xml:10 sss_groupmod.8.xml:15 -msgid "sss_groupmod" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_groupmod.8.xml:11 pam_sss.8.xml:14 sssd_krb5_locator_plugin.8.xml:11 -#: sssd.8.xml:11 sss_obfuscate.8.xml:11 sss_useradd.8.xml:11 -#: sss_groupadd.8.xml:11 sss_userdel.8.xml:11 sss_groupdel.8.xml:11 -#: sss_groupshow.8.xml:11 sss_usermod.8.xml:11 sss_cache.8.xml:11 -#: sss_debuglevel.8.xml:11 -msgid "8" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupmod.8.xml:16 -msgid "modify a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupmod.8.xml:21 -msgid "" -"<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:30 sssd-ldap.5.xml:21 pam_sss.8.xml:44 -#: sssd_krb5_locator_plugin.8.xml:20 sssd-simple.5.xml:22 sssd-ipa.5.xml:21 -#: sssd.8.xml:29 sss_obfuscate.8.xml:30 sss_useradd.8.xml:30 -#: sssd-krb5.5.xml:21 sss_groupadd.8.xml:30 sss_userdel.8.xml:30 -#: sss_groupdel.8.xml:30 sss_groupshow.8.xml:30 sss_usermod.8.xml:30 -#: sss_cache.8.xml:29 sss_debuglevel.8.xml:30 sss_ssh_authorizedkeys.1.xml:30 -#: sss_ssh_knownhostsproxy.1.xml:31 -msgid "DESCRIPTION" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:32 -msgid "" -"<command>sss_groupmod</command> modifies the group to reflect the changes " -"that are specified on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:39 pam_sss.8.xml:51 sssd.8.xml:42 sss_obfuscate.8.xml:58 -#: sss_useradd.8.xml:39 sss_groupadd.8.xml:39 sss_userdel.8.xml:39 -#: sss_groupdel.8.xml:39 sss_groupshow.8.xml:39 sss_usermod.8.xml:39 -#: sss_cache.8.xml:38 sss_debuglevel.8.xml:38 sss_ssh_authorizedkeys.1.xml:78 -#: sss_ssh_knownhostsproxy.1.xml:65 -msgid "OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:43 sss_usermod.8.xml:77 -msgid "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:48 -msgid "" -"Append this group to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:57 sss_usermod.8.xml:91 -msgid "" -"<option>-r</option>,<option>--remove-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:62 -msgid "" -"Remove this group from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:72 sssd.conf.5.xml:1331 sssd-ldap.5.xml:2096 -#: pam_sss.8.xml:139 sssd_krb5_locator_plugin.8.xml:75 sssd-simple.5.xml:143 -#: sssd-ipa.5.xml:562 sssd.8.xml:191 sss_obfuscate.8.xml:103 -#: sss_useradd.8.xml:167 sssd-krb5.5.xml:451 sss_groupadd.8.xml:58 -#: sss_userdel.8.xml:93 sss_groupdel.8.xml:46 sss_groupshow.8.xml:58 -#: sss_usermod.8.xml:138 sss_ssh_authorizedkeys.1.xml:96 -#: sss_ssh_knownhostsproxy.1.xml:95 -msgid "SEE ALSO" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:74 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.conf.5.xml:10 sssd.conf.5.xml:16 -msgid "sssd.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sssd.conf.5.xml:11 sssd-ldap.5.xml:11 sssd-simple.5.xml:11 -#: sssd-ipa.5.xml:11 sssd-krb5.5.xml:11 -msgid "5" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><refmiscinfo> -#: sssd.conf.5.xml:12 sssd-ldap.5.xml:12 sssd-simple.5.xml:12 -#: sssd-ipa.5.xml:12 sssd-krb5.5.xml:12 -msgid "File Formats and Conventions" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.conf.5.xml:17 sssd-ldap.5.xml:17 sssd_krb5_locator_plugin.8.xml:16 -#: sssd-ipa.5.xml:17 sssd-krb5.5.xml:17 -msgid "the configuration file for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:21 -msgid "FILE FORMAT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:29 -#, no-wrap -msgid "" -" <replaceable>[section]</replaceable>\n" -" <replaceable>key</replaceable> = <replaceable>value</replaceable>\n" -" <replaceable>key2</replaceable> = <replaceable>value2,value3</replaceable>\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:24 -msgid "" -"The file has an ini-style syntax and consists of sections and parameters. A " -"section begins with the name of the section in square brackets and continues " -"until the next section begins. An example of section with single and multi-" -"valued parameters: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:36 -msgid "" -"The data types used are string (no quotes needed), integer and bool (with " -"values of <quote>TRUE/FALSE</quote>)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:41 -msgid "" -"A line comment starts with a hash sign (<quote>#</quote>) or a semicolon " -"(<quote>;</quote>)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:46 -msgid "" -"All sections can have an optional <replaceable>description</replaceable> " -"parameter. Its function is only as a label for the section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:52 -msgid "" -"<filename>sssd.conf</filename> must be a regular file, owned by root and " -"only root may read from or write to the file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:58 -msgid "SPECIAL SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:61 -msgid "The [sssd] section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><title> -#: sssd.conf.5.xml:70 sssd.conf.5.xml:1177 -msgid "Section parameters" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:72 -msgid "config_file_version (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:75 -msgid "" -"Indicates what is the syntax of the config file. SSSD 0.6.0 and later use " -"version 2." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:81 -msgid "services" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:84 -msgid "" -"Comma separated list of services that are started when sssd itself starts." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:88 -msgid "" -"Supported services: nss, pam <phrase condition=\"with_sudo\">, sudo</phrase>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:94 sssd.conf.5.xml:257 -msgid "reconnection_retries (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:97 sssd.conf.5.xml:260 -msgid "" -"Number of times services should attempt to reconnect in the event of a Data " -"Provider crash or restart before they give up" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:102 sssd.conf.5.xml:265 -msgid "Default: 3" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:107 -msgid "domains" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:110 -msgid "" -"A domain is a database containing user information. SSSD can use more " -"domains at the same time, but at least one must be configured or SSSD won't " -"start. This parameter described the list of domains in the order you want " -"them to be queried." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:120 -msgid "re_expression (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:123 -msgid "" -"Regular expression that describes how to parse the string containing user " -"name and domain into these components." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:127 -msgid "" -"Default: <quote>(?P<name>[^@]+)@?(?P<domain>[^@]*$)</quote> " -"which translates to \"the name is everything up to the <quote>@</quote> " -"sign, the domain everything after that\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:132 -msgid "" -"PLEASE NOTE: the support for non-unique named subpatterns is not available " -"on all platforms (e.g. RHEL5 and SLES10). Only platforms with libpcre " -"version 7 or higher can support non-unique named subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:139 -msgid "" -"PLEASE NOTE ALSO: older version of libpcre only support the Python syntax (?" -"P<name>) to label subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:146 -msgid "full_name_format (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:149 -msgid "" -"A <citerefentry> <refentrytitle>printf</refentrytitle> <manvolnum>3</" -"manvolnum> </citerefentry>-compatible format that describes how to translate " -"a (name, domain) tuple into a fully qualified name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:157 -msgid "Default: <quote>%1$s@%2$s</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:162 -msgid "try_inotify (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:165 -msgid "" -"SSSD monitors the state of resolv.conf to identify when it needs to update " -"its internal DNS resolver. By default, we will attempt to use inotify for " -"this, and will fall back to polling resolv.conf every five seconds if " -"inotify cannot be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:173 -msgid "" -"There are some limited situations where it is preferred that we should skip " -"even trying to use inotify. In these rare cases, this option should be set " -"to 'false'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:179 -msgid "" -"Default: true on platforms where inotify is supported. False on other " -"platforms." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:183 -msgid "" -"Note: this option will have no effect on platforms where inotify is " -"unavailable. On these platforms, polling will always be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:190 -msgid "krb5_rcache_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:193 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:197 -msgid "" -"This option accepts a special value __LIBKRB5_DEFAULTS__ that will instruct " -"SSSD to let libkrb5 decide the appropriate location for the replay cache." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:203 -msgid "" -"Default: Distribution-specific and specified at build-time. " -"(__LIBKRB5_DEFAULTS__ if not configured)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:63 -msgid "" -"Individual pieces of SSSD functionality are provided by special SSSD " -"services that are started and stopped together with SSSD. The services are " -"managed by a special service frequently called <quote>monitor</quote>. The " -"<quote>[sssd]</quote> section is used to configure the monitor as well as " -"some other important options like the identity domains. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:216 -msgid "SERVICES SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:218 -msgid "" -"Settings that can be used to configure different services are described in " -"this section. They should reside in the [<replaceable>$NAME</replaceable>] " -"section, for example, for NSS service, the section would be <quote>[nss]</" -"quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:225 -msgid "General service configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:227 -msgid "These options can be used to configure any service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:231 -msgid "debug_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:235 -msgid "debug_timestamps (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:238 -msgid "Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:241 sssd.conf.5.xml:376 sssd-ldap.5.xml:1328 -#: sssd-ldap.5.xml:1446 sssd-ipa.5.xml:206 sssd-ipa.5.xml:241 -msgid "Default: true" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:246 -msgid "debug_microseconds (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:249 -msgid "Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:252 sssd.conf.5.xml:641 sssd-ldap.5.xml:602 -#: sssd-ldap.5.xml:1260 sssd-ldap.5.xml:1397 sssd-ldap.5.xml:1795 -#: sssd-ipa.5.xml:123 sssd-ipa.5.xml:301 sssd-krb5.5.xml:235 -#: sssd-krb5.5.xml:269 sssd-krb5.5.xml:418 -msgid "Default: false" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:270 -msgid "command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:273 -msgid "" -"By default, the executable representing this service is called <command>sssd_" -"${service_name}</command>. This directive allows to change the executable " -"name for the service. In the vast majority of configurations, the default " -"values should suffice." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:281 -msgid "Default: <command>sssd_${service_name}</command>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:289 -msgid "NSS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:291 -msgid "" -"These options can be used to configure the Name Service Switch (NSS) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:296 -msgid "enum_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:299 -msgid "" -"How many seconds should nss_sss cache enumerations (requests for info about " -"all users)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:303 -msgid "Default: 120" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:308 -msgid "entry_cache_nowait_percentage (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:311 -msgid "" -"The entry cache can be set to automatically update entries in the background " -"if they are requested beyond a percentage of the entry_cache_timeout value " -"for the domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:317 -msgid "" -"For example, if the domain's entry_cache_timeout is set to 30s and " -"entry_cache_nowait_percentage is set to 50 (percent), entries that come in " -"after 15 seconds past the last cache update will be returned immediately, " -"but the SSSD will go and update the cache on its own, so that future " -"requests will not need to block waiting for a cache update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:327 -msgid "" -"Valid values for this option are 0-99 and represent a percentage of the " -"entry_cache_timeout for each domain. For performance reasons, this " -"percentage will never reduce the nowait timeout to less than 10 seconds. (0 " -"disables this feature)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:335 -msgid "Default: 50" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:340 -msgid "entry_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:343 -msgid "" -"Specifies for how many seconds nss_sss should cache negative cache hits " -"(that is, queries for invalid database entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:349 sssd.conf.5.xml:669 sssd-krb5.5.xml:223 -msgid "Default: 15" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:354 -msgid "filter_users, filter_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:357 -msgid "" -"Exclude certain users from being fetched from the sss NSS database. This is " -"particularly useful for system accounts. This option can also be set per-" -"domain or include fully-qualified names to filter only users from the " -"particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:364 -msgid "Default: root" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:369 -msgid "filter_users_in_groups (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:372 -msgid "" -"If you want filtered user still be group members set this option to false." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:381 -msgid "override_homedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:390 sssd-krb5.5.xml:166 -msgid "%u" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:391 sssd-krb5.5.xml:167 -msgid "login name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:394 sssd-krb5.5.xml:170 -msgid "%U" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:395 -msgid "UID number" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:398 sssd-krb5.5.xml:188 -msgid "%d" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:399 -msgid "domain name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:402 -msgid "%f" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:403 -msgid "fully qualified user name (user@domain)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:406 sssd-krb5.5.xml:200 -msgid "%%" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:407 sssd-krb5.5.xml:201 -msgid "a literal '%'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:384 -msgid "" -"Override the user's home directory. You can either provide an absolute value " -"or a template. In the template, the following sequences are substituted: " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:413 -msgid "This option can also be set per-domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:418 -msgid "allowed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:421 -msgid "" -"Restrict user shell to one of the listed values. The order of evaluation is:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:424 -msgid "1. If the shell is present in <quote>/etc/shells</quote>, it is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:428 -msgid "" -"2. If the shell is in the allowed_shells list but not in <quote>/etc/shells</" -"quote>, use the value of the shell_fallback parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:433 -msgid "" -"3. If the shell is not in the allowed_shells list and not in <quote>/etc/" -"shells</quote>, a nologin shell is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:438 -msgid "An empty string for shell is passed as-is to libc." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:441 -msgid "" -"The <quote>/etc/shells</quote> is only read on SSSD start up, which means " -"that a restart of the SSSD is required in case a new shell is installed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:445 -msgid "Default: Not set. The user shell is automatically used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:450 -msgid "vetoed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:453 -msgid "Replace any instance of these shells with the shell_fallback" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:458 -msgid "shell_fallback (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:461 -msgid "" -"The default shell to use if an allowed shell is not installed on the machine." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:465 -msgid "Default: /bin/sh" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:472 -msgid "PAM configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:474 -msgid "" -"These options can be used to configure the Pluggable Authentication Module " -"(PAM) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:479 -msgid "offline_credentials_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:482 -msgid "" -"If the authentication provider is offline, how long should we allow cached " -"logins (in days since the last successful online login)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:487 sssd.conf.5.xml:500 -msgid "Default: 0 (No limit)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:493 -msgid "offline_failed_login_attempts (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:496 -msgid "" -"If the authentication provider is offline, how many failed login attempts " -"are allowed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:506 -msgid "offline_failed_login_delay (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:509 -msgid "" -"The time in minutes which has to pass after offline_failed_login_attempts " -"has been reached before a new login attempt is possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:514 -msgid "" -"If set to 0 the user cannot authenticate offline if " -"offline_failed_login_attempts has been reached. Only a successful online " -"authentication can enable offline authentication again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:520 sssd.conf.5.xml:573 sssd.conf.5.xml:1093 -msgid "Default: 5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:526 -msgid "pam_verbosity (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:529 -msgid "" -"Controls what kind of messages are shown to the user during authentication. " -"The higher the number to more messages are displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:534 -msgid "Currently sssd supports the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:537 -msgid "<emphasis>0</emphasis>: do not show any message" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:540 -msgid "<emphasis>1</emphasis>: show only important messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:544 -msgid "<emphasis>2</emphasis>: show informational messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:547 -msgid "<emphasis>3</emphasis>: show all messages and debug information" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:551 sssd.8.xml:63 -msgid "Default: 1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:556 -msgid "pam_id_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:559 -msgid "" -"For any PAM request while SSSD is online, the SSSD will attempt to " -"immediately update the cached identity information for the user in order to " -"ensure that authentication takes place with the latest information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:565 -msgid "" -"A complete PAM conversation may perform multiple PAM requests, such as " -"account management and session opening. This option controls (on a per-" -"client-application basis) how long (in seconds) we can cache the identity " -"information to avoid excessive round-trips to the identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:579 -msgid "pam_pwd_expiration_warning (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:582 -msgid "Display a warning N days before the password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:585 -msgid "" -"Please note that the backend server has to provide information about the " -"expiration time of the password. If this information is missing, sssd " -"cannot display a warning." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:591 -msgid "Default: 7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:599 -msgid "SUDO configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:601 -msgid "These options can be used to configure the sudo service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:608 -msgid "sudo_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:611 -msgid "" -"For any sudo request that comes while SSSD is online, the SSSD will attempt " -"to update the cached rules in order to ensure that sudo has the latest " -"ruleset." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:617 -msgid "" -"The user may, however, run a couple of sudo commands successively, which " -"would trigger multiple LDAP requests. In order to speed up this use-case, " -"the sudo service maintains an in-memory cache that would be used for " -"performing fast replies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:624 -msgid "" -"This option controls how long (in seconds) can the sudo service cache rules " -"for a user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:628 -msgid "Default: 180" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:633 -msgid "sudo_timed (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:636 -msgid "" -"Whether or not to evaluate the sudoNotBefore and sudoNotAfter attributes " -"that implement time-dependent sudoers entries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:649 -msgid "AUTOFS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:651 -msgid "These options can be used to configure the autofs service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:659 -msgid "autofs_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:662 -msgid "" -"Specifies for how many seconds should the autofs responder negative cache " -"hits (that is, queries for invalid map entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:679 -msgid "DOMAIN SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:686 -msgid "min_id,max_id (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:689 -msgid "" -"UID and GID limits for the domain. If a domain contains an entry that is " -"outside these limits, it is ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:694 -msgid "" -"For users, this affects the primary GID limit. The user will not be returned " -"to NSS if either the UID or the primary GID is outside the range. For non-" -"primary group memberships, those that are in range will be reported as " -"expected." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:701 -msgid "Default: 1 for min_id, 0 (no limit) for max_id" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:707 -msgid "timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:710 -msgid "" -"Timeout in seconds between heartbeats for this domain. This is used to " -"ensure that the backend process is alive and capable of answering requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:715 sssd-ldap.5.xml:1131 -msgid "Default: 10" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:721 -msgid "enumerate (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:724 -msgid "" -"Determines if a domain can be enumerated. This parameter can have one of the " -"following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:728 -msgid "TRUE = Users and groups are enumerated" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:731 -msgid "FALSE = No enumerations for this domain" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:734 sssd.conf.5.xml:839 sssd.conf.5.xml:893 -msgid "Default: FALSE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:737 -msgid "" -"Note: Enabling enumeration has a moderate performance impact on SSSD while " -"enumeration is running. It may take up to several minutes after SSSD startup " -"to fully complete enumerations. During this time, individual requests for " -"information will go directly to LDAP, though it may be slow, due to the " -"heavy enumeration processing." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:747 -msgid "" -"While the first enumeration is running, requests for the complete user or " -"group lists may return no results until it completes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:752 -msgid "" -"Further, enabling enumeration may increase the time necessary to detect " -"network disconnection, as longer timeouts are required to ensure that " -"enumeration lookups are completed successfully. For more information, refer " -"to the man pages for the specific id_provider in use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:763 -msgid "entry_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:766 -msgid "" -"How many seconds should nss_sss consider entries valid before asking the " -"backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:770 -msgid "Default: 5400" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:776 -msgid "entry_cache_user_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:779 -msgid "" -"How many seconds should nss_sss consider user entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:783 sssd.conf.5.xml:796 sssd.conf.5.xml:809 -#: sssd.conf.5.xml:822 -msgid "Default: entry_cache_timeout" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:789 -msgid "entry_cache_group_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:792 -msgid "" -"How many seconds should nss_sss consider group entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:802 -msgid "entry_cache_netgroup_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:805 -msgid "" -"How many seconds should nss_sss consider netgroup entries valid before " -"asking the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:815 -msgid "entry_cache_service_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:818 -msgid "" -"How many seconds should nss_sss consider service entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:828 -msgid "cache_credentials (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:831 -msgid "Determines if user credentials are also cached in the local LDB cache" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:835 -msgid "User credentials are stored in a SHA512 hash, not in plaintext" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:844 -msgid "account_cache_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:847 -msgid "" -"Number of days entries are left in cache after last successful login before " -"being removed during a cleanup of the cache. 0 means keep forever. The " -"value of this parameter must be greater than or equal to " -"offline_credentials_expiration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:854 -msgid "Default: 0 (unlimited)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:860 -msgid "id_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:863 -msgid "The Data Provider identity backend to use for this domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:867 -msgid "Supported backends:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:870 -msgid "proxy: Support a legacy NSS provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:873 -msgid "local: SSSD internal local provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:876 -msgid "ldap: LDAP provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:882 -msgid "use_fully_qualified_names (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:885 -msgid "" -"If set to TRUE, all requests to this domain must use fully qualified names. " -"For example, if used in LOCAL domain that contains a \"test\" user, " -"<command>getent passwd test</command> wouldn't find the user while " -"<command>getent passwd test@LOCAL</command> would." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:898 -msgid "auth_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:901 -msgid "" -"The authentication provider used for the domain. Supported auth providers " -"are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:905 -msgid "" -"<quote>ldap</quote> for native LDAP authentication. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:912 -msgid "" -"<quote>krb5</quote> for Kerberos authentication. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:919 -msgid "" -"<quote>proxy</quote> for relaying authentication to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:922 -msgid "<quote>none</quote> disables authentication explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:925 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"authentication requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:931 -msgid "access_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:934 -msgid "" -"The access control provider used for the domain. There are two built-in " -"access providers (in addition to any included in installed backends) " -"Internal special providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:940 -msgid "<quote>permit</quote> always allow access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:943 -msgid "<quote>deny</quote> always deny access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:946 -msgid "" -"<quote>simple</quote> access control based on access or deny lists. See " -"<citerefentry> <refentrytitle>sssd-simple</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry> for more information on configuring the simple " -"access module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:953 -msgid "Default: <quote>permit</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:958 -msgid "chpass_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:961 -msgid "" -"The provider which should handle change password operations for the domain. " -"Supported change password providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:966 -msgid "" -"<quote>ipa</quote> to change a password stored in an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:974 -msgid "" -"<quote>ldap</quote> to change a password stored in a LDAP server. See " -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:982 -msgid "" -"<quote>krb5</quote> to change the Kerberos password. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:990 -msgid "" -"<quote>proxy</quote> for relaying password changes to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:994 -msgid "<quote>none</quote> disallows password changes explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:997 -msgid "" -"Default: <quote>auth_provider</quote> is used if it is set and can handle " -"change password requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1004 -msgid "sudo_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1010 -msgid "The SUDO provider used for the domain. Supported SUDO providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1014 -msgid "" -"<quote>ldap</quote> for rules stored in LDAP. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1021 -msgid "<quote>none</quote> disables SUDO explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1024 -msgid "Default: The value of <quote>id_provider</quote> is used if it is set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1030 -msgid "session_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1033 -msgid "" -"The provider which should handle loading of session settings. Supported " -"session providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1038 -msgid "" -"<quote>ipa</quote> to load session settings from an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1046 -msgid "<quote>none</quote> disallows fetching session settings explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1049 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"session loading requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1056 -msgid "lookup_family_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1059 -msgid "" -"Provides the ability to select preferred address family to use when " -"performing DNS lookups." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1063 -msgid "Supported values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1066 -msgid "ipv4_first: Try looking up IPv4 address, if that fails, try IPv6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1069 -msgid "ipv4_only: Only attempt to resolve hostnames to IPv4 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1072 -msgid "ipv6_first: Try looking up IPv6 address, if that fails, try IPv4" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1075 -msgid "ipv6_only: Only attempt to resolve hostnames to IPv6 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1078 -msgid "Default: ipv4_first" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1084 -msgid "dns_resolver_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1087 -msgid "" -"Defines the amount of time (in seconds) to wait for a reply from the DNS " -"resolver before assuming that it is unreachable. If this timeout is reached, " -"the domain will continue to operate in offline mode." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1099 -msgid "dns_discovery_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1102 -msgid "" -"If service discovery is used in the back end, specifies the domain part of " -"the service discovery DNS query." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1106 -msgid "Default: Use the domain part of machine's hostname" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1112 -msgid "override_gid (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1115 -msgid "Override the primary GID value with the one specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1121 -msgid "case_sensitive (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1124 -msgid "" -"Treat user and group names as case sensitive. At the moment, this option is " -"not supported in the local provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1129 -msgid "Default: True" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:681 -msgid "" -"These configuration options can be present in a domain configuration " -"section, that is, in a section called <quote>[domain/<replaceable>NAME</" -"replaceable>]</quote> <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1141 -msgid "proxy_pam_target (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1144 -msgid "The proxy target PAM proxies to." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1147 -msgid "" -"Default: not set by default, you have to take an existing pam configuration " -"or create a new one and add the service name here." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1155 -msgid "proxy_lib_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1158 -msgid "" -"The name of the NSS library to use in proxy domains. The NSS functions " -"searched for in the library are in the form of _nss_$(libName)_$(function), " -"for example _nss_files_getpwent." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1137 -msgid "" -"Options valid for proxy domains. <placeholder type=\"variablelist\" id=" -"\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:1170 -msgid "The local domain section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:1172 -msgid "" -"This section contains settings for domain that stores users and groups in " -"SSSD native database, that is, a domain that uses " -"<replaceable>id_provider=local</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1179 -msgid "default_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1182 -msgid "The default shell for users created with SSSD userspace tools." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1186 -msgid "Default: <filename>/bin/bash</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1191 -msgid "base_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1194 -msgid "" -"The tools append the login name to <replaceable>base_directory</replaceable> " -"and use that as the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1199 -msgid "Default: <filename>/home</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1204 -msgid "create_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1207 -msgid "" -"Indicate if a home directory should be created by default for new users. " -"Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1211 sssd.conf.5.xml:1223 -msgid "Default: TRUE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1216 -msgid "remove_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1219 -msgid "" -"Indicate if a home directory should be removed by default for deleted " -"users. Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1228 -msgid "homedir_umask (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1231 -msgid "" -"Used by <citerefentry> <refentrytitle>sss_useradd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry> to specify the default permissions " -"on a newly created home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1239 -msgid "Default: 077" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1244 -msgid "skel_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1247 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<citerefentry> <refentrytitle>sss_useradd</refentrytitle> <manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1257 -msgid "Default: <filename>/etc/skel</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1262 -msgid "mail_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1265 -msgid "" -"The mail spool directory. This is needed to manipulate the mailbox when its " -"corresponding user account is modified or deleted. If not specified, a " -"default value is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1272 -msgid "Default: <filename>/var/mail</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1277 -msgid "userdel_cmd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1280 -msgid "" -"The command that is run after a user is removed. The command us passed the " -"username of the user being removed as the first and only parameter. The " -"return code of the command is not taken into account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1286 -msgid "Default: None, no command is run" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:1296 sssd-ldap.5.xml:2064 sssd-simple.5.xml:126 -#: sssd-ipa.5.xml:544 sssd-krb5.5.xml:432 -msgid "EXAMPLE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:1302 -#, no-wrap -msgid "" -"[sssd]\n" -"domains = LDAP\n" -"services = nss, pam\n" -"config_file_version = 2\n" -"\n" -"[nss]\n" -"filter_groups = root\n" -"filter_users = root\n" -"\n" -"[pam]\n" -"\n" -"[domain/LDAP]\n" -"id_provider = ldap\n" -"ldap_uri = ldap://ldap.example.com\n" -"ldap_search_base = dc=example,dc=com\n" -"\n" -"auth_provider = krb5\n" -"krb5_server = kerberos.example.com\n" -"krb5_realm = EXAMPLE.COM\n" -"cache_credentials = true\n" -"\n" -"min_id = 10000\n" -"max_id = 20000\n" -"enumerate = False\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1298 -msgid "" -"The following example shows a typical SSSD config. It does not describe " -"configuration of the domains themselves - refer to documentation on " -"configuring domains for more details. <placeholder type=\"programlisting\" " -"id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1333 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>pam_sss</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ldap.5.xml:10 sssd-ldap.5.xml:16 -msgid "sssd-ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:23 -msgid "" -"This manual page describes the configuration of LDAP domains for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. Refer to the <quote>FILE FORMAT</quote> section of the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for detailed syntax information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:35 -msgid "You can configure SSSD to use more than one LDAP domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:38 -msgid "" -"LDAP back end supports id, auth, access and chpass providers. If you want to " -"authenticate against an LDAP server either TLS/SSL or LDAPS is required. " -"<command>sssd</command> <emphasis>does not</emphasis> support authentication " -"over an unencrypted channel. If the LDAP server is used only as an identity " -"provider, an encrypted channel is not needed. Please refer to " -"<quote>ldap_access_filter</quote> config option for more information about " -"using LDAP as an access provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:49 sssd-simple.5.xml:69 sssd-ipa.5.xml:64 -#: sssd-krb5.5.xml:63 -msgid "CONFIGURATION OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:60 -msgid "ldap_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:63 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference. Refer to the <quote>FAILOVER</" -"quote> section for more information on failover and server redundancy. If " -"not specified, service discovery is enabled. For more information, refer to " -"the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:70 -msgid "The format of the URI must match the format defined in RFC 2732:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:73 -msgid "ldap[s]://<host>[:port]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:76 -msgid "" -"For explicit IPv6 addresses, <host> must be enclosed in brackets []" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:79 -msgid "example: ldap://[fc00::126:25]:389" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:85 -msgid "ldap_chpass_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:88 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference to change the password of a user. " -"Refer to the <quote>FAILOVER</quote> section for more information on " -"failover and server redundancy." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:95 -msgid "To enable service discovery ldap_chpass_dns_service_name must be set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:99 -msgid "Default: empty, i.e. ldap_uri is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:105 -msgid "ldap_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:108 -msgid "The default base DN to use for performing LDAP user operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:112 -msgid "" -"Starting with SSSD 1.7.0, SSSD supports multiple search bases using the " -"syntax:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:116 -msgid "search_base[?scope?[filter][?search_base?scope?[filter]]*]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:119 -msgid "The scope can be one of \"base\", \"onelevel\" or \"subtree\"." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:122 -msgid "" -"The filter must be a valid LDAP search filter as specified by http://www." -"ietf.org/rfc/rfc2254.txt" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:126 -msgid "Examples:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:129 -msgid "" -"ldap_search_base = dc=example,dc=com (which is equivalent to) " -"ldap_search_base = dc=example,dc=com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:134 -msgid "" -"ldap_search_base = cn=host_specific,dc=example,dc=com?subtree?" -"(host=thishost)?dc=example.com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:137 -msgid "" -"Note: It is unsupported to have multiple search bases which reference " -"identically-named objects (for example, groups with the same name in two " -"different search bases). This will lead to unpredictable behavior on client " -"machines." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:144 -msgid "" -"Default: If not set, the value of the defaultNamingContext or namingContexts " -"attribute from the RootDSE of the LDAP server is used. If " -"defaultNamingContext does not exists or has an empty value namingContexts is " -"used. The namingContexts attribute must have a single value with the DN of " -"the search base of the LDAP server to make this work. Multiple values are " -"are not supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:158 -msgid "ldap_schema (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:161 -msgid "" -"Specifies the Schema Type in use on the target LDAP server. Depending on " -"the selected schema, the default attribute names retrieved from the servers " -"may vary. The way that some attributes are handled may also differ. Three " -"schema types are currently supported: rfc2307 rfc2307bis IPA The main " -"difference between these schema types is how group memberships are recorded " -"in the server. With rfc2307, group members are listed by name in the " -"<emphasis>memberUid</emphasis> attribute. With rfc2307bis and IPA, group " -"members are listed by DN and stored in the <emphasis>member</emphasis> " -"attribute." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:180 -msgid "Default: rfc2307" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:186 -msgid "ldap_default_bind_dn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:189 -msgid "The default bind DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:196 -msgid "ldap_default_authtok_type (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:199 -msgid "The type of the authentication token of the default bind DN." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:203 -msgid "The two mechanisms currently supported are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:206 -msgid "password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:209 -msgid "obfuscated_password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:212 -msgid "Default: password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:218 -msgid "ldap_default_authtok (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:221 -msgid "" -"The authentication token of the default bind DN. Only clear text passwords " -"are currently supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:228 -msgid "ldap_user_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:231 -msgid "The object class of a user entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:234 -msgid "Default: posixAccount" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:240 -msgid "ldap_user_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:243 -msgid "The LDAP attribute that corresponds to the user's login name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:247 -msgid "Default: uid" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:253 -msgid "ldap_user_uid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:256 -msgid "The LDAP attribute that corresponds to the user's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:260 -msgid "Default: uidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:266 -msgid "ldap_user_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:269 -msgid "The LDAP attribute that corresponds to the user's primary group id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:273 sssd-ldap.5.xml:740 -msgid "Default: gidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:279 -msgid "ldap_user_gecos (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:282 -msgid "The LDAP attribute that corresponds to the user's gecos field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:286 -msgid "Default: gecos" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:292 -msgid "ldap_user_home_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:295 -msgid "The LDAP attribute that contains the name of the user's home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:299 -msgid "Default: homeDirectory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:305 -msgid "ldap_user_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:308 -msgid "The LDAP attribute that contains the path to the user's default shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:312 -msgid "Default: loginShell" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:318 -msgid "ldap_user_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:321 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP user object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:325 sssd-ldap.5.xml:766 sssd-ldap.5.xml:878 -msgid "Default: nsUniqueId" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:331 -msgid "ldap_user_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:334 sssd-ldap.5.xml:775 sssd-ldap.5.xml:887 -msgid "" -"The LDAP attribute that contains timestamp of the last modification of the " -"parent object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:338 sssd-ldap.5.xml:779 sssd-ldap.5.xml:894 -msgid "Default: modifyTimestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:344 -msgid "ldap_user_shadow_last_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:347 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (date of " -"the last password change)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:357 -msgid "Default: shadowLastChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:363 -msgid "ldap_user_shadow_min (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:366 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (minimum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:375 -msgid "Default: shadowMin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:381 -msgid "ldap_user_shadow_max (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:384 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (maximum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:393 -msgid "Default: shadowMax" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:399 -msgid "ldap_user_shadow_warning (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:402 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password warning period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:412 -msgid "Default: shadowWarning" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:418 -msgid "ldap_user_shadow_inactive (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:421 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password inactivity period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:431 -msgid "Default: shadowInactive" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:437 -msgid "ldap_user_shadow_expire (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:440 -msgid "" -"When using ldap_pwd_policy=shadow or ldap_account_expire_policy=shadow, this " -"parameter contains the name of an LDAP attribute corresponding to its " -"<citerefentry> <refentrytitle>shadow</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> counterpart (account expiration date)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:450 -msgid "Default: shadowExpire" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:456 -msgid "ldap_user_krb_last_pwd_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:459 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time of last password change in " -"kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:465 -msgid "Default: krbLastPwdChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:471 -msgid "ldap_user_krb_password_expiration (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:474 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time when current password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:480 -msgid "Default: krbPasswordExpiration" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:486 -msgid "ldap_user_ad_account_expires (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:489 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the expiration time of the account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:494 -msgid "Default: accountExpires" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:500 -msgid "ldap_user_ad_user_account_control (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:503 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the user account control bit field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:508 -msgid "Default: userAccountControl" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:514 -msgid "ldap_ns_account_lock (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:517 -msgid "" -"When using ldap_account_expire_policy=rhds or equivalent, this parameter " -"determines if access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:522 -msgid "Default: nsAccountLock" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:528 -msgid "ldap_user_nds_login_disabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:531 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines if " -"access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:535 sssd-ldap.5.xml:549 -msgid "Default: loginDisabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:541 -msgid "ldap_user_nds_login_expiration_time (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:544 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines until " -"which date access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:555 -msgid "ldap_user_nds_login_allowed_time_map (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:558 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines the " -"hours of a day in a week when access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:563 -msgid "Default: loginAllowedTimeMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:569 -msgid "ldap_user_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:572 -msgid "" -"The LDAP attribute that contains the user's Kerberos User Principal Name " -"(UPN)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:576 -msgid "Default: krbPrincipalName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:582 -msgid "ldap_user_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:585 -msgid "The LDAP attribute that contains the user's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:592 -msgid "ldap_force_upper_case_realm (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:595 -msgid "" -"Some directory servers, for example Active Directory, might deliver the " -"realm part of the UPN in lower case, which might cause the authentication to " -"fail. Set this option to a non-zero value if you want to use an upper-case " -"realm." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:608 -msgid "ldap_enumeration_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:611 -msgid "" -"Specifies how many seconds SSSD has to wait before refreshing its cache of " -"enumerated records." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:616 sssd-ldap.5.xml:1808 -msgid "Default: 300" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:622 -msgid "ldap_purge_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:625 -msgid "" -"Determine how often to check the cache for inactive entries (such as groups " -"with no members and users who have never logged in) and remove them to save " -"space." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:631 -msgid "Setting this option to zero will disable the cache cleanup operation." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:635 -msgid "Default: 10800 (12 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:641 -msgid "ldap_user_fullname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:644 -msgid "The LDAP attribute that corresponds to the user's full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:648 sssd-ldap.5.xml:727 sssd-ldap.5.xml:828 -#: sssd-ldap.5.xml:919 sssd-ldap.5.xml:1663 sssd-ldap.5.xml:1881 -#: sssd-ipa.5.xml:422 -msgid "Default: cn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:654 -msgid "ldap_user_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:657 -msgid "The LDAP attribute that lists the user's group memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:661 sssd-ipa.5.xml:326 -msgid "Default: memberOf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:667 -msgid "ldap_user_authorized_service (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:670 -msgid "" -"If access_provider=ldap and ldap_access_order=authorized_service, SSSD will " -"use the presence of the authorizedService attribute in the user's LDAP entry " -"to determine access privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:677 -msgid "" -"An explicit deny (!svc) is resolved first. Second, SSSD searches for " -"explicit allow (svc) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:682 -msgid "Default: authorizedService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:688 -msgid "ldap_user_authorized_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:691 -msgid "" -"If access_provider=ldap and ldap_access_order=host, SSSD will use the " -"presence of the host attribute in the user's LDAP entry to determine access " -"privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:697 -msgid "" -"An explicit deny (!host) is resolved first. Second, SSSD searches for " -"explicit allow (host) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:702 -msgid "Default: host" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:708 -msgid "ldap_group_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:711 -msgid "The object class of a group entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:714 -msgid "Default: posixGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:720 -msgid "ldap_group_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:723 -msgid "The LDAP attribute that corresponds to the group name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:733 -msgid "ldap_group_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:736 -msgid "The LDAP attribute that corresponds to the group's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:746 -msgid "ldap_group_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:749 -msgid "The LDAP attribute that contains the names of the group's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:753 -msgid "Default: memberuid (rfc2307) / member (rfc2307bis)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:759 -msgid "ldap_group_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:762 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP group object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:772 -msgid "ldap_group_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:785 -msgid "ldap_group_nesting_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:788 -msgid "" -"If ldap_schema is set to a schema format that supports nested groups (e.g. " -"RFC2307bis), then this option controls how many levels of nesting SSSD will " -"follow. This option has no effect on the RFC2307 schema." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:795 -msgid "Default: 2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:801 -msgid "ldap_netgroup_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:804 -msgid "The object class of a netgroup entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:807 -msgid "In IPA provider, ipa_netgroup_object_class should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:811 -msgid "Default: nisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:817 -msgid "ldap_netgroup_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:820 -msgid "The LDAP attribute that corresponds to the netgroup name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:824 -msgid "In IPA provider, ipa_netgroup_name should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:834 -msgid "ldap_netgroup_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:837 -msgid "The LDAP attribute that contains the names of the netgroup's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:841 -msgid "In IPA provider, ipa_netgroup_member should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:845 -msgid "Default: memberNisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:851 -msgid "ldap_netgroup_triple (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:854 -msgid "" -"The LDAP attribute that contains the (host, user, domain) netgroup triples." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:858 sssd-ldap.5.xml:891 -msgid "This option is not available in IPA provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:861 -msgid "Default: nisNetgroupTriple" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:867 -msgid "ldap_netgroup_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:870 -msgid "" -"The LDAP attribute that contains the UUID/GUID of an LDAP netgroup object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:874 -msgid "In IPA provider, ipa_netgroup_uuid should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:884 -msgid "ldap_netgroup_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:900 -msgid "ldap_service_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:903 -msgid "The object class of a service entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:906 -msgid "Default: ipService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:912 -msgid "ldap_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:915 -msgid "" -"The LDAP attribute that contains the name of service attributes and their " -"aliases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:925 -msgid "ldap_service_port (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:928 -msgid "The LDAP attribute that contains the port managed by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:932 -msgid "Default: ipServicePort" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:938 -msgid "ldap_service_proto (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:941 -msgid "" -"The LDAP attribute that contains the protocols understood by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:945 -msgid "Default: ipServiceProtocol" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:951 -msgid "ldap_service_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:954 -msgid "An optional base DN to restrict service searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:958 sssd-ldap.5.xml:1918 sssd-ldap.5.xml:1937 -#: sssd-ldap.5.xml:1956 sssd-ldap.5.xml:2019 sssd-ldap.5.xml:2041 -#: sssd-ipa.5.xml:163 sssd-ipa.5.xml:187 -msgid "" -"See <quote>ldap_search_base</quote> for information about configuring " -"multiple search bases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:963 sssd-ldap.5.xml:1923 sssd-ldap.5.xml:1942 -#: sssd-ldap.5.xml:1961 sssd-ldap.5.xml:2024 sssd-ldap.5.xml:2046 -#: sssd-ipa.5.xml:173 sssd-ipa.5.xml:192 -msgid "Default: the value of <emphasis>ldap_search_base</emphasis>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:970 -msgid "ldap_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:973 -msgid "" -"Specifies the timeout (in seconds) that ldap searches are allowed to run " -"before they are cancelled and cached results are returned (and offline mode " -"is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:979 -msgid "" -"Note: this option is subject to change in future versions of the SSSD. It " -"will likely be replaced at some point by a series of timeouts for specific " -"lookup types." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:985 sssd-ldap.5.xml:1027 sssd-ldap.5.xml:1042 -msgid "Default: 6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:991 -msgid "ldap_enumeration_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:994 -msgid "" -"Specifies the timeout (in seconds) that ldap searches for user and group " -"enumerations are allowed to run before they are cancelled and cached results " -"are returned (and offline mode is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1001 -msgid "Default: 60" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1007 -msgid "ldap_network_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1010 -msgid "" -"Specifies the timeout (in seconds) after which the <citerefentry> " -"<refentrytitle>poll</refentrytitle> <manvolnum>2</manvolnum> </citerefentry>/" -"<citerefentry> <refentrytitle>select</refentrytitle> <manvolnum>2</" -"manvolnum> </citerefentry> following a <citerefentry> " -"<refentrytitle>connect</refentrytitle> <manvolnum>2</manvolnum> </" -"citerefentry> returns in case of no activity." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1033 -msgid "ldap_opt_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1036 -msgid "" -"Specifies a timeout (in seconds) after which calls to synchronous LDAP APIs " -"will abort if no response is received. Also controls the timeout when " -"communicating with the KDC in case of SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1048 -msgid "ldap_connection_expire_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1051 -msgid "" -"Specifies a timeout (in seconds) that a connection to an LDAP server will be " -"maintained. After this time, the connection will be re-established. If used " -"in parallel with SASL/GSSAPI, the sooner of the two values (this value vs. " -"the TGT lifetime) will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1059 -msgid "Default: 900 (15 minutes)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1065 -msgid "ldap_page_size (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1068 -msgid "" -"Specify the number of records to retrieve from LDAP in a single request. " -"Some LDAP servers enforce a maximum limit per-request." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1073 -msgid "Default: 1000" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1079 -msgid "ldap_disable_paging" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1082 -msgid "" -"Disable the LDAP paging control. This option should be used if the LDAP " -"server reports that it supports the LDAP paging control in its RootDSE but " -"it is not enabled or does not behave properly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1088 -msgid "" -"Example: OpenLDAP servers with the paging control module installed on the " -"server but not enabled will report it in the RootDSE but be unable to use it." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1094 -msgid "" -"Example: 389 DS has a bug where it can only support a one paging control at " -"a time on a single connection. On busy clients, this can result in some " -"requests being denied." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1103 -msgid "ldap_deref_threshold (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1106 -msgid "" -"Specify the number of group members that must be missing from the internal " -"cache in order to trigger a dereference lookup. If less members are missing, " -"they are looked up individually." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1112 -msgid "" -"You can turn off dereference lookups completely by setting the value to 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1116 -msgid "" -"A dereference lookup is a means of fetching all group members in a single " -"LDAP call. Different LDAP servers may implement different dereference " -"methods. The currently supported servers are 389/RHDS, OpenLDAP and Active " -"Directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1124 -msgid "" -"<emphasis>Note:</emphasis> If any of the search bases specifies a search " -"filter, then the dereference lookup performance enhancement will be disabled " -"regardless of this setting." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1137 -msgid "ldap_tls_reqcert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1140 -msgid "" -"Specifies what checks to perform on server certificates in a TLS session, if " -"any. It can be specified as one of the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1146 -msgid "" -"<emphasis>never</emphasis> = The client will not request or check any server " -"certificate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1150 -msgid "" -"<emphasis>allow</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, it will be ignored and the session proceeds normally." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1157 -msgid "" -"<emphasis>try</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, the session is immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1163 -msgid "" -"<emphasis>demand</emphasis> = The server certificate is requested. If no " -"certificate is provided, or a bad certificate is provided, the session is " -"immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1169 -msgid "<emphasis>hard</emphasis> = Same as <quote>demand</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1173 -msgid "Default: hard" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1179 -msgid "ldap_tls_cacert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1182 -msgid "" -"Specifies the file that contains certificates for all of the Certificate " -"Authorities that <command>sssd</command> will recognize." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1187 sssd-ldap.5.xml:1205 sssd-ldap.5.xml:1246 -msgid "" -"Default: use OpenLDAP defaults, typically in <filename>/etc/openldap/ldap." -"conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1194 -msgid "ldap_tls_cacertdir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1197 -msgid "" -"Specifies the path of a directory that contains Certificate Authority " -"certificates in separate individual files. Typically the file names need to " -"be the hash of the certificate followed by '.0'. If available, " -"<command>cacertdir_rehash</command> can be used to create the correct names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1212 -msgid "ldap_tls_cert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1215 -msgid "Specifies the file that contains the certificate for the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1219 sssd-ldap.5.xml:1231 sssd-ldap.5.xml:1979 -#: sssd-ldap.5.xml:2006 sssd-krb5.5.xml:359 -msgid "Default: not set" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1225 -msgid "ldap_tls_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1228 -msgid "Specifies the file that contains the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1237 -msgid "ldap_tls_cipher_suite (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1240 -msgid "" -"Specifies acceptable cipher suites. Typically this is a colon sperated " -"list. See <citerefentry><refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> for format." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1253 -msgid "ldap_id_use_start_tls (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1256 -msgid "" -"Specifies that the id_provider connection must also use <systemitem class=" -"\"protocol\">tls</systemitem> to protect the channel." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1266 -msgid "ldap_sasl_mech (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1269 -msgid "" -"Specify the SASL mechanism to use. Currently only GSSAPI is tested and " -"supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1273 sssd-ldap.5.xml:1428 -msgid "Default: none" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1279 -msgid "ldap_sasl_authid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1282 -msgid "" -"Specify the SASL authorization id to use. When GSSAPI is used, this " -"represents the Kerberos principal used for authentication to the directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1287 -msgid "Default: host/machine.fqdn@REALM" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1293 -msgid "ldap_sasl_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1296 -msgid "" -"If set to true, the LDAP library would perform a reverse lookup to " -"canonicalize the host name during a SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1301 -msgid "Default: false;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1307 -msgid "ldap_krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1310 -msgid "Specify the keytab to use when using SASL/GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1313 -msgid "Default: System keytab, normally <filename>/etc/krb5.keytab</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1319 -msgid "ldap_krb5_init_creds (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1322 -msgid "" -"Specifies that the id_provider should init Kerberos credentials (TGT). This " -"action is performed only if SASL is used and the mechanism selected is " -"GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1334 -msgid "ldap_krb5_ticket_lifetime (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1337 -msgid "Specifies the lifetime in seconds of the TGT if GSSAPI is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1341 -msgid "Default: 86400 (24 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1347 sssd-krb5.5.xml:74 -msgid "krb5_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1350 sssd-krb5.5.xml:77 -msgid "" -"Specifies the comma-separated list of IP addresses or hostnames of the " -"Kerberos servers to which SSSD should connect in the order of preference. " -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. An optional port number (preceded by a " -"colon) may be appended to the addresses or hostnames. If empty, service " -"discovery is enabled - for more information, refer to the <quote>SERVICE " -"DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1362 sssd-krb5.5.xml:89 -msgid "" -"When using service discovery for KDC or kpasswd servers, SSSD first searches " -"for DNS entries that specify _udp as the protocol and falls back to _tcp if " -"none are found." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1367 sssd-krb5.5.xml:94 -msgid "" -"This option was named <quote>krb5_kdcip</quote> in earlier releases of SSSD. " -"While the legacy name is recognized for the time being, users are advised to " -"migrate their config files to use <quote>krb5_server</quote> instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1376 sssd-ipa.5.xml:216 sssd-krb5.5.xml:103 -msgid "krb5_realm (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1379 -msgid "Specify the Kerberos REALM (for SASL/GSSAPI auth)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1382 -msgid "Default: System defaults, see <filename>/etc/krb5.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1388 sssd-ipa.5.xml:231 sssd-krb5.5.xml:409 -msgid "krb5_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1391 -msgid "" -"Specifies if the host principal should be canonicalized when connecting to " -"LDAP server. This feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1403 -msgid "ldap_pwd_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1406 -msgid "" -"Select the policy to evaluate the password expiration on the client side. " -"The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1411 -msgid "" -"<emphasis>none</emphasis> - No evaluation on the client side. This option " -"cannot disable server-side password policies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1416 -msgid "" -"<emphasis>shadow</emphasis> - Use <citerefentry><refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum></citerefentry> style attributes to " -"evaluate if the password has expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1422 -msgid "" -"<emphasis>mit_kerberos</emphasis> - Use the attributes used by MIT Kerberos " -"to determine if the password has expired. Use chpass_provider=krb5 to update " -"these attributes when the password is changed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1434 -msgid "ldap_referrals (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1437 -msgid "Specifies whether automatic referral chasing should be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1441 -msgid "" -"Please note that sssd only supports referral chasing when it is compiled " -"with OpenLDAP version 2.4.13 or higher." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1452 -msgid "ldap_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1455 -msgid "Specifies the service name to use when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1459 -msgid "Default: ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1465 -msgid "ldap_chpass_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1468 -msgid "" -"Specifies the service name to use to find an LDAP server which allows " -"password changes when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1473 -msgid "Default: not set, i.e. service discovery is disabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1479 -msgid "ldap_access_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1482 -msgid "" -"If using access_provider = ldap, this option is mandatory. It specifies an " -"LDAP search filter criteria that must be met for the user to be granted " -"access on this host. If access_provider = ldap and this option is not set, " -"it will result in all users being denied access. Use access_provider = allow " -"to change this default behavior." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1492 sssd-ldap.5.xml:1982 -msgid "Example:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1495 -#, no-wrap -msgid "" -"access_provider = ldap\n" -"ldap_access_filter = memberOf=cn=allowedusers,ou=Groups,dc=example,dc=com\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1499 -msgid "" -"This example means that access to this host is restricted to members of the " -"\"allowedusers\" group in ldap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1504 -msgid "" -"Offline caching for this feature is limited to determining whether the " -"user's last online login was granted access permission. If they were granted " -"access during their last login, they will continue to be granted access " -"while offline and vice-versa." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1512 sssd-ldap.5.xml:1562 -msgid "Default: Empty" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1518 -msgid "ldap_account_expire_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1521 -msgid "" -"With this option a client side evaluation of access control attributes can " -"be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1525 -msgid "" -"Please note that it is always recommended to use server side access control, " -"i.e. the LDAP server should deny the bind request with a suitable error code " -"even if the password is correct." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1532 -msgid "The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1535 -msgid "" -"<emphasis>shadow</emphasis>: use the value of ldap_user_shadow_expire to " -"determine if the account is expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1540 -msgid "" -"<emphasis>ad</emphasis>: use the value of the 32bit field " -"ldap_user_ad_user_account_control and allow access if the second bit is not " -"set. If the attribute is missing access is granted. Also the expiration time " -"of the account is checked." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1547 -msgid "" -"<emphasis>rhds</emphasis>, <emphasis>ipa</emphasis>, <emphasis>389ds</" -"emphasis>: use the value of ldap_ns_account_lock to check if access is " -"allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1553 -msgid "" -"<emphasis>nds</emphasis>: the values of " -"ldap_user_nds_login_allowed_time_map, ldap_user_nds_login_disabled and " -"ldap_user_nds_login_expiration_time are used to check if access is allowed. " -"If both attributes are missing access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1568 -msgid "ldap_access_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1571 -msgid "Comma separated list of access control options. Allowed values are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1575 -msgid "<emphasis>filter</emphasis>: use ldap_access_filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1578 -msgid "<emphasis>expire</emphasis>: use ldap_account_expire_policy" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1582 -msgid "" -"<emphasis>authorized_service</emphasis>: use the authorizedService attribute " -"to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1587 -msgid "<emphasis>host</emphasis>: use the host attribute to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1591 -msgid "Default: filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1594 -msgid "" -"Please note that it is a configuration error if a value is used more than " -"once." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1601 -msgid "ldap_deref (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1604 -msgid "" -"Specifies how alias dereferencing is done when performing a search. The " -"following options are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1609 -msgid "<emphasis>never</emphasis>: Aliases are never dereferenced." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1613 -msgid "" -"<emphasis>searching</emphasis>: Aliases are dereferenced in subordinates of " -"the base object, but not in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1618 -msgid "" -"<emphasis>finding</emphasis>: Aliases are only dereferenced when locating " -"the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1623 -msgid "" -"<emphasis>always</emphasis>: Aliases are dereferenced both in searching and " -"in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1628 -msgid "" -"Default: Empty (this is handled as <emphasis>never</emphasis> by the LDAP " -"client libraries)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:51 -msgid "" -"All of the common configuration options that apply to SSSD domains also " -"apply to LDAP domains. Refer to the <quote>DOMAIN SECTIONS</quote> section " -"of the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for full details. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1639 -msgid "SUDO OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1644 -msgid "ldap_sudorule_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1647 -msgid "The object class of a sudo rule entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1650 -msgid "Default: sudoRole" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1656 -msgid "ldap_sudorule_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1659 -msgid "The LDAP attribute that corresponds to the sudo rule name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1669 -msgid "ldap_sudorule_command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1672 -msgid "The LDAP attribute that corresponds to the command name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1676 -msgid "Default: sudoCommand" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1682 -msgid "ldap_sudorule_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1685 -msgid "" -"The LDAP attribute that corresponds to the host name (or host IP address, " -"host IP network, or host netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1690 -msgid "Default: sudoHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1696 -msgid "ldap_sudorule_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1699 -msgid "" -"The LDAP attribute that corresponds to the user name (or UID, group name or " -"user's netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1703 -msgid "Default: sudoUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1709 -msgid "ldap_sudorule_option (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1712 -msgid "The LDAP attribute that corresponds to the sudo options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1716 -msgid "Default: sudoOption" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1722 -msgid "ldap_sudorule_runasuser (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1725 -msgid "" -"The LDAP attribute that corresponds to the user name that commands may be " -"run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1729 -msgid "Default: sudoRunAsUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1735 -msgid "ldap_sudorule_runasgroup (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1738 -msgid "" -"The LDAP attribute that corresponds to the group name or group GID that " -"commands may be run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1742 -msgid "Default: sudoRunAsGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1748 -msgid "ldap_sudorule_notbefore (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1751 -msgid "" -"The LDAP attribute that corresponds to the start date/time for when the sudo " -"rule is valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1755 -msgid "Default: sudoNotBefore" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1761 -msgid "ldap_sudorule_notafter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1764 -msgid "" -"The LDAP attribute that corresponds to the expiration date/time, after which " -"the sudo rule will no longer be valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1769 -msgid "Default: sudoNotAfter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1775 -msgid "ldap_sudorule_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1778 -msgid "The LDAP attribute that corresponds to the ordering index of the rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1782 -msgid "Default: sudoOrder" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1788 -msgid "ldap_sudo_refresh_enabled (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1791 -msgid "" -"Enables periodical download of all sudo rules. The cache is purged before " -"each update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1801 -msgid "ldap_sudo_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1804 -msgid "" -"How many seconds SSSD has to wait before refreshing its cache of sudo rules." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1642 -msgid "<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1815 -msgid "" -"This manual page only describes attribute name mapping. For detailed " -"explanation of sudo related attribute semantics, see <citerefentry> " -"<refentrytitle>sudoers.ldap</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1825 -msgid "AUTOFS OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1827 -msgid "" -"Please note that the default values correspond to the default schema which " -"is RFC2307." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1834 -msgid "ldap_autofs_map_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1837 sssd-ldap.5.xml:1863 -msgid "The object class of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1840 sssd-ldap.5.xml:1867 -msgid "Default: automountMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1847 -msgid "ldap_autofs_map_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1850 -msgid "The name of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1853 -msgid "Default: ou" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1860 -msgid "ldap_autofs_entry_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1874 -msgid "ldap_autofs_entry_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1877 sssd-ldap.5.xml:1891 -msgid "" -"The key of an automount entry in LDAP. The entry usually corresponds to a " -"mount point." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1888 -msgid "ldap_autofs_entry_value (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1895 -msgid "Default: automountInformation" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1832 -msgid "" -"<placeholder type=\"variablelist\" id=\"0\"/> <placeholder type=" -"\"variablelist\" id=\"1\"/> <placeholder type=\"variablelist\" id=\"2\"/> " -"<placeholder type=\"variablelist\" id=\"3\"/> <placeholder type=" -"\"variablelist\" id=\"4\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1904 -msgid "ADVANCED OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1911 -msgid "ldap_netgroup_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1914 -msgid "" -"An optional base DN to restrict netgroup searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1930 -msgid "ldap_user_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1933 -msgid "An optional base DN to restrict user searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1949 -msgid "ldap_group_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1952 -msgid "An optional base DN to restrict group searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1968 -msgid "ldap_user_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1971 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict user searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1975 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_user_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1985 -#, no-wrap -msgid "" -" ldap_user_search_filter = (loginShell=/bin/tcsh)\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1988 -msgid "" -"This filter would restrict user searches to users that have their shell set " -"to /bin/tcsh." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1995 -msgid "ldap_group_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1998 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict group searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2002 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_group_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2012 -msgid "ldap_sudo_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2015 -msgid "" -"An optional base DN to restrict sudo rules searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2034 -msgid "ldap_autofs_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2037 -msgid "" -"An optional base DN to restrict automounter searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1906 -msgid "" -"These options are supported by LDAP domains, but they should be used with " -"caution. Please include them in your configuration only if you know what you " -"are doing. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2066 -msgid "" -"The following example assumes that SSSD is correctly configured and LDAP is " -"set to one of the domains in the <replaceable>[domains]</replaceable> " -"section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ldap.5.xml:2072 -#, no-wrap -msgid "" -" [domain/LDAP]\n" -" id_provider = ldap\n" -" auth_provider = ldap\n" -" ldap_uri = ldap://ldap.mydomain.org\n" -" ldap_search_base = dc=mydomain,dc=org\n" -" ldap_tls_reqcert = demand\n" -" cache_credentials = true\n" -" enumerate = true\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2071 sssd-simple.5.xml:134 sssd-ipa.5.xml:552 -#: sssd-krb5.5.xml:441 -msgid "<placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:2085 sssd_krb5_locator_plugin.8.xml:61 -msgid "NOTES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2087 -msgid "" -"The descriptions of some of the configuration options in this manual page " -"are based on the <citerefentry> <refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page from the OpenLDAP 2.4 " -"distribution." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2098 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <refentryinfo> -#: pam_sss.8.xml:8 include/upstream.xml:2 -msgid "" -"<productname>SSSD</productname> <orgname>The SSSD upstream - http://" -"fedorahosted.org/sssd</orgname>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: pam_sss.8.xml:13 pam_sss.8.xml:18 -msgid "pam_sss" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: pam_sss.8.xml:19 -msgid "PAM module for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: pam_sss.8.xml:24 -msgid "" -"<command>pam_sss.so</command> <arg choice='opt'> <replaceable>quiet</" -"replaceable> </arg> <arg choice='opt'> <replaceable>forward_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_first_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_authtok</" -"replaceable> </arg> <arg choice='opt'> <replaceable>retry=N</replaceable> </" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:45 -msgid "" -"<command>pam_sss.so</command> is the PAM interface to the System Security " -"Services daemon (SSSD). Errors and results are logged through <command>syslog" -"(3)</command> with the LOG_AUTHPRIV facility." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:55 -msgid "<option>quiet</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:58 -msgid "Suppress log messages for unknown users." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:63 -msgid "<option>forward_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:66 -msgid "" -"If <option>forward_pass</option> is set the entered password is put on the " -"stack for other PAM modules to use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:73 -msgid "<option>use_first_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:76 -msgid "" -"The argument use_first_pass forces the module to use a previous stacked " -"modules password and will never prompt the user - if no password is " -"available or the password is not appropriate, the user will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:84 -msgid "<option>use_authtok</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:87 -msgid "" -"When password changing enforce the module to set the new password to the one " -"provided by a previously stacked password module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:94 -msgid "<option>retry=N</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:97 -msgid "" -"If specified the user is asked another N times for a password if " -"authentication fails. Default is 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:99 -msgid "" -"Please note that this option might not work as expected if the application " -"calling PAM handles the user dialog on its own. A typical example is " -"<command>sshd</command> with <option>PasswordAuthentication</option>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:110 -msgid "MODULE TYPES PROVIDED" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:111 -msgid "" -"All module types (<option>account</option>, <option>auth</option>, " -"<option>password</option> and <option>session</option>) are provided." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:117 -msgid "FILES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:118 -msgid "" -"If a password reset by root fails, because the corresponding SSSD provider " -"does not support password resets, an individual message can be displayed. " -"This message can e.g. contain instructions about how to reset a password." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:123 -msgid "" -"The message is read from the file <filename>pam_sss_pw_reset_message.LOC</" -"filename> where LOC stands for a locale string returned by <citerefentry> " -"<refentrytitle>setlocale</refentrytitle><manvolnum>3</manvolnum> </" -"citerefentry>. If there is no matching file the content of " -"<filename>pam_sss_pw_reset_message.txt</filename> is displayed. Root must be " -"the owner of the files and only root may have read and write permissions " -"while all other users must have only read permissions." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:133 -msgid "" -"These files are searched in the directory <filename>/etc/sssd/customize/" -"DOMAIN_NAME/</filename>. If no matching file is present a generic message is " -"displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:141 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd_krb5_locator_plugin.8.xml:10 sssd_krb5_locator_plugin.8.xml:15 -msgid "sssd_krb5_locator_plugin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:22 -msgid "" -"The Kerberos locator plugin <command>sssd_krb5_locator_plugin</command> is " -"used by the Kerberos provider of <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry> to tell the Kerberos " -"libraries what Realm and which KDC to use. Typically this is done in " -"<citerefentry> <refentrytitle>krb5.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> which is always read by the Kerberos libraries. " -"To simplify the configuration the Realm and the KDC can be defined in " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> as described in <citerefentry> " -"<refentrytitle>sssd-krb5.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry> puts the Realm and the name or IP address of the KDC into " -"the environment variables SSSD_KRB5_REALM and SSSD_KRB5_KDC respectively. " -"When <command>sssd_krb5_locator_plugin</command> is called by the kerberos " -"libraries it reads and evaluates these variables and returns them to the " -"libraries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:63 -msgid "" -"Not all Kerberos implementations support the use of plugins. If " -"<command>sssd_krb5_locator_plugin</command> is not available on your system " -"you have to edit /etc/krb5.conf to reflect your Kerberos setup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:69 -msgid "" -"If the environment variable SSSD_KRB5_LOCATOR_DEBUG is set to any value " -"debug messages will be sent to stderr." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:77 -msgid "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-simple.5.xml:10 sssd-simple.5.xml:16 -msgid "sssd-simple" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd-simple.5.xml:17 -msgid "the configuration file for SSSD's 'simple' access-control provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:24 -msgid "" -"This manual page describes the configuration of the simple access-control " -"provider for <citerefentry> <refentrytitle>sssd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry>. For a detailed syntax reference, " -"refer to the <quote>FILE FORMAT</quote> section of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:38 -msgid "" -"The simple access provider grants or denies access based on an access or " -"deny list of user or group names. The following rules apply:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:43 -msgid "If all lists are empty, access is granted" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:47 -msgid "" -"If any list is provided, the order of evaluation is allow,deny. This means " -"that any matching deny rule will supersede any matched allow rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:54 -msgid "" -"If either or both \"allow\" lists are provided, all users are denied unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:60 -msgid "" -"If only \"deny\" lists are provided, all users are granted access unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:78 -msgid "simple_allow_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:81 -msgid "Comma separated list of users who are allowed to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:88 -msgid "simple_deny_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:91 -msgid "Comma separated list of users who are explicitly denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:97 -msgid "simple_allow_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:100 -msgid "" -"Comma separated list of groups that are allowed to log in. This applies only " -"to groups within this SSSD domain. Local groups are not evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:108 -msgid "simple_deny_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:111 -msgid "" -"Comma separated list of groups that are explicitly denied access. This " -"applies only to groups within this SSSD domain. Local groups are not " -"evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:70 sssd-ipa.5.xml:65 -msgid "" -"Refer to the section <quote>DOMAIN SECTIONS</quote> of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page for details on the configuration of an SSSD " -"domain. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:120 -msgid "" -"Please note that it is an configuration error if both, simple_allow_users " -"and simple_deny_users, are defined." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:128 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the simple access provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-simple.5.xml:135 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" access_provider = simple\n" -" simple_allow_users = user1, user2\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:145 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ipa.5.xml:10 sssd-ipa.5.xml:16 -msgid "sssd-ipa" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:23 -msgid "" -"This manual page describes the configuration of the IPA provider for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. For a detailed syntax reference, refer to the <quote>FILE " -"FORMAT</quote> section of the <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:36 -msgid "" -"The IPA provider is a back end used to connect to an IPA server. (Refer to " -"the freeipa.org web site for information about IPA servers.) This provider " -"requires that the machine be joined to the IPA domain; configuration is " -"almost entirely self-discovered and obtained directly from the server." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:43 -msgid "" -"The IPA provider accepts the same options used by the <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> identity provider and the <citerefentry> <refentrytitle>sssd-" -"krb5</refentrytitle> <manvolnum>5</manvolnum> </citerefentry> authentication " -"provider with some exceptions described below." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:55 -msgid "" -"However, it is neither necessary nor recommended to set these options. IPA " -"provider can also be used as an access and chpass provider. As an access " -"provider it uses HBAC (host-based access control) rules. Please refer to " -"freeipa.org for more information about HBAC. No configuration of access " -"provider is required on the client side." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:72 -msgid "ipa_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:75 -msgid "" -"Specifies the name of the IPA domain. This is optional. If not provided, " -"the configuration domain name is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:83 -msgid "ipa_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:86 -msgid "" -"The comma-separated list of IP addresses or hostnames of the IPA servers to " -"which SSSD should connect in the order of preference. For more information " -"on failover and server redundancy, see the <quote>FAILOVER</quote> section. " -"This is optional if autodiscovery is enabled. For more information on " -"service discovery, refer to the the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:99 -msgid "ipa_hostname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:102 -msgid "" -"Optional. May be set on machines where the hostname(5) does not reflect the " -"fully qualified name used in the IPA domain to identify this host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:110 -msgid "ipa_dyndns_update (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:113 -msgid "" -"Optional. This option tells SSSD to automatically update the DNS server " -"built into FreeIPA v2 with the IP address of this client." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:118 -msgid "" -"NOTE: On older systems (such as RHEL 5), for this behavior to work reliably, " -"the default Kerberos realm must be set properly in /etc/krb5.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:129 -msgid "ipa_dyndns_iface (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:132 -msgid "" -"Optional. Applicable only when ipa_dyndns_update is true. Choose the " -"interface whose IP address should be used for dynamic DNS updates." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:137 -msgid "Default: Use the IP address of the IPA LDAP connection" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:143 -msgid "ipa_hbac_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:146 -msgid "Optional. Use the given string as search base for HBAC related objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:150 -msgid "Default: Use base DN" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:156 -msgid "ipa_host_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:159 -msgid "Optional. Use the given string as search base for host objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:168 -msgid "" -"If filter is given in any of search bases and " -"<emphasis>ipa_hbac_support_srchost</emphasis> is set to False, the filter " -"will be ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:180 -msgid "ipa_selinux_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:183 -msgid "Optional. Use the given string as search base for SELinux user maps." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:199 sssd-krb5.5.xml:229 -msgid "krb5_validate (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:202 sssd-krb5.5.xml:232 -msgid "" -"Verify with the help of krb5_keytab that the TGT obtained has not been " -"spoofed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:209 -msgid "" -"Note that this default differs from the traditional Kerberos provider back " -"end." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:219 -msgid "" -"The name of the Kerberos realm. This is optional and defaults to the value " -"of <quote>ipa_domain</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:223 -msgid "" -"The name of the Kerberos realm has a special meaning in IPA - it is " -"converted into the base DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:234 -msgid "" -"Specifies if the host and user principal should be canonicalized when " -"connecting to IPA LDAP and also for AS requests. This feature is available " -"with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:247 -msgid "ipa_hbac_refresh (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:250 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server. " -"This will reduce the latency and load on the IPA server if there are many " -"access-control requests made in a short period." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:257 -msgid "Default: 5 (seconds)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:262 -msgid "ipa_hbac_treat_deny_as (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:265 -msgid "" -"This option specifies how to treat the deprecated DENY-type HBAC rules. As " -"of FreeIPA v2.1, DENY rules are no longer supported on the server. All users " -"of FreeIPA will need to migrate their rules to use only the ALLOW rules. The " -"client will support two modes of operation during this transition period:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:274 -msgid "" -"<emphasis>DENY_ALL</emphasis>: If any HBAC DENY rules are detected, all " -"users will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:279 -msgid "" -"<emphasis>IGNORE</emphasis>: SSSD will ignore any DENY rules. Be very " -"careful with this option, as it may result in opening unintended access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:284 -msgid "Default: DENY_ALL" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:289 -msgid "ipa_hbac_support_srchost (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:292 -msgid "" -"If this is set to false, then srchost as given to SSSD by PAM will be " -"ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:296 -msgid "" -"Note that if set to <emphasis>False</emphasis>, this option casuses filters " -"given in <emphasis>ipa_host_search_base</emphasis> to be ignored;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:307 -msgid "ipa_automount_location (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:310 -msgid "The automounter location this IPA client will be using" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:313 -msgid "Default: The location named \"default\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:319 -msgid "ipa_netgroup_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:322 -msgid "The LDAP attribute that lists netgroup's memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:331 -msgid "ipa_netgroup_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:334 -msgid "" -"The LDAP attribute that lists system users and groups that are direct " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:339 sssd-ipa.5.xml:434 -msgid "Default: memberUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:344 -msgid "ipa_netgroup_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:347 -msgid "" -"The LDAP attribute that lists hosts and host groups that are direct members " -"of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:351 sssd-ipa.5.xml:446 -msgid "Default: memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:356 -msgid "ipa_netgroup_member_ext_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:359 -msgid "" -"The LDAP attribute that lists FQDNs of hosts and host groups that are " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:363 -msgid "Default: externalHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:368 -msgid "ipa_netgroup_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:371 -msgid "The LDAP attribute that contains NIS domain name of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:375 -msgid "Default: nisDomainName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:381 -msgid "ipa_host_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:384 sssd-ipa.5.xml:407 -msgid "The object class of a host entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:387 sssd-ipa.5.xml:410 -msgid "Default: ipaHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:392 -msgid "ipa_host_fqdn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:395 -msgid "The LDAP attribute that contains FQDN of the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:398 -msgid "Default: fqdn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:404 -msgid "ipa_selinux_usermap_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:415 -msgid "ipa_selinux_usermap_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:418 -msgid "The LDAP attribute that contains the name of SELinux usermap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:427 -msgid "ipa_selinux_usermap_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:430 -msgid "" -"The LDAP attribute that contains all users / groups this rule match against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:439 -msgid "ipa_selinux_usermap_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:442 -msgid "" -"The LDAP attribute that contains all hosts / hostgroups this rule match " -"against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:451 -msgid "ipa_selinux_usermap_see_also (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:454 -msgid "" -"The LDAP attribute that contains DN of HBAC rule which can be used for " -"matching instead of memberUser and memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:459 -msgid "Default: seeAlso" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:464 -msgid "ipa_selinux_usermap_selinux_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:467 -msgid "The LDAP attribute that contains SELinux user string itself." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:471 -msgid "Default: ipaSELinuxUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:476 -msgid "ipa_selinux_usermap_enabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:479 -msgid "" -"The LDAP attribute that contains whether or not is user map enabled for " -"usage." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:483 -msgid "Default: ipaEnabledFlag" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:488 -msgid "ipa_selinux_usermap_user_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:491 -msgid "The LDAP attribute that contains user category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:495 -msgid "Default: userCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:500 -msgid "ipa_selinux_usermap_host_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:503 -msgid "The LDAP attribute that contains host category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:507 -msgid "Default: hostCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:512 -msgid "ipa_selinux_usermap_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:515 -msgid "The LDAP attribute that contains unique ID of the user map." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:519 -msgid "Default: ipaUniqueID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:524 -msgid "ipa_host_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:527 -msgid "The LDAP attribute that contains the host's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:531 -msgid "Default: ipaSshPubKey" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:546 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the ipa provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ipa.5.xml:553 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" id_provider = ipa\n" -" ipa_server = ipaserver.example.com\n" -" ipa_hostname = myhost.example.com\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:564 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.8.xml:10 sssd.8.xml:15 -msgid "sssd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.8.xml:16 -msgid "System Security Services Daemon" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sssd.8.xml:21 -msgid "" -"<command>sssd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:31 -msgid "" -"<command>SSSD</command> provides a set of daemons to manage access to remote " -"directories and authentication mechanisms. It provides an NSS and PAM " -"interface toward the system and a pluggable backend system to connect to " -"multiple different account sources as well as D-Bus interface. It is also " -"the basis to provide client auditing and policy services for projects like " -"FreeIPA. It provides a more robust database to store local users as well as " -"extended user data." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:46 -msgid "" -"<option>-d</option>,<option>--debug-level</option> <replaceable>LEVEL</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:53 -msgid "<option>--debug-timestamps=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:57 -msgid "<emphasis>1</emphasis>: Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:60 -msgid "<emphasis>0</emphasis>: Disable timestamp in the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:69 -msgid "<option>--debug-microseconds=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:73 -msgid "" -"<emphasis>1</emphasis>: Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:76 -msgid "<emphasis>0</emphasis>: Disable microseconds in timestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:79 -msgid "Default: 0" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:85 -msgid "<option>-f</option>,<option>--debug-to-files</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:89 -msgid "" -"Send the debug output to files instead of stderr. By default, the log files " -"are stored in <filename>/var/log/sssd</filename> and there are separate log " -"files for every SSSD service and domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:97 -msgid "<option>-D</option>,<option>--daemon</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:101 -msgid "Become a daemon after starting up." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:107 -msgid "<option>-i</option>,<option>--interactive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:111 -msgid "Run in the foreground, don't become a daemon." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:117 sss_debuglevel.8.xml:42 -msgid "<option>-c</option>,<option>--config</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:121 sss_debuglevel.8.xml:46 -msgid "" -"Specify a non-default config file. The default is <filename>/etc/sssd/sssd." -"conf</filename>. For reference on the config file syntax and options, " -"consult the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:135 -msgid "<option>--version</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:139 -msgid "Print version number and exit." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.8.xml:147 -msgid "Signals" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:150 -msgid "SIGTERM/SIGINT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:153 -msgid "" -"Informs the SSSD to gracefully terminate all of its child processes and then " -"shut down the monitor." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:159 -msgid "SIGHUP" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:162 -msgid "" -"Tells the SSSD to stop writing to its current debug file descriptors and to " -"close and reopen them. This is meant to facilitate log rolling with programs " -"like logrotate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:170 -msgid "SIGUSR1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:173 -msgid "" -"Tells the SSSD to simulate offline operation for one minute. This is mostly " -"useful for testing purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:179 -msgid "SIGUSR2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:182 -msgid "" -"Tells the SSSD to go online immediately. This is mostly useful for testing " -"purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:193 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_obfuscate.8.xml:10 sss_obfuscate.8.xml:15 -msgid "sss_obfuscate" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_obfuscate.8.xml:16 -msgid "obfuscate a clear text password" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_obfuscate.8.xml:21 -msgid "" -"<command>sss_obfuscate</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>[PASSWORD]</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:32 -msgid "" -"<command>sss_obfuscate</command> converts a given password into human-" -"unreadable format and places it into appropriate domain section of the SSSD " -"config file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:37 -msgid "" -"The cleartext password is read from standard input or entered " -"interactively. The obfuscated password is put into " -"<quote>ldap_default_authtok</quote> parameter of a given SSSD domain and the " -"<quote>ldap_default_authtok_type</quote> parameter is set to " -"<quote>obfuscated_password</quote>. Refer to <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more details on these parameters." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:49 -msgid "" -"Please note that obfuscating the password provides <emphasis>no real " -"security benefit</emphasis> as it is still possible for an attacker to " -"reverse-engineer the password back. Using better authentication mechanisms " -"such as client side certificates or GSSAPI is <emphasis>strongly</emphasis> " -"advised." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:63 -msgid "<option>-s</option>,<option>--stdin</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:67 -msgid "The password to obfuscate will be read from standard input." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:74 sss_ssh_authorizedkeys.1.xml:82 -#: sss_ssh_knownhostsproxy.1.xml:81 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>DOMAIN</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:79 -msgid "" -"The SSSD domain to use the password in. The default name is <quote>default</" -"quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:86 -msgid "" -"<option>-f</option>,<option>--file</option> <replaceable>FILE</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:91 -msgid "Read the config file specified by the positional parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:95 -msgid "Default: <filename>/etc/sssd/sssd.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:105 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_useradd.8.xml:10 sss_useradd.8.xml:15 -msgid "sss_useradd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_useradd.8.xml:16 -msgid "create a new user" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_useradd.8.xml:21 -msgid "" -"<command>sss_useradd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:32 -msgid "" -"<command>sss_useradd</command> creates a new user account using the values " -"specified on the command line plus the default values from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:43 -msgid "" -"<option>-u</option>,<option>--uid</option> <replaceable>UID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:48 -msgid "" -"Set the UID of the user to the value of <replaceable>UID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:55 sss_usermod.8.xml:43 -msgid "" -"<option>-c</option>,<option>--gecos</option> <replaceable>COMMENT</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:60 sss_usermod.8.xml:48 -msgid "" -"Any text string describing the user. Often used as the field for the user's " -"full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:67 sss_usermod.8.xml:55 -msgid "" -"<option>-h</option>,<option>--home</option> <replaceable>HOME_DIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:72 -msgid "" -"The home directory of the user account. The default is to append the " -"<replaceable>LOGIN</replaceable> name to <filename>/home</filename> and use " -"that as the home directory. The base that is prepended before " -"<replaceable>LOGIN</replaceable> is tunable with <quote>user_defaults/" -"baseDirectory</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:82 sss_usermod.8.xml:66 -msgid "" -"<option>-s</option>,<option>--shell</option> <replaceable>SHELL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:87 -msgid "" -"The user's login shell. The default is currently <filename>/bin/bash</" -"filename>. The default can be changed with <quote>user_defaults/" -"defaultShell</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:96 -msgid "" -"<option>-G</option>,<option>--groups</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:101 -msgid "A list of existing groups this user is also a member of." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:107 -msgid "<option>-m</option>,<option>--create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:111 -msgid "" -"Create the user's home directory if it does not exist. The files and " -"directories contained in the skeleton directory (which can be defined with " -"the -k option or in the config file) will be copied to the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:121 -msgid "<option>-M</option>,<option>--no-create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:125 -msgid "" -"Do not create the user's home directory. Overrides configuration settings." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:132 -msgid "" -"<option>-k</option>,<option>--skel</option> <replaceable>SKELDIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:137 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<command>sss_useradd</command>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:143 -msgid "" -"This option is only valid if the <option>-m</option> (or <option>--create-" -"home</option>) option is specified, or creation of home directories is set " -"to TRUE in the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:152 sss_usermod.8.xml:124 -msgid "" -"<option>-Z</option>,<option>--selinux-user</option> " -"<replaceable>SELINUX_USER</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:157 -msgid "" -"The SELinux user for the user's login. If not specified, the system default " -"will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:169 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-krb5.5.xml:10 sssd-krb5.5.xml:16 -msgid "sssd-krb5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:23 -msgid "" -"This manual page describes the configuration of the Kerberos 5 " -"authentication backend for <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry>. For a detailed " -"syntax reference, please refer to the <quote>FILE FORMAT</quote> section of " -"the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:36 -msgid "" -"The Kerberos 5 authentication backend contains auth and chpass providers. It " -"must be paired with identity provider in order to function properly (for " -"example, id_provider = ldap). Some information required by the Kerberos 5 " -"authentication backend must be provided by the identity provider, such as " -"the user's Kerberos Principal Name (UPN). The configuration of the identity " -"provider should have an entry to specify the UPN. Please refer to the man " -"page for the applicable identity provider for details on how to configure " -"this." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:47 -msgid "" -"This backend also provides access control based on the .k5login file in the " -"home directory of the user. See <citerefentry> <refentrytitle>.k5login</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry> for more details. " -"Please note that an empty .k5login file will deny all access to this user. " -"To activate this feature use 'access_provider = krb5' in your sssd " -"configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:55 -msgid "" -"In the case where the UPN is not available in the identity backend " -"<command>sssd</command> will construct a UPN using the format " -"<replaceable>username</replaceable>@<replaceable>krb5_realm</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:106 -msgid "" -"The name of the Kerberos realm. This option is required and must be " -"specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:113 -msgid "krb5_kpasswd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:116 -msgid "" -"If the change password service is not running on the KDC alternative servers " -"can be defined here. An optional port number (preceded by a colon) may be " -"appended to the addresses or hostnames." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:122 -msgid "" -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. Please note that even if there are no more " -"kpasswd servers to try the back end is not switch to offline if " -"authentication against the KDC is still possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:129 -msgid "Default: Use the KDC" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:135 -msgid "krb5_ccachedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:138 -msgid "" -"Directory to store credential caches. All the substitution sequences of " -"krb5_ccname_template can be used here, too, except %d and %P. If the " -"directory does not exist it will be created. If %u, %U, %p or %h are used a " -"private directory belonging to the user is created. Otherwise a public " -"directory with restricted deletion flag (aka sticky bit, see <citerefentry> " -"<refentrytitle>chmod</refentrytitle> <manvolnum>1</manvolnum> </" -"citerefentry> for details) is created." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:151 -msgid "Default: /tmp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:157 -msgid "krb5_ccname_template (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:171 -msgid "login UID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:174 -msgid "%p" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:175 -msgid "principal name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:179 -msgid "%r" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:180 -msgid "realm name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:183 -msgid "%h" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:184 -msgid "home directory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:189 -msgid "value of krb5ccache_dir" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:194 -msgid "%P" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:195 -msgid "the process ID of the sssd client" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:160 -msgid "" -"Location of the user's credential cache. Currently only file based " -"credential caches are supported. In the template the following sequences are " -"substituted: <placeholder type=\"variablelist\" id=\"0\"/> If the template " -"ends with 'XXXXXX' mkstemp(3) is used to create a unique filename in a safe " -"way." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:209 -msgid "Default: FILE:%d/krb5cc_%U_XXXXXX" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:215 -msgid "krb5_auth_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:218 -msgid "" -"Timeout in seconds after an online authentication or change password request " -"is aborted. If possible the authentication request is continued offline." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:241 -msgid "krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:244 -msgid "" -"The location of the keytab to use when validating credentials obtained from " -"KDCs." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:248 -msgid "Default: /etc/krb5.keytab" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:254 -msgid "krb5_store_password_if_offline (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:257 -msgid "" -"Store the password of the user if the provider is offline and use it to " -"request a TGT when the provider gets online again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:262 -msgid "" -"Please note that this feature currently only available on a Linux platform. " -"Passwords stored in this way are kept in plaintext in the kernel keyring and " -"are potentially accessible by the root user (with difficulty)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:275 -msgid "krb5_renewable_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:278 -msgid "" -"Request a renewable ticket with a total lifetime given by an integer " -"immediately followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:283 sssd-krb5.5.xml:319 -msgid "<emphasis>s</emphasis> seconds" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:286 sssd-krb5.5.xml:322 -msgid "<emphasis>m</emphasis> minutes" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:289 sssd-krb5.5.xml:325 -msgid "<emphasis>h</emphasis> hours" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:292 sssd-krb5.5.xml:328 -msgid "<emphasis>d</emphasis> days." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:295 sssd-krb5.5.xml:331 -msgid "If there is no delimiter <emphasis>s</emphasis> is assumed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:299 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"renewable lifetime to one and a half hours please use '90m' instead of " -"'1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:305 -msgid "Default: not set, i.e. the TGT is not renewable" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:311 -msgid "krb5_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:314 -msgid "" -"Request ticket with a with a lifetime given by an integer immediately " -"followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:335 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"lifetime to one and a half hours please use '90m' instead of '1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:340 -msgid "" -"Default: not set, i.e. the default ticket lifetime configured on the KDC." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:347 -msgid "krb5_renew_interval (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:350 -msgid "" -"The time in seconds between two checks if the TGT should be renewed. TGTs " -"are renewed if about half of their lifetime is exceeded." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:355 -msgid "If this option is not set or 0 the automatic renewal is disabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:365 -msgid "krb5_use_fast (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:368 -msgid "" -"Enables flexible authentication secure tunneling (FAST) for Kerberos pre-" -"authentication. The following options are supported:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:373 -msgid "" -"<emphasis>never</emphasis> use FAST, this is equivalent to not set this " -"option at all." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:377 -msgid "" -"<emphasis>try</emphasis> to use FAST, if the server does not support fast " -"continue without." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:381 -msgid "" -"<emphasis>demand</emphasis> to use FAST, fail if the server does not require " -"fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:385 -msgid "Default: not set, i.e. FAST is not used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:388 -msgid "Please note that a keytab is required to use fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:391 -msgid "" -"Please note also that sssd supports fast only with MIT Kerberos version 1.8 " -"and above. If sssd used with an older version using this option is a " -"configuration error." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:400 -msgid "krb5_fast_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:403 -msgid "Specifies the server principal to use for FAST." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:412 -msgid "" -"Specifies if the host and user principal should be canonicalized. This " -"feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:65 -msgid "" -"If the auth-module krb5 is used in a SSSD domain, the following options must " -"be used. See the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page, section <quote>DOMAIN " -"SECTIONS</quote> for details on the configuration of a SSSD domain. " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:434 -msgid "" -"The following example assumes that SSSD is correctly configured and FOO is " -"one of the domains in the <replaceable>[sssd]</replaceable> section. This " -"example shows only configuration of Kerberos authentication, it does not " -"include any identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-krb5.5.xml:442 -#, no-wrap -msgid "" -" [domain/FOO]\n" -" auth_provider = krb5\n" -" krb5_server = 192.168.1.1\n" -" krb5_realm = EXAMPLE.COM\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:453 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupadd.8.xml:10 sss_groupadd.8.xml:15 -msgid "sss_groupadd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupadd.8.xml:16 -msgid "create a new group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupadd.8.xml:21 -msgid "" -"<command>sss_groupadd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:32 -msgid "" -"<command>sss_groupadd</command> creates a new group. These groups are " -"compatible with POSIX groups, with the additional feature that they can " -"contain other groups as members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupadd.8.xml:43 -msgid "" -"<option>-g</option>,<option>--gid</option> <replaceable>GID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupadd.8.xml:48 -msgid "" -"Set the GID of the group to the value of <replaceable>GID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_userdel.8.xml:10 sss_userdel.8.xml:15 -msgid "sss_userdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_userdel.8.xml:16 -msgid "delete a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_userdel.8.xml:21 -msgid "" -"<command>sss_userdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:32 -msgid "" -"<command>sss_userdel</command> deletes a user identified by login name " -"<replaceable>LOGIN</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:44 -msgid "<option>-r</option>,<option>--remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:48 -msgid "" -"Files in the user's home directory will be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:56 -msgid "<option>-R</option>,<option>--no-remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:60 -msgid "" -"Files in the user's home directory will NOT be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:68 -msgid "<option>-f</option>,<option>--force</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:72 -msgid "" -"This option forces <command>sss_userdel</command> to remove the user's home " -"directory and mail spool, even if they are not owned by the specified user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:80 -msgid "<option>-k</option>,<option>--kick</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:84 -msgid "Before actually deleting the user, terminate all his processes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:95 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupdel.8.xml:10 sss_groupdel.8.xml:15 -msgid "sss_groupdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupdel.8.xml:16 -msgid "delete a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupdel.8.xml:21 -msgid "" -"<command>sss_groupdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:32 -msgid "" -"<command>sss_groupdel</command> deletes a group identified by its name " -"<replaceable>GROUP</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupshow.8.xml:10 sss_groupshow.8.xml:15 -msgid "sss_groupshow" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupshow.8.xml:16 -msgid "print properties of a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupshow.8.xml:21 -msgid "" -"<command>sss_groupshow</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:32 -msgid "" -"<command>sss_groupshow</command> displays information about a group " -"identified by its name <replaceable>GROUP</replaceable>. The information " -"includes the group ID number, members of the group and the parent group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupshow.8.xml:43 -msgid "<option>-R</option>,<option>--recursive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupshow.8.xml:47 -msgid "" -"Also print indirect group members in a tree-like hierarchy. Note that this " -"also affects printing parent groups - without <option>R</option>, only the " -"direct parent will be printed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_usermod.8.xml:10 sss_usermod.8.xml:15 -msgid "sss_usermod" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_usermod.8.xml:16 -msgid "modify a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_usermod.8.xml:21 -msgid "" -"<command>sss_usermod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:32 -msgid "" -"<command>sss_usermod</command> modifies the account specified by " -"<replaceable>LOGIN</replaceable> to reflect the changes that are specified " -"on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:60 -msgid "The home directory of the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:71 -msgid "The user's login shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:82 -msgid "" -"Append this user to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:96 -msgid "" -"Remove this user from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:103 -msgid "<option>-l</option>,<option>--lock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:107 -msgid "Lock the user account. The user won't be able to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:114 -msgid "<option>-u</option>,<option>--unlock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:118 -msgid "Unlock the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:129 -msgid "The SELinux user for the user's login." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:140 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_cache.8.xml:10 sss_cache.8.xml:15 -msgid "sss_cache" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_cache.8.xml:16 -msgid "perform cache cleanup" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_cache.8.xml:21 -msgid "" -"<command>sss_cache</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_cache.8.xml:31 -msgid "" -"<command>sss_cache</command> invalidates records in SSSD cache. Invalidated " -"records are forced to be reloaded from server as soon as related SSSD " -"backend is online." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:42 -msgid "" -"<option>-u</option>,<option>--user</option> <replaceable>login</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:47 -msgid "Invalidate specific user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:53 -msgid "<option>-U</option>,<option>--users</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:57 -msgid "" -"Invalidate all user records. This option overrides invalidation of specific " -"user if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:64 -msgid "" -"<option>-g</option>,<option>--group</option> <replaceable>group</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:69 -msgid "Invalidate specific group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:75 -msgid "<option>-G</option>,<option>--groups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:79 -msgid "" -"Invalidate all group records. This option overrides invalidation of specific " -"group if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:86 -msgid "" -"<option>-n</option>,<option>--netgroup</option> <replaceable>netgroup</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:91 -msgid "Invalidate specific netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:97 -msgid "<option>-N</option>,<option>--netgroups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:101 -msgid "" -"Invalidate all netgroup records. This option overrides invalidation of " -"specific netgroup if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:108 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>domain</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:113 -msgid "Restrict invalidation process only to a particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_debuglevel.8.xml:10 sss_debuglevel.8.xml:15 -msgid "sss_debuglevel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_debuglevel.8.xml:16 -msgid "change debug level while SSSD is running" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_debuglevel.8.xml:21 -msgid "" -"<command>sss_debuglevel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>NEW_DEBUG_LEVEL</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_debuglevel.8.xml:32 -msgid "" -"<command>sss_debuglevel</command> changes debug level of SSSD monitor and " -"providers to <replaceable>NEW_DEBUG_LEVEL</replaceable> while SSSD is " -"running." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_debuglevel.8.xml:59 -msgid "<replaceable>NEW_DEBUG_LEVEL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_authorizedkeys.1.xml:10 sss_ssh_authorizedkeys.1.xml:15 -msgid "sss_ssh_authorizedkeys" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_ssh_authorizedkeys.1.xml:11 sss_ssh_knownhostsproxy.1.xml:11 -msgid "1" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_authorizedkeys.1.xml:16 -msgid "get OpenSSH authorized keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_authorizedkeys.1.xml:21 -msgid "" -"<command>sss_ssh_authorizedkeys</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>USER</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:32 -msgid "" -"<command>sss_ssh_authorizedkeys</command> acquires SSH public keys for user " -"<replaceable>USER</replaceable> and outputs them in OpenSSH authorized_keys " -"format (see the <quote>AUTHORIZED_KEYS FILE FORMAT</quote> section of " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> for more information)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:41 -msgid "" -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_authorizedkeys</" -"command> for public key user authentication if it is compiled with support " -"for either <quote>AuthorizedKeysCommand</quote> or <quote>PubkeyAgent</" -"quote> <citerefentry> <refentrytitle>sshd_config</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:58 -#, no-wrap -msgid "AuthorizedKeysCommand /usr/bin/sss_ssh_authorizedkeys\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:51 -msgid "" -"If <quote>AuthorizedKeysCommand</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by putting the following directive " -"in <citerefentry> <refentrytitle>sshd_config</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry>: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:69 -#, no-wrap -msgid "PubKeyAgent /usr/bin/sss_ssh_authorizedkeys %u\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:62 -msgid "" -"If <quote>PubkeyAgent</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by using the following directive " -"for <citerefentry> <refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> configuration: <placeholder type=\"programlisting" -"\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_authorizedkeys.1.xml:87 -msgid "" -"Search for user public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:98 -msgid "" -"<citerefentry> <refentrytitle>sshd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sshd_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_knownhostsproxy</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_knownhostsproxy.1.xml:10 sss_ssh_knownhostsproxy.1.xml:15 -msgid "sss_ssh_knownhostsproxy" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_knownhostsproxy.1.xml:16 -msgid "get OpenSSH host keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_knownhostsproxy.1.xml:21 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>HOST</replaceable></arg> <arg " -"choice='opt'><replaceable>PROXY_COMMAND</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:33 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> acquires SSH host public keys for " -"host <replaceable>HOST</replaceable>, stores them in a custom OpenSSH " -"known_hosts file (see the <quote>SSH_KNOWN_HOSTS FILE FORMAT</quote> section " -"of <citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> for more information) <filename>/var/lib/sss/" -"pubconf/known_hosts</filename> and estabilishes connection to the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:43 -msgid "" -"If <replaceable>PROXY_COMMAND</replaceable> is specified, it is used to " -"create the connection to the host instead of opening a socket." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_knownhostsproxy.1.xml:55 -#, no-wrap -msgid "" -"ProxyCommand /usr/bin/sss_ssh_knownhostsproxy -p %p %h\n" -"GlobalKnownHostsFile2 /var/lib/sss/pubconf/known_hosts\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:48 -msgid "" -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_knownhostsproxy</" -"command> for host key authentication by using the following directives for " -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> configuration: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_ssh_knownhostsproxy.1.xml:69 -msgid "" -"<option>-p</option>,<option>--port</option> <replaceable>PORT</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:74 -msgid "" -"Use port <replaceable>PORT</replaceable> to connect to the host. By " -"default, port 22 is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:86 -msgid "" -"Search for host public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:97 -msgid "" -"<citerefentry> <refentrytitle>ssh</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>ssh_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_authorizedkeys</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/service_discovery.xml:2 -msgid "SERVICE DISCOVERY" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/service_discovery.xml:4 -msgid "" -"The service discovery feature allows back ends to automatically find the " -"appropriate servers to connect to using a special DNS query." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:9 -msgid "Configuration" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:11 -msgid "" -"If no servers are specified, the back end automatically uses service " -"discovery to try to find a server. Optionally, the user may choose to use " -"both fixed server addresses and service discovery by inserting a special " -"keyword, <quote>_srv_</quote>, in the list of servers. The order of " -"preference is maintained. This feature is useful if, for example, the user " -"prefers to use service discovery whenever possible, and fall back to a " -"specific server when no servers can be discovered using DNS." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:23 -msgid "The domain name" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:25 -msgid "" -"Please refer to the <quote>dns_discovery_domain</quote> parameter in the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for more details." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:35 -msgid "The protocol" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:37 -msgid "" -"The queries usually specify _tcp as the protocol. Exceptions are documented " -"in respective option description." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:42 -msgid "See Also" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:44 -msgid "" -"For more information on the service discovery mechanism, refer to RFC 2782." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/upstream.xml:1 -msgid "<placeholder type=\"refentryinfo\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/failover.xml:2 -msgid "FAILOVER" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/failover.xml:4 -msgid "" -"The failover feature allows back ends to automatically switch to a different " -"server if the primary server fails." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:8 -msgid "Failover Syntax" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:10 -msgid "" -"The list of servers is given as a comma-separated list; any number of spaces " -"is allowed around the comma. The servers are listed in order of preference. " -"The list can contain any number of servers." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:17 -msgid "The Failover Mechanism" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:19 -msgid "" -"The failover mechanism distinguishes between a machine and a service. The " -"back end first tries to resolve the hostname of a given machine; if this " -"resolution attempt fails, the machine is considered offline. No further " -"attempts are made to connect to this machine for any other service. If the " -"resolution attempt succeeds, the back end tries to connect to a service on " -"this machine. If the service connection attempt fails, then only this " -"particular service is considered offline and the back end automatically " -"switches over to the next service. The machine is still considered online " -"and might still be tried for another service." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:32 -msgid "" -"Further connection attempts are made to machines or services marked as " -"offline after a specified period of time; this is currently hard coded to 30 " -"seconds." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:37 -msgid "" -"If there are no more machines to try, the back end as a whole switches to " -"offline mode, and then attempts to reconnect every 30 seconds." -msgstr "" - -#. type: Content of: <varlistentry><term> -#: include/param_help.xml:3 -msgid "<option>-h</option>,<option>--help</option>" -msgstr "" - -#. type: Content of: <varlistentry><listitem><para> -#: include/param_help.xml:7 -msgid "Display help message and exit." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:3 -msgid "" -"Bit mask that indicates which debug levels will be visible. 0x0010 is the " -"default value as well as the lowest allowed value, 0xFFF0 is the most " -"verbose mode. This setting overrides the settings from config file." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:8 -msgid "Currently supported debug levels:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:11 -msgid "" -"<emphasis>0x0010</emphasis>: Fatal failures. Anything that would prevent " -"SSSD from starting up or causes it to cease running." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:15 -msgid "" -"<emphasis>0x0020</emphasis>: Critical failures. An error that doesn't kill " -"the SSSD, but one that indicates that at least one major feature is not " -"going to work properly." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:20 -msgid "" -"<emphasis>0x0040</emphasis>: Serious failures. An error announcing that a " -"particular request or operation has failed." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:24 -msgid "" -"<emphasis>0x0080</emphasis>: Minor failures. These are the errors that would " -"percolate down to cause the operation failure of 2." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:28 -msgid "<emphasis>0x0100</emphasis>: Configuration settings." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:31 -msgid "<emphasis>0x0200</emphasis>: Function data." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:34 -msgid "<emphasis>0x0400</emphasis>: Trace messages for operation functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:37 -msgid "" -"<emphasis>0x1000</emphasis>: Trace messages for internal control functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:40 -msgid "" -"<emphasis>0x2000</emphasis>: Contents of function-internal variables that " -"may be interesting." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:43 -msgid "<emphasis>0x4000</emphasis>: Extremely low-level tracing information." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:46 -msgid "" -"To log required debug levels, simply add their numbers together as shown in " -"following examples:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:49 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, critical failures, " -"serious failures and function data use 0x0270." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:53 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, configuration settings, " -"function data, trace messages for internal control functions use 0x1310." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:57 -msgid "" -"<emphasis>Note</emphasis>: This is new format of debug levels introduced in " -"1.7.0. Older format (numbers from 0-10) is compatible but deprecated." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/experimental.xml:1 -msgid "" -"<emphasis> This is an experimental feature, please use http://fedorahosted." -"org/sssd to report any issues. </emphasis>" -msgstr "" diff --git a/src/man/po/nl.po b/src/man/po/nl.po index 64cfaec14..082016bbc 100644 --- a/src/man/po/nl.po +++ b/src/man/po/nl.po @@ -9,9 +9,10 @@ msgstr "" "Project-Id-Version: SSSD\n" "Report-Msgid-Bugs-To: sssd-devel@redhat.com\n" "POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2011-12-21 10:12+0000\n" +"PO-Revision-Date: 2012-03-08 11:52+0000\n" "Last-Translator: sgallagh <sgallagh@redhat.com>\n" -"Language-Team: Dutch (http://www.transifex.net/projects/p/fedora/team/nl/)\n" +"Language-Team: Dutch (http://www.transifex.net/projects/p/fedora/language/" +"nl/)\n" "Language: nl\n" "MIME-Version: 1.0\n" "Content-Type: text/plain; charset=UTF-8\n" @@ -981,24 +982,18 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><title> #: sssd.conf.5.xml:599 -#, fuzzy -#| msgid "NSS configuration options" msgid "SUDO configuration options" -msgstr "NSS configuratie-opties" +msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><para> #: sssd.conf.5.xml:601 -#, fuzzy -#| msgid "These options can be used to configure any service." msgid "These options can be used to configure the sudo service." -msgstr "Deze opties kunnen gebruikt worden om services te configureren." +msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:608 -#, fuzzy -#| msgid "enum_cache_timeout (integer)" msgid "sudo_cache_timeout (integer)" -msgstr "enum_cache_timeout (numeriek)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:611 @@ -1026,17 +1021,13 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:628 -#, fuzzy -#| msgid "Default: 120" msgid "Default: 180" -msgstr "Standaard: 120" +msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:633 -#, fuzzy -#| msgid "debug_timestamps (bool)" msgid "sudo_timed (bool)" -msgstr "debug_timestamps (bool)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:636 @@ -1047,24 +1038,18 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><title> #: sssd.conf.5.xml:649 -#, fuzzy -#| msgid "NSS configuration options" msgid "AUTOFS configuration options" -msgstr "NSS configuratie-opties" +msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><para> #: sssd.conf.5.xml:651 -#, fuzzy -#| msgid "These options can be used to configure any service." msgid "These options can be used to configure the autofs service." -msgstr "Deze opties kunnen gebruikt worden om services te configureren." +msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:659 -#, fuzzy -#| msgid "entry_negative_timeout (integer)" msgid "autofs_negative_timeout (integer)" -msgstr "entry_negative_timeout (numeriek)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:662 @@ -1194,23 +1179,15 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:776 -#, fuzzy -#| msgid "enum_cache_timeout (integer)" msgid "entry_cache_user_timeout (integer)" -msgstr "enum_cache_timeout (numeriek)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:779 -#, fuzzy -#| msgid "" -#| "How many seconds should nss_sss cache enumerations (requests for info " -#| "about all users)" msgid "" "How many seconds should nss_sss consider user entries valid before asking " "the backend again" msgstr "" -"Hoeveel seconden zouden nss_sss cache enumeraties (verzoeken om informatie " -"over alle gebruikers)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:783 sssd.conf.5.xml:796 sssd.conf.5.xml:809 @@ -1220,63 +1197,39 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:789 -#, fuzzy -#| msgid "enum_cache_timeout (integer)" msgid "entry_cache_group_timeout (integer)" -msgstr "enum_cache_timeout (numeriek)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:792 -#, fuzzy -#| msgid "" -#| "How many seconds should nss_sss cache enumerations (requests for info " -#| "about all users)" msgid "" "How many seconds should nss_sss consider group entries valid before asking " "the backend again" msgstr "" -"Hoeveel seconden zouden nss_sss cache enumeraties (verzoeken om informatie " -"over alle gebruikers)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:802 -#, fuzzy -#| msgid "enum_cache_timeout (integer)" msgid "entry_cache_netgroup_timeout (integer)" -msgstr "enum_cache_timeout (numeriek)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:805 -#, fuzzy -#| msgid "" -#| "How many seconds should nss_sss cache enumerations (requests for info " -#| "about all users)" msgid "" "How many seconds should nss_sss consider netgroup entries valid before " "asking the backend again" msgstr "" -"Hoeveel seconden zouden nss_sss cache enumeraties (verzoeken om informatie " -"over alle gebruikers)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:815 -#, fuzzy -#| msgid "enum_cache_timeout (integer)" msgid "entry_cache_service_timeout (integer)" -msgstr "enum_cache_timeout (numeriek)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:818 -#, fuzzy -#| msgid "" -#| "How many seconds should nss_sss cache enumerations (requests for info " -#| "about all users)" msgid "" "How many seconds should nss_sss consider service entries valid before asking " "the backend again" msgstr "" -"Hoeveel seconden zouden nss_sss cache enumeraties (verzoeken om informatie " -"over alle gebruikers)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:828 @@ -1523,10 +1476,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:1030 -#, fuzzy -#| msgid "re_expression (string)" msgid "session_provider (string)" -msgstr "re_expression (tekst)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1033 @@ -2600,10 +2551,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:622 -#, fuzzy -#| msgid "enum_cache_timeout (integer)" msgid "ldap_purge_cache_timeout (integer)" -msgstr "enum_cache_timeout (numeriek)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:625 @@ -2897,10 +2846,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:906 -#, fuzzy -#| msgid "Default: true" msgid "Default: ipService" -msgstr "Standaard: true" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:912 @@ -2916,10 +2863,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:925 -#, fuzzy -#| msgid "full_name_format (string)" msgid "ldap_service_port (string)" -msgstr "full_name_format (tekst)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:928 @@ -2928,17 +2873,13 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:932 -#, fuzzy -#| msgid "Default: true" msgid "Default: ipServicePort" -msgstr "Standaard: true" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:938 -#, fuzzy -#| msgid "re_expression (string)" msgid "ldap_service_proto (string)" -msgstr "re_expression (tekst)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:941 @@ -3462,19 +3403,11 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1416 -#, fuzzy -#| msgid "" -#| "A <citerefentry> <refentrytitle>printf</refentrytitle> <manvolnum>3</" -#| "manvolnum> </citerefentry>-compatible format that describes how to " -#| "translate a (name, domain) tuple into a fully qualified name." msgid "" "<emphasis>shadow</emphasis> - Use <citerefentry><refentrytitle>shadow</" "refentrytitle> <manvolnum>5</manvolnum></citerefentry> style attributes to " "evaluate if the password has expired." msgstr "" -"Een <citerefentry> <refentrytitle>printf</refentrytitle> <manvolnum>3</" -"manvolnum> </citerefentry>-compatibel formaat wat omschrijft hoe een tuple " -"(met name, domain) vertaald wordt in een full qualified name." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1422 @@ -3742,10 +3675,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><title> #: sssd-ldap.5.xml:1639 -#, fuzzy -#| msgid "OPTIONS" msgid "SUDO OPTIONS" -msgstr "OPTIES" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1644 @@ -3759,17 +3690,13 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1650 -#, fuzzy -#| msgid "Default: true" msgid "Default: sudoRole" -msgstr "Standaard: true" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1656 -#, fuzzy -#| msgid "full_name_format (string)" msgid "ldap_sudorule_name (string)" -msgstr "full_name_format (tekst)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1659 @@ -3778,10 +3705,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1669 -#, fuzzy -#| msgid "command (string)" msgid "ldap_sudorule_command (string)" -msgstr "command (tekst)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1672 @@ -3790,10 +3715,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1676 -#, fuzzy -#| msgid "Default: true" msgid "Default: sudoCommand" -msgstr "Standaard: true" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1682 @@ -3809,10 +3732,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1690 -#, fuzzy -#| msgid "Default: 3" msgid "Default: sudoHost" -msgstr "Standaard: 3" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1696 @@ -3828,17 +3749,13 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1703 -#, fuzzy -#| msgid "Default: true" msgid "Default: sudoUser" -msgstr "Standaard: true" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1709 -#, fuzzy -#| msgid "re_expression (string)" msgid "ldap_sudorule_option (string)" -msgstr "re_expression (tekst)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1712 @@ -3847,10 +3764,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1716 -#, fuzzy -#| msgid "Default: true" msgid "Default: sudoOption" -msgstr "Standaard: true" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1722 @@ -3866,10 +3781,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1729 -#, fuzzy -#| msgid "Default: true" msgid "Default: sudoRunAsUser" -msgstr "Standaard: true" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1735 @@ -3885,10 +3798,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1742 -#, fuzzy -#| msgid "Default: true" msgid "Default: sudoRunAsGroup" -msgstr "Standaard: true" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1748 @@ -3904,10 +3815,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1755 -#, fuzzy -#| msgid "Default: true" msgid "Default: sudoNotBefore" -msgstr "Standaard: true" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1761 @@ -3923,10 +3832,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1769 -#, fuzzy -#| msgid "Default: true" msgid "Default: sudoNotAfter" -msgstr "Standaard: true" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1775 @@ -3940,10 +3847,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1782 -#, fuzzy -#| msgid "Default: true" msgid "Default: sudoOrder" -msgstr "Standaard: true" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1788 @@ -3959,10 +3864,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1801 -#, fuzzy -#| msgid "enum_cache_timeout (integer)" msgid "ldap_sudo_refresh_timeout (integer)" -msgstr "enum_cache_timeout (numeriek)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1804 @@ -3986,10 +3889,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><title> #: sssd-ldap.5.xml:1825 -#, fuzzy -#| msgid "OPTIONS" msgid "AUTOFS OPTIONS" -msgstr "OPTIES" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para> #: sssd-ldap.5.xml:1827 @@ -4010,10 +3911,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1840 sssd-ldap.5.xml:1867 -#, fuzzy -#| msgid "Default: true" msgid "Default: automountMap" -msgstr "Standaard: true" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1847 @@ -4027,10 +3926,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1853 -#, fuzzy -#| msgid "Default: 3" msgid "Default: ou" -msgstr "Standaard: 3" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1860 @@ -4864,10 +4761,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:307 -#, fuzzy -#| msgid "re_expression (string)" msgid "ipa_automount_location (string)" -msgstr "re_expression (tekst)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:310 @@ -5037,10 +4932,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:459 -#, fuzzy -#| msgid "Default: 3" msgid "Default: seeAlso" -msgstr "Standaard: 3" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:464 @@ -5054,10 +4947,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:471 -#, fuzzy -#| msgid "Default: true" msgid "Default: ipaSELinuxUser" -msgstr "Standaard: true" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:476 @@ -5088,10 +4979,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:495 -#, fuzzy -#| msgid "Default: true" msgid "Default: userCategory" -msgstr "Standaard: true" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:500 @@ -5105,10 +4994,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:507 -#, fuzzy -#| msgid "Default: true" msgid "Default: hostCategory" -msgstr "Standaard: true" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:512 @@ -5122,10 +5009,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:519 -#, fuzzy -#| msgid "Default: true" msgid "Default: ipaUniqueID" -msgstr "Standaard: true" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:524 @@ -5139,10 +5024,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:531 -#, fuzzy -#| msgid "Default: true" msgid "Default: ipaSshPubKey" -msgstr "Standaard: true" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para> #: sssd-ipa.5.xml:546 @@ -6390,18 +6273,10 @@ msgstr "" #. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> #: sss_cache.8.xml:21 -#, fuzzy -#| msgid "" -#| "<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -#| "replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -#| "arg>" msgid "" "<command>sss_cache</command> <arg choice='opt'> <replaceable>options</" "replaceable> </arg>" msgstr "" -"<command>sss_groupmod</command> <arg choice='opt'> <replaceable>opties</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROEP</replaceable></" -"arg>" #. type: Content of: <reference><refentry><refsect1><para> #: sss_cache.8.xml:31 @@ -6413,15 +6288,9 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:42 -#, fuzzy -#| msgid "" -#| "<option>-r</option>,<option>--remove-group</option> <replaceable>GROUPS</" -#| "replaceable>" msgid "" "<option>-u</option>,<option>--user</option> <replaceable>login</replaceable>" msgstr "" -"<option>-r</option>,<option>--remove-group</option> <replaceable>GROEPEN</" -"replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:47 @@ -6430,14 +6299,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:53 -#, fuzzy -#| msgid "" -#| "<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -#| "replaceable>" msgid "<option>-U</option>,<option>--users</option>" msgstr "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROEPEN</" -"replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:57 @@ -6448,15 +6311,9 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:64 -#, fuzzy -#| msgid "" -#| "<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -#| "replaceable>" msgid "" "<option>-g</option>,<option>--group</option> <replaceable>group</replaceable>" msgstr "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROEPEN</" -"replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:69 @@ -6465,14 +6322,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:75 -#, fuzzy -#| msgid "" -#| "<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -#| "replaceable>" msgid "<option>-G</option>,<option>--groups</option>" msgstr "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROEPEN</" -"replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:79 @@ -6483,16 +6334,10 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:86 -#, fuzzy -#| msgid "" -#| "<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -#| "replaceable>" msgid "" "<option>-n</option>,<option>--netgroup</option> <replaceable>netgroup</" "replaceable>" msgstr "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROEPEN</" -"replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:91 @@ -6501,14 +6346,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:97 -#, fuzzy -#| msgid "" -#| "<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -#| "replaceable>" msgid "<option>-N</option>,<option>--netgroups</option>" msgstr "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROEPEN</" -"replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:101 @@ -6519,16 +6358,10 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:108 -#, fuzzy -#| msgid "" -#| "<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -#| "replaceable>" msgid "" "<option>-d</option>,<option>--domain</option> <replaceable>domain</" "replaceable>" msgstr "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROEPEN</" -"replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:113 @@ -6547,19 +6380,11 @@ msgstr "" #. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> #: sss_debuglevel.8.xml:21 -#, fuzzy -#| msgid "" -#| "<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -#| "replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -#| "arg>" msgid "" "<command>sss_debuglevel</command> <arg choice='opt'> <replaceable>options</" "replaceable> </arg> <arg choice='plain'><replaceable>NEW_DEBUG_LEVEL</" "replaceable></arg>" msgstr "" -"<command>sss_groupmod</command> <arg choice='opt'> <replaceable>opties</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROEP</replaceable></" -"arg>" #. type: Content of: <reference><refentry><refsect1><para> #: sss_debuglevel.8.xml:32 @@ -6591,19 +6416,11 @@ msgstr "" #. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> #: sss_ssh_authorizedkeys.1.xml:21 -#, fuzzy -#| msgid "" -#| "<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -#| "replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -#| "arg>" msgid "" "<command>sss_ssh_authorizedkeys</command> <arg choice='opt'> " "<replaceable>options</replaceable> </arg> <arg " "choice='plain'><replaceable>USER</replaceable></arg>" msgstr "" -"<command>sss_groupmod</command> <arg choice='opt'> <replaceable>opties</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROEP</replaceable></" -"arg>" #. type: Content of: <reference><refentry><refsect1><para> #: sss_ssh_authorizedkeys.1.xml:32 @@ -6667,17 +6484,6 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para> #: sss_ssh_authorizedkeys.1.xml:98 -#, fuzzy -#| msgid "" -#| "<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -#| "manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -#| "refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -#| "<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -#| "citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -#| "refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -#| "<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -#| "citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -#| "refentrytitle><manvolnum>8</manvolnum> </citerefentry>." msgid "" "<citerefentry> <refentrytitle>sshd</refentrytitle><manvolnum>8</manvolnum> </" "citerefentry>, <citerefentry> <refentrytitle>sshd_config</" @@ -6685,15 +6491,6 @@ msgid "" "<refentrytitle>sss_ssh_knownhostsproxy</refentrytitle><manvolnum>1</" "manvolnum> </citerefentry>." msgstr "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." #. type: Content of: <reference><refentry><refnamediv><refname> #: sss_ssh_knownhostsproxy.1.xml:10 sss_ssh_knownhostsproxy.1.xml:15 @@ -6707,20 +6504,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> #: sss_ssh_knownhostsproxy.1.xml:21 -#, fuzzy -#| msgid "" -#| "<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -#| "replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -#| "arg>" msgid "" "<command>sss_ssh_knownhostsproxy</command> <arg choice='opt'> " "<replaceable>options</replaceable> </arg> <arg " "choice='plain'><replaceable>HOST</replaceable></arg> <arg " "choice='opt'><replaceable>PROXY_COMMAND</replaceable></arg>" msgstr "" -"<command>sss_groupmod</command> <arg choice='opt'> <replaceable>opties</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROEP</replaceable></" -"arg>" #. type: Content of: <reference><refentry><refsect1><para> #: sss_ssh_knownhostsproxy.1.xml:33 @@ -6760,15 +6549,9 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_ssh_knownhostsproxy.1.xml:69 -#, fuzzy -#| msgid "" -#| "<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -#| "replaceable>" msgid "" "<option>-p</option>,<option>--port</option> <replaceable>PORT</replaceable>" msgstr "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROEPEN</" -"replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_ssh_knownhostsproxy.1.xml:74 @@ -6785,17 +6568,6 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para> #: sss_ssh_knownhostsproxy.1.xml:97 -#, fuzzy -#| msgid "" -#| "<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -#| "manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -#| "refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -#| "<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -#| "citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -#| "refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -#| "<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -#| "citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -#| "refentrytitle><manvolnum>8</manvolnum> </citerefentry>." msgid "" "<citerefentry> <refentrytitle>ssh</refentrytitle><manvolnum>8</manvolnum> </" "citerefentry>, <citerefentry> <refentrytitle>ssh_config</" @@ -6803,15 +6575,6 @@ msgid "" "<refentrytitle>sss_ssh_authorizedkeys</refentrytitle><manvolnum>1</" "manvolnum> </citerefentry>." msgstr "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." #. type: Content of: <refsect1><title> #: include/service_discovery.xml:2 @@ -7061,6 +6824,3 @@ msgid "" "<emphasis> This is an experimental feature, please use http://fedorahosted." "org/sssd to report any issues. </emphasis>" msgstr "" - -#~ msgid "Supported services: nss, pam" -#~ msgstr "Ondersteunde diensten: nss, pam" diff --git a/src/man/po/nn.po b/src/man/po/nn.po deleted file mode 100644 index ccdfd055a..000000000 --- a/src/man/po/nn.po +++ /dev/null @@ -1,6747 +0,0 @@ -# SOME DESCRIPTIVE TITLE -# Copyright (C) YEAR Red Hat -# This file is distributed under the same license as the sssd-docs package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@redhat.com\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-12-23 15:35+0000\n" -"Last-Translator: FULL NAME <EMAIL@ADDRESS>\n" -"Language-Team: Norwegian Nynorsk <i18n-nn@lister.ping.uio.no>\n" -"Language: nn\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=2; plural=(n != 1)\n" - -#. type: Content of: <reference><title> -#: sss_groupmod.8.xml:5 sssd.conf.5.xml:5 sssd-ldap.5.xml:5 pam_sss.8.xml:5 -#: sssd_krb5_locator_plugin.8.xml:5 sssd-simple.5.xml:5 sssd-ipa.5.xml:5 -#: sssd.8.xml:5 sss_obfuscate.8.xml:5 sss_useradd.8.xml:5 sssd-krb5.5.xml:5 -#: sss_groupadd.8.xml:5 sss_userdel.8.xml:5 sss_groupdel.8.xml:5 -#: sss_groupshow.8.xml:5 sss_usermod.8.xml:5 sss_cache.8.xml:5 -#: sss_debuglevel.8.xml:5 sss_ssh_authorizedkeys.1.xml:5 -#: sss_ssh_knownhostsproxy.1.xml:5 -msgid "SSSD Manual pages" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupmod.8.xml:10 sss_groupmod.8.xml:15 -msgid "sss_groupmod" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_groupmod.8.xml:11 pam_sss.8.xml:14 sssd_krb5_locator_plugin.8.xml:11 -#: sssd.8.xml:11 sss_obfuscate.8.xml:11 sss_useradd.8.xml:11 -#: sss_groupadd.8.xml:11 sss_userdel.8.xml:11 sss_groupdel.8.xml:11 -#: sss_groupshow.8.xml:11 sss_usermod.8.xml:11 sss_cache.8.xml:11 -#: sss_debuglevel.8.xml:11 -msgid "8" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupmod.8.xml:16 -msgid "modify a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupmod.8.xml:21 -msgid "" -"<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:30 sssd-ldap.5.xml:21 pam_sss.8.xml:44 -#: sssd_krb5_locator_plugin.8.xml:20 sssd-simple.5.xml:22 sssd-ipa.5.xml:21 -#: sssd.8.xml:29 sss_obfuscate.8.xml:30 sss_useradd.8.xml:30 -#: sssd-krb5.5.xml:21 sss_groupadd.8.xml:30 sss_userdel.8.xml:30 -#: sss_groupdel.8.xml:30 sss_groupshow.8.xml:30 sss_usermod.8.xml:30 -#: sss_cache.8.xml:29 sss_debuglevel.8.xml:30 sss_ssh_authorizedkeys.1.xml:30 -#: sss_ssh_knownhostsproxy.1.xml:31 -msgid "DESCRIPTION" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:32 -msgid "" -"<command>sss_groupmod</command> modifies the group to reflect the changes " -"that are specified on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:39 pam_sss.8.xml:51 sssd.8.xml:42 sss_obfuscate.8.xml:58 -#: sss_useradd.8.xml:39 sss_groupadd.8.xml:39 sss_userdel.8.xml:39 -#: sss_groupdel.8.xml:39 sss_groupshow.8.xml:39 sss_usermod.8.xml:39 -#: sss_cache.8.xml:38 sss_debuglevel.8.xml:38 sss_ssh_authorizedkeys.1.xml:78 -#: sss_ssh_knownhostsproxy.1.xml:65 -msgid "OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:43 sss_usermod.8.xml:77 -msgid "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:48 -msgid "" -"Append this group to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:57 sss_usermod.8.xml:91 -msgid "" -"<option>-r</option>,<option>--remove-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:62 -msgid "" -"Remove this group from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:72 sssd.conf.5.xml:1331 sssd-ldap.5.xml:2096 -#: pam_sss.8.xml:139 sssd_krb5_locator_plugin.8.xml:75 sssd-simple.5.xml:143 -#: sssd-ipa.5.xml:562 sssd.8.xml:191 sss_obfuscate.8.xml:103 -#: sss_useradd.8.xml:167 sssd-krb5.5.xml:451 sss_groupadd.8.xml:58 -#: sss_userdel.8.xml:93 sss_groupdel.8.xml:46 sss_groupshow.8.xml:58 -#: sss_usermod.8.xml:138 sss_ssh_authorizedkeys.1.xml:96 -#: sss_ssh_knownhostsproxy.1.xml:95 -msgid "SEE ALSO" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:74 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.conf.5.xml:10 sssd.conf.5.xml:16 -msgid "sssd.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sssd.conf.5.xml:11 sssd-ldap.5.xml:11 sssd-simple.5.xml:11 -#: sssd-ipa.5.xml:11 sssd-krb5.5.xml:11 -msgid "5" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><refmiscinfo> -#: sssd.conf.5.xml:12 sssd-ldap.5.xml:12 sssd-simple.5.xml:12 -#: sssd-ipa.5.xml:12 sssd-krb5.5.xml:12 -msgid "File Formats and Conventions" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.conf.5.xml:17 sssd-ldap.5.xml:17 sssd_krb5_locator_plugin.8.xml:16 -#: sssd-ipa.5.xml:17 sssd-krb5.5.xml:17 -msgid "the configuration file for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:21 -msgid "FILE FORMAT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:29 -#, no-wrap -msgid "" -" <replaceable>[section]</replaceable>\n" -" <replaceable>key</replaceable> = <replaceable>value</replaceable>\n" -" <replaceable>key2</replaceable> = <replaceable>value2,value3</replaceable>\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:24 -msgid "" -"The file has an ini-style syntax and consists of sections and parameters. A " -"section begins with the name of the section in square brackets and continues " -"until the next section begins. An example of section with single and multi-" -"valued parameters: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:36 -msgid "" -"The data types used are string (no quotes needed), integer and bool (with " -"values of <quote>TRUE/FALSE</quote>)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:41 -msgid "" -"A line comment starts with a hash sign (<quote>#</quote>) or a semicolon " -"(<quote>;</quote>)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:46 -msgid "" -"All sections can have an optional <replaceable>description</replaceable> " -"parameter. Its function is only as a label for the section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:52 -msgid "" -"<filename>sssd.conf</filename> must be a regular file, owned by root and " -"only root may read from or write to the file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:58 -msgid "SPECIAL SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:61 -msgid "The [sssd] section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><title> -#: sssd.conf.5.xml:70 sssd.conf.5.xml:1177 -msgid "Section parameters" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:72 -msgid "config_file_version (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:75 -msgid "" -"Indicates what is the syntax of the config file. SSSD 0.6.0 and later use " -"version 2." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:81 -msgid "services" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:84 -msgid "" -"Comma separated list of services that are started when sssd itself starts." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:88 -msgid "" -"Supported services: nss, pam <phrase condition=\"with_sudo\">, sudo</phrase>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:94 sssd.conf.5.xml:257 -msgid "reconnection_retries (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:97 sssd.conf.5.xml:260 -msgid "" -"Number of times services should attempt to reconnect in the event of a Data " -"Provider crash or restart before they give up" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:102 sssd.conf.5.xml:265 -msgid "Default: 3" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:107 -msgid "domains" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:110 -msgid "" -"A domain is a database containing user information. SSSD can use more " -"domains at the same time, but at least one must be configured or SSSD won't " -"start. This parameter described the list of domains in the order you want " -"them to be queried." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:120 -msgid "re_expression (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:123 -msgid "" -"Regular expression that describes how to parse the string containing user " -"name and domain into these components." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:127 -msgid "" -"Default: <quote>(?P<name>[^@]+)@?(?P<domain>[^@]*$)</quote> " -"which translates to \"the name is everything up to the <quote>@</quote> " -"sign, the domain everything after that\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:132 -msgid "" -"PLEASE NOTE: the support for non-unique named subpatterns is not available " -"on all platforms (e.g. RHEL5 and SLES10). Only platforms with libpcre " -"version 7 or higher can support non-unique named subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:139 -msgid "" -"PLEASE NOTE ALSO: older version of libpcre only support the Python syntax (?" -"P<name>) to label subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:146 -msgid "full_name_format (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:149 -msgid "" -"A <citerefentry> <refentrytitle>printf</refentrytitle> <manvolnum>3</" -"manvolnum> </citerefentry>-compatible format that describes how to translate " -"a (name, domain) tuple into a fully qualified name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:157 -msgid "Default: <quote>%1$s@%2$s</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:162 -msgid "try_inotify (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:165 -msgid "" -"SSSD monitors the state of resolv.conf to identify when it needs to update " -"its internal DNS resolver. By default, we will attempt to use inotify for " -"this, and will fall back to polling resolv.conf every five seconds if " -"inotify cannot be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:173 -msgid "" -"There are some limited situations where it is preferred that we should skip " -"even trying to use inotify. In these rare cases, this option should be set " -"to 'false'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:179 -msgid "" -"Default: true on platforms where inotify is supported. False on other " -"platforms." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:183 -msgid "" -"Note: this option will have no effect on platforms where inotify is " -"unavailable. On these platforms, polling will always be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:190 -msgid "krb5_rcache_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:193 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:197 -msgid "" -"This option accepts a special value __LIBKRB5_DEFAULTS__ that will instruct " -"SSSD to let libkrb5 decide the appropriate location for the replay cache." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:203 -msgid "" -"Default: Distribution-specific and specified at build-time. " -"(__LIBKRB5_DEFAULTS__ if not configured)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:63 -msgid "" -"Individual pieces of SSSD functionality are provided by special SSSD " -"services that are started and stopped together with SSSD. The services are " -"managed by a special service frequently called <quote>monitor</quote>. The " -"<quote>[sssd]</quote> section is used to configure the monitor as well as " -"some other important options like the identity domains. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:216 -msgid "SERVICES SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:218 -msgid "" -"Settings that can be used to configure different services are described in " -"this section. They should reside in the [<replaceable>$NAME</replaceable>] " -"section, for example, for NSS service, the section would be <quote>[nss]</" -"quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:225 -msgid "General service configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:227 -msgid "These options can be used to configure any service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:231 -msgid "debug_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:235 -msgid "debug_timestamps (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:238 -msgid "Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:241 sssd.conf.5.xml:376 sssd-ldap.5.xml:1328 -#: sssd-ldap.5.xml:1446 sssd-ipa.5.xml:206 sssd-ipa.5.xml:241 -msgid "Default: true" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:246 -msgid "debug_microseconds (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:249 -msgid "Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:252 sssd.conf.5.xml:641 sssd-ldap.5.xml:602 -#: sssd-ldap.5.xml:1260 sssd-ldap.5.xml:1397 sssd-ldap.5.xml:1795 -#: sssd-ipa.5.xml:123 sssd-ipa.5.xml:301 sssd-krb5.5.xml:235 -#: sssd-krb5.5.xml:269 sssd-krb5.5.xml:418 -msgid "Default: false" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:270 -msgid "command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:273 -msgid "" -"By default, the executable representing this service is called <command>sssd_" -"${service_name}</command>. This directive allows to change the executable " -"name for the service. In the vast majority of configurations, the default " -"values should suffice." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:281 -msgid "Default: <command>sssd_${service_name}</command>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:289 -msgid "NSS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:291 -msgid "" -"These options can be used to configure the Name Service Switch (NSS) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:296 -msgid "enum_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:299 -msgid "" -"How many seconds should nss_sss cache enumerations (requests for info about " -"all users)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:303 -msgid "Default: 120" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:308 -msgid "entry_cache_nowait_percentage (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:311 -msgid "" -"The entry cache can be set to automatically update entries in the background " -"if they are requested beyond a percentage of the entry_cache_timeout value " -"for the domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:317 -msgid "" -"For example, if the domain's entry_cache_timeout is set to 30s and " -"entry_cache_nowait_percentage is set to 50 (percent), entries that come in " -"after 15 seconds past the last cache update will be returned immediately, " -"but the SSSD will go and update the cache on its own, so that future " -"requests will not need to block waiting for a cache update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:327 -msgid "" -"Valid values for this option are 0-99 and represent a percentage of the " -"entry_cache_timeout for each domain. For performance reasons, this " -"percentage will never reduce the nowait timeout to less than 10 seconds. (0 " -"disables this feature)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:335 -msgid "Default: 50" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:340 -msgid "entry_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:343 -msgid "" -"Specifies for how many seconds nss_sss should cache negative cache hits " -"(that is, queries for invalid database entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:349 sssd.conf.5.xml:669 sssd-krb5.5.xml:223 -msgid "Default: 15" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:354 -msgid "filter_users, filter_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:357 -msgid "" -"Exclude certain users from being fetched from the sss NSS database. This is " -"particularly useful for system accounts. This option can also be set per-" -"domain or include fully-qualified names to filter only users from the " -"particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:364 -msgid "Default: root" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:369 -msgid "filter_users_in_groups (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:372 -msgid "" -"If you want filtered user still be group members set this option to false." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:381 -msgid "override_homedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:390 sssd-krb5.5.xml:166 -msgid "%u" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:391 sssd-krb5.5.xml:167 -msgid "login name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:394 sssd-krb5.5.xml:170 -msgid "%U" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:395 -msgid "UID number" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:398 sssd-krb5.5.xml:188 -msgid "%d" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:399 -msgid "domain name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:402 -msgid "%f" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:403 -msgid "fully qualified user name (user@domain)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:406 sssd-krb5.5.xml:200 -msgid "%%" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:407 sssd-krb5.5.xml:201 -msgid "a literal '%'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:384 -msgid "" -"Override the user's home directory. You can either provide an absolute value " -"or a template. In the template, the following sequences are substituted: " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:413 -msgid "This option can also be set per-domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:418 -msgid "allowed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:421 -msgid "" -"Restrict user shell to one of the listed values. The order of evaluation is:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:424 -msgid "1. If the shell is present in <quote>/etc/shells</quote>, it is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:428 -msgid "" -"2. If the shell is in the allowed_shells list but not in <quote>/etc/shells</" -"quote>, use the value of the shell_fallback parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:433 -msgid "" -"3. If the shell is not in the allowed_shells list and not in <quote>/etc/" -"shells</quote>, a nologin shell is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:438 -msgid "An empty string for shell is passed as-is to libc." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:441 -msgid "" -"The <quote>/etc/shells</quote> is only read on SSSD start up, which means " -"that a restart of the SSSD is required in case a new shell is installed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:445 -msgid "Default: Not set. The user shell is automatically used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:450 -msgid "vetoed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:453 -msgid "Replace any instance of these shells with the shell_fallback" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:458 -msgid "shell_fallback (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:461 -msgid "" -"The default shell to use if an allowed shell is not installed on the machine." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:465 -msgid "Default: /bin/sh" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:472 -msgid "PAM configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:474 -msgid "" -"These options can be used to configure the Pluggable Authentication Module " -"(PAM) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:479 -msgid "offline_credentials_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:482 -msgid "" -"If the authentication provider is offline, how long should we allow cached " -"logins (in days since the last successful online login)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:487 sssd.conf.5.xml:500 -msgid "Default: 0 (No limit)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:493 -msgid "offline_failed_login_attempts (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:496 -msgid "" -"If the authentication provider is offline, how many failed login attempts " -"are allowed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:506 -msgid "offline_failed_login_delay (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:509 -msgid "" -"The time in minutes which has to pass after offline_failed_login_attempts " -"has been reached before a new login attempt is possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:514 -msgid "" -"If set to 0 the user cannot authenticate offline if " -"offline_failed_login_attempts has been reached. Only a successful online " -"authentication can enable offline authentication again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:520 sssd.conf.5.xml:573 sssd.conf.5.xml:1093 -msgid "Default: 5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:526 -msgid "pam_verbosity (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:529 -msgid "" -"Controls what kind of messages are shown to the user during authentication. " -"The higher the number to more messages are displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:534 -msgid "Currently sssd supports the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:537 -msgid "<emphasis>0</emphasis>: do not show any message" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:540 -msgid "<emphasis>1</emphasis>: show only important messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:544 -msgid "<emphasis>2</emphasis>: show informational messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:547 -msgid "<emphasis>3</emphasis>: show all messages and debug information" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:551 sssd.8.xml:63 -msgid "Default: 1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:556 -msgid "pam_id_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:559 -msgid "" -"For any PAM request while SSSD is online, the SSSD will attempt to " -"immediately update the cached identity information for the user in order to " -"ensure that authentication takes place with the latest information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:565 -msgid "" -"A complete PAM conversation may perform multiple PAM requests, such as " -"account management and session opening. This option controls (on a per-" -"client-application basis) how long (in seconds) we can cache the identity " -"information to avoid excessive round-trips to the identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:579 -msgid "pam_pwd_expiration_warning (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:582 -msgid "Display a warning N days before the password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:585 -msgid "" -"Please note that the backend server has to provide information about the " -"expiration time of the password. If this information is missing, sssd " -"cannot display a warning." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:591 -msgid "Default: 7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:599 -msgid "SUDO configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:601 -msgid "These options can be used to configure the sudo service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:608 -msgid "sudo_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:611 -msgid "" -"For any sudo request that comes while SSSD is online, the SSSD will attempt " -"to update the cached rules in order to ensure that sudo has the latest " -"ruleset." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:617 -msgid "" -"The user may, however, run a couple of sudo commands successively, which " -"would trigger multiple LDAP requests. In order to speed up this use-case, " -"the sudo service maintains an in-memory cache that would be used for " -"performing fast replies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:624 -msgid "" -"This option controls how long (in seconds) can the sudo service cache rules " -"for a user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:628 -msgid "Default: 180" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:633 -msgid "sudo_timed (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:636 -msgid "" -"Whether or not to evaluate the sudoNotBefore and sudoNotAfter attributes " -"that implement time-dependent sudoers entries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:649 -msgid "AUTOFS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:651 -msgid "These options can be used to configure the autofs service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:659 -msgid "autofs_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:662 -msgid "" -"Specifies for how many seconds should the autofs responder negative cache " -"hits (that is, queries for invalid map entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:679 -msgid "DOMAIN SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:686 -msgid "min_id,max_id (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:689 -msgid "" -"UID and GID limits for the domain. If a domain contains an entry that is " -"outside these limits, it is ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:694 -msgid "" -"For users, this affects the primary GID limit. The user will not be returned " -"to NSS if either the UID or the primary GID is outside the range. For non-" -"primary group memberships, those that are in range will be reported as " -"expected." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:701 -msgid "Default: 1 for min_id, 0 (no limit) for max_id" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:707 -msgid "timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:710 -msgid "" -"Timeout in seconds between heartbeats for this domain. This is used to " -"ensure that the backend process is alive and capable of answering requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:715 sssd-ldap.5.xml:1131 -msgid "Default: 10" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:721 -msgid "enumerate (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:724 -msgid "" -"Determines if a domain can be enumerated. This parameter can have one of the " -"following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:728 -msgid "TRUE = Users and groups are enumerated" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:731 -msgid "FALSE = No enumerations for this domain" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:734 sssd.conf.5.xml:839 sssd.conf.5.xml:893 -msgid "Default: FALSE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:737 -msgid "" -"Note: Enabling enumeration has a moderate performance impact on SSSD while " -"enumeration is running. It may take up to several minutes after SSSD startup " -"to fully complete enumerations. During this time, individual requests for " -"information will go directly to LDAP, though it may be slow, due to the " -"heavy enumeration processing." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:747 -msgid "" -"While the first enumeration is running, requests for the complete user or " -"group lists may return no results until it completes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:752 -msgid "" -"Further, enabling enumeration may increase the time necessary to detect " -"network disconnection, as longer timeouts are required to ensure that " -"enumeration lookups are completed successfully. For more information, refer " -"to the man pages for the specific id_provider in use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:763 -msgid "entry_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:766 -msgid "" -"How many seconds should nss_sss consider entries valid before asking the " -"backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:770 -msgid "Default: 5400" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:776 -msgid "entry_cache_user_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:779 -msgid "" -"How many seconds should nss_sss consider user entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:783 sssd.conf.5.xml:796 sssd.conf.5.xml:809 -#: sssd.conf.5.xml:822 -msgid "Default: entry_cache_timeout" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:789 -msgid "entry_cache_group_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:792 -msgid "" -"How many seconds should nss_sss consider group entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:802 -msgid "entry_cache_netgroup_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:805 -msgid "" -"How many seconds should nss_sss consider netgroup entries valid before " -"asking the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:815 -msgid "entry_cache_service_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:818 -msgid "" -"How many seconds should nss_sss consider service entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:828 -msgid "cache_credentials (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:831 -msgid "Determines if user credentials are also cached in the local LDB cache" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:835 -msgid "User credentials are stored in a SHA512 hash, not in plaintext" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:844 -msgid "account_cache_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:847 -msgid "" -"Number of days entries are left in cache after last successful login before " -"being removed during a cleanup of the cache. 0 means keep forever. The " -"value of this parameter must be greater than or equal to " -"offline_credentials_expiration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:854 -msgid "Default: 0 (unlimited)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:860 -msgid "id_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:863 -msgid "The Data Provider identity backend to use for this domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:867 -msgid "Supported backends:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:870 -msgid "proxy: Support a legacy NSS provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:873 -msgid "local: SSSD internal local provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:876 -msgid "ldap: LDAP provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:882 -msgid "use_fully_qualified_names (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:885 -msgid "" -"If set to TRUE, all requests to this domain must use fully qualified names. " -"For example, if used in LOCAL domain that contains a \"test\" user, " -"<command>getent passwd test</command> wouldn't find the user while " -"<command>getent passwd test@LOCAL</command> would." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:898 -msgid "auth_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:901 -msgid "" -"The authentication provider used for the domain. Supported auth providers " -"are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:905 -msgid "" -"<quote>ldap</quote> for native LDAP authentication. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:912 -msgid "" -"<quote>krb5</quote> for Kerberos authentication. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:919 -msgid "" -"<quote>proxy</quote> for relaying authentication to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:922 -msgid "<quote>none</quote> disables authentication explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:925 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"authentication requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:931 -msgid "access_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:934 -msgid "" -"The access control provider used for the domain. There are two built-in " -"access providers (in addition to any included in installed backends) " -"Internal special providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:940 -msgid "<quote>permit</quote> always allow access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:943 -msgid "<quote>deny</quote> always deny access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:946 -msgid "" -"<quote>simple</quote> access control based on access or deny lists. See " -"<citerefentry> <refentrytitle>sssd-simple</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry> for more information on configuring the simple " -"access module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:953 -msgid "Default: <quote>permit</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:958 -msgid "chpass_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:961 -msgid "" -"The provider which should handle change password operations for the domain. " -"Supported change password providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:966 -msgid "" -"<quote>ipa</quote> to change a password stored in an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:974 -msgid "" -"<quote>ldap</quote> to change a password stored in a LDAP server. See " -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:982 -msgid "" -"<quote>krb5</quote> to change the Kerberos password. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:990 -msgid "" -"<quote>proxy</quote> for relaying password changes to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:994 -msgid "<quote>none</quote> disallows password changes explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:997 -msgid "" -"Default: <quote>auth_provider</quote> is used if it is set and can handle " -"change password requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1004 -msgid "sudo_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1010 -msgid "The SUDO provider used for the domain. Supported SUDO providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1014 -msgid "" -"<quote>ldap</quote> for rules stored in LDAP. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1021 -msgid "<quote>none</quote> disables SUDO explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1024 -msgid "Default: The value of <quote>id_provider</quote> is used if it is set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1030 -msgid "session_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1033 -msgid "" -"The provider which should handle loading of session settings. Supported " -"session providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1038 -msgid "" -"<quote>ipa</quote> to load session settings from an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1046 -msgid "<quote>none</quote> disallows fetching session settings explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1049 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"session loading requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1056 -msgid "lookup_family_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1059 -msgid "" -"Provides the ability to select preferred address family to use when " -"performing DNS lookups." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1063 -msgid "Supported values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1066 -msgid "ipv4_first: Try looking up IPv4 address, if that fails, try IPv6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1069 -msgid "ipv4_only: Only attempt to resolve hostnames to IPv4 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1072 -msgid "ipv6_first: Try looking up IPv6 address, if that fails, try IPv4" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1075 -msgid "ipv6_only: Only attempt to resolve hostnames to IPv6 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1078 -msgid "Default: ipv4_first" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1084 -msgid "dns_resolver_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1087 -msgid "" -"Defines the amount of time (in seconds) to wait for a reply from the DNS " -"resolver before assuming that it is unreachable. If this timeout is reached, " -"the domain will continue to operate in offline mode." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1099 -msgid "dns_discovery_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1102 -msgid "" -"If service discovery is used in the back end, specifies the domain part of " -"the service discovery DNS query." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1106 -msgid "Default: Use the domain part of machine's hostname" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1112 -msgid "override_gid (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1115 -msgid "Override the primary GID value with the one specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1121 -msgid "case_sensitive (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1124 -msgid "" -"Treat user and group names as case sensitive. At the moment, this option is " -"not supported in the local provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1129 -msgid "Default: True" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:681 -msgid "" -"These configuration options can be present in a domain configuration " -"section, that is, in a section called <quote>[domain/<replaceable>NAME</" -"replaceable>]</quote> <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1141 -msgid "proxy_pam_target (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1144 -msgid "The proxy target PAM proxies to." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1147 -msgid "" -"Default: not set by default, you have to take an existing pam configuration " -"or create a new one and add the service name here." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1155 -msgid "proxy_lib_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1158 -msgid "" -"The name of the NSS library to use in proxy domains. The NSS functions " -"searched for in the library are in the form of _nss_$(libName)_$(function), " -"for example _nss_files_getpwent." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1137 -msgid "" -"Options valid for proxy domains. <placeholder type=\"variablelist\" id=" -"\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:1170 -msgid "The local domain section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:1172 -msgid "" -"This section contains settings for domain that stores users and groups in " -"SSSD native database, that is, a domain that uses " -"<replaceable>id_provider=local</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1179 -msgid "default_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1182 -msgid "The default shell for users created with SSSD userspace tools." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1186 -msgid "Default: <filename>/bin/bash</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1191 -msgid "base_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1194 -msgid "" -"The tools append the login name to <replaceable>base_directory</replaceable> " -"and use that as the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1199 -msgid "Default: <filename>/home</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1204 -msgid "create_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1207 -msgid "" -"Indicate if a home directory should be created by default for new users. " -"Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1211 sssd.conf.5.xml:1223 -msgid "Default: TRUE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1216 -msgid "remove_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1219 -msgid "" -"Indicate if a home directory should be removed by default for deleted " -"users. Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1228 -msgid "homedir_umask (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1231 -msgid "" -"Used by <citerefentry> <refentrytitle>sss_useradd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry> to specify the default permissions " -"on a newly created home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1239 -msgid "Default: 077" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1244 -msgid "skel_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1247 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<citerefentry> <refentrytitle>sss_useradd</refentrytitle> <manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1257 -msgid "Default: <filename>/etc/skel</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1262 -msgid "mail_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1265 -msgid "" -"The mail spool directory. This is needed to manipulate the mailbox when its " -"corresponding user account is modified or deleted. If not specified, a " -"default value is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1272 -msgid "Default: <filename>/var/mail</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1277 -msgid "userdel_cmd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1280 -msgid "" -"The command that is run after a user is removed. The command us passed the " -"username of the user being removed as the first and only parameter. The " -"return code of the command is not taken into account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1286 -msgid "Default: None, no command is run" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:1296 sssd-ldap.5.xml:2064 sssd-simple.5.xml:126 -#: sssd-ipa.5.xml:544 sssd-krb5.5.xml:432 -msgid "EXAMPLE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:1302 -#, no-wrap -msgid "" -"[sssd]\n" -"domains = LDAP\n" -"services = nss, pam\n" -"config_file_version = 2\n" -"\n" -"[nss]\n" -"filter_groups = root\n" -"filter_users = root\n" -"\n" -"[pam]\n" -"\n" -"[domain/LDAP]\n" -"id_provider = ldap\n" -"ldap_uri = ldap://ldap.example.com\n" -"ldap_search_base = dc=example,dc=com\n" -"\n" -"auth_provider = krb5\n" -"krb5_server = kerberos.example.com\n" -"krb5_realm = EXAMPLE.COM\n" -"cache_credentials = true\n" -"\n" -"min_id = 10000\n" -"max_id = 20000\n" -"enumerate = False\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1298 -msgid "" -"The following example shows a typical SSSD config. It does not describe " -"configuration of the domains themselves - refer to documentation on " -"configuring domains for more details. <placeholder type=\"programlisting\" " -"id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1333 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>pam_sss</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ldap.5.xml:10 sssd-ldap.5.xml:16 -msgid "sssd-ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:23 -msgid "" -"This manual page describes the configuration of LDAP domains for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. Refer to the <quote>FILE FORMAT</quote> section of the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for detailed syntax information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:35 -msgid "You can configure SSSD to use more than one LDAP domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:38 -msgid "" -"LDAP back end supports id, auth, access and chpass providers. If you want to " -"authenticate against an LDAP server either TLS/SSL or LDAPS is required. " -"<command>sssd</command> <emphasis>does not</emphasis> support authentication " -"over an unencrypted channel. If the LDAP server is used only as an identity " -"provider, an encrypted channel is not needed. Please refer to " -"<quote>ldap_access_filter</quote> config option for more information about " -"using LDAP as an access provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:49 sssd-simple.5.xml:69 sssd-ipa.5.xml:64 -#: sssd-krb5.5.xml:63 -msgid "CONFIGURATION OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:60 -msgid "ldap_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:63 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference. Refer to the <quote>FAILOVER</" -"quote> section for more information on failover and server redundancy. If " -"not specified, service discovery is enabled. For more information, refer to " -"the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:70 -msgid "The format of the URI must match the format defined in RFC 2732:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:73 -msgid "ldap[s]://<host>[:port]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:76 -msgid "" -"For explicit IPv6 addresses, <host> must be enclosed in brackets []" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:79 -msgid "example: ldap://[fc00::126:25]:389" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:85 -msgid "ldap_chpass_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:88 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference to change the password of a user. " -"Refer to the <quote>FAILOVER</quote> section for more information on " -"failover and server redundancy." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:95 -msgid "To enable service discovery ldap_chpass_dns_service_name must be set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:99 -msgid "Default: empty, i.e. ldap_uri is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:105 -msgid "ldap_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:108 -msgid "The default base DN to use for performing LDAP user operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:112 -msgid "" -"Starting with SSSD 1.7.0, SSSD supports multiple search bases using the " -"syntax:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:116 -msgid "search_base[?scope?[filter][?search_base?scope?[filter]]*]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:119 -msgid "The scope can be one of \"base\", \"onelevel\" or \"subtree\"." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:122 -msgid "" -"The filter must be a valid LDAP search filter as specified by http://www." -"ietf.org/rfc/rfc2254.txt" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:126 -msgid "Examples:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:129 -msgid "" -"ldap_search_base = dc=example,dc=com (which is equivalent to) " -"ldap_search_base = dc=example,dc=com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:134 -msgid "" -"ldap_search_base = cn=host_specific,dc=example,dc=com?subtree?" -"(host=thishost)?dc=example.com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:137 -msgid "" -"Note: It is unsupported to have multiple search bases which reference " -"identically-named objects (for example, groups with the same name in two " -"different search bases). This will lead to unpredictable behavior on client " -"machines." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:144 -msgid "" -"Default: If not set, the value of the defaultNamingContext or namingContexts " -"attribute from the RootDSE of the LDAP server is used. If " -"defaultNamingContext does not exists or has an empty value namingContexts is " -"used. The namingContexts attribute must have a single value with the DN of " -"the search base of the LDAP server to make this work. Multiple values are " -"are not supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:158 -msgid "ldap_schema (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:161 -msgid "" -"Specifies the Schema Type in use on the target LDAP server. Depending on " -"the selected schema, the default attribute names retrieved from the servers " -"may vary. The way that some attributes are handled may also differ. Three " -"schema types are currently supported: rfc2307 rfc2307bis IPA The main " -"difference between these schema types is how group memberships are recorded " -"in the server. With rfc2307, group members are listed by name in the " -"<emphasis>memberUid</emphasis> attribute. With rfc2307bis and IPA, group " -"members are listed by DN and stored in the <emphasis>member</emphasis> " -"attribute." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:180 -msgid "Default: rfc2307" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:186 -msgid "ldap_default_bind_dn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:189 -msgid "The default bind DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:196 -msgid "ldap_default_authtok_type (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:199 -msgid "The type of the authentication token of the default bind DN." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:203 -msgid "The two mechanisms currently supported are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:206 -msgid "password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:209 -msgid "obfuscated_password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:212 -msgid "Default: password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:218 -msgid "ldap_default_authtok (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:221 -msgid "" -"The authentication token of the default bind DN. Only clear text passwords " -"are currently supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:228 -msgid "ldap_user_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:231 -msgid "The object class of a user entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:234 -msgid "Default: posixAccount" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:240 -msgid "ldap_user_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:243 -msgid "The LDAP attribute that corresponds to the user's login name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:247 -msgid "Default: uid" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:253 -msgid "ldap_user_uid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:256 -msgid "The LDAP attribute that corresponds to the user's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:260 -msgid "Default: uidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:266 -msgid "ldap_user_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:269 -msgid "The LDAP attribute that corresponds to the user's primary group id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:273 sssd-ldap.5.xml:740 -msgid "Default: gidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:279 -msgid "ldap_user_gecos (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:282 -msgid "The LDAP attribute that corresponds to the user's gecos field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:286 -msgid "Default: gecos" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:292 -msgid "ldap_user_home_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:295 -msgid "The LDAP attribute that contains the name of the user's home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:299 -msgid "Default: homeDirectory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:305 -msgid "ldap_user_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:308 -msgid "The LDAP attribute that contains the path to the user's default shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:312 -msgid "Default: loginShell" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:318 -msgid "ldap_user_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:321 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP user object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:325 sssd-ldap.5.xml:766 sssd-ldap.5.xml:878 -msgid "Default: nsUniqueId" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:331 -msgid "ldap_user_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:334 sssd-ldap.5.xml:775 sssd-ldap.5.xml:887 -msgid "" -"The LDAP attribute that contains timestamp of the last modification of the " -"parent object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:338 sssd-ldap.5.xml:779 sssd-ldap.5.xml:894 -msgid "Default: modifyTimestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:344 -msgid "ldap_user_shadow_last_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:347 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (date of " -"the last password change)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:357 -msgid "Default: shadowLastChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:363 -msgid "ldap_user_shadow_min (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:366 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (minimum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:375 -msgid "Default: shadowMin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:381 -msgid "ldap_user_shadow_max (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:384 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (maximum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:393 -msgid "Default: shadowMax" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:399 -msgid "ldap_user_shadow_warning (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:402 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password warning period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:412 -msgid "Default: shadowWarning" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:418 -msgid "ldap_user_shadow_inactive (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:421 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password inactivity period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:431 -msgid "Default: shadowInactive" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:437 -msgid "ldap_user_shadow_expire (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:440 -msgid "" -"When using ldap_pwd_policy=shadow or ldap_account_expire_policy=shadow, this " -"parameter contains the name of an LDAP attribute corresponding to its " -"<citerefentry> <refentrytitle>shadow</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> counterpart (account expiration date)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:450 -msgid "Default: shadowExpire" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:456 -msgid "ldap_user_krb_last_pwd_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:459 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time of last password change in " -"kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:465 -msgid "Default: krbLastPwdChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:471 -msgid "ldap_user_krb_password_expiration (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:474 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time when current password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:480 -msgid "Default: krbPasswordExpiration" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:486 -msgid "ldap_user_ad_account_expires (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:489 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the expiration time of the account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:494 -msgid "Default: accountExpires" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:500 -msgid "ldap_user_ad_user_account_control (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:503 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the user account control bit field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:508 -msgid "Default: userAccountControl" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:514 -msgid "ldap_ns_account_lock (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:517 -msgid "" -"When using ldap_account_expire_policy=rhds or equivalent, this parameter " -"determines if access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:522 -msgid "Default: nsAccountLock" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:528 -msgid "ldap_user_nds_login_disabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:531 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines if " -"access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:535 sssd-ldap.5.xml:549 -msgid "Default: loginDisabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:541 -msgid "ldap_user_nds_login_expiration_time (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:544 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines until " -"which date access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:555 -msgid "ldap_user_nds_login_allowed_time_map (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:558 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines the " -"hours of a day in a week when access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:563 -msgid "Default: loginAllowedTimeMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:569 -msgid "ldap_user_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:572 -msgid "" -"The LDAP attribute that contains the user's Kerberos User Principal Name " -"(UPN)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:576 -msgid "Default: krbPrincipalName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:582 -msgid "ldap_user_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:585 -msgid "The LDAP attribute that contains the user's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:592 -msgid "ldap_force_upper_case_realm (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:595 -msgid "" -"Some directory servers, for example Active Directory, might deliver the " -"realm part of the UPN in lower case, which might cause the authentication to " -"fail. Set this option to a non-zero value if you want to use an upper-case " -"realm." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:608 -msgid "ldap_enumeration_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:611 -msgid "" -"Specifies how many seconds SSSD has to wait before refreshing its cache of " -"enumerated records." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:616 sssd-ldap.5.xml:1808 -msgid "Default: 300" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:622 -msgid "ldap_purge_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:625 -msgid "" -"Determine how often to check the cache for inactive entries (such as groups " -"with no members and users who have never logged in) and remove them to save " -"space." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:631 -msgid "Setting this option to zero will disable the cache cleanup operation." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:635 -msgid "Default: 10800 (12 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:641 -msgid "ldap_user_fullname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:644 -msgid "The LDAP attribute that corresponds to the user's full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:648 sssd-ldap.5.xml:727 sssd-ldap.5.xml:828 -#: sssd-ldap.5.xml:919 sssd-ldap.5.xml:1663 sssd-ldap.5.xml:1881 -#: sssd-ipa.5.xml:422 -msgid "Default: cn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:654 -msgid "ldap_user_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:657 -msgid "The LDAP attribute that lists the user's group memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:661 sssd-ipa.5.xml:326 -msgid "Default: memberOf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:667 -msgid "ldap_user_authorized_service (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:670 -msgid "" -"If access_provider=ldap and ldap_access_order=authorized_service, SSSD will " -"use the presence of the authorizedService attribute in the user's LDAP entry " -"to determine access privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:677 -msgid "" -"An explicit deny (!svc) is resolved first. Second, SSSD searches for " -"explicit allow (svc) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:682 -msgid "Default: authorizedService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:688 -msgid "ldap_user_authorized_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:691 -msgid "" -"If access_provider=ldap and ldap_access_order=host, SSSD will use the " -"presence of the host attribute in the user's LDAP entry to determine access " -"privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:697 -msgid "" -"An explicit deny (!host) is resolved first. Second, SSSD searches for " -"explicit allow (host) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:702 -msgid "Default: host" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:708 -msgid "ldap_group_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:711 -msgid "The object class of a group entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:714 -msgid "Default: posixGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:720 -msgid "ldap_group_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:723 -msgid "The LDAP attribute that corresponds to the group name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:733 -msgid "ldap_group_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:736 -msgid "The LDAP attribute that corresponds to the group's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:746 -msgid "ldap_group_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:749 -msgid "The LDAP attribute that contains the names of the group's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:753 -msgid "Default: memberuid (rfc2307) / member (rfc2307bis)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:759 -msgid "ldap_group_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:762 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP group object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:772 -msgid "ldap_group_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:785 -msgid "ldap_group_nesting_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:788 -msgid "" -"If ldap_schema is set to a schema format that supports nested groups (e.g. " -"RFC2307bis), then this option controls how many levels of nesting SSSD will " -"follow. This option has no effect on the RFC2307 schema." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:795 -msgid "Default: 2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:801 -msgid "ldap_netgroup_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:804 -msgid "The object class of a netgroup entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:807 -msgid "In IPA provider, ipa_netgroup_object_class should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:811 -msgid "Default: nisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:817 -msgid "ldap_netgroup_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:820 -msgid "The LDAP attribute that corresponds to the netgroup name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:824 -msgid "In IPA provider, ipa_netgroup_name should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:834 -msgid "ldap_netgroup_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:837 -msgid "The LDAP attribute that contains the names of the netgroup's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:841 -msgid "In IPA provider, ipa_netgroup_member should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:845 -msgid "Default: memberNisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:851 -msgid "ldap_netgroup_triple (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:854 -msgid "" -"The LDAP attribute that contains the (host, user, domain) netgroup triples." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:858 sssd-ldap.5.xml:891 -msgid "This option is not available in IPA provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:861 -msgid "Default: nisNetgroupTriple" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:867 -msgid "ldap_netgroup_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:870 -msgid "" -"The LDAP attribute that contains the UUID/GUID of an LDAP netgroup object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:874 -msgid "In IPA provider, ipa_netgroup_uuid should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:884 -msgid "ldap_netgroup_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:900 -msgid "ldap_service_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:903 -msgid "The object class of a service entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:906 -msgid "Default: ipService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:912 -msgid "ldap_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:915 -msgid "" -"The LDAP attribute that contains the name of service attributes and their " -"aliases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:925 -msgid "ldap_service_port (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:928 -msgid "The LDAP attribute that contains the port managed by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:932 -msgid "Default: ipServicePort" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:938 -msgid "ldap_service_proto (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:941 -msgid "" -"The LDAP attribute that contains the protocols understood by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:945 -msgid "Default: ipServiceProtocol" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:951 -msgid "ldap_service_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:954 -msgid "An optional base DN to restrict service searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:958 sssd-ldap.5.xml:1918 sssd-ldap.5.xml:1937 -#: sssd-ldap.5.xml:1956 sssd-ldap.5.xml:2019 sssd-ldap.5.xml:2041 -#: sssd-ipa.5.xml:163 sssd-ipa.5.xml:187 -msgid "" -"See <quote>ldap_search_base</quote> for information about configuring " -"multiple search bases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:963 sssd-ldap.5.xml:1923 sssd-ldap.5.xml:1942 -#: sssd-ldap.5.xml:1961 sssd-ldap.5.xml:2024 sssd-ldap.5.xml:2046 -#: sssd-ipa.5.xml:173 sssd-ipa.5.xml:192 -msgid "Default: the value of <emphasis>ldap_search_base</emphasis>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:970 -msgid "ldap_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:973 -msgid "" -"Specifies the timeout (in seconds) that ldap searches are allowed to run " -"before they are cancelled and cached results are returned (and offline mode " -"is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:979 -msgid "" -"Note: this option is subject to change in future versions of the SSSD. It " -"will likely be replaced at some point by a series of timeouts for specific " -"lookup types." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:985 sssd-ldap.5.xml:1027 sssd-ldap.5.xml:1042 -msgid "Default: 6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:991 -msgid "ldap_enumeration_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:994 -msgid "" -"Specifies the timeout (in seconds) that ldap searches for user and group " -"enumerations are allowed to run before they are cancelled and cached results " -"are returned (and offline mode is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1001 -msgid "Default: 60" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1007 -msgid "ldap_network_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1010 -msgid "" -"Specifies the timeout (in seconds) after which the <citerefentry> " -"<refentrytitle>poll</refentrytitle> <manvolnum>2</manvolnum> </citerefentry>/" -"<citerefentry> <refentrytitle>select</refentrytitle> <manvolnum>2</" -"manvolnum> </citerefentry> following a <citerefentry> " -"<refentrytitle>connect</refentrytitle> <manvolnum>2</manvolnum> </" -"citerefentry> returns in case of no activity." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1033 -msgid "ldap_opt_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1036 -msgid "" -"Specifies a timeout (in seconds) after which calls to synchronous LDAP APIs " -"will abort if no response is received. Also controls the timeout when " -"communicating with the KDC in case of SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1048 -msgid "ldap_connection_expire_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1051 -msgid "" -"Specifies a timeout (in seconds) that a connection to an LDAP server will be " -"maintained. After this time, the connection will be re-established. If used " -"in parallel with SASL/GSSAPI, the sooner of the two values (this value vs. " -"the TGT lifetime) will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1059 -msgid "Default: 900 (15 minutes)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1065 -msgid "ldap_page_size (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1068 -msgid "" -"Specify the number of records to retrieve from LDAP in a single request. " -"Some LDAP servers enforce a maximum limit per-request." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1073 -msgid "Default: 1000" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1079 -msgid "ldap_disable_paging" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1082 -msgid "" -"Disable the LDAP paging control. This option should be used if the LDAP " -"server reports that it supports the LDAP paging control in its RootDSE but " -"it is not enabled or does not behave properly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1088 -msgid "" -"Example: OpenLDAP servers with the paging control module installed on the " -"server but not enabled will report it in the RootDSE but be unable to use it." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1094 -msgid "" -"Example: 389 DS has a bug where it can only support a one paging control at " -"a time on a single connection. On busy clients, this can result in some " -"requests being denied." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1103 -msgid "ldap_deref_threshold (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1106 -msgid "" -"Specify the number of group members that must be missing from the internal " -"cache in order to trigger a dereference lookup. If less members are missing, " -"they are looked up individually." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1112 -msgid "" -"You can turn off dereference lookups completely by setting the value to 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1116 -msgid "" -"A dereference lookup is a means of fetching all group members in a single " -"LDAP call. Different LDAP servers may implement different dereference " -"methods. The currently supported servers are 389/RHDS, OpenLDAP and Active " -"Directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1124 -msgid "" -"<emphasis>Note:</emphasis> If any of the search bases specifies a search " -"filter, then the dereference lookup performance enhancement will be disabled " -"regardless of this setting." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1137 -msgid "ldap_tls_reqcert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1140 -msgid "" -"Specifies what checks to perform on server certificates in a TLS session, if " -"any. It can be specified as one of the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1146 -msgid "" -"<emphasis>never</emphasis> = The client will not request or check any server " -"certificate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1150 -msgid "" -"<emphasis>allow</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, it will be ignored and the session proceeds normally." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1157 -msgid "" -"<emphasis>try</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, the session is immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1163 -msgid "" -"<emphasis>demand</emphasis> = The server certificate is requested. If no " -"certificate is provided, or a bad certificate is provided, the session is " -"immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1169 -msgid "<emphasis>hard</emphasis> = Same as <quote>demand</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1173 -msgid "Default: hard" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1179 -msgid "ldap_tls_cacert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1182 -msgid "" -"Specifies the file that contains certificates for all of the Certificate " -"Authorities that <command>sssd</command> will recognize." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1187 sssd-ldap.5.xml:1205 sssd-ldap.5.xml:1246 -msgid "" -"Default: use OpenLDAP defaults, typically in <filename>/etc/openldap/ldap." -"conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1194 -msgid "ldap_tls_cacertdir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1197 -msgid "" -"Specifies the path of a directory that contains Certificate Authority " -"certificates in separate individual files. Typically the file names need to " -"be the hash of the certificate followed by '.0'. If available, " -"<command>cacertdir_rehash</command> can be used to create the correct names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1212 -msgid "ldap_tls_cert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1215 -msgid "Specifies the file that contains the certificate for the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1219 sssd-ldap.5.xml:1231 sssd-ldap.5.xml:1979 -#: sssd-ldap.5.xml:2006 sssd-krb5.5.xml:359 -msgid "Default: not set" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1225 -msgid "ldap_tls_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1228 -msgid "Specifies the file that contains the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1237 -msgid "ldap_tls_cipher_suite (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1240 -msgid "" -"Specifies acceptable cipher suites. Typically this is a colon sperated " -"list. See <citerefentry><refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> for format." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1253 -msgid "ldap_id_use_start_tls (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1256 -msgid "" -"Specifies that the id_provider connection must also use <systemitem class=" -"\"protocol\">tls</systemitem> to protect the channel." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1266 -msgid "ldap_sasl_mech (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1269 -msgid "" -"Specify the SASL mechanism to use. Currently only GSSAPI is tested and " -"supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1273 sssd-ldap.5.xml:1428 -msgid "Default: none" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1279 -msgid "ldap_sasl_authid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1282 -msgid "" -"Specify the SASL authorization id to use. When GSSAPI is used, this " -"represents the Kerberos principal used for authentication to the directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1287 -msgid "Default: host/machine.fqdn@REALM" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1293 -msgid "ldap_sasl_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1296 -msgid "" -"If set to true, the LDAP library would perform a reverse lookup to " -"canonicalize the host name during a SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1301 -msgid "Default: false;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1307 -msgid "ldap_krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1310 -msgid "Specify the keytab to use when using SASL/GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1313 -msgid "Default: System keytab, normally <filename>/etc/krb5.keytab</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1319 -msgid "ldap_krb5_init_creds (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1322 -msgid "" -"Specifies that the id_provider should init Kerberos credentials (TGT). This " -"action is performed only if SASL is used and the mechanism selected is " -"GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1334 -msgid "ldap_krb5_ticket_lifetime (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1337 -msgid "Specifies the lifetime in seconds of the TGT if GSSAPI is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1341 -msgid "Default: 86400 (24 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1347 sssd-krb5.5.xml:74 -msgid "krb5_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1350 sssd-krb5.5.xml:77 -msgid "" -"Specifies the comma-separated list of IP addresses or hostnames of the " -"Kerberos servers to which SSSD should connect in the order of preference. " -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. An optional port number (preceded by a " -"colon) may be appended to the addresses or hostnames. If empty, service " -"discovery is enabled - for more information, refer to the <quote>SERVICE " -"DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1362 sssd-krb5.5.xml:89 -msgid "" -"When using service discovery for KDC or kpasswd servers, SSSD first searches " -"for DNS entries that specify _udp as the protocol and falls back to _tcp if " -"none are found." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1367 sssd-krb5.5.xml:94 -msgid "" -"This option was named <quote>krb5_kdcip</quote> in earlier releases of SSSD. " -"While the legacy name is recognized for the time being, users are advised to " -"migrate their config files to use <quote>krb5_server</quote> instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1376 sssd-ipa.5.xml:216 sssd-krb5.5.xml:103 -msgid "krb5_realm (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1379 -msgid "Specify the Kerberos REALM (for SASL/GSSAPI auth)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1382 -msgid "Default: System defaults, see <filename>/etc/krb5.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1388 sssd-ipa.5.xml:231 sssd-krb5.5.xml:409 -msgid "krb5_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1391 -msgid "" -"Specifies if the host principal should be canonicalized when connecting to " -"LDAP server. This feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1403 -msgid "ldap_pwd_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1406 -msgid "" -"Select the policy to evaluate the password expiration on the client side. " -"The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1411 -msgid "" -"<emphasis>none</emphasis> - No evaluation on the client side. This option " -"cannot disable server-side password policies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1416 -msgid "" -"<emphasis>shadow</emphasis> - Use <citerefentry><refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum></citerefentry> style attributes to " -"evaluate if the password has expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1422 -msgid "" -"<emphasis>mit_kerberos</emphasis> - Use the attributes used by MIT Kerberos " -"to determine if the password has expired. Use chpass_provider=krb5 to update " -"these attributes when the password is changed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1434 -msgid "ldap_referrals (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1437 -msgid "Specifies whether automatic referral chasing should be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1441 -msgid "" -"Please note that sssd only supports referral chasing when it is compiled " -"with OpenLDAP version 2.4.13 or higher." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1452 -msgid "ldap_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1455 -msgid "Specifies the service name to use when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1459 -msgid "Default: ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1465 -msgid "ldap_chpass_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1468 -msgid "" -"Specifies the service name to use to find an LDAP server which allows " -"password changes when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1473 -msgid "Default: not set, i.e. service discovery is disabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1479 -msgid "ldap_access_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1482 -msgid "" -"If using access_provider = ldap, this option is mandatory. It specifies an " -"LDAP search filter criteria that must be met for the user to be granted " -"access on this host. If access_provider = ldap and this option is not set, " -"it will result in all users being denied access. Use access_provider = allow " -"to change this default behavior." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1492 sssd-ldap.5.xml:1982 -msgid "Example:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1495 -#, no-wrap -msgid "" -"access_provider = ldap\n" -"ldap_access_filter = memberOf=cn=allowedusers,ou=Groups,dc=example,dc=com\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1499 -msgid "" -"This example means that access to this host is restricted to members of the " -"\"allowedusers\" group in ldap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1504 -msgid "" -"Offline caching for this feature is limited to determining whether the " -"user's last online login was granted access permission. If they were granted " -"access during their last login, they will continue to be granted access " -"while offline and vice-versa." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1512 sssd-ldap.5.xml:1562 -msgid "Default: Empty" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1518 -msgid "ldap_account_expire_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1521 -msgid "" -"With this option a client side evaluation of access control attributes can " -"be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1525 -msgid "" -"Please note that it is always recommended to use server side access control, " -"i.e. the LDAP server should deny the bind request with a suitable error code " -"even if the password is correct." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1532 -msgid "The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1535 -msgid "" -"<emphasis>shadow</emphasis>: use the value of ldap_user_shadow_expire to " -"determine if the account is expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1540 -msgid "" -"<emphasis>ad</emphasis>: use the value of the 32bit field " -"ldap_user_ad_user_account_control and allow access if the second bit is not " -"set. If the attribute is missing access is granted. Also the expiration time " -"of the account is checked." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1547 -msgid "" -"<emphasis>rhds</emphasis>, <emphasis>ipa</emphasis>, <emphasis>389ds</" -"emphasis>: use the value of ldap_ns_account_lock to check if access is " -"allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1553 -msgid "" -"<emphasis>nds</emphasis>: the values of " -"ldap_user_nds_login_allowed_time_map, ldap_user_nds_login_disabled and " -"ldap_user_nds_login_expiration_time are used to check if access is allowed. " -"If both attributes are missing access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1568 -msgid "ldap_access_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1571 -msgid "Comma separated list of access control options. Allowed values are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1575 -msgid "<emphasis>filter</emphasis>: use ldap_access_filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1578 -msgid "<emphasis>expire</emphasis>: use ldap_account_expire_policy" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1582 -msgid "" -"<emphasis>authorized_service</emphasis>: use the authorizedService attribute " -"to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1587 -msgid "<emphasis>host</emphasis>: use the host attribute to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1591 -msgid "Default: filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1594 -msgid "" -"Please note that it is a configuration error if a value is used more than " -"once." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1601 -msgid "ldap_deref (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1604 -msgid "" -"Specifies how alias dereferencing is done when performing a search. The " -"following options are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1609 -msgid "<emphasis>never</emphasis>: Aliases are never dereferenced." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1613 -msgid "" -"<emphasis>searching</emphasis>: Aliases are dereferenced in subordinates of " -"the base object, but not in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1618 -msgid "" -"<emphasis>finding</emphasis>: Aliases are only dereferenced when locating " -"the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1623 -msgid "" -"<emphasis>always</emphasis>: Aliases are dereferenced both in searching and " -"in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1628 -msgid "" -"Default: Empty (this is handled as <emphasis>never</emphasis> by the LDAP " -"client libraries)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:51 -msgid "" -"All of the common configuration options that apply to SSSD domains also " -"apply to LDAP domains. Refer to the <quote>DOMAIN SECTIONS</quote> section " -"of the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for full details. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1639 -msgid "SUDO OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1644 -msgid "ldap_sudorule_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1647 -msgid "The object class of a sudo rule entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1650 -msgid "Default: sudoRole" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1656 -msgid "ldap_sudorule_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1659 -msgid "The LDAP attribute that corresponds to the sudo rule name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1669 -msgid "ldap_sudorule_command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1672 -msgid "The LDAP attribute that corresponds to the command name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1676 -msgid "Default: sudoCommand" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1682 -msgid "ldap_sudorule_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1685 -msgid "" -"The LDAP attribute that corresponds to the host name (or host IP address, " -"host IP network, or host netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1690 -msgid "Default: sudoHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1696 -msgid "ldap_sudorule_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1699 -msgid "" -"The LDAP attribute that corresponds to the user name (or UID, group name or " -"user's netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1703 -msgid "Default: sudoUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1709 -msgid "ldap_sudorule_option (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1712 -msgid "The LDAP attribute that corresponds to the sudo options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1716 -msgid "Default: sudoOption" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1722 -msgid "ldap_sudorule_runasuser (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1725 -msgid "" -"The LDAP attribute that corresponds to the user name that commands may be " -"run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1729 -msgid "Default: sudoRunAsUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1735 -msgid "ldap_sudorule_runasgroup (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1738 -msgid "" -"The LDAP attribute that corresponds to the group name or group GID that " -"commands may be run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1742 -msgid "Default: sudoRunAsGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1748 -msgid "ldap_sudorule_notbefore (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1751 -msgid "" -"The LDAP attribute that corresponds to the start date/time for when the sudo " -"rule is valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1755 -msgid "Default: sudoNotBefore" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1761 -msgid "ldap_sudorule_notafter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1764 -msgid "" -"The LDAP attribute that corresponds to the expiration date/time, after which " -"the sudo rule will no longer be valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1769 -msgid "Default: sudoNotAfter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1775 -msgid "ldap_sudorule_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1778 -msgid "The LDAP attribute that corresponds to the ordering index of the rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1782 -msgid "Default: sudoOrder" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1788 -msgid "ldap_sudo_refresh_enabled (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1791 -msgid "" -"Enables periodical download of all sudo rules. The cache is purged before " -"each update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1801 -msgid "ldap_sudo_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1804 -msgid "" -"How many seconds SSSD has to wait before refreshing its cache of sudo rules." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1642 -msgid "<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1815 -msgid "" -"This manual page only describes attribute name mapping. For detailed " -"explanation of sudo related attribute semantics, see <citerefentry> " -"<refentrytitle>sudoers.ldap</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1825 -msgid "AUTOFS OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1827 -msgid "" -"Please note that the default values correspond to the default schema which " -"is RFC2307." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1834 -msgid "ldap_autofs_map_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1837 sssd-ldap.5.xml:1863 -msgid "The object class of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1840 sssd-ldap.5.xml:1867 -msgid "Default: automountMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1847 -msgid "ldap_autofs_map_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1850 -msgid "The name of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1853 -msgid "Default: ou" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1860 -msgid "ldap_autofs_entry_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1874 -msgid "ldap_autofs_entry_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1877 sssd-ldap.5.xml:1891 -msgid "" -"The key of an automount entry in LDAP. The entry usually corresponds to a " -"mount point." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1888 -msgid "ldap_autofs_entry_value (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1895 -msgid "Default: automountInformation" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1832 -msgid "" -"<placeholder type=\"variablelist\" id=\"0\"/> <placeholder type=" -"\"variablelist\" id=\"1\"/> <placeholder type=\"variablelist\" id=\"2\"/> " -"<placeholder type=\"variablelist\" id=\"3\"/> <placeholder type=" -"\"variablelist\" id=\"4\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1904 -msgid "ADVANCED OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1911 -msgid "ldap_netgroup_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1914 -msgid "" -"An optional base DN to restrict netgroup searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1930 -msgid "ldap_user_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1933 -msgid "An optional base DN to restrict user searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1949 -msgid "ldap_group_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1952 -msgid "An optional base DN to restrict group searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1968 -msgid "ldap_user_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1971 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict user searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1975 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_user_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1985 -#, no-wrap -msgid "" -" ldap_user_search_filter = (loginShell=/bin/tcsh)\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1988 -msgid "" -"This filter would restrict user searches to users that have their shell set " -"to /bin/tcsh." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1995 -msgid "ldap_group_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1998 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict group searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2002 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_group_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2012 -msgid "ldap_sudo_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2015 -msgid "" -"An optional base DN to restrict sudo rules searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2034 -msgid "ldap_autofs_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2037 -msgid "" -"An optional base DN to restrict automounter searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1906 -msgid "" -"These options are supported by LDAP domains, but they should be used with " -"caution. Please include them in your configuration only if you know what you " -"are doing. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2066 -msgid "" -"The following example assumes that SSSD is correctly configured and LDAP is " -"set to one of the domains in the <replaceable>[domains]</replaceable> " -"section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ldap.5.xml:2072 -#, no-wrap -msgid "" -" [domain/LDAP]\n" -" id_provider = ldap\n" -" auth_provider = ldap\n" -" ldap_uri = ldap://ldap.mydomain.org\n" -" ldap_search_base = dc=mydomain,dc=org\n" -" ldap_tls_reqcert = demand\n" -" cache_credentials = true\n" -" enumerate = true\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2071 sssd-simple.5.xml:134 sssd-ipa.5.xml:552 -#: sssd-krb5.5.xml:441 -msgid "<placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:2085 sssd_krb5_locator_plugin.8.xml:61 -msgid "NOTES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2087 -msgid "" -"The descriptions of some of the configuration options in this manual page " -"are based on the <citerefentry> <refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page from the OpenLDAP 2.4 " -"distribution." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2098 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <refentryinfo> -#: pam_sss.8.xml:8 include/upstream.xml:2 -msgid "" -"<productname>SSSD</productname> <orgname>The SSSD upstream - http://" -"fedorahosted.org/sssd</orgname>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: pam_sss.8.xml:13 pam_sss.8.xml:18 -msgid "pam_sss" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: pam_sss.8.xml:19 -msgid "PAM module for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: pam_sss.8.xml:24 -msgid "" -"<command>pam_sss.so</command> <arg choice='opt'> <replaceable>quiet</" -"replaceable> </arg> <arg choice='opt'> <replaceable>forward_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_first_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_authtok</" -"replaceable> </arg> <arg choice='opt'> <replaceable>retry=N</replaceable> </" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:45 -msgid "" -"<command>pam_sss.so</command> is the PAM interface to the System Security " -"Services daemon (SSSD). Errors and results are logged through <command>syslog" -"(3)</command> with the LOG_AUTHPRIV facility." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:55 -msgid "<option>quiet</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:58 -msgid "Suppress log messages for unknown users." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:63 -msgid "<option>forward_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:66 -msgid "" -"If <option>forward_pass</option> is set the entered password is put on the " -"stack for other PAM modules to use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:73 -msgid "<option>use_first_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:76 -msgid "" -"The argument use_first_pass forces the module to use a previous stacked " -"modules password and will never prompt the user - if no password is " -"available or the password is not appropriate, the user will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:84 -msgid "<option>use_authtok</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:87 -msgid "" -"When password changing enforce the module to set the new password to the one " -"provided by a previously stacked password module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:94 -msgid "<option>retry=N</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:97 -msgid "" -"If specified the user is asked another N times for a password if " -"authentication fails. Default is 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:99 -msgid "" -"Please note that this option might not work as expected if the application " -"calling PAM handles the user dialog on its own. A typical example is " -"<command>sshd</command> with <option>PasswordAuthentication</option>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:110 -msgid "MODULE TYPES PROVIDED" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:111 -msgid "" -"All module types (<option>account</option>, <option>auth</option>, " -"<option>password</option> and <option>session</option>) are provided." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:117 -msgid "FILES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:118 -msgid "" -"If a password reset by root fails, because the corresponding SSSD provider " -"does not support password resets, an individual message can be displayed. " -"This message can e.g. contain instructions about how to reset a password." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:123 -msgid "" -"The message is read from the file <filename>pam_sss_pw_reset_message.LOC</" -"filename> where LOC stands for a locale string returned by <citerefentry> " -"<refentrytitle>setlocale</refentrytitle><manvolnum>3</manvolnum> </" -"citerefentry>. If there is no matching file the content of " -"<filename>pam_sss_pw_reset_message.txt</filename> is displayed. Root must be " -"the owner of the files and only root may have read and write permissions " -"while all other users must have only read permissions." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:133 -msgid "" -"These files are searched in the directory <filename>/etc/sssd/customize/" -"DOMAIN_NAME/</filename>. If no matching file is present a generic message is " -"displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:141 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd_krb5_locator_plugin.8.xml:10 sssd_krb5_locator_plugin.8.xml:15 -msgid "sssd_krb5_locator_plugin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:22 -msgid "" -"The Kerberos locator plugin <command>sssd_krb5_locator_plugin</command> is " -"used by the Kerberos provider of <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry> to tell the Kerberos " -"libraries what Realm and which KDC to use. Typically this is done in " -"<citerefentry> <refentrytitle>krb5.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> which is always read by the Kerberos libraries. " -"To simplify the configuration the Realm and the KDC can be defined in " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> as described in <citerefentry> " -"<refentrytitle>sssd-krb5.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry> puts the Realm and the name or IP address of the KDC into " -"the environment variables SSSD_KRB5_REALM and SSSD_KRB5_KDC respectively. " -"When <command>sssd_krb5_locator_plugin</command> is called by the kerberos " -"libraries it reads and evaluates these variables and returns them to the " -"libraries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:63 -msgid "" -"Not all Kerberos implementations support the use of plugins. If " -"<command>sssd_krb5_locator_plugin</command> is not available on your system " -"you have to edit /etc/krb5.conf to reflect your Kerberos setup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:69 -msgid "" -"If the environment variable SSSD_KRB5_LOCATOR_DEBUG is set to any value " -"debug messages will be sent to stderr." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:77 -msgid "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-simple.5.xml:10 sssd-simple.5.xml:16 -msgid "sssd-simple" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd-simple.5.xml:17 -msgid "the configuration file for SSSD's 'simple' access-control provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:24 -msgid "" -"This manual page describes the configuration of the simple access-control " -"provider for <citerefentry> <refentrytitle>sssd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry>. For a detailed syntax reference, " -"refer to the <quote>FILE FORMAT</quote> section of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:38 -msgid "" -"The simple access provider grants or denies access based on an access or " -"deny list of user or group names. The following rules apply:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:43 -msgid "If all lists are empty, access is granted" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:47 -msgid "" -"If any list is provided, the order of evaluation is allow,deny. This means " -"that any matching deny rule will supersede any matched allow rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:54 -msgid "" -"If either or both \"allow\" lists are provided, all users are denied unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:60 -msgid "" -"If only \"deny\" lists are provided, all users are granted access unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:78 -msgid "simple_allow_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:81 -msgid "Comma separated list of users who are allowed to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:88 -msgid "simple_deny_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:91 -msgid "Comma separated list of users who are explicitly denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:97 -msgid "simple_allow_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:100 -msgid "" -"Comma separated list of groups that are allowed to log in. This applies only " -"to groups within this SSSD domain. Local groups are not evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:108 -msgid "simple_deny_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:111 -msgid "" -"Comma separated list of groups that are explicitly denied access. This " -"applies only to groups within this SSSD domain. Local groups are not " -"evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:70 sssd-ipa.5.xml:65 -msgid "" -"Refer to the section <quote>DOMAIN SECTIONS</quote> of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page for details on the configuration of an SSSD " -"domain. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:120 -msgid "" -"Please note that it is an configuration error if both, simple_allow_users " -"and simple_deny_users, are defined." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:128 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the simple access provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-simple.5.xml:135 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" access_provider = simple\n" -" simple_allow_users = user1, user2\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:145 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ipa.5.xml:10 sssd-ipa.5.xml:16 -msgid "sssd-ipa" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:23 -msgid "" -"This manual page describes the configuration of the IPA provider for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. For a detailed syntax reference, refer to the <quote>FILE " -"FORMAT</quote> section of the <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:36 -msgid "" -"The IPA provider is a back end used to connect to an IPA server. (Refer to " -"the freeipa.org web site for information about IPA servers.) This provider " -"requires that the machine be joined to the IPA domain; configuration is " -"almost entirely self-discovered and obtained directly from the server." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:43 -msgid "" -"The IPA provider accepts the same options used by the <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> identity provider and the <citerefentry> <refentrytitle>sssd-" -"krb5</refentrytitle> <manvolnum>5</manvolnum> </citerefentry> authentication " -"provider with some exceptions described below." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:55 -msgid "" -"However, it is neither necessary nor recommended to set these options. IPA " -"provider can also be used as an access and chpass provider. As an access " -"provider it uses HBAC (host-based access control) rules. Please refer to " -"freeipa.org for more information about HBAC. No configuration of access " -"provider is required on the client side." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:72 -msgid "ipa_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:75 -msgid "" -"Specifies the name of the IPA domain. This is optional. If not provided, " -"the configuration domain name is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:83 -msgid "ipa_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:86 -msgid "" -"The comma-separated list of IP addresses or hostnames of the IPA servers to " -"which SSSD should connect in the order of preference. For more information " -"on failover and server redundancy, see the <quote>FAILOVER</quote> section. " -"This is optional if autodiscovery is enabled. For more information on " -"service discovery, refer to the the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:99 -msgid "ipa_hostname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:102 -msgid "" -"Optional. May be set on machines where the hostname(5) does not reflect the " -"fully qualified name used in the IPA domain to identify this host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:110 -msgid "ipa_dyndns_update (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:113 -msgid "" -"Optional. This option tells SSSD to automatically update the DNS server " -"built into FreeIPA v2 with the IP address of this client." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:118 -msgid "" -"NOTE: On older systems (such as RHEL 5), for this behavior to work reliably, " -"the default Kerberos realm must be set properly in /etc/krb5.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:129 -msgid "ipa_dyndns_iface (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:132 -msgid "" -"Optional. Applicable only when ipa_dyndns_update is true. Choose the " -"interface whose IP address should be used for dynamic DNS updates." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:137 -msgid "Default: Use the IP address of the IPA LDAP connection" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:143 -msgid "ipa_hbac_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:146 -msgid "Optional. Use the given string as search base for HBAC related objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:150 -msgid "Default: Use base DN" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:156 -msgid "ipa_host_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:159 -msgid "Optional. Use the given string as search base for host objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:168 -msgid "" -"If filter is given in any of search bases and " -"<emphasis>ipa_hbac_support_srchost</emphasis> is set to False, the filter " -"will be ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:180 -msgid "ipa_selinux_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:183 -msgid "Optional. Use the given string as search base for SELinux user maps." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:199 sssd-krb5.5.xml:229 -msgid "krb5_validate (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:202 sssd-krb5.5.xml:232 -msgid "" -"Verify with the help of krb5_keytab that the TGT obtained has not been " -"spoofed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:209 -msgid "" -"Note that this default differs from the traditional Kerberos provider back " -"end." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:219 -msgid "" -"The name of the Kerberos realm. This is optional and defaults to the value " -"of <quote>ipa_domain</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:223 -msgid "" -"The name of the Kerberos realm has a special meaning in IPA - it is " -"converted into the base DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:234 -msgid "" -"Specifies if the host and user principal should be canonicalized when " -"connecting to IPA LDAP and also for AS requests. This feature is available " -"with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:247 -msgid "ipa_hbac_refresh (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:250 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server. " -"This will reduce the latency and load on the IPA server if there are many " -"access-control requests made in a short period." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:257 -msgid "Default: 5 (seconds)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:262 -msgid "ipa_hbac_treat_deny_as (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:265 -msgid "" -"This option specifies how to treat the deprecated DENY-type HBAC rules. As " -"of FreeIPA v2.1, DENY rules are no longer supported on the server. All users " -"of FreeIPA will need to migrate their rules to use only the ALLOW rules. The " -"client will support two modes of operation during this transition period:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:274 -msgid "" -"<emphasis>DENY_ALL</emphasis>: If any HBAC DENY rules are detected, all " -"users will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:279 -msgid "" -"<emphasis>IGNORE</emphasis>: SSSD will ignore any DENY rules. Be very " -"careful with this option, as it may result in opening unintended access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:284 -msgid "Default: DENY_ALL" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:289 -msgid "ipa_hbac_support_srchost (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:292 -msgid "" -"If this is set to false, then srchost as given to SSSD by PAM will be " -"ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:296 -msgid "" -"Note that if set to <emphasis>False</emphasis>, this option casuses filters " -"given in <emphasis>ipa_host_search_base</emphasis> to be ignored;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:307 -msgid "ipa_automount_location (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:310 -msgid "The automounter location this IPA client will be using" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:313 -msgid "Default: The location named \"default\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:319 -msgid "ipa_netgroup_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:322 -msgid "The LDAP attribute that lists netgroup's memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:331 -msgid "ipa_netgroup_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:334 -msgid "" -"The LDAP attribute that lists system users and groups that are direct " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:339 sssd-ipa.5.xml:434 -msgid "Default: memberUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:344 -msgid "ipa_netgroup_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:347 -msgid "" -"The LDAP attribute that lists hosts and host groups that are direct members " -"of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:351 sssd-ipa.5.xml:446 -msgid "Default: memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:356 -msgid "ipa_netgroup_member_ext_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:359 -msgid "" -"The LDAP attribute that lists FQDNs of hosts and host groups that are " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:363 -msgid "Default: externalHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:368 -msgid "ipa_netgroup_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:371 -msgid "The LDAP attribute that contains NIS domain name of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:375 -msgid "Default: nisDomainName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:381 -msgid "ipa_host_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:384 sssd-ipa.5.xml:407 -msgid "The object class of a host entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:387 sssd-ipa.5.xml:410 -msgid "Default: ipaHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:392 -msgid "ipa_host_fqdn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:395 -msgid "The LDAP attribute that contains FQDN of the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:398 -msgid "Default: fqdn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:404 -msgid "ipa_selinux_usermap_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:415 -msgid "ipa_selinux_usermap_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:418 -msgid "The LDAP attribute that contains the name of SELinux usermap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:427 -msgid "ipa_selinux_usermap_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:430 -msgid "" -"The LDAP attribute that contains all users / groups this rule match against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:439 -msgid "ipa_selinux_usermap_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:442 -msgid "" -"The LDAP attribute that contains all hosts / hostgroups this rule match " -"against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:451 -msgid "ipa_selinux_usermap_see_also (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:454 -msgid "" -"The LDAP attribute that contains DN of HBAC rule which can be used for " -"matching instead of memberUser and memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:459 -msgid "Default: seeAlso" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:464 -msgid "ipa_selinux_usermap_selinux_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:467 -msgid "The LDAP attribute that contains SELinux user string itself." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:471 -msgid "Default: ipaSELinuxUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:476 -msgid "ipa_selinux_usermap_enabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:479 -msgid "" -"The LDAP attribute that contains whether or not is user map enabled for " -"usage." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:483 -msgid "Default: ipaEnabledFlag" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:488 -msgid "ipa_selinux_usermap_user_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:491 -msgid "The LDAP attribute that contains user category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:495 -msgid "Default: userCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:500 -msgid "ipa_selinux_usermap_host_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:503 -msgid "The LDAP attribute that contains host category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:507 -msgid "Default: hostCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:512 -msgid "ipa_selinux_usermap_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:515 -msgid "The LDAP attribute that contains unique ID of the user map." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:519 -msgid "Default: ipaUniqueID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:524 -msgid "ipa_host_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:527 -msgid "The LDAP attribute that contains the host's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:531 -msgid "Default: ipaSshPubKey" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:546 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the ipa provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ipa.5.xml:553 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" id_provider = ipa\n" -" ipa_server = ipaserver.example.com\n" -" ipa_hostname = myhost.example.com\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:564 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.8.xml:10 sssd.8.xml:15 -msgid "sssd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.8.xml:16 -msgid "System Security Services Daemon" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sssd.8.xml:21 -msgid "" -"<command>sssd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:31 -msgid "" -"<command>SSSD</command> provides a set of daemons to manage access to remote " -"directories and authentication mechanisms. It provides an NSS and PAM " -"interface toward the system and a pluggable backend system to connect to " -"multiple different account sources as well as D-Bus interface. It is also " -"the basis to provide client auditing and policy services for projects like " -"FreeIPA. It provides a more robust database to store local users as well as " -"extended user data." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:46 -msgid "" -"<option>-d</option>,<option>--debug-level</option> <replaceable>LEVEL</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:53 -msgid "<option>--debug-timestamps=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:57 -msgid "<emphasis>1</emphasis>: Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:60 -msgid "<emphasis>0</emphasis>: Disable timestamp in the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:69 -msgid "<option>--debug-microseconds=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:73 -msgid "" -"<emphasis>1</emphasis>: Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:76 -msgid "<emphasis>0</emphasis>: Disable microseconds in timestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:79 -msgid "Default: 0" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:85 -msgid "<option>-f</option>,<option>--debug-to-files</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:89 -msgid "" -"Send the debug output to files instead of stderr. By default, the log files " -"are stored in <filename>/var/log/sssd</filename> and there are separate log " -"files for every SSSD service and domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:97 -msgid "<option>-D</option>,<option>--daemon</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:101 -msgid "Become a daemon after starting up." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:107 -msgid "<option>-i</option>,<option>--interactive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:111 -msgid "Run in the foreground, don't become a daemon." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:117 sss_debuglevel.8.xml:42 -msgid "<option>-c</option>,<option>--config</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:121 sss_debuglevel.8.xml:46 -msgid "" -"Specify a non-default config file. The default is <filename>/etc/sssd/sssd." -"conf</filename>. For reference on the config file syntax and options, " -"consult the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:135 -msgid "<option>--version</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:139 -msgid "Print version number and exit." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.8.xml:147 -msgid "Signals" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:150 -msgid "SIGTERM/SIGINT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:153 -msgid "" -"Informs the SSSD to gracefully terminate all of its child processes and then " -"shut down the monitor." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:159 -msgid "SIGHUP" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:162 -msgid "" -"Tells the SSSD to stop writing to its current debug file descriptors and to " -"close and reopen them. This is meant to facilitate log rolling with programs " -"like logrotate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:170 -msgid "SIGUSR1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:173 -msgid "" -"Tells the SSSD to simulate offline operation for one minute. This is mostly " -"useful for testing purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:179 -msgid "SIGUSR2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:182 -msgid "" -"Tells the SSSD to go online immediately. This is mostly useful for testing " -"purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:193 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_obfuscate.8.xml:10 sss_obfuscate.8.xml:15 -msgid "sss_obfuscate" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_obfuscate.8.xml:16 -msgid "obfuscate a clear text password" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_obfuscate.8.xml:21 -msgid "" -"<command>sss_obfuscate</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>[PASSWORD]</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:32 -msgid "" -"<command>sss_obfuscate</command> converts a given password into human-" -"unreadable format and places it into appropriate domain section of the SSSD " -"config file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:37 -msgid "" -"The cleartext password is read from standard input or entered " -"interactively. The obfuscated password is put into " -"<quote>ldap_default_authtok</quote> parameter of a given SSSD domain and the " -"<quote>ldap_default_authtok_type</quote> parameter is set to " -"<quote>obfuscated_password</quote>. Refer to <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more details on these parameters." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:49 -msgid "" -"Please note that obfuscating the password provides <emphasis>no real " -"security benefit</emphasis> as it is still possible for an attacker to " -"reverse-engineer the password back. Using better authentication mechanisms " -"such as client side certificates or GSSAPI is <emphasis>strongly</emphasis> " -"advised." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:63 -msgid "<option>-s</option>,<option>--stdin</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:67 -msgid "The password to obfuscate will be read from standard input." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:74 sss_ssh_authorizedkeys.1.xml:82 -#: sss_ssh_knownhostsproxy.1.xml:81 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>DOMAIN</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:79 -msgid "" -"The SSSD domain to use the password in. The default name is <quote>default</" -"quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:86 -msgid "" -"<option>-f</option>,<option>--file</option> <replaceable>FILE</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:91 -msgid "Read the config file specified by the positional parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:95 -msgid "Default: <filename>/etc/sssd/sssd.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:105 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_useradd.8.xml:10 sss_useradd.8.xml:15 -msgid "sss_useradd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_useradd.8.xml:16 -msgid "create a new user" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_useradd.8.xml:21 -msgid "" -"<command>sss_useradd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:32 -msgid "" -"<command>sss_useradd</command> creates a new user account using the values " -"specified on the command line plus the default values from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:43 -msgid "" -"<option>-u</option>,<option>--uid</option> <replaceable>UID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:48 -msgid "" -"Set the UID of the user to the value of <replaceable>UID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:55 sss_usermod.8.xml:43 -msgid "" -"<option>-c</option>,<option>--gecos</option> <replaceable>COMMENT</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:60 sss_usermod.8.xml:48 -msgid "" -"Any text string describing the user. Often used as the field for the user's " -"full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:67 sss_usermod.8.xml:55 -msgid "" -"<option>-h</option>,<option>--home</option> <replaceable>HOME_DIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:72 -msgid "" -"The home directory of the user account. The default is to append the " -"<replaceable>LOGIN</replaceable> name to <filename>/home</filename> and use " -"that as the home directory. The base that is prepended before " -"<replaceable>LOGIN</replaceable> is tunable with <quote>user_defaults/" -"baseDirectory</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:82 sss_usermod.8.xml:66 -msgid "" -"<option>-s</option>,<option>--shell</option> <replaceable>SHELL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:87 -msgid "" -"The user's login shell. The default is currently <filename>/bin/bash</" -"filename>. The default can be changed with <quote>user_defaults/" -"defaultShell</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:96 -msgid "" -"<option>-G</option>,<option>--groups</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:101 -msgid "A list of existing groups this user is also a member of." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:107 -msgid "<option>-m</option>,<option>--create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:111 -msgid "" -"Create the user's home directory if it does not exist. The files and " -"directories contained in the skeleton directory (which can be defined with " -"the -k option or in the config file) will be copied to the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:121 -msgid "<option>-M</option>,<option>--no-create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:125 -msgid "" -"Do not create the user's home directory. Overrides configuration settings." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:132 -msgid "" -"<option>-k</option>,<option>--skel</option> <replaceable>SKELDIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:137 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<command>sss_useradd</command>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:143 -msgid "" -"This option is only valid if the <option>-m</option> (or <option>--create-" -"home</option>) option is specified, or creation of home directories is set " -"to TRUE in the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:152 sss_usermod.8.xml:124 -msgid "" -"<option>-Z</option>,<option>--selinux-user</option> " -"<replaceable>SELINUX_USER</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:157 -msgid "" -"The SELinux user for the user's login. If not specified, the system default " -"will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:169 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-krb5.5.xml:10 sssd-krb5.5.xml:16 -msgid "sssd-krb5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:23 -msgid "" -"This manual page describes the configuration of the Kerberos 5 " -"authentication backend for <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry>. For a detailed " -"syntax reference, please refer to the <quote>FILE FORMAT</quote> section of " -"the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:36 -msgid "" -"The Kerberos 5 authentication backend contains auth and chpass providers. It " -"must be paired with identity provider in order to function properly (for " -"example, id_provider = ldap). Some information required by the Kerberos 5 " -"authentication backend must be provided by the identity provider, such as " -"the user's Kerberos Principal Name (UPN). The configuration of the identity " -"provider should have an entry to specify the UPN. Please refer to the man " -"page for the applicable identity provider for details on how to configure " -"this." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:47 -msgid "" -"This backend also provides access control based on the .k5login file in the " -"home directory of the user. See <citerefentry> <refentrytitle>.k5login</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry> for more details. " -"Please note that an empty .k5login file will deny all access to this user. " -"To activate this feature use 'access_provider = krb5' in your sssd " -"configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:55 -msgid "" -"In the case where the UPN is not available in the identity backend " -"<command>sssd</command> will construct a UPN using the format " -"<replaceable>username</replaceable>@<replaceable>krb5_realm</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:106 -msgid "" -"The name of the Kerberos realm. This option is required and must be " -"specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:113 -msgid "krb5_kpasswd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:116 -msgid "" -"If the change password service is not running on the KDC alternative servers " -"can be defined here. An optional port number (preceded by a colon) may be " -"appended to the addresses or hostnames." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:122 -msgid "" -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. Please note that even if there are no more " -"kpasswd servers to try the back end is not switch to offline if " -"authentication against the KDC is still possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:129 -msgid "Default: Use the KDC" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:135 -msgid "krb5_ccachedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:138 -msgid "" -"Directory to store credential caches. All the substitution sequences of " -"krb5_ccname_template can be used here, too, except %d and %P. If the " -"directory does not exist it will be created. If %u, %U, %p or %h are used a " -"private directory belonging to the user is created. Otherwise a public " -"directory with restricted deletion flag (aka sticky bit, see <citerefentry> " -"<refentrytitle>chmod</refentrytitle> <manvolnum>1</manvolnum> </" -"citerefentry> for details) is created." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:151 -msgid "Default: /tmp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:157 -msgid "krb5_ccname_template (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:171 -msgid "login UID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:174 -msgid "%p" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:175 -msgid "principal name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:179 -msgid "%r" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:180 -msgid "realm name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:183 -msgid "%h" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:184 -msgid "home directory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:189 -msgid "value of krb5ccache_dir" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:194 -msgid "%P" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:195 -msgid "the process ID of the sssd client" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:160 -msgid "" -"Location of the user's credential cache. Currently only file based " -"credential caches are supported. In the template the following sequences are " -"substituted: <placeholder type=\"variablelist\" id=\"0\"/> If the template " -"ends with 'XXXXXX' mkstemp(3) is used to create a unique filename in a safe " -"way." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:209 -msgid "Default: FILE:%d/krb5cc_%U_XXXXXX" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:215 -msgid "krb5_auth_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:218 -msgid "" -"Timeout in seconds after an online authentication or change password request " -"is aborted. If possible the authentication request is continued offline." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:241 -msgid "krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:244 -msgid "" -"The location of the keytab to use when validating credentials obtained from " -"KDCs." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:248 -msgid "Default: /etc/krb5.keytab" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:254 -msgid "krb5_store_password_if_offline (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:257 -msgid "" -"Store the password of the user if the provider is offline and use it to " -"request a TGT when the provider gets online again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:262 -msgid "" -"Please note that this feature currently only available on a Linux platform. " -"Passwords stored in this way are kept in plaintext in the kernel keyring and " -"are potentially accessible by the root user (with difficulty)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:275 -msgid "krb5_renewable_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:278 -msgid "" -"Request a renewable ticket with a total lifetime given by an integer " -"immediately followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:283 sssd-krb5.5.xml:319 -msgid "<emphasis>s</emphasis> seconds" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:286 sssd-krb5.5.xml:322 -msgid "<emphasis>m</emphasis> minutes" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:289 sssd-krb5.5.xml:325 -msgid "<emphasis>h</emphasis> hours" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:292 sssd-krb5.5.xml:328 -msgid "<emphasis>d</emphasis> days." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:295 sssd-krb5.5.xml:331 -msgid "If there is no delimiter <emphasis>s</emphasis> is assumed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:299 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"renewable lifetime to one and a half hours please use '90m' instead of " -"'1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:305 -msgid "Default: not set, i.e. the TGT is not renewable" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:311 -msgid "krb5_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:314 -msgid "" -"Request ticket with a with a lifetime given by an integer immediately " -"followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:335 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"lifetime to one and a half hours please use '90m' instead of '1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:340 -msgid "" -"Default: not set, i.e. the default ticket lifetime configured on the KDC." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:347 -msgid "krb5_renew_interval (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:350 -msgid "" -"The time in seconds between two checks if the TGT should be renewed. TGTs " -"are renewed if about half of their lifetime is exceeded." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:355 -msgid "If this option is not set or 0 the automatic renewal is disabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:365 -msgid "krb5_use_fast (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:368 -msgid "" -"Enables flexible authentication secure tunneling (FAST) for Kerberos pre-" -"authentication. The following options are supported:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:373 -msgid "" -"<emphasis>never</emphasis> use FAST, this is equivalent to not set this " -"option at all." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:377 -msgid "" -"<emphasis>try</emphasis> to use FAST, if the server does not support fast " -"continue without." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:381 -msgid "" -"<emphasis>demand</emphasis> to use FAST, fail if the server does not require " -"fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:385 -msgid "Default: not set, i.e. FAST is not used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:388 -msgid "Please note that a keytab is required to use fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:391 -msgid "" -"Please note also that sssd supports fast only with MIT Kerberos version 1.8 " -"and above. If sssd used with an older version using this option is a " -"configuration error." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:400 -msgid "krb5_fast_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:403 -msgid "Specifies the server principal to use for FAST." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:412 -msgid "" -"Specifies if the host and user principal should be canonicalized. This " -"feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:65 -msgid "" -"If the auth-module krb5 is used in a SSSD domain, the following options must " -"be used. See the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page, section <quote>DOMAIN " -"SECTIONS</quote> for details on the configuration of a SSSD domain. " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:434 -msgid "" -"The following example assumes that SSSD is correctly configured and FOO is " -"one of the domains in the <replaceable>[sssd]</replaceable> section. This " -"example shows only configuration of Kerberos authentication, it does not " -"include any identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-krb5.5.xml:442 -#, no-wrap -msgid "" -" [domain/FOO]\n" -" auth_provider = krb5\n" -" krb5_server = 192.168.1.1\n" -" krb5_realm = EXAMPLE.COM\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:453 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupadd.8.xml:10 sss_groupadd.8.xml:15 -msgid "sss_groupadd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupadd.8.xml:16 -msgid "create a new group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupadd.8.xml:21 -msgid "" -"<command>sss_groupadd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:32 -msgid "" -"<command>sss_groupadd</command> creates a new group. These groups are " -"compatible with POSIX groups, with the additional feature that they can " -"contain other groups as members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupadd.8.xml:43 -msgid "" -"<option>-g</option>,<option>--gid</option> <replaceable>GID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupadd.8.xml:48 -msgid "" -"Set the GID of the group to the value of <replaceable>GID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_userdel.8.xml:10 sss_userdel.8.xml:15 -msgid "sss_userdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_userdel.8.xml:16 -msgid "delete a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_userdel.8.xml:21 -msgid "" -"<command>sss_userdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:32 -msgid "" -"<command>sss_userdel</command> deletes a user identified by login name " -"<replaceable>LOGIN</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:44 -msgid "<option>-r</option>,<option>--remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:48 -msgid "" -"Files in the user's home directory will be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:56 -msgid "<option>-R</option>,<option>--no-remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:60 -msgid "" -"Files in the user's home directory will NOT be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:68 -msgid "<option>-f</option>,<option>--force</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:72 -msgid "" -"This option forces <command>sss_userdel</command> to remove the user's home " -"directory and mail spool, even if they are not owned by the specified user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:80 -msgid "<option>-k</option>,<option>--kick</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:84 -msgid "Before actually deleting the user, terminate all his processes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:95 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupdel.8.xml:10 sss_groupdel.8.xml:15 -msgid "sss_groupdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupdel.8.xml:16 -msgid "delete a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupdel.8.xml:21 -msgid "" -"<command>sss_groupdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:32 -msgid "" -"<command>sss_groupdel</command> deletes a group identified by its name " -"<replaceable>GROUP</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupshow.8.xml:10 sss_groupshow.8.xml:15 -msgid "sss_groupshow" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupshow.8.xml:16 -msgid "print properties of a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupshow.8.xml:21 -msgid "" -"<command>sss_groupshow</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:32 -msgid "" -"<command>sss_groupshow</command> displays information about a group " -"identified by its name <replaceable>GROUP</replaceable>. The information " -"includes the group ID number, members of the group and the parent group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupshow.8.xml:43 -msgid "<option>-R</option>,<option>--recursive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupshow.8.xml:47 -msgid "" -"Also print indirect group members in a tree-like hierarchy. Note that this " -"also affects printing parent groups - without <option>R</option>, only the " -"direct parent will be printed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_usermod.8.xml:10 sss_usermod.8.xml:15 -msgid "sss_usermod" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_usermod.8.xml:16 -msgid "modify a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_usermod.8.xml:21 -msgid "" -"<command>sss_usermod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:32 -msgid "" -"<command>sss_usermod</command> modifies the account specified by " -"<replaceable>LOGIN</replaceable> to reflect the changes that are specified " -"on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:60 -msgid "The home directory of the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:71 -msgid "The user's login shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:82 -msgid "" -"Append this user to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:96 -msgid "" -"Remove this user from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:103 -msgid "<option>-l</option>,<option>--lock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:107 -msgid "Lock the user account. The user won't be able to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:114 -msgid "<option>-u</option>,<option>--unlock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:118 -msgid "Unlock the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:129 -msgid "The SELinux user for the user's login." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:140 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_cache.8.xml:10 sss_cache.8.xml:15 -msgid "sss_cache" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_cache.8.xml:16 -msgid "perform cache cleanup" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_cache.8.xml:21 -msgid "" -"<command>sss_cache</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_cache.8.xml:31 -msgid "" -"<command>sss_cache</command> invalidates records in SSSD cache. Invalidated " -"records are forced to be reloaded from server as soon as related SSSD " -"backend is online." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:42 -msgid "" -"<option>-u</option>,<option>--user</option> <replaceable>login</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:47 -msgid "Invalidate specific user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:53 -msgid "<option>-U</option>,<option>--users</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:57 -msgid "" -"Invalidate all user records. This option overrides invalidation of specific " -"user if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:64 -msgid "" -"<option>-g</option>,<option>--group</option> <replaceable>group</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:69 -msgid "Invalidate specific group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:75 -msgid "<option>-G</option>,<option>--groups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:79 -msgid "" -"Invalidate all group records. This option overrides invalidation of specific " -"group if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:86 -msgid "" -"<option>-n</option>,<option>--netgroup</option> <replaceable>netgroup</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:91 -msgid "Invalidate specific netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:97 -msgid "<option>-N</option>,<option>--netgroups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:101 -msgid "" -"Invalidate all netgroup records. This option overrides invalidation of " -"specific netgroup if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:108 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>domain</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:113 -msgid "Restrict invalidation process only to a particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_debuglevel.8.xml:10 sss_debuglevel.8.xml:15 -msgid "sss_debuglevel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_debuglevel.8.xml:16 -msgid "change debug level while SSSD is running" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_debuglevel.8.xml:21 -msgid "" -"<command>sss_debuglevel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>NEW_DEBUG_LEVEL</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_debuglevel.8.xml:32 -msgid "" -"<command>sss_debuglevel</command> changes debug level of SSSD monitor and " -"providers to <replaceable>NEW_DEBUG_LEVEL</replaceable> while SSSD is " -"running." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_debuglevel.8.xml:59 -msgid "<replaceable>NEW_DEBUG_LEVEL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_authorizedkeys.1.xml:10 sss_ssh_authorizedkeys.1.xml:15 -msgid "sss_ssh_authorizedkeys" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_ssh_authorizedkeys.1.xml:11 sss_ssh_knownhostsproxy.1.xml:11 -msgid "1" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_authorizedkeys.1.xml:16 -msgid "get OpenSSH authorized keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_authorizedkeys.1.xml:21 -msgid "" -"<command>sss_ssh_authorizedkeys</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>USER</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:32 -msgid "" -"<command>sss_ssh_authorizedkeys</command> acquires SSH public keys for user " -"<replaceable>USER</replaceable> and outputs them in OpenSSH authorized_keys " -"format (see the <quote>AUTHORIZED_KEYS FILE FORMAT</quote> section of " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> for more information)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:41 -msgid "" -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_authorizedkeys</" -"command> for public key user authentication if it is compiled with support " -"for either <quote>AuthorizedKeysCommand</quote> or <quote>PubkeyAgent</" -"quote> <citerefentry> <refentrytitle>sshd_config</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:58 -#, no-wrap -msgid "AuthorizedKeysCommand /usr/bin/sss_ssh_authorizedkeys\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:51 -msgid "" -"If <quote>AuthorizedKeysCommand</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by putting the following directive " -"in <citerefentry> <refentrytitle>sshd_config</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry>: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:69 -#, no-wrap -msgid "PubKeyAgent /usr/bin/sss_ssh_authorizedkeys %u\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:62 -msgid "" -"If <quote>PubkeyAgent</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by using the following directive " -"for <citerefentry> <refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> configuration: <placeholder type=\"programlisting" -"\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_authorizedkeys.1.xml:87 -msgid "" -"Search for user public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:98 -msgid "" -"<citerefentry> <refentrytitle>sshd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sshd_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_knownhostsproxy</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_knownhostsproxy.1.xml:10 sss_ssh_knownhostsproxy.1.xml:15 -msgid "sss_ssh_knownhostsproxy" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_knownhostsproxy.1.xml:16 -msgid "get OpenSSH host keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_knownhostsproxy.1.xml:21 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>HOST</replaceable></arg> <arg " -"choice='opt'><replaceable>PROXY_COMMAND</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:33 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> acquires SSH host public keys for " -"host <replaceable>HOST</replaceable>, stores them in a custom OpenSSH " -"known_hosts file (see the <quote>SSH_KNOWN_HOSTS FILE FORMAT</quote> section " -"of <citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> for more information) <filename>/var/lib/sss/" -"pubconf/known_hosts</filename> and estabilishes connection to the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:43 -msgid "" -"If <replaceable>PROXY_COMMAND</replaceable> is specified, it is used to " -"create the connection to the host instead of opening a socket." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_knownhostsproxy.1.xml:55 -#, no-wrap -msgid "" -"ProxyCommand /usr/bin/sss_ssh_knownhostsproxy -p %p %h\n" -"GlobalKnownHostsFile2 /var/lib/sss/pubconf/known_hosts\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:48 -msgid "" -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_knownhostsproxy</" -"command> for host key authentication by using the following directives for " -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> configuration: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_ssh_knownhostsproxy.1.xml:69 -msgid "" -"<option>-p</option>,<option>--port</option> <replaceable>PORT</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:74 -msgid "" -"Use port <replaceable>PORT</replaceable> to connect to the host. By " -"default, port 22 is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:86 -msgid "" -"Search for host public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:97 -msgid "" -"<citerefentry> <refentrytitle>ssh</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>ssh_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_authorizedkeys</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/service_discovery.xml:2 -msgid "SERVICE DISCOVERY" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/service_discovery.xml:4 -msgid "" -"The service discovery feature allows back ends to automatically find the " -"appropriate servers to connect to using a special DNS query." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:9 -msgid "Configuration" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:11 -msgid "" -"If no servers are specified, the back end automatically uses service " -"discovery to try to find a server. Optionally, the user may choose to use " -"both fixed server addresses and service discovery by inserting a special " -"keyword, <quote>_srv_</quote>, in the list of servers. The order of " -"preference is maintained. This feature is useful if, for example, the user " -"prefers to use service discovery whenever possible, and fall back to a " -"specific server when no servers can be discovered using DNS." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:23 -msgid "The domain name" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:25 -msgid "" -"Please refer to the <quote>dns_discovery_domain</quote> parameter in the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for more details." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:35 -msgid "The protocol" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:37 -msgid "" -"The queries usually specify _tcp as the protocol. Exceptions are documented " -"in respective option description." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:42 -msgid "See Also" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:44 -msgid "" -"For more information on the service discovery mechanism, refer to RFC 2782." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/upstream.xml:1 -msgid "<placeholder type=\"refentryinfo\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/failover.xml:2 -msgid "FAILOVER" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/failover.xml:4 -msgid "" -"The failover feature allows back ends to automatically switch to a different " -"server if the primary server fails." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:8 -msgid "Failover Syntax" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:10 -msgid "" -"The list of servers is given as a comma-separated list; any number of spaces " -"is allowed around the comma. The servers are listed in order of preference. " -"The list can contain any number of servers." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:17 -msgid "The Failover Mechanism" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:19 -msgid "" -"The failover mechanism distinguishes between a machine and a service. The " -"back end first tries to resolve the hostname of a given machine; if this " -"resolution attempt fails, the machine is considered offline. No further " -"attempts are made to connect to this machine for any other service. If the " -"resolution attempt succeeds, the back end tries to connect to a service on " -"this machine. If the service connection attempt fails, then only this " -"particular service is considered offline and the back end automatically " -"switches over to the next service. The machine is still considered online " -"and might still be tried for another service." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:32 -msgid "" -"Further connection attempts are made to machines or services marked as " -"offline after a specified period of time; this is currently hard coded to 30 " -"seconds." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:37 -msgid "" -"If there are no more machines to try, the back end as a whole switches to " -"offline mode, and then attempts to reconnect every 30 seconds." -msgstr "" - -#. type: Content of: <varlistentry><term> -#: include/param_help.xml:3 -msgid "<option>-h</option>,<option>--help</option>" -msgstr "" - -#. type: Content of: <varlistentry><listitem><para> -#: include/param_help.xml:7 -msgid "Display help message and exit." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:3 -msgid "" -"Bit mask that indicates which debug levels will be visible. 0x0010 is the " -"default value as well as the lowest allowed value, 0xFFF0 is the most " -"verbose mode. This setting overrides the settings from config file." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:8 -msgid "Currently supported debug levels:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:11 -msgid "" -"<emphasis>0x0010</emphasis>: Fatal failures. Anything that would prevent " -"SSSD from starting up or causes it to cease running." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:15 -msgid "" -"<emphasis>0x0020</emphasis>: Critical failures. An error that doesn't kill " -"the SSSD, but one that indicates that at least one major feature is not " -"going to work properly." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:20 -msgid "" -"<emphasis>0x0040</emphasis>: Serious failures. An error announcing that a " -"particular request or operation has failed." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:24 -msgid "" -"<emphasis>0x0080</emphasis>: Minor failures. These are the errors that would " -"percolate down to cause the operation failure of 2." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:28 -msgid "<emphasis>0x0100</emphasis>: Configuration settings." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:31 -msgid "<emphasis>0x0200</emphasis>: Function data." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:34 -msgid "<emphasis>0x0400</emphasis>: Trace messages for operation functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:37 -msgid "" -"<emphasis>0x1000</emphasis>: Trace messages for internal control functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:40 -msgid "" -"<emphasis>0x2000</emphasis>: Contents of function-internal variables that " -"may be interesting." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:43 -msgid "<emphasis>0x4000</emphasis>: Extremely low-level tracing information." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:46 -msgid "" -"To log required debug levels, simply add their numbers together as shown in " -"following examples:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:49 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, critical failures, " -"serious failures and function data use 0x0270." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:53 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, configuration settings, " -"function data, trace messages for internal control functions use 0x1310." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:57 -msgid "" -"<emphasis>Note</emphasis>: This is new format of debug levels introduced in " -"1.7.0. Older format (numbers from 0-10) is compatible but deprecated." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/experimental.xml:1 -msgid "" -"<emphasis> This is an experimental feature, please use http://fedorahosted." -"org/sssd to report any issues. </emphasis>" -msgstr "" diff --git a/src/man/po/pl.po b/src/man/po/pl.po deleted file mode 100644 index 9b9e8d983..000000000 --- a/src/man/po/pl.po +++ /dev/null @@ -1,6750 +0,0 @@ -# SOME DESCRIPTIVE TITLE -# Copyright (C) YEAR Red Hat -# This file is distributed under the same license as the sssd-docs package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@redhat.com\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2011-12-21 10:12+0000\n" -"Last-Translator: sgallagh <sgallagh@redhat.com>\n" -"Language-Team: Polish (http://www.transifex.net/projects/p/fedora/team/pl/)\n" -"Language: pl\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=3; plural=(n==1 ? 0 : n%10>=2 && n%10<=4 && (n%100<10 " -"|| n%100>=20) ? 1 : 2)\n" - -#. type: Content of: <reference><title> -#: sss_groupmod.8.xml:5 sssd.conf.5.xml:5 sssd-ldap.5.xml:5 pam_sss.8.xml:5 -#: sssd_krb5_locator_plugin.8.xml:5 sssd-simple.5.xml:5 sssd-ipa.5.xml:5 -#: sssd.8.xml:5 sss_obfuscate.8.xml:5 sss_useradd.8.xml:5 sssd-krb5.5.xml:5 -#: sss_groupadd.8.xml:5 sss_userdel.8.xml:5 sss_groupdel.8.xml:5 -#: sss_groupshow.8.xml:5 sss_usermod.8.xml:5 sss_cache.8.xml:5 -#: sss_debuglevel.8.xml:5 sss_ssh_authorizedkeys.1.xml:5 -#: sss_ssh_knownhostsproxy.1.xml:5 -msgid "SSSD Manual pages" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupmod.8.xml:10 sss_groupmod.8.xml:15 -msgid "sss_groupmod" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_groupmod.8.xml:11 pam_sss.8.xml:14 sssd_krb5_locator_plugin.8.xml:11 -#: sssd.8.xml:11 sss_obfuscate.8.xml:11 sss_useradd.8.xml:11 -#: sss_groupadd.8.xml:11 sss_userdel.8.xml:11 sss_groupdel.8.xml:11 -#: sss_groupshow.8.xml:11 sss_usermod.8.xml:11 sss_cache.8.xml:11 -#: sss_debuglevel.8.xml:11 -msgid "8" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupmod.8.xml:16 -msgid "modify a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupmod.8.xml:21 -msgid "" -"<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:30 sssd-ldap.5.xml:21 pam_sss.8.xml:44 -#: sssd_krb5_locator_plugin.8.xml:20 sssd-simple.5.xml:22 sssd-ipa.5.xml:21 -#: sssd.8.xml:29 sss_obfuscate.8.xml:30 sss_useradd.8.xml:30 -#: sssd-krb5.5.xml:21 sss_groupadd.8.xml:30 sss_userdel.8.xml:30 -#: sss_groupdel.8.xml:30 sss_groupshow.8.xml:30 sss_usermod.8.xml:30 -#: sss_cache.8.xml:29 sss_debuglevel.8.xml:30 sss_ssh_authorizedkeys.1.xml:30 -#: sss_ssh_knownhostsproxy.1.xml:31 -msgid "DESCRIPTION" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:32 -msgid "" -"<command>sss_groupmod</command> modifies the group to reflect the changes " -"that are specified on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:39 pam_sss.8.xml:51 sssd.8.xml:42 sss_obfuscate.8.xml:58 -#: sss_useradd.8.xml:39 sss_groupadd.8.xml:39 sss_userdel.8.xml:39 -#: sss_groupdel.8.xml:39 sss_groupshow.8.xml:39 sss_usermod.8.xml:39 -#: sss_cache.8.xml:38 sss_debuglevel.8.xml:38 sss_ssh_authorizedkeys.1.xml:78 -#: sss_ssh_knownhostsproxy.1.xml:65 -msgid "OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:43 sss_usermod.8.xml:77 -msgid "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:48 -msgid "" -"Append this group to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:57 sss_usermod.8.xml:91 -msgid "" -"<option>-r</option>,<option>--remove-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:62 -msgid "" -"Remove this group from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:72 sssd.conf.5.xml:1331 sssd-ldap.5.xml:2096 -#: pam_sss.8.xml:139 sssd_krb5_locator_plugin.8.xml:75 sssd-simple.5.xml:143 -#: sssd-ipa.5.xml:562 sssd.8.xml:191 sss_obfuscate.8.xml:103 -#: sss_useradd.8.xml:167 sssd-krb5.5.xml:451 sss_groupadd.8.xml:58 -#: sss_userdel.8.xml:93 sss_groupdel.8.xml:46 sss_groupshow.8.xml:58 -#: sss_usermod.8.xml:138 sss_ssh_authorizedkeys.1.xml:96 -#: sss_ssh_knownhostsproxy.1.xml:95 -msgid "SEE ALSO" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:74 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.conf.5.xml:10 sssd.conf.5.xml:16 -msgid "sssd.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sssd.conf.5.xml:11 sssd-ldap.5.xml:11 sssd-simple.5.xml:11 -#: sssd-ipa.5.xml:11 sssd-krb5.5.xml:11 -msgid "5" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><refmiscinfo> -#: sssd.conf.5.xml:12 sssd-ldap.5.xml:12 sssd-simple.5.xml:12 -#: sssd-ipa.5.xml:12 sssd-krb5.5.xml:12 -msgid "File Formats and Conventions" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.conf.5.xml:17 sssd-ldap.5.xml:17 sssd_krb5_locator_plugin.8.xml:16 -#: sssd-ipa.5.xml:17 sssd-krb5.5.xml:17 -msgid "the configuration file for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:21 -msgid "FILE FORMAT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:29 -#, no-wrap -msgid "" -" <replaceable>[section]</replaceable>\n" -" <replaceable>key</replaceable> = <replaceable>value</replaceable>\n" -" <replaceable>key2</replaceable> = <replaceable>value2,value3</replaceable>\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:24 -msgid "" -"The file has an ini-style syntax and consists of sections and parameters. A " -"section begins with the name of the section in square brackets and continues " -"until the next section begins. An example of section with single and multi-" -"valued parameters: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:36 -msgid "" -"The data types used are string (no quotes needed), integer and bool (with " -"values of <quote>TRUE/FALSE</quote>)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:41 -msgid "" -"A line comment starts with a hash sign (<quote>#</quote>) or a semicolon " -"(<quote>;</quote>)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:46 -msgid "" -"All sections can have an optional <replaceable>description</replaceable> " -"parameter. Its function is only as a label for the section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:52 -msgid "" -"<filename>sssd.conf</filename> must be a regular file, owned by root and " -"only root may read from or write to the file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:58 -msgid "SPECIAL SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:61 -msgid "The [sssd] section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><title> -#: sssd.conf.5.xml:70 sssd.conf.5.xml:1177 -msgid "Section parameters" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:72 -msgid "config_file_version (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:75 -msgid "" -"Indicates what is the syntax of the config file. SSSD 0.6.0 and later use " -"version 2." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:81 -msgid "services" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:84 -msgid "" -"Comma separated list of services that are started when sssd itself starts." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:88 -msgid "" -"Supported services: nss, pam <phrase condition=\"with_sudo\">, sudo</phrase>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:94 sssd.conf.5.xml:257 -msgid "reconnection_retries (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:97 sssd.conf.5.xml:260 -msgid "" -"Number of times services should attempt to reconnect in the event of a Data " -"Provider crash or restart before they give up" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:102 sssd.conf.5.xml:265 -msgid "Default: 3" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:107 -msgid "domains" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:110 -msgid "" -"A domain is a database containing user information. SSSD can use more " -"domains at the same time, but at least one must be configured or SSSD won't " -"start. This parameter described the list of domains in the order you want " -"them to be queried." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:120 -msgid "re_expression (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:123 -msgid "" -"Regular expression that describes how to parse the string containing user " -"name and domain into these components." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:127 -msgid "" -"Default: <quote>(?P<name>[^@]+)@?(?P<domain>[^@]*$)</quote> " -"which translates to \"the name is everything up to the <quote>@</quote> " -"sign, the domain everything after that\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:132 -msgid "" -"PLEASE NOTE: the support for non-unique named subpatterns is not available " -"on all platforms (e.g. RHEL5 and SLES10). Only platforms with libpcre " -"version 7 or higher can support non-unique named subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:139 -msgid "" -"PLEASE NOTE ALSO: older version of libpcre only support the Python syntax (?" -"P<name>) to label subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:146 -msgid "full_name_format (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:149 -msgid "" -"A <citerefentry> <refentrytitle>printf</refentrytitle> <manvolnum>3</" -"manvolnum> </citerefentry>-compatible format that describes how to translate " -"a (name, domain) tuple into a fully qualified name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:157 -msgid "Default: <quote>%1$s@%2$s</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:162 -msgid "try_inotify (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:165 -msgid "" -"SSSD monitors the state of resolv.conf to identify when it needs to update " -"its internal DNS resolver. By default, we will attempt to use inotify for " -"this, and will fall back to polling resolv.conf every five seconds if " -"inotify cannot be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:173 -msgid "" -"There are some limited situations where it is preferred that we should skip " -"even trying to use inotify. In these rare cases, this option should be set " -"to 'false'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:179 -msgid "" -"Default: true on platforms where inotify is supported. False on other " -"platforms." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:183 -msgid "" -"Note: this option will have no effect on platforms where inotify is " -"unavailable. On these platforms, polling will always be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:190 -msgid "krb5_rcache_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:193 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" -"Katalog w systemie plików, w którym SSSD powinno przechowywać pliki pamięci " -"podręcznej odtwarzania Kerberosa." - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:197 -msgid "" -"This option accepts a special value __LIBKRB5_DEFAULTS__ that will instruct " -"SSSD to let libkrb5 decide the appropriate location for the replay cache." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:203 -msgid "" -"Default: Distribution-specific and specified at build-time. " -"(__LIBKRB5_DEFAULTS__ if not configured)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:63 -msgid "" -"Individual pieces of SSSD functionality are provided by special SSSD " -"services that are started and stopped together with SSSD. The services are " -"managed by a special service frequently called <quote>monitor</quote>. The " -"<quote>[sssd]</quote> section is used to configure the monitor as well as " -"some other important options like the identity domains. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:216 -msgid "SERVICES SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:218 -msgid "" -"Settings that can be used to configure different services are described in " -"this section. They should reside in the [<replaceable>$NAME</replaceable>] " -"section, for example, for NSS service, the section would be <quote>[nss]</" -"quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:225 -msgid "General service configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:227 -msgid "These options can be used to configure any service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:231 -msgid "debug_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:235 -msgid "debug_timestamps (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:238 -msgid "Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:241 sssd.conf.5.xml:376 sssd-ldap.5.xml:1328 -#: sssd-ldap.5.xml:1446 sssd-ipa.5.xml:206 sssd-ipa.5.xml:241 -msgid "Default: true" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:246 -msgid "debug_microseconds (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:249 -msgid "Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:252 sssd.conf.5.xml:641 sssd-ldap.5.xml:602 -#: sssd-ldap.5.xml:1260 sssd-ldap.5.xml:1397 sssd-ldap.5.xml:1795 -#: sssd-ipa.5.xml:123 sssd-ipa.5.xml:301 sssd-krb5.5.xml:235 -#: sssd-krb5.5.xml:269 sssd-krb5.5.xml:418 -msgid "Default: false" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:270 -msgid "command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:273 -msgid "" -"By default, the executable representing this service is called <command>sssd_" -"${service_name}</command>. This directive allows to change the executable " -"name for the service. In the vast majority of configurations, the default " -"values should suffice." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:281 -msgid "Default: <command>sssd_${service_name}</command>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:289 -msgid "NSS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:291 -msgid "" -"These options can be used to configure the Name Service Switch (NSS) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:296 -msgid "enum_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:299 -msgid "" -"How many seconds should nss_sss cache enumerations (requests for info about " -"all users)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:303 -msgid "Default: 120" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:308 -msgid "entry_cache_nowait_percentage (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:311 -msgid "" -"The entry cache can be set to automatically update entries in the background " -"if they are requested beyond a percentage of the entry_cache_timeout value " -"for the domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:317 -msgid "" -"For example, if the domain's entry_cache_timeout is set to 30s and " -"entry_cache_nowait_percentage is set to 50 (percent), entries that come in " -"after 15 seconds past the last cache update will be returned immediately, " -"but the SSSD will go and update the cache on its own, so that future " -"requests will not need to block waiting for a cache update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:327 -msgid "" -"Valid values for this option are 0-99 and represent a percentage of the " -"entry_cache_timeout for each domain. For performance reasons, this " -"percentage will never reduce the nowait timeout to less than 10 seconds. (0 " -"disables this feature)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:335 -msgid "Default: 50" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:340 -msgid "entry_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:343 -msgid "" -"Specifies for how many seconds nss_sss should cache negative cache hits " -"(that is, queries for invalid database entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:349 sssd.conf.5.xml:669 sssd-krb5.5.xml:223 -msgid "Default: 15" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:354 -msgid "filter_users, filter_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:357 -msgid "" -"Exclude certain users from being fetched from the sss NSS database. This is " -"particularly useful for system accounts. This option can also be set per-" -"domain or include fully-qualified names to filter only users from the " -"particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:364 -msgid "Default: root" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:369 -msgid "filter_users_in_groups (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:372 -msgid "" -"If you want filtered user still be group members set this option to false." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:381 -msgid "override_homedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:390 sssd-krb5.5.xml:166 -msgid "%u" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:391 sssd-krb5.5.xml:167 -msgid "login name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:394 sssd-krb5.5.xml:170 -msgid "%U" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:395 -msgid "UID number" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:398 sssd-krb5.5.xml:188 -msgid "%d" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:399 -msgid "domain name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:402 -msgid "%f" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:403 -msgid "fully qualified user name (user@domain)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:406 sssd-krb5.5.xml:200 -msgid "%%" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:407 sssd-krb5.5.xml:201 -msgid "a literal '%'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:384 -msgid "" -"Override the user's home directory. You can either provide an absolute value " -"or a template. In the template, the following sequences are substituted: " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:413 -msgid "This option can also be set per-domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:418 -msgid "allowed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:421 -msgid "" -"Restrict user shell to one of the listed values. The order of evaluation is:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:424 -msgid "1. If the shell is present in <quote>/etc/shells</quote>, it is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:428 -msgid "" -"2. If the shell is in the allowed_shells list but not in <quote>/etc/shells</" -"quote>, use the value of the shell_fallback parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:433 -msgid "" -"3. If the shell is not in the allowed_shells list and not in <quote>/etc/" -"shells</quote>, a nologin shell is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:438 -msgid "An empty string for shell is passed as-is to libc." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:441 -msgid "" -"The <quote>/etc/shells</quote> is only read on SSSD start up, which means " -"that a restart of the SSSD is required in case a new shell is installed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:445 -msgid "Default: Not set. The user shell is automatically used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:450 -msgid "vetoed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:453 -msgid "Replace any instance of these shells with the shell_fallback" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:458 -msgid "shell_fallback (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:461 -msgid "" -"The default shell to use if an allowed shell is not installed on the machine." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:465 -msgid "Default: /bin/sh" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:472 -msgid "PAM configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:474 -msgid "" -"These options can be used to configure the Pluggable Authentication Module " -"(PAM) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:479 -msgid "offline_credentials_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:482 -msgid "" -"If the authentication provider is offline, how long should we allow cached " -"logins (in days since the last successful online login)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:487 sssd.conf.5.xml:500 -msgid "Default: 0 (No limit)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:493 -msgid "offline_failed_login_attempts (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:496 -msgid "" -"If the authentication provider is offline, how many failed login attempts " -"are allowed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:506 -msgid "offline_failed_login_delay (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:509 -msgid "" -"The time in minutes which has to pass after offline_failed_login_attempts " -"has been reached before a new login attempt is possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:514 -msgid "" -"If set to 0 the user cannot authenticate offline if " -"offline_failed_login_attempts has been reached. Only a successful online " -"authentication can enable offline authentication again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:520 sssd.conf.5.xml:573 sssd.conf.5.xml:1093 -msgid "Default: 5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:526 -msgid "pam_verbosity (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:529 -msgid "" -"Controls what kind of messages are shown to the user during authentication. " -"The higher the number to more messages are displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:534 -msgid "Currently sssd supports the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:537 -msgid "<emphasis>0</emphasis>: do not show any message" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:540 -msgid "<emphasis>1</emphasis>: show only important messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:544 -msgid "<emphasis>2</emphasis>: show informational messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:547 -msgid "<emphasis>3</emphasis>: show all messages and debug information" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:551 sssd.8.xml:63 -msgid "Default: 1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:556 -msgid "pam_id_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:559 -msgid "" -"For any PAM request while SSSD is online, the SSSD will attempt to " -"immediately update the cached identity information for the user in order to " -"ensure that authentication takes place with the latest information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:565 -msgid "" -"A complete PAM conversation may perform multiple PAM requests, such as " -"account management and session opening. This option controls (on a per-" -"client-application basis) how long (in seconds) we can cache the identity " -"information to avoid excessive round-trips to the identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:579 -msgid "pam_pwd_expiration_warning (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:582 -msgid "Display a warning N days before the password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:585 -msgid "" -"Please note that the backend server has to provide information about the " -"expiration time of the password. If this information is missing, sssd " -"cannot display a warning." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:591 -msgid "Default: 7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:599 -msgid "SUDO configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:601 -msgid "These options can be used to configure the sudo service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:608 -msgid "sudo_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:611 -msgid "" -"For any sudo request that comes while SSSD is online, the SSSD will attempt " -"to update the cached rules in order to ensure that sudo has the latest " -"ruleset." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:617 -msgid "" -"The user may, however, run a couple of sudo commands successively, which " -"would trigger multiple LDAP requests. In order to speed up this use-case, " -"the sudo service maintains an in-memory cache that would be used for " -"performing fast replies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:624 -msgid "" -"This option controls how long (in seconds) can the sudo service cache rules " -"for a user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:628 -msgid "Default: 180" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:633 -msgid "sudo_timed (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:636 -msgid "" -"Whether or not to evaluate the sudoNotBefore and sudoNotAfter attributes " -"that implement time-dependent sudoers entries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:649 -msgid "AUTOFS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:651 -msgid "These options can be used to configure the autofs service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:659 -msgid "autofs_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:662 -msgid "" -"Specifies for how many seconds should the autofs responder negative cache " -"hits (that is, queries for invalid map entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:679 -msgid "DOMAIN SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:686 -msgid "min_id,max_id (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:689 -msgid "" -"UID and GID limits for the domain. If a domain contains an entry that is " -"outside these limits, it is ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:694 -msgid "" -"For users, this affects the primary GID limit. The user will not be returned " -"to NSS if either the UID or the primary GID is outside the range. For non-" -"primary group memberships, those that are in range will be reported as " -"expected." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:701 -msgid "Default: 1 for min_id, 0 (no limit) for max_id" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:707 -msgid "timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:710 -msgid "" -"Timeout in seconds between heartbeats for this domain. This is used to " -"ensure that the backend process is alive and capable of answering requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:715 sssd-ldap.5.xml:1131 -msgid "Default: 10" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:721 -msgid "enumerate (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:724 -msgid "" -"Determines if a domain can be enumerated. This parameter can have one of the " -"following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:728 -msgid "TRUE = Users and groups are enumerated" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:731 -msgid "FALSE = No enumerations for this domain" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:734 sssd.conf.5.xml:839 sssd.conf.5.xml:893 -msgid "Default: FALSE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:737 -msgid "" -"Note: Enabling enumeration has a moderate performance impact on SSSD while " -"enumeration is running. It may take up to several minutes after SSSD startup " -"to fully complete enumerations. During this time, individual requests for " -"information will go directly to LDAP, though it may be slow, due to the " -"heavy enumeration processing." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:747 -msgid "" -"While the first enumeration is running, requests for the complete user or " -"group lists may return no results until it completes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:752 -msgid "" -"Further, enabling enumeration may increase the time necessary to detect " -"network disconnection, as longer timeouts are required to ensure that " -"enumeration lookups are completed successfully. For more information, refer " -"to the man pages for the specific id_provider in use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:763 -msgid "entry_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:766 -msgid "" -"How many seconds should nss_sss consider entries valid before asking the " -"backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:770 -msgid "Default: 5400" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:776 -msgid "entry_cache_user_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:779 -msgid "" -"How many seconds should nss_sss consider user entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:783 sssd.conf.5.xml:796 sssd.conf.5.xml:809 -#: sssd.conf.5.xml:822 -msgid "Default: entry_cache_timeout" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:789 -msgid "entry_cache_group_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:792 -msgid "" -"How many seconds should nss_sss consider group entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:802 -msgid "entry_cache_netgroup_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:805 -msgid "" -"How many seconds should nss_sss consider netgroup entries valid before " -"asking the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:815 -msgid "entry_cache_service_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:818 -msgid "" -"How many seconds should nss_sss consider service entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:828 -msgid "cache_credentials (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:831 -msgid "Determines if user credentials are also cached in the local LDB cache" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:835 -msgid "User credentials are stored in a SHA512 hash, not in plaintext" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:844 -msgid "account_cache_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:847 -msgid "" -"Number of days entries are left in cache after last successful login before " -"being removed during a cleanup of the cache. 0 means keep forever. The " -"value of this parameter must be greater than or equal to " -"offline_credentials_expiration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:854 -msgid "Default: 0 (unlimited)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:860 -msgid "id_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:863 -msgid "The Data Provider identity backend to use for this domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:867 -msgid "Supported backends:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:870 -msgid "proxy: Support a legacy NSS provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:873 -msgid "local: SSSD internal local provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:876 -msgid "ldap: LDAP provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:882 -msgid "use_fully_qualified_names (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:885 -msgid "" -"If set to TRUE, all requests to this domain must use fully qualified names. " -"For example, if used in LOCAL domain that contains a \"test\" user, " -"<command>getent passwd test</command> wouldn't find the user while " -"<command>getent passwd test@LOCAL</command> would." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:898 -msgid "auth_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:901 -msgid "" -"The authentication provider used for the domain. Supported auth providers " -"are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:905 -msgid "" -"<quote>ldap</quote> for native LDAP authentication. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:912 -msgid "" -"<quote>krb5</quote> for Kerberos authentication. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:919 -msgid "" -"<quote>proxy</quote> for relaying authentication to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:922 -msgid "<quote>none</quote> disables authentication explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:925 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"authentication requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:931 -msgid "access_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:934 -msgid "" -"The access control provider used for the domain. There are two built-in " -"access providers (in addition to any included in installed backends) " -"Internal special providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:940 -msgid "<quote>permit</quote> always allow access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:943 -msgid "<quote>deny</quote> always deny access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:946 -msgid "" -"<quote>simple</quote> access control based on access or deny lists. See " -"<citerefentry> <refentrytitle>sssd-simple</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry> for more information on configuring the simple " -"access module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:953 -msgid "Default: <quote>permit</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:958 -msgid "chpass_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:961 -msgid "" -"The provider which should handle change password operations for the domain. " -"Supported change password providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:966 -msgid "" -"<quote>ipa</quote> to change a password stored in an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:974 -msgid "" -"<quote>ldap</quote> to change a password stored in a LDAP server. See " -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:982 -msgid "" -"<quote>krb5</quote> to change the Kerberos password. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:990 -msgid "" -"<quote>proxy</quote> for relaying password changes to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:994 -msgid "<quote>none</quote> disallows password changes explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:997 -msgid "" -"Default: <quote>auth_provider</quote> is used if it is set and can handle " -"change password requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1004 -msgid "sudo_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1010 -msgid "The SUDO provider used for the domain. Supported SUDO providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1014 -msgid "" -"<quote>ldap</quote> for rules stored in LDAP. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1021 -msgid "<quote>none</quote> disables SUDO explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1024 -msgid "Default: The value of <quote>id_provider</quote> is used if it is set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1030 -msgid "session_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1033 -msgid "" -"The provider which should handle loading of session settings. Supported " -"session providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1038 -msgid "" -"<quote>ipa</quote> to load session settings from an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1046 -msgid "<quote>none</quote> disallows fetching session settings explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1049 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"session loading requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1056 -msgid "lookup_family_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1059 -msgid "" -"Provides the ability to select preferred address family to use when " -"performing DNS lookups." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1063 -msgid "Supported values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1066 -msgid "ipv4_first: Try looking up IPv4 address, if that fails, try IPv6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1069 -msgid "ipv4_only: Only attempt to resolve hostnames to IPv4 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1072 -msgid "ipv6_first: Try looking up IPv6 address, if that fails, try IPv4" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1075 -msgid "ipv6_only: Only attempt to resolve hostnames to IPv6 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1078 -msgid "Default: ipv4_first" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1084 -msgid "dns_resolver_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1087 -msgid "" -"Defines the amount of time (in seconds) to wait for a reply from the DNS " -"resolver before assuming that it is unreachable. If this timeout is reached, " -"the domain will continue to operate in offline mode." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1099 -msgid "dns_discovery_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1102 -msgid "" -"If service discovery is used in the back end, specifies the domain part of " -"the service discovery DNS query." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1106 -msgid "Default: Use the domain part of machine's hostname" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1112 -msgid "override_gid (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1115 -msgid "Override the primary GID value with the one specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1121 -msgid "case_sensitive (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1124 -msgid "" -"Treat user and group names as case sensitive. At the moment, this option is " -"not supported in the local provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1129 -msgid "Default: True" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:681 -msgid "" -"These configuration options can be present in a domain configuration " -"section, that is, in a section called <quote>[domain/<replaceable>NAME</" -"replaceable>]</quote> <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1141 -msgid "proxy_pam_target (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1144 -msgid "The proxy target PAM proxies to." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1147 -msgid "" -"Default: not set by default, you have to take an existing pam configuration " -"or create a new one and add the service name here." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1155 -msgid "proxy_lib_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1158 -msgid "" -"The name of the NSS library to use in proxy domains. The NSS functions " -"searched for in the library are in the form of _nss_$(libName)_$(function), " -"for example _nss_files_getpwent." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1137 -msgid "" -"Options valid for proxy domains. <placeholder type=\"variablelist\" id=" -"\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:1170 -msgid "The local domain section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:1172 -msgid "" -"This section contains settings for domain that stores users and groups in " -"SSSD native database, that is, a domain that uses " -"<replaceable>id_provider=local</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1179 -msgid "default_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1182 -msgid "The default shell for users created with SSSD userspace tools." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1186 -msgid "Default: <filename>/bin/bash</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1191 -msgid "base_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1194 -msgid "" -"The tools append the login name to <replaceable>base_directory</replaceable> " -"and use that as the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1199 -msgid "Default: <filename>/home</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1204 -msgid "create_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1207 -msgid "" -"Indicate if a home directory should be created by default for new users. " -"Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1211 sssd.conf.5.xml:1223 -msgid "Default: TRUE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1216 -msgid "remove_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1219 -msgid "" -"Indicate if a home directory should be removed by default for deleted " -"users. Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1228 -msgid "homedir_umask (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1231 -msgid "" -"Used by <citerefentry> <refentrytitle>sss_useradd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry> to specify the default permissions " -"on a newly created home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1239 -msgid "Default: 077" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1244 -msgid "skel_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1247 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<citerefentry> <refentrytitle>sss_useradd</refentrytitle> <manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1257 -msgid "Default: <filename>/etc/skel</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1262 -msgid "mail_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1265 -msgid "" -"The mail spool directory. This is needed to manipulate the mailbox when its " -"corresponding user account is modified or deleted. If not specified, a " -"default value is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1272 -msgid "Default: <filename>/var/mail</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1277 -msgid "userdel_cmd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1280 -msgid "" -"The command that is run after a user is removed. The command us passed the " -"username of the user being removed as the first and only parameter. The " -"return code of the command is not taken into account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1286 -msgid "Default: None, no command is run" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:1296 sssd-ldap.5.xml:2064 sssd-simple.5.xml:126 -#: sssd-ipa.5.xml:544 sssd-krb5.5.xml:432 -msgid "EXAMPLE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:1302 -#, no-wrap -msgid "" -"[sssd]\n" -"domains = LDAP\n" -"services = nss, pam\n" -"config_file_version = 2\n" -"\n" -"[nss]\n" -"filter_groups = root\n" -"filter_users = root\n" -"\n" -"[pam]\n" -"\n" -"[domain/LDAP]\n" -"id_provider = ldap\n" -"ldap_uri = ldap://ldap.example.com\n" -"ldap_search_base = dc=example,dc=com\n" -"\n" -"auth_provider = krb5\n" -"krb5_server = kerberos.example.com\n" -"krb5_realm = EXAMPLE.COM\n" -"cache_credentials = true\n" -"\n" -"min_id = 10000\n" -"max_id = 20000\n" -"enumerate = False\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1298 -msgid "" -"The following example shows a typical SSSD config. It does not describe " -"configuration of the domains themselves - refer to documentation on " -"configuring domains for more details. <placeholder type=\"programlisting\" " -"id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1333 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>pam_sss</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ldap.5.xml:10 sssd-ldap.5.xml:16 -msgid "sssd-ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:23 -msgid "" -"This manual page describes the configuration of LDAP domains for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. Refer to the <quote>FILE FORMAT</quote> section of the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for detailed syntax information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:35 -msgid "You can configure SSSD to use more than one LDAP domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:38 -msgid "" -"LDAP back end supports id, auth, access and chpass providers. If you want to " -"authenticate against an LDAP server either TLS/SSL or LDAPS is required. " -"<command>sssd</command> <emphasis>does not</emphasis> support authentication " -"over an unencrypted channel. If the LDAP server is used only as an identity " -"provider, an encrypted channel is not needed. Please refer to " -"<quote>ldap_access_filter</quote> config option for more information about " -"using LDAP as an access provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:49 sssd-simple.5.xml:69 sssd-ipa.5.xml:64 -#: sssd-krb5.5.xml:63 -msgid "CONFIGURATION OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:60 -msgid "ldap_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:63 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference. Refer to the <quote>FAILOVER</" -"quote> section for more information on failover and server redundancy. If " -"not specified, service discovery is enabled. For more information, refer to " -"the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:70 -msgid "The format of the URI must match the format defined in RFC 2732:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:73 -msgid "ldap[s]://<host>[:port]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:76 -msgid "" -"For explicit IPv6 addresses, <host> must be enclosed in brackets []" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:79 -msgid "example: ldap://[fc00::126:25]:389" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:85 -msgid "ldap_chpass_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:88 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference to change the password of a user. " -"Refer to the <quote>FAILOVER</quote> section for more information on " -"failover and server redundancy." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:95 -msgid "To enable service discovery ldap_chpass_dns_service_name must be set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:99 -msgid "Default: empty, i.e. ldap_uri is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:105 -msgid "ldap_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:108 -msgid "The default base DN to use for performing LDAP user operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:112 -msgid "" -"Starting with SSSD 1.7.0, SSSD supports multiple search bases using the " -"syntax:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:116 -msgid "search_base[?scope?[filter][?search_base?scope?[filter]]*]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:119 -msgid "The scope can be one of \"base\", \"onelevel\" or \"subtree\"." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:122 -msgid "" -"The filter must be a valid LDAP search filter as specified by http://www." -"ietf.org/rfc/rfc2254.txt" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:126 -msgid "Examples:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:129 -msgid "" -"ldap_search_base = dc=example,dc=com (which is equivalent to) " -"ldap_search_base = dc=example,dc=com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:134 -msgid "" -"ldap_search_base = cn=host_specific,dc=example,dc=com?subtree?" -"(host=thishost)?dc=example.com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:137 -msgid "" -"Note: It is unsupported to have multiple search bases which reference " -"identically-named objects (for example, groups with the same name in two " -"different search bases). This will lead to unpredictable behavior on client " -"machines." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:144 -msgid "" -"Default: If not set, the value of the defaultNamingContext or namingContexts " -"attribute from the RootDSE of the LDAP server is used. If " -"defaultNamingContext does not exists or has an empty value namingContexts is " -"used. The namingContexts attribute must have a single value with the DN of " -"the search base of the LDAP server to make this work. Multiple values are " -"are not supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:158 -msgid "ldap_schema (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:161 -msgid "" -"Specifies the Schema Type in use on the target LDAP server. Depending on " -"the selected schema, the default attribute names retrieved from the servers " -"may vary. The way that some attributes are handled may also differ. Three " -"schema types are currently supported: rfc2307 rfc2307bis IPA The main " -"difference between these schema types is how group memberships are recorded " -"in the server. With rfc2307, group members are listed by name in the " -"<emphasis>memberUid</emphasis> attribute. With rfc2307bis and IPA, group " -"members are listed by DN and stored in the <emphasis>member</emphasis> " -"attribute." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:180 -msgid "Default: rfc2307" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:186 -msgid "ldap_default_bind_dn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:189 -msgid "The default bind DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:196 -msgid "ldap_default_authtok_type (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:199 -msgid "The type of the authentication token of the default bind DN." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:203 -msgid "The two mechanisms currently supported are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:206 -msgid "password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:209 -msgid "obfuscated_password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:212 -msgid "Default: password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:218 -msgid "ldap_default_authtok (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:221 -msgid "" -"The authentication token of the default bind DN. Only clear text passwords " -"are currently supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:228 -msgid "ldap_user_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:231 -msgid "The object class of a user entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:234 -msgid "Default: posixAccount" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:240 -msgid "ldap_user_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:243 -msgid "The LDAP attribute that corresponds to the user's login name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:247 -msgid "Default: uid" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:253 -msgid "ldap_user_uid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:256 -msgid "The LDAP attribute that corresponds to the user's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:260 -msgid "Default: uidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:266 -msgid "ldap_user_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:269 -msgid "The LDAP attribute that corresponds to the user's primary group id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:273 sssd-ldap.5.xml:740 -msgid "Default: gidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:279 -msgid "ldap_user_gecos (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:282 -msgid "The LDAP attribute that corresponds to the user's gecos field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:286 -msgid "Default: gecos" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:292 -msgid "ldap_user_home_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:295 -msgid "The LDAP attribute that contains the name of the user's home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:299 -msgid "Default: homeDirectory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:305 -msgid "ldap_user_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:308 -msgid "The LDAP attribute that contains the path to the user's default shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:312 -msgid "Default: loginShell" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:318 -msgid "ldap_user_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:321 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP user object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:325 sssd-ldap.5.xml:766 sssd-ldap.5.xml:878 -msgid "Default: nsUniqueId" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:331 -msgid "ldap_user_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:334 sssd-ldap.5.xml:775 sssd-ldap.5.xml:887 -msgid "" -"The LDAP attribute that contains timestamp of the last modification of the " -"parent object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:338 sssd-ldap.5.xml:779 sssd-ldap.5.xml:894 -msgid "Default: modifyTimestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:344 -msgid "ldap_user_shadow_last_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:347 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (date of " -"the last password change)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:357 -msgid "Default: shadowLastChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:363 -msgid "ldap_user_shadow_min (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:366 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (minimum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:375 -msgid "Default: shadowMin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:381 -msgid "ldap_user_shadow_max (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:384 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (maximum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:393 -msgid "Default: shadowMax" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:399 -msgid "ldap_user_shadow_warning (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:402 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password warning period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:412 -msgid "Default: shadowWarning" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:418 -msgid "ldap_user_shadow_inactive (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:421 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password inactivity period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:431 -msgid "Default: shadowInactive" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:437 -msgid "ldap_user_shadow_expire (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:440 -msgid "" -"When using ldap_pwd_policy=shadow or ldap_account_expire_policy=shadow, this " -"parameter contains the name of an LDAP attribute corresponding to its " -"<citerefentry> <refentrytitle>shadow</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> counterpart (account expiration date)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:450 -msgid "Default: shadowExpire" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:456 -msgid "ldap_user_krb_last_pwd_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:459 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time of last password change in " -"kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:465 -msgid "Default: krbLastPwdChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:471 -msgid "ldap_user_krb_password_expiration (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:474 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time when current password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:480 -msgid "Default: krbPasswordExpiration" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:486 -msgid "ldap_user_ad_account_expires (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:489 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the expiration time of the account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:494 -msgid "Default: accountExpires" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:500 -msgid "ldap_user_ad_user_account_control (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:503 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the user account control bit field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:508 -msgid "Default: userAccountControl" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:514 -msgid "ldap_ns_account_lock (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:517 -msgid "" -"When using ldap_account_expire_policy=rhds or equivalent, this parameter " -"determines if access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:522 -msgid "Default: nsAccountLock" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:528 -msgid "ldap_user_nds_login_disabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:531 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines if " -"access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:535 sssd-ldap.5.xml:549 -msgid "Default: loginDisabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:541 -msgid "ldap_user_nds_login_expiration_time (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:544 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines until " -"which date access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:555 -msgid "ldap_user_nds_login_allowed_time_map (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:558 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines the " -"hours of a day in a week when access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:563 -msgid "Default: loginAllowedTimeMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:569 -msgid "ldap_user_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:572 -msgid "" -"The LDAP attribute that contains the user's Kerberos User Principal Name " -"(UPN)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:576 -msgid "Default: krbPrincipalName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:582 -msgid "ldap_user_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:585 -msgid "The LDAP attribute that contains the user's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:592 -msgid "ldap_force_upper_case_realm (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:595 -msgid "" -"Some directory servers, for example Active Directory, might deliver the " -"realm part of the UPN in lower case, which might cause the authentication to " -"fail. Set this option to a non-zero value if you want to use an upper-case " -"realm." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:608 -msgid "ldap_enumeration_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:611 -msgid "" -"Specifies how many seconds SSSD has to wait before refreshing its cache of " -"enumerated records." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:616 sssd-ldap.5.xml:1808 -msgid "Default: 300" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:622 -msgid "ldap_purge_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:625 -msgid "" -"Determine how often to check the cache for inactive entries (such as groups " -"with no members and users who have never logged in) and remove them to save " -"space." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:631 -msgid "Setting this option to zero will disable the cache cleanup operation." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:635 -msgid "Default: 10800 (12 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:641 -msgid "ldap_user_fullname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:644 -msgid "The LDAP attribute that corresponds to the user's full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:648 sssd-ldap.5.xml:727 sssd-ldap.5.xml:828 -#: sssd-ldap.5.xml:919 sssd-ldap.5.xml:1663 sssd-ldap.5.xml:1881 -#: sssd-ipa.5.xml:422 -msgid "Default: cn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:654 -msgid "ldap_user_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:657 -msgid "The LDAP attribute that lists the user's group memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:661 sssd-ipa.5.xml:326 -msgid "Default: memberOf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:667 -msgid "ldap_user_authorized_service (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:670 -msgid "" -"If access_provider=ldap and ldap_access_order=authorized_service, SSSD will " -"use the presence of the authorizedService attribute in the user's LDAP entry " -"to determine access privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:677 -msgid "" -"An explicit deny (!svc) is resolved first. Second, SSSD searches for " -"explicit allow (svc) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:682 -msgid "Default: authorizedService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:688 -msgid "ldap_user_authorized_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:691 -msgid "" -"If access_provider=ldap and ldap_access_order=host, SSSD will use the " -"presence of the host attribute in the user's LDAP entry to determine access " -"privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:697 -msgid "" -"An explicit deny (!host) is resolved first. Second, SSSD searches for " -"explicit allow (host) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:702 -msgid "Default: host" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:708 -msgid "ldap_group_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:711 -msgid "The object class of a group entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:714 -msgid "Default: posixGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:720 -msgid "ldap_group_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:723 -msgid "The LDAP attribute that corresponds to the group name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:733 -msgid "ldap_group_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:736 -msgid "The LDAP attribute that corresponds to the group's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:746 -msgid "ldap_group_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:749 -msgid "The LDAP attribute that contains the names of the group's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:753 -msgid "Default: memberuid (rfc2307) / member (rfc2307bis)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:759 -msgid "ldap_group_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:762 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP group object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:772 -msgid "ldap_group_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:785 -msgid "ldap_group_nesting_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:788 -msgid "" -"If ldap_schema is set to a schema format that supports nested groups (e.g. " -"RFC2307bis), then this option controls how many levels of nesting SSSD will " -"follow. This option has no effect on the RFC2307 schema." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:795 -msgid "Default: 2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:801 -msgid "ldap_netgroup_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:804 -msgid "The object class of a netgroup entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:807 -msgid "In IPA provider, ipa_netgroup_object_class should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:811 -msgid "Default: nisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:817 -msgid "ldap_netgroup_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:820 -msgid "The LDAP attribute that corresponds to the netgroup name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:824 -msgid "In IPA provider, ipa_netgroup_name should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:834 -msgid "ldap_netgroup_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:837 -msgid "The LDAP attribute that contains the names of the netgroup's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:841 -msgid "In IPA provider, ipa_netgroup_member should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:845 -msgid "Default: memberNisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:851 -msgid "ldap_netgroup_triple (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:854 -msgid "" -"The LDAP attribute that contains the (host, user, domain) netgroup triples." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:858 sssd-ldap.5.xml:891 -msgid "This option is not available in IPA provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:861 -msgid "Default: nisNetgroupTriple" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:867 -msgid "ldap_netgroup_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:870 -msgid "" -"The LDAP attribute that contains the UUID/GUID of an LDAP netgroup object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:874 -msgid "In IPA provider, ipa_netgroup_uuid should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:884 -msgid "ldap_netgroup_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:900 -msgid "ldap_service_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:903 -msgid "The object class of a service entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:906 -msgid "Default: ipService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:912 -msgid "ldap_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:915 -msgid "" -"The LDAP attribute that contains the name of service attributes and their " -"aliases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:925 -msgid "ldap_service_port (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:928 -msgid "The LDAP attribute that contains the port managed by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:932 -msgid "Default: ipServicePort" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:938 -msgid "ldap_service_proto (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:941 -msgid "" -"The LDAP attribute that contains the protocols understood by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:945 -msgid "Default: ipServiceProtocol" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:951 -msgid "ldap_service_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:954 -msgid "An optional base DN to restrict service searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:958 sssd-ldap.5.xml:1918 sssd-ldap.5.xml:1937 -#: sssd-ldap.5.xml:1956 sssd-ldap.5.xml:2019 sssd-ldap.5.xml:2041 -#: sssd-ipa.5.xml:163 sssd-ipa.5.xml:187 -msgid "" -"See <quote>ldap_search_base</quote> for information about configuring " -"multiple search bases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:963 sssd-ldap.5.xml:1923 sssd-ldap.5.xml:1942 -#: sssd-ldap.5.xml:1961 sssd-ldap.5.xml:2024 sssd-ldap.5.xml:2046 -#: sssd-ipa.5.xml:173 sssd-ipa.5.xml:192 -msgid "Default: the value of <emphasis>ldap_search_base</emphasis>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:970 -msgid "ldap_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:973 -msgid "" -"Specifies the timeout (in seconds) that ldap searches are allowed to run " -"before they are cancelled and cached results are returned (and offline mode " -"is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:979 -msgid "" -"Note: this option is subject to change in future versions of the SSSD. It " -"will likely be replaced at some point by a series of timeouts for specific " -"lookup types." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:985 sssd-ldap.5.xml:1027 sssd-ldap.5.xml:1042 -msgid "Default: 6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:991 -msgid "ldap_enumeration_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:994 -msgid "" -"Specifies the timeout (in seconds) that ldap searches for user and group " -"enumerations are allowed to run before they are cancelled and cached results " -"are returned (and offline mode is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1001 -msgid "Default: 60" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1007 -msgid "ldap_network_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1010 -msgid "" -"Specifies the timeout (in seconds) after which the <citerefentry> " -"<refentrytitle>poll</refentrytitle> <manvolnum>2</manvolnum> </citerefentry>/" -"<citerefentry> <refentrytitle>select</refentrytitle> <manvolnum>2</" -"manvolnum> </citerefentry> following a <citerefentry> " -"<refentrytitle>connect</refentrytitle> <manvolnum>2</manvolnum> </" -"citerefentry> returns in case of no activity." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1033 -msgid "ldap_opt_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1036 -msgid "" -"Specifies a timeout (in seconds) after which calls to synchronous LDAP APIs " -"will abort if no response is received. Also controls the timeout when " -"communicating with the KDC in case of SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1048 -msgid "ldap_connection_expire_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1051 -msgid "" -"Specifies a timeout (in seconds) that a connection to an LDAP server will be " -"maintained. After this time, the connection will be re-established. If used " -"in parallel with SASL/GSSAPI, the sooner of the two values (this value vs. " -"the TGT lifetime) will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1059 -msgid "Default: 900 (15 minutes)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1065 -msgid "ldap_page_size (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1068 -msgid "" -"Specify the number of records to retrieve from LDAP in a single request. " -"Some LDAP servers enforce a maximum limit per-request." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1073 -msgid "Default: 1000" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1079 -msgid "ldap_disable_paging" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1082 -msgid "" -"Disable the LDAP paging control. This option should be used if the LDAP " -"server reports that it supports the LDAP paging control in its RootDSE but " -"it is not enabled or does not behave properly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1088 -msgid "" -"Example: OpenLDAP servers with the paging control module installed on the " -"server but not enabled will report it in the RootDSE but be unable to use it." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1094 -msgid "" -"Example: 389 DS has a bug where it can only support a one paging control at " -"a time on a single connection. On busy clients, this can result in some " -"requests being denied." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1103 -msgid "ldap_deref_threshold (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1106 -msgid "" -"Specify the number of group members that must be missing from the internal " -"cache in order to trigger a dereference lookup. If less members are missing, " -"they are looked up individually." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1112 -msgid "" -"You can turn off dereference lookups completely by setting the value to 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1116 -msgid "" -"A dereference lookup is a means of fetching all group members in a single " -"LDAP call. Different LDAP servers may implement different dereference " -"methods. The currently supported servers are 389/RHDS, OpenLDAP and Active " -"Directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1124 -msgid "" -"<emphasis>Note:</emphasis> If any of the search bases specifies a search " -"filter, then the dereference lookup performance enhancement will be disabled " -"regardless of this setting." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1137 -msgid "ldap_tls_reqcert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1140 -msgid "" -"Specifies what checks to perform on server certificates in a TLS session, if " -"any. It can be specified as one of the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1146 -msgid "" -"<emphasis>never</emphasis> = The client will not request or check any server " -"certificate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1150 -msgid "" -"<emphasis>allow</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, it will be ignored and the session proceeds normally." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1157 -msgid "" -"<emphasis>try</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, the session is immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1163 -msgid "" -"<emphasis>demand</emphasis> = The server certificate is requested. If no " -"certificate is provided, or a bad certificate is provided, the session is " -"immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1169 -msgid "<emphasis>hard</emphasis> = Same as <quote>demand</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1173 -msgid "Default: hard" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1179 -msgid "ldap_tls_cacert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1182 -msgid "" -"Specifies the file that contains certificates for all of the Certificate " -"Authorities that <command>sssd</command> will recognize." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1187 sssd-ldap.5.xml:1205 sssd-ldap.5.xml:1246 -msgid "" -"Default: use OpenLDAP defaults, typically in <filename>/etc/openldap/ldap." -"conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1194 -msgid "ldap_tls_cacertdir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1197 -msgid "" -"Specifies the path of a directory that contains Certificate Authority " -"certificates in separate individual files. Typically the file names need to " -"be the hash of the certificate followed by '.0'. If available, " -"<command>cacertdir_rehash</command> can be used to create the correct names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1212 -msgid "ldap_tls_cert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1215 -msgid "Specifies the file that contains the certificate for the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1219 sssd-ldap.5.xml:1231 sssd-ldap.5.xml:1979 -#: sssd-ldap.5.xml:2006 sssd-krb5.5.xml:359 -msgid "Default: not set" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1225 -msgid "ldap_tls_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1228 -msgid "Specifies the file that contains the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1237 -msgid "ldap_tls_cipher_suite (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1240 -msgid "" -"Specifies acceptable cipher suites. Typically this is a colon sperated " -"list. See <citerefentry><refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> for format." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1253 -msgid "ldap_id_use_start_tls (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1256 -msgid "" -"Specifies that the id_provider connection must also use <systemitem class=" -"\"protocol\">tls</systemitem> to protect the channel." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1266 -msgid "ldap_sasl_mech (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1269 -msgid "" -"Specify the SASL mechanism to use. Currently only GSSAPI is tested and " -"supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1273 sssd-ldap.5.xml:1428 -msgid "Default: none" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1279 -msgid "ldap_sasl_authid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1282 -msgid "" -"Specify the SASL authorization id to use. When GSSAPI is used, this " -"represents the Kerberos principal used for authentication to the directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1287 -msgid "Default: host/machine.fqdn@REALM" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1293 -msgid "ldap_sasl_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1296 -msgid "" -"If set to true, the LDAP library would perform a reverse lookup to " -"canonicalize the host name during a SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1301 -msgid "Default: false;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1307 -msgid "ldap_krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1310 -msgid "Specify the keytab to use when using SASL/GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1313 -msgid "Default: System keytab, normally <filename>/etc/krb5.keytab</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1319 -msgid "ldap_krb5_init_creds (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1322 -msgid "" -"Specifies that the id_provider should init Kerberos credentials (TGT). This " -"action is performed only if SASL is used and the mechanism selected is " -"GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1334 -msgid "ldap_krb5_ticket_lifetime (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1337 -msgid "Specifies the lifetime in seconds of the TGT if GSSAPI is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1341 -msgid "Default: 86400 (24 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1347 sssd-krb5.5.xml:74 -msgid "krb5_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1350 sssd-krb5.5.xml:77 -msgid "" -"Specifies the comma-separated list of IP addresses or hostnames of the " -"Kerberos servers to which SSSD should connect in the order of preference. " -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. An optional port number (preceded by a " -"colon) may be appended to the addresses or hostnames. If empty, service " -"discovery is enabled - for more information, refer to the <quote>SERVICE " -"DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1362 sssd-krb5.5.xml:89 -msgid "" -"When using service discovery for KDC or kpasswd servers, SSSD first searches " -"for DNS entries that specify _udp as the protocol and falls back to _tcp if " -"none are found." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1367 sssd-krb5.5.xml:94 -msgid "" -"This option was named <quote>krb5_kdcip</quote> in earlier releases of SSSD. " -"While the legacy name is recognized for the time being, users are advised to " -"migrate their config files to use <quote>krb5_server</quote> instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1376 sssd-ipa.5.xml:216 sssd-krb5.5.xml:103 -msgid "krb5_realm (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1379 -msgid "Specify the Kerberos REALM (for SASL/GSSAPI auth)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1382 -msgid "Default: System defaults, see <filename>/etc/krb5.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1388 sssd-ipa.5.xml:231 sssd-krb5.5.xml:409 -msgid "krb5_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1391 -msgid "" -"Specifies if the host principal should be canonicalized when connecting to " -"LDAP server. This feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1403 -msgid "ldap_pwd_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1406 -msgid "" -"Select the policy to evaluate the password expiration on the client side. " -"The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1411 -msgid "" -"<emphasis>none</emphasis> - No evaluation on the client side. This option " -"cannot disable server-side password policies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1416 -msgid "" -"<emphasis>shadow</emphasis> - Use <citerefentry><refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum></citerefentry> style attributes to " -"evaluate if the password has expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1422 -msgid "" -"<emphasis>mit_kerberos</emphasis> - Use the attributes used by MIT Kerberos " -"to determine if the password has expired. Use chpass_provider=krb5 to update " -"these attributes when the password is changed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1434 -msgid "ldap_referrals (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1437 -msgid "Specifies whether automatic referral chasing should be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1441 -msgid "" -"Please note that sssd only supports referral chasing when it is compiled " -"with OpenLDAP version 2.4.13 or higher." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1452 -msgid "ldap_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1455 -msgid "Specifies the service name to use when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1459 -msgid "Default: ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1465 -msgid "ldap_chpass_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1468 -msgid "" -"Specifies the service name to use to find an LDAP server which allows " -"password changes when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1473 -msgid "Default: not set, i.e. service discovery is disabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1479 -msgid "ldap_access_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1482 -msgid "" -"If using access_provider = ldap, this option is mandatory. It specifies an " -"LDAP search filter criteria that must be met for the user to be granted " -"access on this host. If access_provider = ldap and this option is not set, " -"it will result in all users being denied access. Use access_provider = allow " -"to change this default behavior." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1492 sssd-ldap.5.xml:1982 -msgid "Example:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1495 -#, no-wrap -msgid "" -"access_provider = ldap\n" -"ldap_access_filter = memberOf=cn=allowedusers,ou=Groups,dc=example,dc=com\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1499 -msgid "" -"This example means that access to this host is restricted to members of the " -"\"allowedusers\" group in ldap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1504 -msgid "" -"Offline caching for this feature is limited to determining whether the " -"user's last online login was granted access permission. If they were granted " -"access during their last login, they will continue to be granted access " -"while offline and vice-versa." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1512 sssd-ldap.5.xml:1562 -msgid "Default: Empty" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1518 -msgid "ldap_account_expire_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1521 -msgid "" -"With this option a client side evaluation of access control attributes can " -"be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1525 -msgid "" -"Please note that it is always recommended to use server side access control, " -"i.e. the LDAP server should deny the bind request with a suitable error code " -"even if the password is correct." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1532 -msgid "The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1535 -msgid "" -"<emphasis>shadow</emphasis>: use the value of ldap_user_shadow_expire to " -"determine if the account is expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1540 -msgid "" -"<emphasis>ad</emphasis>: use the value of the 32bit field " -"ldap_user_ad_user_account_control and allow access if the second bit is not " -"set. If the attribute is missing access is granted. Also the expiration time " -"of the account is checked." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1547 -msgid "" -"<emphasis>rhds</emphasis>, <emphasis>ipa</emphasis>, <emphasis>389ds</" -"emphasis>: use the value of ldap_ns_account_lock to check if access is " -"allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1553 -msgid "" -"<emphasis>nds</emphasis>: the values of " -"ldap_user_nds_login_allowed_time_map, ldap_user_nds_login_disabled and " -"ldap_user_nds_login_expiration_time are used to check if access is allowed. " -"If both attributes are missing access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1568 -msgid "ldap_access_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1571 -msgid "Comma separated list of access control options. Allowed values are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1575 -msgid "<emphasis>filter</emphasis>: use ldap_access_filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1578 -msgid "<emphasis>expire</emphasis>: use ldap_account_expire_policy" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1582 -msgid "" -"<emphasis>authorized_service</emphasis>: use the authorizedService attribute " -"to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1587 -msgid "<emphasis>host</emphasis>: use the host attribute to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1591 -msgid "Default: filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1594 -msgid "" -"Please note that it is a configuration error if a value is used more than " -"once." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1601 -msgid "ldap_deref (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1604 -msgid "" -"Specifies how alias dereferencing is done when performing a search. The " -"following options are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1609 -msgid "<emphasis>never</emphasis>: Aliases are never dereferenced." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1613 -msgid "" -"<emphasis>searching</emphasis>: Aliases are dereferenced in subordinates of " -"the base object, but not in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1618 -msgid "" -"<emphasis>finding</emphasis>: Aliases are only dereferenced when locating " -"the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1623 -msgid "" -"<emphasis>always</emphasis>: Aliases are dereferenced both in searching and " -"in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1628 -msgid "" -"Default: Empty (this is handled as <emphasis>never</emphasis> by the LDAP " -"client libraries)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:51 -msgid "" -"All of the common configuration options that apply to SSSD domains also " -"apply to LDAP domains. Refer to the <quote>DOMAIN SECTIONS</quote> section " -"of the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for full details. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1639 -msgid "SUDO OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1644 -msgid "ldap_sudorule_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1647 -msgid "The object class of a sudo rule entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1650 -msgid "Default: sudoRole" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1656 -msgid "ldap_sudorule_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1659 -msgid "The LDAP attribute that corresponds to the sudo rule name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1669 -msgid "ldap_sudorule_command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1672 -msgid "The LDAP attribute that corresponds to the command name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1676 -msgid "Default: sudoCommand" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1682 -msgid "ldap_sudorule_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1685 -msgid "" -"The LDAP attribute that corresponds to the host name (or host IP address, " -"host IP network, or host netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1690 -msgid "Default: sudoHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1696 -msgid "ldap_sudorule_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1699 -msgid "" -"The LDAP attribute that corresponds to the user name (or UID, group name or " -"user's netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1703 -msgid "Default: sudoUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1709 -msgid "ldap_sudorule_option (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1712 -msgid "The LDAP attribute that corresponds to the sudo options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1716 -msgid "Default: sudoOption" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1722 -msgid "ldap_sudorule_runasuser (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1725 -msgid "" -"The LDAP attribute that corresponds to the user name that commands may be " -"run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1729 -msgid "Default: sudoRunAsUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1735 -msgid "ldap_sudorule_runasgroup (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1738 -msgid "" -"The LDAP attribute that corresponds to the group name or group GID that " -"commands may be run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1742 -msgid "Default: sudoRunAsGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1748 -msgid "ldap_sudorule_notbefore (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1751 -msgid "" -"The LDAP attribute that corresponds to the start date/time for when the sudo " -"rule is valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1755 -msgid "Default: sudoNotBefore" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1761 -msgid "ldap_sudorule_notafter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1764 -msgid "" -"The LDAP attribute that corresponds to the expiration date/time, after which " -"the sudo rule will no longer be valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1769 -msgid "Default: sudoNotAfter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1775 -msgid "ldap_sudorule_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1778 -msgid "The LDAP attribute that corresponds to the ordering index of the rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1782 -msgid "Default: sudoOrder" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1788 -msgid "ldap_sudo_refresh_enabled (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1791 -msgid "" -"Enables periodical download of all sudo rules. The cache is purged before " -"each update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1801 -msgid "ldap_sudo_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1804 -msgid "" -"How many seconds SSSD has to wait before refreshing its cache of sudo rules." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1642 -msgid "<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1815 -msgid "" -"This manual page only describes attribute name mapping. For detailed " -"explanation of sudo related attribute semantics, see <citerefentry> " -"<refentrytitle>sudoers.ldap</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1825 -msgid "AUTOFS OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1827 -msgid "" -"Please note that the default values correspond to the default schema which " -"is RFC2307." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1834 -msgid "ldap_autofs_map_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1837 sssd-ldap.5.xml:1863 -msgid "The object class of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1840 sssd-ldap.5.xml:1867 -msgid "Default: automountMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1847 -msgid "ldap_autofs_map_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1850 -msgid "The name of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1853 -msgid "Default: ou" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1860 -msgid "ldap_autofs_entry_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1874 -msgid "ldap_autofs_entry_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1877 sssd-ldap.5.xml:1891 -msgid "" -"The key of an automount entry in LDAP. The entry usually corresponds to a " -"mount point." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1888 -msgid "ldap_autofs_entry_value (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1895 -msgid "Default: automountInformation" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1832 -msgid "" -"<placeholder type=\"variablelist\" id=\"0\"/> <placeholder type=" -"\"variablelist\" id=\"1\"/> <placeholder type=\"variablelist\" id=\"2\"/> " -"<placeholder type=\"variablelist\" id=\"3\"/> <placeholder type=" -"\"variablelist\" id=\"4\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1904 -msgid "ADVANCED OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1911 -msgid "ldap_netgroup_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1914 -msgid "" -"An optional base DN to restrict netgroup searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1930 -msgid "ldap_user_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1933 -msgid "An optional base DN to restrict user searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1949 -msgid "ldap_group_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1952 -msgid "An optional base DN to restrict group searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1968 -msgid "ldap_user_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1971 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict user searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1975 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_user_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1985 -#, no-wrap -msgid "" -" ldap_user_search_filter = (loginShell=/bin/tcsh)\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1988 -msgid "" -"This filter would restrict user searches to users that have their shell set " -"to /bin/tcsh." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1995 -msgid "ldap_group_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1998 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict group searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2002 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_group_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2012 -msgid "ldap_sudo_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2015 -msgid "" -"An optional base DN to restrict sudo rules searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2034 -msgid "ldap_autofs_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2037 -msgid "" -"An optional base DN to restrict automounter searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1906 -msgid "" -"These options are supported by LDAP domains, but they should be used with " -"caution. Please include them in your configuration only if you know what you " -"are doing. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2066 -msgid "" -"The following example assumes that SSSD is correctly configured and LDAP is " -"set to one of the domains in the <replaceable>[domains]</replaceable> " -"section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ldap.5.xml:2072 -#, no-wrap -msgid "" -" [domain/LDAP]\n" -" id_provider = ldap\n" -" auth_provider = ldap\n" -" ldap_uri = ldap://ldap.mydomain.org\n" -" ldap_search_base = dc=mydomain,dc=org\n" -" ldap_tls_reqcert = demand\n" -" cache_credentials = true\n" -" enumerate = true\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2071 sssd-simple.5.xml:134 sssd-ipa.5.xml:552 -#: sssd-krb5.5.xml:441 -msgid "<placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:2085 sssd_krb5_locator_plugin.8.xml:61 -msgid "NOTES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2087 -msgid "" -"The descriptions of some of the configuration options in this manual page " -"are based on the <citerefentry> <refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page from the OpenLDAP 2.4 " -"distribution." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2098 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <refentryinfo> -#: pam_sss.8.xml:8 include/upstream.xml:2 -msgid "" -"<productname>SSSD</productname> <orgname>The SSSD upstream - http://" -"fedorahosted.org/sssd</orgname>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: pam_sss.8.xml:13 pam_sss.8.xml:18 -msgid "pam_sss" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: pam_sss.8.xml:19 -msgid "PAM module for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: pam_sss.8.xml:24 -msgid "" -"<command>pam_sss.so</command> <arg choice='opt'> <replaceable>quiet</" -"replaceable> </arg> <arg choice='opt'> <replaceable>forward_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_first_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_authtok</" -"replaceable> </arg> <arg choice='opt'> <replaceable>retry=N</replaceable> </" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:45 -msgid "" -"<command>pam_sss.so</command> is the PAM interface to the System Security " -"Services daemon (SSSD). Errors and results are logged through <command>syslog" -"(3)</command> with the LOG_AUTHPRIV facility." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:55 -msgid "<option>quiet</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:58 -msgid "Suppress log messages for unknown users." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:63 -msgid "<option>forward_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:66 -msgid "" -"If <option>forward_pass</option> is set the entered password is put on the " -"stack for other PAM modules to use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:73 -msgid "<option>use_first_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:76 -msgid "" -"The argument use_first_pass forces the module to use a previous stacked " -"modules password and will never prompt the user - if no password is " -"available or the password is not appropriate, the user will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:84 -msgid "<option>use_authtok</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:87 -msgid "" -"When password changing enforce the module to set the new password to the one " -"provided by a previously stacked password module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:94 -msgid "<option>retry=N</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:97 -msgid "" -"If specified the user is asked another N times for a password if " -"authentication fails. Default is 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:99 -msgid "" -"Please note that this option might not work as expected if the application " -"calling PAM handles the user dialog on its own. A typical example is " -"<command>sshd</command> with <option>PasswordAuthentication</option>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:110 -msgid "MODULE TYPES PROVIDED" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:111 -msgid "" -"All module types (<option>account</option>, <option>auth</option>, " -"<option>password</option> and <option>session</option>) are provided." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:117 -msgid "FILES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:118 -msgid "" -"If a password reset by root fails, because the corresponding SSSD provider " -"does not support password resets, an individual message can be displayed. " -"This message can e.g. contain instructions about how to reset a password." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:123 -msgid "" -"The message is read from the file <filename>pam_sss_pw_reset_message.LOC</" -"filename> where LOC stands for a locale string returned by <citerefentry> " -"<refentrytitle>setlocale</refentrytitle><manvolnum>3</manvolnum> </" -"citerefentry>. If there is no matching file the content of " -"<filename>pam_sss_pw_reset_message.txt</filename> is displayed. Root must be " -"the owner of the files and only root may have read and write permissions " -"while all other users must have only read permissions." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:133 -msgid "" -"These files are searched in the directory <filename>/etc/sssd/customize/" -"DOMAIN_NAME/</filename>. If no matching file is present a generic message is " -"displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:141 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd_krb5_locator_plugin.8.xml:10 sssd_krb5_locator_plugin.8.xml:15 -msgid "sssd_krb5_locator_plugin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:22 -msgid "" -"The Kerberos locator plugin <command>sssd_krb5_locator_plugin</command> is " -"used by the Kerberos provider of <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry> to tell the Kerberos " -"libraries what Realm and which KDC to use. Typically this is done in " -"<citerefentry> <refentrytitle>krb5.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> which is always read by the Kerberos libraries. " -"To simplify the configuration the Realm and the KDC can be defined in " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> as described in <citerefentry> " -"<refentrytitle>sssd-krb5.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry> puts the Realm and the name or IP address of the KDC into " -"the environment variables SSSD_KRB5_REALM and SSSD_KRB5_KDC respectively. " -"When <command>sssd_krb5_locator_plugin</command> is called by the kerberos " -"libraries it reads and evaluates these variables and returns them to the " -"libraries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:63 -msgid "" -"Not all Kerberos implementations support the use of plugins. If " -"<command>sssd_krb5_locator_plugin</command> is not available on your system " -"you have to edit /etc/krb5.conf to reflect your Kerberos setup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:69 -msgid "" -"If the environment variable SSSD_KRB5_LOCATOR_DEBUG is set to any value " -"debug messages will be sent to stderr." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:77 -msgid "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-simple.5.xml:10 sssd-simple.5.xml:16 -msgid "sssd-simple" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd-simple.5.xml:17 -msgid "the configuration file for SSSD's 'simple' access-control provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:24 -msgid "" -"This manual page describes the configuration of the simple access-control " -"provider for <citerefentry> <refentrytitle>sssd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry>. For a detailed syntax reference, " -"refer to the <quote>FILE FORMAT</quote> section of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:38 -msgid "" -"The simple access provider grants or denies access based on an access or " -"deny list of user or group names. The following rules apply:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:43 -msgid "If all lists are empty, access is granted" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:47 -msgid "" -"If any list is provided, the order of evaluation is allow,deny. This means " -"that any matching deny rule will supersede any matched allow rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:54 -msgid "" -"If either or both \"allow\" lists are provided, all users are denied unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:60 -msgid "" -"If only \"deny\" lists are provided, all users are granted access unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:78 -msgid "simple_allow_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:81 -msgid "Comma separated list of users who are allowed to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:88 -msgid "simple_deny_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:91 -msgid "Comma separated list of users who are explicitly denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:97 -msgid "simple_allow_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:100 -msgid "" -"Comma separated list of groups that are allowed to log in. This applies only " -"to groups within this SSSD domain. Local groups are not evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:108 -msgid "simple_deny_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:111 -msgid "" -"Comma separated list of groups that are explicitly denied access. This " -"applies only to groups within this SSSD domain. Local groups are not " -"evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:70 sssd-ipa.5.xml:65 -msgid "" -"Refer to the section <quote>DOMAIN SECTIONS</quote> of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page for details on the configuration of an SSSD " -"domain. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:120 -msgid "" -"Please note that it is an configuration error if both, simple_allow_users " -"and simple_deny_users, are defined." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:128 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the simple access provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-simple.5.xml:135 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" access_provider = simple\n" -" simple_allow_users = user1, user2\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:145 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ipa.5.xml:10 sssd-ipa.5.xml:16 -msgid "sssd-ipa" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:23 -msgid "" -"This manual page describes the configuration of the IPA provider for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. For a detailed syntax reference, refer to the <quote>FILE " -"FORMAT</quote> section of the <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:36 -msgid "" -"The IPA provider is a back end used to connect to an IPA server. (Refer to " -"the freeipa.org web site for information about IPA servers.) This provider " -"requires that the machine be joined to the IPA domain; configuration is " -"almost entirely self-discovered and obtained directly from the server." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:43 -msgid "" -"The IPA provider accepts the same options used by the <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> identity provider and the <citerefentry> <refentrytitle>sssd-" -"krb5</refentrytitle> <manvolnum>5</manvolnum> </citerefentry> authentication " -"provider with some exceptions described below." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:55 -msgid "" -"However, it is neither necessary nor recommended to set these options. IPA " -"provider can also be used as an access and chpass provider. As an access " -"provider it uses HBAC (host-based access control) rules. Please refer to " -"freeipa.org for more information about HBAC. No configuration of access " -"provider is required on the client side." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:72 -msgid "ipa_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:75 -msgid "" -"Specifies the name of the IPA domain. This is optional. If not provided, " -"the configuration domain name is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:83 -msgid "ipa_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:86 -msgid "" -"The comma-separated list of IP addresses or hostnames of the IPA servers to " -"which SSSD should connect in the order of preference. For more information " -"on failover and server redundancy, see the <quote>FAILOVER</quote> section. " -"This is optional if autodiscovery is enabled. For more information on " -"service discovery, refer to the the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:99 -msgid "ipa_hostname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:102 -msgid "" -"Optional. May be set on machines where the hostname(5) does not reflect the " -"fully qualified name used in the IPA domain to identify this host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:110 -msgid "ipa_dyndns_update (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:113 -msgid "" -"Optional. This option tells SSSD to automatically update the DNS server " -"built into FreeIPA v2 with the IP address of this client." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:118 -msgid "" -"NOTE: On older systems (such as RHEL 5), for this behavior to work reliably, " -"the default Kerberos realm must be set properly in /etc/krb5.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:129 -msgid "ipa_dyndns_iface (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:132 -msgid "" -"Optional. Applicable only when ipa_dyndns_update is true. Choose the " -"interface whose IP address should be used for dynamic DNS updates." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:137 -msgid "Default: Use the IP address of the IPA LDAP connection" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:143 -msgid "ipa_hbac_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:146 -msgid "Optional. Use the given string as search base for HBAC related objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:150 -msgid "Default: Use base DN" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:156 -msgid "ipa_host_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:159 -msgid "Optional. Use the given string as search base for host objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:168 -msgid "" -"If filter is given in any of search bases and " -"<emphasis>ipa_hbac_support_srchost</emphasis> is set to False, the filter " -"will be ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:180 -msgid "ipa_selinux_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:183 -msgid "Optional. Use the given string as search base for SELinux user maps." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:199 sssd-krb5.5.xml:229 -msgid "krb5_validate (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:202 sssd-krb5.5.xml:232 -msgid "" -"Verify with the help of krb5_keytab that the TGT obtained has not been " -"spoofed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:209 -msgid "" -"Note that this default differs from the traditional Kerberos provider back " -"end." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:219 -msgid "" -"The name of the Kerberos realm. This is optional and defaults to the value " -"of <quote>ipa_domain</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:223 -msgid "" -"The name of the Kerberos realm has a special meaning in IPA - it is " -"converted into the base DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:234 -msgid "" -"Specifies if the host and user principal should be canonicalized when " -"connecting to IPA LDAP and also for AS requests. This feature is available " -"with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:247 -msgid "ipa_hbac_refresh (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:250 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server. " -"This will reduce the latency and load on the IPA server if there are many " -"access-control requests made in a short period." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:257 -msgid "Default: 5 (seconds)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:262 -msgid "ipa_hbac_treat_deny_as (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:265 -msgid "" -"This option specifies how to treat the deprecated DENY-type HBAC rules. As " -"of FreeIPA v2.1, DENY rules are no longer supported on the server. All users " -"of FreeIPA will need to migrate their rules to use only the ALLOW rules. The " -"client will support two modes of operation during this transition period:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:274 -msgid "" -"<emphasis>DENY_ALL</emphasis>: If any HBAC DENY rules are detected, all " -"users will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:279 -msgid "" -"<emphasis>IGNORE</emphasis>: SSSD will ignore any DENY rules. Be very " -"careful with this option, as it may result in opening unintended access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:284 -msgid "Default: DENY_ALL" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:289 -msgid "ipa_hbac_support_srchost (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:292 -msgid "" -"If this is set to false, then srchost as given to SSSD by PAM will be " -"ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:296 -msgid "" -"Note that if set to <emphasis>False</emphasis>, this option casuses filters " -"given in <emphasis>ipa_host_search_base</emphasis> to be ignored;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:307 -msgid "ipa_automount_location (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:310 -msgid "The automounter location this IPA client will be using" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:313 -msgid "Default: The location named \"default\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:319 -msgid "ipa_netgroup_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:322 -msgid "The LDAP attribute that lists netgroup's memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:331 -msgid "ipa_netgroup_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:334 -msgid "" -"The LDAP attribute that lists system users and groups that are direct " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:339 sssd-ipa.5.xml:434 -msgid "Default: memberUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:344 -msgid "ipa_netgroup_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:347 -msgid "" -"The LDAP attribute that lists hosts and host groups that are direct members " -"of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:351 sssd-ipa.5.xml:446 -msgid "Default: memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:356 -msgid "ipa_netgroup_member_ext_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:359 -msgid "" -"The LDAP attribute that lists FQDNs of hosts and host groups that are " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:363 -msgid "Default: externalHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:368 -msgid "ipa_netgroup_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:371 -msgid "The LDAP attribute that contains NIS domain name of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:375 -msgid "Default: nisDomainName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:381 -msgid "ipa_host_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:384 sssd-ipa.5.xml:407 -msgid "The object class of a host entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:387 sssd-ipa.5.xml:410 -msgid "Default: ipaHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:392 -msgid "ipa_host_fqdn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:395 -msgid "The LDAP attribute that contains FQDN of the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:398 -msgid "Default: fqdn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:404 -msgid "ipa_selinux_usermap_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:415 -msgid "ipa_selinux_usermap_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:418 -msgid "The LDAP attribute that contains the name of SELinux usermap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:427 -msgid "ipa_selinux_usermap_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:430 -msgid "" -"The LDAP attribute that contains all users / groups this rule match against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:439 -msgid "ipa_selinux_usermap_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:442 -msgid "" -"The LDAP attribute that contains all hosts / hostgroups this rule match " -"against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:451 -msgid "ipa_selinux_usermap_see_also (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:454 -msgid "" -"The LDAP attribute that contains DN of HBAC rule which can be used for " -"matching instead of memberUser and memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:459 -msgid "Default: seeAlso" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:464 -msgid "ipa_selinux_usermap_selinux_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:467 -msgid "The LDAP attribute that contains SELinux user string itself." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:471 -msgid "Default: ipaSELinuxUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:476 -msgid "ipa_selinux_usermap_enabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:479 -msgid "" -"The LDAP attribute that contains whether or not is user map enabled for " -"usage." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:483 -msgid "Default: ipaEnabledFlag" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:488 -msgid "ipa_selinux_usermap_user_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:491 -msgid "The LDAP attribute that contains user category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:495 -msgid "Default: userCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:500 -msgid "ipa_selinux_usermap_host_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:503 -msgid "The LDAP attribute that contains host category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:507 -msgid "Default: hostCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:512 -msgid "ipa_selinux_usermap_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:515 -msgid "The LDAP attribute that contains unique ID of the user map." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:519 -msgid "Default: ipaUniqueID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:524 -msgid "ipa_host_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:527 -msgid "The LDAP attribute that contains the host's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:531 -msgid "Default: ipaSshPubKey" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:546 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the ipa provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ipa.5.xml:553 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" id_provider = ipa\n" -" ipa_server = ipaserver.example.com\n" -" ipa_hostname = myhost.example.com\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:564 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.8.xml:10 sssd.8.xml:15 -msgid "sssd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.8.xml:16 -msgid "System Security Services Daemon" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sssd.8.xml:21 -msgid "" -"<command>sssd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:31 -msgid "" -"<command>SSSD</command> provides a set of daemons to manage access to remote " -"directories and authentication mechanisms. It provides an NSS and PAM " -"interface toward the system and a pluggable backend system to connect to " -"multiple different account sources as well as D-Bus interface. It is also " -"the basis to provide client auditing and policy services for projects like " -"FreeIPA. It provides a more robust database to store local users as well as " -"extended user data." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:46 -msgid "" -"<option>-d</option>,<option>--debug-level</option> <replaceable>LEVEL</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:53 -msgid "<option>--debug-timestamps=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:57 -msgid "<emphasis>1</emphasis>: Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:60 -msgid "<emphasis>0</emphasis>: Disable timestamp in the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:69 -msgid "<option>--debug-microseconds=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:73 -msgid "" -"<emphasis>1</emphasis>: Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:76 -msgid "<emphasis>0</emphasis>: Disable microseconds in timestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:79 -msgid "Default: 0" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:85 -msgid "<option>-f</option>,<option>--debug-to-files</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:89 -msgid "" -"Send the debug output to files instead of stderr. By default, the log files " -"are stored in <filename>/var/log/sssd</filename> and there are separate log " -"files for every SSSD service and domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:97 -msgid "<option>-D</option>,<option>--daemon</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:101 -msgid "Become a daemon after starting up." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:107 -msgid "<option>-i</option>,<option>--interactive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:111 -msgid "Run in the foreground, don't become a daemon." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:117 sss_debuglevel.8.xml:42 -msgid "<option>-c</option>,<option>--config</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:121 sss_debuglevel.8.xml:46 -msgid "" -"Specify a non-default config file. The default is <filename>/etc/sssd/sssd." -"conf</filename>. For reference on the config file syntax and options, " -"consult the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:135 -msgid "<option>--version</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:139 -msgid "Print version number and exit." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.8.xml:147 -msgid "Signals" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:150 -msgid "SIGTERM/SIGINT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:153 -msgid "" -"Informs the SSSD to gracefully terminate all of its child processes and then " -"shut down the monitor." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:159 -msgid "SIGHUP" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:162 -msgid "" -"Tells the SSSD to stop writing to its current debug file descriptors and to " -"close and reopen them. This is meant to facilitate log rolling with programs " -"like logrotate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:170 -msgid "SIGUSR1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:173 -msgid "" -"Tells the SSSD to simulate offline operation for one minute. This is mostly " -"useful for testing purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:179 -msgid "SIGUSR2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:182 -msgid "" -"Tells the SSSD to go online immediately. This is mostly useful for testing " -"purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:193 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_obfuscate.8.xml:10 sss_obfuscate.8.xml:15 -msgid "sss_obfuscate" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_obfuscate.8.xml:16 -msgid "obfuscate a clear text password" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_obfuscate.8.xml:21 -msgid "" -"<command>sss_obfuscate</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>[PASSWORD]</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:32 -msgid "" -"<command>sss_obfuscate</command> converts a given password into human-" -"unreadable format and places it into appropriate domain section of the SSSD " -"config file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:37 -msgid "" -"The cleartext password is read from standard input or entered " -"interactively. The obfuscated password is put into " -"<quote>ldap_default_authtok</quote> parameter of a given SSSD domain and the " -"<quote>ldap_default_authtok_type</quote> parameter is set to " -"<quote>obfuscated_password</quote>. Refer to <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more details on these parameters." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:49 -msgid "" -"Please note that obfuscating the password provides <emphasis>no real " -"security benefit</emphasis> as it is still possible for an attacker to " -"reverse-engineer the password back. Using better authentication mechanisms " -"such as client side certificates or GSSAPI is <emphasis>strongly</emphasis> " -"advised." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:63 -msgid "<option>-s</option>,<option>--stdin</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:67 -msgid "The password to obfuscate will be read from standard input." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:74 sss_ssh_authorizedkeys.1.xml:82 -#: sss_ssh_knownhostsproxy.1.xml:81 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>DOMAIN</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:79 -msgid "" -"The SSSD domain to use the password in. The default name is <quote>default</" -"quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:86 -msgid "" -"<option>-f</option>,<option>--file</option> <replaceable>FILE</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:91 -msgid "Read the config file specified by the positional parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:95 -msgid "Default: <filename>/etc/sssd/sssd.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:105 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_useradd.8.xml:10 sss_useradd.8.xml:15 -msgid "sss_useradd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_useradd.8.xml:16 -msgid "create a new user" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_useradd.8.xml:21 -msgid "" -"<command>sss_useradd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:32 -msgid "" -"<command>sss_useradd</command> creates a new user account using the values " -"specified on the command line plus the default values from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:43 -msgid "" -"<option>-u</option>,<option>--uid</option> <replaceable>UID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:48 -msgid "" -"Set the UID of the user to the value of <replaceable>UID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:55 sss_usermod.8.xml:43 -msgid "" -"<option>-c</option>,<option>--gecos</option> <replaceable>COMMENT</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:60 sss_usermod.8.xml:48 -msgid "" -"Any text string describing the user. Often used as the field for the user's " -"full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:67 sss_usermod.8.xml:55 -msgid "" -"<option>-h</option>,<option>--home</option> <replaceable>HOME_DIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:72 -msgid "" -"The home directory of the user account. The default is to append the " -"<replaceable>LOGIN</replaceable> name to <filename>/home</filename> and use " -"that as the home directory. The base that is prepended before " -"<replaceable>LOGIN</replaceable> is tunable with <quote>user_defaults/" -"baseDirectory</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:82 sss_usermod.8.xml:66 -msgid "" -"<option>-s</option>,<option>--shell</option> <replaceable>SHELL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:87 -msgid "" -"The user's login shell. The default is currently <filename>/bin/bash</" -"filename>. The default can be changed with <quote>user_defaults/" -"defaultShell</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:96 -msgid "" -"<option>-G</option>,<option>--groups</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:101 -msgid "A list of existing groups this user is also a member of." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:107 -msgid "<option>-m</option>,<option>--create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:111 -msgid "" -"Create the user's home directory if it does not exist. The files and " -"directories contained in the skeleton directory (which can be defined with " -"the -k option or in the config file) will be copied to the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:121 -msgid "<option>-M</option>,<option>--no-create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:125 -msgid "" -"Do not create the user's home directory. Overrides configuration settings." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:132 -msgid "" -"<option>-k</option>,<option>--skel</option> <replaceable>SKELDIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:137 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<command>sss_useradd</command>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:143 -msgid "" -"This option is only valid if the <option>-m</option> (or <option>--create-" -"home</option>) option is specified, or creation of home directories is set " -"to TRUE in the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:152 sss_usermod.8.xml:124 -msgid "" -"<option>-Z</option>,<option>--selinux-user</option> " -"<replaceable>SELINUX_USER</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:157 -msgid "" -"The SELinux user for the user's login. If not specified, the system default " -"will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:169 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-krb5.5.xml:10 sssd-krb5.5.xml:16 -msgid "sssd-krb5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:23 -msgid "" -"This manual page describes the configuration of the Kerberos 5 " -"authentication backend for <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry>. For a detailed " -"syntax reference, please refer to the <quote>FILE FORMAT</quote> section of " -"the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:36 -msgid "" -"The Kerberos 5 authentication backend contains auth and chpass providers. It " -"must be paired with identity provider in order to function properly (for " -"example, id_provider = ldap). Some information required by the Kerberos 5 " -"authentication backend must be provided by the identity provider, such as " -"the user's Kerberos Principal Name (UPN). The configuration of the identity " -"provider should have an entry to specify the UPN. Please refer to the man " -"page for the applicable identity provider for details on how to configure " -"this." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:47 -msgid "" -"This backend also provides access control based on the .k5login file in the " -"home directory of the user. See <citerefentry> <refentrytitle>.k5login</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry> for more details. " -"Please note that an empty .k5login file will deny all access to this user. " -"To activate this feature use 'access_provider = krb5' in your sssd " -"configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:55 -msgid "" -"In the case where the UPN is not available in the identity backend " -"<command>sssd</command> will construct a UPN using the format " -"<replaceable>username</replaceable>@<replaceable>krb5_realm</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:106 -msgid "" -"The name of the Kerberos realm. This option is required and must be " -"specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:113 -msgid "krb5_kpasswd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:116 -msgid "" -"If the change password service is not running on the KDC alternative servers " -"can be defined here. An optional port number (preceded by a colon) may be " -"appended to the addresses or hostnames." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:122 -msgid "" -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. Please note that even if there are no more " -"kpasswd servers to try the back end is not switch to offline if " -"authentication against the KDC is still possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:129 -msgid "Default: Use the KDC" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:135 -msgid "krb5_ccachedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:138 -msgid "" -"Directory to store credential caches. All the substitution sequences of " -"krb5_ccname_template can be used here, too, except %d and %P. If the " -"directory does not exist it will be created. If %u, %U, %p or %h are used a " -"private directory belonging to the user is created. Otherwise a public " -"directory with restricted deletion flag (aka sticky bit, see <citerefentry> " -"<refentrytitle>chmod</refentrytitle> <manvolnum>1</manvolnum> </" -"citerefentry> for details) is created." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:151 -msgid "Default: /tmp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:157 -msgid "krb5_ccname_template (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:171 -msgid "login UID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:174 -msgid "%p" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:175 -msgid "principal name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:179 -msgid "%r" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:180 -msgid "realm name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:183 -msgid "%h" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:184 -msgid "home directory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:189 -msgid "value of krb5ccache_dir" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:194 -msgid "%P" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:195 -msgid "the process ID of the sssd client" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:160 -msgid "" -"Location of the user's credential cache. Currently only file based " -"credential caches are supported. In the template the following sequences are " -"substituted: <placeholder type=\"variablelist\" id=\"0\"/> If the template " -"ends with 'XXXXXX' mkstemp(3) is used to create a unique filename in a safe " -"way." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:209 -msgid "Default: FILE:%d/krb5cc_%U_XXXXXX" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:215 -msgid "krb5_auth_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:218 -msgid "" -"Timeout in seconds after an online authentication or change password request " -"is aborted. If possible the authentication request is continued offline." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:241 -msgid "krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:244 -msgid "" -"The location of the keytab to use when validating credentials obtained from " -"KDCs." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:248 -msgid "Default: /etc/krb5.keytab" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:254 -msgid "krb5_store_password_if_offline (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:257 -msgid "" -"Store the password of the user if the provider is offline and use it to " -"request a TGT when the provider gets online again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:262 -msgid "" -"Please note that this feature currently only available on a Linux platform. " -"Passwords stored in this way are kept in plaintext in the kernel keyring and " -"are potentially accessible by the root user (with difficulty)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:275 -msgid "krb5_renewable_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:278 -msgid "" -"Request a renewable ticket with a total lifetime given by an integer " -"immediately followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:283 sssd-krb5.5.xml:319 -msgid "<emphasis>s</emphasis> seconds" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:286 sssd-krb5.5.xml:322 -msgid "<emphasis>m</emphasis> minutes" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:289 sssd-krb5.5.xml:325 -msgid "<emphasis>h</emphasis> hours" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:292 sssd-krb5.5.xml:328 -msgid "<emphasis>d</emphasis> days." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:295 sssd-krb5.5.xml:331 -msgid "If there is no delimiter <emphasis>s</emphasis> is assumed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:299 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"renewable lifetime to one and a half hours please use '90m' instead of " -"'1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:305 -msgid "Default: not set, i.e. the TGT is not renewable" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:311 -msgid "krb5_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:314 -msgid "" -"Request ticket with a with a lifetime given by an integer immediately " -"followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:335 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"lifetime to one and a half hours please use '90m' instead of '1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:340 -msgid "" -"Default: not set, i.e. the default ticket lifetime configured on the KDC." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:347 -msgid "krb5_renew_interval (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:350 -msgid "" -"The time in seconds between two checks if the TGT should be renewed. TGTs " -"are renewed if about half of their lifetime is exceeded." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:355 -msgid "If this option is not set or 0 the automatic renewal is disabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:365 -msgid "krb5_use_fast (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:368 -msgid "" -"Enables flexible authentication secure tunneling (FAST) for Kerberos pre-" -"authentication. The following options are supported:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:373 -msgid "" -"<emphasis>never</emphasis> use FAST, this is equivalent to not set this " -"option at all." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:377 -msgid "" -"<emphasis>try</emphasis> to use FAST, if the server does not support fast " -"continue without." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:381 -msgid "" -"<emphasis>demand</emphasis> to use FAST, fail if the server does not require " -"fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:385 -msgid "Default: not set, i.e. FAST is not used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:388 -msgid "Please note that a keytab is required to use fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:391 -msgid "" -"Please note also that sssd supports fast only with MIT Kerberos version 1.8 " -"and above. If sssd used with an older version using this option is a " -"configuration error." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:400 -msgid "krb5_fast_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:403 -msgid "Specifies the server principal to use for FAST." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:412 -msgid "" -"Specifies if the host and user principal should be canonicalized. This " -"feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:65 -msgid "" -"If the auth-module krb5 is used in a SSSD domain, the following options must " -"be used. See the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page, section <quote>DOMAIN " -"SECTIONS</quote> for details on the configuration of a SSSD domain. " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:434 -msgid "" -"The following example assumes that SSSD is correctly configured and FOO is " -"one of the domains in the <replaceable>[sssd]</replaceable> section. This " -"example shows only configuration of Kerberos authentication, it does not " -"include any identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-krb5.5.xml:442 -#, no-wrap -msgid "" -" [domain/FOO]\n" -" auth_provider = krb5\n" -" krb5_server = 192.168.1.1\n" -" krb5_realm = EXAMPLE.COM\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:453 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupadd.8.xml:10 sss_groupadd.8.xml:15 -msgid "sss_groupadd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupadd.8.xml:16 -msgid "create a new group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupadd.8.xml:21 -msgid "" -"<command>sss_groupadd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:32 -msgid "" -"<command>sss_groupadd</command> creates a new group. These groups are " -"compatible with POSIX groups, with the additional feature that they can " -"contain other groups as members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupadd.8.xml:43 -msgid "" -"<option>-g</option>,<option>--gid</option> <replaceable>GID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupadd.8.xml:48 -msgid "" -"Set the GID of the group to the value of <replaceable>GID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_userdel.8.xml:10 sss_userdel.8.xml:15 -msgid "sss_userdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_userdel.8.xml:16 -msgid "delete a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_userdel.8.xml:21 -msgid "" -"<command>sss_userdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:32 -msgid "" -"<command>sss_userdel</command> deletes a user identified by login name " -"<replaceable>LOGIN</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:44 -msgid "<option>-r</option>,<option>--remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:48 -msgid "" -"Files in the user's home directory will be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:56 -msgid "<option>-R</option>,<option>--no-remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:60 -msgid "" -"Files in the user's home directory will NOT be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:68 -msgid "<option>-f</option>,<option>--force</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:72 -msgid "" -"This option forces <command>sss_userdel</command> to remove the user's home " -"directory and mail spool, even if they are not owned by the specified user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:80 -msgid "<option>-k</option>,<option>--kick</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:84 -msgid "Before actually deleting the user, terminate all his processes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:95 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupdel.8.xml:10 sss_groupdel.8.xml:15 -msgid "sss_groupdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupdel.8.xml:16 -msgid "delete a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupdel.8.xml:21 -msgid "" -"<command>sss_groupdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:32 -msgid "" -"<command>sss_groupdel</command> deletes a group identified by its name " -"<replaceable>GROUP</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupshow.8.xml:10 sss_groupshow.8.xml:15 -msgid "sss_groupshow" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupshow.8.xml:16 -msgid "print properties of a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupshow.8.xml:21 -msgid "" -"<command>sss_groupshow</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:32 -msgid "" -"<command>sss_groupshow</command> displays information about a group " -"identified by its name <replaceable>GROUP</replaceable>. The information " -"includes the group ID number, members of the group and the parent group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupshow.8.xml:43 -msgid "<option>-R</option>,<option>--recursive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupshow.8.xml:47 -msgid "" -"Also print indirect group members in a tree-like hierarchy. Note that this " -"also affects printing parent groups - without <option>R</option>, only the " -"direct parent will be printed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_usermod.8.xml:10 sss_usermod.8.xml:15 -msgid "sss_usermod" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_usermod.8.xml:16 -msgid "modify a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_usermod.8.xml:21 -msgid "" -"<command>sss_usermod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:32 -msgid "" -"<command>sss_usermod</command> modifies the account specified by " -"<replaceable>LOGIN</replaceable> to reflect the changes that are specified " -"on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:60 -msgid "The home directory of the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:71 -msgid "The user's login shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:82 -msgid "" -"Append this user to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:96 -msgid "" -"Remove this user from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:103 -msgid "<option>-l</option>,<option>--lock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:107 -msgid "Lock the user account. The user won't be able to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:114 -msgid "<option>-u</option>,<option>--unlock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:118 -msgid "Unlock the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:129 -msgid "The SELinux user for the user's login." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:140 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_cache.8.xml:10 sss_cache.8.xml:15 -msgid "sss_cache" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_cache.8.xml:16 -msgid "perform cache cleanup" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_cache.8.xml:21 -msgid "" -"<command>sss_cache</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_cache.8.xml:31 -msgid "" -"<command>sss_cache</command> invalidates records in SSSD cache. Invalidated " -"records are forced to be reloaded from server as soon as related SSSD " -"backend is online." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:42 -msgid "" -"<option>-u</option>,<option>--user</option> <replaceable>login</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:47 -msgid "Invalidate specific user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:53 -msgid "<option>-U</option>,<option>--users</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:57 -msgid "" -"Invalidate all user records. This option overrides invalidation of specific " -"user if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:64 -msgid "" -"<option>-g</option>,<option>--group</option> <replaceable>group</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:69 -msgid "Invalidate specific group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:75 -msgid "<option>-G</option>,<option>--groups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:79 -msgid "" -"Invalidate all group records. This option overrides invalidation of specific " -"group if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:86 -msgid "" -"<option>-n</option>,<option>--netgroup</option> <replaceable>netgroup</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:91 -msgid "Invalidate specific netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:97 -msgid "<option>-N</option>,<option>--netgroups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:101 -msgid "" -"Invalidate all netgroup records. This option overrides invalidation of " -"specific netgroup if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:108 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>domain</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:113 -msgid "Restrict invalidation process only to a particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_debuglevel.8.xml:10 sss_debuglevel.8.xml:15 -msgid "sss_debuglevel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_debuglevel.8.xml:16 -msgid "change debug level while SSSD is running" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_debuglevel.8.xml:21 -msgid "" -"<command>sss_debuglevel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>NEW_DEBUG_LEVEL</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_debuglevel.8.xml:32 -msgid "" -"<command>sss_debuglevel</command> changes debug level of SSSD monitor and " -"providers to <replaceable>NEW_DEBUG_LEVEL</replaceable> while SSSD is " -"running." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_debuglevel.8.xml:59 -msgid "<replaceable>NEW_DEBUG_LEVEL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_authorizedkeys.1.xml:10 sss_ssh_authorizedkeys.1.xml:15 -msgid "sss_ssh_authorizedkeys" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_ssh_authorizedkeys.1.xml:11 sss_ssh_knownhostsproxy.1.xml:11 -msgid "1" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_authorizedkeys.1.xml:16 -msgid "get OpenSSH authorized keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_authorizedkeys.1.xml:21 -msgid "" -"<command>sss_ssh_authorizedkeys</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>USER</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:32 -msgid "" -"<command>sss_ssh_authorizedkeys</command> acquires SSH public keys for user " -"<replaceable>USER</replaceable> and outputs them in OpenSSH authorized_keys " -"format (see the <quote>AUTHORIZED_KEYS FILE FORMAT</quote> section of " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> for more information)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:41 -msgid "" -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_authorizedkeys</" -"command> for public key user authentication if it is compiled with support " -"for either <quote>AuthorizedKeysCommand</quote> or <quote>PubkeyAgent</" -"quote> <citerefentry> <refentrytitle>sshd_config</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:58 -#, no-wrap -msgid "AuthorizedKeysCommand /usr/bin/sss_ssh_authorizedkeys\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:51 -msgid "" -"If <quote>AuthorizedKeysCommand</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by putting the following directive " -"in <citerefentry> <refentrytitle>sshd_config</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry>: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:69 -#, no-wrap -msgid "PubKeyAgent /usr/bin/sss_ssh_authorizedkeys %u\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:62 -msgid "" -"If <quote>PubkeyAgent</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by using the following directive " -"for <citerefentry> <refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> configuration: <placeholder type=\"programlisting" -"\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_authorizedkeys.1.xml:87 -msgid "" -"Search for user public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:98 -msgid "" -"<citerefentry> <refentrytitle>sshd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sshd_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_knownhostsproxy</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_knownhostsproxy.1.xml:10 sss_ssh_knownhostsproxy.1.xml:15 -msgid "sss_ssh_knownhostsproxy" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_knownhostsproxy.1.xml:16 -msgid "get OpenSSH host keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_knownhostsproxy.1.xml:21 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>HOST</replaceable></arg> <arg " -"choice='opt'><replaceable>PROXY_COMMAND</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:33 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> acquires SSH host public keys for " -"host <replaceable>HOST</replaceable>, stores them in a custom OpenSSH " -"known_hosts file (see the <quote>SSH_KNOWN_HOSTS FILE FORMAT</quote> section " -"of <citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> for more information) <filename>/var/lib/sss/" -"pubconf/known_hosts</filename> and estabilishes connection to the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:43 -msgid "" -"If <replaceable>PROXY_COMMAND</replaceable> is specified, it is used to " -"create the connection to the host instead of opening a socket." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_knownhostsproxy.1.xml:55 -#, no-wrap -msgid "" -"ProxyCommand /usr/bin/sss_ssh_knownhostsproxy -p %p %h\n" -"GlobalKnownHostsFile2 /var/lib/sss/pubconf/known_hosts\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:48 -msgid "" -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_knownhostsproxy</" -"command> for host key authentication by using the following directives for " -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> configuration: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_ssh_knownhostsproxy.1.xml:69 -msgid "" -"<option>-p</option>,<option>--port</option> <replaceable>PORT</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:74 -msgid "" -"Use port <replaceable>PORT</replaceable> to connect to the host. By " -"default, port 22 is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:86 -msgid "" -"Search for host public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:97 -msgid "" -"<citerefentry> <refentrytitle>ssh</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>ssh_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_authorizedkeys</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/service_discovery.xml:2 -msgid "SERVICE DISCOVERY" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/service_discovery.xml:4 -msgid "" -"The service discovery feature allows back ends to automatically find the " -"appropriate servers to connect to using a special DNS query." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:9 -msgid "Configuration" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:11 -msgid "" -"If no servers are specified, the back end automatically uses service " -"discovery to try to find a server. Optionally, the user may choose to use " -"both fixed server addresses and service discovery by inserting a special " -"keyword, <quote>_srv_</quote>, in the list of servers. The order of " -"preference is maintained. This feature is useful if, for example, the user " -"prefers to use service discovery whenever possible, and fall back to a " -"specific server when no servers can be discovered using DNS." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:23 -msgid "The domain name" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:25 -msgid "" -"Please refer to the <quote>dns_discovery_domain</quote> parameter in the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for more details." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:35 -msgid "The protocol" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:37 -msgid "" -"The queries usually specify _tcp as the protocol. Exceptions are documented " -"in respective option description." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:42 -msgid "See Also" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:44 -msgid "" -"For more information on the service discovery mechanism, refer to RFC 2782." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/upstream.xml:1 -msgid "<placeholder type=\"refentryinfo\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/failover.xml:2 -msgid "FAILOVER" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/failover.xml:4 -msgid "" -"The failover feature allows back ends to automatically switch to a different " -"server if the primary server fails." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:8 -msgid "Failover Syntax" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:10 -msgid "" -"The list of servers is given as a comma-separated list; any number of spaces " -"is allowed around the comma. The servers are listed in order of preference. " -"The list can contain any number of servers." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:17 -msgid "The Failover Mechanism" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:19 -msgid "" -"The failover mechanism distinguishes between a machine and a service. The " -"back end first tries to resolve the hostname of a given machine; if this " -"resolution attempt fails, the machine is considered offline. No further " -"attempts are made to connect to this machine for any other service. If the " -"resolution attempt succeeds, the back end tries to connect to a service on " -"this machine. If the service connection attempt fails, then only this " -"particular service is considered offline and the back end automatically " -"switches over to the next service. The machine is still considered online " -"and might still be tried for another service." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:32 -msgid "" -"Further connection attempts are made to machines or services marked as " -"offline after a specified period of time; this is currently hard coded to 30 " -"seconds." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:37 -msgid "" -"If there are no more machines to try, the back end as a whole switches to " -"offline mode, and then attempts to reconnect every 30 seconds." -msgstr "" - -#. type: Content of: <varlistentry><term> -#: include/param_help.xml:3 -msgid "<option>-h</option>,<option>--help</option>" -msgstr "" - -#. type: Content of: <varlistentry><listitem><para> -#: include/param_help.xml:7 -msgid "Display help message and exit." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:3 -msgid "" -"Bit mask that indicates which debug levels will be visible. 0x0010 is the " -"default value as well as the lowest allowed value, 0xFFF0 is the most " -"verbose mode. This setting overrides the settings from config file." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:8 -msgid "Currently supported debug levels:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:11 -msgid "" -"<emphasis>0x0010</emphasis>: Fatal failures. Anything that would prevent " -"SSSD from starting up or causes it to cease running." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:15 -msgid "" -"<emphasis>0x0020</emphasis>: Critical failures. An error that doesn't kill " -"the SSSD, but one that indicates that at least one major feature is not " -"going to work properly." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:20 -msgid "" -"<emphasis>0x0040</emphasis>: Serious failures. An error announcing that a " -"particular request or operation has failed." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:24 -msgid "" -"<emphasis>0x0080</emphasis>: Minor failures. These are the errors that would " -"percolate down to cause the operation failure of 2." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:28 -msgid "<emphasis>0x0100</emphasis>: Configuration settings." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:31 -msgid "<emphasis>0x0200</emphasis>: Function data." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:34 -msgid "<emphasis>0x0400</emphasis>: Trace messages for operation functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:37 -msgid "" -"<emphasis>0x1000</emphasis>: Trace messages for internal control functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:40 -msgid "" -"<emphasis>0x2000</emphasis>: Contents of function-internal variables that " -"may be interesting." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:43 -msgid "<emphasis>0x4000</emphasis>: Extremely low-level tracing information." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:46 -msgid "" -"To log required debug levels, simply add their numbers together as shown in " -"following examples:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:49 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, critical failures, " -"serious failures and function data use 0x0270." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:53 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, configuration settings, " -"function data, trace messages for internal control functions use 0x1310." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:57 -msgid "" -"<emphasis>Note</emphasis>: This is new format of debug levels introduced in " -"1.7.0. Older format (numbers from 0-10) is compatible but deprecated." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/experimental.xml:1 -msgid "" -"<emphasis> This is an experimental feature, please use http://fedorahosted." -"org/sssd to report any issues. </emphasis>" -msgstr "" diff --git a/src/man/po/po4a.cfg b/src/man/po/po4a.cfg index ca2771800..3e5af7421 100644 --- a/src/man/po/po4a.cfg +++ b/src/man/po/po4a.cfg @@ -1,4 +1,4 @@ -[po4a_langs] as bg bs bn bn_IN ca cs de el en_GB es et fa fi fr he hi hu id it ja_JP ja ko lt mr nb nl nn pl pt_BR pt ru sk sq sr sv ta tg tr uk ur vi zh_CN zh_TW +[po4a_langs] cs es fr ja nl pt ru tg uk [po4a_paths] po/sssd-docs.pot $lang:po/$lang.po [type:docbook] sss_groupmod.8.xml $lang:$(builddir)/$lang/sss_groupmod.8.xml [type:docbook] sssd.conf.5.xml $lang:$(builddir)/$lang/sssd.conf.5.xml diff --git a/src/man/po/pt.po b/src/man/po/pt.po index aa8a30b96..21e43f15f 100644 --- a/src/man/po/pt.po +++ b/src/man/po/pt.po @@ -9,8 +9,8 @@ msgstr "" "Project-Id-Version: SSSD\n" "Report-Msgid-Bugs-To: sssd-devel@redhat.com\n" "POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2011-12-21 10:12+0000\n" -"Last-Translator: Miguel Sousa <migueljorgesousa@sapo.pt>\n" +"PO-Revision-Date: 2012-03-08 11:52+0000\n" +"Last-Translator: sgallagh <sgallagh@redhat.com>\n" "Language-Team: Portuguese <trans-pt@lists.fedoraproject.org>\n" "Language: pt\n" "MIME-Version: 1.0\n" @@ -949,10 +949,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><title> #: sssd.conf.5.xml:599 -#, fuzzy -#| msgid "Configuration" msgid "SUDO configuration options" -msgstr "Configuração" +msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><para> #: sssd.conf.5.xml:601 @@ -961,10 +959,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:608 -#, fuzzy -#| msgid "entry_cache_timeout (integer)" msgid "sudo_cache_timeout (integer)" -msgstr "entry_cache_timeout (integer)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:611 @@ -992,17 +988,13 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:628 -#, fuzzy -#| msgid "Default: 10" msgid "Default: 180" -msgstr "Padrão: 10" +msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:633 -#, fuzzy -#| msgid "remove_homedir (bool)" msgid "sudo_timed (bool)" -msgstr "remove_homedir (bool)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:636 @@ -1023,10 +1015,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:659 -#, fuzzy -#| msgid "pam_id_timeout (integer)" msgid "autofs_negative_timeout (integer)" -msgstr "pam_id_timeout (integer)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:662 @@ -1156,10 +1146,8 @@ msgstr "Padrão: 5400" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:776 -#, fuzzy -#| msgid "entry_cache_timeout (integer)" msgid "entry_cache_user_timeout (integer)" -msgstr "entry_cache_timeout (integer)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:779 @@ -1171,17 +1159,13 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:783 sssd.conf.5.xml:796 sssd.conf.5.xml:809 #: sssd.conf.5.xml:822 -#, fuzzy -#| msgid "entry_cache_timeout (integer)" msgid "Default: entry_cache_timeout" -msgstr "entry_cache_timeout (integer)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:789 -#, fuzzy -#| msgid "entry_cache_timeout (integer)" msgid "entry_cache_group_timeout (integer)" -msgstr "entry_cache_timeout (integer)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:792 @@ -1192,10 +1176,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:802 -#, fuzzy -#| msgid "entry_cache_timeout (integer)" msgid "entry_cache_netgroup_timeout (integer)" -msgstr "entry_cache_timeout (integer)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:805 @@ -1206,10 +1188,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:815 -#, fuzzy -#| msgid "entry_cache_timeout (integer)" msgid "entry_cache_service_timeout (integer)" -msgstr "entry_cache_timeout (integer)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:818 @@ -1435,10 +1415,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:1004 -#, fuzzy -#| msgid "id_provider (string)" msgid "sudo_provider (string)" -msgstr "id_provider (string)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1010 @@ -1447,17 +1425,11 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1014 -#, fuzzy -#| msgid "" -#| "<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>8</" -#| "manvolnum> </citerefentry>" msgid "" "<quote>ldap</quote> for rules stored in LDAP. See <citerefentry> " "<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" "citerefentry> for more information on configuring LDAP." msgstr "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1021 @@ -1471,10 +1443,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:1030 -#, fuzzy -#| msgid "access_provider (string)" msgid "session_provider (string)" -msgstr "access_provider (string)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1033 @@ -2549,10 +2519,8 @@ msgstr "Padrão: krbPrincipalName" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:582 -#, fuzzy -#| msgid "ldap_user_shell (string)" msgid "ldap_user_ssh_public_key (string)" -msgstr "ldap_user_shell (string)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:585 @@ -2592,10 +2560,8 @@ msgstr "Padrão: 300" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:622 -#, fuzzy -#| msgid "ldap_search_timeout (integer)" msgid "ldap_purge_cache_timeout (integer)" -msgstr "ldap_search_timeout (integer)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:625 @@ -2879,10 +2845,8 @@ msgstr "ldap_netgroup_modify_timestamp (string)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:900 -#, fuzzy -#| msgid "ipa_host_object_class (string)" msgid "ldap_service_object_class (string)" -msgstr "ipa_host_object_class (string)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:903 @@ -2891,17 +2855,13 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:906 -#, fuzzy -#| msgid "Default: filter" msgid "Default: ipService" -msgstr "Padrão: filter" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:912 -#, fuzzy -#| msgid "ldap_user_fullname (string)" msgid "ldap_service_name (string)" -msgstr "ldap_user_fullname (string)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:915 @@ -2912,10 +2872,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:925 -#, fuzzy -#| msgid "ldap_tls_reqcert (string)" msgid "ldap_service_port (string)" -msgstr "ldap_tls_reqcert (string)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:928 @@ -2924,17 +2882,13 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:932 -#, fuzzy -#| msgid "Default: ipv4_first" msgid "Default: ipServicePort" -msgstr "Default: ipv4_first" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:938 -#, fuzzy -#| msgid "ldap_tls_reqcert (string)" msgid "ldap_service_proto (string)" -msgstr "ldap_tls_reqcert (string)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:941 @@ -2944,17 +2898,13 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:945 -#, fuzzy -#| msgid "Default: ipv4_first" msgid "Default: ipServiceProtocol" -msgstr "Default: ipv4_first" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:951 -#, fuzzy -#| msgid "ldap_user_search_base (string)" msgid "ldap_service_search_base (string)" -msgstr "ldap_user_search_base (string)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:954 @@ -3465,17 +3415,11 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1416 -#, fuzzy -#| msgid "" -#| "<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>8</" -#| "manvolnum> </citerefentry>" msgid "" "<emphasis>shadow</emphasis> - Use <citerefentry><refentrytitle>shadow</" "refentrytitle> <manvolnum>5</manvolnum></citerefentry> style attributes to " "evaluate if the password has expired." msgstr "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1422 @@ -3743,17 +3687,13 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><title> #: sssd-ldap.5.xml:1639 -#, fuzzy -#| msgid "OPTIONS" msgid "SUDO OPTIONS" -msgstr "Opções" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1644 -#, fuzzy -#| msgid "ipa_host_object_class (string)" msgid "ldap_sudorule_object_class (string)" -msgstr "ipa_host_object_class (string)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1647 @@ -3762,17 +3702,13 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1650 -#, fuzzy -#| msgid "Default: True" msgid "Default: sudoRole" -msgstr "Padrão: TRUE" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1656 -#, fuzzy -#| msgid "ldap_user_fullname (string)" msgid "ldap_sudorule_name (string)" -msgstr "ldap_user_fullname (string)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1659 @@ -3781,10 +3717,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1669 -#, fuzzy -#| msgid "ldap_deref (string)" msgid "ldap_sudorule_command (string)" -msgstr "ldap_deref (string)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1672 @@ -3793,17 +3727,13 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1676 -#, fuzzy -#| msgid "Default: shadowMin" msgid "Default: sudoCommand" -msgstr "Padrão: shadowMin" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1682 -#, fuzzy -#| msgid "ldap_user_authorized_host (string)" msgid "ldap_sudorule_host (string)" -msgstr "ldap_user_authorized_host (string)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1685 @@ -3814,17 +3744,13 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1690 -#, fuzzy -#| msgid "Default: host" msgid "Default: sudoHost" -msgstr "Padrão: host" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1696 -#, fuzzy -#| msgid "ldap_user_shell (string)" msgid "ldap_sudorule_user (string)" -msgstr "ldap_user_shell (string)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1699 @@ -3835,17 +3761,13 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1703 -#, fuzzy -#| msgid "Default: True" msgid "Default: sudoUser" -msgstr "Padrão: TRUE" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1709 -#, fuzzy -#| msgid "ldap_uri (string)" msgid "ldap_sudorule_option (string)" -msgstr "ldap_uri (string)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1712 @@ -3854,17 +3776,13 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1716 -#, fuzzy -#| msgid "Default: shadowMin" msgid "Default: sudoOption" -msgstr "Padrão: shadowMin" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1722 -#, fuzzy -#| msgid "ldap_user_fullname (string)" msgid "ldap_sudorule_runasuser (string)" -msgstr "ldap_user_fullname (string)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1725 @@ -3875,17 +3793,13 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1729 -#, fuzzy -#| msgid "Default: none" msgid "Default: sudoRunAsUser" -msgstr "Padrão: none" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1735 -#, fuzzy -#| msgid "ldap_user_uuid (string)" msgid "ldap_sudorule_runasgroup (string)" -msgstr "ldap_user_uuid (string)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1738 @@ -3896,17 +3810,13 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1742 -#, fuzzy -#| msgid "Default: shadowMin" msgid "Default: sudoRunAsGroup" -msgstr "Padrão: shadowMin" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1748 -#, fuzzy -#| msgid "ldap_deref (string)" msgid "ldap_sudorule_notbefore (string)" -msgstr "ldap_deref (string)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1751 @@ -3917,17 +3827,13 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1755 -#, fuzzy -#| msgid "Default: shadowExpire" msgid "Default: sudoNotBefore" -msgstr "Padrão: shadowExpire" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1761 -#, fuzzy -#| msgid "ldap_user_fullname (string)" msgid "ldap_sudorule_notafter (string)" -msgstr "ldap_user_fullname (string)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1764 @@ -3938,17 +3844,13 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1769 -#, fuzzy -#| msgid "Default: filter" msgid "Default: sudoNotAfter" -msgstr "Padrão: filter" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1775 -#, fuzzy -#| msgid "ldap_deref (string)" msgid "ldap_sudorule_order (string)" -msgstr "ldap_deref (string)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1778 @@ -3957,17 +3859,13 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1782 -#, fuzzy -#| msgid "Default: shadowExpire" msgid "Default: sudoOrder" -msgstr "Padrão: shadowExpire" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1788 -#, fuzzy -#| msgid "ldap_force_upper_case_realm (boolean)" msgid "ldap_sudo_refresh_enabled (boolean)" -msgstr "ldap_force_upper_case_realm (boolean)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1791 @@ -3978,10 +3876,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1801 -#, fuzzy -#| msgid "ldap_enumeration_refresh_timeout (integer)" msgid "ldap_sudo_refresh_timeout (integer)" -msgstr "ldap_enumeration_refresh_timeout (integer)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1804 @@ -3991,10 +3887,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para> #: sssd-ldap.5.xml:1642 -#, fuzzy -#| msgid "<placeholder type=\"programlisting\" id=\"0\"/>" msgid "<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "<placeholder type=\"programlisting\" id=\"0\"/>" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para> #: sssd-ldap.5.xml:1815 @@ -4007,10 +3901,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><title> #: sssd-ldap.5.xml:1825 -#, fuzzy -#| msgid "OPTIONS" msgid "AUTOFS OPTIONS" -msgstr "Opções" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para> #: sssd-ldap.5.xml:1827 @@ -4021,10 +3913,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1834 -#, fuzzy -#| msgid "ipa_host_object_class (string)" msgid "ldap_autofs_map_object_class (string)" -msgstr "ipa_host_object_class (string)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1837 sssd-ldap.5.xml:1863 @@ -4033,17 +3923,13 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1840 sssd-ldap.5.xml:1867 -#, fuzzy -#| msgid "Default: /tmp" msgid "Default: automountMap" -msgstr "Padrão: /tmp." +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1847 -#, fuzzy -#| msgid "ldap_user_fullname (string)" msgid "ldap_autofs_map_name (string)" -msgstr "ldap_user_fullname (string)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1850 @@ -4052,24 +3938,18 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1853 -#, fuzzy -#| msgid "Default: 3" msgid "Default: ou" -msgstr "Padrão: 3" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1860 -#, fuzzy -#| msgid "ipa_host_object_class (string)" msgid "ldap_autofs_entry_object_class (string)" -msgstr "ipa_host_object_class (string)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1874 -#, fuzzy -#| msgid "ldap_user_shell (string)" msgid "ldap_autofs_entry_key (string)" -msgstr "ldap_user_shell (string)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1877 sssd-ldap.5.xml:1891 @@ -4080,17 +3960,13 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1888 -#, fuzzy -#| msgid "ldap_user_uuid (string)" msgid "ldap_autofs_entry_value (string)" -msgstr "ldap_user_uuid (string)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1895 -#, fuzzy -#| msgid "Default: shadowInactive" msgid "Default: automountInformation" -msgstr "Padrão: shadowInactive" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para> #: sssd-ldap.5.xml:1832 @@ -4192,10 +4068,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:2012 -#, fuzzy -#| msgid "ldap_search_base (string)" msgid "ldap_sudo_search_base (string)" -msgstr "ldap_search_base (string)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:2015 @@ -4205,10 +4079,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:2034 -#, fuzzy -#| msgid "ldap_user_search_base (string)" msgid "ldap_autofs_search_base (string)" -msgstr "ldap_user_search_base (string)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:2037 @@ -4786,10 +4658,8 @@ msgstr "Default: Use base DN" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:156 -#, fuzzy -#| msgid "ipa_hbac_search_base (string)" msgid "ipa_host_search_base (string)" -msgstr "ipa_hbac_search_base (string)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:159 @@ -4806,10 +4676,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:180 -#, fuzzy -#| msgid "ipa_hbac_search_base (string)" msgid "ipa_selinux_search_base (string)" -msgstr "ipa_hbac_search_base (string)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:183 @@ -4929,10 +4797,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:307 -#, fuzzy -#| msgid "ipa_domain (string)" msgid "ipa_automount_location (string)" -msgstr "ipa_domain (string)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:310 @@ -5052,17 +4918,13 @@ msgstr "Padrão: fqdn" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:404 -#, fuzzy -#| msgid "ipa_host_object_class (string)" msgid "ipa_selinux_usermap_object_class (string)" -msgstr "ipa_host_object_class (string)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:415 -#, fuzzy -#| msgid "ldap_user_fullname (string)" msgid "ipa_selinux_usermap_name (string)" -msgstr "ldap_user_fullname (string)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:418 @@ -5071,10 +4933,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:427 -#, fuzzy -#| msgid "ipa_netgroup_member_host (string)" msgid "ipa_selinux_usermap_member_user (string)" -msgstr "ipa_netgroup_member_host (string)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:430 @@ -5084,10 +4944,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:439 -#, fuzzy -#| msgid "ipa_netgroup_member_host (string)" msgid "ipa_selinux_usermap_member_host (string)" -msgstr "ipa_netgroup_member_host (string)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:442 @@ -5098,10 +4956,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:451 -#, fuzzy -#| msgid "ipa_netgroup_member_host (string)" msgid "ipa_selinux_usermap_see_also (string)" -msgstr "ipa_netgroup_member_host (string)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:454 @@ -5112,17 +4968,13 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:459 -#, fuzzy -#| msgid "Default: false" msgid "Default: seeAlso" -msgstr "Padrão: false" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:464 -#, fuzzy -#| msgid "ipa_server (string)" msgid "ipa_selinux_usermap_selinux_user (string)" -msgstr "ipa_server (string)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:467 @@ -5131,17 +4983,13 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:471 -#, fuzzy -#| msgid "Default: ipaHost" msgid "Default: ipaSELinuxUser" -msgstr "Padrão: ipaHost" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:476 -#, fuzzy -#| msgid "ipa_server (string)" msgid "ipa_selinux_usermap_enabled (string)" -msgstr "ipa_server (string)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:479 @@ -5152,17 +5000,13 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:483 -#, fuzzy -#| msgid "Default: false" msgid "Default: ipaEnabledFlag" -msgstr "Padrão: false" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:488 -#, fuzzy -#| msgid "ldap_user_search_filter (string)" msgid "ipa_selinux_usermap_user_category (string)" -msgstr "ldap_user_search_filter (string)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:491 @@ -5171,17 +5015,13 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:495 -#, fuzzy -#| msgid "Default: homeDirectory" msgid "Default: userCategory" -msgstr "Padrão: homeDirectory" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:500 -#, fuzzy -#| msgid "ipa_netgroup_member_host (string)" msgid "ipa_selinux_usermap_host_category (string)" -msgstr "ipa_netgroup_member_host (string)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:503 @@ -5190,17 +5030,13 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:507 -#, fuzzy -#| msgid "Default: host" msgid "Default: hostCategory" -msgstr "Padrão: host" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:512 -#, fuzzy -#| msgid "ldap_user_uuid (string)" msgid "ipa_selinux_usermap_uuid (string)" -msgstr "ldap_user_uuid (string)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:515 @@ -5209,17 +5045,13 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:519 -#, fuzzy -#| msgid "Default: nsUniqueId" msgid "Default: ipaUniqueID" -msgstr "Padrão: nsUniqueId" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:524 -#, fuzzy -#| msgid "ipa_hostname (string)" msgid "ipa_host_ssh_public_key (string)" -msgstr "ipa_hostname (string)" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:527 @@ -5228,10 +5060,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:531 -#, fuzzy -#| msgid "Default: ipaHost" msgid "Default: ipaSshPubKey" -msgstr "Padrão: ipaHost" +msgstr "" #. type: Content of: <reference><refentry><refsect1><para> #: sssd-ipa.5.xml:546 @@ -6536,10 +6366,8 @@ msgstr "" #. type: Content of: <reference><refentry><refnamediv><refname> #: sss_cache.8.xml:10 sss_cache.8.xml:15 -#, fuzzy -#| msgid "sss_obfuscate" msgid "sss_cache" -msgstr "sss_obfuscate" +msgstr "" #. type: Content of: <reference><refentry><refnamediv><refpurpose> #: sss_cache.8.xml:16 @@ -6548,16 +6376,10 @@ msgstr "" #. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> #: sss_cache.8.xml:21 -#, fuzzy -#| msgid "" -#| "<command>sssd</command> <arg choice='opt'> <replaceable>options</" -#| "replaceable> </arg>" msgid "" "<command>sss_cache</command> <arg choice='opt'> <replaceable>options</" "replaceable> </arg>" msgstr "" -"<command>sssd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" #. type: Content of: <reference><refentry><refsect1><para> #: sss_cache.8.xml:31 @@ -6569,14 +6391,9 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:42 -#, fuzzy -#| msgid "" -#| "<option>-f</option>,<option>--file</option> <replaceable>FILE</" -#| "replaceable>" msgid "" "<option>-u</option>,<option>--user</option> <replaceable>login</replaceable>" msgstr "" -"<option>-f</option>,<option>--file</option> <replaceable>FILE</replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:47 @@ -6585,10 +6402,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:53 -#, fuzzy -#| msgid "<option>-h</option>,<option>--help</option>" msgid "<option>-U</option>,<option>--users</option>" -msgstr "<option>-h</option>,<option>--help</option>" +msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:57 @@ -6599,15 +6414,9 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:64 -#, fuzzy -#| msgid "" -#| "<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -#| "replaceable>" msgid "" "<option>-g</option>,<option>--group</option> <replaceable>group</replaceable>" msgstr "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -"replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:69 @@ -6616,10 +6425,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:75 -#, fuzzy -#| msgid "<option>-l</option>,<option>--lock</option>" msgid "<option>-G</option>,<option>--groups</option>" -msgstr "<option>-l</option>,<option>--lock</option>" +msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:79 @@ -6630,16 +6437,10 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:86 -#, fuzzy -#| msgid "" -#| "<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -#| "replaceable>" msgid "" "<option>-n</option>,<option>--netgroup</option> <replaceable>netgroup</" "replaceable>" msgstr "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -"replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:91 @@ -6648,10 +6449,8 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:97 -#, fuzzy -#| msgid "<option>-h</option>,<option>--help</option>" msgid "<option>-N</option>,<option>--netgroups</option>" -msgstr "<option>-h</option>,<option>--help</option>" +msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:101 @@ -6662,16 +6461,10 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:108 -#, fuzzy -#| msgid "" -#| "<option>-d</option>,<option>--domain</option> <replaceable>DOMAIN</" -#| "replaceable>" msgid "" "<option>-d</option>,<option>--domain</option> <replaceable>domain</" "replaceable>" msgstr "" -"<option>-d</option>,<option>--domain</option> <replaceable>DOMAIN</" -"replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:113 @@ -6690,19 +6483,11 @@ msgstr "" #. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> #: sss_debuglevel.8.xml:21 -#, fuzzy -#| msgid "" -#| "<command>sss_groupdel</command> <arg choice='opt'> <replaceable>options</" -#| "replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -#| "arg>" msgid "" "<command>sss_debuglevel</command> <arg choice='opt'> <replaceable>options</" "replaceable> </arg> <arg choice='plain'><replaceable>NEW_DEBUG_LEVEL</" "replaceable></arg>" msgstr "" -"<command>sss_groupdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" #. type: Content of: <reference><refentry><refsect1><para> #: sss_debuglevel.8.xml:32 @@ -6734,19 +6519,11 @@ msgstr "" #. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> #: sss_ssh_authorizedkeys.1.xml:21 -#, fuzzy -#| msgid "" -#| "<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -#| "replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -#| "arg>" msgid "" "<command>sss_ssh_authorizedkeys</command> <arg choice='opt'> " "<replaceable>options</replaceable> </arg> <arg " "choice='plain'><replaceable>USER</replaceable></arg>" msgstr "" -"<command>sss_groupmod</command> <arg choice='opt'> <replaceable>Opções</" -"replaceable></arg> <arg choice='plain'> <replaceable>grupo</replaceable></" -"arg>" #. type: Content of: <reference><refentry><refsect1><para> #: sss_ssh_authorizedkeys.1.xml:32 @@ -6760,13 +6537,6 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para> #: sss_ssh_authorizedkeys.1.xml:41 -#, fuzzy -#| msgid "" -#| "<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -#| "manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -#| "refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -#| "<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </" -#| "citerefentry>" msgid "" "<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" "citerefentry> can be configured to use <command>sss_ssh_authorizedkeys</" @@ -6775,10 +6545,6 @@ msgid "" "quote> <citerefentry> <refentrytitle>sshd_config</refentrytitle> " "<manvolnum>5</manvolnum></citerefentry> options." msgstr "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" #. type: Content of: <reference><refentry><refsect1><para><programlisting> #: sss_ssh_authorizedkeys.1.xml:58 @@ -6788,13 +6554,6 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para> #: sss_ssh_authorizedkeys.1.xml:51 -#, fuzzy -#| msgid "" -#| "<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -#| "manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -#| "refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -#| "<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </" -#| "citerefentry>" msgid "" "If <quote>AuthorizedKeysCommand</quote> is supported, " "<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" @@ -6802,10 +6561,6 @@ msgid "" "in <citerefentry> <refentrytitle>sshd_config</refentrytitle> <manvolnum>5</" "manvolnum></citerefentry>: <placeholder type=\"programlisting\" id=\"0\"/>" msgstr "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" #. type: Content of: <reference><refentry><refsect1><para><programlisting> #: sss_ssh_authorizedkeys.1.xml:69 @@ -6815,13 +6570,6 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para> #: sss_ssh_authorizedkeys.1.xml:62 -#, fuzzy -#| msgid "" -#| "<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -#| "manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -#| "refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -#| "<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </" -#| "citerefentry>" msgid "" "If <quote>PubkeyAgent</quote> is supported, " "<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" @@ -6830,10 +6578,6 @@ msgid "" "manvolnum></citerefentry> configuration: <placeholder type=\"programlisting" "\" id=\"0\"/>" msgstr "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_ssh_authorizedkeys.1.xml:87 @@ -6843,13 +6587,6 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para> #: sss_ssh_authorizedkeys.1.xml:98 -#, fuzzy -#| msgid "" -#| "<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -#| "manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -#| "refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -#| "<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </" -#| "citerefentry>" msgid "" "<citerefentry> <refentrytitle>sshd</refentrytitle><manvolnum>8</manvolnum> </" "citerefentry>, <citerefentry> <refentrytitle>sshd_config</" @@ -6857,10 +6594,6 @@ msgid "" "<refentrytitle>sss_ssh_knownhostsproxy</refentrytitle><manvolnum>1</" "manvolnum> </citerefentry>." msgstr "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" #. type: Content of: <reference><refentry><refnamediv><refname> #: sss_ssh_knownhostsproxy.1.xml:10 sss_ssh_knownhostsproxy.1.xml:15 @@ -6874,20 +6607,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> #: sss_ssh_knownhostsproxy.1.xml:21 -#, fuzzy -#| msgid "" -#| "<command>sss_groupshow</command> <arg choice='opt'> <replaceable>options</" -#| "replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -#| "arg>" msgid "" "<command>sss_ssh_knownhostsproxy</command> <arg choice='opt'> " "<replaceable>options</replaceable> </arg> <arg " "choice='plain'><replaceable>HOST</replaceable></arg> <arg " "choice='opt'><replaceable>PROXY_COMMAND</replaceable></arg>" msgstr "" -"<command>sss_groupshow</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" #. type: Content of: <reference><refentry><refsect1><para> #: sss_ssh_knownhostsproxy.1.xml:33 @@ -6917,13 +6642,6 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para> #: sss_ssh_knownhostsproxy.1.xml:48 -#, fuzzy -#| msgid "" -#| "<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -#| "manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -#| "refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -#| "<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </" -#| "citerefentry>" msgid "" "<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" "citerefentry> can be configured to use <command>sss_ssh_knownhostsproxy</" @@ -6931,22 +6649,12 @@ msgid "" "<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" "citerefentry> configuration: <placeholder type=\"programlisting\" id=\"0\"/>" msgstr "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_ssh_knownhostsproxy.1.xml:69 -#, fuzzy -#| msgid "" -#| "<option>-d</option>,<option>--domain</option> <replaceable>DOMAIN</" -#| "replaceable>" msgid "" "<option>-p</option>,<option>--port</option> <replaceable>PORT</replaceable>" msgstr "" -"<option>-d</option>,<option>--domain</option> <replaceable>DOMAIN</" -"replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_ssh_knownhostsproxy.1.xml:74 @@ -6963,13 +6671,6 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para> #: sss_ssh_knownhostsproxy.1.xml:97 -#, fuzzy -#| msgid "" -#| "<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -#| "manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -#| "refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -#| "<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </" -#| "citerefentry>" msgid "" "<citerefentry> <refentrytitle>ssh</refentrytitle><manvolnum>8</manvolnum> </" "citerefentry>, <citerefentry> <refentrytitle>ssh_config</" @@ -6977,10 +6678,6 @@ msgid "" "<refentrytitle>sss_ssh_authorizedkeys</refentrytitle><manvolnum>1</" "manvolnum> </citerefentry>." msgstr "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" #. type: Content of: <refsect1><title> #: include/service_discovery.xml:2 @@ -7165,17 +6862,13 @@ msgstr "" #. type: Content of: <listitem><para> #: include/debug_levels.xml:28 -#, fuzzy -#| msgid "<emphasis>m</emphasis> minutes" msgid "<emphasis>0x0100</emphasis>: Configuration settings." -msgstr "<emphasis>m</emphasis> minutos" +msgstr "" #. type: Content of: <listitem><para> #: include/debug_levels.xml:31 -#, fuzzy -#| msgid "<emphasis>s</emphasis> seconds" msgid "<emphasis>0x0200</emphasis>: Function data." -msgstr "<emphasis>s</emphasis> segundos" +msgstr "" #. type: Content of: <listitem><para> #: include/debug_levels.xml:34 @@ -7234,9 +6927,3 @@ msgid "" "<emphasis> This is an experimental feature, please use http://fedorahosted." "org/sssd to report any issues. </emphasis>" msgstr "" - -#~ msgid "ldap_purge_cache_timeout" -#~ msgstr "ldap_purge_cache_timeout" - -#~ msgid "Supported services: nss, pam" -#~ msgstr "Suporte para serviços: nss, pam" diff --git a/src/man/po/pt_BR.po b/src/man/po/pt_BR.po deleted file mode 100644 index fc0cbc1ce..000000000 --- a/src/man/po/pt_BR.po +++ /dev/null @@ -1,6747 +0,0 @@ -# SOME DESCRIPTIVE TITLE -# Copyright (C) YEAR Red Hat -# This file is distributed under the same license as the sssd-docs package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@redhat.com\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-12-23 15:35+0000\n" -"Last-Translator: FULL NAME <EMAIL@ADDRESS>\n" -"Language-Team: Portuguese (Brazilian) <trans-pt_br@lists.fedoraproject.org>\n" -"Language: pt_BR\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=2; plural=(n > 1)\n" - -#. type: Content of: <reference><title> -#: sss_groupmod.8.xml:5 sssd.conf.5.xml:5 sssd-ldap.5.xml:5 pam_sss.8.xml:5 -#: sssd_krb5_locator_plugin.8.xml:5 sssd-simple.5.xml:5 sssd-ipa.5.xml:5 -#: sssd.8.xml:5 sss_obfuscate.8.xml:5 sss_useradd.8.xml:5 sssd-krb5.5.xml:5 -#: sss_groupadd.8.xml:5 sss_userdel.8.xml:5 sss_groupdel.8.xml:5 -#: sss_groupshow.8.xml:5 sss_usermod.8.xml:5 sss_cache.8.xml:5 -#: sss_debuglevel.8.xml:5 sss_ssh_authorizedkeys.1.xml:5 -#: sss_ssh_knownhostsproxy.1.xml:5 -msgid "SSSD Manual pages" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupmod.8.xml:10 sss_groupmod.8.xml:15 -msgid "sss_groupmod" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_groupmod.8.xml:11 pam_sss.8.xml:14 sssd_krb5_locator_plugin.8.xml:11 -#: sssd.8.xml:11 sss_obfuscate.8.xml:11 sss_useradd.8.xml:11 -#: sss_groupadd.8.xml:11 sss_userdel.8.xml:11 sss_groupdel.8.xml:11 -#: sss_groupshow.8.xml:11 sss_usermod.8.xml:11 sss_cache.8.xml:11 -#: sss_debuglevel.8.xml:11 -msgid "8" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupmod.8.xml:16 -msgid "modify a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupmod.8.xml:21 -msgid "" -"<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:30 sssd-ldap.5.xml:21 pam_sss.8.xml:44 -#: sssd_krb5_locator_plugin.8.xml:20 sssd-simple.5.xml:22 sssd-ipa.5.xml:21 -#: sssd.8.xml:29 sss_obfuscate.8.xml:30 sss_useradd.8.xml:30 -#: sssd-krb5.5.xml:21 sss_groupadd.8.xml:30 sss_userdel.8.xml:30 -#: sss_groupdel.8.xml:30 sss_groupshow.8.xml:30 sss_usermod.8.xml:30 -#: sss_cache.8.xml:29 sss_debuglevel.8.xml:30 sss_ssh_authorizedkeys.1.xml:30 -#: sss_ssh_knownhostsproxy.1.xml:31 -msgid "DESCRIPTION" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:32 -msgid "" -"<command>sss_groupmod</command> modifies the group to reflect the changes " -"that are specified on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:39 pam_sss.8.xml:51 sssd.8.xml:42 sss_obfuscate.8.xml:58 -#: sss_useradd.8.xml:39 sss_groupadd.8.xml:39 sss_userdel.8.xml:39 -#: sss_groupdel.8.xml:39 sss_groupshow.8.xml:39 sss_usermod.8.xml:39 -#: sss_cache.8.xml:38 sss_debuglevel.8.xml:38 sss_ssh_authorizedkeys.1.xml:78 -#: sss_ssh_knownhostsproxy.1.xml:65 -msgid "OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:43 sss_usermod.8.xml:77 -msgid "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:48 -msgid "" -"Append this group to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:57 sss_usermod.8.xml:91 -msgid "" -"<option>-r</option>,<option>--remove-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:62 -msgid "" -"Remove this group from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:72 sssd.conf.5.xml:1331 sssd-ldap.5.xml:2096 -#: pam_sss.8.xml:139 sssd_krb5_locator_plugin.8.xml:75 sssd-simple.5.xml:143 -#: sssd-ipa.5.xml:562 sssd.8.xml:191 sss_obfuscate.8.xml:103 -#: sss_useradd.8.xml:167 sssd-krb5.5.xml:451 sss_groupadd.8.xml:58 -#: sss_userdel.8.xml:93 sss_groupdel.8.xml:46 sss_groupshow.8.xml:58 -#: sss_usermod.8.xml:138 sss_ssh_authorizedkeys.1.xml:96 -#: sss_ssh_knownhostsproxy.1.xml:95 -msgid "SEE ALSO" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:74 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.conf.5.xml:10 sssd.conf.5.xml:16 -msgid "sssd.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sssd.conf.5.xml:11 sssd-ldap.5.xml:11 sssd-simple.5.xml:11 -#: sssd-ipa.5.xml:11 sssd-krb5.5.xml:11 -msgid "5" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><refmiscinfo> -#: sssd.conf.5.xml:12 sssd-ldap.5.xml:12 sssd-simple.5.xml:12 -#: sssd-ipa.5.xml:12 sssd-krb5.5.xml:12 -msgid "File Formats and Conventions" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.conf.5.xml:17 sssd-ldap.5.xml:17 sssd_krb5_locator_plugin.8.xml:16 -#: sssd-ipa.5.xml:17 sssd-krb5.5.xml:17 -msgid "the configuration file for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:21 -msgid "FILE FORMAT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:29 -#, no-wrap -msgid "" -" <replaceable>[section]</replaceable>\n" -" <replaceable>key</replaceable> = <replaceable>value</replaceable>\n" -" <replaceable>key2</replaceable> = <replaceable>value2,value3</replaceable>\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:24 -msgid "" -"The file has an ini-style syntax and consists of sections and parameters. A " -"section begins with the name of the section in square brackets and continues " -"until the next section begins. An example of section with single and multi-" -"valued parameters: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:36 -msgid "" -"The data types used are string (no quotes needed), integer and bool (with " -"values of <quote>TRUE/FALSE</quote>)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:41 -msgid "" -"A line comment starts with a hash sign (<quote>#</quote>) or a semicolon " -"(<quote>;</quote>)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:46 -msgid "" -"All sections can have an optional <replaceable>description</replaceable> " -"parameter. Its function is only as a label for the section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:52 -msgid "" -"<filename>sssd.conf</filename> must be a regular file, owned by root and " -"only root may read from or write to the file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:58 -msgid "SPECIAL SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:61 -msgid "The [sssd] section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><title> -#: sssd.conf.5.xml:70 sssd.conf.5.xml:1177 -msgid "Section parameters" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:72 -msgid "config_file_version (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:75 -msgid "" -"Indicates what is the syntax of the config file. SSSD 0.6.0 and later use " -"version 2." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:81 -msgid "services" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:84 -msgid "" -"Comma separated list of services that are started when sssd itself starts." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:88 -msgid "" -"Supported services: nss, pam <phrase condition=\"with_sudo\">, sudo</phrase>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:94 sssd.conf.5.xml:257 -msgid "reconnection_retries (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:97 sssd.conf.5.xml:260 -msgid "" -"Number of times services should attempt to reconnect in the event of a Data " -"Provider crash or restart before they give up" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:102 sssd.conf.5.xml:265 -msgid "Default: 3" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:107 -msgid "domains" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:110 -msgid "" -"A domain is a database containing user information. SSSD can use more " -"domains at the same time, but at least one must be configured or SSSD won't " -"start. This parameter described the list of domains in the order you want " -"them to be queried." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:120 -msgid "re_expression (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:123 -msgid "" -"Regular expression that describes how to parse the string containing user " -"name and domain into these components." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:127 -msgid "" -"Default: <quote>(?P<name>[^@]+)@?(?P<domain>[^@]*$)</quote> " -"which translates to \"the name is everything up to the <quote>@</quote> " -"sign, the domain everything after that\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:132 -msgid "" -"PLEASE NOTE: the support for non-unique named subpatterns is not available " -"on all platforms (e.g. RHEL5 and SLES10). Only platforms with libpcre " -"version 7 or higher can support non-unique named subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:139 -msgid "" -"PLEASE NOTE ALSO: older version of libpcre only support the Python syntax (?" -"P<name>) to label subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:146 -msgid "full_name_format (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:149 -msgid "" -"A <citerefentry> <refentrytitle>printf</refentrytitle> <manvolnum>3</" -"manvolnum> </citerefentry>-compatible format that describes how to translate " -"a (name, domain) tuple into a fully qualified name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:157 -msgid "Default: <quote>%1$s@%2$s</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:162 -msgid "try_inotify (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:165 -msgid "" -"SSSD monitors the state of resolv.conf to identify when it needs to update " -"its internal DNS resolver. By default, we will attempt to use inotify for " -"this, and will fall back to polling resolv.conf every five seconds if " -"inotify cannot be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:173 -msgid "" -"There are some limited situations where it is preferred that we should skip " -"even trying to use inotify. In these rare cases, this option should be set " -"to 'false'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:179 -msgid "" -"Default: true on platforms where inotify is supported. False on other " -"platforms." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:183 -msgid "" -"Note: this option will have no effect on platforms where inotify is " -"unavailable. On these platforms, polling will always be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:190 -msgid "krb5_rcache_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:193 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:197 -msgid "" -"This option accepts a special value __LIBKRB5_DEFAULTS__ that will instruct " -"SSSD to let libkrb5 decide the appropriate location for the replay cache." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:203 -msgid "" -"Default: Distribution-specific and specified at build-time. " -"(__LIBKRB5_DEFAULTS__ if not configured)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:63 -msgid "" -"Individual pieces of SSSD functionality are provided by special SSSD " -"services that are started and stopped together with SSSD. The services are " -"managed by a special service frequently called <quote>monitor</quote>. The " -"<quote>[sssd]</quote> section is used to configure the monitor as well as " -"some other important options like the identity domains. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:216 -msgid "SERVICES SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:218 -msgid "" -"Settings that can be used to configure different services are described in " -"this section. They should reside in the [<replaceable>$NAME</replaceable>] " -"section, for example, for NSS service, the section would be <quote>[nss]</" -"quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:225 -msgid "General service configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:227 -msgid "These options can be used to configure any service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:231 -msgid "debug_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:235 -msgid "debug_timestamps (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:238 -msgid "Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:241 sssd.conf.5.xml:376 sssd-ldap.5.xml:1328 -#: sssd-ldap.5.xml:1446 sssd-ipa.5.xml:206 sssd-ipa.5.xml:241 -msgid "Default: true" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:246 -msgid "debug_microseconds (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:249 -msgid "Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:252 sssd.conf.5.xml:641 sssd-ldap.5.xml:602 -#: sssd-ldap.5.xml:1260 sssd-ldap.5.xml:1397 sssd-ldap.5.xml:1795 -#: sssd-ipa.5.xml:123 sssd-ipa.5.xml:301 sssd-krb5.5.xml:235 -#: sssd-krb5.5.xml:269 sssd-krb5.5.xml:418 -msgid "Default: false" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:270 -msgid "command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:273 -msgid "" -"By default, the executable representing this service is called <command>sssd_" -"${service_name}</command>. This directive allows to change the executable " -"name for the service. In the vast majority of configurations, the default " -"values should suffice." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:281 -msgid "Default: <command>sssd_${service_name}</command>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:289 -msgid "NSS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:291 -msgid "" -"These options can be used to configure the Name Service Switch (NSS) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:296 -msgid "enum_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:299 -msgid "" -"How many seconds should nss_sss cache enumerations (requests for info about " -"all users)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:303 -msgid "Default: 120" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:308 -msgid "entry_cache_nowait_percentage (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:311 -msgid "" -"The entry cache can be set to automatically update entries in the background " -"if they are requested beyond a percentage of the entry_cache_timeout value " -"for the domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:317 -msgid "" -"For example, if the domain's entry_cache_timeout is set to 30s and " -"entry_cache_nowait_percentage is set to 50 (percent), entries that come in " -"after 15 seconds past the last cache update will be returned immediately, " -"but the SSSD will go and update the cache on its own, so that future " -"requests will not need to block waiting for a cache update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:327 -msgid "" -"Valid values for this option are 0-99 and represent a percentage of the " -"entry_cache_timeout for each domain. For performance reasons, this " -"percentage will never reduce the nowait timeout to less than 10 seconds. (0 " -"disables this feature)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:335 -msgid "Default: 50" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:340 -msgid "entry_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:343 -msgid "" -"Specifies for how many seconds nss_sss should cache negative cache hits " -"(that is, queries for invalid database entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:349 sssd.conf.5.xml:669 sssd-krb5.5.xml:223 -msgid "Default: 15" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:354 -msgid "filter_users, filter_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:357 -msgid "" -"Exclude certain users from being fetched from the sss NSS database. This is " -"particularly useful for system accounts. This option can also be set per-" -"domain or include fully-qualified names to filter only users from the " -"particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:364 -msgid "Default: root" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:369 -msgid "filter_users_in_groups (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:372 -msgid "" -"If you want filtered user still be group members set this option to false." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:381 -msgid "override_homedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:390 sssd-krb5.5.xml:166 -msgid "%u" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:391 sssd-krb5.5.xml:167 -msgid "login name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:394 sssd-krb5.5.xml:170 -msgid "%U" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:395 -msgid "UID number" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:398 sssd-krb5.5.xml:188 -msgid "%d" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:399 -msgid "domain name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:402 -msgid "%f" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:403 -msgid "fully qualified user name (user@domain)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:406 sssd-krb5.5.xml:200 -msgid "%%" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:407 sssd-krb5.5.xml:201 -msgid "a literal '%'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:384 -msgid "" -"Override the user's home directory. You can either provide an absolute value " -"or a template. In the template, the following sequences are substituted: " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:413 -msgid "This option can also be set per-domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:418 -msgid "allowed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:421 -msgid "" -"Restrict user shell to one of the listed values. The order of evaluation is:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:424 -msgid "1. If the shell is present in <quote>/etc/shells</quote>, it is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:428 -msgid "" -"2. If the shell is in the allowed_shells list but not in <quote>/etc/shells</" -"quote>, use the value of the shell_fallback parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:433 -msgid "" -"3. If the shell is not in the allowed_shells list and not in <quote>/etc/" -"shells</quote>, a nologin shell is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:438 -msgid "An empty string for shell is passed as-is to libc." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:441 -msgid "" -"The <quote>/etc/shells</quote> is only read on SSSD start up, which means " -"that a restart of the SSSD is required in case a new shell is installed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:445 -msgid "Default: Not set. The user shell is automatically used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:450 -msgid "vetoed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:453 -msgid "Replace any instance of these shells with the shell_fallback" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:458 -msgid "shell_fallback (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:461 -msgid "" -"The default shell to use if an allowed shell is not installed on the machine." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:465 -msgid "Default: /bin/sh" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:472 -msgid "PAM configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:474 -msgid "" -"These options can be used to configure the Pluggable Authentication Module " -"(PAM) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:479 -msgid "offline_credentials_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:482 -msgid "" -"If the authentication provider is offline, how long should we allow cached " -"logins (in days since the last successful online login)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:487 sssd.conf.5.xml:500 -msgid "Default: 0 (No limit)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:493 -msgid "offline_failed_login_attempts (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:496 -msgid "" -"If the authentication provider is offline, how many failed login attempts " -"are allowed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:506 -msgid "offline_failed_login_delay (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:509 -msgid "" -"The time in minutes which has to pass after offline_failed_login_attempts " -"has been reached before a new login attempt is possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:514 -msgid "" -"If set to 0 the user cannot authenticate offline if " -"offline_failed_login_attempts has been reached. Only a successful online " -"authentication can enable offline authentication again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:520 sssd.conf.5.xml:573 sssd.conf.5.xml:1093 -msgid "Default: 5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:526 -msgid "pam_verbosity (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:529 -msgid "" -"Controls what kind of messages are shown to the user during authentication. " -"The higher the number to more messages are displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:534 -msgid "Currently sssd supports the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:537 -msgid "<emphasis>0</emphasis>: do not show any message" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:540 -msgid "<emphasis>1</emphasis>: show only important messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:544 -msgid "<emphasis>2</emphasis>: show informational messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:547 -msgid "<emphasis>3</emphasis>: show all messages and debug information" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:551 sssd.8.xml:63 -msgid "Default: 1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:556 -msgid "pam_id_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:559 -msgid "" -"For any PAM request while SSSD is online, the SSSD will attempt to " -"immediately update the cached identity information for the user in order to " -"ensure that authentication takes place with the latest information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:565 -msgid "" -"A complete PAM conversation may perform multiple PAM requests, such as " -"account management and session opening. This option controls (on a per-" -"client-application basis) how long (in seconds) we can cache the identity " -"information to avoid excessive round-trips to the identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:579 -msgid "pam_pwd_expiration_warning (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:582 -msgid "Display a warning N days before the password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:585 -msgid "" -"Please note that the backend server has to provide information about the " -"expiration time of the password. If this information is missing, sssd " -"cannot display a warning." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:591 -msgid "Default: 7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:599 -msgid "SUDO configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:601 -msgid "These options can be used to configure the sudo service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:608 -msgid "sudo_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:611 -msgid "" -"For any sudo request that comes while SSSD is online, the SSSD will attempt " -"to update the cached rules in order to ensure that sudo has the latest " -"ruleset." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:617 -msgid "" -"The user may, however, run a couple of sudo commands successively, which " -"would trigger multiple LDAP requests. In order to speed up this use-case, " -"the sudo service maintains an in-memory cache that would be used for " -"performing fast replies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:624 -msgid "" -"This option controls how long (in seconds) can the sudo service cache rules " -"for a user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:628 -msgid "Default: 180" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:633 -msgid "sudo_timed (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:636 -msgid "" -"Whether or not to evaluate the sudoNotBefore and sudoNotAfter attributes " -"that implement time-dependent sudoers entries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:649 -msgid "AUTOFS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:651 -msgid "These options can be used to configure the autofs service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:659 -msgid "autofs_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:662 -msgid "" -"Specifies for how many seconds should the autofs responder negative cache " -"hits (that is, queries for invalid map entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:679 -msgid "DOMAIN SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:686 -msgid "min_id,max_id (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:689 -msgid "" -"UID and GID limits for the domain. If a domain contains an entry that is " -"outside these limits, it is ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:694 -msgid "" -"For users, this affects the primary GID limit. The user will not be returned " -"to NSS if either the UID or the primary GID is outside the range. For non-" -"primary group memberships, those that are in range will be reported as " -"expected." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:701 -msgid "Default: 1 for min_id, 0 (no limit) for max_id" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:707 -msgid "timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:710 -msgid "" -"Timeout in seconds between heartbeats for this domain. This is used to " -"ensure that the backend process is alive and capable of answering requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:715 sssd-ldap.5.xml:1131 -msgid "Default: 10" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:721 -msgid "enumerate (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:724 -msgid "" -"Determines if a domain can be enumerated. This parameter can have one of the " -"following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:728 -msgid "TRUE = Users and groups are enumerated" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:731 -msgid "FALSE = No enumerations for this domain" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:734 sssd.conf.5.xml:839 sssd.conf.5.xml:893 -msgid "Default: FALSE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:737 -msgid "" -"Note: Enabling enumeration has a moderate performance impact on SSSD while " -"enumeration is running. It may take up to several minutes after SSSD startup " -"to fully complete enumerations. During this time, individual requests for " -"information will go directly to LDAP, though it may be slow, due to the " -"heavy enumeration processing." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:747 -msgid "" -"While the first enumeration is running, requests for the complete user or " -"group lists may return no results until it completes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:752 -msgid "" -"Further, enabling enumeration may increase the time necessary to detect " -"network disconnection, as longer timeouts are required to ensure that " -"enumeration lookups are completed successfully. For more information, refer " -"to the man pages for the specific id_provider in use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:763 -msgid "entry_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:766 -msgid "" -"How many seconds should nss_sss consider entries valid before asking the " -"backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:770 -msgid "Default: 5400" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:776 -msgid "entry_cache_user_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:779 -msgid "" -"How many seconds should nss_sss consider user entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:783 sssd.conf.5.xml:796 sssd.conf.5.xml:809 -#: sssd.conf.5.xml:822 -msgid "Default: entry_cache_timeout" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:789 -msgid "entry_cache_group_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:792 -msgid "" -"How many seconds should nss_sss consider group entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:802 -msgid "entry_cache_netgroup_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:805 -msgid "" -"How many seconds should nss_sss consider netgroup entries valid before " -"asking the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:815 -msgid "entry_cache_service_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:818 -msgid "" -"How many seconds should nss_sss consider service entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:828 -msgid "cache_credentials (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:831 -msgid "Determines if user credentials are also cached in the local LDB cache" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:835 -msgid "User credentials are stored in a SHA512 hash, not in plaintext" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:844 -msgid "account_cache_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:847 -msgid "" -"Number of days entries are left in cache after last successful login before " -"being removed during a cleanup of the cache. 0 means keep forever. The " -"value of this parameter must be greater than or equal to " -"offline_credentials_expiration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:854 -msgid "Default: 0 (unlimited)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:860 -msgid "id_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:863 -msgid "The Data Provider identity backend to use for this domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:867 -msgid "Supported backends:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:870 -msgid "proxy: Support a legacy NSS provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:873 -msgid "local: SSSD internal local provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:876 -msgid "ldap: LDAP provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:882 -msgid "use_fully_qualified_names (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:885 -msgid "" -"If set to TRUE, all requests to this domain must use fully qualified names. " -"For example, if used in LOCAL domain that contains a \"test\" user, " -"<command>getent passwd test</command> wouldn't find the user while " -"<command>getent passwd test@LOCAL</command> would." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:898 -msgid "auth_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:901 -msgid "" -"The authentication provider used for the domain. Supported auth providers " -"are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:905 -msgid "" -"<quote>ldap</quote> for native LDAP authentication. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:912 -msgid "" -"<quote>krb5</quote> for Kerberos authentication. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:919 -msgid "" -"<quote>proxy</quote> for relaying authentication to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:922 -msgid "<quote>none</quote> disables authentication explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:925 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"authentication requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:931 -msgid "access_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:934 -msgid "" -"The access control provider used for the domain. There are two built-in " -"access providers (in addition to any included in installed backends) " -"Internal special providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:940 -msgid "<quote>permit</quote> always allow access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:943 -msgid "<quote>deny</quote> always deny access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:946 -msgid "" -"<quote>simple</quote> access control based on access or deny lists. See " -"<citerefentry> <refentrytitle>sssd-simple</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry> for more information on configuring the simple " -"access module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:953 -msgid "Default: <quote>permit</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:958 -msgid "chpass_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:961 -msgid "" -"The provider which should handle change password operations for the domain. " -"Supported change password providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:966 -msgid "" -"<quote>ipa</quote> to change a password stored in an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:974 -msgid "" -"<quote>ldap</quote> to change a password stored in a LDAP server. See " -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:982 -msgid "" -"<quote>krb5</quote> to change the Kerberos password. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:990 -msgid "" -"<quote>proxy</quote> for relaying password changes to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:994 -msgid "<quote>none</quote> disallows password changes explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:997 -msgid "" -"Default: <quote>auth_provider</quote> is used if it is set and can handle " -"change password requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1004 -msgid "sudo_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1010 -msgid "The SUDO provider used for the domain. Supported SUDO providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1014 -msgid "" -"<quote>ldap</quote> for rules stored in LDAP. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1021 -msgid "<quote>none</quote> disables SUDO explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1024 -msgid "Default: The value of <quote>id_provider</quote> is used if it is set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1030 -msgid "session_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1033 -msgid "" -"The provider which should handle loading of session settings. Supported " -"session providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1038 -msgid "" -"<quote>ipa</quote> to load session settings from an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1046 -msgid "<quote>none</quote> disallows fetching session settings explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1049 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"session loading requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1056 -msgid "lookup_family_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1059 -msgid "" -"Provides the ability to select preferred address family to use when " -"performing DNS lookups." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1063 -msgid "Supported values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1066 -msgid "ipv4_first: Try looking up IPv4 address, if that fails, try IPv6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1069 -msgid "ipv4_only: Only attempt to resolve hostnames to IPv4 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1072 -msgid "ipv6_first: Try looking up IPv6 address, if that fails, try IPv4" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1075 -msgid "ipv6_only: Only attempt to resolve hostnames to IPv6 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1078 -msgid "Default: ipv4_first" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1084 -msgid "dns_resolver_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1087 -msgid "" -"Defines the amount of time (in seconds) to wait for a reply from the DNS " -"resolver before assuming that it is unreachable. If this timeout is reached, " -"the domain will continue to operate in offline mode." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1099 -msgid "dns_discovery_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1102 -msgid "" -"If service discovery is used in the back end, specifies the domain part of " -"the service discovery DNS query." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1106 -msgid "Default: Use the domain part of machine's hostname" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1112 -msgid "override_gid (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1115 -msgid "Override the primary GID value with the one specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1121 -msgid "case_sensitive (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1124 -msgid "" -"Treat user and group names as case sensitive. At the moment, this option is " -"not supported in the local provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1129 -msgid "Default: True" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:681 -msgid "" -"These configuration options can be present in a domain configuration " -"section, that is, in a section called <quote>[domain/<replaceable>NAME</" -"replaceable>]</quote> <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1141 -msgid "proxy_pam_target (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1144 -msgid "The proxy target PAM proxies to." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1147 -msgid "" -"Default: not set by default, you have to take an existing pam configuration " -"or create a new one and add the service name here." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1155 -msgid "proxy_lib_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1158 -msgid "" -"The name of the NSS library to use in proxy domains. The NSS functions " -"searched for in the library are in the form of _nss_$(libName)_$(function), " -"for example _nss_files_getpwent." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1137 -msgid "" -"Options valid for proxy domains. <placeholder type=\"variablelist\" id=" -"\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:1170 -msgid "The local domain section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:1172 -msgid "" -"This section contains settings for domain that stores users and groups in " -"SSSD native database, that is, a domain that uses " -"<replaceable>id_provider=local</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1179 -msgid "default_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1182 -msgid "The default shell for users created with SSSD userspace tools." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1186 -msgid "Default: <filename>/bin/bash</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1191 -msgid "base_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1194 -msgid "" -"The tools append the login name to <replaceable>base_directory</replaceable> " -"and use that as the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1199 -msgid "Default: <filename>/home</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1204 -msgid "create_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1207 -msgid "" -"Indicate if a home directory should be created by default for new users. " -"Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1211 sssd.conf.5.xml:1223 -msgid "Default: TRUE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1216 -msgid "remove_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1219 -msgid "" -"Indicate if a home directory should be removed by default for deleted " -"users. Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1228 -msgid "homedir_umask (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1231 -msgid "" -"Used by <citerefentry> <refentrytitle>sss_useradd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry> to specify the default permissions " -"on a newly created home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1239 -msgid "Default: 077" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1244 -msgid "skel_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1247 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<citerefentry> <refentrytitle>sss_useradd</refentrytitle> <manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1257 -msgid "Default: <filename>/etc/skel</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1262 -msgid "mail_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1265 -msgid "" -"The mail spool directory. This is needed to manipulate the mailbox when its " -"corresponding user account is modified or deleted. If not specified, a " -"default value is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1272 -msgid "Default: <filename>/var/mail</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1277 -msgid "userdel_cmd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1280 -msgid "" -"The command that is run after a user is removed. The command us passed the " -"username of the user being removed as the first and only parameter. The " -"return code of the command is not taken into account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1286 -msgid "Default: None, no command is run" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:1296 sssd-ldap.5.xml:2064 sssd-simple.5.xml:126 -#: sssd-ipa.5.xml:544 sssd-krb5.5.xml:432 -msgid "EXAMPLE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:1302 -#, no-wrap -msgid "" -"[sssd]\n" -"domains = LDAP\n" -"services = nss, pam\n" -"config_file_version = 2\n" -"\n" -"[nss]\n" -"filter_groups = root\n" -"filter_users = root\n" -"\n" -"[pam]\n" -"\n" -"[domain/LDAP]\n" -"id_provider = ldap\n" -"ldap_uri = ldap://ldap.example.com\n" -"ldap_search_base = dc=example,dc=com\n" -"\n" -"auth_provider = krb5\n" -"krb5_server = kerberos.example.com\n" -"krb5_realm = EXAMPLE.COM\n" -"cache_credentials = true\n" -"\n" -"min_id = 10000\n" -"max_id = 20000\n" -"enumerate = False\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1298 -msgid "" -"The following example shows a typical SSSD config. It does not describe " -"configuration of the domains themselves - refer to documentation on " -"configuring domains for more details. <placeholder type=\"programlisting\" " -"id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1333 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>pam_sss</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ldap.5.xml:10 sssd-ldap.5.xml:16 -msgid "sssd-ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:23 -msgid "" -"This manual page describes the configuration of LDAP domains for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. Refer to the <quote>FILE FORMAT</quote> section of the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for detailed syntax information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:35 -msgid "You can configure SSSD to use more than one LDAP domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:38 -msgid "" -"LDAP back end supports id, auth, access and chpass providers. If you want to " -"authenticate against an LDAP server either TLS/SSL or LDAPS is required. " -"<command>sssd</command> <emphasis>does not</emphasis> support authentication " -"over an unencrypted channel. If the LDAP server is used only as an identity " -"provider, an encrypted channel is not needed. Please refer to " -"<quote>ldap_access_filter</quote> config option for more information about " -"using LDAP as an access provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:49 sssd-simple.5.xml:69 sssd-ipa.5.xml:64 -#: sssd-krb5.5.xml:63 -msgid "CONFIGURATION OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:60 -msgid "ldap_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:63 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference. Refer to the <quote>FAILOVER</" -"quote> section for more information on failover and server redundancy. If " -"not specified, service discovery is enabled. For more information, refer to " -"the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:70 -msgid "The format of the URI must match the format defined in RFC 2732:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:73 -msgid "ldap[s]://<host>[:port]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:76 -msgid "" -"For explicit IPv6 addresses, <host> must be enclosed in brackets []" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:79 -msgid "example: ldap://[fc00::126:25]:389" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:85 -msgid "ldap_chpass_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:88 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference to change the password of a user. " -"Refer to the <quote>FAILOVER</quote> section for more information on " -"failover and server redundancy." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:95 -msgid "To enable service discovery ldap_chpass_dns_service_name must be set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:99 -msgid "Default: empty, i.e. ldap_uri is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:105 -msgid "ldap_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:108 -msgid "The default base DN to use for performing LDAP user operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:112 -msgid "" -"Starting with SSSD 1.7.0, SSSD supports multiple search bases using the " -"syntax:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:116 -msgid "search_base[?scope?[filter][?search_base?scope?[filter]]*]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:119 -msgid "The scope can be one of \"base\", \"onelevel\" or \"subtree\"." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:122 -msgid "" -"The filter must be a valid LDAP search filter as specified by http://www." -"ietf.org/rfc/rfc2254.txt" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:126 -msgid "Examples:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:129 -msgid "" -"ldap_search_base = dc=example,dc=com (which is equivalent to) " -"ldap_search_base = dc=example,dc=com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:134 -msgid "" -"ldap_search_base = cn=host_specific,dc=example,dc=com?subtree?" -"(host=thishost)?dc=example.com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:137 -msgid "" -"Note: It is unsupported to have multiple search bases which reference " -"identically-named objects (for example, groups with the same name in two " -"different search bases). This will lead to unpredictable behavior on client " -"machines." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:144 -msgid "" -"Default: If not set, the value of the defaultNamingContext or namingContexts " -"attribute from the RootDSE of the LDAP server is used. If " -"defaultNamingContext does not exists or has an empty value namingContexts is " -"used. The namingContexts attribute must have a single value with the DN of " -"the search base of the LDAP server to make this work. Multiple values are " -"are not supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:158 -msgid "ldap_schema (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:161 -msgid "" -"Specifies the Schema Type in use on the target LDAP server. Depending on " -"the selected schema, the default attribute names retrieved from the servers " -"may vary. The way that some attributes are handled may also differ. Three " -"schema types are currently supported: rfc2307 rfc2307bis IPA The main " -"difference between these schema types is how group memberships are recorded " -"in the server. With rfc2307, group members are listed by name in the " -"<emphasis>memberUid</emphasis> attribute. With rfc2307bis and IPA, group " -"members are listed by DN and stored in the <emphasis>member</emphasis> " -"attribute." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:180 -msgid "Default: rfc2307" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:186 -msgid "ldap_default_bind_dn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:189 -msgid "The default bind DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:196 -msgid "ldap_default_authtok_type (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:199 -msgid "The type of the authentication token of the default bind DN." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:203 -msgid "The two mechanisms currently supported are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:206 -msgid "password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:209 -msgid "obfuscated_password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:212 -msgid "Default: password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:218 -msgid "ldap_default_authtok (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:221 -msgid "" -"The authentication token of the default bind DN. Only clear text passwords " -"are currently supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:228 -msgid "ldap_user_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:231 -msgid "The object class of a user entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:234 -msgid "Default: posixAccount" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:240 -msgid "ldap_user_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:243 -msgid "The LDAP attribute that corresponds to the user's login name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:247 -msgid "Default: uid" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:253 -msgid "ldap_user_uid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:256 -msgid "The LDAP attribute that corresponds to the user's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:260 -msgid "Default: uidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:266 -msgid "ldap_user_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:269 -msgid "The LDAP attribute that corresponds to the user's primary group id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:273 sssd-ldap.5.xml:740 -msgid "Default: gidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:279 -msgid "ldap_user_gecos (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:282 -msgid "The LDAP attribute that corresponds to the user's gecos field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:286 -msgid "Default: gecos" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:292 -msgid "ldap_user_home_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:295 -msgid "The LDAP attribute that contains the name of the user's home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:299 -msgid "Default: homeDirectory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:305 -msgid "ldap_user_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:308 -msgid "The LDAP attribute that contains the path to the user's default shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:312 -msgid "Default: loginShell" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:318 -msgid "ldap_user_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:321 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP user object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:325 sssd-ldap.5.xml:766 sssd-ldap.5.xml:878 -msgid "Default: nsUniqueId" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:331 -msgid "ldap_user_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:334 sssd-ldap.5.xml:775 sssd-ldap.5.xml:887 -msgid "" -"The LDAP attribute that contains timestamp of the last modification of the " -"parent object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:338 sssd-ldap.5.xml:779 sssd-ldap.5.xml:894 -msgid "Default: modifyTimestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:344 -msgid "ldap_user_shadow_last_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:347 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (date of " -"the last password change)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:357 -msgid "Default: shadowLastChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:363 -msgid "ldap_user_shadow_min (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:366 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (minimum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:375 -msgid "Default: shadowMin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:381 -msgid "ldap_user_shadow_max (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:384 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (maximum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:393 -msgid "Default: shadowMax" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:399 -msgid "ldap_user_shadow_warning (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:402 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password warning period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:412 -msgid "Default: shadowWarning" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:418 -msgid "ldap_user_shadow_inactive (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:421 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password inactivity period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:431 -msgid "Default: shadowInactive" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:437 -msgid "ldap_user_shadow_expire (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:440 -msgid "" -"When using ldap_pwd_policy=shadow or ldap_account_expire_policy=shadow, this " -"parameter contains the name of an LDAP attribute corresponding to its " -"<citerefentry> <refentrytitle>shadow</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> counterpart (account expiration date)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:450 -msgid "Default: shadowExpire" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:456 -msgid "ldap_user_krb_last_pwd_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:459 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time of last password change in " -"kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:465 -msgid "Default: krbLastPwdChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:471 -msgid "ldap_user_krb_password_expiration (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:474 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time when current password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:480 -msgid "Default: krbPasswordExpiration" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:486 -msgid "ldap_user_ad_account_expires (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:489 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the expiration time of the account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:494 -msgid "Default: accountExpires" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:500 -msgid "ldap_user_ad_user_account_control (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:503 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the user account control bit field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:508 -msgid "Default: userAccountControl" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:514 -msgid "ldap_ns_account_lock (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:517 -msgid "" -"When using ldap_account_expire_policy=rhds or equivalent, this parameter " -"determines if access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:522 -msgid "Default: nsAccountLock" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:528 -msgid "ldap_user_nds_login_disabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:531 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines if " -"access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:535 sssd-ldap.5.xml:549 -msgid "Default: loginDisabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:541 -msgid "ldap_user_nds_login_expiration_time (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:544 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines until " -"which date access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:555 -msgid "ldap_user_nds_login_allowed_time_map (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:558 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines the " -"hours of a day in a week when access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:563 -msgid "Default: loginAllowedTimeMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:569 -msgid "ldap_user_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:572 -msgid "" -"The LDAP attribute that contains the user's Kerberos User Principal Name " -"(UPN)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:576 -msgid "Default: krbPrincipalName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:582 -msgid "ldap_user_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:585 -msgid "The LDAP attribute that contains the user's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:592 -msgid "ldap_force_upper_case_realm (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:595 -msgid "" -"Some directory servers, for example Active Directory, might deliver the " -"realm part of the UPN in lower case, which might cause the authentication to " -"fail. Set this option to a non-zero value if you want to use an upper-case " -"realm." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:608 -msgid "ldap_enumeration_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:611 -msgid "" -"Specifies how many seconds SSSD has to wait before refreshing its cache of " -"enumerated records." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:616 sssd-ldap.5.xml:1808 -msgid "Default: 300" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:622 -msgid "ldap_purge_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:625 -msgid "" -"Determine how often to check the cache for inactive entries (such as groups " -"with no members and users who have never logged in) and remove them to save " -"space." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:631 -msgid "Setting this option to zero will disable the cache cleanup operation." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:635 -msgid "Default: 10800 (12 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:641 -msgid "ldap_user_fullname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:644 -msgid "The LDAP attribute that corresponds to the user's full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:648 sssd-ldap.5.xml:727 sssd-ldap.5.xml:828 -#: sssd-ldap.5.xml:919 sssd-ldap.5.xml:1663 sssd-ldap.5.xml:1881 -#: sssd-ipa.5.xml:422 -msgid "Default: cn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:654 -msgid "ldap_user_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:657 -msgid "The LDAP attribute that lists the user's group memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:661 sssd-ipa.5.xml:326 -msgid "Default: memberOf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:667 -msgid "ldap_user_authorized_service (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:670 -msgid "" -"If access_provider=ldap and ldap_access_order=authorized_service, SSSD will " -"use the presence of the authorizedService attribute in the user's LDAP entry " -"to determine access privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:677 -msgid "" -"An explicit deny (!svc) is resolved first. Second, SSSD searches for " -"explicit allow (svc) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:682 -msgid "Default: authorizedService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:688 -msgid "ldap_user_authorized_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:691 -msgid "" -"If access_provider=ldap and ldap_access_order=host, SSSD will use the " -"presence of the host attribute in the user's LDAP entry to determine access " -"privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:697 -msgid "" -"An explicit deny (!host) is resolved first. Second, SSSD searches for " -"explicit allow (host) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:702 -msgid "Default: host" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:708 -msgid "ldap_group_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:711 -msgid "The object class of a group entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:714 -msgid "Default: posixGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:720 -msgid "ldap_group_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:723 -msgid "The LDAP attribute that corresponds to the group name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:733 -msgid "ldap_group_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:736 -msgid "The LDAP attribute that corresponds to the group's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:746 -msgid "ldap_group_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:749 -msgid "The LDAP attribute that contains the names of the group's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:753 -msgid "Default: memberuid (rfc2307) / member (rfc2307bis)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:759 -msgid "ldap_group_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:762 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP group object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:772 -msgid "ldap_group_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:785 -msgid "ldap_group_nesting_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:788 -msgid "" -"If ldap_schema is set to a schema format that supports nested groups (e.g. " -"RFC2307bis), then this option controls how many levels of nesting SSSD will " -"follow. This option has no effect on the RFC2307 schema." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:795 -msgid "Default: 2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:801 -msgid "ldap_netgroup_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:804 -msgid "The object class of a netgroup entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:807 -msgid "In IPA provider, ipa_netgroup_object_class should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:811 -msgid "Default: nisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:817 -msgid "ldap_netgroup_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:820 -msgid "The LDAP attribute that corresponds to the netgroup name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:824 -msgid "In IPA provider, ipa_netgroup_name should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:834 -msgid "ldap_netgroup_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:837 -msgid "The LDAP attribute that contains the names of the netgroup's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:841 -msgid "In IPA provider, ipa_netgroup_member should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:845 -msgid "Default: memberNisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:851 -msgid "ldap_netgroup_triple (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:854 -msgid "" -"The LDAP attribute that contains the (host, user, domain) netgroup triples." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:858 sssd-ldap.5.xml:891 -msgid "This option is not available in IPA provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:861 -msgid "Default: nisNetgroupTriple" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:867 -msgid "ldap_netgroup_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:870 -msgid "" -"The LDAP attribute that contains the UUID/GUID of an LDAP netgroup object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:874 -msgid "In IPA provider, ipa_netgroup_uuid should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:884 -msgid "ldap_netgroup_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:900 -msgid "ldap_service_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:903 -msgid "The object class of a service entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:906 -msgid "Default: ipService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:912 -msgid "ldap_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:915 -msgid "" -"The LDAP attribute that contains the name of service attributes and their " -"aliases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:925 -msgid "ldap_service_port (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:928 -msgid "The LDAP attribute that contains the port managed by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:932 -msgid "Default: ipServicePort" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:938 -msgid "ldap_service_proto (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:941 -msgid "" -"The LDAP attribute that contains the protocols understood by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:945 -msgid "Default: ipServiceProtocol" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:951 -msgid "ldap_service_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:954 -msgid "An optional base DN to restrict service searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:958 sssd-ldap.5.xml:1918 sssd-ldap.5.xml:1937 -#: sssd-ldap.5.xml:1956 sssd-ldap.5.xml:2019 sssd-ldap.5.xml:2041 -#: sssd-ipa.5.xml:163 sssd-ipa.5.xml:187 -msgid "" -"See <quote>ldap_search_base</quote> for information about configuring " -"multiple search bases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:963 sssd-ldap.5.xml:1923 sssd-ldap.5.xml:1942 -#: sssd-ldap.5.xml:1961 sssd-ldap.5.xml:2024 sssd-ldap.5.xml:2046 -#: sssd-ipa.5.xml:173 sssd-ipa.5.xml:192 -msgid "Default: the value of <emphasis>ldap_search_base</emphasis>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:970 -msgid "ldap_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:973 -msgid "" -"Specifies the timeout (in seconds) that ldap searches are allowed to run " -"before they are cancelled and cached results are returned (and offline mode " -"is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:979 -msgid "" -"Note: this option is subject to change in future versions of the SSSD. It " -"will likely be replaced at some point by a series of timeouts for specific " -"lookup types." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:985 sssd-ldap.5.xml:1027 sssd-ldap.5.xml:1042 -msgid "Default: 6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:991 -msgid "ldap_enumeration_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:994 -msgid "" -"Specifies the timeout (in seconds) that ldap searches for user and group " -"enumerations are allowed to run before they are cancelled and cached results " -"are returned (and offline mode is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1001 -msgid "Default: 60" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1007 -msgid "ldap_network_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1010 -msgid "" -"Specifies the timeout (in seconds) after which the <citerefentry> " -"<refentrytitle>poll</refentrytitle> <manvolnum>2</manvolnum> </citerefentry>/" -"<citerefentry> <refentrytitle>select</refentrytitle> <manvolnum>2</" -"manvolnum> </citerefentry> following a <citerefentry> " -"<refentrytitle>connect</refentrytitle> <manvolnum>2</manvolnum> </" -"citerefentry> returns in case of no activity." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1033 -msgid "ldap_opt_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1036 -msgid "" -"Specifies a timeout (in seconds) after which calls to synchronous LDAP APIs " -"will abort if no response is received. Also controls the timeout when " -"communicating with the KDC in case of SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1048 -msgid "ldap_connection_expire_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1051 -msgid "" -"Specifies a timeout (in seconds) that a connection to an LDAP server will be " -"maintained. After this time, the connection will be re-established. If used " -"in parallel with SASL/GSSAPI, the sooner of the two values (this value vs. " -"the TGT lifetime) will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1059 -msgid "Default: 900 (15 minutes)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1065 -msgid "ldap_page_size (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1068 -msgid "" -"Specify the number of records to retrieve from LDAP in a single request. " -"Some LDAP servers enforce a maximum limit per-request." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1073 -msgid "Default: 1000" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1079 -msgid "ldap_disable_paging" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1082 -msgid "" -"Disable the LDAP paging control. This option should be used if the LDAP " -"server reports that it supports the LDAP paging control in its RootDSE but " -"it is not enabled or does not behave properly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1088 -msgid "" -"Example: OpenLDAP servers with the paging control module installed on the " -"server but not enabled will report it in the RootDSE but be unable to use it." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1094 -msgid "" -"Example: 389 DS has a bug where it can only support a one paging control at " -"a time on a single connection. On busy clients, this can result in some " -"requests being denied." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1103 -msgid "ldap_deref_threshold (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1106 -msgid "" -"Specify the number of group members that must be missing from the internal " -"cache in order to trigger a dereference lookup. If less members are missing, " -"they are looked up individually." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1112 -msgid "" -"You can turn off dereference lookups completely by setting the value to 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1116 -msgid "" -"A dereference lookup is a means of fetching all group members in a single " -"LDAP call. Different LDAP servers may implement different dereference " -"methods. The currently supported servers are 389/RHDS, OpenLDAP and Active " -"Directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1124 -msgid "" -"<emphasis>Note:</emphasis> If any of the search bases specifies a search " -"filter, then the dereference lookup performance enhancement will be disabled " -"regardless of this setting." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1137 -msgid "ldap_tls_reqcert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1140 -msgid "" -"Specifies what checks to perform on server certificates in a TLS session, if " -"any. It can be specified as one of the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1146 -msgid "" -"<emphasis>never</emphasis> = The client will not request or check any server " -"certificate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1150 -msgid "" -"<emphasis>allow</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, it will be ignored and the session proceeds normally." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1157 -msgid "" -"<emphasis>try</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, the session is immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1163 -msgid "" -"<emphasis>demand</emphasis> = The server certificate is requested. If no " -"certificate is provided, or a bad certificate is provided, the session is " -"immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1169 -msgid "<emphasis>hard</emphasis> = Same as <quote>demand</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1173 -msgid "Default: hard" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1179 -msgid "ldap_tls_cacert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1182 -msgid "" -"Specifies the file that contains certificates for all of the Certificate " -"Authorities that <command>sssd</command> will recognize." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1187 sssd-ldap.5.xml:1205 sssd-ldap.5.xml:1246 -msgid "" -"Default: use OpenLDAP defaults, typically in <filename>/etc/openldap/ldap." -"conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1194 -msgid "ldap_tls_cacertdir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1197 -msgid "" -"Specifies the path of a directory that contains Certificate Authority " -"certificates in separate individual files. Typically the file names need to " -"be the hash of the certificate followed by '.0'. If available, " -"<command>cacertdir_rehash</command> can be used to create the correct names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1212 -msgid "ldap_tls_cert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1215 -msgid "Specifies the file that contains the certificate for the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1219 sssd-ldap.5.xml:1231 sssd-ldap.5.xml:1979 -#: sssd-ldap.5.xml:2006 sssd-krb5.5.xml:359 -msgid "Default: not set" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1225 -msgid "ldap_tls_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1228 -msgid "Specifies the file that contains the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1237 -msgid "ldap_tls_cipher_suite (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1240 -msgid "" -"Specifies acceptable cipher suites. Typically this is a colon sperated " -"list. See <citerefentry><refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> for format." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1253 -msgid "ldap_id_use_start_tls (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1256 -msgid "" -"Specifies that the id_provider connection must also use <systemitem class=" -"\"protocol\">tls</systemitem> to protect the channel." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1266 -msgid "ldap_sasl_mech (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1269 -msgid "" -"Specify the SASL mechanism to use. Currently only GSSAPI is tested and " -"supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1273 sssd-ldap.5.xml:1428 -msgid "Default: none" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1279 -msgid "ldap_sasl_authid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1282 -msgid "" -"Specify the SASL authorization id to use. When GSSAPI is used, this " -"represents the Kerberos principal used for authentication to the directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1287 -msgid "Default: host/machine.fqdn@REALM" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1293 -msgid "ldap_sasl_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1296 -msgid "" -"If set to true, the LDAP library would perform a reverse lookup to " -"canonicalize the host name during a SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1301 -msgid "Default: false;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1307 -msgid "ldap_krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1310 -msgid "Specify the keytab to use when using SASL/GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1313 -msgid "Default: System keytab, normally <filename>/etc/krb5.keytab</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1319 -msgid "ldap_krb5_init_creds (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1322 -msgid "" -"Specifies that the id_provider should init Kerberos credentials (TGT). This " -"action is performed only if SASL is used and the mechanism selected is " -"GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1334 -msgid "ldap_krb5_ticket_lifetime (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1337 -msgid "Specifies the lifetime in seconds of the TGT if GSSAPI is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1341 -msgid "Default: 86400 (24 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1347 sssd-krb5.5.xml:74 -msgid "krb5_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1350 sssd-krb5.5.xml:77 -msgid "" -"Specifies the comma-separated list of IP addresses or hostnames of the " -"Kerberos servers to which SSSD should connect in the order of preference. " -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. An optional port number (preceded by a " -"colon) may be appended to the addresses or hostnames. If empty, service " -"discovery is enabled - for more information, refer to the <quote>SERVICE " -"DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1362 sssd-krb5.5.xml:89 -msgid "" -"When using service discovery for KDC or kpasswd servers, SSSD first searches " -"for DNS entries that specify _udp as the protocol and falls back to _tcp if " -"none are found." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1367 sssd-krb5.5.xml:94 -msgid "" -"This option was named <quote>krb5_kdcip</quote> in earlier releases of SSSD. " -"While the legacy name is recognized for the time being, users are advised to " -"migrate their config files to use <quote>krb5_server</quote> instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1376 sssd-ipa.5.xml:216 sssd-krb5.5.xml:103 -msgid "krb5_realm (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1379 -msgid "Specify the Kerberos REALM (for SASL/GSSAPI auth)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1382 -msgid "Default: System defaults, see <filename>/etc/krb5.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1388 sssd-ipa.5.xml:231 sssd-krb5.5.xml:409 -msgid "krb5_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1391 -msgid "" -"Specifies if the host principal should be canonicalized when connecting to " -"LDAP server. This feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1403 -msgid "ldap_pwd_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1406 -msgid "" -"Select the policy to evaluate the password expiration on the client side. " -"The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1411 -msgid "" -"<emphasis>none</emphasis> - No evaluation on the client side. This option " -"cannot disable server-side password policies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1416 -msgid "" -"<emphasis>shadow</emphasis> - Use <citerefentry><refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum></citerefentry> style attributes to " -"evaluate if the password has expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1422 -msgid "" -"<emphasis>mit_kerberos</emphasis> - Use the attributes used by MIT Kerberos " -"to determine if the password has expired. Use chpass_provider=krb5 to update " -"these attributes when the password is changed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1434 -msgid "ldap_referrals (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1437 -msgid "Specifies whether automatic referral chasing should be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1441 -msgid "" -"Please note that sssd only supports referral chasing when it is compiled " -"with OpenLDAP version 2.4.13 or higher." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1452 -msgid "ldap_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1455 -msgid "Specifies the service name to use when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1459 -msgid "Default: ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1465 -msgid "ldap_chpass_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1468 -msgid "" -"Specifies the service name to use to find an LDAP server which allows " -"password changes when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1473 -msgid "Default: not set, i.e. service discovery is disabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1479 -msgid "ldap_access_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1482 -msgid "" -"If using access_provider = ldap, this option is mandatory. It specifies an " -"LDAP search filter criteria that must be met for the user to be granted " -"access on this host. If access_provider = ldap and this option is not set, " -"it will result in all users being denied access. Use access_provider = allow " -"to change this default behavior." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1492 sssd-ldap.5.xml:1982 -msgid "Example:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1495 -#, no-wrap -msgid "" -"access_provider = ldap\n" -"ldap_access_filter = memberOf=cn=allowedusers,ou=Groups,dc=example,dc=com\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1499 -msgid "" -"This example means that access to this host is restricted to members of the " -"\"allowedusers\" group in ldap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1504 -msgid "" -"Offline caching for this feature is limited to determining whether the " -"user's last online login was granted access permission. If they were granted " -"access during their last login, they will continue to be granted access " -"while offline and vice-versa." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1512 sssd-ldap.5.xml:1562 -msgid "Default: Empty" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1518 -msgid "ldap_account_expire_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1521 -msgid "" -"With this option a client side evaluation of access control attributes can " -"be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1525 -msgid "" -"Please note that it is always recommended to use server side access control, " -"i.e. the LDAP server should deny the bind request with a suitable error code " -"even if the password is correct." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1532 -msgid "The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1535 -msgid "" -"<emphasis>shadow</emphasis>: use the value of ldap_user_shadow_expire to " -"determine if the account is expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1540 -msgid "" -"<emphasis>ad</emphasis>: use the value of the 32bit field " -"ldap_user_ad_user_account_control and allow access if the second bit is not " -"set. If the attribute is missing access is granted. Also the expiration time " -"of the account is checked." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1547 -msgid "" -"<emphasis>rhds</emphasis>, <emphasis>ipa</emphasis>, <emphasis>389ds</" -"emphasis>: use the value of ldap_ns_account_lock to check if access is " -"allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1553 -msgid "" -"<emphasis>nds</emphasis>: the values of " -"ldap_user_nds_login_allowed_time_map, ldap_user_nds_login_disabled and " -"ldap_user_nds_login_expiration_time are used to check if access is allowed. " -"If both attributes are missing access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1568 -msgid "ldap_access_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1571 -msgid "Comma separated list of access control options. Allowed values are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1575 -msgid "<emphasis>filter</emphasis>: use ldap_access_filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1578 -msgid "<emphasis>expire</emphasis>: use ldap_account_expire_policy" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1582 -msgid "" -"<emphasis>authorized_service</emphasis>: use the authorizedService attribute " -"to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1587 -msgid "<emphasis>host</emphasis>: use the host attribute to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1591 -msgid "Default: filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1594 -msgid "" -"Please note that it is a configuration error if a value is used more than " -"once." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1601 -msgid "ldap_deref (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1604 -msgid "" -"Specifies how alias dereferencing is done when performing a search. The " -"following options are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1609 -msgid "<emphasis>never</emphasis>: Aliases are never dereferenced." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1613 -msgid "" -"<emphasis>searching</emphasis>: Aliases are dereferenced in subordinates of " -"the base object, but not in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1618 -msgid "" -"<emphasis>finding</emphasis>: Aliases are only dereferenced when locating " -"the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1623 -msgid "" -"<emphasis>always</emphasis>: Aliases are dereferenced both in searching and " -"in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1628 -msgid "" -"Default: Empty (this is handled as <emphasis>never</emphasis> by the LDAP " -"client libraries)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:51 -msgid "" -"All of the common configuration options that apply to SSSD domains also " -"apply to LDAP domains. Refer to the <quote>DOMAIN SECTIONS</quote> section " -"of the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for full details. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1639 -msgid "SUDO OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1644 -msgid "ldap_sudorule_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1647 -msgid "The object class of a sudo rule entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1650 -msgid "Default: sudoRole" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1656 -msgid "ldap_sudorule_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1659 -msgid "The LDAP attribute that corresponds to the sudo rule name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1669 -msgid "ldap_sudorule_command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1672 -msgid "The LDAP attribute that corresponds to the command name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1676 -msgid "Default: sudoCommand" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1682 -msgid "ldap_sudorule_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1685 -msgid "" -"The LDAP attribute that corresponds to the host name (or host IP address, " -"host IP network, or host netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1690 -msgid "Default: sudoHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1696 -msgid "ldap_sudorule_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1699 -msgid "" -"The LDAP attribute that corresponds to the user name (or UID, group name or " -"user's netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1703 -msgid "Default: sudoUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1709 -msgid "ldap_sudorule_option (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1712 -msgid "The LDAP attribute that corresponds to the sudo options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1716 -msgid "Default: sudoOption" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1722 -msgid "ldap_sudorule_runasuser (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1725 -msgid "" -"The LDAP attribute that corresponds to the user name that commands may be " -"run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1729 -msgid "Default: sudoRunAsUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1735 -msgid "ldap_sudorule_runasgroup (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1738 -msgid "" -"The LDAP attribute that corresponds to the group name or group GID that " -"commands may be run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1742 -msgid "Default: sudoRunAsGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1748 -msgid "ldap_sudorule_notbefore (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1751 -msgid "" -"The LDAP attribute that corresponds to the start date/time for when the sudo " -"rule is valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1755 -msgid "Default: sudoNotBefore" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1761 -msgid "ldap_sudorule_notafter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1764 -msgid "" -"The LDAP attribute that corresponds to the expiration date/time, after which " -"the sudo rule will no longer be valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1769 -msgid "Default: sudoNotAfter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1775 -msgid "ldap_sudorule_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1778 -msgid "The LDAP attribute that corresponds to the ordering index of the rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1782 -msgid "Default: sudoOrder" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1788 -msgid "ldap_sudo_refresh_enabled (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1791 -msgid "" -"Enables periodical download of all sudo rules. The cache is purged before " -"each update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1801 -msgid "ldap_sudo_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1804 -msgid "" -"How many seconds SSSD has to wait before refreshing its cache of sudo rules." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1642 -msgid "<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1815 -msgid "" -"This manual page only describes attribute name mapping. For detailed " -"explanation of sudo related attribute semantics, see <citerefentry> " -"<refentrytitle>sudoers.ldap</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1825 -msgid "AUTOFS OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1827 -msgid "" -"Please note that the default values correspond to the default schema which " -"is RFC2307." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1834 -msgid "ldap_autofs_map_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1837 sssd-ldap.5.xml:1863 -msgid "The object class of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1840 sssd-ldap.5.xml:1867 -msgid "Default: automountMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1847 -msgid "ldap_autofs_map_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1850 -msgid "The name of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1853 -msgid "Default: ou" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1860 -msgid "ldap_autofs_entry_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1874 -msgid "ldap_autofs_entry_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1877 sssd-ldap.5.xml:1891 -msgid "" -"The key of an automount entry in LDAP. The entry usually corresponds to a " -"mount point." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1888 -msgid "ldap_autofs_entry_value (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1895 -msgid "Default: automountInformation" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1832 -msgid "" -"<placeholder type=\"variablelist\" id=\"0\"/> <placeholder type=" -"\"variablelist\" id=\"1\"/> <placeholder type=\"variablelist\" id=\"2\"/> " -"<placeholder type=\"variablelist\" id=\"3\"/> <placeholder type=" -"\"variablelist\" id=\"4\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1904 -msgid "ADVANCED OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1911 -msgid "ldap_netgroup_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1914 -msgid "" -"An optional base DN to restrict netgroup searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1930 -msgid "ldap_user_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1933 -msgid "An optional base DN to restrict user searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1949 -msgid "ldap_group_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1952 -msgid "An optional base DN to restrict group searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1968 -msgid "ldap_user_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1971 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict user searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1975 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_user_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1985 -#, no-wrap -msgid "" -" ldap_user_search_filter = (loginShell=/bin/tcsh)\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1988 -msgid "" -"This filter would restrict user searches to users that have their shell set " -"to /bin/tcsh." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1995 -msgid "ldap_group_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1998 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict group searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2002 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_group_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2012 -msgid "ldap_sudo_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2015 -msgid "" -"An optional base DN to restrict sudo rules searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2034 -msgid "ldap_autofs_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2037 -msgid "" -"An optional base DN to restrict automounter searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1906 -msgid "" -"These options are supported by LDAP domains, but they should be used with " -"caution. Please include them in your configuration only if you know what you " -"are doing. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2066 -msgid "" -"The following example assumes that SSSD is correctly configured and LDAP is " -"set to one of the domains in the <replaceable>[domains]</replaceable> " -"section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ldap.5.xml:2072 -#, no-wrap -msgid "" -" [domain/LDAP]\n" -" id_provider = ldap\n" -" auth_provider = ldap\n" -" ldap_uri = ldap://ldap.mydomain.org\n" -" ldap_search_base = dc=mydomain,dc=org\n" -" ldap_tls_reqcert = demand\n" -" cache_credentials = true\n" -" enumerate = true\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2071 sssd-simple.5.xml:134 sssd-ipa.5.xml:552 -#: sssd-krb5.5.xml:441 -msgid "<placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:2085 sssd_krb5_locator_plugin.8.xml:61 -msgid "NOTES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2087 -msgid "" -"The descriptions of some of the configuration options in this manual page " -"are based on the <citerefentry> <refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page from the OpenLDAP 2.4 " -"distribution." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2098 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <refentryinfo> -#: pam_sss.8.xml:8 include/upstream.xml:2 -msgid "" -"<productname>SSSD</productname> <orgname>The SSSD upstream - http://" -"fedorahosted.org/sssd</orgname>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: pam_sss.8.xml:13 pam_sss.8.xml:18 -msgid "pam_sss" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: pam_sss.8.xml:19 -msgid "PAM module for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: pam_sss.8.xml:24 -msgid "" -"<command>pam_sss.so</command> <arg choice='opt'> <replaceable>quiet</" -"replaceable> </arg> <arg choice='opt'> <replaceable>forward_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_first_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_authtok</" -"replaceable> </arg> <arg choice='opt'> <replaceable>retry=N</replaceable> </" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:45 -msgid "" -"<command>pam_sss.so</command> is the PAM interface to the System Security " -"Services daemon (SSSD). Errors and results are logged through <command>syslog" -"(3)</command> with the LOG_AUTHPRIV facility." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:55 -msgid "<option>quiet</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:58 -msgid "Suppress log messages for unknown users." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:63 -msgid "<option>forward_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:66 -msgid "" -"If <option>forward_pass</option> is set the entered password is put on the " -"stack for other PAM modules to use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:73 -msgid "<option>use_first_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:76 -msgid "" -"The argument use_first_pass forces the module to use a previous stacked " -"modules password and will never prompt the user - if no password is " -"available or the password is not appropriate, the user will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:84 -msgid "<option>use_authtok</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:87 -msgid "" -"When password changing enforce the module to set the new password to the one " -"provided by a previously stacked password module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:94 -msgid "<option>retry=N</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:97 -msgid "" -"If specified the user is asked another N times for a password if " -"authentication fails. Default is 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:99 -msgid "" -"Please note that this option might not work as expected if the application " -"calling PAM handles the user dialog on its own. A typical example is " -"<command>sshd</command> with <option>PasswordAuthentication</option>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:110 -msgid "MODULE TYPES PROVIDED" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:111 -msgid "" -"All module types (<option>account</option>, <option>auth</option>, " -"<option>password</option> and <option>session</option>) are provided." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:117 -msgid "FILES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:118 -msgid "" -"If a password reset by root fails, because the corresponding SSSD provider " -"does not support password resets, an individual message can be displayed. " -"This message can e.g. contain instructions about how to reset a password." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:123 -msgid "" -"The message is read from the file <filename>pam_sss_pw_reset_message.LOC</" -"filename> where LOC stands for a locale string returned by <citerefentry> " -"<refentrytitle>setlocale</refentrytitle><manvolnum>3</manvolnum> </" -"citerefentry>. If there is no matching file the content of " -"<filename>pam_sss_pw_reset_message.txt</filename> is displayed. Root must be " -"the owner of the files and only root may have read and write permissions " -"while all other users must have only read permissions." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:133 -msgid "" -"These files are searched in the directory <filename>/etc/sssd/customize/" -"DOMAIN_NAME/</filename>. If no matching file is present a generic message is " -"displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:141 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd_krb5_locator_plugin.8.xml:10 sssd_krb5_locator_plugin.8.xml:15 -msgid "sssd_krb5_locator_plugin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:22 -msgid "" -"The Kerberos locator plugin <command>sssd_krb5_locator_plugin</command> is " -"used by the Kerberos provider of <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry> to tell the Kerberos " -"libraries what Realm and which KDC to use. Typically this is done in " -"<citerefentry> <refentrytitle>krb5.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> which is always read by the Kerberos libraries. " -"To simplify the configuration the Realm and the KDC can be defined in " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> as described in <citerefentry> " -"<refentrytitle>sssd-krb5.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry> puts the Realm and the name or IP address of the KDC into " -"the environment variables SSSD_KRB5_REALM and SSSD_KRB5_KDC respectively. " -"When <command>sssd_krb5_locator_plugin</command> is called by the kerberos " -"libraries it reads and evaluates these variables and returns them to the " -"libraries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:63 -msgid "" -"Not all Kerberos implementations support the use of plugins. If " -"<command>sssd_krb5_locator_plugin</command> is not available on your system " -"you have to edit /etc/krb5.conf to reflect your Kerberos setup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:69 -msgid "" -"If the environment variable SSSD_KRB5_LOCATOR_DEBUG is set to any value " -"debug messages will be sent to stderr." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:77 -msgid "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-simple.5.xml:10 sssd-simple.5.xml:16 -msgid "sssd-simple" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd-simple.5.xml:17 -msgid "the configuration file for SSSD's 'simple' access-control provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:24 -msgid "" -"This manual page describes the configuration of the simple access-control " -"provider for <citerefentry> <refentrytitle>sssd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry>. For a detailed syntax reference, " -"refer to the <quote>FILE FORMAT</quote> section of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:38 -msgid "" -"The simple access provider grants or denies access based on an access or " -"deny list of user or group names. The following rules apply:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:43 -msgid "If all lists are empty, access is granted" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:47 -msgid "" -"If any list is provided, the order of evaluation is allow,deny. This means " -"that any matching deny rule will supersede any matched allow rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:54 -msgid "" -"If either or both \"allow\" lists are provided, all users are denied unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:60 -msgid "" -"If only \"deny\" lists are provided, all users are granted access unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:78 -msgid "simple_allow_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:81 -msgid "Comma separated list of users who are allowed to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:88 -msgid "simple_deny_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:91 -msgid "Comma separated list of users who are explicitly denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:97 -msgid "simple_allow_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:100 -msgid "" -"Comma separated list of groups that are allowed to log in. This applies only " -"to groups within this SSSD domain. Local groups are not evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:108 -msgid "simple_deny_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:111 -msgid "" -"Comma separated list of groups that are explicitly denied access. This " -"applies only to groups within this SSSD domain. Local groups are not " -"evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:70 sssd-ipa.5.xml:65 -msgid "" -"Refer to the section <quote>DOMAIN SECTIONS</quote> of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page for details on the configuration of an SSSD " -"domain. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:120 -msgid "" -"Please note that it is an configuration error if both, simple_allow_users " -"and simple_deny_users, are defined." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:128 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the simple access provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-simple.5.xml:135 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" access_provider = simple\n" -" simple_allow_users = user1, user2\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:145 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ipa.5.xml:10 sssd-ipa.5.xml:16 -msgid "sssd-ipa" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:23 -msgid "" -"This manual page describes the configuration of the IPA provider for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. For a detailed syntax reference, refer to the <quote>FILE " -"FORMAT</quote> section of the <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:36 -msgid "" -"The IPA provider is a back end used to connect to an IPA server. (Refer to " -"the freeipa.org web site for information about IPA servers.) This provider " -"requires that the machine be joined to the IPA domain; configuration is " -"almost entirely self-discovered and obtained directly from the server." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:43 -msgid "" -"The IPA provider accepts the same options used by the <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> identity provider and the <citerefentry> <refentrytitle>sssd-" -"krb5</refentrytitle> <manvolnum>5</manvolnum> </citerefentry> authentication " -"provider with some exceptions described below." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:55 -msgid "" -"However, it is neither necessary nor recommended to set these options. IPA " -"provider can also be used as an access and chpass provider. As an access " -"provider it uses HBAC (host-based access control) rules. Please refer to " -"freeipa.org for more information about HBAC. No configuration of access " -"provider is required on the client side." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:72 -msgid "ipa_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:75 -msgid "" -"Specifies the name of the IPA domain. This is optional. If not provided, " -"the configuration domain name is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:83 -msgid "ipa_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:86 -msgid "" -"The comma-separated list of IP addresses or hostnames of the IPA servers to " -"which SSSD should connect in the order of preference. For more information " -"on failover and server redundancy, see the <quote>FAILOVER</quote> section. " -"This is optional if autodiscovery is enabled. For more information on " -"service discovery, refer to the the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:99 -msgid "ipa_hostname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:102 -msgid "" -"Optional. May be set on machines where the hostname(5) does not reflect the " -"fully qualified name used in the IPA domain to identify this host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:110 -msgid "ipa_dyndns_update (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:113 -msgid "" -"Optional. This option tells SSSD to automatically update the DNS server " -"built into FreeIPA v2 with the IP address of this client." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:118 -msgid "" -"NOTE: On older systems (such as RHEL 5), for this behavior to work reliably, " -"the default Kerberos realm must be set properly in /etc/krb5.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:129 -msgid "ipa_dyndns_iface (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:132 -msgid "" -"Optional. Applicable only when ipa_dyndns_update is true. Choose the " -"interface whose IP address should be used for dynamic DNS updates." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:137 -msgid "Default: Use the IP address of the IPA LDAP connection" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:143 -msgid "ipa_hbac_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:146 -msgid "Optional. Use the given string as search base for HBAC related objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:150 -msgid "Default: Use base DN" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:156 -msgid "ipa_host_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:159 -msgid "Optional. Use the given string as search base for host objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:168 -msgid "" -"If filter is given in any of search bases and " -"<emphasis>ipa_hbac_support_srchost</emphasis> is set to False, the filter " -"will be ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:180 -msgid "ipa_selinux_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:183 -msgid "Optional. Use the given string as search base for SELinux user maps." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:199 sssd-krb5.5.xml:229 -msgid "krb5_validate (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:202 sssd-krb5.5.xml:232 -msgid "" -"Verify with the help of krb5_keytab that the TGT obtained has not been " -"spoofed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:209 -msgid "" -"Note that this default differs from the traditional Kerberos provider back " -"end." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:219 -msgid "" -"The name of the Kerberos realm. This is optional and defaults to the value " -"of <quote>ipa_domain</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:223 -msgid "" -"The name of the Kerberos realm has a special meaning in IPA - it is " -"converted into the base DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:234 -msgid "" -"Specifies if the host and user principal should be canonicalized when " -"connecting to IPA LDAP and also for AS requests. This feature is available " -"with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:247 -msgid "ipa_hbac_refresh (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:250 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server. " -"This will reduce the latency and load on the IPA server if there are many " -"access-control requests made in a short period." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:257 -msgid "Default: 5 (seconds)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:262 -msgid "ipa_hbac_treat_deny_as (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:265 -msgid "" -"This option specifies how to treat the deprecated DENY-type HBAC rules. As " -"of FreeIPA v2.1, DENY rules are no longer supported on the server. All users " -"of FreeIPA will need to migrate their rules to use only the ALLOW rules. The " -"client will support two modes of operation during this transition period:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:274 -msgid "" -"<emphasis>DENY_ALL</emphasis>: If any HBAC DENY rules are detected, all " -"users will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:279 -msgid "" -"<emphasis>IGNORE</emphasis>: SSSD will ignore any DENY rules. Be very " -"careful with this option, as it may result in opening unintended access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:284 -msgid "Default: DENY_ALL" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:289 -msgid "ipa_hbac_support_srchost (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:292 -msgid "" -"If this is set to false, then srchost as given to SSSD by PAM will be " -"ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:296 -msgid "" -"Note that if set to <emphasis>False</emphasis>, this option casuses filters " -"given in <emphasis>ipa_host_search_base</emphasis> to be ignored;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:307 -msgid "ipa_automount_location (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:310 -msgid "The automounter location this IPA client will be using" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:313 -msgid "Default: The location named \"default\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:319 -msgid "ipa_netgroup_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:322 -msgid "The LDAP attribute that lists netgroup's memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:331 -msgid "ipa_netgroup_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:334 -msgid "" -"The LDAP attribute that lists system users and groups that are direct " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:339 sssd-ipa.5.xml:434 -msgid "Default: memberUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:344 -msgid "ipa_netgroup_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:347 -msgid "" -"The LDAP attribute that lists hosts and host groups that are direct members " -"of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:351 sssd-ipa.5.xml:446 -msgid "Default: memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:356 -msgid "ipa_netgroup_member_ext_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:359 -msgid "" -"The LDAP attribute that lists FQDNs of hosts and host groups that are " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:363 -msgid "Default: externalHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:368 -msgid "ipa_netgroup_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:371 -msgid "The LDAP attribute that contains NIS domain name of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:375 -msgid "Default: nisDomainName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:381 -msgid "ipa_host_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:384 sssd-ipa.5.xml:407 -msgid "The object class of a host entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:387 sssd-ipa.5.xml:410 -msgid "Default: ipaHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:392 -msgid "ipa_host_fqdn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:395 -msgid "The LDAP attribute that contains FQDN of the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:398 -msgid "Default: fqdn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:404 -msgid "ipa_selinux_usermap_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:415 -msgid "ipa_selinux_usermap_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:418 -msgid "The LDAP attribute that contains the name of SELinux usermap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:427 -msgid "ipa_selinux_usermap_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:430 -msgid "" -"The LDAP attribute that contains all users / groups this rule match against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:439 -msgid "ipa_selinux_usermap_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:442 -msgid "" -"The LDAP attribute that contains all hosts / hostgroups this rule match " -"against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:451 -msgid "ipa_selinux_usermap_see_also (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:454 -msgid "" -"The LDAP attribute that contains DN of HBAC rule which can be used for " -"matching instead of memberUser and memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:459 -msgid "Default: seeAlso" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:464 -msgid "ipa_selinux_usermap_selinux_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:467 -msgid "The LDAP attribute that contains SELinux user string itself." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:471 -msgid "Default: ipaSELinuxUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:476 -msgid "ipa_selinux_usermap_enabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:479 -msgid "" -"The LDAP attribute that contains whether or not is user map enabled for " -"usage." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:483 -msgid "Default: ipaEnabledFlag" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:488 -msgid "ipa_selinux_usermap_user_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:491 -msgid "The LDAP attribute that contains user category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:495 -msgid "Default: userCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:500 -msgid "ipa_selinux_usermap_host_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:503 -msgid "The LDAP attribute that contains host category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:507 -msgid "Default: hostCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:512 -msgid "ipa_selinux_usermap_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:515 -msgid "The LDAP attribute that contains unique ID of the user map." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:519 -msgid "Default: ipaUniqueID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:524 -msgid "ipa_host_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:527 -msgid "The LDAP attribute that contains the host's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:531 -msgid "Default: ipaSshPubKey" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:546 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the ipa provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ipa.5.xml:553 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" id_provider = ipa\n" -" ipa_server = ipaserver.example.com\n" -" ipa_hostname = myhost.example.com\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:564 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.8.xml:10 sssd.8.xml:15 -msgid "sssd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.8.xml:16 -msgid "System Security Services Daemon" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sssd.8.xml:21 -msgid "" -"<command>sssd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:31 -msgid "" -"<command>SSSD</command> provides a set of daemons to manage access to remote " -"directories and authentication mechanisms. It provides an NSS and PAM " -"interface toward the system and a pluggable backend system to connect to " -"multiple different account sources as well as D-Bus interface. It is also " -"the basis to provide client auditing and policy services for projects like " -"FreeIPA. It provides a more robust database to store local users as well as " -"extended user data." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:46 -msgid "" -"<option>-d</option>,<option>--debug-level</option> <replaceable>LEVEL</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:53 -msgid "<option>--debug-timestamps=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:57 -msgid "<emphasis>1</emphasis>: Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:60 -msgid "<emphasis>0</emphasis>: Disable timestamp in the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:69 -msgid "<option>--debug-microseconds=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:73 -msgid "" -"<emphasis>1</emphasis>: Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:76 -msgid "<emphasis>0</emphasis>: Disable microseconds in timestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:79 -msgid "Default: 0" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:85 -msgid "<option>-f</option>,<option>--debug-to-files</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:89 -msgid "" -"Send the debug output to files instead of stderr. By default, the log files " -"are stored in <filename>/var/log/sssd</filename> and there are separate log " -"files for every SSSD service and domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:97 -msgid "<option>-D</option>,<option>--daemon</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:101 -msgid "Become a daemon after starting up." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:107 -msgid "<option>-i</option>,<option>--interactive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:111 -msgid "Run in the foreground, don't become a daemon." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:117 sss_debuglevel.8.xml:42 -msgid "<option>-c</option>,<option>--config</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:121 sss_debuglevel.8.xml:46 -msgid "" -"Specify a non-default config file. The default is <filename>/etc/sssd/sssd." -"conf</filename>. For reference on the config file syntax and options, " -"consult the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:135 -msgid "<option>--version</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:139 -msgid "Print version number and exit." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.8.xml:147 -msgid "Signals" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:150 -msgid "SIGTERM/SIGINT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:153 -msgid "" -"Informs the SSSD to gracefully terminate all of its child processes and then " -"shut down the monitor." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:159 -msgid "SIGHUP" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:162 -msgid "" -"Tells the SSSD to stop writing to its current debug file descriptors and to " -"close and reopen them. This is meant to facilitate log rolling with programs " -"like logrotate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:170 -msgid "SIGUSR1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:173 -msgid "" -"Tells the SSSD to simulate offline operation for one minute. This is mostly " -"useful for testing purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:179 -msgid "SIGUSR2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:182 -msgid "" -"Tells the SSSD to go online immediately. This is mostly useful for testing " -"purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:193 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_obfuscate.8.xml:10 sss_obfuscate.8.xml:15 -msgid "sss_obfuscate" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_obfuscate.8.xml:16 -msgid "obfuscate a clear text password" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_obfuscate.8.xml:21 -msgid "" -"<command>sss_obfuscate</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>[PASSWORD]</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:32 -msgid "" -"<command>sss_obfuscate</command> converts a given password into human-" -"unreadable format and places it into appropriate domain section of the SSSD " -"config file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:37 -msgid "" -"The cleartext password is read from standard input or entered " -"interactively. The obfuscated password is put into " -"<quote>ldap_default_authtok</quote> parameter of a given SSSD domain and the " -"<quote>ldap_default_authtok_type</quote> parameter is set to " -"<quote>obfuscated_password</quote>. Refer to <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more details on these parameters." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:49 -msgid "" -"Please note that obfuscating the password provides <emphasis>no real " -"security benefit</emphasis> as it is still possible for an attacker to " -"reverse-engineer the password back. Using better authentication mechanisms " -"such as client side certificates or GSSAPI is <emphasis>strongly</emphasis> " -"advised." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:63 -msgid "<option>-s</option>,<option>--stdin</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:67 -msgid "The password to obfuscate will be read from standard input." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:74 sss_ssh_authorizedkeys.1.xml:82 -#: sss_ssh_knownhostsproxy.1.xml:81 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>DOMAIN</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:79 -msgid "" -"The SSSD domain to use the password in. The default name is <quote>default</" -"quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:86 -msgid "" -"<option>-f</option>,<option>--file</option> <replaceable>FILE</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:91 -msgid "Read the config file specified by the positional parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:95 -msgid "Default: <filename>/etc/sssd/sssd.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:105 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_useradd.8.xml:10 sss_useradd.8.xml:15 -msgid "sss_useradd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_useradd.8.xml:16 -msgid "create a new user" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_useradd.8.xml:21 -msgid "" -"<command>sss_useradd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:32 -msgid "" -"<command>sss_useradd</command> creates a new user account using the values " -"specified on the command line plus the default values from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:43 -msgid "" -"<option>-u</option>,<option>--uid</option> <replaceable>UID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:48 -msgid "" -"Set the UID of the user to the value of <replaceable>UID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:55 sss_usermod.8.xml:43 -msgid "" -"<option>-c</option>,<option>--gecos</option> <replaceable>COMMENT</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:60 sss_usermod.8.xml:48 -msgid "" -"Any text string describing the user. Often used as the field for the user's " -"full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:67 sss_usermod.8.xml:55 -msgid "" -"<option>-h</option>,<option>--home</option> <replaceable>HOME_DIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:72 -msgid "" -"The home directory of the user account. The default is to append the " -"<replaceable>LOGIN</replaceable> name to <filename>/home</filename> and use " -"that as the home directory. The base that is prepended before " -"<replaceable>LOGIN</replaceable> is tunable with <quote>user_defaults/" -"baseDirectory</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:82 sss_usermod.8.xml:66 -msgid "" -"<option>-s</option>,<option>--shell</option> <replaceable>SHELL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:87 -msgid "" -"The user's login shell. The default is currently <filename>/bin/bash</" -"filename>. The default can be changed with <quote>user_defaults/" -"defaultShell</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:96 -msgid "" -"<option>-G</option>,<option>--groups</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:101 -msgid "A list of existing groups this user is also a member of." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:107 -msgid "<option>-m</option>,<option>--create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:111 -msgid "" -"Create the user's home directory if it does not exist. The files and " -"directories contained in the skeleton directory (which can be defined with " -"the -k option or in the config file) will be copied to the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:121 -msgid "<option>-M</option>,<option>--no-create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:125 -msgid "" -"Do not create the user's home directory. Overrides configuration settings." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:132 -msgid "" -"<option>-k</option>,<option>--skel</option> <replaceable>SKELDIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:137 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<command>sss_useradd</command>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:143 -msgid "" -"This option is only valid if the <option>-m</option> (or <option>--create-" -"home</option>) option is specified, or creation of home directories is set " -"to TRUE in the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:152 sss_usermod.8.xml:124 -msgid "" -"<option>-Z</option>,<option>--selinux-user</option> " -"<replaceable>SELINUX_USER</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:157 -msgid "" -"The SELinux user for the user's login. If not specified, the system default " -"will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:169 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-krb5.5.xml:10 sssd-krb5.5.xml:16 -msgid "sssd-krb5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:23 -msgid "" -"This manual page describes the configuration of the Kerberos 5 " -"authentication backend for <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry>. For a detailed " -"syntax reference, please refer to the <quote>FILE FORMAT</quote> section of " -"the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:36 -msgid "" -"The Kerberos 5 authentication backend contains auth and chpass providers. It " -"must be paired with identity provider in order to function properly (for " -"example, id_provider = ldap). Some information required by the Kerberos 5 " -"authentication backend must be provided by the identity provider, such as " -"the user's Kerberos Principal Name (UPN). The configuration of the identity " -"provider should have an entry to specify the UPN. Please refer to the man " -"page for the applicable identity provider for details on how to configure " -"this." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:47 -msgid "" -"This backend also provides access control based on the .k5login file in the " -"home directory of the user. See <citerefentry> <refentrytitle>.k5login</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry> for more details. " -"Please note that an empty .k5login file will deny all access to this user. " -"To activate this feature use 'access_provider = krb5' in your sssd " -"configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:55 -msgid "" -"In the case where the UPN is not available in the identity backend " -"<command>sssd</command> will construct a UPN using the format " -"<replaceable>username</replaceable>@<replaceable>krb5_realm</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:106 -msgid "" -"The name of the Kerberos realm. This option is required and must be " -"specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:113 -msgid "krb5_kpasswd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:116 -msgid "" -"If the change password service is not running on the KDC alternative servers " -"can be defined here. An optional port number (preceded by a colon) may be " -"appended to the addresses or hostnames." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:122 -msgid "" -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. Please note that even if there are no more " -"kpasswd servers to try the back end is not switch to offline if " -"authentication against the KDC is still possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:129 -msgid "Default: Use the KDC" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:135 -msgid "krb5_ccachedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:138 -msgid "" -"Directory to store credential caches. All the substitution sequences of " -"krb5_ccname_template can be used here, too, except %d and %P. If the " -"directory does not exist it will be created. If %u, %U, %p or %h are used a " -"private directory belonging to the user is created. Otherwise a public " -"directory with restricted deletion flag (aka sticky bit, see <citerefentry> " -"<refentrytitle>chmod</refentrytitle> <manvolnum>1</manvolnum> </" -"citerefentry> for details) is created." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:151 -msgid "Default: /tmp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:157 -msgid "krb5_ccname_template (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:171 -msgid "login UID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:174 -msgid "%p" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:175 -msgid "principal name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:179 -msgid "%r" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:180 -msgid "realm name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:183 -msgid "%h" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:184 -msgid "home directory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:189 -msgid "value of krb5ccache_dir" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:194 -msgid "%P" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:195 -msgid "the process ID of the sssd client" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:160 -msgid "" -"Location of the user's credential cache. Currently only file based " -"credential caches are supported. In the template the following sequences are " -"substituted: <placeholder type=\"variablelist\" id=\"0\"/> If the template " -"ends with 'XXXXXX' mkstemp(3) is used to create a unique filename in a safe " -"way." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:209 -msgid "Default: FILE:%d/krb5cc_%U_XXXXXX" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:215 -msgid "krb5_auth_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:218 -msgid "" -"Timeout in seconds after an online authentication or change password request " -"is aborted. If possible the authentication request is continued offline." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:241 -msgid "krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:244 -msgid "" -"The location of the keytab to use when validating credentials obtained from " -"KDCs." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:248 -msgid "Default: /etc/krb5.keytab" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:254 -msgid "krb5_store_password_if_offline (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:257 -msgid "" -"Store the password of the user if the provider is offline and use it to " -"request a TGT when the provider gets online again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:262 -msgid "" -"Please note that this feature currently only available on a Linux platform. " -"Passwords stored in this way are kept in plaintext in the kernel keyring and " -"are potentially accessible by the root user (with difficulty)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:275 -msgid "krb5_renewable_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:278 -msgid "" -"Request a renewable ticket with a total lifetime given by an integer " -"immediately followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:283 sssd-krb5.5.xml:319 -msgid "<emphasis>s</emphasis> seconds" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:286 sssd-krb5.5.xml:322 -msgid "<emphasis>m</emphasis> minutes" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:289 sssd-krb5.5.xml:325 -msgid "<emphasis>h</emphasis> hours" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:292 sssd-krb5.5.xml:328 -msgid "<emphasis>d</emphasis> days." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:295 sssd-krb5.5.xml:331 -msgid "If there is no delimiter <emphasis>s</emphasis> is assumed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:299 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"renewable lifetime to one and a half hours please use '90m' instead of " -"'1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:305 -msgid "Default: not set, i.e. the TGT is not renewable" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:311 -msgid "krb5_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:314 -msgid "" -"Request ticket with a with a lifetime given by an integer immediately " -"followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:335 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"lifetime to one and a half hours please use '90m' instead of '1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:340 -msgid "" -"Default: not set, i.e. the default ticket lifetime configured on the KDC." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:347 -msgid "krb5_renew_interval (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:350 -msgid "" -"The time in seconds between two checks if the TGT should be renewed. TGTs " -"are renewed if about half of their lifetime is exceeded." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:355 -msgid "If this option is not set or 0 the automatic renewal is disabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:365 -msgid "krb5_use_fast (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:368 -msgid "" -"Enables flexible authentication secure tunneling (FAST) for Kerberos pre-" -"authentication. The following options are supported:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:373 -msgid "" -"<emphasis>never</emphasis> use FAST, this is equivalent to not set this " -"option at all." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:377 -msgid "" -"<emphasis>try</emphasis> to use FAST, if the server does not support fast " -"continue without." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:381 -msgid "" -"<emphasis>demand</emphasis> to use FAST, fail if the server does not require " -"fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:385 -msgid "Default: not set, i.e. FAST is not used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:388 -msgid "Please note that a keytab is required to use fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:391 -msgid "" -"Please note also that sssd supports fast only with MIT Kerberos version 1.8 " -"and above. If sssd used with an older version using this option is a " -"configuration error." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:400 -msgid "krb5_fast_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:403 -msgid "Specifies the server principal to use for FAST." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:412 -msgid "" -"Specifies if the host and user principal should be canonicalized. This " -"feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:65 -msgid "" -"If the auth-module krb5 is used in a SSSD domain, the following options must " -"be used. See the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page, section <quote>DOMAIN " -"SECTIONS</quote> for details on the configuration of a SSSD domain. " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:434 -msgid "" -"The following example assumes that SSSD is correctly configured and FOO is " -"one of the domains in the <replaceable>[sssd]</replaceable> section. This " -"example shows only configuration of Kerberos authentication, it does not " -"include any identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-krb5.5.xml:442 -#, no-wrap -msgid "" -" [domain/FOO]\n" -" auth_provider = krb5\n" -" krb5_server = 192.168.1.1\n" -" krb5_realm = EXAMPLE.COM\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:453 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupadd.8.xml:10 sss_groupadd.8.xml:15 -msgid "sss_groupadd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupadd.8.xml:16 -msgid "create a new group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupadd.8.xml:21 -msgid "" -"<command>sss_groupadd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:32 -msgid "" -"<command>sss_groupadd</command> creates a new group. These groups are " -"compatible with POSIX groups, with the additional feature that they can " -"contain other groups as members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupadd.8.xml:43 -msgid "" -"<option>-g</option>,<option>--gid</option> <replaceable>GID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupadd.8.xml:48 -msgid "" -"Set the GID of the group to the value of <replaceable>GID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_userdel.8.xml:10 sss_userdel.8.xml:15 -msgid "sss_userdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_userdel.8.xml:16 -msgid "delete a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_userdel.8.xml:21 -msgid "" -"<command>sss_userdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:32 -msgid "" -"<command>sss_userdel</command> deletes a user identified by login name " -"<replaceable>LOGIN</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:44 -msgid "<option>-r</option>,<option>--remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:48 -msgid "" -"Files in the user's home directory will be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:56 -msgid "<option>-R</option>,<option>--no-remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:60 -msgid "" -"Files in the user's home directory will NOT be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:68 -msgid "<option>-f</option>,<option>--force</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:72 -msgid "" -"This option forces <command>sss_userdel</command> to remove the user's home " -"directory and mail spool, even if they are not owned by the specified user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:80 -msgid "<option>-k</option>,<option>--kick</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:84 -msgid "Before actually deleting the user, terminate all his processes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:95 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupdel.8.xml:10 sss_groupdel.8.xml:15 -msgid "sss_groupdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupdel.8.xml:16 -msgid "delete a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupdel.8.xml:21 -msgid "" -"<command>sss_groupdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:32 -msgid "" -"<command>sss_groupdel</command> deletes a group identified by its name " -"<replaceable>GROUP</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupshow.8.xml:10 sss_groupshow.8.xml:15 -msgid "sss_groupshow" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupshow.8.xml:16 -msgid "print properties of a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupshow.8.xml:21 -msgid "" -"<command>sss_groupshow</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:32 -msgid "" -"<command>sss_groupshow</command> displays information about a group " -"identified by its name <replaceable>GROUP</replaceable>. The information " -"includes the group ID number, members of the group and the parent group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupshow.8.xml:43 -msgid "<option>-R</option>,<option>--recursive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupshow.8.xml:47 -msgid "" -"Also print indirect group members in a tree-like hierarchy. Note that this " -"also affects printing parent groups - without <option>R</option>, only the " -"direct parent will be printed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_usermod.8.xml:10 sss_usermod.8.xml:15 -msgid "sss_usermod" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_usermod.8.xml:16 -msgid "modify a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_usermod.8.xml:21 -msgid "" -"<command>sss_usermod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:32 -msgid "" -"<command>sss_usermod</command> modifies the account specified by " -"<replaceable>LOGIN</replaceable> to reflect the changes that are specified " -"on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:60 -msgid "The home directory of the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:71 -msgid "The user's login shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:82 -msgid "" -"Append this user to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:96 -msgid "" -"Remove this user from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:103 -msgid "<option>-l</option>,<option>--lock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:107 -msgid "Lock the user account. The user won't be able to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:114 -msgid "<option>-u</option>,<option>--unlock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:118 -msgid "Unlock the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:129 -msgid "The SELinux user for the user's login." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:140 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_cache.8.xml:10 sss_cache.8.xml:15 -msgid "sss_cache" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_cache.8.xml:16 -msgid "perform cache cleanup" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_cache.8.xml:21 -msgid "" -"<command>sss_cache</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_cache.8.xml:31 -msgid "" -"<command>sss_cache</command> invalidates records in SSSD cache. Invalidated " -"records are forced to be reloaded from server as soon as related SSSD " -"backend is online." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:42 -msgid "" -"<option>-u</option>,<option>--user</option> <replaceable>login</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:47 -msgid "Invalidate specific user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:53 -msgid "<option>-U</option>,<option>--users</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:57 -msgid "" -"Invalidate all user records. This option overrides invalidation of specific " -"user if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:64 -msgid "" -"<option>-g</option>,<option>--group</option> <replaceable>group</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:69 -msgid "Invalidate specific group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:75 -msgid "<option>-G</option>,<option>--groups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:79 -msgid "" -"Invalidate all group records. This option overrides invalidation of specific " -"group if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:86 -msgid "" -"<option>-n</option>,<option>--netgroup</option> <replaceable>netgroup</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:91 -msgid "Invalidate specific netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:97 -msgid "<option>-N</option>,<option>--netgroups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:101 -msgid "" -"Invalidate all netgroup records. This option overrides invalidation of " -"specific netgroup if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:108 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>domain</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:113 -msgid "Restrict invalidation process only to a particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_debuglevel.8.xml:10 sss_debuglevel.8.xml:15 -msgid "sss_debuglevel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_debuglevel.8.xml:16 -msgid "change debug level while SSSD is running" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_debuglevel.8.xml:21 -msgid "" -"<command>sss_debuglevel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>NEW_DEBUG_LEVEL</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_debuglevel.8.xml:32 -msgid "" -"<command>sss_debuglevel</command> changes debug level of SSSD monitor and " -"providers to <replaceable>NEW_DEBUG_LEVEL</replaceable> while SSSD is " -"running." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_debuglevel.8.xml:59 -msgid "<replaceable>NEW_DEBUG_LEVEL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_authorizedkeys.1.xml:10 sss_ssh_authorizedkeys.1.xml:15 -msgid "sss_ssh_authorizedkeys" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_ssh_authorizedkeys.1.xml:11 sss_ssh_knownhostsproxy.1.xml:11 -msgid "1" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_authorizedkeys.1.xml:16 -msgid "get OpenSSH authorized keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_authorizedkeys.1.xml:21 -msgid "" -"<command>sss_ssh_authorizedkeys</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>USER</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:32 -msgid "" -"<command>sss_ssh_authorizedkeys</command> acquires SSH public keys for user " -"<replaceable>USER</replaceable> and outputs them in OpenSSH authorized_keys " -"format (see the <quote>AUTHORIZED_KEYS FILE FORMAT</quote> section of " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> for more information)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:41 -msgid "" -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_authorizedkeys</" -"command> for public key user authentication if it is compiled with support " -"for either <quote>AuthorizedKeysCommand</quote> or <quote>PubkeyAgent</" -"quote> <citerefentry> <refentrytitle>sshd_config</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:58 -#, no-wrap -msgid "AuthorizedKeysCommand /usr/bin/sss_ssh_authorizedkeys\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:51 -msgid "" -"If <quote>AuthorizedKeysCommand</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by putting the following directive " -"in <citerefentry> <refentrytitle>sshd_config</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry>: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:69 -#, no-wrap -msgid "PubKeyAgent /usr/bin/sss_ssh_authorizedkeys %u\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:62 -msgid "" -"If <quote>PubkeyAgent</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by using the following directive " -"for <citerefentry> <refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> configuration: <placeholder type=\"programlisting" -"\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_authorizedkeys.1.xml:87 -msgid "" -"Search for user public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:98 -msgid "" -"<citerefentry> <refentrytitle>sshd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sshd_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_knownhostsproxy</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_knownhostsproxy.1.xml:10 sss_ssh_knownhostsproxy.1.xml:15 -msgid "sss_ssh_knownhostsproxy" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_knownhostsproxy.1.xml:16 -msgid "get OpenSSH host keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_knownhostsproxy.1.xml:21 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>HOST</replaceable></arg> <arg " -"choice='opt'><replaceable>PROXY_COMMAND</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:33 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> acquires SSH host public keys for " -"host <replaceable>HOST</replaceable>, stores them in a custom OpenSSH " -"known_hosts file (see the <quote>SSH_KNOWN_HOSTS FILE FORMAT</quote> section " -"of <citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> for more information) <filename>/var/lib/sss/" -"pubconf/known_hosts</filename> and estabilishes connection to the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:43 -msgid "" -"If <replaceable>PROXY_COMMAND</replaceable> is specified, it is used to " -"create the connection to the host instead of opening a socket." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_knownhostsproxy.1.xml:55 -#, no-wrap -msgid "" -"ProxyCommand /usr/bin/sss_ssh_knownhostsproxy -p %p %h\n" -"GlobalKnownHostsFile2 /var/lib/sss/pubconf/known_hosts\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:48 -msgid "" -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_knownhostsproxy</" -"command> for host key authentication by using the following directives for " -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> configuration: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_ssh_knownhostsproxy.1.xml:69 -msgid "" -"<option>-p</option>,<option>--port</option> <replaceable>PORT</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:74 -msgid "" -"Use port <replaceable>PORT</replaceable> to connect to the host. By " -"default, port 22 is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:86 -msgid "" -"Search for host public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:97 -msgid "" -"<citerefentry> <refentrytitle>ssh</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>ssh_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_authorizedkeys</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/service_discovery.xml:2 -msgid "SERVICE DISCOVERY" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/service_discovery.xml:4 -msgid "" -"The service discovery feature allows back ends to automatically find the " -"appropriate servers to connect to using a special DNS query." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:9 -msgid "Configuration" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:11 -msgid "" -"If no servers are specified, the back end automatically uses service " -"discovery to try to find a server. Optionally, the user may choose to use " -"both fixed server addresses and service discovery by inserting a special " -"keyword, <quote>_srv_</quote>, in the list of servers. The order of " -"preference is maintained. This feature is useful if, for example, the user " -"prefers to use service discovery whenever possible, and fall back to a " -"specific server when no servers can be discovered using DNS." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:23 -msgid "The domain name" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:25 -msgid "" -"Please refer to the <quote>dns_discovery_domain</quote> parameter in the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for more details." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:35 -msgid "The protocol" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:37 -msgid "" -"The queries usually specify _tcp as the protocol. Exceptions are documented " -"in respective option description." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:42 -msgid "See Also" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:44 -msgid "" -"For more information on the service discovery mechanism, refer to RFC 2782." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/upstream.xml:1 -msgid "<placeholder type=\"refentryinfo\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/failover.xml:2 -msgid "FAILOVER" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/failover.xml:4 -msgid "" -"The failover feature allows back ends to automatically switch to a different " -"server if the primary server fails." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:8 -msgid "Failover Syntax" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:10 -msgid "" -"The list of servers is given as a comma-separated list; any number of spaces " -"is allowed around the comma. The servers are listed in order of preference. " -"The list can contain any number of servers." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:17 -msgid "The Failover Mechanism" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:19 -msgid "" -"The failover mechanism distinguishes between a machine and a service. The " -"back end first tries to resolve the hostname of a given machine; if this " -"resolution attempt fails, the machine is considered offline. No further " -"attempts are made to connect to this machine for any other service. If the " -"resolution attempt succeeds, the back end tries to connect to a service on " -"this machine. If the service connection attempt fails, then only this " -"particular service is considered offline and the back end automatically " -"switches over to the next service. The machine is still considered online " -"and might still be tried for another service." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:32 -msgid "" -"Further connection attempts are made to machines or services marked as " -"offline after a specified period of time; this is currently hard coded to 30 " -"seconds." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:37 -msgid "" -"If there are no more machines to try, the back end as a whole switches to " -"offline mode, and then attempts to reconnect every 30 seconds." -msgstr "" - -#. type: Content of: <varlistentry><term> -#: include/param_help.xml:3 -msgid "<option>-h</option>,<option>--help</option>" -msgstr "" - -#. type: Content of: <varlistentry><listitem><para> -#: include/param_help.xml:7 -msgid "Display help message and exit." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:3 -msgid "" -"Bit mask that indicates which debug levels will be visible. 0x0010 is the " -"default value as well as the lowest allowed value, 0xFFF0 is the most " -"verbose mode. This setting overrides the settings from config file." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:8 -msgid "Currently supported debug levels:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:11 -msgid "" -"<emphasis>0x0010</emphasis>: Fatal failures. Anything that would prevent " -"SSSD from starting up or causes it to cease running." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:15 -msgid "" -"<emphasis>0x0020</emphasis>: Critical failures. An error that doesn't kill " -"the SSSD, but one that indicates that at least one major feature is not " -"going to work properly." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:20 -msgid "" -"<emphasis>0x0040</emphasis>: Serious failures. An error announcing that a " -"particular request or operation has failed." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:24 -msgid "" -"<emphasis>0x0080</emphasis>: Minor failures. These are the errors that would " -"percolate down to cause the operation failure of 2." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:28 -msgid "<emphasis>0x0100</emphasis>: Configuration settings." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:31 -msgid "<emphasis>0x0200</emphasis>: Function data." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:34 -msgid "<emphasis>0x0400</emphasis>: Trace messages for operation functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:37 -msgid "" -"<emphasis>0x1000</emphasis>: Trace messages for internal control functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:40 -msgid "" -"<emphasis>0x2000</emphasis>: Contents of function-internal variables that " -"may be interesting." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:43 -msgid "<emphasis>0x4000</emphasis>: Extremely low-level tracing information." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:46 -msgid "" -"To log required debug levels, simply add their numbers together as shown in " -"following examples:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:49 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, critical failures, " -"serious failures and function data use 0x0270." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:53 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, configuration settings, " -"function data, trace messages for internal control functions use 0x1310." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:57 -msgid "" -"<emphasis>Note</emphasis>: This is new format of debug levels introduced in " -"1.7.0. Older format (numbers from 0-10) is compatible but deprecated." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/experimental.xml:1 -msgid "" -"<emphasis> This is an experimental feature, please use http://fedorahosted." -"org/sssd to report any issues. </emphasis>" -msgstr "" diff --git a/src/man/po/ru.po b/src/man/po/ru.po index b3bb926e6..dc18ff59d 100644 --- a/src/man/po/ru.po +++ b/src/man/po/ru.po @@ -3,13 +3,14 @@ # This file is distributed under the same license as the sssd-docs package. # # Translators: +# Artyom Kunyov <artkun@guitarplayer.ru>, 2012. msgid "" msgstr "" "Project-Id-Version: SSSD\n" "Report-Msgid-Bugs-To: sssd-devel@redhat.com\n" "POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-12-23 15:35+0000\n" -"Last-Translator: FULL NAME <EMAIL@ADDRESS>\n" +"PO-Revision-Date: 2012-03-08 11:52+0000\n" +"Last-Translator: sgallagh <sgallagh@redhat.com>\n" "Language-Team: Russian <trans-ru@lists.fedoraproject.org>\n" "Language: ru\n" "MIME-Version: 1.0\n" @@ -27,7 +28,7 @@ msgstr "" #: sss_debuglevel.8.xml:5 sss_ssh_authorizedkeys.1.xml:5 #: sss_ssh_knownhostsproxy.1.xml:5 msgid "SSSD Manual pages" -msgstr "" +msgstr "Справка по SSSD" #. type: Content of: <reference><refentry><refnamediv><refname> #: sss_groupmod.8.xml:10 sss_groupmod.8.xml:15 @@ -46,7 +47,7 @@ msgstr "" #. type: Content of: <reference><refentry><refnamediv><refpurpose> #: sss_groupmod.8.xml:16 msgid "modify a group" -msgstr "" +msgstr "изменить группу" #. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> #: sss_groupmod.8.xml:21 @@ -65,7 +66,7 @@ msgstr "" #: sss_cache.8.xml:29 sss_debuglevel.8.xml:30 sss_ssh_authorizedkeys.1.xml:30 #: sss_ssh_knownhostsproxy.1.xml:31 msgid "DESCRIPTION" -msgstr "" +msgstr "ОПИСАНИЕ" #. type: Content of: <reference><refentry><refsect1><para> #: sss_groupmod.8.xml:32 @@ -81,7 +82,7 @@ msgstr "" #: sss_cache.8.xml:38 sss_debuglevel.8.xml:38 sss_ssh_authorizedkeys.1.xml:78 #: sss_ssh_knownhostsproxy.1.xml:65 msgid "OPTIONS" -msgstr "" +msgstr "ОПЦИИ" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_groupmod.8.xml:43 sss_usermod.8.xml:77 @@ -121,7 +122,7 @@ msgstr "" #: sss_usermod.8.xml:138 sss_ssh_authorizedkeys.1.xml:96 #: sss_ssh_knownhostsproxy.1.xml:95 msgid "SEE ALSO" -msgstr "" +msgstr "СМ. ТАКЖЕ" #. type: Content of: <reference><refentry><refsect1><para> #: sss_groupmod.8.xml:74 @@ -140,13 +141,13 @@ msgstr "" #. type: Content of: <reference><refentry><refnamediv><refname> #: sssd.conf.5.xml:10 sssd.conf.5.xml:16 msgid "sssd.conf" -msgstr "" +msgstr "sssd.CONF" #. type: Content of: <reference><refentry><refmeta><manvolnum> #: sssd.conf.5.xml:11 sssd-ldap.5.xml:11 sssd-simple.5.xml:11 #: sssd-ipa.5.xml:11 sssd-krb5.5.xml:11 msgid "5" -msgstr "" +msgstr "5" #. type: Content of: <reference><refentry><refmeta><refmiscinfo> #: sssd.conf.5.xml:12 sssd-ldap.5.xml:12 sssd-simple.5.xml:12 @@ -158,12 +159,12 @@ msgstr "" #: sssd.conf.5.xml:17 sssd-ldap.5.xml:17 sssd_krb5_locator_plugin.8.xml:16 #: sssd-ipa.5.xml:17 sssd-krb5.5.xml:17 msgid "the configuration file for SSSD" -msgstr "" +msgstr "Файл конфигурации SSSD" #. type: Content of: <reference><refentry><refsect1><title> #: sssd.conf.5.xml:21 msgid "FILE FORMAT" -msgstr "" +msgstr "ФОРМАТ ФАЙЛА" #. type: Content of: <reference><refentry><refsect1><para><programlisting> #: sssd.conf.5.xml:29 @@ -242,7 +243,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:81 msgid "services" -msgstr "" +msgstr "службы" #. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:84 @@ -259,7 +260,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:94 sssd.conf.5.xml:257 msgid "reconnection_retries (integer)" -msgstr "" +msgstr "попыток_соединения (целое число)" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:97 sssd.conf.5.xml:260 @@ -271,12 +272,12 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:102 sssd.conf.5.xml:265 msgid "Default: 3" -msgstr "" +msgstr "По умолчанию: 3" #. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:107 msgid "domains" -msgstr "" +msgstr "домены" #. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:110 @@ -338,7 +339,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:157 msgid "Default: <quote>%1$s@%2$s</quote>." -msgstr "" +msgstr "По умолчанию: <quote>%1$s@%2$s</quote>." #. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:162 @@ -474,7 +475,7 @@ msgstr "" #: sssd-ipa.5.xml:123 sssd-ipa.5.xml:301 sssd-krb5.5.xml:235 #: sssd-krb5.5.xml:269 sssd-krb5.5.xml:418 msgid "Default: false" -msgstr "" +msgstr "По умолчанию: false" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:270 @@ -521,7 +522,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:303 msgid "Default: 120" -msgstr "" +msgstr "По умолчанию: 120" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:308 @@ -576,7 +577,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:349 sssd.conf.5.xml:669 sssd-krb5.5.xml:223 msgid "Default: 15" -msgstr "" +msgstr "По умолчанию: 15" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:354 @@ -595,7 +596,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:364 msgid "Default: root" -msgstr "" +msgstr "По умолчанию: root" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:369 @@ -776,7 +777,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:487 sssd.conf.5.xml:500 msgid "Default: 0 (No limit)" -msgstr "" +msgstr "По умолчанию: 0 (неограничено)" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:493 @@ -813,7 +814,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:520 sssd.conf.5.xml:573 sssd.conf.5.xml:1093 msgid "Default: 5" -msgstr "" +msgstr "По умолчанию: 5" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:526 @@ -830,7 +831,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:534 msgid "Currently sssd supports the following values:" -msgstr "" +msgstr "В настоящее время sssd поддерживает следующие значения:" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:537 @@ -855,7 +856,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:551 sssd.8.xml:63 msgid "Default: 1" -msgstr "" +msgstr "По умолчанию: 1" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:556 @@ -1027,7 +1028,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:715 sssd-ldap.5.xml:1131 msgid "Default: 10" -msgstr "" +msgstr "По умолчанию: 10" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:721 @@ -1054,7 +1055,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:734 sssd.conf.5.xml:839 sssd.conf.5.xml:893 msgid "Default: FALSE" -msgstr "" +msgstr "По умолчанию: FALSE" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:737 @@ -1443,7 +1444,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1063 msgid "Supported values:" -msgstr "" +msgstr "Поддерживаемые значения:" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1066 @@ -1498,7 +1499,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1106 msgid "Default: Use the domain part of machine's hostname" -msgstr "" +msgstr "По умолчанию: использовать доменное имя из hostname" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:1112 @@ -1615,7 +1616,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1199 msgid "Default: <filename>/home</filename>" -msgstr "" +msgstr "По умолчанию: <filename>/home</filename>" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:1204 @@ -1632,7 +1633,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1211 sssd.conf.5.xml:1223 msgid "Default: TRUE" -msgstr "" +msgstr "По умолчанию: TRUE" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:1216 @@ -1662,7 +1663,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1239 msgid "Default: 077" -msgstr "" +msgstr "По умолчанию: 077" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:1244 @@ -1681,7 +1682,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1257 msgid "Default: <filename>/etc/skel</filename>" -msgstr "" +msgstr "По умолчанию: <filename>/etc/skel</filename>" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:1262 @@ -1699,7 +1700,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1272 msgid "Default: <filename>/var/mail</filename>" -msgstr "" +msgstr "По умолчанию: <filename>/var/mail</filename>" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:1277 @@ -1723,7 +1724,7 @@ msgstr "" #: sssd.conf.5.xml:1296 sssd-ldap.5.xml:2064 sssd-simple.5.xml:126 #: sssd-ipa.5.xml:544 sssd-krb5.5.xml:432 msgid "EXAMPLE" -msgstr "" +msgstr "ПРИМЕР" #. type: Content of: <reference><refentry><refsect1><para><programlisting> #: sssd.conf.5.xml:1302 @@ -1819,7 +1820,7 @@ msgstr "" #: sssd-ldap.5.xml:49 sssd-simple.5.xml:69 sssd-ipa.5.xml:64 #: sssd-krb5.5.xml:63 msgid "CONFIGURATION OPTIONS" -msgstr "" +msgstr "ПАРАМЕТРЫ КОНФИГУРАЦИИ" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:60 @@ -1976,7 +1977,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:180 msgid "Default: rfc2307" -msgstr "" +msgstr "По умолчанию: rfc2307" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:186 @@ -2006,7 +2007,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:206 msgid "password" -msgstr "" +msgstr "пароль" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:209 @@ -2043,7 +2044,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:234 msgid "Default: posixAccount" -msgstr "" +msgstr "По умолчанию: posixAccount" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:240 @@ -2103,7 +2104,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:286 msgid "Default: gecos" -msgstr "" +msgstr "По умолчанию: gecos" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:292 @@ -2118,7 +2119,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:299 msgid "Default: homeDirectory" -msgstr "" +msgstr "По умолчанию: homeDirectory" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:305 @@ -2133,7 +2134,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:312 msgid "Default: loginShell" -msgstr "" +msgstr "По умолчанию: loginShell" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:318 @@ -2165,7 +2166,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:338 sssd-ldap.5.xml:779 sssd-ldap.5.xml:894 msgid "Default: modifyTimestamp" -msgstr "" +msgstr "По умолчанию: modifyTimestamp" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:344 @@ -2241,7 +2242,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:412 msgid "Default: shadowWarning" -msgstr "" +msgstr "По умолчанию: shadowWarning" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:418 @@ -2260,7 +2261,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:431 msgid "Default: shadowInactive" -msgstr "" +msgstr "По умолчанию: shadowInactive" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:437 @@ -2279,7 +2280,7 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:450 msgid "Default: shadowExpire" -msgstr "" +msgstr "По умолчанию: shadowExpire" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:456 diff --git a/src/man/po/sk.po b/src/man/po/sk.po deleted file mode 100644 index 01d5e61ef..000000000 --- a/src/man/po/sk.po +++ /dev/null @@ -1,6747 +0,0 @@ -# SOME DESCRIPTIVE TITLE -# Copyright (C) YEAR Red Hat -# This file is distributed under the same license as the sssd-docs package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@redhat.com\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-12-23 15:35+0000\n" -"Last-Translator: FULL NAME <EMAIL@ADDRESS>\n" -"Language-Team: Slovak (http://www.transifex.net/projects/p/fedora/team/sk/)\n" -"Language: sk\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=3; plural=(n==1) ? 0 : (n>=2 && n<=4) ? 1 : 2\n" - -#. type: Content of: <reference><title> -#: sss_groupmod.8.xml:5 sssd.conf.5.xml:5 sssd-ldap.5.xml:5 pam_sss.8.xml:5 -#: sssd_krb5_locator_plugin.8.xml:5 sssd-simple.5.xml:5 sssd-ipa.5.xml:5 -#: sssd.8.xml:5 sss_obfuscate.8.xml:5 sss_useradd.8.xml:5 sssd-krb5.5.xml:5 -#: sss_groupadd.8.xml:5 sss_userdel.8.xml:5 sss_groupdel.8.xml:5 -#: sss_groupshow.8.xml:5 sss_usermod.8.xml:5 sss_cache.8.xml:5 -#: sss_debuglevel.8.xml:5 sss_ssh_authorizedkeys.1.xml:5 -#: sss_ssh_knownhostsproxy.1.xml:5 -msgid "SSSD Manual pages" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupmod.8.xml:10 sss_groupmod.8.xml:15 -msgid "sss_groupmod" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_groupmod.8.xml:11 pam_sss.8.xml:14 sssd_krb5_locator_plugin.8.xml:11 -#: sssd.8.xml:11 sss_obfuscate.8.xml:11 sss_useradd.8.xml:11 -#: sss_groupadd.8.xml:11 sss_userdel.8.xml:11 sss_groupdel.8.xml:11 -#: sss_groupshow.8.xml:11 sss_usermod.8.xml:11 sss_cache.8.xml:11 -#: sss_debuglevel.8.xml:11 -msgid "8" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupmod.8.xml:16 -msgid "modify a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupmod.8.xml:21 -msgid "" -"<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:30 sssd-ldap.5.xml:21 pam_sss.8.xml:44 -#: sssd_krb5_locator_plugin.8.xml:20 sssd-simple.5.xml:22 sssd-ipa.5.xml:21 -#: sssd.8.xml:29 sss_obfuscate.8.xml:30 sss_useradd.8.xml:30 -#: sssd-krb5.5.xml:21 sss_groupadd.8.xml:30 sss_userdel.8.xml:30 -#: sss_groupdel.8.xml:30 sss_groupshow.8.xml:30 sss_usermod.8.xml:30 -#: sss_cache.8.xml:29 sss_debuglevel.8.xml:30 sss_ssh_authorizedkeys.1.xml:30 -#: sss_ssh_knownhostsproxy.1.xml:31 -msgid "DESCRIPTION" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:32 -msgid "" -"<command>sss_groupmod</command> modifies the group to reflect the changes " -"that are specified on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:39 pam_sss.8.xml:51 sssd.8.xml:42 sss_obfuscate.8.xml:58 -#: sss_useradd.8.xml:39 sss_groupadd.8.xml:39 sss_userdel.8.xml:39 -#: sss_groupdel.8.xml:39 sss_groupshow.8.xml:39 sss_usermod.8.xml:39 -#: sss_cache.8.xml:38 sss_debuglevel.8.xml:38 sss_ssh_authorizedkeys.1.xml:78 -#: sss_ssh_knownhostsproxy.1.xml:65 -msgid "OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:43 sss_usermod.8.xml:77 -msgid "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:48 -msgid "" -"Append this group to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:57 sss_usermod.8.xml:91 -msgid "" -"<option>-r</option>,<option>--remove-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:62 -msgid "" -"Remove this group from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:72 sssd.conf.5.xml:1331 sssd-ldap.5.xml:2096 -#: pam_sss.8.xml:139 sssd_krb5_locator_plugin.8.xml:75 sssd-simple.5.xml:143 -#: sssd-ipa.5.xml:562 sssd.8.xml:191 sss_obfuscate.8.xml:103 -#: sss_useradd.8.xml:167 sssd-krb5.5.xml:451 sss_groupadd.8.xml:58 -#: sss_userdel.8.xml:93 sss_groupdel.8.xml:46 sss_groupshow.8.xml:58 -#: sss_usermod.8.xml:138 sss_ssh_authorizedkeys.1.xml:96 -#: sss_ssh_knownhostsproxy.1.xml:95 -msgid "SEE ALSO" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:74 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.conf.5.xml:10 sssd.conf.5.xml:16 -msgid "sssd.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sssd.conf.5.xml:11 sssd-ldap.5.xml:11 sssd-simple.5.xml:11 -#: sssd-ipa.5.xml:11 sssd-krb5.5.xml:11 -msgid "5" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><refmiscinfo> -#: sssd.conf.5.xml:12 sssd-ldap.5.xml:12 sssd-simple.5.xml:12 -#: sssd-ipa.5.xml:12 sssd-krb5.5.xml:12 -msgid "File Formats and Conventions" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.conf.5.xml:17 sssd-ldap.5.xml:17 sssd_krb5_locator_plugin.8.xml:16 -#: sssd-ipa.5.xml:17 sssd-krb5.5.xml:17 -msgid "the configuration file for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:21 -msgid "FILE FORMAT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:29 -#, no-wrap -msgid "" -" <replaceable>[section]</replaceable>\n" -" <replaceable>key</replaceable> = <replaceable>value</replaceable>\n" -" <replaceable>key2</replaceable> = <replaceable>value2,value3</replaceable>\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:24 -msgid "" -"The file has an ini-style syntax and consists of sections and parameters. A " -"section begins with the name of the section in square brackets and continues " -"until the next section begins. An example of section with single and multi-" -"valued parameters: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:36 -msgid "" -"The data types used are string (no quotes needed), integer and bool (with " -"values of <quote>TRUE/FALSE</quote>)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:41 -msgid "" -"A line comment starts with a hash sign (<quote>#</quote>) or a semicolon " -"(<quote>;</quote>)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:46 -msgid "" -"All sections can have an optional <replaceable>description</replaceable> " -"parameter. Its function is only as a label for the section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:52 -msgid "" -"<filename>sssd.conf</filename> must be a regular file, owned by root and " -"only root may read from or write to the file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:58 -msgid "SPECIAL SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:61 -msgid "The [sssd] section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><title> -#: sssd.conf.5.xml:70 sssd.conf.5.xml:1177 -msgid "Section parameters" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:72 -msgid "config_file_version (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:75 -msgid "" -"Indicates what is the syntax of the config file. SSSD 0.6.0 and later use " -"version 2." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:81 -msgid "services" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:84 -msgid "" -"Comma separated list of services that are started when sssd itself starts." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:88 -msgid "" -"Supported services: nss, pam <phrase condition=\"with_sudo\">, sudo</phrase>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:94 sssd.conf.5.xml:257 -msgid "reconnection_retries (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:97 sssd.conf.5.xml:260 -msgid "" -"Number of times services should attempt to reconnect in the event of a Data " -"Provider crash or restart before they give up" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:102 sssd.conf.5.xml:265 -msgid "Default: 3" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:107 -msgid "domains" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:110 -msgid "" -"A domain is a database containing user information. SSSD can use more " -"domains at the same time, but at least one must be configured or SSSD won't " -"start. This parameter described the list of domains in the order you want " -"them to be queried." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:120 -msgid "re_expression (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:123 -msgid "" -"Regular expression that describes how to parse the string containing user " -"name and domain into these components." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:127 -msgid "" -"Default: <quote>(?P<name>[^@]+)@?(?P<domain>[^@]*$)</quote> " -"which translates to \"the name is everything up to the <quote>@</quote> " -"sign, the domain everything after that\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:132 -msgid "" -"PLEASE NOTE: the support for non-unique named subpatterns is not available " -"on all platforms (e.g. RHEL5 and SLES10). Only platforms with libpcre " -"version 7 or higher can support non-unique named subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:139 -msgid "" -"PLEASE NOTE ALSO: older version of libpcre only support the Python syntax (?" -"P<name>) to label subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:146 -msgid "full_name_format (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:149 -msgid "" -"A <citerefentry> <refentrytitle>printf</refentrytitle> <manvolnum>3</" -"manvolnum> </citerefentry>-compatible format that describes how to translate " -"a (name, domain) tuple into a fully qualified name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:157 -msgid "Default: <quote>%1$s@%2$s</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:162 -msgid "try_inotify (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:165 -msgid "" -"SSSD monitors the state of resolv.conf to identify when it needs to update " -"its internal DNS resolver. By default, we will attempt to use inotify for " -"this, and will fall back to polling resolv.conf every five seconds if " -"inotify cannot be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:173 -msgid "" -"There are some limited situations where it is preferred that we should skip " -"even trying to use inotify. In these rare cases, this option should be set " -"to 'false'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:179 -msgid "" -"Default: true on platforms where inotify is supported. False on other " -"platforms." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:183 -msgid "" -"Note: this option will have no effect on platforms where inotify is " -"unavailable. On these platforms, polling will always be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:190 -msgid "krb5_rcache_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:193 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:197 -msgid "" -"This option accepts a special value __LIBKRB5_DEFAULTS__ that will instruct " -"SSSD to let libkrb5 decide the appropriate location for the replay cache." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:203 -msgid "" -"Default: Distribution-specific and specified at build-time. " -"(__LIBKRB5_DEFAULTS__ if not configured)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:63 -msgid "" -"Individual pieces of SSSD functionality are provided by special SSSD " -"services that are started and stopped together with SSSD. The services are " -"managed by a special service frequently called <quote>monitor</quote>. The " -"<quote>[sssd]</quote> section is used to configure the monitor as well as " -"some other important options like the identity domains. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:216 -msgid "SERVICES SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:218 -msgid "" -"Settings that can be used to configure different services are described in " -"this section. They should reside in the [<replaceable>$NAME</replaceable>] " -"section, for example, for NSS service, the section would be <quote>[nss]</" -"quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:225 -msgid "General service configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:227 -msgid "These options can be used to configure any service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:231 -msgid "debug_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:235 -msgid "debug_timestamps (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:238 -msgid "Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:241 sssd.conf.5.xml:376 sssd-ldap.5.xml:1328 -#: sssd-ldap.5.xml:1446 sssd-ipa.5.xml:206 sssd-ipa.5.xml:241 -msgid "Default: true" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:246 -msgid "debug_microseconds (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:249 -msgid "Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:252 sssd.conf.5.xml:641 sssd-ldap.5.xml:602 -#: sssd-ldap.5.xml:1260 sssd-ldap.5.xml:1397 sssd-ldap.5.xml:1795 -#: sssd-ipa.5.xml:123 sssd-ipa.5.xml:301 sssd-krb5.5.xml:235 -#: sssd-krb5.5.xml:269 sssd-krb5.5.xml:418 -msgid "Default: false" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:270 -msgid "command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:273 -msgid "" -"By default, the executable representing this service is called <command>sssd_" -"${service_name}</command>. This directive allows to change the executable " -"name for the service. In the vast majority of configurations, the default " -"values should suffice." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:281 -msgid "Default: <command>sssd_${service_name}</command>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:289 -msgid "NSS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:291 -msgid "" -"These options can be used to configure the Name Service Switch (NSS) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:296 -msgid "enum_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:299 -msgid "" -"How many seconds should nss_sss cache enumerations (requests for info about " -"all users)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:303 -msgid "Default: 120" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:308 -msgid "entry_cache_nowait_percentage (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:311 -msgid "" -"The entry cache can be set to automatically update entries in the background " -"if they are requested beyond a percentage of the entry_cache_timeout value " -"for the domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:317 -msgid "" -"For example, if the domain's entry_cache_timeout is set to 30s and " -"entry_cache_nowait_percentage is set to 50 (percent), entries that come in " -"after 15 seconds past the last cache update will be returned immediately, " -"but the SSSD will go and update the cache on its own, so that future " -"requests will not need to block waiting for a cache update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:327 -msgid "" -"Valid values for this option are 0-99 and represent a percentage of the " -"entry_cache_timeout for each domain. For performance reasons, this " -"percentage will never reduce the nowait timeout to less than 10 seconds. (0 " -"disables this feature)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:335 -msgid "Default: 50" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:340 -msgid "entry_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:343 -msgid "" -"Specifies for how many seconds nss_sss should cache negative cache hits " -"(that is, queries for invalid database entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:349 sssd.conf.5.xml:669 sssd-krb5.5.xml:223 -msgid "Default: 15" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:354 -msgid "filter_users, filter_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:357 -msgid "" -"Exclude certain users from being fetched from the sss NSS database. This is " -"particularly useful for system accounts. This option can also be set per-" -"domain or include fully-qualified names to filter only users from the " -"particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:364 -msgid "Default: root" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:369 -msgid "filter_users_in_groups (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:372 -msgid "" -"If you want filtered user still be group members set this option to false." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:381 -msgid "override_homedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:390 sssd-krb5.5.xml:166 -msgid "%u" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:391 sssd-krb5.5.xml:167 -msgid "login name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:394 sssd-krb5.5.xml:170 -msgid "%U" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:395 -msgid "UID number" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:398 sssd-krb5.5.xml:188 -msgid "%d" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:399 -msgid "domain name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:402 -msgid "%f" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:403 -msgid "fully qualified user name (user@domain)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:406 sssd-krb5.5.xml:200 -msgid "%%" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:407 sssd-krb5.5.xml:201 -msgid "a literal '%'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:384 -msgid "" -"Override the user's home directory. You can either provide an absolute value " -"or a template. In the template, the following sequences are substituted: " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:413 -msgid "This option can also be set per-domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:418 -msgid "allowed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:421 -msgid "" -"Restrict user shell to one of the listed values. The order of evaluation is:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:424 -msgid "1. If the shell is present in <quote>/etc/shells</quote>, it is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:428 -msgid "" -"2. If the shell is in the allowed_shells list but not in <quote>/etc/shells</" -"quote>, use the value of the shell_fallback parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:433 -msgid "" -"3. If the shell is not in the allowed_shells list and not in <quote>/etc/" -"shells</quote>, a nologin shell is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:438 -msgid "An empty string for shell is passed as-is to libc." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:441 -msgid "" -"The <quote>/etc/shells</quote> is only read on SSSD start up, which means " -"that a restart of the SSSD is required in case a new shell is installed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:445 -msgid "Default: Not set. The user shell is automatically used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:450 -msgid "vetoed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:453 -msgid "Replace any instance of these shells with the shell_fallback" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:458 -msgid "shell_fallback (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:461 -msgid "" -"The default shell to use if an allowed shell is not installed on the machine." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:465 -msgid "Default: /bin/sh" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:472 -msgid "PAM configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:474 -msgid "" -"These options can be used to configure the Pluggable Authentication Module " -"(PAM) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:479 -msgid "offline_credentials_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:482 -msgid "" -"If the authentication provider is offline, how long should we allow cached " -"logins (in days since the last successful online login)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:487 sssd.conf.5.xml:500 -msgid "Default: 0 (No limit)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:493 -msgid "offline_failed_login_attempts (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:496 -msgid "" -"If the authentication provider is offline, how many failed login attempts " -"are allowed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:506 -msgid "offline_failed_login_delay (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:509 -msgid "" -"The time in minutes which has to pass after offline_failed_login_attempts " -"has been reached before a new login attempt is possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:514 -msgid "" -"If set to 0 the user cannot authenticate offline if " -"offline_failed_login_attempts has been reached. Only a successful online " -"authentication can enable offline authentication again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:520 sssd.conf.5.xml:573 sssd.conf.5.xml:1093 -msgid "Default: 5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:526 -msgid "pam_verbosity (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:529 -msgid "" -"Controls what kind of messages are shown to the user during authentication. " -"The higher the number to more messages are displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:534 -msgid "Currently sssd supports the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:537 -msgid "<emphasis>0</emphasis>: do not show any message" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:540 -msgid "<emphasis>1</emphasis>: show only important messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:544 -msgid "<emphasis>2</emphasis>: show informational messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:547 -msgid "<emphasis>3</emphasis>: show all messages and debug information" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:551 sssd.8.xml:63 -msgid "Default: 1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:556 -msgid "pam_id_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:559 -msgid "" -"For any PAM request while SSSD is online, the SSSD will attempt to " -"immediately update the cached identity information for the user in order to " -"ensure that authentication takes place with the latest information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:565 -msgid "" -"A complete PAM conversation may perform multiple PAM requests, such as " -"account management and session opening. This option controls (on a per-" -"client-application basis) how long (in seconds) we can cache the identity " -"information to avoid excessive round-trips to the identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:579 -msgid "pam_pwd_expiration_warning (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:582 -msgid "Display a warning N days before the password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:585 -msgid "" -"Please note that the backend server has to provide information about the " -"expiration time of the password. If this information is missing, sssd " -"cannot display a warning." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:591 -msgid "Default: 7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:599 -msgid "SUDO configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:601 -msgid "These options can be used to configure the sudo service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:608 -msgid "sudo_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:611 -msgid "" -"For any sudo request that comes while SSSD is online, the SSSD will attempt " -"to update the cached rules in order to ensure that sudo has the latest " -"ruleset." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:617 -msgid "" -"The user may, however, run a couple of sudo commands successively, which " -"would trigger multiple LDAP requests. In order to speed up this use-case, " -"the sudo service maintains an in-memory cache that would be used for " -"performing fast replies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:624 -msgid "" -"This option controls how long (in seconds) can the sudo service cache rules " -"for a user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:628 -msgid "Default: 180" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:633 -msgid "sudo_timed (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:636 -msgid "" -"Whether or not to evaluate the sudoNotBefore and sudoNotAfter attributes " -"that implement time-dependent sudoers entries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:649 -msgid "AUTOFS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:651 -msgid "These options can be used to configure the autofs service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:659 -msgid "autofs_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:662 -msgid "" -"Specifies for how many seconds should the autofs responder negative cache " -"hits (that is, queries for invalid map entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:679 -msgid "DOMAIN SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:686 -msgid "min_id,max_id (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:689 -msgid "" -"UID and GID limits for the domain. If a domain contains an entry that is " -"outside these limits, it is ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:694 -msgid "" -"For users, this affects the primary GID limit. The user will not be returned " -"to NSS if either the UID or the primary GID is outside the range. For non-" -"primary group memberships, those that are in range will be reported as " -"expected." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:701 -msgid "Default: 1 for min_id, 0 (no limit) for max_id" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:707 -msgid "timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:710 -msgid "" -"Timeout in seconds between heartbeats for this domain. This is used to " -"ensure that the backend process is alive and capable of answering requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:715 sssd-ldap.5.xml:1131 -msgid "Default: 10" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:721 -msgid "enumerate (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:724 -msgid "" -"Determines if a domain can be enumerated. This parameter can have one of the " -"following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:728 -msgid "TRUE = Users and groups are enumerated" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:731 -msgid "FALSE = No enumerations for this domain" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:734 sssd.conf.5.xml:839 sssd.conf.5.xml:893 -msgid "Default: FALSE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:737 -msgid "" -"Note: Enabling enumeration has a moderate performance impact on SSSD while " -"enumeration is running. It may take up to several minutes after SSSD startup " -"to fully complete enumerations. During this time, individual requests for " -"information will go directly to LDAP, though it may be slow, due to the " -"heavy enumeration processing." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:747 -msgid "" -"While the first enumeration is running, requests for the complete user or " -"group lists may return no results until it completes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:752 -msgid "" -"Further, enabling enumeration may increase the time necessary to detect " -"network disconnection, as longer timeouts are required to ensure that " -"enumeration lookups are completed successfully. For more information, refer " -"to the man pages for the specific id_provider in use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:763 -msgid "entry_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:766 -msgid "" -"How many seconds should nss_sss consider entries valid before asking the " -"backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:770 -msgid "Default: 5400" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:776 -msgid "entry_cache_user_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:779 -msgid "" -"How many seconds should nss_sss consider user entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:783 sssd.conf.5.xml:796 sssd.conf.5.xml:809 -#: sssd.conf.5.xml:822 -msgid "Default: entry_cache_timeout" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:789 -msgid "entry_cache_group_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:792 -msgid "" -"How many seconds should nss_sss consider group entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:802 -msgid "entry_cache_netgroup_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:805 -msgid "" -"How many seconds should nss_sss consider netgroup entries valid before " -"asking the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:815 -msgid "entry_cache_service_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:818 -msgid "" -"How many seconds should nss_sss consider service entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:828 -msgid "cache_credentials (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:831 -msgid "Determines if user credentials are also cached in the local LDB cache" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:835 -msgid "User credentials are stored in a SHA512 hash, not in plaintext" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:844 -msgid "account_cache_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:847 -msgid "" -"Number of days entries are left in cache after last successful login before " -"being removed during a cleanup of the cache. 0 means keep forever. The " -"value of this parameter must be greater than or equal to " -"offline_credentials_expiration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:854 -msgid "Default: 0 (unlimited)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:860 -msgid "id_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:863 -msgid "The Data Provider identity backend to use for this domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:867 -msgid "Supported backends:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:870 -msgid "proxy: Support a legacy NSS provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:873 -msgid "local: SSSD internal local provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:876 -msgid "ldap: LDAP provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:882 -msgid "use_fully_qualified_names (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:885 -msgid "" -"If set to TRUE, all requests to this domain must use fully qualified names. " -"For example, if used in LOCAL domain that contains a \"test\" user, " -"<command>getent passwd test</command> wouldn't find the user while " -"<command>getent passwd test@LOCAL</command> would." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:898 -msgid "auth_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:901 -msgid "" -"The authentication provider used for the domain. Supported auth providers " -"are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:905 -msgid "" -"<quote>ldap</quote> for native LDAP authentication. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:912 -msgid "" -"<quote>krb5</quote> for Kerberos authentication. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:919 -msgid "" -"<quote>proxy</quote> for relaying authentication to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:922 -msgid "<quote>none</quote> disables authentication explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:925 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"authentication requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:931 -msgid "access_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:934 -msgid "" -"The access control provider used for the domain. There are two built-in " -"access providers (in addition to any included in installed backends) " -"Internal special providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:940 -msgid "<quote>permit</quote> always allow access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:943 -msgid "<quote>deny</quote> always deny access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:946 -msgid "" -"<quote>simple</quote> access control based on access or deny lists. See " -"<citerefentry> <refentrytitle>sssd-simple</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry> for more information on configuring the simple " -"access module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:953 -msgid "Default: <quote>permit</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:958 -msgid "chpass_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:961 -msgid "" -"The provider which should handle change password operations for the domain. " -"Supported change password providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:966 -msgid "" -"<quote>ipa</quote> to change a password stored in an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:974 -msgid "" -"<quote>ldap</quote> to change a password stored in a LDAP server. See " -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:982 -msgid "" -"<quote>krb5</quote> to change the Kerberos password. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:990 -msgid "" -"<quote>proxy</quote> for relaying password changes to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:994 -msgid "<quote>none</quote> disallows password changes explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:997 -msgid "" -"Default: <quote>auth_provider</quote> is used if it is set and can handle " -"change password requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1004 -msgid "sudo_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1010 -msgid "The SUDO provider used for the domain. Supported SUDO providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1014 -msgid "" -"<quote>ldap</quote> for rules stored in LDAP. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1021 -msgid "<quote>none</quote> disables SUDO explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1024 -msgid "Default: The value of <quote>id_provider</quote> is used if it is set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1030 -msgid "session_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1033 -msgid "" -"The provider which should handle loading of session settings. Supported " -"session providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1038 -msgid "" -"<quote>ipa</quote> to load session settings from an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1046 -msgid "<quote>none</quote> disallows fetching session settings explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1049 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"session loading requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1056 -msgid "lookup_family_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1059 -msgid "" -"Provides the ability to select preferred address family to use when " -"performing DNS lookups." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1063 -msgid "Supported values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1066 -msgid "ipv4_first: Try looking up IPv4 address, if that fails, try IPv6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1069 -msgid "ipv4_only: Only attempt to resolve hostnames to IPv4 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1072 -msgid "ipv6_first: Try looking up IPv6 address, if that fails, try IPv4" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1075 -msgid "ipv6_only: Only attempt to resolve hostnames to IPv6 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1078 -msgid "Default: ipv4_first" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1084 -msgid "dns_resolver_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1087 -msgid "" -"Defines the amount of time (in seconds) to wait for a reply from the DNS " -"resolver before assuming that it is unreachable. If this timeout is reached, " -"the domain will continue to operate in offline mode." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1099 -msgid "dns_discovery_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1102 -msgid "" -"If service discovery is used in the back end, specifies the domain part of " -"the service discovery DNS query." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1106 -msgid "Default: Use the domain part of machine's hostname" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1112 -msgid "override_gid (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1115 -msgid "Override the primary GID value with the one specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1121 -msgid "case_sensitive (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1124 -msgid "" -"Treat user and group names as case sensitive. At the moment, this option is " -"not supported in the local provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1129 -msgid "Default: True" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:681 -msgid "" -"These configuration options can be present in a domain configuration " -"section, that is, in a section called <quote>[domain/<replaceable>NAME</" -"replaceable>]</quote> <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1141 -msgid "proxy_pam_target (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1144 -msgid "The proxy target PAM proxies to." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1147 -msgid "" -"Default: not set by default, you have to take an existing pam configuration " -"or create a new one and add the service name here." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1155 -msgid "proxy_lib_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1158 -msgid "" -"The name of the NSS library to use in proxy domains. The NSS functions " -"searched for in the library are in the form of _nss_$(libName)_$(function), " -"for example _nss_files_getpwent." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1137 -msgid "" -"Options valid for proxy domains. <placeholder type=\"variablelist\" id=" -"\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:1170 -msgid "The local domain section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:1172 -msgid "" -"This section contains settings for domain that stores users and groups in " -"SSSD native database, that is, a domain that uses " -"<replaceable>id_provider=local</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1179 -msgid "default_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1182 -msgid "The default shell for users created with SSSD userspace tools." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1186 -msgid "Default: <filename>/bin/bash</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1191 -msgid "base_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1194 -msgid "" -"The tools append the login name to <replaceable>base_directory</replaceable> " -"and use that as the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1199 -msgid "Default: <filename>/home</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1204 -msgid "create_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1207 -msgid "" -"Indicate if a home directory should be created by default for new users. " -"Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1211 sssd.conf.5.xml:1223 -msgid "Default: TRUE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1216 -msgid "remove_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1219 -msgid "" -"Indicate if a home directory should be removed by default for deleted " -"users. Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1228 -msgid "homedir_umask (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1231 -msgid "" -"Used by <citerefentry> <refentrytitle>sss_useradd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry> to specify the default permissions " -"on a newly created home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1239 -msgid "Default: 077" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1244 -msgid "skel_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1247 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<citerefentry> <refentrytitle>sss_useradd</refentrytitle> <manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1257 -msgid "Default: <filename>/etc/skel</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1262 -msgid "mail_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1265 -msgid "" -"The mail spool directory. This is needed to manipulate the mailbox when its " -"corresponding user account is modified or deleted. If not specified, a " -"default value is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1272 -msgid "Default: <filename>/var/mail</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1277 -msgid "userdel_cmd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1280 -msgid "" -"The command that is run after a user is removed. The command us passed the " -"username of the user being removed as the first and only parameter. The " -"return code of the command is not taken into account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1286 -msgid "Default: None, no command is run" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:1296 sssd-ldap.5.xml:2064 sssd-simple.5.xml:126 -#: sssd-ipa.5.xml:544 sssd-krb5.5.xml:432 -msgid "EXAMPLE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:1302 -#, no-wrap -msgid "" -"[sssd]\n" -"domains = LDAP\n" -"services = nss, pam\n" -"config_file_version = 2\n" -"\n" -"[nss]\n" -"filter_groups = root\n" -"filter_users = root\n" -"\n" -"[pam]\n" -"\n" -"[domain/LDAP]\n" -"id_provider = ldap\n" -"ldap_uri = ldap://ldap.example.com\n" -"ldap_search_base = dc=example,dc=com\n" -"\n" -"auth_provider = krb5\n" -"krb5_server = kerberos.example.com\n" -"krb5_realm = EXAMPLE.COM\n" -"cache_credentials = true\n" -"\n" -"min_id = 10000\n" -"max_id = 20000\n" -"enumerate = False\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1298 -msgid "" -"The following example shows a typical SSSD config. It does not describe " -"configuration of the domains themselves - refer to documentation on " -"configuring domains for more details. <placeholder type=\"programlisting\" " -"id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1333 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>pam_sss</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ldap.5.xml:10 sssd-ldap.5.xml:16 -msgid "sssd-ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:23 -msgid "" -"This manual page describes the configuration of LDAP domains for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. Refer to the <quote>FILE FORMAT</quote> section of the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for detailed syntax information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:35 -msgid "You can configure SSSD to use more than one LDAP domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:38 -msgid "" -"LDAP back end supports id, auth, access and chpass providers. If you want to " -"authenticate against an LDAP server either TLS/SSL or LDAPS is required. " -"<command>sssd</command> <emphasis>does not</emphasis> support authentication " -"over an unencrypted channel. If the LDAP server is used only as an identity " -"provider, an encrypted channel is not needed. Please refer to " -"<quote>ldap_access_filter</quote> config option for more information about " -"using LDAP as an access provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:49 sssd-simple.5.xml:69 sssd-ipa.5.xml:64 -#: sssd-krb5.5.xml:63 -msgid "CONFIGURATION OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:60 -msgid "ldap_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:63 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference. Refer to the <quote>FAILOVER</" -"quote> section for more information on failover and server redundancy. If " -"not specified, service discovery is enabled. For more information, refer to " -"the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:70 -msgid "The format of the URI must match the format defined in RFC 2732:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:73 -msgid "ldap[s]://<host>[:port]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:76 -msgid "" -"For explicit IPv6 addresses, <host> must be enclosed in brackets []" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:79 -msgid "example: ldap://[fc00::126:25]:389" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:85 -msgid "ldap_chpass_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:88 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference to change the password of a user. " -"Refer to the <quote>FAILOVER</quote> section for more information on " -"failover and server redundancy." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:95 -msgid "To enable service discovery ldap_chpass_dns_service_name must be set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:99 -msgid "Default: empty, i.e. ldap_uri is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:105 -msgid "ldap_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:108 -msgid "The default base DN to use for performing LDAP user operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:112 -msgid "" -"Starting with SSSD 1.7.0, SSSD supports multiple search bases using the " -"syntax:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:116 -msgid "search_base[?scope?[filter][?search_base?scope?[filter]]*]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:119 -msgid "The scope can be one of \"base\", \"onelevel\" or \"subtree\"." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:122 -msgid "" -"The filter must be a valid LDAP search filter as specified by http://www." -"ietf.org/rfc/rfc2254.txt" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:126 -msgid "Examples:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:129 -msgid "" -"ldap_search_base = dc=example,dc=com (which is equivalent to) " -"ldap_search_base = dc=example,dc=com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:134 -msgid "" -"ldap_search_base = cn=host_specific,dc=example,dc=com?subtree?" -"(host=thishost)?dc=example.com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:137 -msgid "" -"Note: It is unsupported to have multiple search bases which reference " -"identically-named objects (for example, groups with the same name in two " -"different search bases). This will lead to unpredictable behavior on client " -"machines." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:144 -msgid "" -"Default: If not set, the value of the defaultNamingContext or namingContexts " -"attribute from the RootDSE of the LDAP server is used. If " -"defaultNamingContext does not exists or has an empty value namingContexts is " -"used. The namingContexts attribute must have a single value with the DN of " -"the search base of the LDAP server to make this work. Multiple values are " -"are not supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:158 -msgid "ldap_schema (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:161 -msgid "" -"Specifies the Schema Type in use on the target LDAP server. Depending on " -"the selected schema, the default attribute names retrieved from the servers " -"may vary. The way that some attributes are handled may also differ. Three " -"schema types are currently supported: rfc2307 rfc2307bis IPA The main " -"difference between these schema types is how group memberships are recorded " -"in the server. With rfc2307, group members are listed by name in the " -"<emphasis>memberUid</emphasis> attribute. With rfc2307bis and IPA, group " -"members are listed by DN and stored in the <emphasis>member</emphasis> " -"attribute." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:180 -msgid "Default: rfc2307" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:186 -msgid "ldap_default_bind_dn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:189 -msgid "The default bind DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:196 -msgid "ldap_default_authtok_type (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:199 -msgid "The type of the authentication token of the default bind DN." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:203 -msgid "The two mechanisms currently supported are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:206 -msgid "password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:209 -msgid "obfuscated_password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:212 -msgid "Default: password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:218 -msgid "ldap_default_authtok (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:221 -msgid "" -"The authentication token of the default bind DN. Only clear text passwords " -"are currently supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:228 -msgid "ldap_user_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:231 -msgid "The object class of a user entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:234 -msgid "Default: posixAccount" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:240 -msgid "ldap_user_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:243 -msgid "The LDAP attribute that corresponds to the user's login name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:247 -msgid "Default: uid" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:253 -msgid "ldap_user_uid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:256 -msgid "The LDAP attribute that corresponds to the user's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:260 -msgid "Default: uidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:266 -msgid "ldap_user_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:269 -msgid "The LDAP attribute that corresponds to the user's primary group id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:273 sssd-ldap.5.xml:740 -msgid "Default: gidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:279 -msgid "ldap_user_gecos (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:282 -msgid "The LDAP attribute that corresponds to the user's gecos field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:286 -msgid "Default: gecos" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:292 -msgid "ldap_user_home_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:295 -msgid "The LDAP attribute that contains the name of the user's home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:299 -msgid "Default: homeDirectory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:305 -msgid "ldap_user_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:308 -msgid "The LDAP attribute that contains the path to the user's default shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:312 -msgid "Default: loginShell" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:318 -msgid "ldap_user_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:321 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP user object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:325 sssd-ldap.5.xml:766 sssd-ldap.5.xml:878 -msgid "Default: nsUniqueId" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:331 -msgid "ldap_user_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:334 sssd-ldap.5.xml:775 sssd-ldap.5.xml:887 -msgid "" -"The LDAP attribute that contains timestamp of the last modification of the " -"parent object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:338 sssd-ldap.5.xml:779 sssd-ldap.5.xml:894 -msgid "Default: modifyTimestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:344 -msgid "ldap_user_shadow_last_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:347 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (date of " -"the last password change)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:357 -msgid "Default: shadowLastChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:363 -msgid "ldap_user_shadow_min (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:366 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (minimum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:375 -msgid "Default: shadowMin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:381 -msgid "ldap_user_shadow_max (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:384 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (maximum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:393 -msgid "Default: shadowMax" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:399 -msgid "ldap_user_shadow_warning (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:402 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password warning period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:412 -msgid "Default: shadowWarning" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:418 -msgid "ldap_user_shadow_inactive (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:421 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password inactivity period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:431 -msgid "Default: shadowInactive" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:437 -msgid "ldap_user_shadow_expire (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:440 -msgid "" -"When using ldap_pwd_policy=shadow or ldap_account_expire_policy=shadow, this " -"parameter contains the name of an LDAP attribute corresponding to its " -"<citerefentry> <refentrytitle>shadow</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> counterpart (account expiration date)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:450 -msgid "Default: shadowExpire" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:456 -msgid "ldap_user_krb_last_pwd_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:459 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time of last password change in " -"kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:465 -msgid "Default: krbLastPwdChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:471 -msgid "ldap_user_krb_password_expiration (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:474 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time when current password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:480 -msgid "Default: krbPasswordExpiration" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:486 -msgid "ldap_user_ad_account_expires (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:489 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the expiration time of the account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:494 -msgid "Default: accountExpires" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:500 -msgid "ldap_user_ad_user_account_control (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:503 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the user account control bit field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:508 -msgid "Default: userAccountControl" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:514 -msgid "ldap_ns_account_lock (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:517 -msgid "" -"When using ldap_account_expire_policy=rhds or equivalent, this parameter " -"determines if access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:522 -msgid "Default: nsAccountLock" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:528 -msgid "ldap_user_nds_login_disabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:531 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines if " -"access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:535 sssd-ldap.5.xml:549 -msgid "Default: loginDisabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:541 -msgid "ldap_user_nds_login_expiration_time (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:544 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines until " -"which date access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:555 -msgid "ldap_user_nds_login_allowed_time_map (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:558 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines the " -"hours of a day in a week when access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:563 -msgid "Default: loginAllowedTimeMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:569 -msgid "ldap_user_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:572 -msgid "" -"The LDAP attribute that contains the user's Kerberos User Principal Name " -"(UPN)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:576 -msgid "Default: krbPrincipalName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:582 -msgid "ldap_user_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:585 -msgid "The LDAP attribute that contains the user's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:592 -msgid "ldap_force_upper_case_realm (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:595 -msgid "" -"Some directory servers, for example Active Directory, might deliver the " -"realm part of the UPN in lower case, which might cause the authentication to " -"fail. Set this option to a non-zero value if you want to use an upper-case " -"realm." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:608 -msgid "ldap_enumeration_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:611 -msgid "" -"Specifies how many seconds SSSD has to wait before refreshing its cache of " -"enumerated records." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:616 sssd-ldap.5.xml:1808 -msgid "Default: 300" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:622 -msgid "ldap_purge_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:625 -msgid "" -"Determine how often to check the cache for inactive entries (such as groups " -"with no members and users who have never logged in) and remove them to save " -"space." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:631 -msgid "Setting this option to zero will disable the cache cleanup operation." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:635 -msgid "Default: 10800 (12 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:641 -msgid "ldap_user_fullname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:644 -msgid "The LDAP attribute that corresponds to the user's full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:648 sssd-ldap.5.xml:727 sssd-ldap.5.xml:828 -#: sssd-ldap.5.xml:919 sssd-ldap.5.xml:1663 sssd-ldap.5.xml:1881 -#: sssd-ipa.5.xml:422 -msgid "Default: cn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:654 -msgid "ldap_user_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:657 -msgid "The LDAP attribute that lists the user's group memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:661 sssd-ipa.5.xml:326 -msgid "Default: memberOf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:667 -msgid "ldap_user_authorized_service (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:670 -msgid "" -"If access_provider=ldap and ldap_access_order=authorized_service, SSSD will " -"use the presence of the authorizedService attribute in the user's LDAP entry " -"to determine access privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:677 -msgid "" -"An explicit deny (!svc) is resolved first. Second, SSSD searches for " -"explicit allow (svc) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:682 -msgid "Default: authorizedService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:688 -msgid "ldap_user_authorized_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:691 -msgid "" -"If access_provider=ldap and ldap_access_order=host, SSSD will use the " -"presence of the host attribute in the user's LDAP entry to determine access " -"privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:697 -msgid "" -"An explicit deny (!host) is resolved first. Second, SSSD searches for " -"explicit allow (host) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:702 -msgid "Default: host" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:708 -msgid "ldap_group_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:711 -msgid "The object class of a group entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:714 -msgid "Default: posixGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:720 -msgid "ldap_group_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:723 -msgid "The LDAP attribute that corresponds to the group name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:733 -msgid "ldap_group_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:736 -msgid "The LDAP attribute that corresponds to the group's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:746 -msgid "ldap_group_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:749 -msgid "The LDAP attribute that contains the names of the group's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:753 -msgid "Default: memberuid (rfc2307) / member (rfc2307bis)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:759 -msgid "ldap_group_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:762 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP group object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:772 -msgid "ldap_group_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:785 -msgid "ldap_group_nesting_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:788 -msgid "" -"If ldap_schema is set to a schema format that supports nested groups (e.g. " -"RFC2307bis), then this option controls how many levels of nesting SSSD will " -"follow. This option has no effect on the RFC2307 schema." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:795 -msgid "Default: 2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:801 -msgid "ldap_netgroup_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:804 -msgid "The object class of a netgroup entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:807 -msgid "In IPA provider, ipa_netgroup_object_class should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:811 -msgid "Default: nisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:817 -msgid "ldap_netgroup_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:820 -msgid "The LDAP attribute that corresponds to the netgroup name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:824 -msgid "In IPA provider, ipa_netgroup_name should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:834 -msgid "ldap_netgroup_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:837 -msgid "The LDAP attribute that contains the names of the netgroup's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:841 -msgid "In IPA provider, ipa_netgroup_member should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:845 -msgid "Default: memberNisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:851 -msgid "ldap_netgroup_triple (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:854 -msgid "" -"The LDAP attribute that contains the (host, user, domain) netgroup triples." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:858 sssd-ldap.5.xml:891 -msgid "This option is not available in IPA provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:861 -msgid "Default: nisNetgroupTriple" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:867 -msgid "ldap_netgroup_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:870 -msgid "" -"The LDAP attribute that contains the UUID/GUID of an LDAP netgroup object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:874 -msgid "In IPA provider, ipa_netgroup_uuid should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:884 -msgid "ldap_netgroup_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:900 -msgid "ldap_service_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:903 -msgid "The object class of a service entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:906 -msgid "Default: ipService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:912 -msgid "ldap_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:915 -msgid "" -"The LDAP attribute that contains the name of service attributes and their " -"aliases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:925 -msgid "ldap_service_port (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:928 -msgid "The LDAP attribute that contains the port managed by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:932 -msgid "Default: ipServicePort" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:938 -msgid "ldap_service_proto (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:941 -msgid "" -"The LDAP attribute that contains the protocols understood by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:945 -msgid "Default: ipServiceProtocol" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:951 -msgid "ldap_service_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:954 -msgid "An optional base DN to restrict service searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:958 sssd-ldap.5.xml:1918 sssd-ldap.5.xml:1937 -#: sssd-ldap.5.xml:1956 sssd-ldap.5.xml:2019 sssd-ldap.5.xml:2041 -#: sssd-ipa.5.xml:163 sssd-ipa.5.xml:187 -msgid "" -"See <quote>ldap_search_base</quote> for information about configuring " -"multiple search bases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:963 sssd-ldap.5.xml:1923 sssd-ldap.5.xml:1942 -#: sssd-ldap.5.xml:1961 sssd-ldap.5.xml:2024 sssd-ldap.5.xml:2046 -#: sssd-ipa.5.xml:173 sssd-ipa.5.xml:192 -msgid "Default: the value of <emphasis>ldap_search_base</emphasis>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:970 -msgid "ldap_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:973 -msgid "" -"Specifies the timeout (in seconds) that ldap searches are allowed to run " -"before they are cancelled and cached results are returned (and offline mode " -"is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:979 -msgid "" -"Note: this option is subject to change in future versions of the SSSD. It " -"will likely be replaced at some point by a series of timeouts for specific " -"lookup types." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:985 sssd-ldap.5.xml:1027 sssd-ldap.5.xml:1042 -msgid "Default: 6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:991 -msgid "ldap_enumeration_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:994 -msgid "" -"Specifies the timeout (in seconds) that ldap searches for user and group " -"enumerations are allowed to run before they are cancelled and cached results " -"are returned (and offline mode is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1001 -msgid "Default: 60" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1007 -msgid "ldap_network_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1010 -msgid "" -"Specifies the timeout (in seconds) after which the <citerefentry> " -"<refentrytitle>poll</refentrytitle> <manvolnum>2</manvolnum> </citerefentry>/" -"<citerefentry> <refentrytitle>select</refentrytitle> <manvolnum>2</" -"manvolnum> </citerefentry> following a <citerefentry> " -"<refentrytitle>connect</refentrytitle> <manvolnum>2</manvolnum> </" -"citerefentry> returns in case of no activity." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1033 -msgid "ldap_opt_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1036 -msgid "" -"Specifies a timeout (in seconds) after which calls to synchronous LDAP APIs " -"will abort if no response is received. Also controls the timeout when " -"communicating with the KDC in case of SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1048 -msgid "ldap_connection_expire_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1051 -msgid "" -"Specifies a timeout (in seconds) that a connection to an LDAP server will be " -"maintained. After this time, the connection will be re-established. If used " -"in parallel with SASL/GSSAPI, the sooner of the two values (this value vs. " -"the TGT lifetime) will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1059 -msgid "Default: 900 (15 minutes)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1065 -msgid "ldap_page_size (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1068 -msgid "" -"Specify the number of records to retrieve from LDAP in a single request. " -"Some LDAP servers enforce a maximum limit per-request." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1073 -msgid "Default: 1000" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1079 -msgid "ldap_disable_paging" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1082 -msgid "" -"Disable the LDAP paging control. This option should be used if the LDAP " -"server reports that it supports the LDAP paging control in its RootDSE but " -"it is not enabled or does not behave properly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1088 -msgid "" -"Example: OpenLDAP servers with the paging control module installed on the " -"server but not enabled will report it in the RootDSE but be unable to use it." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1094 -msgid "" -"Example: 389 DS has a bug where it can only support a one paging control at " -"a time on a single connection. On busy clients, this can result in some " -"requests being denied." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1103 -msgid "ldap_deref_threshold (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1106 -msgid "" -"Specify the number of group members that must be missing from the internal " -"cache in order to trigger a dereference lookup. If less members are missing, " -"they are looked up individually." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1112 -msgid "" -"You can turn off dereference lookups completely by setting the value to 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1116 -msgid "" -"A dereference lookup is a means of fetching all group members in a single " -"LDAP call. Different LDAP servers may implement different dereference " -"methods. The currently supported servers are 389/RHDS, OpenLDAP and Active " -"Directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1124 -msgid "" -"<emphasis>Note:</emphasis> If any of the search bases specifies a search " -"filter, then the dereference lookup performance enhancement will be disabled " -"regardless of this setting." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1137 -msgid "ldap_tls_reqcert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1140 -msgid "" -"Specifies what checks to perform on server certificates in a TLS session, if " -"any. It can be specified as one of the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1146 -msgid "" -"<emphasis>never</emphasis> = The client will not request or check any server " -"certificate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1150 -msgid "" -"<emphasis>allow</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, it will be ignored and the session proceeds normally." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1157 -msgid "" -"<emphasis>try</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, the session is immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1163 -msgid "" -"<emphasis>demand</emphasis> = The server certificate is requested. If no " -"certificate is provided, or a bad certificate is provided, the session is " -"immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1169 -msgid "<emphasis>hard</emphasis> = Same as <quote>demand</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1173 -msgid "Default: hard" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1179 -msgid "ldap_tls_cacert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1182 -msgid "" -"Specifies the file that contains certificates for all of the Certificate " -"Authorities that <command>sssd</command> will recognize." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1187 sssd-ldap.5.xml:1205 sssd-ldap.5.xml:1246 -msgid "" -"Default: use OpenLDAP defaults, typically in <filename>/etc/openldap/ldap." -"conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1194 -msgid "ldap_tls_cacertdir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1197 -msgid "" -"Specifies the path of a directory that contains Certificate Authority " -"certificates in separate individual files. Typically the file names need to " -"be the hash of the certificate followed by '.0'. If available, " -"<command>cacertdir_rehash</command> can be used to create the correct names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1212 -msgid "ldap_tls_cert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1215 -msgid "Specifies the file that contains the certificate for the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1219 sssd-ldap.5.xml:1231 sssd-ldap.5.xml:1979 -#: sssd-ldap.5.xml:2006 sssd-krb5.5.xml:359 -msgid "Default: not set" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1225 -msgid "ldap_tls_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1228 -msgid "Specifies the file that contains the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1237 -msgid "ldap_tls_cipher_suite (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1240 -msgid "" -"Specifies acceptable cipher suites. Typically this is a colon sperated " -"list. See <citerefentry><refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> for format." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1253 -msgid "ldap_id_use_start_tls (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1256 -msgid "" -"Specifies that the id_provider connection must also use <systemitem class=" -"\"protocol\">tls</systemitem> to protect the channel." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1266 -msgid "ldap_sasl_mech (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1269 -msgid "" -"Specify the SASL mechanism to use. Currently only GSSAPI is tested and " -"supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1273 sssd-ldap.5.xml:1428 -msgid "Default: none" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1279 -msgid "ldap_sasl_authid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1282 -msgid "" -"Specify the SASL authorization id to use. When GSSAPI is used, this " -"represents the Kerberos principal used for authentication to the directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1287 -msgid "Default: host/machine.fqdn@REALM" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1293 -msgid "ldap_sasl_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1296 -msgid "" -"If set to true, the LDAP library would perform a reverse lookup to " -"canonicalize the host name during a SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1301 -msgid "Default: false;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1307 -msgid "ldap_krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1310 -msgid "Specify the keytab to use when using SASL/GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1313 -msgid "Default: System keytab, normally <filename>/etc/krb5.keytab</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1319 -msgid "ldap_krb5_init_creds (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1322 -msgid "" -"Specifies that the id_provider should init Kerberos credentials (TGT). This " -"action is performed only if SASL is used and the mechanism selected is " -"GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1334 -msgid "ldap_krb5_ticket_lifetime (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1337 -msgid "Specifies the lifetime in seconds of the TGT if GSSAPI is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1341 -msgid "Default: 86400 (24 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1347 sssd-krb5.5.xml:74 -msgid "krb5_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1350 sssd-krb5.5.xml:77 -msgid "" -"Specifies the comma-separated list of IP addresses or hostnames of the " -"Kerberos servers to which SSSD should connect in the order of preference. " -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. An optional port number (preceded by a " -"colon) may be appended to the addresses or hostnames. If empty, service " -"discovery is enabled - for more information, refer to the <quote>SERVICE " -"DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1362 sssd-krb5.5.xml:89 -msgid "" -"When using service discovery for KDC or kpasswd servers, SSSD first searches " -"for DNS entries that specify _udp as the protocol and falls back to _tcp if " -"none are found." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1367 sssd-krb5.5.xml:94 -msgid "" -"This option was named <quote>krb5_kdcip</quote> in earlier releases of SSSD. " -"While the legacy name is recognized for the time being, users are advised to " -"migrate their config files to use <quote>krb5_server</quote> instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1376 sssd-ipa.5.xml:216 sssd-krb5.5.xml:103 -msgid "krb5_realm (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1379 -msgid "Specify the Kerberos REALM (for SASL/GSSAPI auth)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1382 -msgid "Default: System defaults, see <filename>/etc/krb5.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1388 sssd-ipa.5.xml:231 sssd-krb5.5.xml:409 -msgid "krb5_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1391 -msgid "" -"Specifies if the host principal should be canonicalized when connecting to " -"LDAP server. This feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1403 -msgid "ldap_pwd_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1406 -msgid "" -"Select the policy to evaluate the password expiration on the client side. " -"The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1411 -msgid "" -"<emphasis>none</emphasis> - No evaluation on the client side. This option " -"cannot disable server-side password policies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1416 -msgid "" -"<emphasis>shadow</emphasis> - Use <citerefentry><refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum></citerefentry> style attributes to " -"evaluate if the password has expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1422 -msgid "" -"<emphasis>mit_kerberos</emphasis> - Use the attributes used by MIT Kerberos " -"to determine if the password has expired. Use chpass_provider=krb5 to update " -"these attributes when the password is changed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1434 -msgid "ldap_referrals (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1437 -msgid "Specifies whether automatic referral chasing should be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1441 -msgid "" -"Please note that sssd only supports referral chasing when it is compiled " -"with OpenLDAP version 2.4.13 or higher." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1452 -msgid "ldap_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1455 -msgid "Specifies the service name to use when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1459 -msgid "Default: ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1465 -msgid "ldap_chpass_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1468 -msgid "" -"Specifies the service name to use to find an LDAP server which allows " -"password changes when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1473 -msgid "Default: not set, i.e. service discovery is disabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1479 -msgid "ldap_access_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1482 -msgid "" -"If using access_provider = ldap, this option is mandatory. It specifies an " -"LDAP search filter criteria that must be met for the user to be granted " -"access on this host. If access_provider = ldap and this option is not set, " -"it will result in all users being denied access. Use access_provider = allow " -"to change this default behavior." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1492 sssd-ldap.5.xml:1982 -msgid "Example:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1495 -#, no-wrap -msgid "" -"access_provider = ldap\n" -"ldap_access_filter = memberOf=cn=allowedusers,ou=Groups,dc=example,dc=com\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1499 -msgid "" -"This example means that access to this host is restricted to members of the " -"\"allowedusers\" group in ldap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1504 -msgid "" -"Offline caching for this feature is limited to determining whether the " -"user's last online login was granted access permission. If they were granted " -"access during their last login, they will continue to be granted access " -"while offline and vice-versa." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1512 sssd-ldap.5.xml:1562 -msgid "Default: Empty" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1518 -msgid "ldap_account_expire_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1521 -msgid "" -"With this option a client side evaluation of access control attributes can " -"be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1525 -msgid "" -"Please note that it is always recommended to use server side access control, " -"i.e. the LDAP server should deny the bind request with a suitable error code " -"even if the password is correct." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1532 -msgid "The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1535 -msgid "" -"<emphasis>shadow</emphasis>: use the value of ldap_user_shadow_expire to " -"determine if the account is expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1540 -msgid "" -"<emphasis>ad</emphasis>: use the value of the 32bit field " -"ldap_user_ad_user_account_control and allow access if the second bit is not " -"set. If the attribute is missing access is granted. Also the expiration time " -"of the account is checked." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1547 -msgid "" -"<emphasis>rhds</emphasis>, <emphasis>ipa</emphasis>, <emphasis>389ds</" -"emphasis>: use the value of ldap_ns_account_lock to check if access is " -"allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1553 -msgid "" -"<emphasis>nds</emphasis>: the values of " -"ldap_user_nds_login_allowed_time_map, ldap_user_nds_login_disabled and " -"ldap_user_nds_login_expiration_time are used to check if access is allowed. " -"If both attributes are missing access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1568 -msgid "ldap_access_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1571 -msgid "Comma separated list of access control options. Allowed values are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1575 -msgid "<emphasis>filter</emphasis>: use ldap_access_filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1578 -msgid "<emphasis>expire</emphasis>: use ldap_account_expire_policy" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1582 -msgid "" -"<emphasis>authorized_service</emphasis>: use the authorizedService attribute " -"to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1587 -msgid "<emphasis>host</emphasis>: use the host attribute to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1591 -msgid "Default: filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1594 -msgid "" -"Please note that it is a configuration error if a value is used more than " -"once." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1601 -msgid "ldap_deref (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1604 -msgid "" -"Specifies how alias dereferencing is done when performing a search. The " -"following options are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1609 -msgid "<emphasis>never</emphasis>: Aliases are never dereferenced." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1613 -msgid "" -"<emphasis>searching</emphasis>: Aliases are dereferenced in subordinates of " -"the base object, but not in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1618 -msgid "" -"<emphasis>finding</emphasis>: Aliases are only dereferenced when locating " -"the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1623 -msgid "" -"<emphasis>always</emphasis>: Aliases are dereferenced both in searching and " -"in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1628 -msgid "" -"Default: Empty (this is handled as <emphasis>never</emphasis> by the LDAP " -"client libraries)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:51 -msgid "" -"All of the common configuration options that apply to SSSD domains also " -"apply to LDAP domains. Refer to the <quote>DOMAIN SECTIONS</quote> section " -"of the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for full details. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1639 -msgid "SUDO OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1644 -msgid "ldap_sudorule_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1647 -msgid "The object class of a sudo rule entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1650 -msgid "Default: sudoRole" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1656 -msgid "ldap_sudorule_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1659 -msgid "The LDAP attribute that corresponds to the sudo rule name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1669 -msgid "ldap_sudorule_command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1672 -msgid "The LDAP attribute that corresponds to the command name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1676 -msgid "Default: sudoCommand" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1682 -msgid "ldap_sudorule_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1685 -msgid "" -"The LDAP attribute that corresponds to the host name (or host IP address, " -"host IP network, or host netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1690 -msgid "Default: sudoHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1696 -msgid "ldap_sudorule_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1699 -msgid "" -"The LDAP attribute that corresponds to the user name (or UID, group name or " -"user's netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1703 -msgid "Default: sudoUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1709 -msgid "ldap_sudorule_option (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1712 -msgid "The LDAP attribute that corresponds to the sudo options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1716 -msgid "Default: sudoOption" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1722 -msgid "ldap_sudorule_runasuser (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1725 -msgid "" -"The LDAP attribute that corresponds to the user name that commands may be " -"run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1729 -msgid "Default: sudoRunAsUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1735 -msgid "ldap_sudorule_runasgroup (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1738 -msgid "" -"The LDAP attribute that corresponds to the group name or group GID that " -"commands may be run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1742 -msgid "Default: sudoRunAsGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1748 -msgid "ldap_sudorule_notbefore (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1751 -msgid "" -"The LDAP attribute that corresponds to the start date/time for when the sudo " -"rule is valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1755 -msgid "Default: sudoNotBefore" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1761 -msgid "ldap_sudorule_notafter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1764 -msgid "" -"The LDAP attribute that corresponds to the expiration date/time, after which " -"the sudo rule will no longer be valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1769 -msgid "Default: sudoNotAfter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1775 -msgid "ldap_sudorule_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1778 -msgid "The LDAP attribute that corresponds to the ordering index of the rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1782 -msgid "Default: sudoOrder" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1788 -msgid "ldap_sudo_refresh_enabled (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1791 -msgid "" -"Enables periodical download of all sudo rules. The cache is purged before " -"each update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1801 -msgid "ldap_sudo_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1804 -msgid "" -"How many seconds SSSD has to wait before refreshing its cache of sudo rules." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1642 -msgid "<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1815 -msgid "" -"This manual page only describes attribute name mapping. For detailed " -"explanation of sudo related attribute semantics, see <citerefentry> " -"<refentrytitle>sudoers.ldap</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1825 -msgid "AUTOFS OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1827 -msgid "" -"Please note that the default values correspond to the default schema which " -"is RFC2307." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1834 -msgid "ldap_autofs_map_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1837 sssd-ldap.5.xml:1863 -msgid "The object class of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1840 sssd-ldap.5.xml:1867 -msgid "Default: automountMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1847 -msgid "ldap_autofs_map_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1850 -msgid "The name of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1853 -msgid "Default: ou" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1860 -msgid "ldap_autofs_entry_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1874 -msgid "ldap_autofs_entry_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1877 sssd-ldap.5.xml:1891 -msgid "" -"The key of an automount entry in LDAP. The entry usually corresponds to a " -"mount point." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1888 -msgid "ldap_autofs_entry_value (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1895 -msgid "Default: automountInformation" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1832 -msgid "" -"<placeholder type=\"variablelist\" id=\"0\"/> <placeholder type=" -"\"variablelist\" id=\"1\"/> <placeholder type=\"variablelist\" id=\"2\"/> " -"<placeholder type=\"variablelist\" id=\"3\"/> <placeholder type=" -"\"variablelist\" id=\"4\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1904 -msgid "ADVANCED OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1911 -msgid "ldap_netgroup_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1914 -msgid "" -"An optional base DN to restrict netgroup searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1930 -msgid "ldap_user_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1933 -msgid "An optional base DN to restrict user searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1949 -msgid "ldap_group_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1952 -msgid "An optional base DN to restrict group searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1968 -msgid "ldap_user_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1971 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict user searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1975 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_user_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1985 -#, no-wrap -msgid "" -" ldap_user_search_filter = (loginShell=/bin/tcsh)\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1988 -msgid "" -"This filter would restrict user searches to users that have their shell set " -"to /bin/tcsh." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1995 -msgid "ldap_group_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1998 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict group searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2002 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_group_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2012 -msgid "ldap_sudo_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2015 -msgid "" -"An optional base DN to restrict sudo rules searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2034 -msgid "ldap_autofs_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2037 -msgid "" -"An optional base DN to restrict automounter searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1906 -msgid "" -"These options are supported by LDAP domains, but they should be used with " -"caution. Please include them in your configuration only if you know what you " -"are doing. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2066 -msgid "" -"The following example assumes that SSSD is correctly configured and LDAP is " -"set to one of the domains in the <replaceable>[domains]</replaceable> " -"section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ldap.5.xml:2072 -#, no-wrap -msgid "" -" [domain/LDAP]\n" -" id_provider = ldap\n" -" auth_provider = ldap\n" -" ldap_uri = ldap://ldap.mydomain.org\n" -" ldap_search_base = dc=mydomain,dc=org\n" -" ldap_tls_reqcert = demand\n" -" cache_credentials = true\n" -" enumerate = true\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2071 sssd-simple.5.xml:134 sssd-ipa.5.xml:552 -#: sssd-krb5.5.xml:441 -msgid "<placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:2085 sssd_krb5_locator_plugin.8.xml:61 -msgid "NOTES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2087 -msgid "" -"The descriptions of some of the configuration options in this manual page " -"are based on the <citerefentry> <refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page from the OpenLDAP 2.4 " -"distribution." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2098 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <refentryinfo> -#: pam_sss.8.xml:8 include/upstream.xml:2 -msgid "" -"<productname>SSSD</productname> <orgname>The SSSD upstream - http://" -"fedorahosted.org/sssd</orgname>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: pam_sss.8.xml:13 pam_sss.8.xml:18 -msgid "pam_sss" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: pam_sss.8.xml:19 -msgid "PAM module for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: pam_sss.8.xml:24 -msgid "" -"<command>pam_sss.so</command> <arg choice='opt'> <replaceable>quiet</" -"replaceable> </arg> <arg choice='opt'> <replaceable>forward_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_first_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_authtok</" -"replaceable> </arg> <arg choice='opt'> <replaceable>retry=N</replaceable> </" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:45 -msgid "" -"<command>pam_sss.so</command> is the PAM interface to the System Security " -"Services daemon (SSSD). Errors and results are logged through <command>syslog" -"(3)</command> with the LOG_AUTHPRIV facility." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:55 -msgid "<option>quiet</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:58 -msgid "Suppress log messages for unknown users." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:63 -msgid "<option>forward_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:66 -msgid "" -"If <option>forward_pass</option> is set the entered password is put on the " -"stack for other PAM modules to use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:73 -msgid "<option>use_first_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:76 -msgid "" -"The argument use_first_pass forces the module to use a previous stacked " -"modules password and will never prompt the user - if no password is " -"available or the password is not appropriate, the user will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:84 -msgid "<option>use_authtok</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:87 -msgid "" -"When password changing enforce the module to set the new password to the one " -"provided by a previously stacked password module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:94 -msgid "<option>retry=N</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:97 -msgid "" -"If specified the user is asked another N times for a password if " -"authentication fails. Default is 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:99 -msgid "" -"Please note that this option might not work as expected if the application " -"calling PAM handles the user dialog on its own. A typical example is " -"<command>sshd</command> with <option>PasswordAuthentication</option>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:110 -msgid "MODULE TYPES PROVIDED" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:111 -msgid "" -"All module types (<option>account</option>, <option>auth</option>, " -"<option>password</option> and <option>session</option>) are provided." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:117 -msgid "FILES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:118 -msgid "" -"If a password reset by root fails, because the corresponding SSSD provider " -"does not support password resets, an individual message can be displayed. " -"This message can e.g. contain instructions about how to reset a password." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:123 -msgid "" -"The message is read from the file <filename>pam_sss_pw_reset_message.LOC</" -"filename> where LOC stands for a locale string returned by <citerefentry> " -"<refentrytitle>setlocale</refentrytitle><manvolnum>3</manvolnum> </" -"citerefentry>. If there is no matching file the content of " -"<filename>pam_sss_pw_reset_message.txt</filename> is displayed. Root must be " -"the owner of the files and only root may have read and write permissions " -"while all other users must have only read permissions." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:133 -msgid "" -"These files are searched in the directory <filename>/etc/sssd/customize/" -"DOMAIN_NAME/</filename>. If no matching file is present a generic message is " -"displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:141 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd_krb5_locator_plugin.8.xml:10 sssd_krb5_locator_plugin.8.xml:15 -msgid "sssd_krb5_locator_plugin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:22 -msgid "" -"The Kerberos locator plugin <command>sssd_krb5_locator_plugin</command> is " -"used by the Kerberos provider of <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry> to tell the Kerberos " -"libraries what Realm and which KDC to use. Typically this is done in " -"<citerefentry> <refentrytitle>krb5.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> which is always read by the Kerberos libraries. " -"To simplify the configuration the Realm and the KDC can be defined in " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> as described in <citerefentry> " -"<refentrytitle>sssd-krb5.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry> puts the Realm and the name or IP address of the KDC into " -"the environment variables SSSD_KRB5_REALM and SSSD_KRB5_KDC respectively. " -"When <command>sssd_krb5_locator_plugin</command> is called by the kerberos " -"libraries it reads and evaluates these variables and returns them to the " -"libraries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:63 -msgid "" -"Not all Kerberos implementations support the use of plugins. If " -"<command>sssd_krb5_locator_plugin</command> is not available on your system " -"you have to edit /etc/krb5.conf to reflect your Kerberos setup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:69 -msgid "" -"If the environment variable SSSD_KRB5_LOCATOR_DEBUG is set to any value " -"debug messages will be sent to stderr." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:77 -msgid "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-simple.5.xml:10 sssd-simple.5.xml:16 -msgid "sssd-simple" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd-simple.5.xml:17 -msgid "the configuration file for SSSD's 'simple' access-control provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:24 -msgid "" -"This manual page describes the configuration of the simple access-control " -"provider for <citerefentry> <refentrytitle>sssd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry>. For a detailed syntax reference, " -"refer to the <quote>FILE FORMAT</quote> section of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:38 -msgid "" -"The simple access provider grants or denies access based on an access or " -"deny list of user or group names. The following rules apply:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:43 -msgid "If all lists are empty, access is granted" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:47 -msgid "" -"If any list is provided, the order of evaluation is allow,deny. This means " -"that any matching deny rule will supersede any matched allow rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:54 -msgid "" -"If either or both \"allow\" lists are provided, all users are denied unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:60 -msgid "" -"If only \"deny\" lists are provided, all users are granted access unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:78 -msgid "simple_allow_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:81 -msgid "Comma separated list of users who are allowed to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:88 -msgid "simple_deny_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:91 -msgid "Comma separated list of users who are explicitly denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:97 -msgid "simple_allow_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:100 -msgid "" -"Comma separated list of groups that are allowed to log in. This applies only " -"to groups within this SSSD domain. Local groups are not evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:108 -msgid "simple_deny_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:111 -msgid "" -"Comma separated list of groups that are explicitly denied access. This " -"applies only to groups within this SSSD domain. Local groups are not " -"evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:70 sssd-ipa.5.xml:65 -msgid "" -"Refer to the section <quote>DOMAIN SECTIONS</quote> of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page for details on the configuration of an SSSD " -"domain. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:120 -msgid "" -"Please note that it is an configuration error if both, simple_allow_users " -"and simple_deny_users, are defined." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:128 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the simple access provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-simple.5.xml:135 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" access_provider = simple\n" -" simple_allow_users = user1, user2\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:145 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ipa.5.xml:10 sssd-ipa.5.xml:16 -msgid "sssd-ipa" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:23 -msgid "" -"This manual page describes the configuration of the IPA provider for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. For a detailed syntax reference, refer to the <quote>FILE " -"FORMAT</quote> section of the <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:36 -msgid "" -"The IPA provider is a back end used to connect to an IPA server. (Refer to " -"the freeipa.org web site for information about IPA servers.) This provider " -"requires that the machine be joined to the IPA domain; configuration is " -"almost entirely self-discovered and obtained directly from the server." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:43 -msgid "" -"The IPA provider accepts the same options used by the <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> identity provider and the <citerefentry> <refentrytitle>sssd-" -"krb5</refentrytitle> <manvolnum>5</manvolnum> </citerefentry> authentication " -"provider with some exceptions described below." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:55 -msgid "" -"However, it is neither necessary nor recommended to set these options. IPA " -"provider can also be used as an access and chpass provider. As an access " -"provider it uses HBAC (host-based access control) rules. Please refer to " -"freeipa.org for more information about HBAC. No configuration of access " -"provider is required on the client side." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:72 -msgid "ipa_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:75 -msgid "" -"Specifies the name of the IPA domain. This is optional. If not provided, " -"the configuration domain name is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:83 -msgid "ipa_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:86 -msgid "" -"The comma-separated list of IP addresses or hostnames of the IPA servers to " -"which SSSD should connect in the order of preference. For more information " -"on failover and server redundancy, see the <quote>FAILOVER</quote> section. " -"This is optional if autodiscovery is enabled. For more information on " -"service discovery, refer to the the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:99 -msgid "ipa_hostname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:102 -msgid "" -"Optional. May be set on machines where the hostname(5) does not reflect the " -"fully qualified name used in the IPA domain to identify this host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:110 -msgid "ipa_dyndns_update (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:113 -msgid "" -"Optional. This option tells SSSD to automatically update the DNS server " -"built into FreeIPA v2 with the IP address of this client." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:118 -msgid "" -"NOTE: On older systems (such as RHEL 5), for this behavior to work reliably, " -"the default Kerberos realm must be set properly in /etc/krb5.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:129 -msgid "ipa_dyndns_iface (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:132 -msgid "" -"Optional. Applicable only when ipa_dyndns_update is true. Choose the " -"interface whose IP address should be used for dynamic DNS updates." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:137 -msgid "Default: Use the IP address of the IPA LDAP connection" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:143 -msgid "ipa_hbac_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:146 -msgid "Optional. Use the given string as search base for HBAC related objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:150 -msgid "Default: Use base DN" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:156 -msgid "ipa_host_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:159 -msgid "Optional. Use the given string as search base for host objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:168 -msgid "" -"If filter is given in any of search bases and " -"<emphasis>ipa_hbac_support_srchost</emphasis> is set to False, the filter " -"will be ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:180 -msgid "ipa_selinux_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:183 -msgid "Optional. Use the given string as search base for SELinux user maps." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:199 sssd-krb5.5.xml:229 -msgid "krb5_validate (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:202 sssd-krb5.5.xml:232 -msgid "" -"Verify with the help of krb5_keytab that the TGT obtained has not been " -"spoofed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:209 -msgid "" -"Note that this default differs from the traditional Kerberos provider back " -"end." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:219 -msgid "" -"The name of the Kerberos realm. This is optional and defaults to the value " -"of <quote>ipa_domain</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:223 -msgid "" -"The name of the Kerberos realm has a special meaning in IPA - it is " -"converted into the base DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:234 -msgid "" -"Specifies if the host and user principal should be canonicalized when " -"connecting to IPA LDAP and also for AS requests. This feature is available " -"with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:247 -msgid "ipa_hbac_refresh (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:250 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server. " -"This will reduce the latency and load on the IPA server if there are many " -"access-control requests made in a short period." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:257 -msgid "Default: 5 (seconds)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:262 -msgid "ipa_hbac_treat_deny_as (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:265 -msgid "" -"This option specifies how to treat the deprecated DENY-type HBAC rules. As " -"of FreeIPA v2.1, DENY rules are no longer supported on the server. All users " -"of FreeIPA will need to migrate their rules to use only the ALLOW rules. The " -"client will support two modes of operation during this transition period:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:274 -msgid "" -"<emphasis>DENY_ALL</emphasis>: If any HBAC DENY rules are detected, all " -"users will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:279 -msgid "" -"<emphasis>IGNORE</emphasis>: SSSD will ignore any DENY rules. Be very " -"careful with this option, as it may result in opening unintended access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:284 -msgid "Default: DENY_ALL" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:289 -msgid "ipa_hbac_support_srchost (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:292 -msgid "" -"If this is set to false, then srchost as given to SSSD by PAM will be " -"ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:296 -msgid "" -"Note that if set to <emphasis>False</emphasis>, this option casuses filters " -"given in <emphasis>ipa_host_search_base</emphasis> to be ignored;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:307 -msgid "ipa_automount_location (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:310 -msgid "The automounter location this IPA client will be using" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:313 -msgid "Default: The location named \"default\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:319 -msgid "ipa_netgroup_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:322 -msgid "The LDAP attribute that lists netgroup's memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:331 -msgid "ipa_netgroup_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:334 -msgid "" -"The LDAP attribute that lists system users and groups that are direct " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:339 sssd-ipa.5.xml:434 -msgid "Default: memberUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:344 -msgid "ipa_netgroup_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:347 -msgid "" -"The LDAP attribute that lists hosts and host groups that are direct members " -"of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:351 sssd-ipa.5.xml:446 -msgid "Default: memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:356 -msgid "ipa_netgroup_member_ext_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:359 -msgid "" -"The LDAP attribute that lists FQDNs of hosts and host groups that are " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:363 -msgid "Default: externalHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:368 -msgid "ipa_netgroup_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:371 -msgid "The LDAP attribute that contains NIS domain name of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:375 -msgid "Default: nisDomainName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:381 -msgid "ipa_host_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:384 sssd-ipa.5.xml:407 -msgid "The object class of a host entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:387 sssd-ipa.5.xml:410 -msgid "Default: ipaHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:392 -msgid "ipa_host_fqdn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:395 -msgid "The LDAP attribute that contains FQDN of the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:398 -msgid "Default: fqdn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:404 -msgid "ipa_selinux_usermap_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:415 -msgid "ipa_selinux_usermap_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:418 -msgid "The LDAP attribute that contains the name of SELinux usermap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:427 -msgid "ipa_selinux_usermap_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:430 -msgid "" -"The LDAP attribute that contains all users / groups this rule match against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:439 -msgid "ipa_selinux_usermap_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:442 -msgid "" -"The LDAP attribute that contains all hosts / hostgroups this rule match " -"against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:451 -msgid "ipa_selinux_usermap_see_also (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:454 -msgid "" -"The LDAP attribute that contains DN of HBAC rule which can be used for " -"matching instead of memberUser and memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:459 -msgid "Default: seeAlso" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:464 -msgid "ipa_selinux_usermap_selinux_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:467 -msgid "The LDAP attribute that contains SELinux user string itself." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:471 -msgid "Default: ipaSELinuxUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:476 -msgid "ipa_selinux_usermap_enabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:479 -msgid "" -"The LDAP attribute that contains whether or not is user map enabled for " -"usage." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:483 -msgid "Default: ipaEnabledFlag" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:488 -msgid "ipa_selinux_usermap_user_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:491 -msgid "The LDAP attribute that contains user category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:495 -msgid "Default: userCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:500 -msgid "ipa_selinux_usermap_host_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:503 -msgid "The LDAP attribute that contains host category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:507 -msgid "Default: hostCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:512 -msgid "ipa_selinux_usermap_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:515 -msgid "The LDAP attribute that contains unique ID of the user map." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:519 -msgid "Default: ipaUniqueID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:524 -msgid "ipa_host_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:527 -msgid "The LDAP attribute that contains the host's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:531 -msgid "Default: ipaSshPubKey" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:546 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the ipa provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ipa.5.xml:553 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" id_provider = ipa\n" -" ipa_server = ipaserver.example.com\n" -" ipa_hostname = myhost.example.com\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:564 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.8.xml:10 sssd.8.xml:15 -msgid "sssd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.8.xml:16 -msgid "System Security Services Daemon" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sssd.8.xml:21 -msgid "" -"<command>sssd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:31 -msgid "" -"<command>SSSD</command> provides a set of daemons to manage access to remote " -"directories and authentication mechanisms. It provides an NSS and PAM " -"interface toward the system and a pluggable backend system to connect to " -"multiple different account sources as well as D-Bus interface. It is also " -"the basis to provide client auditing and policy services for projects like " -"FreeIPA. It provides a more robust database to store local users as well as " -"extended user data." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:46 -msgid "" -"<option>-d</option>,<option>--debug-level</option> <replaceable>LEVEL</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:53 -msgid "<option>--debug-timestamps=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:57 -msgid "<emphasis>1</emphasis>: Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:60 -msgid "<emphasis>0</emphasis>: Disable timestamp in the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:69 -msgid "<option>--debug-microseconds=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:73 -msgid "" -"<emphasis>1</emphasis>: Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:76 -msgid "<emphasis>0</emphasis>: Disable microseconds in timestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:79 -msgid "Default: 0" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:85 -msgid "<option>-f</option>,<option>--debug-to-files</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:89 -msgid "" -"Send the debug output to files instead of stderr. By default, the log files " -"are stored in <filename>/var/log/sssd</filename> and there are separate log " -"files for every SSSD service and domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:97 -msgid "<option>-D</option>,<option>--daemon</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:101 -msgid "Become a daemon after starting up." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:107 -msgid "<option>-i</option>,<option>--interactive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:111 -msgid "Run in the foreground, don't become a daemon." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:117 sss_debuglevel.8.xml:42 -msgid "<option>-c</option>,<option>--config</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:121 sss_debuglevel.8.xml:46 -msgid "" -"Specify a non-default config file. The default is <filename>/etc/sssd/sssd." -"conf</filename>. For reference on the config file syntax and options, " -"consult the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:135 -msgid "<option>--version</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:139 -msgid "Print version number and exit." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.8.xml:147 -msgid "Signals" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:150 -msgid "SIGTERM/SIGINT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:153 -msgid "" -"Informs the SSSD to gracefully terminate all of its child processes and then " -"shut down the monitor." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:159 -msgid "SIGHUP" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:162 -msgid "" -"Tells the SSSD to stop writing to its current debug file descriptors and to " -"close and reopen them. This is meant to facilitate log rolling with programs " -"like logrotate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:170 -msgid "SIGUSR1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:173 -msgid "" -"Tells the SSSD to simulate offline operation for one minute. This is mostly " -"useful for testing purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:179 -msgid "SIGUSR2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:182 -msgid "" -"Tells the SSSD to go online immediately. This is mostly useful for testing " -"purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:193 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_obfuscate.8.xml:10 sss_obfuscate.8.xml:15 -msgid "sss_obfuscate" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_obfuscate.8.xml:16 -msgid "obfuscate a clear text password" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_obfuscate.8.xml:21 -msgid "" -"<command>sss_obfuscate</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>[PASSWORD]</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:32 -msgid "" -"<command>sss_obfuscate</command> converts a given password into human-" -"unreadable format and places it into appropriate domain section of the SSSD " -"config file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:37 -msgid "" -"The cleartext password is read from standard input or entered " -"interactively. The obfuscated password is put into " -"<quote>ldap_default_authtok</quote> parameter of a given SSSD domain and the " -"<quote>ldap_default_authtok_type</quote> parameter is set to " -"<quote>obfuscated_password</quote>. Refer to <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more details on these parameters." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:49 -msgid "" -"Please note that obfuscating the password provides <emphasis>no real " -"security benefit</emphasis> as it is still possible for an attacker to " -"reverse-engineer the password back. Using better authentication mechanisms " -"such as client side certificates or GSSAPI is <emphasis>strongly</emphasis> " -"advised." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:63 -msgid "<option>-s</option>,<option>--stdin</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:67 -msgid "The password to obfuscate will be read from standard input." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:74 sss_ssh_authorizedkeys.1.xml:82 -#: sss_ssh_knownhostsproxy.1.xml:81 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>DOMAIN</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:79 -msgid "" -"The SSSD domain to use the password in. The default name is <quote>default</" -"quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:86 -msgid "" -"<option>-f</option>,<option>--file</option> <replaceable>FILE</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:91 -msgid "Read the config file specified by the positional parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:95 -msgid "Default: <filename>/etc/sssd/sssd.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:105 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_useradd.8.xml:10 sss_useradd.8.xml:15 -msgid "sss_useradd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_useradd.8.xml:16 -msgid "create a new user" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_useradd.8.xml:21 -msgid "" -"<command>sss_useradd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:32 -msgid "" -"<command>sss_useradd</command> creates a new user account using the values " -"specified on the command line plus the default values from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:43 -msgid "" -"<option>-u</option>,<option>--uid</option> <replaceable>UID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:48 -msgid "" -"Set the UID of the user to the value of <replaceable>UID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:55 sss_usermod.8.xml:43 -msgid "" -"<option>-c</option>,<option>--gecos</option> <replaceable>COMMENT</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:60 sss_usermod.8.xml:48 -msgid "" -"Any text string describing the user. Often used as the field for the user's " -"full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:67 sss_usermod.8.xml:55 -msgid "" -"<option>-h</option>,<option>--home</option> <replaceable>HOME_DIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:72 -msgid "" -"The home directory of the user account. The default is to append the " -"<replaceable>LOGIN</replaceable> name to <filename>/home</filename> and use " -"that as the home directory. The base that is prepended before " -"<replaceable>LOGIN</replaceable> is tunable with <quote>user_defaults/" -"baseDirectory</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:82 sss_usermod.8.xml:66 -msgid "" -"<option>-s</option>,<option>--shell</option> <replaceable>SHELL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:87 -msgid "" -"The user's login shell. The default is currently <filename>/bin/bash</" -"filename>. The default can be changed with <quote>user_defaults/" -"defaultShell</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:96 -msgid "" -"<option>-G</option>,<option>--groups</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:101 -msgid "A list of existing groups this user is also a member of." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:107 -msgid "<option>-m</option>,<option>--create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:111 -msgid "" -"Create the user's home directory if it does not exist. The files and " -"directories contained in the skeleton directory (which can be defined with " -"the -k option or in the config file) will be copied to the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:121 -msgid "<option>-M</option>,<option>--no-create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:125 -msgid "" -"Do not create the user's home directory. Overrides configuration settings." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:132 -msgid "" -"<option>-k</option>,<option>--skel</option> <replaceable>SKELDIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:137 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<command>sss_useradd</command>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:143 -msgid "" -"This option is only valid if the <option>-m</option> (or <option>--create-" -"home</option>) option is specified, or creation of home directories is set " -"to TRUE in the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:152 sss_usermod.8.xml:124 -msgid "" -"<option>-Z</option>,<option>--selinux-user</option> " -"<replaceable>SELINUX_USER</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:157 -msgid "" -"The SELinux user for the user's login. If not specified, the system default " -"will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:169 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-krb5.5.xml:10 sssd-krb5.5.xml:16 -msgid "sssd-krb5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:23 -msgid "" -"This manual page describes the configuration of the Kerberos 5 " -"authentication backend for <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry>. For a detailed " -"syntax reference, please refer to the <quote>FILE FORMAT</quote> section of " -"the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:36 -msgid "" -"The Kerberos 5 authentication backend contains auth and chpass providers. It " -"must be paired with identity provider in order to function properly (for " -"example, id_provider = ldap). Some information required by the Kerberos 5 " -"authentication backend must be provided by the identity provider, such as " -"the user's Kerberos Principal Name (UPN). The configuration of the identity " -"provider should have an entry to specify the UPN. Please refer to the man " -"page for the applicable identity provider for details on how to configure " -"this." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:47 -msgid "" -"This backend also provides access control based on the .k5login file in the " -"home directory of the user. See <citerefentry> <refentrytitle>.k5login</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry> for more details. " -"Please note that an empty .k5login file will deny all access to this user. " -"To activate this feature use 'access_provider = krb5' in your sssd " -"configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:55 -msgid "" -"In the case where the UPN is not available in the identity backend " -"<command>sssd</command> will construct a UPN using the format " -"<replaceable>username</replaceable>@<replaceable>krb5_realm</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:106 -msgid "" -"The name of the Kerberos realm. This option is required and must be " -"specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:113 -msgid "krb5_kpasswd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:116 -msgid "" -"If the change password service is not running on the KDC alternative servers " -"can be defined here. An optional port number (preceded by a colon) may be " -"appended to the addresses or hostnames." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:122 -msgid "" -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. Please note that even if there are no more " -"kpasswd servers to try the back end is not switch to offline if " -"authentication against the KDC is still possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:129 -msgid "Default: Use the KDC" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:135 -msgid "krb5_ccachedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:138 -msgid "" -"Directory to store credential caches. All the substitution sequences of " -"krb5_ccname_template can be used here, too, except %d and %P. If the " -"directory does not exist it will be created. If %u, %U, %p or %h are used a " -"private directory belonging to the user is created. Otherwise a public " -"directory with restricted deletion flag (aka sticky bit, see <citerefentry> " -"<refentrytitle>chmod</refentrytitle> <manvolnum>1</manvolnum> </" -"citerefentry> for details) is created." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:151 -msgid "Default: /tmp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:157 -msgid "krb5_ccname_template (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:171 -msgid "login UID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:174 -msgid "%p" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:175 -msgid "principal name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:179 -msgid "%r" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:180 -msgid "realm name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:183 -msgid "%h" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:184 -msgid "home directory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:189 -msgid "value of krb5ccache_dir" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:194 -msgid "%P" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:195 -msgid "the process ID of the sssd client" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:160 -msgid "" -"Location of the user's credential cache. Currently only file based " -"credential caches are supported. In the template the following sequences are " -"substituted: <placeholder type=\"variablelist\" id=\"0\"/> If the template " -"ends with 'XXXXXX' mkstemp(3) is used to create a unique filename in a safe " -"way." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:209 -msgid "Default: FILE:%d/krb5cc_%U_XXXXXX" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:215 -msgid "krb5_auth_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:218 -msgid "" -"Timeout in seconds after an online authentication or change password request " -"is aborted. If possible the authentication request is continued offline." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:241 -msgid "krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:244 -msgid "" -"The location of the keytab to use when validating credentials obtained from " -"KDCs." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:248 -msgid "Default: /etc/krb5.keytab" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:254 -msgid "krb5_store_password_if_offline (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:257 -msgid "" -"Store the password of the user if the provider is offline and use it to " -"request a TGT when the provider gets online again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:262 -msgid "" -"Please note that this feature currently only available on a Linux platform. " -"Passwords stored in this way are kept in plaintext in the kernel keyring and " -"are potentially accessible by the root user (with difficulty)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:275 -msgid "krb5_renewable_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:278 -msgid "" -"Request a renewable ticket with a total lifetime given by an integer " -"immediately followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:283 sssd-krb5.5.xml:319 -msgid "<emphasis>s</emphasis> seconds" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:286 sssd-krb5.5.xml:322 -msgid "<emphasis>m</emphasis> minutes" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:289 sssd-krb5.5.xml:325 -msgid "<emphasis>h</emphasis> hours" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:292 sssd-krb5.5.xml:328 -msgid "<emphasis>d</emphasis> days." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:295 sssd-krb5.5.xml:331 -msgid "If there is no delimiter <emphasis>s</emphasis> is assumed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:299 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"renewable lifetime to one and a half hours please use '90m' instead of " -"'1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:305 -msgid "Default: not set, i.e. the TGT is not renewable" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:311 -msgid "krb5_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:314 -msgid "" -"Request ticket with a with a lifetime given by an integer immediately " -"followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:335 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"lifetime to one and a half hours please use '90m' instead of '1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:340 -msgid "" -"Default: not set, i.e. the default ticket lifetime configured on the KDC." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:347 -msgid "krb5_renew_interval (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:350 -msgid "" -"The time in seconds between two checks if the TGT should be renewed. TGTs " -"are renewed if about half of their lifetime is exceeded." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:355 -msgid "If this option is not set or 0 the automatic renewal is disabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:365 -msgid "krb5_use_fast (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:368 -msgid "" -"Enables flexible authentication secure tunneling (FAST) for Kerberos pre-" -"authentication. The following options are supported:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:373 -msgid "" -"<emphasis>never</emphasis> use FAST, this is equivalent to not set this " -"option at all." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:377 -msgid "" -"<emphasis>try</emphasis> to use FAST, if the server does not support fast " -"continue without." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:381 -msgid "" -"<emphasis>demand</emphasis> to use FAST, fail if the server does not require " -"fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:385 -msgid "Default: not set, i.e. FAST is not used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:388 -msgid "Please note that a keytab is required to use fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:391 -msgid "" -"Please note also that sssd supports fast only with MIT Kerberos version 1.8 " -"and above. If sssd used with an older version using this option is a " -"configuration error." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:400 -msgid "krb5_fast_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:403 -msgid "Specifies the server principal to use for FAST." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:412 -msgid "" -"Specifies if the host and user principal should be canonicalized. This " -"feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:65 -msgid "" -"If the auth-module krb5 is used in a SSSD domain, the following options must " -"be used. See the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page, section <quote>DOMAIN " -"SECTIONS</quote> for details on the configuration of a SSSD domain. " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:434 -msgid "" -"The following example assumes that SSSD is correctly configured and FOO is " -"one of the domains in the <replaceable>[sssd]</replaceable> section. This " -"example shows only configuration of Kerberos authentication, it does not " -"include any identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-krb5.5.xml:442 -#, no-wrap -msgid "" -" [domain/FOO]\n" -" auth_provider = krb5\n" -" krb5_server = 192.168.1.1\n" -" krb5_realm = EXAMPLE.COM\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:453 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupadd.8.xml:10 sss_groupadd.8.xml:15 -msgid "sss_groupadd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupadd.8.xml:16 -msgid "create a new group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupadd.8.xml:21 -msgid "" -"<command>sss_groupadd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:32 -msgid "" -"<command>sss_groupadd</command> creates a new group. These groups are " -"compatible with POSIX groups, with the additional feature that they can " -"contain other groups as members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupadd.8.xml:43 -msgid "" -"<option>-g</option>,<option>--gid</option> <replaceable>GID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupadd.8.xml:48 -msgid "" -"Set the GID of the group to the value of <replaceable>GID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_userdel.8.xml:10 sss_userdel.8.xml:15 -msgid "sss_userdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_userdel.8.xml:16 -msgid "delete a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_userdel.8.xml:21 -msgid "" -"<command>sss_userdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:32 -msgid "" -"<command>sss_userdel</command> deletes a user identified by login name " -"<replaceable>LOGIN</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:44 -msgid "<option>-r</option>,<option>--remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:48 -msgid "" -"Files in the user's home directory will be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:56 -msgid "<option>-R</option>,<option>--no-remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:60 -msgid "" -"Files in the user's home directory will NOT be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:68 -msgid "<option>-f</option>,<option>--force</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:72 -msgid "" -"This option forces <command>sss_userdel</command> to remove the user's home " -"directory and mail spool, even if they are not owned by the specified user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:80 -msgid "<option>-k</option>,<option>--kick</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:84 -msgid "Before actually deleting the user, terminate all his processes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:95 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupdel.8.xml:10 sss_groupdel.8.xml:15 -msgid "sss_groupdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupdel.8.xml:16 -msgid "delete a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupdel.8.xml:21 -msgid "" -"<command>sss_groupdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:32 -msgid "" -"<command>sss_groupdel</command> deletes a group identified by its name " -"<replaceable>GROUP</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupshow.8.xml:10 sss_groupshow.8.xml:15 -msgid "sss_groupshow" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupshow.8.xml:16 -msgid "print properties of a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupshow.8.xml:21 -msgid "" -"<command>sss_groupshow</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:32 -msgid "" -"<command>sss_groupshow</command> displays information about a group " -"identified by its name <replaceable>GROUP</replaceable>. The information " -"includes the group ID number, members of the group and the parent group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupshow.8.xml:43 -msgid "<option>-R</option>,<option>--recursive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupshow.8.xml:47 -msgid "" -"Also print indirect group members in a tree-like hierarchy. Note that this " -"also affects printing parent groups - without <option>R</option>, only the " -"direct parent will be printed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_usermod.8.xml:10 sss_usermod.8.xml:15 -msgid "sss_usermod" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_usermod.8.xml:16 -msgid "modify a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_usermod.8.xml:21 -msgid "" -"<command>sss_usermod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:32 -msgid "" -"<command>sss_usermod</command> modifies the account specified by " -"<replaceable>LOGIN</replaceable> to reflect the changes that are specified " -"on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:60 -msgid "The home directory of the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:71 -msgid "The user's login shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:82 -msgid "" -"Append this user to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:96 -msgid "" -"Remove this user from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:103 -msgid "<option>-l</option>,<option>--lock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:107 -msgid "Lock the user account. The user won't be able to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:114 -msgid "<option>-u</option>,<option>--unlock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:118 -msgid "Unlock the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:129 -msgid "The SELinux user for the user's login." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:140 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_cache.8.xml:10 sss_cache.8.xml:15 -msgid "sss_cache" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_cache.8.xml:16 -msgid "perform cache cleanup" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_cache.8.xml:21 -msgid "" -"<command>sss_cache</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_cache.8.xml:31 -msgid "" -"<command>sss_cache</command> invalidates records in SSSD cache. Invalidated " -"records are forced to be reloaded from server as soon as related SSSD " -"backend is online." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:42 -msgid "" -"<option>-u</option>,<option>--user</option> <replaceable>login</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:47 -msgid "Invalidate specific user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:53 -msgid "<option>-U</option>,<option>--users</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:57 -msgid "" -"Invalidate all user records. This option overrides invalidation of specific " -"user if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:64 -msgid "" -"<option>-g</option>,<option>--group</option> <replaceable>group</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:69 -msgid "Invalidate specific group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:75 -msgid "<option>-G</option>,<option>--groups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:79 -msgid "" -"Invalidate all group records. This option overrides invalidation of specific " -"group if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:86 -msgid "" -"<option>-n</option>,<option>--netgroup</option> <replaceable>netgroup</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:91 -msgid "Invalidate specific netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:97 -msgid "<option>-N</option>,<option>--netgroups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:101 -msgid "" -"Invalidate all netgroup records. This option overrides invalidation of " -"specific netgroup if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:108 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>domain</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:113 -msgid "Restrict invalidation process only to a particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_debuglevel.8.xml:10 sss_debuglevel.8.xml:15 -msgid "sss_debuglevel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_debuglevel.8.xml:16 -msgid "change debug level while SSSD is running" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_debuglevel.8.xml:21 -msgid "" -"<command>sss_debuglevel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>NEW_DEBUG_LEVEL</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_debuglevel.8.xml:32 -msgid "" -"<command>sss_debuglevel</command> changes debug level of SSSD monitor and " -"providers to <replaceable>NEW_DEBUG_LEVEL</replaceable> while SSSD is " -"running." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_debuglevel.8.xml:59 -msgid "<replaceable>NEW_DEBUG_LEVEL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_authorizedkeys.1.xml:10 sss_ssh_authorizedkeys.1.xml:15 -msgid "sss_ssh_authorizedkeys" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_ssh_authorizedkeys.1.xml:11 sss_ssh_knownhostsproxy.1.xml:11 -msgid "1" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_authorizedkeys.1.xml:16 -msgid "get OpenSSH authorized keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_authorizedkeys.1.xml:21 -msgid "" -"<command>sss_ssh_authorizedkeys</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>USER</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:32 -msgid "" -"<command>sss_ssh_authorizedkeys</command> acquires SSH public keys for user " -"<replaceable>USER</replaceable> and outputs them in OpenSSH authorized_keys " -"format (see the <quote>AUTHORIZED_KEYS FILE FORMAT</quote> section of " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> for more information)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:41 -msgid "" -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_authorizedkeys</" -"command> for public key user authentication if it is compiled with support " -"for either <quote>AuthorizedKeysCommand</quote> or <quote>PubkeyAgent</" -"quote> <citerefentry> <refentrytitle>sshd_config</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:58 -#, no-wrap -msgid "AuthorizedKeysCommand /usr/bin/sss_ssh_authorizedkeys\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:51 -msgid "" -"If <quote>AuthorizedKeysCommand</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by putting the following directive " -"in <citerefentry> <refentrytitle>sshd_config</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry>: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:69 -#, no-wrap -msgid "PubKeyAgent /usr/bin/sss_ssh_authorizedkeys %u\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:62 -msgid "" -"If <quote>PubkeyAgent</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by using the following directive " -"for <citerefentry> <refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> configuration: <placeholder type=\"programlisting" -"\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_authorizedkeys.1.xml:87 -msgid "" -"Search for user public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:98 -msgid "" -"<citerefentry> <refentrytitle>sshd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sshd_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_knownhostsproxy</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_knownhostsproxy.1.xml:10 sss_ssh_knownhostsproxy.1.xml:15 -msgid "sss_ssh_knownhostsproxy" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_knownhostsproxy.1.xml:16 -msgid "get OpenSSH host keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_knownhostsproxy.1.xml:21 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>HOST</replaceable></arg> <arg " -"choice='opt'><replaceable>PROXY_COMMAND</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:33 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> acquires SSH host public keys for " -"host <replaceable>HOST</replaceable>, stores them in a custom OpenSSH " -"known_hosts file (see the <quote>SSH_KNOWN_HOSTS FILE FORMAT</quote> section " -"of <citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> for more information) <filename>/var/lib/sss/" -"pubconf/known_hosts</filename> and estabilishes connection to the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:43 -msgid "" -"If <replaceable>PROXY_COMMAND</replaceable> is specified, it is used to " -"create the connection to the host instead of opening a socket." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_knownhostsproxy.1.xml:55 -#, no-wrap -msgid "" -"ProxyCommand /usr/bin/sss_ssh_knownhostsproxy -p %p %h\n" -"GlobalKnownHostsFile2 /var/lib/sss/pubconf/known_hosts\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:48 -msgid "" -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_knownhostsproxy</" -"command> for host key authentication by using the following directives for " -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> configuration: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_ssh_knownhostsproxy.1.xml:69 -msgid "" -"<option>-p</option>,<option>--port</option> <replaceable>PORT</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:74 -msgid "" -"Use port <replaceable>PORT</replaceable> to connect to the host. By " -"default, port 22 is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:86 -msgid "" -"Search for host public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:97 -msgid "" -"<citerefentry> <refentrytitle>ssh</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>ssh_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_authorizedkeys</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/service_discovery.xml:2 -msgid "SERVICE DISCOVERY" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/service_discovery.xml:4 -msgid "" -"The service discovery feature allows back ends to automatically find the " -"appropriate servers to connect to using a special DNS query." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:9 -msgid "Configuration" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:11 -msgid "" -"If no servers are specified, the back end automatically uses service " -"discovery to try to find a server. Optionally, the user may choose to use " -"both fixed server addresses and service discovery by inserting a special " -"keyword, <quote>_srv_</quote>, in the list of servers. The order of " -"preference is maintained. This feature is useful if, for example, the user " -"prefers to use service discovery whenever possible, and fall back to a " -"specific server when no servers can be discovered using DNS." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:23 -msgid "The domain name" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:25 -msgid "" -"Please refer to the <quote>dns_discovery_domain</quote> parameter in the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for more details." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:35 -msgid "The protocol" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:37 -msgid "" -"The queries usually specify _tcp as the protocol. Exceptions are documented " -"in respective option description." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:42 -msgid "See Also" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:44 -msgid "" -"For more information on the service discovery mechanism, refer to RFC 2782." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/upstream.xml:1 -msgid "<placeholder type=\"refentryinfo\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/failover.xml:2 -msgid "FAILOVER" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/failover.xml:4 -msgid "" -"The failover feature allows back ends to automatically switch to a different " -"server if the primary server fails." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:8 -msgid "Failover Syntax" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:10 -msgid "" -"The list of servers is given as a comma-separated list; any number of spaces " -"is allowed around the comma. The servers are listed in order of preference. " -"The list can contain any number of servers." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:17 -msgid "The Failover Mechanism" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:19 -msgid "" -"The failover mechanism distinguishes between a machine and a service. The " -"back end first tries to resolve the hostname of a given machine; if this " -"resolution attempt fails, the machine is considered offline. No further " -"attempts are made to connect to this machine for any other service. If the " -"resolution attempt succeeds, the back end tries to connect to a service on " -"this machine. If the service connection attempt fails, then only this " -"particular service is considered offline and the back end automatically " -"switches over to the next service. The machine is still considered online " -"and might still be tried for another service." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:32 -msgid "" -"Further connection attempts are made to machines or services marked as " -"offline after a specified period of time; this is currently hard coded to 30 " -"seconds." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:37 -msgid "" -"If there are no more machines to try, the back end as a whole switches to " -"offline mode, and then attempts to reconnect every 30 seconds." -msgstr "" - -#. type: Content of: <varlistentry><term> -#: include/param_help.xml:3 -msgid "<option>-h</option>,<option>--help</option>" -msgstr "" - -#. type: Content of: <varlistentry><listitem><para> -#: include/param_help.xml:7 -msgid "Display help message and exit." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:3 -msgid "" -"Bit mask that indicates which debug levels will be visible. 0x0010 is the " -"default value as well as the lowest allowed value, 0xFFF0 is the most " -"verbose mode. This setting overrides the settings from config file." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:8 -msgid "Currently supported debug levels:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:11 -msgid "" -"<emphasis>0x0010</emphasis>: Fatal failures. Anything that would prevent " -"SSSD from starting up or causes it to cease running." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:15 -msgid "" -"<emphasis>0x0020</emphasis>: Critical failures. An error that doesn't kill " -"the SSSD, but one that indicates that at least one major feature is not " -"going to work properly." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:20 -msgid "" -"<emphasis>0x0040</emphasis>: Serious failures. An error announcing that a " -"particular request or operation has failed." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:24 -msgid "" -"<emphasis>0x0080</emphasis>: Minor failures. These are the errors that would " -"percolate down to cause the operation failure of 2." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:28 -msgid "<emphasis>0x0100</emphasis>: Configuration settings." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:31 -msgid "<emphasis>0x0200</emphasis>: Function data." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:34 -msgid "<emphasis>0x0400</emphasis>: Trace messages for operation functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:37 -msgid "" -"<emphasis>0x1000</emphasis>: Trace messages for internal control functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:40 -msgid "" -"<emphasis>0x2000</emphasis>: Contents of function-internal variables that " -"may be interesting." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:43 -msgid "<emphasis>0x4000</emphasis>: Extremely low-level tracing information." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:46 -msgid "" -"To log required debug levels, simply add their numbers together as shown in " -"following examples:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:49 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, critical failures, " -"serious failures and function data use 0x0270." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:53 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, configuration settings, " -"function data, trace messages for internal control functions use 0x1310." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:57 -msgid "" -"<emphasis>Note</emphasis>: This is new format of debug levels introduced in " -"1.7.0. Older format (numbers from 0-10) is compatible but deprecated." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/experimental.xml:1 -msgid "" -"<emphasis> This is an experimental feature, please use http://fedorahosted." -"org/sssd to report any issues. </emphasis>" -msgstr "" diff --git a/src/man/po/sq.po b/src/man/po/sq.po deleted file mode 100644 index 6071f8460..000000000 --- a/src/man/po/sq.po +++ /dev/null @@ -1,6748 +0,0 @@ -# SOME DESCRIPTIVE TITLE -# Copyright (C) YEAR Red Hat -# This file is distributed under the same license as the sssd-docs package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@redhat.com\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-12-23 15:35+0000\n" -"Last-Translator: FULL NAME <EMAIL@ADDRESS>\n" -"Language-Team: Albanian (http://www.transifex.net/projects/p/fedora/team/" -"sq/)\n" -"Language: sq\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=2; plural=(n != 1)\n" - -#. type: Content of: <reference><title> -#: sss_groupmod.8.xml:5 sssd.conf.5.xml:5 sssd-ldap.5.xml:5 pam_sss.8.xml:5 -#: sssd_krb5_locator_plugin.8.xml:5 sssd-simple.5.xml:5 sssd-ipa.5.xml:5 -#: sssd.8.xml:5 sss_obfuscate.8.xml:5 sss_useradd.8.xml:5 sssd-krb5.5.xml:5 -#: sss_groupadd.8.xml:5 sss_userdel.8.xml:5 sss_groupdel.8.xml:5 -#: sss_groupshow.8.xml:5 sss_usermod.8.xml:5 sss_cache.8.xml:5 -#: sss_debuglevel.8.xml:5 sss_ssh_authorizedkeys.1.xml:5 -#: sss_ssh_knownhostsproxy.1.xml:5 -msgid "SSSD Manual pages" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupmod.8.xml:10 sss_groupmod.8.xml:15 -msgid "sss_groupmod" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_groupmod.8.xml:11 pam_sss.8.xml:14 sssd_krb5_locator_plugin.8.xml:11 -#: sssd.8.xml:11 sss_obfuscate.8.xml:11 sss_useradd.8.xml:11 -#: sss_groupadd.8.xml:11 sss_userdel.8.xml:11 sss_groupdel.8.xml:11 -#: sss_groupshow.8.xml:11 sss_usermod.8.xml:11 sss_cache.8.xml:11 -#: sss_debuglevel.8.xml:11 -msgid "8" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupmod.8.xml:16 -msgid "modify a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupmod.8.xml:21 -msgid "" -"<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:30 sssd-ldap.5.xml:21 pam_sss.8.xml:44 -#: sssd_krb5_locator_plugin.8.xml:20 sssd-simple.5.xml:22 sssd-ipa.5.xml:21 -#: sssd.8.xml:29 sss_obfuscate.8.xml:30 sss_useradd.8.xml:30 -#: sssd-krb5.5.xml:21 sss_groupadd.8.xml:30 sss_userdel.8.xml:30 -#: sss_groupdel.8.xml:30 sss_groupshow.8.xml:30 sss_usermod.8.xml:30 -#: sss_cache.8.xml:29 sss_debuglevel.8.xml:30 sss_ssh_authorizedkeys.1.xml:30 -#: sss_ssh_knownhostsproxy.1.xml:31 -msgid "DESCRIPTION" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:32 -msgid "" -"<command>sss_groupmod</command> modifies the group to reflect the changes " -"that are specified on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:39 pam_sss.8.xml:51 sssd.8.xml:42 sss_obfuscate.8.xml:58 -#: sss_useradd.8.xml:39 sss_groupadd.8.xml:39 sss_userdel.8.xml:39 -#: sss_groupdel.8.xml:39 sss_groupshow.8.xml:39 sss_usermod.8.xml:39 -#: sss_cache.8.xml:38 sss_debuglevel.8.xml:38 sss_ssh_authorizedkeys.1.xml:78 -#: sss_ssh_knownhostsproxy.1.xml:65 -msgid "OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:43 sss_usermod.8.xml:77 -msgid "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:48 -msgid "" -"Append this group to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:57 sss_usermod.8.xml:91 -msgid "" -"<option>-r</option>,<option>--remove-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:62 -msgid "" -"Remove this group from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:72 sssd.conf.5.xml:1331 sssd-ldap.5.xml:2096 -#: pam_sss.8.xml:139 sssd_krb5_locator_plugin.8.xml:75 sssd-simple.5.xml:143 -#: sssd-ipa.5.xml:562 sssd.8.xml:191 sss_obfuscate.8.xml:103 -#: sss_useradd.8.xml:167 sssd-krb5.5.xml:451 sss_groupadd.8.xml:58 -#: sss_userdel.8.xml:93 sss_groupdel.8.xml:46 sss_groupshow.8.xml:58 -#: sss_usermod.8.xml:138 sss_ssh_authorizedkeys.1.xml:96 -#: sss_ssh_knownhostsproxy.1.xml:95 -msgid "SEE ALSO" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:74 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.conf.5.xml:10 sssd.conf.5.xml:16 -msgid "sssd.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sssd.conf.5.xml:11 sssd-ldap.5.xml:11 sssd-simple.5.xml:11 -#: sssd-ipa.5.xml:11 sssd-krb5.5.xml:11 -msgid "5" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><refmiscinfo> -#: sssd.conf.5.xml:12 sssd-ldap.5.xml:12 sssd-simple.5.xml:12 -#: sssd-ipa.5.xml:12 sssd-krb5.5.xml:12 -msgid "File Formats and Conventions" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.conf.5.xml:17 sssd-ldap.5.xml:17 sssd_krb5_locator_plugin.8.xml:16 -#: sssd-ipa.5.xml:17 sssd-krb5.5.xml:17 -msgid "the configuration file for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:21 -msgid "FILE FORMAT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:29 -#, no-wrap -msgid "" -" <replaceable>[section]</replaceable>\n" -" <replaceable>key</replaceable> = <replaceable>value</replaceable>\n" -" <replaceable>key2</replaceable> = <replaceable>value2,value3</replaceable>\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:24 -msgid "" -"The file has an ini-style syntax and consists of sections and parameters. A " -"section begins with the name of the section in square brackets and continues " -"until the next section begins. An example of section with single and multi-" -"valued parameters: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:36 -msgid "" -"The data types used are string (no quotes needed), integer and bool (with " -"values of <quote>TRUE/FALSE</quote>)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:41 -msgid "" -"A line comment starts with a hash sign (<quote>#</quote>) or a semicolon " -"(<quote>;</quote>)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:46 -msgid "" -"All sections can have an optional <replaceable>description</replaceable> " -"parameter. Its function is only as a label for the section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:52 -msgid "" -"<filename>sssd.conf</filename> must be a regular file, owned by root and " -"only root may read from or write to the file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:58 -msgid "SPECIAL SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:61 -msgid "The [sssd] section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><title> -#: sssd.conf.5.xml:70 sssd.conf.5.xml:1177 -msgid "Section parameters" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:72 -msgid "config_file_version (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:75 -msgid "" -"Indicates what is the syntax of the config file. SSSD 0.6.0 and later use " -"version 2." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:81 -msgid "services" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:84 -msgid "" -"Comma separated list of services that are started when sssd itself starts." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:88 -msgid "" -"Supported services: nss, pam <phrase condition=\"with_sudo\">, sudo</phrase>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:94 sssd.conf.5.xml:257 -msgid "reconnection_retries (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:97 sssd.conf.5.xml:260 -msgid "" -"Number of times services should attempt to reconnect in the event of a Data " -"Provider crash or restart before they give up" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:102 sssd.conf.5.xml:265 -msgid "Default: 3" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:107 -msgid "domains" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:110 -msgid "" -"A domain is a database containing user information. SSSD can use more " -"domains at the same time, but at least one must be configured or SSSD won't " -"start. This parameter described the list of domains in the order you want " -"them to be queried." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:120 -msgid "re_expression (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:123 -msgid "" -"Regular expression that describes how to parse the string containing user " -"name and domain into these components." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:127 -msgid "" -"Default: <quote>(?P<name>[^@]+)@?(?P<domain>[^@]*$)</quote> " -"which translates to \"the name is everything up to the <quote>@</quote> " -"sign, the domain everything after that\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:132 -msgid "" -"PLEASE NOTE: the support for non-unique named subpatterns is not available " -"on all platforms (e.g. RHEL5 and SLES10). Only platforms with libpcre " -"version 7 or higher can support non-unique named subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:139 -msgid "" -"PLEASE NOTE ALSO: older version of libpcre only support the Python syntax (?" -"P<name>) to label subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:146 -msgid "full_name_format (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:149 -msgid "" -"A <citerefentry> <refentrytitle>printf</refentrytitle> <manvolnum>3</" -"manvolnum> </citerefentry>-compatible format that describes how to translate " -"a (name, domain) tuple into a fully qualified name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:157 -msgid "Default: <quote>%1$s@%2$s</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:162 -msgid "try_inotify (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:165 -msgid "" -"SSSD monitors the state of resolv.conf to identify when it needs to update " -"its internal DNS resolver. By default, we will attempt to use inotify for " -"this, and will fall back to polling resolv.conf every five seconds if " -"inotify cannot be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:173 -msgid "" -"There are some limited situations where it is preferred that we should skip " -"even trying to use inotify. In these rare cases, this option should be set " -"to 'false'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:179 -msgid "" -"Default: true on platforms where inotify is supported. False on other " -"platforms." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:183 -msgid "" -"Note: this option will have no effect on platforms where inotify is " -"unavailable. On these platforms, polling will always be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:190 -msgid "krb5_rcache_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:193 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:197 -msgid "" -"This option accepts a special value __LIBKRB5_DEFAULTS__ that will instruct " -"SSSD to let libkrb5 decide the appropriate location for the replay cache." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:203 -msgid "" -"Default: Distribution-specific and specified at build-time. " -"(__LIBKRB5_DEFAULTS__ if not configured)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:63 -msgid "" -"Individual pieces of SSSD functionality are provided by special SSSD " -"services that are started and stopped together with SSSD. The services are " -"managed by a special service frequently called <quote>monitor</quote>. The " -"<quote>[sssd]</quote> section is used to configure the monitor as well as " -"some other important options like the identity domains. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:216 -msgid "SERVICES SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:218 -msgid "" -"Settings that can be used to configure different services are described in " -"this section. They should reside in the [<replaceable>$NAME</replaceable>] " -"section, for example, for NSS service, the section would be <quote>[nss]</" -"quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:225 -msgid "General service configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:227 -msgid "These options can be used to configure any service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:231 -msgid "debug_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:235 -msgid "debug_timestamps (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:238 -msgid "Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:241 sssd.conf.5.xml:376 sssd-ldap.5.xml:1328 -#: sssd-ldap.5.xml:1446 sssd-ipa.5.xml:206 sssd-ipa.5.xml:241 -msgid "Default: true" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:246 -msgid "debug_microseconds (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:249 -msgid "Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:252 sssd.conf.5.xml:641 sssd-ldap.5.xml:602 -#: sssd-ldap.5.xml:1260 sssd-ldap.5.xml:1397 sssd-ldap.5.xml:1795 -#: sssd-ipa.5.xml:123 sssd-ipa.5.xml:301 sssd-krb5.5.xml:235 -#: sssd-krb5.5.xml:269 sssd-krb5.5.xml:418 -msgid "Default: false" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:270 -msgid "command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:273 -msgid "" -"By default, the executable representing this service is called <command>sssd_" -"${service_name}</command>. This directive allows to change the executable " -"name for the service. In the vast majority of configurations, the default " -"values should suffice." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:281 -msgid "Default: <command>sssd_${service_name}</command>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:289 -msgid "NSS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:291 -msgid "" -"These options can be used to configure the Name Service Switch (NSS) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:296 -msgid "enum_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:299 -msgid "" -"How many seconds should nss_sss cache enumerations (requests for info about " -"all users)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:303 -msgid "Default: 120" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:308 -msgid "entry_cache_nowait_percentage (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:311 -msgid "" -"The entry cache can be set to automatically update entries in the background " -"if they are requested beyond a percentage of the entry_cache_timeout value " -"for the domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:317 -msgid "" -"For example, if the domain's entry_cache_timeout is set to 30s and " -"entry_cache_nowait_percentage is set to 50 (percent), entries that come in " -"after 15 seconds past the last cache update will be returned immediately, " -"but the SSSD will go and update the cache on its own, so that future " -"requests will not need to block waiting for a cache update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:327 -msgid "" -"Valid values for this option are 0-99 and represent a percentage of the " -"entry_cache_timeout for each domain. For performance reasons, this " -"percentage will never reduce the nowait timeout to less than 10 seconds. (0 " -"disables this feature)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:335 -msgid "Default: 50" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:340 -msgid "entry_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:343 -msgid "" -"Specifies for how many seconds nss_sss should cache negative cache hits " -"(that is, queries for invalid database entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:349 sssd.conf.5.xml:669 sssd-krb5.5.xml:223 -msgid "Default: 15" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:354 -msgid "filter_users, filter_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:357 -msgid "" -"Exclude certain users from being fetched from the sss NSS database. This is " -"particularly useful for system accounts. This option can also be set per-" -"domain or include fully-qualified names to filter only users from the " -"particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:364 -msgid "Default: root" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:369 -msgid "filter_users_in_groups (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:372 -msgid "" -"If you want filtered user still be group members set this option to false." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:381 -msgid "override_homedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:390 sssd-krb5.5.xml:166 -msgid "%u" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:391 sssd-krb5.5.xml:167 -msgid "login name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:394 sssd-krb5.5.xml:170 -msgid "%U" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:395 -msgid "UID number" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:398 sssd-krb5.5.xml:188 -msgid "%d" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:399 -msgid "domain name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:402 -msgid "%f" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:403 -msgid "fully qualified user name (user@domain)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:406 sssd-krb5.5.xml:200 -msgid "%%" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:407 sssd-krb5.5.xml:201 -msgid "a literal '%'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:384 -msgid "" -"Override the user's home directory. You can either provide an absolute value " -"or a template. In the template, the following sequences are substituted: " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:413 -msgid "This option can also be set per-domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:418 -msgid "allowed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:421 -msgid "" -"Restrict user shell to one of the listed values. The order of evaluation is:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:424 -msgid "1. If the shell is present in <quote>/etc/shells</quote>, it is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:428 -msgid "" -"2. If the shell is in the allowed_shells list but not in <quote>/etc/shells</" -"quote>, use the value of the shell_fallback parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:433 -msgid "" -"3. If the shell is not in the allowed_shells list and not in <quote>/etc/" -"shells</quote>, a nologin shell is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:438 -msgid "An empty string for shell is passed as-is to libc." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:441 -msgid "" -"The <quote>/etc/shells</quote> is only read on SSSD start up, which means " -"that a restart of the SSSD is required in case a new shell is installed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:445 -msgid "Default: Not set. The user shell is automatically used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:450 -msgid "vetoed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:453 -msgid "Replace any instance of these shells with the shell_fallback" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:458 -msgid "shell_fallback (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:461 -msgid "" -"The default shell to use if an allowed shell is not installed on the machine." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:465 -msgid "Default: /bin/sh" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:472 -msgid "PAM configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:474 -msgid "" -"These options can be used to configure the Pluggable Authentication Module " -"(PAM) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:479 -msgid "offline_credentials_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:482 -msgid "" -"If the authentication provider is offline, how long should we allow cached " -"logins (in days since the last successful online login)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:487 sssd.conf.5.xml:500 -msgid "Default: 0 (No limit)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:493 -msgid "offline_failed_login_attempts (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:496 -msgid "" -"If the authentication provider is offline, how many failed login attempts " -"are allowed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:506 -msgid "offline_failed_login_delay (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:509 -msgid "" -"The time in minutes which has to pass after offline_failed_login_attempts " -"has been reached before a new login attempt is possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:514 -msgid "" -"If set to 0 the user cannot authenticate offline if " -"offline_failed_login_attempts has been reached. Only a successful online " -"authentication can enable offline authentication again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:520 sssd.conf.5.xml:573 sssd.conf.5.xml:1093 -msgid "Default: 5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:526 -msgid "pam_verbosity (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:529 -msgid "" -"Controls what kind of messages are shown to the user during authentication. " -"The higher the number to more messages are displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:534 -msgid "Currently sssd supports the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:537 -msgid "<emphasis>0</emphasis>: do not show any message" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:540 -msgid "<emphasis>1</emphasis>: show only important messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:544 -msgid "<emphasis>2</emphasis>: show informational messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:547 -msgid "<emphasis>3</emphasis>: show all messages and debug information" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:551 sssd.8.xml:63 -msgid "Default: 1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:556 -msgid "pam_id_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:559 -msgid "" -"For any PAM request while SSSD is online, the SSSD will attempt to " -"immediately update the cached identity information for the user in order to " -"ensure that authentication takes place with the latest information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:565 -msgid "" -"A complete PAM conversation may perform multiple PAM requests, such as " -"account management and session opening. This option controls (on a per-" -"client-application basis) how long (in seconds) we can cache the identity " -"information to avoid excessive round-trips to the identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:579 -msgid "pam_pwd_expiration_warning (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:582 -msgid "Display a warning N days before the password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:585 -msgid "" -"Please note that the backend server has to provide information about the " -"expiration time of the password. If this information is missing, sssd " -"cannot display a warning." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:591 -msgid "Default: 7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:599 -msgid "SUDO configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:601 -msgid "These options can be used to configure the sudo service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:608 -msgid "sudo_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:611 -msgid "" -"For any sudo request that comes while SSSD is online, the SSSD will attempt " -"to update the cached rules in order to ensure that sudo has the latest " -"ruleset." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:617 -msgid "" -"The user may, however, run a couple of sudo commands successively, which " -"would trigger multiple LDAP requests. In order to speed up this use-case, " -"the sudo service maintains an in-memory cache that would be used for " -"performing fast replies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:624 -msgid "" -"This option controls how long (in seconds) can the sudo service cache rules " -"for a user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:628 -msgid "Default: 180" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:633 -msgid "sudo_timed (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:636 -msgid "" -"Whether or not to evaluate the sudoNotBefore and sudoNotAfter attributes " -"that implement time-dependent sudoers entries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:649 -msgid "AUTOFS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:651 -msgid "These options can be used to configure the autofs service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:659 -msgid "autofs_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:662 -msgid "" -"Specifies for how many seconds should the autofs responder negative cache " -"hits (that is, queries for invalid map entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:679 -msgid "DOMAIN SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:686 -msgid "min_id,max_id (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:689 -msgid "" -"UID and GID limits for the domain. If a domain contains an entry that is " -"outside these limits, it is ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:694 -msgid "" -"For users, this affects the primary GID limit. The user will not be returned " -"to NSS if either the UID or the primary GID is outside the range. For non-" -"primary group memberships, those that are in range will be reported as " -"expected." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:701 -msgid "Default: 1 for min_id, 0 (no limit) for max_id" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:707 -msgid "timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:710 -msgid "" -"Timeout in seconds between heartbeats for this domain. This is used to " -"ensure that the backend process is alive and capable of answering requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:715 sssd-ldap.5.xml:1131 -msgid "Default: 10" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:721 -msgid "enumerate (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:724 -msgid "" -"Determines if a domain can be enumerated. This parameter can have one of the " -"following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:728 -msgid "TRUE = Users and groups are enumerated" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:731 -msgid "FALSE = No enumerations for this domain" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:734 sssd.conf.5.xml:839 sssd.conf.5.xml:893 -msgid "Default: FALSE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:737 -msgid "" -"Note: Enabling enumeration has a moderate performance impact on SSSD while " -"enumeration is running. It may take up to several minutes after SSSD startup " -"to fully complete enumerations. During this time, individual requests for " -"information will go directly to LDAP, though it may be slow, due to the " -"heavy enumeration processing." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:747 -msgid "" -"While the first enumeration is running, requests for the complete user or " -"group lists may return no results until it completes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:752 -msgid "" -"Further, enabling enumeration may increase the time necessary to detect " -"network disconnection, as longer timeouts are required to ensure that " -"enumeration lookups are completed successfully. For more information, refer " -"to the man pages for the specific id_provider in use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:763 -msgid "entry_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:766 -msgid "" -"How many seconds should nss_sss consider entries valid before asking the " -"backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:770 -msgid "Default: 5400" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:776 -msgid "entry_cache_user_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:779 -msgid "" -"How many seconds should nss_sss consider user entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:783 sssd.conf.5.xml:796 sssd.conf.5.xml:809 -#: sssd.conf.5.xml:822 -msgid "Default: entry_cache_timeout" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:789 -msgid "entry_cache_group_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:792 -msgid "" -"How many seconds should nss_sss consider group entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:802 -msgid "entry_cache_netgroup_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:805 -msgid "" -"How many seconds should nss_sss consider netgroup entries valid before " -"asking the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:815 -msgid "entry_cache_service_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:818 -msgid "" -"How many seconds should nss_sss consider service entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:828 -msgid "cache_credentials (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:831 -msgid "Determines if user credentials are also cached in the local LDB cache" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:835 -msgid "User credentials are stored in a SHA512 hash, not in plaintext" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:844 -msgid "account_cache_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:847 -msgid "" -"Number of days entries are left in cache after last successful login before " -"being removed during a cleanup of the cache. 0 means keep forever. The " -"value of this parameter must be greater than or equal to " -"offline_credentials_expiration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:854 -msgid "Default: 0 (unlimited)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:860 -msgid "id_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:863 -msgid "The Data Provider identity backend to use for this domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:867 -msgid "Supported backends:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:870 -msgid "proxy: Support a legacy NSS provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:873 -msgid "local: SSSD internal local provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:876 -msgid "ldap: LDAP provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:882 -msgid "use_fully_qualified_names (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:885 -msgid "" -"If set to TRUE, all requests to this domain must use fully qualified names. " -"For example, if used in LOCAL domain that contains a \"test\" user, " -"<command>getent passwd test</command> wouldn't find the user while " -"<command>getent passwd test@LOCAL</command> would." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:898 -msgid "auth_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:901 -msgid "" -"The authentication provider used for the domain. Supported auth providers " -"are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:905 -msgid "" -"<quote>ldap</quote> for native LDAP authentication. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:912 -msgid "" -"<quote>krb5</quote> for Kerberos authentication. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:919 -msgid "" -"<quote>proxy</quote> for relaying authentication to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:922 -msgid "<quote>none</quote> disables authentication explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:925 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"authentication requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:931 -msgid "access_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:934 -msgid "" -"The access control provider used for the domain. There are two built-in " -"access providers (in addition to any included in installed backends) " -"Internal special providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:940 -msgid "<quote>permit</quote> always allow access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:943 -msgid "<quote>deny</quote> always deny access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:946 -msgid "" -"<quote>simple</quote> access control based on access or deny lists. See " -"<citerefentry> <refentrytitle>sssd-simple</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry> for more information on configuring the simple " -"access module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:953 -msgid "Default: <quote>permit</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:958 -msgid "chpass_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:961 -msgid "" -"The provider which should handle change password operations for the domain. " -"Supported change password providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:966 -msgid "" -"<quote>ipa</quote> to change a password stored in an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:974 -msgid "" -"<quote>ldap</quote> to change a password stored in a LDAP server. See " -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:982 -msgid "" -"<quote>krb5</quote> to change the Kerberos password. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:990 -msgid "" -"<quote>proxy</quote> for relaying password changes to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:994 -msgid "<quote>none</quote> disallows password changes explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:997 -msgid "" -"Default: <quote>auth_provider</quote> is used if it is set and can handle " -"change password requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1004 -msgid "sudo_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1010 -msgid "The SUDO provider used for the domain. Supported SUDO providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1014 -msgid "" -"<quote>ldap</quote> for rules stored in LDAP. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1021 -msgid "<quote>none</quote> disables SUDO explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1024 -msgid "Default: The value of <quote>id_provider</quote> is used if it is set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1030 -msgid "session_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1033 -msgid "" -"The provider which should handle loading of session settings. Supported " -"session providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1038 -msgid "" -"<quote>ipa</quote> to load session settings from an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1046 -msgid "<quote>none</quote> disallows fetching session settings explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1049 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"session loading requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1056 -msgid "lookup_family_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1059 -msgid "" -"Provides the ability to select preferred address family to use when " -"performing DNS lookups." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1063 -msgid "Supported values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1066 -msgid "ipv4_first: Try looking up IPv4 address, if that fails, try IPv6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1069 -msgid "ipv4_only: Only attempt to resolve hostnames to IPv4 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1072 -msgid "ipv6_first: Try looking up IPv6 address, if that fails, try IPv4" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1075 -msgid "ipv6_only: Only attempt to resolve hostnames to IPv6 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1078 -msgid "Default: ipv4_first" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1084 -msgid "dns_resolver_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1087 -msgid "" -"Defines the amount of time (in seconds) to wait for a reply from the DNS " -"resolver before assuming that it is unreachable. If this timeout is reached, " -"the domain will continue to operate in offline mode." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1099 -msgid "dns_discovery_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1102 -msgid "" -"If service discovery is used in the back end, specifies the domain part of " -"the service discovery DNS query." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1106 -msgid "Default: Use the domain part of machine's hostname" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1112 -msgid "override_gid (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1115 -msgid "Override the primary GID value with the one specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1121 -msgid "case_sensitive (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1124 -msgid "" -"Treat user and group names as case sensitive. At the moment, this option is " -"not supported in the local provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1129 -msgid "Default: True" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:681 -msgid "" -"These configuration options can be present in a domain configuration " -"section, that is, in a section called <quote>[domain/<replaceable>NAME</" -"replaceable>]</quote> <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1141 -msgid "proxy_pam_target (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1144 -msgid "The proxy target PAM proxies to." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1147 -msgid "" -"Default: not set by default, you have to take an existing pam configuration " -"or create a new one and add the service name here." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1155 -msgid "proxy_lib_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1158 -msgid "" -"The name of the NSS library to use in proxy domains. The NSS functions " -"searched for in the library are in the form of _nss_$(libName)_$(function), " -"for example _nss_files_getpwent." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1137 -msgid "" -"Options valid for proxy domains. <placeholder type=\"variablelist\" id=" -"\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:1170 -msgid "The local domain section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:1172 -msgid "" -"This section contains settings for domain that stores users and groups in " -"SSSD native database, that is, a domain that uses " -"<replaceable>id_provider=local</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1179 -msgid "default_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1182 -msgid "The default shell for users created with SSSD userspace tools." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1186 -msgid "Default: <filename>/bin/bash</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1191 -msgid "base_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1194 -msgid "" -"The tools append the login name to <replaceable>base_directory</replaceable> " -"and use that as the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1199 -msgid "Default: <filename>/home</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1204 -msgid "create_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1207 -msgid "" -"Indicate if a home directory should be created by default for new users. " -"Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1211 sssd.conf.5.xml:1223 -msgid "Default: TRUE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1216 -msgid "remove_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1219 -msgid "" -"Indicate if a home directory should be removed by default for deleted " -"users. Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1228 -msgid "homedir_umask (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1231 -msgid "" -"Used by <citerefentry> <refentrytitle>sss_useradd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry> to specify the default permissions " -"on a newly created home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1239 -msgid "Default: 077" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1244 -msgid "skel_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1247 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<citerefentry> <refentrytitle>sss_useradd</refentrytitle> <manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1257 -msgid "Default: <filename>/etc/skel</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1262 -msgid "mail_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1265 -msgid "" -"The mail spool directory. This is needed to manipulate the mailbox when its " -"corresponding user account is modified or deleted. If not specified, a " -"default value is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1272 -msgid "Default: <filename>/var/mail</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1277 -msgid "userdel_cmd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1280 -msgid "" -"The command that is run after a user is removed. The command us passed the " -"username of the user being removed as the first and only parameter. The " -"return code of the command is not taken into account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1286 -msgid "Default: None, no command is run" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:1296 sssd-ldap.5.xml:2064 sssd-simple.5.xml:126 -#: sssd-ipa.5.xml:544 sssd-krb5.5.xml:432 -msgid "EXAMPLE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:1302 -#, no-wrap -msgid "" -"[sssd]\n" -"domains = LDAP\n" -"services = nss, pam\n" -"config_file_version = 2\n" -"\n" -"[nss]\n" -"filter_groups = root\n" -"filter_users = root\n" -"\n" -"[pam]\n" -"\n" -"[domain/LDAP]\n" -"id_provider = ldap\n" -"ldap_uri = ldap://ldap.example.com\n" -"ldap_search_base = dc=example,dc=com\n" -"\n" -"auth_provider = krb5\n" -"krb5_server = kerberos.example.com\n" -"krb5_realm = EXAMPLE.COM\n" -"cache_credentials = true\n" -"\n" -"min_id = 10000\n" -"max_id = 20000\n" -"enumerate = False\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1298 -msgid "" -"The following example shows a typical SSSD config. It does not describe " -"configuration of the domains themselves - refer to documentation on " -"configuring domains for more details. <placeholder type=\"programlisting\" " -"id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1333 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>pam_sss</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ldap.5.xml:10 sssd-ldap.5.xml:16 -msgid "sssd-ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:23 -msgid "" -"This manual page describes the configuration of LDAP domains for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. Refer to the <quote>FILE FORMAT</quote> section of the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for detailed syntax information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:35 -msgid "You can configure SSSD to use more than one LDAP domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:38 -msgid "" -"LDAP back end supports id, auth, access and chpass providers. If you want to " -"authenticate against an LDAP server either TLS/SSL or LDAPS is required. " -"<command>sssd</command> <emphasis>does not</emphasis> support authentication " -"over an unencrypted channel. If the LDAP server is used only as an identity " -"provider, an encrypted channel is not needed. Please refer to " -"<quote>ldap_access_filter</quote> config option for more information about " -"using LDAP as an access provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:49 sssd-simple.5.xml:69 sssd-ipa.5.xml:64 -#: sssd-krb5.5.xml:63 -msgid "CONFIGURATION OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:60 -msgid "ldap_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:63 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference. Refer to the <quote>FAILOVER</" -"quote> section for more information on failover and server redundancy. If " -"not specified, service discovery is enabled. For more information, refer to " -"the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:70 -msgid "The format of the URI must match the format defined in RFC 2732:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:73 -msgid "ldap[s]://<host>[:port]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:76 -msgid "" -"For explicit IPv6 addresses, <host> must be enclosed in brackets []" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:79 -msgid "example: ldap://[fc00::126:25]:389" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:85 -msgid "ldap_chpass_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:88 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference to change the password of a user. " -"Refer to the <quote>FAILOVER</quote> section for more information on " -"failover and server redundancy." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:95 -msgid "To enable service discovery ldap_chpass_dns_service_name must be set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:99 -msgid "Default: empty, i.e. ldap_uri is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:105 -msgid "ldap_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:108 -msgid "The default base DN to use for performing LDAP user operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:112 -msgid "" -"Starting with SSSD 1.7.0, SSSD supports multiple search bases using the " -"syntax:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:116 -msgid "search_base[?scope?[filter][?search_base?scope?[filter]]*]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:119 -msgid "The scope can be one of \"base\", \"onelevel\" or \"subtree\"." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:122 -msgid "" -"The filter must be a valid LDAP search filter as specified by http://www." -"ietf.org/rfc/rfc2254.txt" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:126 -msgid "Examples:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:129 -msgid "" -"ldap_search_base = dc=example,dc=com (which is equivalent to) " -"ldap_search_base = dc=example,dc=com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:134 -msgid "" -"ldap_search_base = cn=host_specific,dc=example,dc=com?subtree?" -"(host=thishost)?dc=example.com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:137 -msgid "" -"Note: It is unsupported to have multiple search bases which reference " -"identically-named objects (for example, groups with the same name in two " -"different search bases). This will lead to unpredictable behavior on client " -"machines." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:144 -msgid "" -"Default: If not set, the value of the defaultNamingContext or namingContexts " -"attribute from the RootDSE of the LDAP server is used. If " -"defaultNamingContext does not exists or has an empty value namingContexts is " -"used. The namingContexts attribute must have a single value with the DN of " -"the search base of the LDAP server to make this work. Multiple values are " -"are not supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:158 -msgid "ldap_schema (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:161 -msgid "" -"Specifies the Schema Type in use on the target LDAP server. Depending on " -"the selected schema, the default attribute names retrieved from the servers " -"may vary. The way that some attributes are handled may also differ. Three " -"schema types are currently supported: rfc2307 rfc2307bis IPA The main " -"difference between these schema types is how group memberships are recorded " -"in the server. With rfc2307, group members are listed by name in the " -"<emphasis>memberUid</emphasis> attribute. With rfc2307bis and IPA, group " -"members are listed by DN and stored in the <emphasis>member</emphasis> " -"attribute." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:180 -msgid "Default: rfc2307" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:186 -msgid "ldap_default_bind_dn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:189 -msgid "The default bind DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:196 -msgid "ldap_default_authtok_type (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:199 -msgid "The type of the authentication token of the default bind DN." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:203 -msgid "The two mechanisms currently supported are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:206 -msgid "password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:209 -msgid "obfuscated_password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:212 -msgid "Default: password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:218 -msgid "ldap_default_authtok (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:221 -msgid "" -"The authentication token of the default bind DN. Only clear text passwords " -"are currently supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:228 -msgid "ldap_user_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:231 -msgid "The object class of a user entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:234 -msgid "Default: posixAccount" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:240 -msgid "ldap_user_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:243 -msgid "The LDAP attribute that corresponds to the user's login name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:247 -msgid "Default: uid" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:253 -msgid "ldap_user_uid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:256 -msgid "The LDAP attribute that corresponds to the user's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:260 -msgid "Default: uidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:266 -msgid "ldap_user_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:269 -msgid "The LDAP attribute that corresponds to the user's primary group id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:273 sssd-ldap.5.xml:740 -msgid "Default: gidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:279 -msgid "ldap_user_gecos (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:282 -msgid "The LDAP attribute that corresponds to the user's gecos field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:286 -msgid "Default: gecos" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:292 -msgid "ldap_user_home_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:295 -msgid "The LDAP attribute that contains the name of the user's home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:299 -msgid "Default: homeDirectory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:305 -msgid "ldap_user_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:308 -msgid "The LDAP attribute that contains the path to the user's default shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:312 -msgid "Default: loginShell" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:318 -msgid "ldap_user_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:321 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP user object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:325 sssd-ldap.5.xml:766 sssd-ldap.5.xml:878 -msgid "Default: nsUniqueId" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:331 -msgid "ldap_user_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:334 sssd-ldap.5.xml:775 sssd-ldap.5.xml:887 -msgid "" -"The LDAP attribute that contains timestamp of the last modification of the " -"parent object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:338 sssd-ldap.5.xml:779 sssd-ldap.5.xml:894 -msgid "Default: modifyTimestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:344 -msgid "ldap_user_shadow_last_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:347 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (date of " -"the last password change)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:357 -msgid "Default: shadowLastChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:363 -msgid "ldap_user_shadow_min (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:366 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (minimum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:375 -msgid "Default: shadowMin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:381 -msgid "ldap_user_shadow_max (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:384 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (maximum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:393 -msgid "Default: shadowMax" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:399 -msgid "ldap_user_shadow_warning (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:402 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password warning period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:412 -msgid "Default: shadowWarning" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:418 -msgid "ldap_user_shadow_inactive (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:421 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password inactivity period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:431 -msgid "Default: shadowInactive" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:437 -msgid "ldap_user_shadow_expire (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:440 -msgid "" -"When using ldap_pwd_policy=shadow or ldap_account_expire_policy=shadow, this " -"parameter contains the name of an LDAP attribute corresponding to its " -"<citerefentry> <refentrytitle>shadow</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> counterpart (account expiration date)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:450 -msgid "Default: shadowExpire" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:456 -msgid "ldap_user_krb_last_pwd_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:459 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time of last password change in " -"kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:465 -msgid "Default: krbLastPwdChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:471 -msgid "ldap_user_krb_password_expiration (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:474 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time when current password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:480 -msgid "Default: krbPasswordExpiration" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:486 -msgid "ldap_user_ad_account_expires (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:489 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the expiration time of the account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:494 -msgid "Default: accountExpires" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:500 -msgid "ldap_user_ad_user_account_control (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:503 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the user account control bit field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:508 -msgid "Default: userAccountControl" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:514 -msgid "ldap_ns_account_lock (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:517 -msgid "" -"When using ldap_account_expire_policy=rhds or equivalent, this parameter " -"determines if access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:522 -msgid "Default: nsAccountLock" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:528 -msgid "ldap_user_nds_login_disabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:531 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines if " -"access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:535 sssd-ldap.5.xml:549 -msgid "Default: loginDisabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:541 -msgid "ldap_user_nds_login_expiration_time (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:544 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines until " -"which date access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:555 -msgid "ldap_user_nds_login_allowed_time_map (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:558 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines the " -"hours of a day in a week when access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:563 -msgid "Default: loginAllowedTimeMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:569 -msgid "ldap_user_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:572 -msgid "" -"The LDAP attribute that contains the user's Kerberos User Principal Name " -"(UPN)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:576 -msgid "Default: krbPrincipalName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:582 -msgid "ldap_user_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:585 -msgid "The LDAP attribute that contains the user's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:592 -msgid "ldap_force_upper_case_realm (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:595 -msgid "" -"Some directory servers, for example Active Directory, might deliver the " -"realm part of the UPN in lower case, which might cause the authentication to " -"fail. Set this option to a non-zero value if you want to use an upper-case " -"realm." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:608 -msgid "ldap_enumeration_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:611 -msgid "" -"Specifies how many seconds SSSD has to wait before refreshing its cache of " -"enumerated records." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:616 sssd-ldap.5.xml:1808 -msgid "Default: 300" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:622 -msgid "ldap_purge_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:625 -msgid "" -"Determine how often to check the cache for inactive entries (such as groups " -"with no members and users who have never logged in) and remove them to save " -"space." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:631 -msgid "Setting this option to zero will disable the cache cleanup operation." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:635 -msgid "Default: 10800 (12 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:641 -msgid "ldap_user_fullname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:644 -msgid "The LDAP attribute that corresponds to the user's full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:648 sssd-ldap.5.xml:727 sssd-ldap.5.xml:828 -#: sssd-ldap.5.xml:919 sssd-ldap.5.xml:1663 sssd-ldap.5.xml:1881 -#: sssd-ipa.5.xml:422 -msgid "Default: cn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:654 -msgid "ldap_user_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:657 -msgid "The LDAP attribute that lists the user's group memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:661 sssd-ipa.5.xml:326 -msgid "Default: memberOf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:667 -msgid "ldap_user_authorized_service (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:670 -msgid "" -"If access_provider=ldap and ldap_access_order=authorized_service, SSSD will " -"use the presence of the authorizedService attribute in the user's LDAP entry " -"to determine access privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:677 -msgid "" -"An explicit deny (!svc) is resolved first. Second, SSSD searches for " -"explicit allow (svc) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:682 -msgid "Default: authorizedService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:688 -msgid "ldap_user_authorized_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:691 -msgid "" -"If access_provider=ldap and ldap_access_order=host, SSSD will use the " -"presence of the host attribute in the user's LDAP entry to determine access " -"privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:697 -msgid "" -"An explicit deny (!host) is resolved first. Second, SSSD searches for " -"explicit allow (host) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:702 -msgid "Default: host" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:708 -msgid "ldap_group_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:711 -msgid "The object class of a group entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:714 -msgid "Default: posixGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:720 -msgid "ldap_group_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:723 -msgid "The LDAP attribute that corresponds to the group name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:733 -msgid "ldap_group_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:736 -msgid "The LDAP attribute that corresponds to the group's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:746 -msgid "ldap_group_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:749 -msgid "The LDAP attribute that contains the names of the group's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:753 -msgid "Default: memberuid (rfc2307) / member (rfc2307bis)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:759 -msgid "ldap_group_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:762 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP group object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:772 -msgid "ldap_group_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:785 -msgid "ldap_group_nesting_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:788 -msgid "" -"If ldap_schema is set to a schema format that supports nested groups (e.g. " -"RFC2307bis), then this option controls how many levels of nesting SSSD will " -"follow. This option has no effect on the RFC2307 schema." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:795 -msgid "Default: 2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:801 -msgid "ldap_netgroup_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:804 -msgid "The object class of a netgroup entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:807 -msgid "In IPA provider, ipa_netgroup_object_class should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:811 -msgid "Default: nisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:817 -msgid "ldap_netgroup_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:820 -msgid "The LDAP attribute that corresponds to the netgroup name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:824 -msgid "In IPA provider, ipa_netgroup_name should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:834 -msgid "ldap_netgroup_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:837 -msgid "The LDAP attribute that contains the names of the netgroup's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:841 -msgid "In IPA provider, ipa_netgroup_member should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:845 -msgid "Default: memberNisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:851 -msgid "ldap_netgroup_triple (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:854 -msgid "" -"The LDAP attribute that contains the (host, user, domain) netgroup triples." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:858 sssd-ldap.5.xml:891 -msgid "This option is not available in IPA provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:861 -msgid "Default: nisNetgroupTriple" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:867 -msgid "ldap_netgroup_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:870 -msgid "" -"The LDAP attribute that contains the UUID/GUID of an LDAP netgroup object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:874 -msgid "In IPA provider, ipa_netgroup_uuid should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:884 -msgid "ldap_netgroup_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:900 -msgid "ldap_service_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:903 -msgid "The object class of a service entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:906 -msgid "Default: ipService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:912 -msgid "ldap_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:915 -msgid "" -"The LDAP attribute that contains the name of service attributes and their " -"aliases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:925 -msgid "ldap_service_port (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:928 -msgid "The LDAP attribute that contains the port managed by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:932 -msgid "Default: ipServicePort" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:938 -msgid "ldap_service_proto (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:941 -msgid "" -"The LDAP attribute that contains the protocols understood by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:945 -msgid "Default: ipServiceProtocol" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:951 -msgid "ldap_service_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:954 -msgid "An optional base DN to restrict service searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:958 sssd-ldap.5.xml:1918 sssd-ldap.5.xml:1937 -#: sssd-ldap.5.xml:1956 sssd-ldap.5.xml:2019 sssd-ldap.5.xml:2041 -#: sssd-ipa.5.xml:163 sssd-ipa.5.xml:187 -msgid "" -"See <quote>ldap_search_base</quote> for information about configuring " -"multiple search bases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:963 sssd-ldap.5.xml:1923 sssd-ldap.5.xml:1942 -#: sssd-ldap.5.xml:1961 sssd-ldap.5.xml:2024 sssd-ldap.5.xml:2046 -#: sssd-ipa.5.xml:173 sssd-ipa.5.xml:192 -msgid "Default: the value of <emphasis>ldap_search_base</emphasis>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:970 -msgid "ldap_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:973 -msgid "" -"Specifies the timeout (in seconds) that ldap searches are allowed to run " -"before they are cancelled and cached results are returned (and offline mode " -"is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:979 -msgid "" -"Note: this option is subject to change in future versions of the SSSD. It " -"will likely be replaced at some point by a series of timeouts for specific " -"lookup types." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:985 sssd-ldap.5.xml:1027 sssd-ldap.5.xml:1042 -msgid "Default: 6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:991 -msgid "ldap_enumeration_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:994 -msgid "" -"Specifies the timeout (in seconds) that ldap searches for user and group " -"enumerations are allowed to run before they are cancelled and cached results " -"are returned (and offline mode is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1001 -msgid "Default: 60" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1007 -msgid "ldap_network_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1010 -msgid "" -"Specifies the timeout (in seconds) after which the <citerefentry> " -"<refentrytitle>poll</refentrytitle> <manvolnum>2</manvolnum> </citerefentry>/" -"<citerefentry> <refentrytitle>select</refentrytitle> <manvolnum>2</" -"manvolnum> </citerefentry> following a <citerefentry> " -"<refentrytitle>connect</refentrytitle> <manvolnum>2</manvolnum> </" -"citerefentry> returns in case of no activity." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1033 -msgid "ldap_opt_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1036 -msgid "" -"Specifies a timeout (in seconds) after which calls to synchronous LDAP APIs " -"will abort if no response is received. Also controls the timeout when " -"communicating with the KDC in case of SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1048 -msgid "ldap_connection_expire_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1051 -msgid "" -"Specifies a timeout (in seconds) that a connection to an LDAP server will be " -"maintained. After this time, the connection will be re-established. If used " -"in parallel with SASL/GSSAPI, the sooner of the two values (this value vs. " -"the TGT lifetime) will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1059 -msgid "Default: 900 (15 minutes)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1065 -msgid "ldap_page_size (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1068 -msgid "" -"Specify the number of records to retrieve from LDAP in a single request. " -"Some LDAP servers enforce a maximum limit per-request." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1073 -msgid "Default: 1000" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1079 -msgid "ldap_disable_paging" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1082 -msgid "" -"Disable the LDAP paging control. This option should be used if the LDAP " -"server reports that it supports the LDAP paging control in its RootDSE but " -"it is not enabled or does not behave properly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1088 -msgid "" -"Example: OpenLDAP servers with the paging control module installed on the " -"server but not enabled will report it in the RootDSE but be unable to use it." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1094 -msgid "" -"Example: 389 DS has a bug where it can only support a one paging control at " -"a time on a single connection. On busy clients, this can result in some " -"requests being denied." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1103 -msgid "ldap_deref_threshold (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1106 -msgid "" -"Specify the number of group members that must be missing from the internal " -"cache in order to trigger a dereference lookup. If less members are missing, " -"they are looked up individually." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1112 -msgid "" -"You can turn off dereference lookups completely by setting the value to 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1116 -msgid "" -"A dereference lookup is a means of fetching all group members in a single " -"LDAP call. Different LDAP servers may implement different dereference " -"methods. The currently supported servers are 389/RHDS, OpenLDAP and Active " -"Directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1124 -msgid "" -"<emphasis>Note:</emphasis> If any of the search bases specifies a search " -"filter, then the dereference lookup performance enhancement will be disabled " -"regardless of this setting." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1137 -msgid "ldap_tls_reqcert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1140 -msgid "" -"Specifies what checks to perform on server certificates in a TLS session, if " -"any. It can be specified as one of the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1146 -msgid "" -"<emphasis>never</emphasis> = The client will not request or check any server " -"certificate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1150 -msgid "" -"<emphasis>allow</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, it will be ignored and the session proceeds normally." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1157 -msgid "" -"<emphasis>try</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, the session is immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1163 -msgid "" -"<emphasis>demand</emphasis> = The server certificate is requested. If no " -"certificate is provided, or a bad certificate is provided, the session is " -"immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1169 -msgid "<emphasis>hard</emphasis> = Same as <quote>demand</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1173 -msgid "Default: hard" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1179 -msgid "ldap_tls_cacert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1182 -msgid "" -"Specifies the file that contains certificates for all of the Certificate " -"Authorities that <command>sssd</command> will recognize." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1187 sssd-ldap.5.xml:1205 sssd-ldap.5.xml:1246 -msgid "" -"Default: use OpenLDAP defaults, typically in <filename>/etc/openldap/ldap." -"conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1194 -msgid "ldap_tls_cacertdir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1197 -msgid "" -"Specifies the path of a directory that contains Certificate Authority " -"certificates in separate individual files. Typically the file names need to " -"be the hash of the certificate followed by '.0'. If available, " -"<command>cacertdir_rehash</command> can be used to create the correct names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1212 -msgid "ldap_tls_cert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1215 -msgid "Specifies the file that contains the certificate for the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1219 sssd-ldap.5.xml:1231 sssd-ldap.5.xml:1979 -#: sssd-ldap.5.xml:2006 sssd-krb5.5.xml:359 -msgid "Default: not set" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1225 -msgid "ldap_tls_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1228 -msgid "Specifies the file that contains the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1237 -msgid "ldap_tls_cipher_suite (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1240 -msgid "" -"Specifies acceptable cipher suites. Typically this is a colon sperated " -"list. See <citerefentry><refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> for format." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1253 -msgid "ldap_id_use_start_tls (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1256 -msgid "" -"Specifies that the id_provider connection must also use <systemitem class=" -"\"protocol\">tls</systemitem> to protect the channel." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1266 -msgid "ldap_sasl_mech (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1269 -msgid "" -"Specify the SASL mechanism to use. Currently only GSSAPI is tested and " -"supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1273 sssd-ldap.5.xml:1428 -msgid "Default: none" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1279 -msgid "ldap_sasl_authid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1282 -msgid "" -"Specify the SASL authorization id to use. When GSSAPI is used, this " -"represents the Kerberos principal used for authentication to the directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1287 -msgid "Default: host/machine.fqdn@REALM" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1293 -msgid "ldap_sasl_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1296 -msgid "" -"If set to true, the LDAP library would perform a reverse lookup to " -"canonicalize the host name during a SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1301 -msgid "Default: false;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1307 -msgid "ldap_krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1310 -msgid "Specify the keytab to use when using SASL/GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1313 -msgid "Default: System keytab, normally <filename>/etc/krb5.keytab</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1319 -msgid "ldap_krb5_init_creds (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1322 -msgid "" -"Specifies that the id_provider should init Kerberos credentials (TGT). This " -"action is performed only if SASL is used and the mechanism selected is " -"GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1334 -msgid "ldap_krb5_ticket_lifetime (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1337 -msgid "Specifies the lifetime in seconds of the TGT if GSSAPI is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1341 -msgid "Default: 86400 (24 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1347 sssd-krb5.5.xml:74 -msgid "krb5_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1350 sssd-krb5.5.xml:77 -msgid "" -"Specifies the comma-separated list of IP addresses or hostnames of the " -"Kerberos servers to which SSSD should connect in the order of preference. " -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. An optional port number (preceded by a " -"colon) may be appended to the addresses or hostnames. If empty, service " -"discovery is enabled - for more information, refer to the <quote>SERVICE " -"DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1362 sssd-krb5.5.xml:89 -msgid "" -"When using service discovery for KDC or kpasswd servers, SSSD first searches " -"for DNS entries that specify _udp as the protocol and falls back to _tcp if " -"none are found." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1367 sssd-krb5.5.xml:94 -msgid "" -"This option was named <quote>krb5_kdcip</quote> in earlier releases of SSSD. " -"While the legacy name is recognized for the time being, users are advised to " -"migrate their config files to use <quote>krb5_server</quote> instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1376 sssd-ipa.5.xml:216 sssd-krb5.5.xml:103 -msgid "krb5_realm (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1379 -msgid "Specify the Kerberos REALM (for SASL/GSSAPI auth)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1382 -msgid "Default: System defaults, see <filename>/etc/krb5.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1388 sssd-ipa.5.xml:231 sssd-krb5.5.xml:409 -msgid "krb5_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1391 -msgid "" -"Specifies if the host principal should be canonicalized when connecting to " -"LDAP server. This feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1403 -msgid "ldap_pwd_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1406 -msgid "" -"Select the policy to evaluate the password expiration on the client side. " -"The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1411 -msgid "" -"<emphasis>none</emphasis> - No evaluation on the client side. This option " -"cannot disable server-side password policies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1416 -msgid "" -"<emphasis>shadow</emphasis> - Use <citerefentry><refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum></citerefentry> style attributes to " -"evaluate if the password has expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1422 -msgid "" -"<emphasis>mit_kerberos</emphasis> - Use the attributes used by MIT Kerberos " -"to determine if the password has expired. Use chpass_provider=krb5 to update " -"these attributes when the password is changed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1434 -msgid "ldap_referrals (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1437 -msgid "Specifies whether automatic referral chasing should be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1441 -msgid "" -"Please note that sssd only supports referral chasing when it is compiled " -"with OpenLDAP version 2.4.13 or higher." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1452 -msgid "ldap_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1455 -msgid "Specifies the service name to use when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1459 -msgid "Default: ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1465 -msgid "ldap_chpass_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1468 -msgid "" -"Specifies the service name to use to find an LDAP server which allows " -"password changes when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1473 -msgid "Default: not set, i.e. service discovery is disabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1479 -msgid "ldap_access_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1482 -msgid "" -"If using access_provider = ldap, this option is mandatory. It specifies an " -"LDAP search filter criteria that must be met for the user to be granted " -"access on this host. If access_provider = ldap and this option is not set, " -"it will result in all users being denied access. Use access_provider = allow " -"to change this default behavior." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1492 sssd-ldap.5.xml:1982 -msgid "Example:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1495 -#, no-wrap -msgid "" -"access_provider = ldap\n" -"ldap_access_filter = memberOf=cn=allowedusers,ou=Groups,dc=example,dc=com\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1499 -msgid "" -"This example means that access to this host is restricted to members of the " -"\"allowedusers\" group in ldap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1504 -msgid "" -"Offline caching for this feature is limited to determining whether the " -"user's last online login was granted access permission. If they were granted " -"access during their last login, they will continue to be granted access " -"while offline and vice-versa." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1512 sssd-ldap.5.xml:1562 -msgid "Default: Empty" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1518 -msgid "ldap_account_expire_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1521 -msgid "" -"With this option a client side evaluation of access control attributes can " -"be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1525 -msgid "" -"Please note that it is always recommended to use server side access control, " -"i.e. the LDAP server should deny the bind request with a suitable error code " -"even if the password is correct." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1532 -msgid "The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1535 -msgid "" -"<emphasis>shadow</emphasis>: use the value of ldap_user_shadow_expire to " -"determine if the account is expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1540 -msgid "" -"<emphasis>ad</emphasis>: use the value of the 32bit field " -"ldap_user_ad_user_account_control and allow access if the second bit is not " -"set. If the attribute is missing access is granted. Also the expiration time " -"of the account is checked." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1547 -msgid "" -"<emphasis>rhds</emphasis>, <emphasis>ipa</emphasis>, <emphasis>389ds</" -"emphasis>: use the value of ldap_ns_account_lock to check if access is " -"allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1553 -msgid "" -"<emphasis>nds</emphasis>: the values of " -"ldap_user_nds_login_allowed_time_map, ldap_user_nds_login_disabled and " -"ldap_user_nds_login_expiration_time are used to check if access is allowed. " -"If both attributes are missing access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1568 -msgid "ldap_access_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1571 -msgid "Comma separated list of access control options. Allowed values are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1575 -msgid "<emphasis>filter</emphasis>: use ldap_access_filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1578 -msgid "<emphasis>expire</emphasis>: use ldap_account_expire_policy" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1582 -msgid "" -"<emphasis>authorized_service</emphasis>: use the authorizedService attribute " -"to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1587 -msgid "<emphasis>host</emphasis>: use the host attribute to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1591 -msgid "Default: filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1594 -msgid "" -"Please note that it is a configuration error if a value is used more than " -"once." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1601 -msgid "ldap_deref (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1604 -msgid "" -"Specifies how alias dereferencing is done when performing a search. The " -"following options are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1609 -msgid "<emphasis>never</emphasis>: Aliases are never dereferenced." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1613 -msgid "" -"<emphasis>searching</emphasis>: Aliases are dereferenced in subordinates of " -"the base object, but not in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1618 -msgid "" -"<emphasis>finding</emphasis>: Aliases are only dereferenced when locating " -"the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1623 -msgid "" -"<emphasis>always</emphasis>: Aliases are dereferenced both in searching and " -"in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1628 -msgid "" -"Default: Empty (this is handled as <emphasis>never</emphasis> by the LDAP " -"client libraries)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:51 -msgid "" -"All of the common configuration options that apply to SSSD domains also " -"apply to LDAP domains. Refer to the <quote>DOMAIN SECTIONS</quote> section " -"of the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for full details. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1639 -msgid "SUDO OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1644 -msgid "ldap_sudorule_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1647 -msgid "The object class of a sudo rule entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1650 -msgid "Default: sudoRole" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1656 -msgid "ldap_sudorule_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1659 -msgid "The LDAP attribute that corresponds to the sudo rule name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1669 -msgid "ldap_sudorule_command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1672 -msgid "The LDAP attribute that corresponds to the command name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1676 -msgid "Default: sudoCommand" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1682 -msgid "ldap_sudorule_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1685 -msgid "" -"The LDAP attribute that corresponds to the host name (or host IP address, " -"host IP network, or host netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1690 -msgid "Default: sudoHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1696 -msgid "ldap_sudorule_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1699 -msgid "" -"The LDAP attribute that corresponds to the user name (or UID, group name or " -"user's netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1703 -msgid "Default: sudoUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1709 -msgid "ldap_sudorule_option (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1712 -msgid "The LDAP attribute that corresponds to the sudo options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1716 -msgid "Default: sudoOption" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1722 -msgid "ldap_sudorule_runasuser (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1725 -msgid "" -"The LDAP attribute that corresponds to the user name that commands may be " -"run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1729 -msgid "Default: sudoRunAsUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1735 -msgid "ldap_sudorule_runasgroup (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1738 -msgid "" -"The LDAP attribute that corresponds to the group name or group GID that " -"commands may be run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1742 -msgid "Default: sudoRunAsGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1748 -msgid "ldap_sudorule_notbefore (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1751 -msgid "" -"The LDAP attribute that corresponds to the start date/time for when the sudo " -"rule is valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1755 -msgid "Default: sudoNotBefore" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1761 -msgid "ldap_sudorule_notafter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1764 -msgid "" -"The LDAP attribute that corresponds to the expiration date/time, after which " -"the sudo rule will no longer be valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1769 -msgid "Default: sudoNotAfter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1775 -msgid "ldap_sudorule_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1778 -msgid "The LDAP attribute that corresponds to the ordering index of the rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1782 -msgid "Default: sudoOrder" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1788 -msgid "ldap_sudo_refresh_enabled (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1791 -msgid "" -"Enables periodical download of all sudo rules. The cache is purged before " -"each update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1801 -msgid "ldap_sudo_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1804 -msgid "" -"How many seconds SSSD has to wait before refreshing its cache of sudo rules." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1642 -msgid "<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1815 -msgid "" -"This manual page only describes attribute name mapping. For detailed " -"explanation of sudo related attribute semantics, see <citerefentry> " -"<refentrytitle>sudoers.ldap</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1825 -msgid "AUTOFS OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1827 -msgid "" -"Please note that the default values correspond to the default schema which " -"is RFC2307." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1834 -msgid "ldap_autofs_map_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1837 sssd-ldap.5.xml:1863 -msgid "The object class of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1840 sssd-ldap.5.xml:1867 -msgid "Default: automountMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1847 -msgid "ldap_autofs_map_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1850 -msgid "The name of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1853 -msgid "Default: ou" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1860 -msgid "ldap_autofs_entry_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1874 -msgid "ldap_autofs_entry_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1877 sssd-ldap.5.xml:1891 -msgid "" -"The key of an automount entry in LDAP. The entry usually corresponds to a " -"mount point." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1888 -msgid "ldap_autofs_entry_value (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1895 -msgid "Default: automountInformation" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1832 -msgid "" -"<placeholder type=\"variablelist\" id=\"0\"/> <placeholder type=" -"\"variablelist\" id=\"1\"/> <placeholder type=\"variablelist\" id=\"2\"/> " -"<placeholder type=\"variablelist\" id=\"3\"/> <placeholder type=" -"\"variablelist\" id=\"4\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1904 -msgid "ADVANCED OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1911 -msgid "ldap_netgroup_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1914 -msgid "" -"An optional base DN to restrict netgroup searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1930 -msgid "ldap_user_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1933 -msgid "An optional base DN to restrict user searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1949 -msgid "ldap_group_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1952 -msgid "An optional base DN to restrict group searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1968 -msgid "ldap_user_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1971 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict user searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1975 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_user_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1985 -#, no-wrap -msgid "" -" ldap_user_search_filter = (loginShell=/bin/tcsh)\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1988 -msgid "" -"This filter would restrict user searches to users that have their shell set " -"to /bin/tcsh." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1995 -msgid "ldap_group_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1998 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict group searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2002 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_group_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2012 -msgid "ldap_sudo_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2015 -msgid "" -"An optional base DN to restrict sudo rules searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2034 -msgid "ldap_autofs_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2037 -msgid "" -"An optional base DN to restrict automounter searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1906 -msgid "" -"These options are supported by LDAP domains, but they should be used with " -"caution. Please include them in your configuration only if you know what you " -"are doing. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2066 -msgid "" -"The following example assumes that SSSD is correctly configured and LDAP is " -"set to one of the domains in the <replaceable>[domains]</replaceable> " -"section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ldap.5.xml:2072 -#, no-wrap -msgid "" -" [domain/LDAP]\n" -" id_provider = ldap\n" -" auth_provider = ldap\n" -" ldap_uri = ldap://ldap.mydomain.org\n" -" ldap_search_base = dc=mydomain,dc=org\n" -" ldap_tls_reqcert = demand\n" -" cache_credentials = true\n" -" enumerate = true\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2071 sssd-simple.5.xml:134 sssd-ipa.5.xml:552 -#: sssd-krb5.5.xml:441 -msgid "<placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:2085 sssd_krb5_locator_plugin.8.xml:61 -msgid "NOTES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2087 -msgid "" -"The descriptions of some of the configuration options in this manual page " -"are based on the <citerefentry> <refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page from the OpenLDAP 2.4 " -"distribution." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2098 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <refentryinfo> -#: pam_sss.8.xml:8 include/upstream.xml:2 -msgid "" -"<productname>SSSD</productname> <orgname>The SSSD upstream - http://" -"fedorahosted.org/sssd</orgname>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: pam_sss.8.xml:13 pam_sss.8.xml:18 -msgid "pam_sss" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: pam_sss.8.xml:19 -msgid "PAM module for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: pam_sss.8.xml:24 -msgid "" -"<command>pam_sss.so</command> <arg choice='opt'> <replaceable>quiet</" -"replaceable> </arg> <arg choice='opt'> <replaceable>forward_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_first_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_authtok</" -"replaceable> </arg> <arg choice='opt'> <replaceable>retry=N</replaceable> </" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:45 -msgid "" -"<command>pam_sss.so</command> is the PAM interface to the System Security " -"Services daemon (SSSD). Errors and results are logged through <command>syslog" -"(3)</command> with the LOG_AUTHPRIV facility." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:55 -msgid "<option>quiet</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:58 -msgid "Suppress log messages for unknown users." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:63 -msgid "<option>forward_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:66 -msgid "" -"If <option>forward_pass</option> is set the entered password is put on the " -"stack for other PAM modules to use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:73 -msgid "<option>use_first_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:76 -msgid "" -"The argument use_first_pass forces the module to use a previous stacked " -"modules password and will never prompt the user - if no password is " -"available or the password is not appropriate, the user will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:84 -msgid "<option>use_authtok</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:87 -msgid "" -"When password changing enforce the module to set the new password to the one " -"provided by a previously stacked password module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:94 -msgid "<option>retry=N</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:97 -msgid "" -"If specified the user is asked another N times for a password if " -"authentication fails. Default is 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:99 -msgid "" -"Please note that this option might not work as expected if the application " -"calling PAM handles the user dialog on its own. A typical example is " -"<command>sshd</command> with <option>PasswordAuthentication</option>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:110 -msgid "MODULE TYPES PROVIDED" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:111 -msgid "" -"All module types (<option>account</option>, <option>auth</option>, " -"<option>password</option> and <option>session</option>) are provided." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:117 -msgid "FILES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:118 -msgid "" -"If a password reset by root fails, because the corresponding SSSD provider " -"does not support password resets, an individual message can be displayed. " -"This message can e.g. contain instructions about how to reset a password." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:123 -msgid "" -"The message is read from the file <filename>pam_sss_pw_reset_message.LOC</" -"filename> where LOC stands for a locale string returned by <citerefentry> " -"<refentrytitle>setlocale</refentrytitle><manvolnum>3</manvolnum> </" -"citerefentry>. If there is no matching file the content of " -"<filename>pam_sss_pw_reset_message.txt</filename> is displayed. Root must be " -"the owner of the files and only root may have read and write permissions " -"while all other users must have only read permissions." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:133 -msgid "" -"These files are searched in the directory <filename>/etc/sssd/customize/" -"DOMAIN_NAME/</filename>. If no matching file is present a generic message is " -"displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:141 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd_krb5_locator_plugin.8.xml:10 sssd_krb5_locator_plugin.8.xml:15 -msgid "sssd_krb5_locator_plugin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:22 -msgid "" -"The Kerberos locator plugin <command>sssd_krb5_locator_plugin</command> is " -"used by the Kerberos provider of <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry> to tell the Kerberos " -"libraries what Realm and which KDC to use. Typically this is done in " -"<citerefentry> <refentrytitle>krb5.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> which is always read by the Kerberos libraries. " -"To simplify the configuration the Realm and the KDC can be defined in " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> as described in <citerefentry> " -"<refentrytitle>sssd-krb5.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry> puts the Realm and the name or IP address of the KDC into " -"the environment variables SSSD_KRB5_REALM and SSSD_KRB5_KDC respectively. " -"When <command>sssd_krb5_locator_plugin</command> is called by the kerberos " -"libraries it reads and evaluates these variables and returns them to the " -"libraries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:63 -msgid "" -"Not all Kerberos implementations support the use of plugins. If " -"<command>sssd_krb5_locator_plugin</command> is not available on your system " -"you have to edit /etc/krb5.conf to reflect your Kerberos setup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:69 -msgid "" -"If the environment variable SSSD_KRB5_LOCATOR_DEBUG is set to any value " -"debug messages will be sent to stderr." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:77 -msgid "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-simple.5.xml:10 sssd-simple.5.xml:16 -msgid "sssd-simple" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd-simple.5.xml:17 -msgid "the configuration file for SSSD's 'simple' access-control provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:24 -msgid "" -"This manual page describes the configuration of the simple access-control " -"provider for <citerefentry> <refentrytitle>sssd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry>. For a detailed syntax reference, " -"refer to the <quote>FILE FORMAT</quote> section of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:38 -msgid "" -"The simple access provider grants or denies access based on an access or " -"deny list of user or group names. The following rules apply:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:43 -msgid "If all lists are empty, access is granted" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:47 -msgid "" -"If any list is provided, the order of evaluation is allow,deny. This means " -"that any matching deny rule will supersede any matched allow rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:54 -msgid "" -"If either or both \"allow\" lists are provided, all users are denied unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:60 -msgid "" -"If only \"deny\" lists are provided, all users are granted access unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:78 -msgid "simple_allow_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:81 -msgid "Comma separated list of users who are allowed to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:88 -msgid "simple_deny_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:91 -msgid "Comma separated list of users who are explicitly denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:97 -msgid "simple_allow_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:100 -msgid "" -"Comma separated list of groups that are allowed to log in. This applies only " -"to groups within this SSSD domain. Local groups are not evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:108 -msgid "simple_deny_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:111 -msgid "" -"Comma separated list of groups that are explicitly denied access. This " -"applies only to groups within this SSSD domain. Local groups are not " -"evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:70 sssd-ipa.5.xml:65 -msgid "" -"Refer to the section <quote>DOMAIN SECTIONS</quote> of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page for details on the configuration of an SSSD " -"domain. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:120 -msgid "" -"Please note that it is an configuration error if both, simple_allow_users " -"and simple_deny_users, are defined." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:128 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the simple access provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-simple.5.xml:135 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" access_provider = simple\n" -" simple_allow_users = user1, user2\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:145 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ipa.5.xml:10 sssd-ipa.5.xml:16 -msgid "sssd-ipa" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:23 -msgid "" -"This manual page describes the configuration of the IPA provider for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. For a detailed syntax reference, refer to the <quote>FILE " -"FORMAT</quote> section of the <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:36 -msgid "" -"The IPA provider is a back end used to connect to an IPA server. (Refer to " -"the freeipa.org web site for information about IPA servers.) This provider " -"requires that the machine be joined to the IPA domain; configuration is " -"almost entirely self-discovered and obtained directly from the server." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:43 -msgid "" -"The IPA provider accepts the same options used by the <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> identity provider and the <citerefentry> <refentrytitle>sssd-" -"krb5</refentrytitle> <manvolnum>5</manvolnum> </citerefentry> authentication " -"provider with some exceptions described below." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:55 -msgid "" -"However, it is neither necessary nor recommended to set these options. IPA " -"provider can also be used as an access and chpass provider. As an access " -"provider it uses HBAC (host-based access control) rules. Please refer to " -"freeipa.org for more information about HBAC. No configuration of access " -"provider is required on the client side." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:72 -msgid "ipa_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:75 -msgid "" -"Specifies the name of the IPA domain. This is optional. If not provided, " -"the configuration domain name is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:83 -msgid "ipa_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:86 -msgid "" -"The comma-separated list of IP addresses or hostnames of the IPA servers to " -"which SSSD should connect in the order of preference. For more information " -"on failover and server redundancy, see the <quote>FAILOVER</quote> section. " -"This is optional if autodiscovery is enabled. For more information on " -"service discovery, refer to the the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:99 -msgid "ipa_hostname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:102 -msgid "" -"Optional. May be set on machines where the hostname(5) does not reflect the " -"fully qualified name used in the IPA domain to identify this host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:110 -msgid "ipa_dyndns_update (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:113 -msgid "" -"Optional. This option tells SSSD to automatically update the DNS server " -"built into FreeIPA v2 with the IP address of this client." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:118 -msgid "" -"NOTE: On older systems (such as RHEL 5), for this behavior to work reliably, " -"the default Kerberos realm must be set properly in /etc/krb5.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:129 -msgid "ipa_dyndns_iface (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:132 -msgid "" -"Optional. Applicable only when ipa_dyndns_update is true. Choose the " -"interface whose IP address should be used for dynamic DNS updates." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:137 -msgid "Default: Use the IP address of the IPA LDAP connection" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:143 -msgid "ipa_hbac_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:146 -msgid "Optional. Use the given string as search base for HBAC related objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:150 -msgid "Default: Use base DN" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:156 -msgid "ipa_host_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:159 -msgid "Optional. Use the given string as search base for host objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:168 -msgid "" -"If filter is given in any of search bases and " -"<emphasis>ipa_hbac_support_srchost</emphasis> is set to False, the filter " -"will be ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:180 -msgid "ipa_selinux_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:183 -msgid "Optional. Use the given string as search base for SELinux user maps." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:199 sssd-krb5.5.xml:229 -msgid "krb5_validate (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:202 sssd-krb5.5.xml:232 -msgid "" -"Verify with the help of krb5_keytab that the TGT obtained has not been " -"spoofed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:209 -msgid "" -"Note that this default differs from the traditional Kerberos provider back " -"end." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:219 -msgid "" -"The name of the Kerberos realm. This is optional and defaults to the value " -"of <quote>ipa_domain</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:223 -msgid "" -"The name of the Kerberos realm has a special meaning in IPA - it is " -"converted into the base DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:234 -msgid "" -"Specifies if the host and user principal should be canonicalized when " -"connecting to IPA LDAP and also for AS requests. This feature is available " -"with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:247 -msgid "ipa_hbac_refresh (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:250 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server. " -"This will reduce the latency and load on the IPA server if there are many " -"access-control requests made in a short period." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:257 -msgid "Default: 5 (seconds)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:262 -msgid "ipa_hbac_treat_deny_as (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:265 -msgid "" -"This option specifies how to treat the deprecated DENY-type HBAC rules. As " -"of FreeIPA v2.1, DENY rules are no longer supported on the server. All users " -"of FreeIPA will need to migrate their rules to use only the ALLOW rules. The " -"client will support two modes of operation during this transition period:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:274 -msgid "" -"<emphasis>DENY_ALL</emphasis>: If any HBAC DENY rules are detected, all " -"users will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:279 -msgid "" -"<emphasis>IGNORE</emphasis>: SSSD will ignore any DENY rules. Be very " -"careful with this option, as it may result in opening unintended access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:284 -msgid "Default: DENY_ALL" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:289 -msgid "ipa_hbac_support_srchost (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:292 -msgid "" -"If this is set to false, then srchost as given to SSSD by PAM will be " -"ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:296 -msgid "" -"Note that if set to <emphasis>False</emphasis>, this option casuses filters " -"given in <emphasis>ipa_host_search_base</emphasis> to be ignored;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:307 -msgid "ipa_automount_location (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:310 -msgid "The automounter location this IPA client will be using" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:313 -msgid "Default: The location named \"default\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:319 -msgid "ipa_netgroup_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:322 -msgid "The LDAP attribute that lists netgroup's memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:331 -msgid "ipa_netgroup_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:334 -msgid "" -"The LDAP attribute that lists system users and groups that are direct " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:339 sssd-ipa.5.xml:434 -msgid "Default: memberUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:344 -msgid "ipa_netgroup_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:347 -msgid "" -"The LDAP attribute that lists hosts and host groups that are direct members " -"of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:351 sssd-ipa.5.xml:446 -msgid "Default: memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:356 -msgid "ipa_netgroup_member_ext_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:359 -msgid "" -"The LDAP attribute that lists FQDNs of hosts and host groups that are " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:363 -msgid "Default: externalHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:368 -msgid "ipa_netgroup_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:371 -msgid "The LDAP attribute that contains NIS domain name of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:375 -msgid "Default: nisDomainName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:381 -msgid "ipa_host_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:384 sssd-ipa.5.xml:407 -msgid "The object class of a host entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:387 sssd-ipa.5.xml:410 -msgid "Default: ipaHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:392 -msgid "ipa_host_fqdn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:395 -msgid "The LDAP attribute that contains FQDN of the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:398 -msgid "Default: fqdn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:404 -msgid "ipa_selinux_usermap_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:415 -msgid "ipa_selinux_usermap_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:418 -msgid "The LDAP attribute that contains the name of SELinux usermap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:427 -msgid "ipa_selinux_usermap_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:430 -msgid "" -"The LDAP attribute that contains all users / groups this rule match against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:439 -msgid "ipa_selinux_usermap_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:442 -msgid "" -"The LDAP attribute that contains all hosts / hostgroups this rule match " -"against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:451 -msgid "ipa_selinux_usermap_see_also (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:454 -msgid "" -"The LDAP attribute that contains DN of HBAC rule which can be used for " -"matching instead of memberUser and memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:459 -msgid "Default: seeAlso" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:464 -msgid "ipa_selinux_usermap_selinux_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:467 -msgid "The LDAP attribute that contains SELinux user string itself." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:471 -msgid "Default: ipaSELinuxUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:476 -msgid "ipa_selinux_usermap_enabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:479 -msgid "" -"The LDAP attribute that contains whether or not is user map enabled for " -"usage." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:483 -msgid "Default: ipaEnabledFlag" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:488 -msgid "ipa_selinux_usermap_user_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:491 -msgid "The LDAP attribute that contains user category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:495 -msgid "Default: userCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:500 -msgid "ipa_selinux_usermap_host_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:503 -msgid "The LDAP attribute that contains host category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:507 -msgid "Default: hostCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:512 -msgid "ipa_selinux_usermap_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:515 -msgid "The LDAP attribute that contains unique ID of the user map." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:519 -msgid "Default: ipaUniqueID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:524 -msgid "ipa_host_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:527 -msgid "The LDAP attribute that contains the host's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:531 -msgid "Default: ipaSshPubKey" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:546 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the ipa provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ipa.5.xml:553 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" id_provider = ipa\n" -" ipa_server = ipaserver.example.com\n" -" ipa_hostname = myhost.example.com\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:564 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.8.xml:10 sssd.8.xml:15 -msgid "sssd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.8.xml:16 -msgid "System Security Services Daemon" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sssd.8.xml:21 -msgid "" -"<command>sssd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:31 -msgid "" -"<command>SSSD</command> provides a set of daemons to manage access to remote " -"directories and authentication mechanisms. It provides an NSS and PAM " -"interface toward the system and a pluggable backend system to connect to " -"multiple different account sources as well as D-Bus interface. It is also " -"the basis to provide client auditing and policy services for projects like " -"FreeIPA. It provides a more robust database to store local users as well as " -"extended user data." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:46 -msgid "" -"<option>-d</option>,<option>--debug-level</option> <replaceable>LEVEL</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:53 -msgid "<option>--debug-timestamps=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:57 -msgid "<emphasis>1</emphasis>: Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:60 -msgid "<emphasis>0</emphasis>: Disable timestamp in the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:69 -msgid "<option>--debug-microseconds=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:73 -msgid "" -"<emphasis>1</emphasis>: Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:76 -msgid "<emphasis>0</emphasis>: Disable microseconds in timestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:79 -msgid "Default: 0" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:85 -msgid "<option>-f</option>,<option>--debug-to-files</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:89 -msgid "" -"Send the debug output to files instead of stderr. By default, the log files " -"are stored in <filename>/var/log/sssd</filename> and there are separate log " -"files for every SSSD service and domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:97 -msgid "<option>-D</option>,<option>--daemon</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:101 -msgid "Become a daemon after starting up." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:107 -msgid "<option>-i</option>,<option>--interactive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:111 -msgid "Run in the foreground, don't become a daemon." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:117 sss_debuglevel.8.xml:42 -msgid "<option>-c</option>,<option>--config</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:121 sss_debuglevel.8.xml:46 -msgid "" -"Specify a non-default config file. The default is <filename>/etc/sssd/sssd." -"conf</filename>. For reference on the config file syntax and options, " -"consult the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:135 -msgid "<option>--version</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:139 -msgid "Print version number and exit." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.8.xml:147 -msgid "Signals" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:150 -msgid "SIGTERM/SIGINT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:153 -msgid "" -"Informs the SSSD to gracefully terminate all of its child processes and then " -"shut down the monitor." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:159 -msgid "SIGHUP" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:162 -msgid "" -"Tells the SSSD to stop writing to its current debug file descriptors and to " -"close and reopen them. This is meant to facilitate log rolling with programs " -"like logrotate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:170 -msgid "SIGUSR1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:173 -msgid "" -"Tells the SSSD to simulate offline operation for one minute. This is mostly " -"useful for testing purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:179 -msgid "SIGUSR2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:182 -msgid "" -"Tells the SSSD to go online immediately. This is mostly useful for testing " -"purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:193 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_obfuscate.8.xml:10 sss_obfuscate.8.xml:15 -msgid "sss_obfuscate" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_obfuscate.8.xml:16 -msgid "obfuscate a clear text password" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_obfuscate.8.xml:21 -msgid "" -"<command>sss_obfuscate</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>[PASSWORD]</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:32 -msgid "" -"<command>sss_obfuscate</command> converts a given password into human-" -"unreadable format and places it into appropriate domain section of the SSSD " -"config file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:37 -msgid "" -"The cleartext password is read from standard input or entered " -"interactively. The obfuscated password is put into " -"<quote>ldap_default_authtok</quote> parameter of a given SSSD domain and the " -"<quote>ldap_default_authtok_type</quote> parameter is set to " -"<quote>obfuscated_password</quote>. Refer to <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more details on these parameters." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:49 -msgid "" -"Please note that obfuscating the password provides <emphasis>no real " -"security benefit</emphasis> as it is still possible for an attacker to " -"reverse-engineer the password back. Using better authentication mechanisms " -"such as client side certificates or GSSAPI is <emphasis>strongly</emphasis> " -"advised." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:63 -msgid "<option>-s</option>,<option>--stdin</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:67 -msgid "The password to obfuscate will be read from standard input." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:74 sss_ssh_authorizedkeys.1.xml:82 -#: sss_ssh_knownhostsproxy.1.xml:81 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>DOMAIN</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:79 -msgid "" -"The SSSD domain to use the password in. The default name is <quote>default</" -"quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:86 -msgid "" -"<option>-f</option>,<option>--file</option> <replaceable>FILE</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:91 -msgid "Read the config file specified by the positional parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:95 -msgid "Default: <filename>/etc/sssd/sssd.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:105 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_useradd.8.xml:10 sss_useradd.8.xml:15 -msgid "sss_useradd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_useradd.8.xml:16 -msgid "create a new user" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_useradd.8.xml:21 -msgid "" -"<command>sss_useradd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:32 -msgid "" -"<command>sss_useradd</command> creates a new user account using the values " -"specified on the command line plus the default values from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:43 -msgid "" -"<option>-u</option>,<option>--uid</option> <replaceable>UID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:48 -msgid "" -"Set the UID of the user to the value of <replaceable>UID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:55 sss_usermod.8.xml:43 -msgid "" -"<option>-c</option>,<option>--gecos</option> <replaceable>COMMENT</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:60 sss_usermod.8.xml:48 -msgid "" -"Any text string describing the user. Often used as the field for the user's " -"full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:67 sss_usermod.8.xml:55 -msgid "" -"<option>-h</option>,<option>--home</option> <replaceable>HOME_DIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:72 -msgid "" -"The home directory of the user account. The default is to append the " -"<replaceable>LOGIN</replaceable> name to <filename>/home</filename> and use " -"that as the home directory. The base that is prepended before " -"<replaceable>LOGIN</replaceable> is tunable with <quote>user_defaults/" -"baseDirectory</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:82 sss_usermod.8.xml:66 -msgid "" -"<option>-s</option>,<option>--shell</option> <replaceable>SHELL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:87 -msgid "" -"The user's login shell. The default is currently <filename>/bin/bash</" -"filename>. The default can be changed with <quote>user_defaults/" -"defaultShell</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:96 -msgid "" -"<option>-G</option>,<option>--groups</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:101 -msgid "A list of existing groups this user is also a member of." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:107 -msgid "<option>-m</option>,<option>--create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:111 -msgid "" -"Create the user's home directory if it does not exist. The files and " -"directories contained in the skeleton directory (which can be defined with " -"the -k option or in the config file) will be copied to the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:121 -msgid "<option>-M</option>,<option>--no-create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:125 -msgid "" -"Do not create the user's home directory. Overrides configuration settings." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:132 -msgid "" -"<option>-k</option>,<option>--skel</option> <replaceable>SKELDIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:137 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<command>sss_useradd</command>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:143 -msgid "" -"This option is only valid if the <option>-m</option> (or <option>--create-" -"home</option>) option is specified, or creation of home directories is set " -"to TRUE in the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:152 sss_usermod.8.xml:124 -msgid "" -"<option>-Z</option>,<option>--selinux-user</option> " -"<replaceable>SELINUX_USER</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:157 -msgid "" -"The SELinux user for the user's login. If not specified, the system default " -"will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:169 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-krb5.5.xml:10 sssd-krb5.5.xml:16 -msgid "sssd-krb5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:23 -msgid "" -"This manual page describes the configuration of the Kerberos 5 " -"authentication backend for <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry>. For a detailed " -"syntax reference, please refer to the <quote>FILE FORMAT</quote> section of " -"the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:36 -msgid "" -"The Kerberos 5 authentication backend contains auth and chpass providers. It " -"must be paired with identity provider in order to function properly (for " -"example, id_provider = ldap). Some information required by the Kerberos 5 " -"authentication backend must be provided by the identity provider, such as " -"the user's Kerberos Principal Name (UPN). The configuration of the identity " -"provider should have an entry to specify the UPN. Please refer to the man " -"page for the applicable identity provider for details on how to configure " -"this." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:47 -msgid "" -"This backend also provides access control based on the .k5login file in the " -"home directory of the user. See <citerefentry> <refentrytitle>.k5login</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry> for more details. " -"Please note that an empty .k5login file will deny all access to this user. " -"To activate this feature use 'access_provider = krb5' in your sssd " -"configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:55 -msgid "" -"In the case where the UPN is not available in the identity backend " -"<command>sssd</command> will construct a UPN using the format " -"<replaceable>username</replaceable>@<replaceable>krb5_realm</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:106 -msgid "" -"The name of the Kerberos realm. This option is required and must be " -"specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:113 -msgid "krb5_kpasswd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:116 -msgid "" -"If the change password service is not running on the KDC alternative servers " -"can be defined here. An optional port number (preceded by a colon) may be " -"appended to the addresses or hostnames." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:122 -msgid "" -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. Please note that even if there are no more " -"kpasswd servers to try the back end is not switch to offline if " -"authentication against the KDC is still possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:129 -msgid "Default: Use the KDC" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:135 -msgid "krb5_ccachedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:138 -msgid "" -"Directory to store credential caches. All the substitution sequences of " -"krb5_ccname_template can be used here, too, except %d and %P. If the " -"directory does not exist it will be created. If %u, %U, %p or %h are used a " -"private directory belonging to the user is created. Otherwise a public " -"directory with restricted deletion flag (aka sticky bit, see <citerefentry> " -"<refentrytitle>chmod</refentrytitle> <manvolnum>1</manvolnum> </" -"citerefentry> for details) is created." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:151 -msgid "Default: /tmp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:157 -msgid "krb5_ccname_template (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:171 -msgid "login UID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:174 -msgid "%p" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:175 -msgid "principal name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:179 -msgid "%r" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:180 -msgid "realm name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:183 -msgid "%h" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:184 -msgid "home directory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:189 -msgid "value of krb5ccache_dir" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:194 -msgid "%P" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:195 -msgid "the process ID of the sssd client" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:160 -msgid "" -"Location of the user's credential cache. Currently only file based " -"credential caches are supported. In the template the following sequences are " -"substituted: <placeholder type=\"variablelist\" id=\"0\"/> If the template " -"ends with 'XXXXXX' mkstemp(3) is used to create a unique filename in a safe " -"way." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:209 -msgid "Default: FILE:%d/krb5cc_%U_XXXXXX" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:215 -msgid "krb5_auth_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:218 -msgid "" -"Timeout in seconds after an online authentication or change password request " -"is aborted. If possible the authentication request is continued offline." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:241 -msgid "krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:244 -msgid "" -"The location of the keytab to use when validating credentials obtained from " -"KDCs." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:248 -msgid "Default: /etc/krb5.keytab" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:254 -msgid "krb5_store_password_if_offline (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:257 -msgid "" -"Store the password of the user if the provider is offline and use it to " -"request a TGT when the provider gets online again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:262 -msgid "" -"Please note that this feature currently only available on a Linux platform. " -"Passwords stored in this way are kept in plaintext in the kernel keyring and " -"are potentially accessible by the root user (with difficulty)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:275 -msgid "krb5_renewable_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:278 -msgid "" -"Request a renewable ticket with a total lifetime given by an integer " -"immediately followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:283 sssd-krb5.5.xml:319 -msgid "<emphasis>s</emphasis> seconds" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:286 sssd-krb5.5.xml:322 -msgid "<emphasis>m</emphasis> minutes" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:289 sssd-krb5.5.xml:325 -msgid "<emphasis>h</emphasis> hours" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:292 sssd-krb5.5.xml:328 -msgid "<emphasis>d</emphasis> days." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:295 sssd-krb5.5.xml:331 -msgid "If there is no delimiter <emphasis>s</emphasis> is assumed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:299 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"renewable lifetime to one and a half hours please use '90m' instead of " -"'1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:305 -msgid "Default: not set, i.e. the TGT is not renewable" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:311 -msgid "krb5_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:314 -msgid "" -"Request ticket with a with a lifetime given by an integer immediately " -"followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:335 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"lifetime to one and a half hours please use '90m' instead of '1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:340 -msgid "" -"Default: not set, i.e. the default ticket lifetime configured on the KDC." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:347 -msgid "krb5_renew_interval (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:350 -msgid "" -"The time in seconds between two checks if the TGT should be renewed. TGTs " -"are renewed if about half of their lifetime is exceeded." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:355 -msgid "If this option is not set or 0 the automatic renewal is disabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:365 -msgid "krb5_use_fast (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:368 -msgid "" -"Enables flexible authentication secure tunneling (FAST) for Kerberos pre-" -"authentication. The following options are supported:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:373 -msgid "" -"<emphasis>never</emphasis> use FAST, this is equivalent to not set this " -"option at all." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:377 -msgid "" -"<emphasis>try</emphasis> to use FAST, if the server does not support fast " -"continue without." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:381 -msgid "" -"<emphasis>demand</emphasis> to use FAST, fail if the server does not require " -"fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:385 -msgid "Default: not set, i.e. FAST is not used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:388 -msgid "Please note that a keytab is required to use fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:391 -msgid "" -"Please note also that sssd supports fast only with MIT Kerberos version 1.8 " -"and above. If sssd used with an older version using this option is a " -"configuration error." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:400 -msgid "krb5_fast_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:403 -msgid "Specifies the server principal to use for FAST." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:412 -msgid "" -"Specifies if the host and user principal should be canonicalized. This " -"feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:65 -msgid "" -"If the auth-module krb5 is used in a SSSD domain, the following options must " -"be used. See the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page, section <quote>DOMAIN " -"SECTIONS</quote> for details on the configuration of a SSSD domain. " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:434 -msgid "" -"The following example assumes that SSSD is correctly configured and FOO is " -"one of the domains in the <replaceable>[sssd]</replaceable> section. This " -"example shows only configuration of Kerberos authentication, it does not " -"include any identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-krb5.5.xml:442 -#, no-wrap -msgid "" -" [domain/FOO]\n" -" auth_provider = krb5\n" -" krb5_server = 192.168.1.1\n" -" krb5_realm = EXAMPLE.COM\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:453 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupadd.8.xml:10 sss_groupadd.8.xml:15 -msgid "sss_groupadd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupadd.8.xml:16 -msgid "create a new group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupadd.8.xml:21 -msgid "" -"<command>sss_groupadd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:32 -msgid "" -"<command>sss_groupadd</command> creates a new group. These groups are " -"compatible with POSIX groups, with the additional feature that they can " -"contain other groups as members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupadd.8.xml:43 -msgid "" -"<option>-g</option>,<option>--gid</option> <replaceable>GID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupadd.8.xml:48 -msgid "" -"Set the GID of the group to the value of <replaceable>GID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_userdel.8.xml:10 sss_userdel.8.xml:15 -msgid "sss_userdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_userdel.8.xml:16 -msgid "delete a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_userdel.8.xml:21 -msgid "" -"<command>sss_userdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:32 -msgid "" -"<command>sss_userdel</command> deletes a user identified by login name " -"<replaceable>LOGIN</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:44 -msgid "<option>-r</option>,<option>--remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:48 -msgid "" -"Files in the user's home directory will be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:56 -msgid "<option>-R</option>,<option>--no-remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:60 -msgid "" -"Files in the user's home directory will NOT be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:68 -msgid "<option>-f</option>,<option>--force</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:72 -msgid "" -"This option forces <command>sss_userdel</command> to remove the user's home " -"directory and mail spool, even if they are not owned by the specified user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:80 -msgid "<option>-k</option>,<option>--kick</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:84 -msgid "Before actually deleting the user, terminate all his processes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:95 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupdel.8.xml:10 sss_groupdel.8.xml:15 -msgid "sss_groupdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupdel.8.xml:16 -msgid "delete a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupdel.8.xml:21 -msgid "" -"<command>sss_groupdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:32 -msgid "" -"<command>sss_groupdel</command> deletes a group identified by its name " -"<replaceable>GROUP</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupshow.8.xml:10 sss_groupshow.8.xml:15 -msgid "sss_groupshow" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupshow.8.xml:16 -msgid "print properties of a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupshow.8.xml:21 -msgid "" -"<command>sss_groupshow</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:32 -msgid "" -"<command>sss_groupshow</command> displays information about a group " -"identified by its name <replaceable>GROUP</replaceable>. The information " -"includes the group ID number, members of the group and the parent group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupshow.8.xml:43 -msgid "<option>-R</option>,<option>--recursive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupshow.8.xml:47 -msgid "" -"Also print indirect group members in a tree-like hierarchy. Note that this " -"also affects printing parent groups - without <option>R</option>, only the " -"direct parent will be printed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_usermod.8.xml:10 sss_usermod.8.xml:15 -msgid "sss_usermod" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_usermod.8.xml:16 -msgid "modify a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_usermod.8.xml:21 -msgid "" -"<command>sss_usermod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:32 -msgid "" -"<command>sss_usermod</command> modifies the account specified by " -"<replaceable>LOGIN</replaceable> to reflect the changes that are specified " -"on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:60 -msgid "The home directory of the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:71 -msgid "The user's login shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:82 -msgid "" -"Append this user to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:96 -msgid "" -"Remove this user from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:103 -msgid "<option>-l</option>,<option>--lock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:107 -msgid "Lock the user account. The user won't be able to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:114 -msgid "<option>-u</option>,<option>--unlock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:118 -msgid "Unlock the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:129 -msgid "The SELinux user for the user's login." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:140 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_cache.8.xml:10 sss_cache.8.xml:15 -msgid "sss_cache" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_cache.8.xml:16 -msgid "perform cache cleanup" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_cache.8.xml:21 -msgid "" -"<command>sss_cache</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_cache.8.xml:31 -msgid "" -"<command>sss_cache</command> invalidates records in SSSD cache. Invalidated " -"records are forced to be reloaded from server as soon as related SSSD " -"backend is online." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:42 -msgid "" -"<option>-u</option>,<option>--user</option> <replaceable>login</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:47 -msgid "Invalidate specific user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:53 -msgid "<option>-U</option>,<option>--users</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:57 -msgid "" -"Invalidate all user records. This option overrides invalidation of specific " -"user if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:64 -msgid "" -"<option>-g</option>,<option>--group</option> <replaceable>group</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:69 -msgid "Invalidate specific group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:75 -msgid "<option>-G</option>,<option>--groups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:79 -msgid "" -"Invalidate all group records. This option overrides invalidation of specific " -"group if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:86 -msgid "" -"<option>-n</option>,<option>--netgroup</option> <replaceable>netgroup</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:91 -msgid "Invalidate specific netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:97 -msgid "<option>-N</option>,<option>--netgroups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:101 -msgid "" -"Invalidate all netgroup records. This option overrides invalidation of " -"specific netgroup if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:108 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>domain</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:113 -msgid "Restrict invalidation process only to a particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_debuglevel.8.xml:10 sss_debuglevel.8.xml:15 -msgid "sss_debuglevel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_debuglevel.8.xml:16 -msgid "change debug level while SSSD is running" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_debuglevel.8.xml:21 -msgid "" -"<command>sss_debuglevel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>NEW_DEBUG_LEVEL</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_debuglevel.8.xml:32 -msgid "" -"<command>sss_debuglevel</command> changes debug level of SSSD monitor and " -"providers to <replaceable>NEW_DEBUG_LEVEL</replaceable> while SSSD is " -"running." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_debuglevel.8.xml:59 -msgid "<replaceable>NEW_DEBUG_LEVEL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_authorizedkeys.1.xml:10 sss_ssh_authorizedkeys.1.xml:15 -msgid "sss_ssh_authorizedkeys" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_ssh_authorizedkeys.1.xml:11 sss_ssh_knownhostsproxy.1.xml:11 -msgid "1" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_authorizedkeys.1.xml:16 -msgid "get OpenSSH authorized keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_authorizedkeys.1.xml:21 -msgid "" -"<command>sss_ssh_authorizedkeys</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>USER</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:32 -msgid "" -"<command>sss_ssh_authorizedkeys</command> acquires SSH public keys for user " -"<replaceable>USER</replaceable> and outputs them in OpenSSH authorized_keys " -"format (see the <quote>AUTHORIZED_KEYS FILE FORMAT</quote> section of " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> for more information)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:41 -msgid "" -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_authorizedkeys</" -"command> for public key user authentication if it is compiled with support " -"for either <quote>AuthorizedKeysCommand</quote> or <quote>PubkeyAgent</" -"quote> <citerefentry> <refentrytitle>sshd_config</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:58 -#, no-wrap -msgid "AuthorizedKeysCommand /usr/bin/sss_ssh_authorizedkeys\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:51 -msgid "" -"If <quote>AuthorizedKeysCommand</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by putting the following directive " -"in <citerefentry> <refentrytitle>sshd_config</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry>: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:69 -#, no-wrap -msgid "PubKeyAgent /usr/bin/sss_ssh_authorizedkeys %u\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:62 -msgid "" -"If <quote>PubkeyAgent</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by using the following directive " -"for <citerefentry> <refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> configuration: <placeholder type=\"programlisting" -"\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_authorizedkeys.1.xml:87 -msgid "" -"Search for user public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:98 -msgid "" -"<citerefentry> <refentrytitle>sshd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sshd_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_knownhostsproxy</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_knownhostsproxy.1.xml:10 sss_ssh_knownhostsproxy.1.xml:15 -msgid "sss_ssh_knownhostsproxy" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_knownhostsproxy.1.xml:16 -msgid "get OpenSSH host keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_knownhostsproxy.1.xml:21 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>HOST</replaceable></arg> <arg " -"choice='opt'><replaceable>PROXY_COMMAND</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:33 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> acquires SSH host public keys for " -"host <replaceable>HOST</replaceable>, stores them in a custom OpenSSH " -"known_hosts file (see the <quote>SSH_KNOWN_HOSTS FILE FORMAT</quote> section " -"of <citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> for more information) <filename>/var/lib/sss/" -"pubconf/known_hosts</filename> and estabilishes connection to the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:43 -msgid "" -"If <replaceable>PROXY_COMMAND</replaceable> is specified, it is used to " -"create the connection to the host instead of opening a socket." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_knownhostsproxy.1.xml:55 -#, no-wrap -msgid "" -"ProxyCommand /usr/bin/sss_ssh_knownhostsproxy -p %p %h\n" -"GlobalKnownHostsFile2 /var/lib/sss/pubconf/known_hosts\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:48 -msgid "" -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_knownhostsproxy</" -"command> for host key authentication by using the following directives for " -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> configuration: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_ssh_knownhostsproxy.1.xml:69 -msgid "" -"<option>-p</option>,<option>--port</option> <replaceable>PORT</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:74 -msgid "" -"Use port <replaceable>PORT</replaceable> to connect to the host. By " -"default, port 22 is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:86 -msgid "" -"Search for host public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:97 -msgid "" -"<citerefentry> <refentrytitle>ssh</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>ssh_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_authorizedkeys</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/service_discovery.xml:2 -msgid "SERVICE DISCOVERY" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/service_discovery.xml:4 -msgid "" -"The service discovery feature allows back ends to automatically find the " -"appropriate servers to connect to using a special DNS query." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:9 -msgid "Configuration" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:11 -msgid "" -"If no servers are specified, the back end automatically uses service " -"discovery to try to find a server. Optionally, the user may choose to use " -"both fixed server addresses and service discovery by inserting a special " -"keyword, <quote>_srv_</quote>, in the list of servers. The order of " -"preference is maintained. This feature is useful if, for example, the user " -"prefers to use service discovery whenever possible, and fall back to a " -"specific server when no servers can be discovered using DNS." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:23 -msgid "The domain name" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:25 -msgid "" -"Please refer to the <quote>dns_discovery_domain</quote> parameter in the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for more details." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:35 -msgid "The protocol" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:37 -msgid "" -"The queries usually specify _tcp as the protocol. Exceptions are documented " -"in respective option description." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:42 -msgid "See Also" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:44 -msgid "" -"For more information on the service discovery mechanism, refer to RFC 2782." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/upstream.xml:1 -msgid "<placeholder type=\"refentryinfo\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/failover.xml:2 -msgid "FAILOVER" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/failover.xml:4 -msgid "" -"The failover feature allows back ends to automatically switch to a different " -"server if the primary server fails." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:8 -msgid "Failover Syntax" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:10 -msgid "" -"The list of servers is given as a comma-separated list; any number of spaces " -"is allowed around the comma. The servers are listed in order of preference. " -"The list can contain any number of servers." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:17 -msgid "The Failover Mechanism" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:19 -msgid "" -"The failover mechanism distinguishes between a machine and a service. The " -"back end first tries to resolve the hostname of a given machine; if this " -"resolution attempt fails, the machine is considered offline. No further " -"attempts are made to connect to this machine for any other service. If the " -"resolution attempt succeeds, the back end tries to connect to a service on " -"this machine. If the service connection attempt fails, then only this " -"particular service is considered offline and the back end automatically " -"switches over to the next service. The machine is still considered online " -"and might still be tried for another service." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:32 -msgid "" -"Further connection attempts are made to machines or services marked as " -"offline after a specified period of time; this is currently hard coded to 30 " -"seconds." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:37 -msgid "" -"If there are no more machines to try, the back end as a whole switches to " -"offline mode, and then attempts to reconnect every 30 seconds." -msgstr "" - -#. type: Content of: <varlistentry><term> -#: include/param_help.xml:3 -msgid "<option>-h</option>,<option>--help</option>" -msgstr "" - -#. type: Content of: <varlistentry><listitem><para> -#: include/param_help.xml:7 -msgid "Display help message and exit." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:3 -msgid "" -"Bit mask that indicates which debug levels will be visible. 0x0010 is the " -"default value as well as the lowest allowed value, 0xFFF0 is the most " -"verbose mode. This setting overrides the settings from config file." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:8 -msgid "Currently supported debug levels:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:11 -msgid "" -"<emphasis>0x0010</emphasis>: Fatal failures. Anything that would prevent " -"SSSD from starting up or causes it to cease running." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:15 -msgid "" -"<emphasis>0x0020</emphasis>: Critical failures. An error that doesn't kill " -"the SSSD, but one that indicates that at least one major feature is not " -"going to work properly." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:20 -msgid "" -"<emphasis>0x0040</emphasis>: Serious failures. An error announcing that a " -"particular request or operation has failed." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:24 -msgid "" -"<emphasis>0x0080</emphasis>: Minor failures. These are the errors that would " -"percolate down to cause the operation failure of 2." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:28 -msgid "<emphasis>0x0100</emphasis>: Configuration settings." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:31 -msgid "<emphasis>0x0200</emphasis>: Function data." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:34 -msgid "<emphasis>0x0400</emphasis>: Trace messages for operation functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:37 -msgid "" -"<emphasis>0x1000</emphasis>: Trace messages for internal control functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:40 -msgid "" -"<emphasis>0x2000</emphasis>: Contents of function-internal variables that " -"may be interesting." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:43 -msgid "<emphasis>0x4000</emphasis>: Extremely low-level tracing information." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:46 -msgid "" -"To log required debug levels, simply add their numbers together as shown in " -"following examples:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:49 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, critical failures, " -"serious failures and function data use 0x0270." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:53 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, configuration settings, " -"function data, trace messages for internal control functions use 0x1310." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:57 -msgid "" -"<emphasis>Note</emphasis>: This is new format of debug levels introduced in " -"1.7.0. Older format (numbers from 0-10) is compatible but deprecated." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/experimental.xml:1 -msgid "" -"<emphasis> This is an experimental feature, please use http://fedorahosted." -"org/sssd to report any issues. </emphasis>" -msgstr "" diff --git a/src/man/po/sr.po b/src/man/po/sr.po deleted file mode 100644 index be694a372..000000000 --- a/src/man/po/sr.po +++ /dev/null @@ -1,6748 +0,0 @@ -# SOME DESCRIPTIVE TITLE -# Copyright (C) YEAR Red Hat -# This file is distributed under the same license as the sssd-docs package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@redhat.com\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-12-23 15:35+0000\n" -"Last-Translator: FULL NAME <EMAIL@ADDRESS>\n" -"Language-Team: Serbian <trans-sr@lists.fedoraproject.org>\n" -"Language: sr\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=3; plural=(n%10==1 && n%100!=11 ? 0 : n%10>=2 && n" -"%10<=4 && (n%100<10 || n%100>=20) ? 1 : 2)\n" - -#. type: Content of: <reference><title> -#: sss_groupmod.8.xml:5 sssd.conf.5.xml:5 sssd-ldap.5.xml:5 pam_sss.8.xml:5 -#: sssd_krb5_locator_plugin.8.xml:5 sssd-simple.5.xml:5 sssd-ipa.5.xml:5 -#: sssd.8.xml:5 sss_obfuscate.8.xml:5 sss_useradd.8.xml:5 sssd-krb5.5.xml:5 -#: sss_groupadd.8.xml:5 sss_userdel.8.xml:5 sss_groupdel.8.xml:5 -#: sss_groupshow.8.xml:5 sss_usermod.8.xml:5 sss_cache.8.xml:5 -#: sss_debuglevel.8.xml:5 sss_ssh_authorizedkeys.1.xml:5 -#: sss_ssh_knownhostsproxy.1.xml:5 -msgid "SSSD Manual pages" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupmod.8.xml:10 sss_groupmod.8.xml:15 -msgid "sss_groupmod" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_groupmod.8.xml:11 pam_sss.8.xml:14 sssd_krb5_locator_plugin.8.xml:11 -#: sssd.8.xml:11 sss_obfuscate.8.xml:11 sss_useradd.8.xml:11 -#: sss_groupadd.8.xml:11 sss_userdel.8.xml:11 sss_groupdel.8.xml:11 -#: sss_groupshow.8.xml:11 sss_usermod.8.xml:11 sss_cache.8.xml:11 -#: sss_debuglevel.8.xml:11 -msgid "8" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupmod.8.xml:16 -msgid "modify a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupmod.8.xml:21 -msgid "" -"<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:30 sssd-ldap.5.xml:21 pam_sss.8.xml:44 -#: sssd_krb5_locator_plugin.8.xml:20 sssd-simple.5.xml:22 sssd-ipa.5.xml:21 -#: sssd.8.xml:29 sss_obfuscate.8.xml:30 sss_useradd.8.xml:30 -#: sssd-krb5.5.xml:21 sss_groupadd.8.xml:30 sss_userdel.8.xml:30 -#: sss_groupdel.8.xml:30 sss_groupshow.8.xml:30 sss_usermod.8.xml:30 -#: sss_cache.8.xml:29 sss_debuglevel.8.xml:30 sss_ssh_authorizedkeys.1.xml:30 -#: sss_ssh_knownhostsproxy.1.xml:31 -msgid "DESCRIPTION" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:32 -msgid "" -"<command>sss_groupmod</command> modifies the group to reflect the changes " -"that are specified on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:39 pam_sss.8.xml:51 sssd.8.xml:42 sss_obfuscate.8.xml:58 -#: sss_useradd.8.xml:39 sss_groupadd.8.xml:39 sss_userdel.8.xml:39 -#: sss_groupdel.8.xml:39 sss_groupshow.8.xml:39 sss_usermod.8.xml:39 -#: sss_cache.8.xml:38 sss_debuglevel.8.xml:38 sss_ssh_authorizedkeys.1.xml:78 -#: sss_ssh_knownhostsproxy.1.xml:65 -msgid "OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:43 sss_usermod.8.xml:77 -msgid "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:48 -msgid "" -"Append this group to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:57 sss_usermod.8.xml:91 -msgid "" -"<option>-r</option>,<option>--remove-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:62 -msgid "" -"Remove this group from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:72 sssd.conf.5.xml:1331 sssd-ldap.5.xml:2096 -#: pam_sss.8.xml:139 sssd_krb5_locator_plugin.8.xml:75 sssd-simple.5.xml:143 -#: sssd-ipa.5.xml:562 sssd.8.xml:191 sss_obfuscate.8.xml:103 -#: sss_useradd.8.xml:167 sssd-krb5.5.xml:451 sss_groupadd.8.xml:58 -#: sss_userdel.8.xml:93 sss_groupdel.8.xml:46 sss_groupshow.8.xml:58 -#: sss_usermod.8.xml:138 sss_ssh_authorizedkeys.1.xml:96 -#: sss_ssh_knownhostsproxy.1.xml:95 -msgid "SEE ALSO" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:74 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.conf.5.xml:10 sssd.conf.5.xml:16 -msgid "sssd.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sssd.conf.5.xml:11 sssd-ldap.5.xml:11 sssd-simple.5.xml:11 -#: sssd-ipa.5.xml:11 sssd-krb5.5.xml:11 -msgid "5" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><refmiscinfo> -#: sssd.conf.5.xml:12 sssd-ldap.5.xml:12 sssd-simple.5.xml:12 -#: sssd-ipa.5.xml:12 sssd-krb5.5.xml:12 -msgid "File Formats and Conventions" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.conf.5.xml:17 sssd-ldap.5.xml:17 sssd_krb5_locator_plugin.8.xml:16 -#: sssd-ipa.5.xml:17 sssd-krb5.5.xml:17 -msgid "the configuration file for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:21 -msgid "FILE FORMAT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:29 -#, no-wrap -msgid "" -" <replaceable>[section]</replaceable>\n" -" <replaceable>key</replaceable> = <replaceable>value</replaceable>\n" -" <replaceable>key2</replaceable> = <replaceable>value2,value3</replaceable>\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:24 -msgid "" -"The file has an ini-style syntax and consists of sections and parameters. A " -"section begins with the name of the section in square brackets and continues " -"until the next section begins. An example of section with single and multi-" -"valued parameters: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:36 -msgid "" -"The data types used are string (no quotes needed), integer and bool (with " -"values of <quote>TRUE/FALSE</quote>)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:41 -msgid "" -"A line comment starts with a hash sign (<quote>#</quote>) or a semicolon " -"(<quote>;</quote>)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:46 -msgid "" -"All sections can have an optional <replaceable>description</replaceable> " -"parameter. Its function is only as a label for the section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:52 -msgid "" -"<filename>sssd.conf</filename> must be a regular file, owned by root and " -"only root may read from or write to the file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:58 -msgid "SPECIAL SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:61 -msgid "The [sssd] section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><title> -#: sssd.conf.5.xml:70 sssd.conf.5.xml:1177 -msgid "Section parameters" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:72 -msgid "config_file_version (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:75 -msgid "" -"Indicates what is the syntax of the config file. SSSD 0.6.0 and later use " -"version 2." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:81 -msgid "services" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:84 -msgid "" -"Comma separated list of services that are started when sssd itself starts." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:88 -msgid "" -"Supported services: nss, pam <phrase condition=\"with_sudo\">, sudo</phrase>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:94 sssd.conf.5.xml:257 -msgid "reconnection_retries (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:97 sssd.conf.5.xml:260 -msgid "" -"Number of times services should attempt to reconnect in the event of a Data " -"Provider crash or restart before they give up" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:102 sssd.conf.5.xml:265 -msgid "Default: 3" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:107 -msgid "domains" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:110 -msgid "" -"A domain is a database containing user information. SSSD can use more " -"domains at the same time, but at least one must be configured or SSSD won't " -"start. This parameter described the list of domains in the order you want " -"them to be queried." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:120 -msgid "re_expression (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:123 -msgid "" -"Regular expression that describes how to parse the string containing user " -"name and domain into these components." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:127 -msgid "" -"Default: <quote>(?P<name>[^@]+)@?(?P<domain>[^@]*$)</quote> " -"which translates to \"the name is everything up to the <quote>@</quote> " -"sign, the domain everything after that\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:132 -msgid "" -"PLEASE NOTE: the support for non-unique named subpatterns is not available " -"on all platforms (e.g. RHEL5 and SLES10). Only platforms with libpcre " -"version 7 or higher can support non-unique named subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:139 -msgid "" -"PLEASE NOTE ALSO: older version of libpcre only support the Python syntax (?" -"P<name>) to label subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:146 -msgid "full_name_format (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:149 -msgid "" -"A <citerefentry> <refentrytitle>printf</refentrytitle> <manvolnum>3</" -"manvolnum> </citerefentry>-compatible format that describes how to translate " -"a (name, domain) tuple into a fully qualified name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:157 -msgid "Default: <quote>%1$s@%2$s</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:162 -msgid "try_inotify (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:165 -msgid "" -"SSSD monitors the state of resolv.conf to identify when it needs to update " -"its internal DNS resolver. By default, we will attempt to use inotify for " -"this, and will fall back to polling resolv.conf every five seconds if " -"inotify cannot be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:173 -msgid "" -"There are some limited situations where it is preferred that we should skip " -"even trying to use inotify. In these rare cases, this option should be set " -"to 'false'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:179 -msgid "" -"Default: true on platforms where inotify is supported. False on other " -"platforms." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:183 -msgid "" -"Note: this option will have no effect on platforms where inotify is " -"unavailable. On these platforms, polling will always be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:190 -msgid "krb5_rcache_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:193 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:197 -msgid "" -"This option accepts a special value __LIBKRB5_DEFAULTS__ that will instruct " -"SSSD to let libkrb5 decide the appropriate location for the replay cache." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:203 -msgid "" -"Default: Distribution-specific and specified at build-time. " -"(__LIBKRB5_DEFAULTS__ if not configured)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:63 -msgid "" -"Individual pieces of SSSD functionality are provided by special SSSD " -"services that are started and stopped together with SSSD. The services are " -"managed by a special service frequently called <quote>monitor</quote>. The " -"<quote>[sssd]</quote> section is used to configure the monitor as well as " -"some other important options like the identity domains. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:216 -msgid "SERVICES SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:218 -msgid "" -"Settings that can be used to configure different services are described in " -"this section. They should reside in the [<replaceable>$NAME</replaceable>] " -"section, for example, for NSS service, the section would be <quote>[nss]</" -"quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:225 -msgid "General service configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:227 -msgid "These options can be used to configure any service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:231 -msgid "debug_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:235 -msgid "debug_timestamps (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:238 -msgid "Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:241 sssd.conf.5.xml:376 sssd-ldap.5.xml:1328 -#: sssd-ldap.5.xml:1446 sssd-ipa.5.xml:206 sssd-ipa.5.xml:241 -msgid "Default: true" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:246 -msgid "debug_microseconds (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:249 -msgid "Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:252 sssd.conf.5.xml:641 sssd-ldap.5.xml:602 -#: sssd-ldap.5.xml:1260 sssd-ldap.5.xml:1397 sssd-ldap.5.xml:1795 -#: sssd-ipa.5.xml:123 sssd-ipa.5.xml:301 sssd-krb5.5.xml:235 -#: sssd-krb5.5.xml:269 sssd-krb5.5.xml:418 -msgid "Default: false" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:270 -msgid "command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:273 -msgid "" -"By default, the executable representing this service is called <command>sssd_" -"${service_name}</command>. This directive allows to change the executable " -"name for the service. In the vast majority of configurations, the default " -"values should suffice." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:281 -msgid "Default: <command>sssd_${service_name}</command>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:289 -msgid "NSS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:291 -msgid "" -"These options can be used to configure the Name Service Switch (NSS) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:296 -msgid "enum_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:299 -msgid "" -"How many seconds should nss_sss cache enumerations (requests for info about " -"all users)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:303 -msgid "Default: 120" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:308 -msgid "entry_cache_nowait_percentage (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:311 -msgid "" -"The entry cache can be set to automatically update entries in the background " -"if they are requested beyond a percentage of the entry_cache_timeout value " -"for the domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:317 -msgid "" -"For example, if the domain's entry_cache_timeout is set to 30s and " -"entry_cache_nowait_percentage is set to 50 (percent), entries that come in " -"after 15 seconds past the last cache update will be returned immediately, " -"but the SSSD will go and update the cache on its own, so that future " -"requests will not need to block waiting for a cache update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:327 -msgid "" -"Valid values for this option are 0-99 and represent a percentage of the " -"entry_cache_timeout for each domain. For performance reasons, this " -"percentage will never reduce the nowait timeout to less than 10 seconds. (0 " -"disables this feature)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:335 -msgid "Default: 50" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:340 -msgid "entry_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:343 -msgid "" -"Specifies for how many seconds nss_sss should cache negative cache hits " -"(that is, queries for invalid database entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:349 sssd.conf.5.xml:669 sssd-krb5.5.xml:223 -msgid "Default: 15" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:354 -msgid "filter_users, filter_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:357 -msgid "" -"Exclude certain users from being fetched from the sss NSS database. This is " -"particularly useful for system accounts. This option can also be set per-" -"domain or include fully-qualified names to filter only users from the " -"particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:364 -msgid "Default: root" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:369 -msgid "filter_users_in_groups (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:372 -msgid "" -"If you want filtered user still be group members set this option to false." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:381 -msgid "override_homedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:390 sssd-krb5.5.xml:166 -msgid "%u" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:391 sssd-krb5.5.xml:167 -msgid "login name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:394 sssd-krb5.5.xml:170 -msgid "%U" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:395 -msgid "UID number" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:398 sssd-krb5.5.xml:188 -msgid "%d" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:399 -msgid "domain name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:402 -msgid "%f" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:403 -msgid "fully qualified user name (user@domain)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:406 sssd-krb5.5.xml:200 -msgid "%%" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:407 sssd-krb5.5.xml:201 -msgid "a literal '%'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:384 -msgid "" -"Override the user's home directory. You can either provide an absolute value " -"or a template. In the template, the following sequences are substituted: " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:413 -msgid "This option can also be set per-domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:418 -msgid "allowed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:421 -msgid "" -"Restrict user shell to one of the listed values. The order of evaluation is:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:424 -msgid "1. If the shell is present in <quote>/etc/shells</quote>, it is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:428 -msgid "" -"2. If the shell is in the allowed_shells list but not in <quote>/etc/shells</" -"quote>, use the value of the shell_fallback parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:433 -msgid "" -"3. If the shell is not in the allowed_shells list and not in <quote>/etc/" -"shells</quote>, a nologin shell is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:438 -msgid "An empty string for shell is passed as-is to libc." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:441 -msgid "" -"The <quote>/etc/shells</quote> is only read on SSSD start up, which means " -"that a restart of the SSSD is required in case a new shell is installed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:445 -msgid "Default: Not set. The user shell is automatically used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:450 -msgid "vetoed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:453 -msgid "Replace any instance of these shells with the shell_fallback" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:458 -msgid "shell_fallback (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:461 -msgid "" -"The default shell to use if an allowed shell is not installed on the machine." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:465 -msgid "Default: /bin/sh" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:472 -msgid "PAM configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:474 -msgid "" -"These options can be used to configure the Pluggable Authentication Module " -"(PAM) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:479 -msgid "offline_credentials_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:482 -msgid "" -"If the authentication provider is offline, how long should we allow cached " -"logins (in days since the last successful online login)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:487 sssd.conf.5.xml:500 -msgid "Default: 0 (No limit)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:493 -msgid "offline_failed_login_attempts (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:496 -msgid "" -"If the authentication provider is offline, how many failed login attempts " -"are allowed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:506 -msgid "offline_failed_login_delay (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:509 -msgid "" -"The time in minutes which has to pass after offline_failed_login_attempts " -"has been reached before a new login attempt is possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:514 -msgid "" -"If set to 0 the user cannot authenticate offline if " -"offline_failed_login_attempts has been reached. Only a successful online " -"authentication can enable offline authentication again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:520 sssd.conf.5.xml:573 sssd.conf.5.xml:1093 -msgid "Default: 5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:526 -msgid "pam_verbosity (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:529 -msgid "" -"Controls what kind of messages are shown to the user during authentication. " -"The higher the number to more messages are displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:534 -msgid "Currently sssd supports the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:537 -msgid "<emphasis>0</emphasis>: do not show any message" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:540 -msgid "<emphasis>1</emphasis>: show only important messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:544 -msgid "<emphasis>2</emphasis>: show informational messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:547 -msgid "<emphasis>3</emphasis>: show all messages and debug information" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:551 sssd.8.xml:63 -msgid "Default: 1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:556 -msgid "pam_id_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:559 -msgid "" -"For any PAM request while SSSD is online, the SSSD will attempt to " -"immediately update the cached identity information for the user in order to " -"ensure that authentication takes place with the latest information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:565 -msgid "" -"A complete PAM conversation may perform multiple PAM requests, such as " -"account management and session opening. This option controls (on a per-" -"client-application basis) how long (in seconds) we can cache the identity " -"information to avoid excessive round-trips to the identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:579 -msgid "pam_pwd_expiration_warning (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:582 -msgid "Display a warning N days before the password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:585 -msgid "" -"Please note that the backend server has to provide information about the " -"expiration time of the password. If this information is missing, sssd " -"cannot display a warning." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:591 -msgid "Default: 7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:599 -msgid "SUDO configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:601 -msgid "These options can be used to configure the sudo service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:608 -msgid "sudo_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:611 -msgid "" -"For any sudo request that comes while SSSD is online, the SSSD will attempt " -"to update the cached rules in order to ensure that sudo has the latest " -"ruleset." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:617 -msgid "" -"The user may, however, run a couple of sudo commands successively, which " -"would trigger multiple LDAP requests. In order to speed up this use-case, " -"the sudo service maintains an in-memory cache that would be used for " -"performing fast replies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:624 -msgid "" -"This option controls how long (in seconds) can the sudo service cache rules " -"for a user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:628 -msgid "Default: 180" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:633 -msgid "sudo_timed (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:636 -msgid "" -"Whether or not to evaluate the sudoNotBefore and sudoNotAfter attributes " -"that implement time-dependent sudoers entries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:649 -msgid "AUTOFS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:651 -msgid "These options can be used to configure the autofs service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:659 -msgid "autofs_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:662 -msgid "" -"Specifies for how many seconds should the autofs responder negative cache " -"hits (that is, queries for invalid map entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:679 -msgid "DOMAIN SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:686 -msgid "min_id,max_id (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:689 -msgid "" -"UID and GID limits for the domain. If a domain contains an entry that is " -"outside these limits, it is ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:694 -msgid "" -"For users, this affects the primary GID limit. The user will not be returned " -"to NSS if either the UID or the primary GID is outside the range. For non-" -"primary group memberships, those that are in range will be reported as " -"expected." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:701 -msgid "Default: 1 for min_id, 0 (no limit) for max_id" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:707 -msgid "timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:710 -msgid "" -"Timeout in seconds between heartbeats for this domain. This is used to " -"ensure that the backend process is alive and capable of answering requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:715 sssd-ldap.5.xml:1131 -msgid "Default: 10" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:721 -msgid "enumerate (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:724 -msgid "" -"Determines if a domain can be enumerated. This parameter can have one of the " -"following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:728 -msgid "TRUE = Users and groups are enumerated" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:731 -msgid "FALSE = No enumerations for this domain" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:734 sssd.conf.5.xml:839 sssd.conf.5.xml:893 -msgid "Default: FALSE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:737 -msgid "" -"Note: Enabling enumeration has a moderate performance impact on SSSD while " -"enumeration is running. It may take up to several minutes after SSSD startup " -"to fully complete enumerations. During this time, individual requests for " -"information will go directly to LDAP, though it may be slow, due to the " -"heavy enumeration processing." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:747 -msgid "" -"While the first enumeration is running, requests for the complete user or " -"group lists may return no results until it completes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:752 -msgid "" -"Further, enabling enumeration may increase the time necessary to detect " -"network disconnection, as longer timeouts are required to ensure that " -"enumeration lookups are completed successfully. For more information, refer " -"to the man pages for the specific id_provider in use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:763 -msgid "entry_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:766 -msgid "" -"How many seconds should nss_sss consider entries valid before asking the " -"backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:770 -msgid "Default: 5400" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:776 -msgid "entry_cache_user_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:779 -msgid "" -"How many seconds should nss_sss consider user entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:783 sssd.conf.5.xml:796 sssd.conf.5.xml:809 -#: sssd.conf.5.xml:822 -msgid "Default: entry_cache_timeout" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:789 -msgid "entry_cache_group_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:792 -msgid "" -"How many seconds should nss_sss consider group entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:802 -msgid "entry_cache_netgroup_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:805 -msgid "" -"How many seconds should nss_sss consider netgroup entries valid before " -"asking the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:815 -msgid "entry_cache_service_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:818 -msgid "" -"How many seconds should nss_sss consider service entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:828 -msgid "cache_credentials (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:831 -msgid "Determines if user credentials are also cached in the local LDB cache" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:835 -msgid "User credentials are stored in a SHA512 hash, not in plaintext" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:844 -msgid "account_cache_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:847 -msgid "" -"Number of days entries are left in cache after last successful login before " -"being removed during a cleanup of the cache. 0 means keep forever. The " -"value of this parameter must be greater than or equal to " -"offline_credentials_expiration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:854 -msgid "Default: 0 (unlimited)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:860 -msgid "id_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:863 -msgid "The Data Provider identity backend to use for this domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:867 -msgid "Supported backends:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:870 -msgid "proxy: Support a legacy NSS provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:873 -msgid "local: SSSD internal local provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:876 -msgid "ldap: LDAP provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:882 -msgid "use_fully_qualified_names (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:885 -msgid "" -"If set to TRUE, all requests to this domain must use fully qualified names. " -"For example, if used in LOCAL domain that contains a \"test\" user, " -"<command>getent passwd test</command> wouldn't find the user while " -"<command>getent passwd test@LOCAL</command> would." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:898 -msgid "auth_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:901 -msgid "" -"The authentication provider used for the domain. Supported auth providers " -"are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:905 -msgid "" -"<quote>ldap</quote> for native LDAP authentication. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:912 -msgid "" -"<quote>krb5</quote> for Kerberos authentication. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:919 -msgid "" -"<quote>proxy</quote> for relaying authentication to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:922 -msgid "<quote>none</quote> disables authentication explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:925 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"authentication requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:931 -msgid "access_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:934 -msgid "" -"The access control provider used for the domain. There are two built-in " -"access providers (in addition to any included in installed backends) " -"Internal special providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:940 -msgid "<quote>permit</quote> always allow access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:943 -msgid "<quote>deny</quote> always deny access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:946 -msgid "" -"<quote>simple</quote> access control based on access or deny lists. See " -"<citerefentry> <refentrytitle>sssd-simple</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry> for more information on configuring the simple " -"access module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:953 -msgid "Default: <quote>permit</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:958 -msgid "chpass_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:961 -msgid "" -"The provider which should handle change password operations for the domain. " -"Supported change password providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:966 -msgid "" -"<quote>ipa</quote> to change a password stored in an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:974 -msgid "" -"<quote>ldap</quote> to change a password stored in a LDAP server. See " -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:982 -msgid "" -"<quote>krb5</quote> to change the Kerberos password. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:990 -msgid "" -"<quote>proxy</quote> for relaying password changes to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:994 -msgid "<quote>none</quote> disallows password changes explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:997 -msgid "" -"Default: <quote>auth_provider</quote> is used if it is set and can handle " -"change password requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1004 -msgid "sudo_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1010 -msgid "The SUDO provider used for the domain. Supported SUDO providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1014 -msgid "" -"<quote>ldap</quote> for rules stored in LDAP. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1021 -msgid "<quote>none</quote> disables SUDO explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1024 -msgid "Default: The value of <quote>id_provider</quote> is used if it is set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1030 -msgid "session_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1033 -msgid "" -"The provider which should handle loading of session settings. Supported " -"session providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1038 -msgid "" -"<quote>ipa</quote> to load session settings from an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1046 -msgid "<quote>none</quote> disallows fetching session settings explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1049 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"session loading requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1056 -msgid "lookup_family_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1059 -msgid "" -"Provides the ability to select preferred address family to use when " -"performing DNS lookups." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1063 -msgid "Supported values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1066 -msgid "ipv4_first: Try looking up IPv4 address, if that fails, try IPv6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1069 -msgid "ipv4_only: Only attempt to resolve hostnames to IPv4 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1072 -msgid "ipv6_first: Try looking up IPv6 address, if that fails, try IPv4" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1075 -msgid "ipv6_only: Only attempt to resolve hostnames to IPv6 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1078 -msgid "Default: ipv4_first" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1084 -msgid "dns_resolver_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1087 -msgid "" -"Defines the amount of time (in seconds) to wait for a reply from the DNS " -"resolver before assuming that it is unreachable. If this timeout is reached, " -"the domain will continue to operate in offline mode." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1099 -msgid "dns_discovery_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1102 -msgid "" -"If service discovery is used in the back end, specifies the domain part of " -"the service discovery DNS query." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1106 -msgid "Default: Use the domain part of machine's hostname" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1112 -msgid "override_gid (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1115 -msgid "Override the primary GID value with the one specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1121 -msgid "case_sensitive (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1124 -msgid "" -"Treat user and group names as case sensitive. At the moment, this option is " -"not supported in the local provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1129 -msgid "Default: True" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:681 -msgid "" -"These configuration options can be present in a domain configuration " -"section, that is, in a section called <quote>[domain/<replaceable>NAME</" -"replaceable>]</quote> <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1141 -msgid "proxy_pam_target (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1144 -msgid "The proxy target PAM proxies to." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1147 -msgid "" -"Default: not set by default, you have to take an existing pam configuration " -"or create a new one and add the service name here." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1155 -msgid "proxy_lib_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1158 -msgid "" -"The name of the NSS library to use in proxy domains. The NSS functions " -"searched for in the library are in the form of _nss_$(libName)_$(function), " -"for example _nss_files_getpwent." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1137 -msgid "" -"Options valid for proxy domains. <placeholder type=\"variablelist\" id=" -"\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:1170 -msgid "The local domain section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:1172 -msgid "" -"This section contains settings for domain that stores users and groups in " -"SSSD native database, that is, a domain that uses " -"<replaceable>id_provider=local</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1179 -msgid "default_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1182 -msgid "The default shell for users created with SSSD userspace tools." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1186 -msgid "Default: <filename>/bin/bash</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1191 -msgid "base_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1194 -msgid "" -"The tools append the login name to <replaceable>base_directory</replaceable> " -"and use that as the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1199 -msgid "Default: <filename>/home</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1204 -msgid "create_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1207 -msgid "" -"Indicate if a home directory should be created by default for new users. " -"Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1211 sssd.conf.5.xml:1223 -msgid "Default: TRUE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1216 -msgid "remove_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1219 -msgid "" -"Indicate if a home directory should be removed by default for deleted " -"users. Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1228 -msgid "homedir_umask (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1231 -msgid "" -"Used by <citerefentry> <refentrytitle>sss_useradd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry> to specify the default permissions " -"on a newly created home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1239 -msgid "Default: 077" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1244 -msgid "skel_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1247 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<citerefentry> <refentrytitle>sss_useradd</refentrytitle> <manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1257 -msgid "Default: <filename>/etc/skel</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1262 -msgid "mail_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1265 -msgid "" -"The mail spool directory. This is needed to manipulate the mailbox when its " -"corresponding user account is modified or deleted. If not specified, a " -"default value is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1272 -msgid "Default: <filename>/var/mail</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1277 -msgid "userdel_cmd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1280 -msgid "" -"The command that is run after a user is removed. The command us passed the " -"username of the user being removed as the first and only parameter. The " -"return code of the command is not taken into account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1286 -msgid "Default: None, no command is run" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:1296 sssd-ldap.5.xml:2064 sssd-simple.5.xml:126 -#: sssd-ipa.5.xml:544 sssd-krb5.5.xml:432 -msgid "EXAMPLE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:1302 -#, no-wrap -msgid "" -"[sssd]\n" -"domains = LDAP\n" -"services = nss, pam\n" -"config_file_version = 2\n" -"\n" -"[nss]\n" -"filter_groups = root\n" -"filter_users = root\n" -"\n" -"[pam]\n" -"\n" -"[domain/LDAP]\n" -"id_provider = ldap\n" -"ldap_uri = ldap://ldap.example.com\n" -"ldap_search_base = dc=example,dc=com\n" -"\n" -"auth_provider = krb5\n" -"krb5_server = kerberos.example.com\n" -"krb5_realm = EXAMPLE.COM\n" -"cache_credentials = true\n" -"\n" -"min_id = 10000\n" -"max_id = 20000\n" -"enumerate = False\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1298 -msgid "" -"The following example shows a typical SSSD config. It does not describe " -"configuration of the domains themselves - refer to documentation on " -"configuring domains for more details. <placeholder type=\"programlisting\" " -"id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1333 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>pam_sss</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ldap.5.xml:10 sssd-ldap.5.xml:16 -msgid "sssd-ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:23 -msgid "" -"This manual page describes the configuration of LDAP domains for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. Refer to the <quote>FILE FORMAT</quote> section of the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for detailed syntax information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:35 -msgid "You can configure SSSD to use more than one LDAP domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:38 -msgid "" -"LDAP back end supports id, auth, access and chpass providers. If you want to " -"authenticate against an LDAP server either TLS/SSL or LDAPS is required. " -"<command>sssd</command> <emphasis>does not</emphasis> support authentication " -"over an unencrypted channel. If the LDAP server is used only as an identity " -"provider, an encrypted channel is not needed. Please refer to " -"<quote>ldap_access_filter</quote> config option for more information about " -"using LDAP as an access provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:49 sssd-simple.5.xml:69 sssd-ipa.5.xml:64 -#: sssd-krb5.5.xml:63 -msgid "CONFIGURATION OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:60 -msgid "ldap_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:63 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference. Refer to the <quote>FAILOVER</" -"quote> section for more information on failover and server redundancy. If " -"not specified, service discovery is enabled. For more information, refer to " -"the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:70 -msgid "The format of the URI must match the format defined in RFC 2732:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:73 -msgid "ldap[s]://<host>[:port]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:76 -msgid "" -"For explicit IPv6 addresses, <host> must be enclosed in brackets []" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:79 -msgid "example: ldap://[fc00::126:25]:389" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:85 -msgid "ldap_chpass_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:88 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference to change the password of a user. " -"Refer to the <quote>FAILOVER</quote> section for more information on " -"failover and server redundancy." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:95 -msgid "To enable service discovery ldap_chpass_dns_service_name must be set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:99 -msgid "Default: empty, i.e. ldap_uri is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:105 -msgid "ldap_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:108 -msgid "The default base DN to use for performing LDAP user operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:112 -msgid "" -"Starting with SSSD 1.7.0, SSSD supports multiple search bases using the " -"syntax:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:116 -msgid "search_base[?scope?[filter][?search_base?scope?[filter]]*]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:119 -msgid "The scope can be one of \"base\", \"onelevel\" or \"subtree\"." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:122 -msgid "" -"The filter must be a valid LDAP search filter as specified by http://www." -"ietf.org/rfc/rfc2254.txt" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:126 -msgid "Examples:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:129 -msgid "" -"ldap_search_base = dc=example,dc=com (which is equivalent to) " -"ldap_search_base = dc=example,dc=com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:134 -msgid "" -"ldap_search_base = cn=host_specific,dc=example,dc=com?subtree?" -"(host=thishost)?dc=example.com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:137 -msgid "" -"Note: It is unsupported to have multiple search bases which reference " -"identically-named objects (for example, groups with the same name in two " -"different search bases). This will lead to unpredictable behavior on client " -"machines." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:144 -msgid "" -"Default: If not set, the value of the defaultNamingContext or namingContexts " -"attribute from the RootDSE of the LDAP server is used. If " -"defaultNamingContext does not exists or has an empty value namingContexts is " -"used. The namingContexts attribute must have a single value with the DN of " -"the search base of the LDAP server to make this work. Multiple values are " -"are not supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:158 -msgid "ldap_schema (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:161 -msgid "" -"Specifies the Schema Type in use on the target LDAP server. Depending on " -"the selected schema, the default attribute names retrieved from the servers " -"may vary. The way that some attributes are handled may also differ. Three " -"schema types are currently supported: rfc2307 rfc2307bis IPA The main " -"difference between these schema types is how group memberships are recorded " -"in the server. With rfc2307, group members are listed by name in the " -"<emphasis>memberUid</emphasis> attribute. With rfc2307bis and IPA, group " -"members are listed by DN and stored in the <emphasis>member</emphasis> " -"attribute." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:180 -msgid "Default: rfc2307" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:186 -msgid "ldap_default_bind_dn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:189 -msgid "The default bind DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:196 -msgid "ldap_default_authtok_type (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:199 -msgid "The type of the authentication token of the default bind DN." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:203 -msgid "The two mechanisms currently supported are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:206 -msgid "password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:209 -msgid "obfuscated_password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:212 -msgid "Default: password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:218 -msgid "ldap_default_authtok (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:221 -msgid "" -"The authentication token of the default bind DN. Only clear text passwords " -"are currently supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:228 -msgid "ldap_user_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:231 -msgid "The object class of a user entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:234 -msgid "Default: posixAccount" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:240 -msgid "ldap_user_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:243 -msgid "The LDAP attribute that corresponds to the user's login name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:247 -msgid "Default: uid" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:253 -msgid "ldap_user_uid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:256 -msgid "The LDAP attribute that corresponds to the user's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:260 -msgid "Default: uidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:266 -msgid "ldap_user_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:269 -msgid "The LDAP attribute that corresponds to the user's primary group id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:273 sssd-ldap.5.xml:740 -msgid "Default: gidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:279 -msgid "ldap_user_gecos (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:282 -msgid "The LDAP attribute that corresponds to the user's gecos field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:286 -msgid "Default: gecos" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:292 -msgid "ldap_user_home_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:295 -msgid "The LDAP attribute that contains the name of the user's home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:299 -msgid "Default: homeDirectory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:305 -msgid "ldap_user_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:308 -msgid "The LDAP attribute that contains the path to the user's default shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:312 -msgid "Default: loginShell" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:318 -msgid "ldap_user_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:321 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP user object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:325 sssd-ldap.5.xml:766 sssd-ldap.5.xml:878 -msgid "Default: nsUniqueId" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:331 -msgid "ldap_user_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:334 sssd-ldap.5.xml:775 sssd-ldap.5.xml:887 -msgid "" -"The LDAP attribute that contains timestamp of the last modification of the " -"parent object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:338 sssd-ldap.5.xml:779 sssd-ldap.5.xml:894 -msgid "Default: modifyTimestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:344 -msgid "ldap_user_shadow_last_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:347 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (date of " -"the last password change)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:357 -msgid "Default: shadowLastChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:363 -msgid "ldap_user_shadow_min (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:366 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (minimum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:375 -msgid "Default: shadowMin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:381 -msgid "ldap_user_shadow_max (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:384 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (maximum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:393 -msgid "Default: shadowMax" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:399 -msgid "ldap_user_shadow_warning (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:402 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password warning period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:412 -msgid "Default: shadowWarning" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:418 -msgid "ldap_user_shadow_inactive (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:421 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password inactivity period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:431 -msgid "Default: shadowInactive" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:437 -msgid "ldap_user_shadow_expire (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:440 -msgid "" -"When using ldap_pwd_policy=shadow or ldap_account_expire_policy=shadow, this " -"parameter contains the name of an LDAP attribute corresponding to its " -"<citerefentry> <refentrytitle>shadow</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> counterpart (account expiration date)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:450 -msgid "Default: shadowExpire" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:456 -msgid "ldap_user_krb_last_pwd_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:459 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time of last password change in " -"kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:465 -msgid "Default: krbLastPwdChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:471 -msgid "ldap_user_krb_password_expiration (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:474 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time when current password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:480 -msgid "Default: krbPasswordExpiration" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:486 -msgid "ldap_user_ad_account_expires (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:489 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the expiration time of the account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:494 -msgid "Default: accountExpires" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:500 -msgid "ldap_user_ad_user_account_control (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:503 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the user account control bit field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:508 -msgid "Default: userAccountControl" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:514 -msgid "ldap_ns_account_lock (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:517 -msgid "" -"When using ldap_account_expire_policy=rhds or equivalent, this parameter " -"determines if access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:522 -msgid "Default: nsAccountLock" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:528 -msgid "ldap_user_nds_login_disabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:531 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines if " -"access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:535 sssd-ldap.5.xml:549 -msgid "Default: loginDisabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:541 -msgid "ldap_user_nds_login_expiration_time (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:544 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines until " -"which date access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:555 -msgid "ldap_user_nds_login_allowed_time_map (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:558 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines the " -"hours of a day in a week when access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:563 -msgid "Default: loginAllowedTimeMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:569 -msgid "ldap_user_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:572 -msgid "" -"The LDAP attribute that contains the user's Kerberos User Principal Name " -"(UPN)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:576 -msgid "Default: krbPrincipalName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:582 -msgid "ldap_user_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:585 -msgid "The LDAP attribute that contains the user's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:592 -msgid "ldap_force_upper_case_realm (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:595 -msgid "" -"Some directory servers, for example Active Directory, might deliver the " -"realm part of the UPN in lower case, which might cause the authentication to " -"fail. Set this option to a non-zero value if you want to use an upper-case " -"realm." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:608 -msgid "ldap_enumeration_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:611 -msgid "" -"Specifies how many seconds SSSD has to wait before refreshing its cache of " -"enumerated records." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:616 sssd-ldap.5.xml:1808 -msgid "Default: 300" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:622 -msgid "ldap_purge_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:625 -msgid "" -"Determine how often to check the cache for inactive entries (such as groups " -"with no members and users who have never logged in) and remove them to save " -"space." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:631 -msgid "Setting this option to zero will disable the cache cleanup operation." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:635 -msgid "Default: 10800 (12 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:641 -msgid "ldap_user_fullname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:644 -msgid "The LDAP attribute that corresponds to the user's full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:648 sssd-ldap.5.xml:727 sssd-ldap.5.xml:828 -#: sssd-ldap.5.xml:919 sssd-ldap.5.xml:1663 sssd-ldap.5.xml:1881 -#: sssd-ipa.5.xml:422 -msgid "Default: cn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:654 -msgid "ldap_user_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:657 -msgid "The LDAP attribute that lists the user's group memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:661 sssd-ipa.5.xml:326 -msgid "Default: memberOf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:667 -msgid "ldap_user_authorized_service (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:670 -msgid "" -"If access_provider=ldap and ldap_access_order=authorized_service, SSSD will " -"use the presence of the authorizedService attribute in the user's LDAP entry " -"to determine access privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:677 -msgid "" -"An explicit deny (!svc) is resolved first. Second, SSSD searches for " -"explicit allow (svc) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:682 -msgid "Default: authorizedService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:688 -msgid "ldap_user_authorized_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:691 -msgid "" -"If access_provider=ldap and ldap_access_order=host, SSSD will use the " -"presence of the host attribute in the user's LDAP entry to determine access " -"privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:697 -msgid "" -"An explicit deny (!host) is resolved first. Second, SSSD searches for " -"explicit allow (host) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:702 -msgid "Default: host" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:708 -msgid "ldap_group_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:711 -msgid "The object class of a group entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:714 -msgid "Default: posixGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:720 -msgid "ldap_group_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:723 -msgid "The LDAP attribute that corresponds to the group name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:733 -msgid "ldap_group_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:736 -msgid "The LDAP attribute that corresponds to the group's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:746 -msgid "ldap_group_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:749 -msgid "The LDAP attribute that contains the names of the group's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:753 -msgid "Default: memberuid (rfc2307) / member (rfc2307bis)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:759 -msgid "ldap_group_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:762 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP group object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:772 -msgid "ldap_group_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:785 -msgid "ldap_group_nesting_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:788 -msgid "" -"If ldap_schema is set to a schema format that supports nested groups (e.g. " -"RFC2307bis), then this option controls how many levels of nesting SSSD will " -"follow. This option has no effect on the RFC2307 schema." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:795 -msgid "Default: 2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:801 -msgid "ldap_netgroup_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:804 -msgid "The object class of a netgroup entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:807 -msgid "In IPA provider, ipa_netgroup_object_class should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:811 -msgid "Default: nisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:817 -msgid "ldap_netgroup_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:820 -msgid "The LDAP attribute that corresponds to the netgroup name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:824 -msgid "In IPA provider, ipa_netgroup_name should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:834 -msgid "ldap_netgroup_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:837 -msgid "The LDAP attribute that contains the names of the netgroup's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:841 -msgid "In IPA provider, ipa_netgroup_member should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:845 -msgid "Default: memberNisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:851 -msgid "ldap_netgroup_triple (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:854 -msgid "" -"The LDAP attribute that contains the (host, user, domain) netgroup triples." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:858 sssd-ldap.5.xml:891 -msgid "This option is not available in IPA provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:861 -msgid "Default: nisNetgroupTriple" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:867 -msgid "ldap_netgroup_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:870 -msgid "" -"The LDAP attribute that contains the UUID/GUID of an LDAP netgroup object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:874 -msgid "In IPA provider, ipa_netgroup_uuid should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:884 -msgid "ldap_netgroup_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:900 -msgid "ldap_service_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:903 -msgid "The object class of a service entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:906 -msgid "Default: ipService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:912 -msgid "ldap_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:915 -msgid "" -"The LDAP attribute that contains the name of service attributes and their " -"aliases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:925 -msgid "ldap_service_port (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:928 -msgid "The LDAP attribute that contains the port managed by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:932 -msgid "Default: ipServicePort" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:938 -msgid "ldap_service_proto (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:941 -msgid "" -"The LDAP attribute that contains the protocols understood by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:945 -msgid "Default: ipServiceProtocol" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:951 -msgid "ldap_service_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:954 -msgid "An optional base DN to restrict service searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:958 sssd-ldap.5.xml:1918 sssd-ldap.5.xml:1937 -#: sssd-ldap.5.xml:1956 sssd-ldap.5.xml:2019 sssd-ldap.5.xml:2041 -#: sssd-ipa.5.xml:163 sssd-ipa.5.xml:187 -msgid "" -"See <quote>ldap_search_base</quote> for information about configuring " -"multiple search bases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:963 sssd-ldap.5.xml:1923 sssd-ldap.5.xml:1942 -#: sssd-ldap.5.xml:1961 sssd-ldap.5.xml:2024 sssd-ldap.5.xml:2046 -#: sssd-ipa.5.xml:173 sssd-ipa.5.xml:192 -msgid "Default: the value of <emphasis>ldap_search_base</emphasis>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:970 -msgid "ldap_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:973 -msgid "" -"Specifies the timeout (in seconds) that ldap searches are allowed to run " -"before they are cancelled and cached results are returned (and offline mode " -"is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:979 -msgid "" -"Note: this option is subject to change in future versions of the SSSD. It " -"will likely be replaced at some point by a series of timeouts for specific " -"lookup types." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:985 sssd-ldap.5.xml:1027 sssd-ldap.5.xml:1042 -msgid "Default: 6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:991 -msgid "ldap_enumeration_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:994 -msgid "" -"Specifies the timeout (in seconds) that ldap searches for user and group " -"enumerations are allowed to run before they are cancelled and cached results " -"are returned (and offline mode is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1001 -msgid "Default: 60" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1007 -msgid "ldap_network_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1010 -msgid "" -"Specifies the timeout (in seconds) after which the <citerefentry> " -"<refentrytitle>poll</refentrytitle> <manvolnum>2</manvolnum> </citerefentry>/" -"<citerefentry> <refentrytitle>select</refentrytitle> <manvolnum>2</" -"manvolnum> </citerefentry> following a <citerefentry> " -"<refentrytitle>connect</refentrytitle> <manvolnum>2</manvolnum> </" -"citerefentry> returns in case of no activity." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1033 -msgid "ldap_opt_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1036 -msgid "" -"Specifies a timeout (in seconds) after which calls to synchronous LDAP APIs " -"will abort if no response is received. Also controls the timeout when " -"communicating with the KDC in case of SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1048 -msgid "ldap_connection_expire_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1051 -msgid "" -"Specifies a timeout (in seconds) that a connection to an LDAP server will be " -"maintained. After this time, the connection will be re-established. If used " -"in parallel with SASL/GSSAPI, the sooner of the two values (this value vs. " -"the TGT lifetime) will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1059 -msgid "Default: 900 (15 minutes)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1065 -msgid "ldap_page_size (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1068 -msgid "" -"Specify the number of records to retrieve from LDAP in a single request. " -"Some LDAP servers enforce a maximum limit per-request." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1073 -msgid "Default: 1000" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1079 -msgid "ldap_disable_paging" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1082 -msgid "" -"Disable the LDAP paging control. This option should be used if the LDAP " -"server reports that it supports the LDAP paging control in its RootDSE but " -"it is not enabled or does not behave properly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1088 -msgid "" -"Example: OpenLDAP servers with the paging control module installed on the " -"server but not enabled will report it in the RootDSE but be unable to use it." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1094 -msgid "" -"Example: 389 DS has a bug where it can only support a one paging control at " -"a time on a single connection. On busy clients, this can result in some " -"requests being denied." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1103 -msgid "ldap_deref_threshold (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1106 -msgid "" -"Specify the number of group members that must be missing from the internal " -"cache in order to trigger a dereference lookup. If less members are missing, " -"they are looked up individually." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1112 -msgid "" -"You can turn off dereference lookups completely by setting the value to 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1116 -msgid "" -"A dereference lookup is a means of fetching all group members in a single " -"LDAP call. Different LDAP servers may implement different dereference " -"methods. The currently supported servers are 389/RHDS, OpenLDAP and Active " -"Directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1124 -msgid "" -"<emphasis>Note:</emphasis> If any of the search bases specifies a search " -"filter, then the dereference lookup performance enhancement will be disabled " -"regardless of this setting." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1137 -msgid "ldap_tls_reqcert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1140 -msgid "" -"Specifies what checks to perform on server certificates in a TLS session, if " -"any. It can be specified as one of the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1146 -msgid "" -"<emphasis>never</emphasis> = The client will not request or check any server " -"certificate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1150 -msgid "" -"<emphasis>allow</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, it will be ignored and the session proceeds normally." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1157 -msgid "" -"<emphasis>try</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, the session is immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1163 -msgid "" -"<emphasis>demand</emphasis> = The server certificate is requested. If no " -"certificate is provided, or a bad certificate is provided, the session is " -"immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1169 -msgid "<emphasis>hard</emphasis> = Same as <quote>demand</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1173 -msgid "Default: hard" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1179 -msgid "ldap_tls_cacert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1182 -msgid "" -"Specifies the file that contains certificates for all of the Certificate " -"Authorities that <command>sssd</command> will recognize." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1187 sssd-ldap.5.xml:1205 sssd-ldap.5.xml:1246 -msgid "" -"Default: use OpenLDAP defaults, typically in <filename>/etc/openldap/ldap." -"conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1194 -msgid "ldap_tls_cacertdir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1197 -msgid "" -"Specifies the path of a directory that contains Certificate Authority " -"certificates in separate individual files. Typically the file names need to " -"be the hash of the certificate followed by '.0'. If available, " -"<command>cacertdir_rehash</command> can be used to create the correct names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1212 -msgid "ldap_tls_cert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1215 -msgid "Specifies the file that contains the certificate for the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1219 sssd-ldap.5.xml:1231 sssd-ldap.5.xml:1979 -#: sssd-ldap.5.xml:2006 sssd-krb5.5.xml:359 -msgid "Default: not set" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1225 -msgid "ldap_tls_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1228 -msgid "Specifies the file that contains the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1237 -msgid "ldap_tls_cipher_suite (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1240 -msgid "" -"Specifies acceptable cipher suites. Typically this is a colon sperated " -"list. See <citerefentry><refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> for format." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1253 -msgid "ldap_id_use_start_tls (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1256 -msgid "" -"Specifies that the id_provider connection must also use <systemitem class=" -"\"protocol\">tls</systemitem> to protect the channel." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1266 -msgid "ldap_sasl_mech (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1269 -msgid "" -"Specify the SASL mechanism to use. Currently only GSSAPI is tested and " -"supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1273 sssd-ldap.5.xml:1428 -msgid "Default: none" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1279 -msgid "ldap_sasl_authid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1282 -msgid "" -"Specify the SASL authorization id to use. When GSSAPI is used, this " -"represents the Kerberos principal used for authentication to the directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1287 -msgid "Default: host/machine.fqdn@REALM" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1293 -msgid "ldap_sasl_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1296 -msgid "" -"If set to true, the LDAP library would perform a reverse lookup to " -"canonicalize the host name during a SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1301 -msgid "Default: false;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1307 -msgid "ldap_krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1310 -msgid "Specify the keytab to use when using SASL/GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1313 -msgid "Default: System keytab, normally <filename>/etc/krb5.keytab</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1319 -msgid "ldap_krb5_init_creds (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1322 -msgid "" -"Specifies that the id_provider should init Kerberos credentials (TGT). This " -"action is performed only if SASL is used and the mechanism selected is " -"GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1334 -msgid "ldap_krb5_ticket_lifetime (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1337 -msgid "Specifies the lifetime in seconds of the TGT if GSSAPI is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1341 -msgid "Default: 86400 (24 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1347 sssd-krb5.5.xml:74 -msgid "krb5_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1350 sssd-krb5.5.xml:77 -msgid "" -"Specifies the comma-separated list of IP addresses or hostnames of the " -"Kerberos servers to which SSSD should connect in the order of preference. " -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. An optional port number (preceded by a " -"colon) may be appended to the addresses or hostnames. If empty, service " -"discovery is enabled - for more information, refer to the <quote>SERVICE " -"DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1362 sssd-krb5.5.xml:89 -msgid "" -"When using service discovery for KDC or kpasswd servers, SSSD first searches " -"for DNS entries that specify _udp as the protocol and falls back to _tcp if " -"none are found." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1367 sssd-krb5.5.xml:94 -msgid "" -"This option was named <quote>krb5_kdcip</quote> in earlier releases of SSSD. " -"While the legacy name is recognized for the time being, users are advised to " -"migrate their config files to use <quote>krb5_server</quote> instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1376 sssd-ipa.5.xml:216 sssd-krb5.5.xml:103 -msgid "krb5_realm (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1379 -msgid "Specify the Kerberos REALM (for SASL/GSSAPI auth)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1382 -msgid "Default: System defaults, see <filename>/etc/krb5.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1388 sssd-ipa.5.xml:231 sssd-krb5.5.xml:409 -msgid "krb5_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1391 -msgid "" -"Specifies if the host principal should be canonicalized when connecting to " -"LDAP server. This feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1403 -msgid "ldap_pwd_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1406 -msgid "" -"Select the policy to evaluate the password expiration on the client side. " -"The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1411 -msgid "" -"<emphasis>none</emphasis> - No evaluation on the client side. This option " -"cannot disable server-side password policies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1416 -msgid "" -"<emphasis>shadow</emphasis> - Use <citerefentry><refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum></citerefentry> style attributes to " -"evaluate if the password has expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1422 -msgid "" -"<emphasis>mit_kerberos</emphasis> - Use the attributes used by MIT Kerberos " -"to determine if the password has expired. Use chpass_provider=krb5 to update " -"these attributes when the password is changed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1434 -msgid "ldap_referrals (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1437 -msgid "Specifies whether automatic referral chasing should be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1441 -msgid "" -"Please note that sssd only supports referral chasing when it is compiled " -"with OpenLDAP version 2.4.13 or higher." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1452 -msgid "ldap_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1455 -msgid "Specifies the service name to use when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1459 -msgid "Default: ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1465 -msgid "ldap_chpass_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1468 -msgid "" -"Specifies the service name to use to find an LDAP server which allows " -"password changes when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1473 -msgid "Default: not set, i.e. service discovery is disabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1479 -msgid "ldap_access_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1482 -msgid "" -"If using access_provider = ldap, this option is mandatory. It specifies an " -"LDAP search filter criteria that must be met for the user to be granted " -"access on this host. If access_provider = ldap and this option is not set, " -"it will result in all users being denied access. Use access_provider = allow " -"to change this default behavior." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1492 sssd-ldap.5.xml:1982 -msgid "Example:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1495 -#, no-wrap -msgid "" -"access_provider = ldap\n" -"ldap_access_filter = memberOf=cn=allowedusers,ou=Groups,dc=example,dc=com\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1499 -msgid "" -"This example means that access to this host is restricted to members of the " -"\"allowedusers\" group in ldap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1504 -msgid "" -"Offline caching for this feature is limited to determining whether the " -"user's last online login was granted access permission. If they were granted " -"access during their last login, they will continue to be granted access " -"while offline and vice-versa." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1512 sssd-ldap.5.xml:1562 -msgid "Default: Empty" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1518 -msgid "ldap_account_expire_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1521 -msgid "" -"With this option a client side evaluation of access control attributes can " -"be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1525 -msgid "" -"Please note that it is always recommended to use server side access control, " -"i.e. the LDAP server should deny the bind request with a suitable error code " -"even if the password is correct." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1532 -msgid "The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1535 -msgid "" -"<emphasis>shadow</emphasis>: use the value of ldap_user_shadow_expire to " -"determine if the account is expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1540 -msgid "" -"<emphasis>ad</emphasis>: use the value of the 32bit field " -"ldap_user_ad_user_account_control and allow access if the second bit is not " -"set. If the attribute is missing access is granted. Also the expiration time " -"of the account is checked." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1547 -msgid "" -"<emphasis>rhds</emphasis>, <emphasis>ipa</emphasis>, <emphasis>389ds</" -"emphasis>: use the value of ldap_ns_account_lock to check if access is " -"allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1553 -msgid "" -"<emphasis>nds</emphasis>: the values of " -"ldap_user_nds_login_allowed_time_map, ldap_user_nds_login_disabled and " -"ldap_user_nds_login_expiration_time are used to check if access is allowed. " -"If both attributes are missing access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1568 -msgid "ldap_access_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1571 -msgid "Comma separated list of access control options. Allowed values are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1575 -msgid "<emphasis>filter</emphasis>: use ldap_access_filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1578 -msgid "<emphasis>expire</emphasis>: use ldap_account_expire_policy" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1582 -msgid "" -"<emphasis>authorized_service</emphasis>: use the authorizedService attribute " -"to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1587 -msgid "<emphasis>host</emphasis>: use the host attribute to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1591 -msgid "Default: filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1594 -msgid "" -"Please note that it is a configuration error if a value is used more than " -"once." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1601 -msgid "ldap_deref (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1604 -msgid "" -"Specifies how alias dereferencing is done when performing a search. The " -"following options are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1609 -msgid "<emphasis>never</emphasis>: Aliases are never dereferenced." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1613 -msgid "" -"<emphasis>searching</emphasis>: Aliases are dereferenced in subordinates of " -"the base object, but not in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1618 -msgid "" -"<emphasis>finding</emphasis>: Aliases are only dereferenced when locating " -"the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1623 -msgid "" -"<emphasis>always</emphasis>: Aliases are dereferenced both in searching and " -"in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1628 -msgid "" -"Default: Empty (this is handled as <emphasis>never</emphasis> by the LDAP " -"client libraries)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:51 -msgid "" -"All of the common configuration options that apply to SSSD domains also " -"apply to LDAP domains. Refer to the <quote>DOMAIN SECTIONS</quote> section " -"of the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for full details. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1639 -msgid "SUDO OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1644 -msgid "ldap_sudorule_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1647 -msgid "The object class of a sudo rule entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1650 -msgid "Default: sudoRole" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1656 -msgid "ldap_sudorule_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1659 -msgid "The LDAP attribute that corresponds to the sudo rule name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1669 -msgid "ldap_sudorule_command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1672 -msgid "The LDAP attribute that corresponds to the command name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1676 -msgid "Default: sudoCommand" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1682 -msgid "ldap_sudorule_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1685 -msgid "" -"The LDAP attribute that corresponds to the host name (or host IP address, " -"host IP network, or host netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1690 -msgid "Default: sudoHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1696 -msgid "ldap_sudorule_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1699 -msgid "" -"The LDAP attribute that corresponds to the user name (or UID, group name or " -"user's netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1703 -msgid "Default: sudoUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1709 -msgid "ldap_sudorule_option (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1712 -msgid "The LDAP attribute that corresponds to the sudo options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1716 -msgid "Default: sudoOption" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1722 -msgid "ldap_sudorule_runasuser (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1725 -msgid "" -"The LDAP attribute that corresponds to the user name that commands may be " -"run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1729 -msgid "Default: sudoRunAsUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1735 -msgid "ldap_sudorule_runasgroup (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1738 -msgid "" -"The LDAP attribute that corresponds to the group name or group GID that " -"commands may be run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1742 -msgid "Default: sudoRunAsGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1748 -msgid "ldap_sudorule_notbefore (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1751 -msgid "" -"The LDAP attribute that corresponds to the start date/time for when the sudo " -"rule is valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1755 -msgid "Default: sudoNotBefore" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1761 -msgid "ldap_sudorule_notafter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1764 -msgid "" -"The LDAP attribute that corresponds to the expiration date/time, after which " -"the sudo rule will no longer be valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1769 -msgid "Default: sudoNotAfter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1775 -msgid "ldap_sudorule_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1778 -msgid "The LDAP attribute that corresponds to the ordering index of the rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1782 -msgid "Default: sudoOrder" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1788 -msgid "ldap_sudo_refresh_enabled (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1791 -msgid "" -"Enables periodical download of all sudo rules. The cache is purged before " -"each update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1801 -msgid "ldap_sudo_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1804 -msgid "" -"How many seconds SSSD has to wait before refreshing its cache of sudo rules." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1642 -msgid "<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1815 -msgid "" -"This manual page only describes attribute name mapping. For detailed " -"explanation of sudo related attribute semantics, see <citerefentry> " -"<refentrytitle>sudoers.ldap</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1825 -msgid "AUTOFS OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1827 -msgid "" -"Please note that the default values correspond to the default schema which " -"is RFC2307." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1834 -msgid "ldap_autofs_map_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1837 sssd-ldap.5.xml:1863 -msgid "The object class of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1840 sssd-ldap.5.xml:1867 -msgid "Default: automountMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1847 -msgid "ldap_autofs_map_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1850 -msgid "The name of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1853 -msgid "Default: ou" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1860 -msgid "ldap_autofs_entry_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1874 -msgid "ldap_autofs_entry_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1877 sssd-ldap.5.xml:1891 -msgid "" -"The key of an automount entry in LDAP. The entry usually corresponds to a " -"mount point." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1888 -msgid "ldap_autofs_entry_value (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1895 -msgid "Default: automountInformation" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1832 -msgid "" -"<placeholder type=\"variablelist\" id=\"0\"/> <placeholder type=" -"\"variablelist\" id=\"1\"/> <placeholder type=\"variablelist\" id=\"2\"/> " -"<placeholder type=\"variablelist\" id=\"3\"/> <placeholder type=" -"\"variablelist\" id=\"4\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1904 -msgid "ADVANCED OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1911 -msgid "ldap_netgroup_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1914 -msgid "" -"An optional base DN to restrict netgroup searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1930 -msgid "ldap_user_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1933 -msgid "An optional base DN to restrict user searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1949 -msgid "ldap_group_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1952 -msgid "An optional base DN to restrict group searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1968 -msgid "ldap_user_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1971 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict user searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1975 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_user_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1985 -#, no-wrap -msgid "" -" ldap_user_search_filter = (loginShell=/bin/tcsh)\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1988 -msgid "" -"This filter would restrict user searches to users that have their shell set " -"to /bin/tcsh." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1995 -msgid "ldap_group_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1998 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict group searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2002 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_group_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2012 -msgid "ldap_sudo_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2015 -msgid "" -"An optional base DN to restrict sudo rules searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2034 -msgid "ldap_autofs_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2037 -msgid "" -"An optional base DN to restrict automounter searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1906 -msgid "" -"These options are supported by LDAP domains, but they should be used with " -"caution. Please include them in your configuration only if you know what you " -"are doing. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2066 -msgid "" -"The following example assumes that SSSD is correctly configured and LDAP is " -"set to one of the domains in the <replaceable>[domains]</replaceable> " -"section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ldap.5.xml:2072 -#, no-wrap -msgid "" -" [domain/LDAP]\n" -" id_provider = ldap\n" -" auth_provider = ldap\n" -" ldap_uri = ldap://ldap.mydomain.org\n" -" ldap_search_base = dc=mydomain,dc=org\n" -" ldap_tls_reqcert = demand\n" -" cache_credentials = true\n" -" enumerate = true\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2071 sssd-simple.5.xml:134 sssd-ipa.5.xml:552 -#: sssd-krb5.5.xml:441 -msgid "<placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:2085 sssd_krb5_locator_plugin.8.xml:61 -msgid "NOTES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2087 -msgid "" -"The descriptions of some of the configuration options in this manual page " -"are based on the <citerefentry> <refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page from the OpenLDAP 2.4 " -"distribution." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2098 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <refentryinfo> -#: pam_sss.8.xml:8 include/upstream.xml:2 -msgid "" -"<productname>SSSD</productname> <orgname>The SSSD upstream - http://" -"fedorahosted.org/sssd</orgname>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: pam_sss.8.xml:13 pam_sss.8.xml:18 -msgid "pam_sss" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: pam_sss.8.xml:19 -msgid "PAM module for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: pam_sss.8.xml:24 -msgid "" -"<command>pam_sss.so</command> <arg choice='opt'> <replaceable>quiet</" -"replaceable> </arg> <arg choice='opt'> <replaceable>forward_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_first_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_authtok</" -"replaceable> </arg> <arg choice='opt'> <replaceable>retry=N</replaceable> </" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:45 -msgid "" -"<command>pam_sss.so</command> is the PAM interface to the System Security " -"Services daemon (SSSD). Errors and results are logged through <command>syslog" -"(3)</command> with the LOG_AUTHPRIV facility." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:55 -msgid "<option>quiet</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:58 -msgid "Suppress log messages for unknown users." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:63 -msgid "<option>forward_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:66 -msgid "" -"If <option>forward_pass</option> is set the entered password is put on the " -"stack for other PAM modules to use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:73 -msgid "<option>use_first_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:76 -msgid "" -"The argument use_first_pass forces the module to use a previous stacked " -"modules password and will never prompt the user - if no password is " -"available or the password is not appropriate, the user will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:84 -msgid "<option>use_authtok</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:87 -msgid "" -"When password changing enforce the module to set the new password to the one " -"provided by a previously stacked password module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:94 -msgid "<option>retry=N</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:97 -msgid "" -"If specified the user is asked another N times for a password if " -"authentication fails. Default is 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:99 -msgid "" -"Please note that this option might not work as expected if the application " -"calling PAM handles the user dialog on its own. A typical example is " -"<command>sshd</command> with <option>PasswordAuthentication</option>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:110 -msgid "MODULE TYPES PROVIDED" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:111 -msgid "" -"All module types (<option>account</option>, <option>auth</option>, " -"<option>password</option> and <option>session</option>) are provided." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:117 -msgid "FILES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:118 -msgid "" -"If a password reset by root fails, because the corresponding SSSD provider " -"does not support password resets, an individual message can be displayed. " -"This message can e.g. contain instructions about how to reset a password." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:123 -msgid "" -"The message is read from the file <filename>pam_sss_pw_reset_message.LOC</" -"filename> where LOC stands for a locale string returned by <citerefentry> " -"<refentrytitle>setlocale</refentrytitle><manvolnum>3</manvolnum> </" -"citerefentry>. If there is no matching file the content of " -"<filename>pam_sss_pw_reset_message.txt</filename> is displayed. Root must be " -"the owner of the files and only root may have read and write permissions " -"while all other users must have only read permissions." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:133 -msgid "" -"These files are searched in the directory <filename>/etc/sssd/customize/" -"DOMAIN_NAME/</filename>. If no matching file is present a generic message is " -"displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:141 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd_krb5_locator_plugin.8.xml:10 sssd_krb5_locator_plugin.8.xml:15 -msgid "sssd_krb5_locator_plugin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:22 -msgid "" -"The Kerberos locator plugin <command>sssd_krb5_locator_plugin</command> is " -"used by the Kerberos provider of <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry> to tell the Kerberos " -"libraries what Realm and which KDC to use. Typically this is done in " -"<citerefentry> <refentrytitle>krb5.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> which is always read by the Kerberos libraries. " -"To simplify the configuration the Realm and the KDC can be defined in " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> as described in <citerefentry> " -"<refentrytitle>sssd-krb5.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry> puts the Realm and the name or IP address of the KDC into " -"the environment variables SSSD_KRB5_REALM and SSSD_KRB5_KDC respectively. " -"When <command>sssd_krb5_locator_plugin</command> is called by the kerberos " -"libraries it reads and evaluates these variables and returns them to the " -"libraries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:63 -msgid "" -"Not all Kerberos implementations support the use of plugins. If " -"<command>sssd_krb5_locator_plugin</command> is not available on your system " -"you have to edit /etc/krb5.conf to reflect your Kerberos setup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:69 -msgid "" -"If the environment variable SSSD_KRB5_LOCATOR_DEBUG is set to any value " -"debug messages will be sent to stderr." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:77 -msgid "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-simple.5.xml:10 sssd-simple.5.xml:16 -msgid "sssd-simple" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd-simple.5.xml:17 -msgid "the configuration file for SSSD's 'simple' access-control provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:24 -msgid "" -"This manual page describes the configuration of the simple access-control " -"provider for <citerefentry> <refentrytitle>sssd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry>. For a detailed syntax reference, " -"refer to the <quote>FILE FORMAT</quote> section of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:38 -msgid "" -"The simple access provider grants or denies access based on an access or " -"deny list of user or group names. The following rules apply:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:43 -msgid "If all lists are empty, access is granted" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:47 -msgid "" -"If any list is provided, the order of evaluation is allow,deny. This means " -"that any matching deny rule will supersede any matched allow rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:54 -msgid "" -"If either or both \"allow\" lists are provided, all users are denied unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:60 -msgid "" -"If only \"deny\" lists are provided, all users are granted access unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:78 -msgid "simple_allow_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:81 -msgid "Comma separated list of users who are allowed to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:88 -msgid "simple_deny_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:91 -msgid "Comma separated list of users who are explicitly denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:97 -msgid "simple_allow_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:100 -msgid "" -"Comma separated list of groups that are allowed to log in. This applies only " -"to groups within this SSSD domain. Local groups are not evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:108 -msgid "simple_deny_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:111 -msgid "" -"Comma separated list of groups that are explicitly denied access. This " -"applies only to groups within this SSSD domain. Local groups are not " -"evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:70 sssd-ipa.5.xml:65 -msgid "" -"Refer to the section <quote>DOMAIN SECTIONS</quote> of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page for details on the configuration of an SSSD " -"domain. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:120 -msgid "" -"Please note that it is an configuration error if both, simple_allow_users " -"and simple_deny_users, are defined." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:128 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the simple access provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-simple.5.xml:135 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" access_provider = simple\n" -" simple_allow_users = user1, user2\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:145 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ipa.5.xml:10 sssd-ipa.5.xml:16 -msgid "sssd-ipa" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:23 -msgid "" -"This manual page describes the configuration of the IPA provider for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. For a detailed syntax reference, refer to the <quote>FILE " -"FORMAT</quote> section of the <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:36 -msgid "" -"The IPA provider is a back end used to connect to an IPA server. (Refer to " -"the freeipa.org web site for information about IPA servers.) This provider " -"requires that the machine be joined to the IPA domain; configuration is " -"almost entirely self-discovered and obtained directly from the server." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:43 -msgid "" -"The IPA provider accepts the same options used by the <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> identity provider and the <citerefentry> <refentrytitle>sssd-" -"krb5</refentrytitle> <manvolnum>5</manvolnum> </citerefentry> authentication " -"provider with some exceptions described below." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:55 -msgid "" -"However, it is neither necessary nor recommended to set these options. IPA " -"provider can also be used as an access and chpass provider. As an access " -"provider it uses HBAC (host-based access control) rules. Please refer to " -"freeipa.org for more information about HBAC. No configuration of access " -"provider is required on the client side." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:72 -msgid "ipa_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:75 -msgid "" -"Specifies the name of the IPA domain. This is optional. If not provided, " -"the configuration domain name is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:83 -msgid "ipa_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:86 -msgid "" -"The comma-separated list of IP addresses or hostnames of the IPA servers to " -"which SSSD should connect in the order of preference. For more information " -"on failover and server redundancy, see the <quote>FAILOVER</quote> section. " -"This is optional if autodiscovery is enabled. For more information on " -"service discovery, refer to the the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:99 -msgid "ipa_hostname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:102 -msgid "" -"Optional. May be set on machines where the hostname(5) does not reflect the " -"fully qualified name used in the IPA domain to identify this host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:110 -msgid "ipa_dyndns_update (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:113 -msgid "" -"Optional. This option tells SSSD to automatically update the DNS server " -"built into FreeIPA v2 with the IP address of this client." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:118 -msgid "" -"NOTE: On older systems (such as RHEL 5), for this behavior to work reliably, " -"the default Kerberos realm must be set properly in /etc/krb5.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:129 -msgid "ipa_dyndns_iface (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:132 -msgid "" -"Optional. Applicable only when ipa_dyndns_update is true. Choose the " -"interface whose IP address should be used for dynamic DNS updates." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:137 -msgid "Default: Use the IP address of the IPA LDAP connection" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:143 -msgid "ipa_hbac_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:146 -msgid "Optional. Use the given string as search base for HBAC related objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:150 -msgid "Default: Use base DN" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:156 -msgid "ipa_host_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:159 -msgid "Optional. Use the given string as search base for host objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:168 -msgid "" -"If filter is given in any of search bases and " -"<emphasis>ipa_hbac_support_srchost</emphasis> is set to False, the filter " -"will be ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:180 -msgid "ipa_selinux_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:183 -msgid "Optional. Use the given string as search base for SELinux user maps." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:199 sssd-krb5.5.xml:229 -msgid "krb5_validate (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:202 sssd-krb5.5.xml:232 -msgid "" -"Verify with the help of krb5_keytab that the TGT obtained has not been " -"spoofed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:209 -msgid "" -"Note that this default differs from the traditional Kerberos provider back " -"end." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:219 -msgid "" -"The name of the Kerberos realm. This is optional and defaults to the value " -"of <quote>ipa_domain</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:223 -msgid "" -"The name of the Kerberos realm has a special meaning in IPA - it is " -"converted into the base DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:234 -msgid "" -"Specifies if the host and user principal should be canonicalized when " -"connecting to IPA LDAP and also for AS requests. This feature is available " -"with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:247 -msgid "ipa_hbac_refresh (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:250 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server. " -"This will reduce the latency and load on the IPA server if there are many " -"access-control requests made in a short period." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:257 -msgid "Default: 5 (seconds)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:262 -msgid "ipa_hbac_treat_deny_as (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:265 -msgid "" -"This option specifies how to treat the deprecated DENY-type HBAC rules. As " -"of FreeIPA v2.1, DENY rules are no longer supported on the server. All users " -"of FreeIPA will need to migrate their rules to use only the ALLOW rules. The " -"client will support two modes of operation during this transition period:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:274 -msgid "" -"<emphasis>DENY_ALL</emphasis>: If any HBAC DENY rules are detected, all " -"users will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:279 -msgid "" -"<emphasis>IGNORE</emphasis>: SSSD will ignore any DENY rules. Be very " -"careful with this option, as it may result in opening unintended access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:284 -msgid "Default: DENY_ALL" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:289 -msgid "ipa_hbac_support_srchost (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:292 -msgid "" -"If this is set to false, then srchost as given to SSSD by PAM will be " -"ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:296 -msgid "" -"Note that if set to <emphasis>False</emphasis>, this option casuses filters " -"given in <emphasis>ipa_host_search_base</emphasis> to be ignored;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:307 -msgid "ipa_automount_location (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:310 -msgid "The automounter location this IPA client will be using" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:313 -msgid "Default: The location named \"default\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:319 -msgid "ipa_netgroup_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:322 -msgid "The LDAP attribute that lists netgroup's memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:331 -msgid "ipa_netgroup_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:334 -msgid "" -"The LDAP attribute that lists system users and groups that are direct " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:339 sssd-ipa.5.xml:434 -msgid "Default: memberUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:344 -msgid "ipa_netgroup_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:347 -msgid "" -"The LDAP attribute that lists hosts and host groups that are direct members " -"of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:351 sssd-ipa.5.xml:446 -msgid "Default: memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:356 -msgid "ipa_netgroup_member_ext_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:359 -msgid "" -"The LDAP attribute that lists FQDNs of hosts and host groups that are " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:363 -msgid "Default: externalHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:368 -msgid "ipa_netgroup_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:371 -msgid "The LDAP attribute that contains NIS domain name of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:375 -msgid "Default: nisDomainName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:381 -msgid "ipa_host_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:384 sssd-ipa.5.xml:407 -msgid "The object class of a host entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:387 sssd-ipa.5.xml:410 -msgid "Default: ipaHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:392 -msgid "ipa_host_fqdn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:395 -msgid "The LDAP attribute that contains FQDN of the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:398 -msgid "Default: fqdn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:404 -msgid "ipa_selinux_usermap_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:415 -msgid "ipa_selinux_usermap_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:418 -msgid "The LDAP attribute that contains the name of SELinux usermap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:427 -msgid "ipa_selinux_usermap_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:430 -msgid "" -"The LDAP attribute that contains all users / groups this rule match against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:439 -msgid "ipa_selinux_usermap_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:442 -msgid "" -"The LDAP attribute that contains all hosts / hostgroups this rule match " -"against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:451 -msgid "ipa_selinux_usermap_see_also (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:454 -msgid "" -"The LDAP attribute that contains DN of HBAC rule which can be used for " -"matching instead of memberUser and memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:459 -msgid "Default: seeAlso" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:464 -msgid "ipa_selinux_usermap_selinux_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:467 -msgid "The LDAP attribute that contains SELinux user string itself." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:471 -msgid "Default: ipaSELinuxUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:476 -msgid "ipa_selinux_usermap_enabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:479 -msgid "" -"The LDAP attribute that contains whether or not is user map enabled for " -"usage." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:483 -msgid "Default: ipaEnabledFlag" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:488 -msgid "ipa_selinux_usermap_user_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:491 -msgid "The LDAP attribute that contains user category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:495 -msgid "Default: userCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:500 -msgid "ipa_selinux_usermap_host_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:503 -msgid "The LDAP attribute that contains host category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:507 -msgid "Default: hostCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:512 -msgid "ipa_selinux_usermap_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:515 -msgid "The LDAP attribute that contains unique ID of the user map." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:519 -msgid "Default: ipaUniqueID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:524 -msgid "ipa_host_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:527 -msgid "The LDAP attribute that contains the host's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:531 -msgid "Default: ipaSshPubKey" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:546 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the ipa provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ipa.5.xml:553 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" id_provider = ipa\n" -" ipa_server = ipaserver.example.com\n" -" ipa_hostname = myhost.example.com\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:564 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.8.xml:10 sssd.8.xml:15 -msgid "sssd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.8.xml:16 -msgid "System Security Services Daemon" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sssd.8.xml:21 -msgid "" -"<command>sssd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:31 -msgid "" -"<command>SSSD</command> provides a set of daemons to manage access to remote " -"directories and authentication mechanisms. It provides an NSS and PAM " -"interface toward the system and a pluggable backend system to connect to " -"multiple different account sources as well as D-Bus interface. It is also " -"the basis to provide client auditing and policy services for projects like " -"FreeIPA. It provides a more robust database to store local users as well as " -"extended user data." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:46 -msgid "" -"<option>-d</option>,<option>--debug-level</option> <replaceable>LEVEL</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:53 -msgid "<option>--debug-timestamps=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:57 -msgid "<emphasis>1</emphasis>: Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:60 -msgid "<emphasis>0</emphasis>: Disable timestamp in the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:69 -msgid "<option>--debug-microseconds=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:73 -msgid "" -"<emphasis>1</emphasis>: Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:76 -msgid "<emphasis>0</emphasis>: Disable microseconds in timestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:79 -msgid "Default: 0" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:85 -msgid "<option>-f</option>,<option>--debug-to-files</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:89 -msgid "" -"Send the debug output to files instead of stderr. By default, the log files " -"are stored in <filename>/var/log/sssd</filename> and there are separate log " -"files for every SSSD service and domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:97 -msgid "<option>-D</option>,<option>--daemon</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:101 -msgid "Become a daemon after starting up." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:107 -msgid "<option>-i</option>,<option>--interactive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:111 -msgid "Run in the foreground, don't become a daemon." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:117 sss_debuglevel.8.xml:42 -msgid "<option>-c</option>,<option>--config</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:121 sss_debuglevel.8.xml:46 -msgid "" -"Specify a non-default config file. The default is <filename>/etc/sssd/sssd." -"conf</filename>. For reference on the config file syntax and options, " -"consult the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:135 -msgid "<option>--version</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:139 -msgid "Print version number and exit." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.8.xml:147 -msgid "Signals" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:150 -msgid "SIGTERM/SIGINT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:153 -msgid "" -"Informs the SSSD to gracefully terminate all of its child processes and then " -"shut down the monitor." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:159 -msgid "SIGHUP" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:162 -msgid "" -"Tells the SSSD to stop writing to its current debug file descriptors and to " -"close and reopen them. This is meant to facilitate log rolling with programs " -"like logrotate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:170 -msgid "SIGUSR1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:173 -msgid "" -"Tells the SSSD to simulate offline operation for one minute. This is mostly " -"useful for testing purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:179 -msgid "SIGUSR2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:182 -msgid "" -"Tells the SSSD to go online immediately. This is mostly useful for testing " -"purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:193 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_obfuscate.8.xml:10 sss_obfuscate.8.xml:15 -msgid "sss_obfuscate" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_obfuscate.8.xml:16 -msgid "obfuscate a clear text password" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_obfuscate.8.xml:21 -msgid "" -"<command>sss_obfuscate</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>[PASSWORD]</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:32 -msgid "" -"<command>sss_obfuscate</command> converts a given password into human-" -"unreadable format and places it into appropriate domain section of the SSSD " -"config file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:37 -msgid "" -"The cleartext password is read from standard input or entered " -"interactively. The obfuscated password is put into " -"<quote>ldap_default_authtok</quote> parameter of a given SSSD domain and the " -"<quote>ldap_default_authtok_type</quote> parameter is set to " -"<quote>obfuscated_password</quote>. Refer to <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more details on these parameters." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:49 -msgid "" -"Please note that obfuscating the password provides <emphasis>no real " -"security benefit</emphasis> as it is still possible for an attacker to " -"reverse-engineer the password back. Using better authentication mechanisms " -"such as client side certificates or GSSAPI is <emphasis>strongly</emphasis> " -"advised." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:63 -msgid "<option>-s</option>,<option>--stdin</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:67 -msgid "The password to obfuscate will be read from standard input." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:74 sss_ssh_authorizedkeys.1.xml:82 -#: sss_ssh_knownhostsproxy.1.xml:81 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>DOMAIN</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:79 -msgid "" -"The SSSD domain to use the password in. The default name is <quote>default</" -"quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:86 -msgid "" -"<option>-f</option>,<option>--file</option> <replaceable>FILE</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:91 -msgid "Read the config file specified by the positional parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:95 -msgid "Default: <filename>/etc/sssd/sssd.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:105 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_useradd.8.xml:10 sss_useradd.8.xml:15 -msgid "sss_useradd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_useradd.8.xml:16 -msgid "create a new user" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_useradd.8.xml:21 -msgid "" -"<command>sss_useradd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:32 -msgid "" -"<command>sss_useradd</command> creates a new user account using the values " -"specified on the command line plus the default values from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:43 -msgid "" -"<option>-u</option>,<option>--uid</option> <replaceable>UID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:48 -msgid "" -"Set the UID of the user to the value of <replaceable>UID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:55 sss_usermod.8.xml:43 -msgid "" -"<option>-c</option>,<option>--gecos</option> <replaceable>COMMENT</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:60 sss_usermod.8.xml:48 -msgid "" -"Any text string describing the user. Often used as the field for the user's " -"full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:67 sss_usermod.8.xml:55 -msgid "" -"<option>-h</option>,<option>--home</option> <replaceable>HOME_DIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:72 -msgid "" -"The home directory of the user account. The default is to append the " -"<replaceable>LOGIN</replaceable> name to <filename>/home</filename> and use " -"that as the home directory. The base that is prepended before " -"<replaceable>LOGIN</replaceable> is tunable with <quote>user_defaults/" -"baseDirectory</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:82 sss_usermod.8.xml:66 -msgid "" -"<option>-s</option>,<option>--shell</option> <replaceable>SHELL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:87 -msgid "" -"The user's login shell. The default is currently <filename>/bin/bash</" -"filename>. The default can be changed with <quote>user_defaults/" -"defaultShell</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:96 -msgid "" -"<option>-G</option>,<option>--groups</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:101 -msgid "A list of existing groups this user is also a member of." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:107 -msgid "<option>-m</option>,<option>--create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:111 -msgid "" -"Create the user's home directory if it does not exist. The files and " -"directories contained in the skeleton directory (which can be defined with " -"the -k option or in the config file) will be copied to the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:121 -msgid "<option>-M</option>,<option>--no-create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:125 -msgid "" -"Do not create the user's home directory. Overrides configuration settings." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:132 -msgid "" -"<option>-k</option>,<option>--skel</option> <replaceable>SKELDIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:137 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<command>sss_useradd</command>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:143 -msgid "" -"This option is only valid if the <option>-m</option> (or <option>--create-" -"home</option>) option is specified, or creation of home directories is set " -"to TRUE in the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:152 sss_usermod.8.xml:124 -msgid "" -"<option>-Z</option>,<option>--selinux-user</option> " -"<replaceable>SELINUX_USER</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:157 -msgid "" -"The SELinux user for the user's login. If not specified, the system default " -"will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:169 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-krb5.5.xml:10 sssd-krb5.5.xml:16 -msgid "sssd-krb5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:23 -msgid "" -"This manual page describes the configuration of the Kerberos 5 " -"authentication backend for <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry>. For a detailed " -"syntax reference, please refer to the <quote>FILE FORMAT</quote> section of " -"the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:36 -msgid "" -"The Kerberos 5 authentication backend contains auth and chpass providers. It " -"must be paired with identity provider in order to function properly (for " -"example, id_provider = ldap). Some information required by the Kerberos 5 " -"authentication backend must be provided by the identity provider, such as " -"the user's Kerberos Principal Name (UPN). The configuration of the identity " -"provider should have an entry to specify the UPN. Please refer to the man " -"page for the applicable identity provider for details on how to configure " -"this." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:47 -msgid "" -"This backend also provides access control based on the .k5login file in the " -"home directory of the user. See <citerefentry> <refentrytitle>.k5login</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry> for more details. " -"Please note that an empty .k5login file will deny all access to this user. " -"To activate this feature use 'access_provider = krb5' in your sssd " -"configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:55 -msgid "" -"In the case where the UPN is not available in the identity backend " -"<command>sssd</command> will construct a UPN using the format " -"<replaceable>username</replaceable>@<replaceable>krb5_realm</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:106 -msgid "" -"The name of the Kerberos realm. This option is required and must be " -"specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:113 -msgid "krb5_kpasswd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:116 -msgid "" -"If the change password service is not running on the KDC alternative servers " -"can be defined here. An optional port number (preceded by a colon) may be " -"appended to the addresses or hostnames." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:122 -msgid "" -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. Please note that even if there are no more " -"kpasswd servers to try the back end is not switch to offline if " -"authentication against the KDC is still possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:129 -msgid "Default: Use the KDC" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:135 -msgid "krb5_ccachedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:138 -msgid "" -"Directory to store credential caches. All the substitution sequences of " -"krb5_ccname_template can be used here, too, except %d and %P. If the " -"directory does not exist it will be created. If %u, %U, %p or %h are used a " -"private directory belonging to the user is created. Otherwise a public " -"directory with restricted deletion flag (aka sticky bit, see <citerefentry> " -"<refentrytitle>chmod</refentrytitle> <manvolnum>1</manvolnum> </" -"citerefentry> for details) is created." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:151 -msgid "Default: /tmp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:157 -msgid "krb5_ccname_template (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:171 -msgid "login UID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:174 -msgid "%p" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:175 -msgid "principal name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:179 -msgid "%r" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:180 -msgid "realm name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:183 -msgid "%h" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:184 -msgid "home directory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:189 -msgid "value of krb5ccache_dir" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:194 -msgid "%P" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:195 -msgid "the process ID of the sssd client" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:160 -msgid "" -"Location of the user's credential cache. Currently only file based " -"credential caches are supported. In the template the following sequences are " -"substituted: <placeholder type=\"variablelist\" id=\"0\"/> If the template " -"ends with 'XXXXXX' mkstemp(3) is used to create a unique filename in a safe " -"way." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:209 -msgid "Default: FILE:%d/krb5cc_%U_XXXXXX" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:215 -msgid "krb5_auth_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:218 -msgid "" -"Timeout in seconds after an online authentication or change password request " -"is aborted. If possible the authentication request is continued offline." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:241 -msgid "krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:244 -msgid "" -"The location of the keytab to use when validating credentials obtained from " -"KDCs." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:248 -msgid "Default: /etc/krb5.keytab" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:254 -msgid "krb5_store_password_if_offline (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:257 -msgid "" -"Store the password of the user if the provider is offline and use it to " -"request a TGT when the provider gets online again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:262 -msgid "" -"Please note that this feature currently only available on a Linux platform. " -"Passwords stored in this way are kept in plaintext in the kernel keyring and " -"are potentially accessible by the root user (with difficulty)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:275 -msgid "krb5_renewable_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:278 -msgid "" -"Request a renewable ticket with a total lifetime given by an integer " -"immediately followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:283 sssd-krb5.5.xml:319 -msgid "<emphasis>s</emphasis> seconds" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:286 sssd-krb5.5.xml:322 -msgid "<emphasis>m</emphasis> minutes" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:289 sssd-krb5.5.xml:325 -msgid "<emphasis>h</emphasis> hours" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:292 sssd-krb5.5.xml:328 -msgid "<emphasis>d</emphasis> days." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:295 sssd-krb5.5.xml:331 -msgid "If there is no delimiter <emphasis>s</emphasis> is assumed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:299 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"renewable lifetime to one and a half hours please use '90m' instead of " -"'1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:305 -msgid "Default: not set, i.e. the TGT is not renewable" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:311 -msgid "krb5_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:314 -msgid "" -"Request ticket with a with a lifetime given by an integer immediately " -"followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:335 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"lifetime to one and a half hours please use '90m' instead of '1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:340 -msgid "" -"Default: not set, i.e. the default ticket lifetime configured on the KDC." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:347 -msgid "krb5_renew_interval (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:350 -msgid "" -"The time in seconds between two checks if the TGT should be renewed. TGTs " -"are renewed if about half of their lifetime is exceeded." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:355 -msgid "If this option is not set or 0 the automatic renewal is disabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:365 -msgid "krb5_use_fast (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:368 -msgid "" -"Enables flexible authentication secure tunneling (FAST) for Kerberos pre-" -"authentication. The following options are supported:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:373 -msgid "" -"<emphasis>never</emphasis> use FAST, this is equivalent to not set this " -"option at all." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:377 -msgid "" -"<emphasis>try</emphasis> to use FAST, if the server does not support fast " -"continue without." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:381 -msgid "" -"<emphasis>demand</emphasis> to use FAST, fail if the server does not require " -"fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:385 -msgid "Default: not set, i.e. FAST is not used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:388 -msgid "Please note that a keytab is required to use fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:391 -msgid "" -"Please note also that sssd supports fast only with MIT Kerberos version 1.8 " -"and above. If sssd used with an older version using this option is a " -"configuration error." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:400 -msgid "krb5_fast_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:403 -msgid "Specifies the server principal to use for FAST." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:412 -msgid "" -"Specifies if the host and user principal should be canonicalized. This " -"feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:65 -msgid "" -"If the auth-module krb5 is used in a SSSD domain, the following options must " -"be used. See the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page, section <quote>DOMAIN " -"SECTIONS</quote> for details on the configuration of a SSSD domain. " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:434 -msgid "" -"The following example assumes that SSSD is correctly configured and FOO is " -"one of the domains in the <replaceable>[sssd]</replaceable> section. This " -"example shows only configuration of Kerberos authentication, it does not " -"include any identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-krb5.5.xml:442 -#, no-wrap -msgid "" -" [domain/FOO]\n" -" auth_provider = krb5\n" -" krb5_server = 192.168.1.1\n" -" krb5_realm = EXAMPLE.COM\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:453 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupadd.8.xml:10 sss_groupadd.8.xml:15 -msgid "sss_groupadd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupadd.8.xml:16 -msgid "create a new group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupadd.8.xml:21 -msgid "" -"<command>sss_groupadd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:32 -msgid "" -"<command>sss_groupadd</command> creates a new group. These groups are " -"compatible with POSIX groups, with the additional feature that they can " -"contain other groups as members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupadd.8.xml:43 -msgid "" -"<option>-g</option>,<option>--gid</option> <replaceable>GID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupadd.8.xml:48 -msgid "" -"Set the GID of the group to the value of <replaceable>GID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_userdel.8.xml:10 sss_userdel.8.xml:15 -msgid "sss_userdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_userdel.8.xml:16 -msgid "delete a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_userdel.8.xml:21 -msgid "" -"<command>sss_userdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:32 -msgid "" -"<command>sss_userdel</command> deletes a user identified by login name " -"<replaceable>LOGIN</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:44 -msgid "<option>-r</option>,<option>--remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:48 -msgid "" -"Files in the user's home directory will be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:56 -msgid "<option>-R</option>,<option>--no-remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:60 -msgid "" -"Files in the user's home directory will NOT be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:68 -msgid "<option>-f</option>,<option>--force</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:72 -msgid "" -"This option forces <command>sss_userdel</command> to remove the user's home " -"directory and mail spool, even if they are not owned by the specified user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:80 -msgid "<option>-k</option>,<option>--kick</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:84 -msgid "Before actually deleting the user, terminate all his processes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:95 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupdel.8.xml:10 sss_groupdel.8.xml:15 -msgid "sss_groupdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupdel.8.xml:16 -msgid "delete a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupdel.8.xml:21 -msgid "" -"<command>sss_groupdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:32 -msgid "" -"<command>sss_groupdel</command> deletes a group identified by its name " -"<replaceable>GROUP</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupshow.8.xml:10 sss_groupshow.8.xml:15 -msgid "sss_groupshow" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupshow.8.xml:16 -msgid "print properties of a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupshow.8.xml:21 -msgid "" -"<command>sss_groupshow</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:32 -msgid "" -"<command>sss_groupshow</command> displays information about a group " -"identified by its name <replaceable>GROUP</replaceable>. The information " -"includes the group ID number, members of the group and the parent group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupshow.8.xml:43 -msgid "<option>-R</option>,<option>--recursive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupshow.8.xml:47 -msgid "" -"Also print indirect group members in a tree-like hierarchy. Note that this " -"also affects printing parent groups - without <option>R</option>, only the " -"direct parent will be printed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_usermod.8.xml:10 sss_usermod.8.xml:15 -msgid "sss_usermod" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_usermod.8.xml:16 -msgid "modify a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_usermod.8.xml:21 -msgid "" -"<command>sss_usermod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:32 -msgid "" -"<command>sss_usermod</command> modifies the account specified by " -"<replaceable>LOGIN</replaceable> to reflect the changes that are specified " -"on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:60 -msgid "The home directory of the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:71 -msgid "The user's login shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:82 -msgid "" -"Append this user to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:96 -msgid "" -"Remove this user from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:103 -msgid "<option>-l</option>,<option>--lock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:107 -msgid "Lock the user account. The user won't be able to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:114 -msgid "<option>-u</option>,<option>--unlock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:118 -msgid "Unlock the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:129 -msgid "The SELinux user for the user's login." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:140 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_cache.8.xml:10 sss_cache.8.xml:15 -msgid "sss_cache" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_cache.8.xml:16 -msgid "perform cache cleanup" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_cache.8.xml:21 -msgid "" -"<command>sss_cache</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_cache.8.xml:31 -msgid "" -"<command>sss_cache</command> invalidates records in SSSD cache. Invalidated " -"records are forced to be reloaded from server as soon as related SSSD " -"backend is online." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:42 -msgid "" -"<option>-u</option>,<option>--user</option> <replaceable>login</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:47 -msgid "Invalidate specific user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:53 -msgid "<option>-U</option>,<option>--users</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:57 -msgid "" -"Invalidate all user records. This option overrides invalidation of specific " -"user if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:64 -msgid "" -"<option>-g</option>,<option>--group</option> <replaceable>group</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:69 -msgid "Invalidate specific group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:75 -msgid "<option>-G</option>,<option>--groups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:79 -msgid "" -"Invalidate all group records. This option overrides invalidation of specific " -"group if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:86 -msgid "" -"<option>-n</option>,<option>--netgroup</option> <replaceable>netgroup</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:91 -msgid "Invalidate specific netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:97 -msgid "<option>-N</option>,<option>--netgroups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:101 -msgid "" -"Invalidate all netgroup records. This option overrides invalidation of " -"specific netgroup if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:108 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>domain</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:113 -msgid "Restrict invalidation process only to a particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_debuglevel.8.xml:10 sss_debuglevel.8.xml:15 -msgid "sss_debuglevel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_debuglevel.8.xml:16 -msgid "change debug level while SSSD is running" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_debuglevel.8.xml:21 -msgid "" -"<command>sss_debuglevel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>NEW_DEBUG_LEVEL</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_debuglevel.8.xml:32 -msgid "" -"<command>sss_debuglevel</command> changes debug level of SSSD monitor and " -"providers to <replaceable>NEW_DEBUG_LEVEL</replaceable> while SSSD is " -"running." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_debuglevel.8.xml:59 -msgid "<replaceable>NEW_DEBUG_LEVEL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_authorizedkeys.1.xml:10 sss_ssh_authorizedkeys.1.xml:15 -msgid "sss_ssh_authorizedkeys" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_ssh_authorizedkeys.1.xml:11 sss_ssh_knownhostsproxy.1.xml:11 -msgid "1" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_authorizedkeys.1.xml:16 -msgid "get OpenSSH authorized keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_authorizedkeys.1.xml:21 -msgid "" -"<command>sss_ssh_authorizedkeys</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>USER</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:32 -msgid "" -"<command>sss_ssh_authorizedkeys</command> acquires SSH public keys for user " -"<replaceable>USER</replaceable> and outputs them in OpenSSH authorized_keys " -"format (see the <quote>AUTHORIZED_KEYS FILE FORMAT</quote> section of " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> for more information)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:41 -msgid "" -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_authorizedkeys</" -"command> for public key user authentication if it is compiled with support " -"for either <quote>AuthorizedKeysCommand</quote> or <quote>PubkeyAgent</" -"quote> <citerefentry> <refentrytitle>sshd_config</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:58 -#, no-wrap -msgid "AuthorizedKeysCommand /usr/bin/sss_ssh_authorizedkeys\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:51 -msgid "" -"If <quote>AuthorizedKeysCommand</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by putting the following directive " -"in <citerefentry> <refentrytitle>sshd_config</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry>: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:69 -#, no-wrap -msgid "PubKeyAgent /usr/bin/sss_ssh_authorizedkeys %u\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:62 -msgid "" -"If <quote>PubkeyAgent</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by using the following directive " -"for <citerefentry> <refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> configuration: <placeholder type=\"programlisting" -"\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_authorizedkeys.1.xml:87 -msgid "" -"Search for user public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:98 -msgid "" -"<citerefentry> <refentrytitle>sshd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sshd_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_knownhostsproxy</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_knownhostsproxy.1.xml:10 sss_ssh_knownhostsproxy.1.xml:15 -msgid "sss_ssh_knownhostsproxy" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_knownhostsproxy.1.xml:16 -msgid "get OpenSSH host keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_knownhostsproxy.1.xml:21 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>HOST</replaceable></arg> <arg " -"choice='opt'><replaceable>PROXY_COMMAND</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:33 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> acquires SSH host public keys for " -"host <replaceable>HOST</replaceable>, stores them in a custom OpenSSH " -"known_hosts file (see the <quote>SSH_KNOWN_HOSTS FILE FORMAT</quote> section " -"of <citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> for more information) <filename>/var/lib/sss/" -"pubconf/known_hosts</filename> and estabilishes connection to the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:43 -msgid "" -"If <replaceable>PROXY_COMMAND</replaceable> is specified, it is used to " -"create the connection to the host instead of opening a socket." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_knownhostsproxy.1.xml:55 -#, no-wrap -msgid "" -"ProxyCommand /usr/bin/sss_ssh_knownhostsproxy -p %p %h\n" -"GlobalKnownHostsFile2 /var/lib/sss/pubconf/known_hosts\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:48 -msgid "" -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_knownhostsproxy</" -"command> for host key authentication by using the following directives for " -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> configuration: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_ssh_knownhostsproxy.1.xml:69 -msgid "" -"<option>-p</option>,<option>--port</option> <replaceable>PORT</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:74 -msgid "" -"Use port <replaceable>PORT</replaceable> to connect to the host. By " -"default, port 22 is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:86 -msgid "" -"Search for host public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:97 -msgid "" -"<citerefentry> <refentrytitle>ssh</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>ssh_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_authorizedkeys</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/service_discovery.xml:2 -msgid "SERVICE DISCOVERY" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/service_discovery.xml:4 -msgid "" -"The service discovery feature allows back ends to automatically find the " -"appropriate servers to connect to using a special DNS query." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:9 -msgid "Configuration" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:11 -msgid "" -"If no servers are specified, the back end automatically uses service " -"discovery to try to find a server. Optionally, the user may choose to use " -"both fixed server addresses and service discovery by inserting a special " -"keyword, <quote>_srv_</quote>, in the list of servers. The order of " -"preference is maintained. This feature is useful if, for example, the user " -"prefers to use service discovery whenever possible, and fall back to a " -"specific server when no servers can be discovered using DNS." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:23 -msgid "The domain name" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:25 -msgid "" -"Please refer to the <quote>dns_discovery_domain</quote> parameter in the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for more details." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:35 -msgid "The protocol" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:37 -msgid "" -"The queries usually specify _tcp as the protocol. Exceptions are documented " -"in respective option description." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:42 -msgid "See Also" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:44 -msgid "" -"For more information on the service discovery mechanism, refer to RFC 2782." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/upstream.xml:1 -msgid "<placeholder type=\"refentryinfo\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/failover.xml:2 -msgid "FAILOVER" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/failover.xml:4 -msgid "" -"The failover feature allows back ends to automatically switch to a different " -"server if the primary server fails." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:8 -msgid "Failover Syntax" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:10 -msgid "" -"The list of servers is given as a comma-separated list; any number of spaces " -"is allowed around the comma. The servers are listed in order of preference. " -"The list can contain any number of servers." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:17 -msgid "The Failover Mechanism" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:19 -msgid "" -"The failover mechanism distinguishes between a machine and a service. The " -"back end first tries to resolve the hostname of a given machine; if this " -"resolution attempt fails, the machine is considered offline. No further " -"attempts are made to connect to this machine for any other service. If the " -"resolution attempt succeeds, the back end tries to connect to a service on " -"this machine. If the service connection attempt fails, then only this " -"particular service is considered offline and the back end automatically " -"switches over to the next service. The machine is still considered online " -"and might still be tried for another service." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:32 -msgid "" -"Further connection attempts are made to machines or services marked as " -"offline after a specified period of time; this is currently hard coded to 30 " -"seconds." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:37 -msgid "" -"If there are no more machines to try, the back end as a whole switches to " -"offline mode, and then attempts to reconnect every 30 seconds." -msgstr "" - -#. type: Content of: <varlistentry><term> -#: include/param_help.xml:3 -msgid "<option>-h</option>,<option>--help</option>" -msgstr "" - -#. type: Content of: <varlistentry><listitem><para> -#: include/param_help.xml:7 -msgid "Display help message and exit." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:3 -msgid "" -"Bit mask that indicates which debug levels will be visible. 0x0010 is the " -"default value as well as the lowest allowed value, 0xFFF0 is the most " -"verbose mode. This setting overrides the settings from config file." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:8 -msgid "Currently supported debug levels:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:11 -msgid "" -"<emphasis>0x0010</emphasis>: Fatal failures. Anything that would prevent " -"SSSD from starting up or causes it to cease running." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:15 -msgid "" -"<emphasis>0x0020</emphasis>: Critical failures. An error that doesn't kill " -"the SSSD, but one that indicates that at least one major feature is not " -"going to work properly." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:20 -msgid "" -"<emphasis>0x0040</emphasis>: Serious failures. An error announcing that a " -"particular request or operation has failed." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:24 -msgid "" -"<emphasis>0x0080</emphasis>: Minor failures. These are the errors that would " -"percolate down to cause the operation failure of 2." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:28 -msgid "<emphasis>0x0100</emphasis>: Configuration settings." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:31 -msgid "<emphasis>0x0200</emphasis>: Function data." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:34 -msgid "<emphasis>0x0400</emphasis>: Trace messages for operation functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:37 -msgid "" -"<emphasis>0x1000</emphasis>: Trace messages for internal control functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:40 -msgid "" -"<emphasis>0x2000</emphasis>: Contents of function-internal variables that " -"may be interesting." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:43 -msgid "<emphasis>0x4000</emphasis>: Extremely low-level tracing information." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:46 -msgid "" -"To log required debug levels, simply add their numbers together as shown in " -"following examples:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:49 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, critical failures, " -"serious failures and function data use 0x0270." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:53 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, configuration settings, " -"function data, trace messages for internal control functions use 0x1310." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:57 -msgid "" -"<emphasis>Note</emphasis>: This is new format of debug levels introduced in " -"1.7.0. Older format (numbers from 0-10) is compatible but deprecated." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/experimental.xml:1 -msgid "" -"<emphasis> This is an experimental feature, please use http://fedorahosted." -"org/sssd to report any issues. </emphasis>" -msgstr "" diff --git a/src/man/po/sv.po b/src/man/po/sv.po deleted file mode 100644 index 4405798b3..000000000 --- a/src/man/po/sv.po +++ /dev/null @@ -1,6748 +0,0 @@ -# SOME DESCRIPTIVE TITLE -# Copyright (C) YEAR Red Hat -# This file is distributed under the same license as the sssd-docs package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@redhat.com\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-12-23 15:35+0000\n" -"Last-Translator: FULL NAME <EMAIL@ADDRESS>\n" -"Language-Team: Swedish (http://www.transifex.net/projects/p/fedora/language/" -"sv/)\n" -"Language: sv\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=2; plural=(n != 1)\n" - -#. type: Content of: <reference><title> -#: sss_groupmod.8.xml:5 sssd.conf.5.xml:5 sssd-ldap.5.xml:5 pam_sss.8.xml:5 -#: sssd_krb5_locator_plugin.8.xml:5 sssd-simple.5.xml:5 sssd-ipa.5.xml:5 -#: sssd.8.xml:5 sss_obfuscate.8.xml:5 sss_useradd.8.xml:5 sssd-krb5.5.xml:5 -#: sss_groupadd.8.xml:5 sss_userdel.8.xml:5 sss_groupdel.8.xml:5 -#: sss_groupshow.8.xml:5 sss_usermod.8.xml:5 sss_cache.8.xml:5 -#: sss_debuglevel.8.xml:5 sss_ssh_authorizedkeys.1.xml:5 -#: sss_ssh_knownhostsproxy.1.xml:5 -msgid "SSSD Manual pages" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupmod.8.xml:10 sss_groupmod.8.xml:15 -msgid "sss_groupmod" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_groupmod.8.xml:11 pam_sss.8.xml:14 sssd_krb5_locator_plugin.8.xml:11 -#: sssd.8.xml:11 sss_obfuscate.8.xml:11 sss_useradd.8.xml:11 -#: sss_groupadd.8.xml:11 sss_userdel.8.xml:11 sss_groupdel.8.xml:11 -#: sss_groupshow.8.xml:11 sss_usermod.8.xml:11 sss_cache.8.xml:11 -#: sss_debuglevel.8.xml:11 -msgid "8" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupmod.8.xml:16 -msgid "modify a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupmod.8.xml:21 -msgid "" -"<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:30 sssd-ldap.5.xml:21 pam_sss.8.xml:44 -#: sssd_krb5_locator_plugin.8.xml:20 sssd-simple.5.xml:22 sssd-ipa.5.xml:21 -#: sssd.8.xml:29 sss_obfuscate.8.xml:30 sss_useradd.8.xml:30 -#: sssd-krb5.5.xml:21 sss_groupadd.8.xml:30 sss_userdel.8.xml:30 -#: sss_groupdel.8.xml:30 sss_groupshow.8.xml:30 sss_usermod.8.xml:30 -#: sss_cache.8.xml:29 sss_debuglevel.8.xml:30 sss_ssh_authorizedkeys.1.xml:30 -#: sss_ssh_knownhostsproxy.1.xml:31 -msgid "DESCRIPTION" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:32 -msgid "" -"<command>sss_groupmod</command> modifies the group to reflect the changes " -"that are specified on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:39 pam_sss.8.xml:51 sssd.8.xml:42 sss_obfuscate.8.xml:58 -#: sss_useradd.8.xml:39 sss_groupadd.8.xml:39 sss_userdel.8.xml:39 -#: sss_groupdel.8.xml:39 sss_groupshow.8.xml:39 sss_usermod.8.xml:39 -#: sss_cache.8.xml:38 sss_debuglevel.8.xml:38 sss_ssh_authorizedkeys.1.xml:78 -#: sss_ssh_knownhostsproxy.1.xml:65 -msgid "OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:43 sss_usermod.8.xml:77 -msgid "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:48 -msgid "" -"Append this group to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:57 sss_usermod.8.xml:91 -msgid "" -"<option>-r</option>,<option>--remove-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:62 -msgid "" -"Remove this group from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:72 sssd.conf.5.xml:1331 sssd-ldap.5.xml:2096 -#: pam_sss.8.xml:139 sssd_krb5_locator_plugin.8.xml:75 sssd-simple.5.xml:143 -#: sssd-ipa.5.xml:562 sssd.8.xml:191 sss_obfuscate.8.xml:103 -#: sss_useradd.8.xml:167 sssd-krb5.5.xml:451 sss_groupadd.8.xml:58 -#: sss_userdel.8.xml:93 sss_groupdel.8.xml:46 sss_groupshow.8.xml:58 -#: sss_usermod.8.xml:138 sss_ssh_authorizedkeys.1.xml:96 -#: sss_ssh_knownhostsproxy.1.xml:95 -msgid "SEE ALSO" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:74 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.conf.5.xml:10 sssd.conf.5.xml:16 -msgid "sssd.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sssd.conf.5.xml:11 sssd-ldap.5.xml:11 sssd-simple.5.xml:11 -#: sssd-ipa.5.xml:11 sssd-krb5.5.xml:11 -msgid "5" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><refmiscinfo> -#: sssd.conf.5.xml:12 sssd-ldap.5.xml:12 sssd-simple.5.xml:12 -#: sssd-ipa.5.xml:12 sssd-krb5.5.xml:12 -msgid "File Formats and Conventions" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.conf.5.xml:17 sssd-ldap.5.xml:17 sssd_krb5_locator_plugin.8.xml:16 -#: sssd-ipa.5.xml:17 sssd-krb5.5.xml:17 -msgid "the configuration file for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:21 -msgid "FILE FORMAT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:29 -#, no-wrap -msgid "" -" <replaceable>[section]</replaceable>\n" -" <replaceable>key</replaceable> = <replaceable>value</replaceable>\n" -" <replaceable>key2</replaceable> = <replaceable>value2,value3</replaceable>\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:24 -msgid "" -"The file has an ini-style syntax and consists of sections and parameters. A " -"section begins with the name of the section in square brackets and continues " -"until the next section begins. An example of section with single and multi-" -"valued parameters: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:36 -msgid "" -"The data types used are string (no quotes needed), integer and bool (with " -"values of <quote>TRUE/FALSE</quote>)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:41 -msgid "" -"A line comment starts with a hash sign (<quote>#</quote>) or a semicolon " -"(<quote>;</quote>)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:46 -msgid "" -"All sections can have an optional <replaceable>description</replaceable> " -"parameter. Its function is only as a label for the section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:52 -msgid "" -"<filename>sssd.conf</filename> must be a regular file, owned by root and " -"only root may read from or write to the file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:58 -msgid "SPECIAL SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:61 -msgid "The [sssd] section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><title> -#: sssd.conf.5.xml:70 sssd.conf.5.xml:1177 -msgid "Section parameters" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:72 -msgid "config_file_version (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:75 -msgid "" -"Indicates what is the syntax of the config file. SSSD 0.6.0 and later use " -"version 2." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:81 -msgid "services" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:84 -msgid "" -"Comma separated list of services that are started when sssd itself starts." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:88 -msgid "" -"Supported services: nss, pam <phrase condition=\"with_sudo\">, sudo</phrase>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:94 sssd.conf.5.xml:257 -msgid "reconnection_retries (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:97 sssd.conf.5.xml:260 -msgid "" -"Number of times services should attempt to reconnect in the event of a Data " -"Provider crash or restart before they give up" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:102 sssd.conf.5.xml:265 -msgid "Default: 3" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:107 -msgid "domains" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:110 -msgid "" -"A domain is a database containing user information. SSSD can use more " -"domains at the same time, but at least one must be configured or SSSD won't " -"start. This parameter described the list of domains in the order you want " -"them to be queried." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:120 -msgid "re_expression (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:123 -msgid "" -"Regular expression that describes how to parse the string containing user " -"name and domain into these components." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:127 -msgid "" -"Default: <quote>(?P<name>[^@]+)@?(?P<domain>[^@]*$)</quote> " -"which translates to \"the name is everything up to the <quote>@</quote> " -"sign, the domain everything after that\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:132 -msgid "" -"PLEASE NOTE: the support for non-unique named subpatterns is not available " -"on all platforms (e.g. RHEL5 and SLES10). Only platforms with libpcre " -"version 7 or higher can support non-unique named subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:139 -msgid "" -"PLEASE NOTE ALSO: older version of libpcre only support the Python syntax (?" -"P<name>) to label subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:146 -msgid "full_name_format (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:149 -msgid "" -"A <citerefentry> <refentrytitle>printf</refentrytitle> <manvolnum>3</" -"manvolnum> </citerefentry>-compatible format that describes how to translate " -"a (name, domain) tuple into a fully qualified name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:157 -msgid "Default: <quote>%1$s@%2$s</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:162 -msgid "try_inotify (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:165 -msgid "" -"SSSD monitors the state of resolv.conf to identify when it needs to update " -"its internal DNS resolver. By default, we will attempt to use inotify for " -"this, and will fall back to polling resolv.conf every five seconds if " -"inotify cannot be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:173 -msgid "" -"There are some limited situations where it is preferred that we should skip " -"even trying to use inotify. In these rare cases, this option should be set " -"to 'false'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:179 -msgid "" -"Default: true on platforms where inotify is supported. False on other " -"platforms." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:183 -msgid "" -"Note: this option will have no effect on platforms where inotify is " -"unavailable. On these platforms, polling will always be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:190 -msgid "krb5_rcache_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:193 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:197 -msgid "" -"This option accepts a special value __LIBKRB5_DEFAULTS__ that will instruct " -"SSSD to let libkrb5 decide the appropriate location for the replay cache." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:203 -msgid "" -"Default: Distribution-specific and specified at build-time. " -"(__LIBKRB5_DEFAULTS__ if not configured)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:63 -msgid "" -"Individual pieces of SSSD functionality are provided by special SSSD " -"services that are started and stopped together with SSSD. The services are " -"managed by a special service frequently called <quote>monitor</quote>. The " -"<quote>[sssd]</quote> section is used to configure the monitor as well as " -"some other important options like the identity domains. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:216 -msgid "SERVICES SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:218 -msgid "" -"Settings that can be used to configure different services are described in " -"this section. They should reside in the [<replaceable>$NAME</replaceable>] " -"section, for example, for NSS service, the section would be <quote>[nss]</" -"quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:225 -msgid "General service configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:227 -msgid "These options can be used to configure any service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:231 -msgid "debug_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:235 -msgid "debug_timestamps (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:238 -msgid "Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:241 sssd.conf.5.xml:376 sssd-ldap.5.xml:1328 -#: sssd-ldap.5.xml:1446 sssd-ipa.5.xml:206 sssd-ipa.5.xml:241 -msgid "Default: true" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:246 -msgid "debug_microseconds (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:249 -msgid "Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:252 sssd.conf.5.xml:641 sssd-ldap.5.xml:602 -#: sssd-ldap.5.xml:1260 sssd-ldap.5.xml:1397 sssd-ldap.5.xml:1795 -#: sssd-ipa.5.xml:123 sssd-ipa.5.xml:301 sssd-krb5.5.xml:235 -#: sssd-krb5.5.xml:269 sssd-krb5.5.xml:418 -msgid "Default: false" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:270 -msgid "command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:273 -msgid "" -"By default, the executable representing this service is called <command>sssd_" -"${service_name}</command>. This directive allows to change the executable " -"name for the service. In the vast majority of configurations, the default " -"values should suffice." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:281 -msgid "Default: <command>sssd_${service_name}</command>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:289 -msgid "NSS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:291 -msgid "" -"These options can be used to configure the Name Service Switch (NSS) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:296 -msgid "enum_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:299 -msgid "" -"How many seconds should nss_sss cache enumerations (requests for info about " -"all users)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:303 -msgid "Default: 120" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:308 -msgid "entry_cache_nowait_percentage (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:311 -msgid "" -"The entry cache can be set to automatically update entries in the background " -"if they are requested beyond a percentage of the entry_cache_timeout value " -"for the domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:317 -msgid "" -"For example, if the domain's entry_cache_timeout is set to 30s and " -"entry_cache_nowait_percentage is set to 50 (percent), entries that come in " -"after 15 seconds past the last cache update will be returned immediately, " -"but the SSSD will go and update the cache on its own, so that future " -"requests will not need to block waiting for a cache update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:327 -msgid "" -"Valid values for this option are 0-99 and represent a percentage of the " -"entry_cache_timeout for each domain. For performance reasons, this " -"percentage will never reduce the nowait timeout to less than 10 seconds. (0 " -"disables this feature)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:335 -msgid "Default: 50" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:340 -msgid "entry_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:343 -msgid "" -"Specifies for how many seconds nss_sss should cache negative cache hits " -"(that is, queries for invalid database entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:349 sssd.conf.5.xml:669 sssd-krb5.5.xml:223 -msgid "Default: 15" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:354 -msgid "filter_users, filter_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:357 -msgid "" -"Exclude certain users from being fetched from the sss NSS database. This is " -"particularly useful for system accounts. This option can also be set per-" -"domain or include fully-qualified names to filter only users from the " -"particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:364 -msgid "Default: root" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:369 -msgid "filter_users_in_groups (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:372 -msgid "" -"If you want filtered user still be group members set this option to false." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:381 -msgid "override_homedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:390 sssd-krb5.5.xml:166 -msgid "%u" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:391 sssd-krb5.5.xml:167 -msgid "login name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:394 sssd-krb5.5.xml:170 -msgid "%U" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:395 -msgid "UID number" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:398 sssd-krb5.5.xml:188 -msgid "%d" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:399 -msgid "domain name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:402 -msgid "%f" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:403 -msgid "fully qualified user name (user@domain)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:406 sssd-krb5.5.xml:200 -msgid "%%" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:407 sssd-krb5.5.xml:201 -msgid "a literal '%'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:384 -msgid "" -"Override the user's home directory. You can either provide an absolute value " -"or a template. In the template, the following sequences are substituted: " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:413 -msgid "This option can also be set per-domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:418 -msgid "allowed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:421 -msgid "" -"Restrict user shell to one of the listed values. The order of evaluation is:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:424 -msgid "1. If the shell is present in <quote>/etc/shells</quote>, it is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:428 -msgid "" -"2. If the shell is in the allowed_shells list but not in <quote>/etc/shells</" -"quote>, use the value of the shell_fallback parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:433 -msgid "" -"3. If the shell is not in the allowed_shells list and not in <quote>/etc/" -"shells</quote>, a nologin shell is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:438 -msgid "An empty string for shell is passed as-is to libc." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:441 -msgid "" -"The <quote>/etc/shells</quote> is only read on SSSD start up, which means " -"that a restart of the SSSD is required in case a new shell is installed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:445 -msgid "Default: Not set. The user shell is automatically used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:450 -msgid "vetoed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:453 -msgid "Replace any instance of these shells with the shell_fallback" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:458 -msgid "shell_fallback (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:461 -msgid "" -"The default shell to use if an allowed shell is not installed on the machine." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:465 -msgid "Default: /bin/sh" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:472 -msgid "PAM configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:474 -msgid "" -"These options can be used to configure the Pluggable Authentication Module " -"(PAM) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:479 -msgid "offline_credentials_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:482 -msgid "" -"If the authentication provider is offline, how long should we allow cached " -"logins (in days since the last successful online login)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:487 sssd.conf.5.xml:500 -msgid "Default: 0 (No limit)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:493 -msgid "offline_failed_login_attempts (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:496 -msgid "" -"If the authentication provider is offline, how many failed login attempts " -"are allowed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:506 -msgid "offline_failed_login_delay (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:509 -msgid "" -"The time in minutes which has to pass after offline_failed_login_attempts " -"has been reached before a new login attempt is possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:514 -msgid "" -"If set to 0 the user cannot authenticate offline if " -"offline_failed_login_attempts has been reached. Only a successful online " -"authentication can enable offline authentication again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:520 sssd.conf.5.xml:573 sssd.conf.5.xml:1093 -msgid "Default: 5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:526 -msgid "pam_verbosity (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:529 -msgid "" -"Controls what kind of messages are shown to the user during authentication. " -"The higher the number to more messages are displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:534 -msgid "Currently sssd supports the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:537 -msgid "<emphasis>0</emphasis>: do not show any message" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:540 -msgid "<emphasis>1</emphasis>: show only important messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:544 -msgid "<emphasis>2</emphasis>: show informational messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:547 -msgid "<emphasis>3</emphasis>: show all messages and debug information" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:551 sssd.8.xml:63 -msgid "Default: 1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:556 -msgid "pam_id_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:559 -msgid "" -"For any PAM request while SSSD is online, the SSSD will attempt to " -"immediately update the cached identity information for the user in order to " -"ensure that authentication takes place with the latest information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:565 -msgid "" -"A complete PAM conversation may perform multiple PAM requests, such as " -"account management and session opening. This option controls (on a per-" -"client-application basis) how long (in seconds) we can cache the identity " -"information to avoid excessive round-trips to the identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:579 -msgid "pam_pwd_expiration_warning (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:582 -msgid "Display a warning N days before the password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:585 -msgid "" -"Please note that the backend server has to provide information about the " -"expiration time of the password. If this information is missing, sssd " -"cannot display a warning." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:591 -msgid "Default: 7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:599 -msgid "SUDO configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:601 -msgid "These options can be used to configure the sudo service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:608 -msgid "sudo_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:611 -msgid "" -"For any sudo request that comes while SSSD is online, the SSSD will attempt " -"to update the cached rules in order to ensure that sudo has the latest " -"ruleset." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:617 -msgid "" -"The user may, however, run a couple of sudo commands successively, which " -"would trigger multiple LDAP requests. In order to speed up this use-case, " -"the sudo service maintains an in-memory cache that would be used for " -"performing fast replies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:624 -msgid "" -"This option controls how long (in seconds) can the sudo service cache rules " -"for a user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:628 -msgid "Default: 180" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:633 -msgid "sudo_timed (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:636 -msgid "" -"Whether or not to evaluate the sudoNotBefore and sudoNotAfter attributes " -"that implement time-dependent sudoers entries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:649 -msgid "AUTOFS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:651 -msgid "These options can be used to configure the autofs service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:659 -msgid "autofs_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:662 -msgid "" -"Specifies for how many seconds should the autofs responder negative cache " -"hits (that is, queries for invalid map entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:679 -msgid "DOMAIN SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:686 -msgid "min_id,max_id (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:689 -msgid "" -"UID and GID limits for the domain. If a domain contains an entry that is " -"outside these limits, it is ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:694 -msgid "" -"For users, this affects the primary GID limit. The user will not be returned " -"to NSS if either the UID or the primary GID is outside the range. For non-" -"primary group memberships, those that are in range will be reported as " -"expected." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:701 -msgid "Default: 1 for min_id, 0 (no limit) for max_id" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:707 -msgid "timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:710 -msgid "" -"Timeout in seconds between heartbeats for this domain. This is used to " -"ensure that the backend process is alive and capable of answering requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:715 sssd-ldap.5.xml:1131 -msgid "Default: 10" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:721 -msgid "enumerate (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:724 -msgid "" -"Determines if a domain can be enumerated. This parameter can have one of the " -"following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:728 -msgid "TRUE = Users and groups are enumerated" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:731 -msgid "FALSE = No enumerations for this domain" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:734 sssd.conf.5.xml:839 sssd.conf.5.xml:893 -msgid "Default: FALSE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:737 -msgid "" -"Note: Enabling enumeration has a moderate performance impact on SSSD while " -"enumeration is running. It may take up to several minutes after SSSD startup " -"to fully complete enumerations. During this time, individual requests for " -"information will go directly to LDAP, though it may be slow, due to the " -"heavy enumeration processing." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:747 -msgid "" -"While the first enumeration is running, requests for the complete user or " -"group lists may return no results until it completes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:752 -msgid "" -"Further, enabling enumeration may increase the time necessary to detect " -"network disconnection, as longer timeouts are required to ensure that " -"enumeration lookups are completed successfully. For more information, refer " -"to the man pages for the specific id_provider in use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:763 -msgid "entry_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:766 -msgid "" -"How many seconds should nss_sss consider entries valid before asking the " -"backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:770 -msgid "Default: 5400" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:776 -msgid "entry_cache_user_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:779 -msgid "" -"How many seconds should nss_sss consider user entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:783 sssd.conf.5.xml:796 sssd.conf.5.xml:809 -#: sssd.conf.5.xml:822 -msgid "Default: entry_cache_timeout" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:789 -msgid "entry_cache_group_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:792 -msgid "" -"How many seconds should nss_sss consider group entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:802 -msgid "entry_cache_netgroup_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:805 -msgid "" -"How many seconds should nss_sss consider netgroup entries valid before " -"asking the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:815 -msgid "entry_cache_service_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:818 -msgid "" -"How many seconds should nss_sss consider service entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:828 -msgid "cache_credentials (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:831 -msgid "Determines if user credentials are also cached in the local LDB cache" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:835 -msgid "User credentials are stored in a SHA512 hash, not in plaintext" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:844 -msgid "account_cache_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:847 -msgid "" -"Number of days entries are left in cache after last successful login before " -"being removed during a cleanup of the cache. 0 means keep forever. The " -"value of this parameter must be greater than or equal to " -"offline_credentials_expiration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:854 -msgid "Default: 0 (unlimited)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:860 -msgid "id_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:863 -msgid "The Data Provider identity backend to use for this domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:867 -msgid "Supported backends:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:870 -msgid "proxy: Support a legacy NSS provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:873 -msgid "local: SSSD internal local provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:876 -msgid "ldap: LDAP provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:882 -msgid "use_fully_qualified_names (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:885 -msgid "" -"If set to TRUE, all requests to this domain must use fully qualified names. " -"For example, if used in LOCAL domain that contains a \"test\" user, " -"<command>getent passwd test</command> wouldn't find the user while " -"<command>getent passwd test@LOCAL</command> would." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:898 -msgid "auth_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:901 -msgid "" -"The authentication provider used for the domain. Supported auth providers " -"are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:905 -msgid "" -"<quote>ldap</quote> for native LDAP authentication. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:912 -msgid "" -"<quote>krb5</quote> for Kerberos authentication. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:919 -msgid "" -"<quote>proxy</quote> for relaying authentication to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:922 -msgid "<quote>none</quote> disables authentication explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:925 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"authentication requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:931 -msgid "access_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:934 -msgid "" -"The access control provider used for the domain. There are two built-in " -"access providers (in addition to any included in installed backends) " -"Internal special providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:940 -msgid "<quote>permit</quote> always allow access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:943 -msgid "<quote>deny</quote> always deny access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:946 -msgid "" -"<quote>simple</quote> access control based on access or deny lists. See " -"<citerefentry> <refentrytitle>sssd-simple</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry> for more information on configuring the simple " -"access module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:953 -msgid "Default: <quote>permit</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:958 -msgid "chpass_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:961 -msgid "" -"The provider which should handle change password operations for the domain. " -"Supported change password providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:966 -msgid "" -"<quote>ipa</quote> to change a password stored in an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:974 -msgid "" -"<quote>ldap</quote> to change a password stored in a LDAP server. See " -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:982 -msgid "" -"<quote>krb5</quote> to change the Kerberos password. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:990 -msgid "" -"<quote>proxy</quote> for relaying password changes to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:994 -msgid "<quote>none</quote> disallows password changes explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:997 -msgid "" -"Default: <quote>auth_provider</quote> is used if it is set and can handle " -"change password requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1004 -msgid "sudo_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1010 -msgid "The SUDO provider used for the domain. Supported SUDO providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1014 -msgid "" -"<quote>ldap</quote> for rules stored in LDAP. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1021 -msgid "<quote>none</quote> disables SUDO explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1024 -msgid "Default: The value of <quote>id_provider</quote> is used if it is set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1030 -msgid "session_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1033 -msgid "" -"The provider which should handle loading of session settings. Supported " -"session providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1038 -msgid "" -"<quote>ipa</quote> to load session settings from an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1046 -msgid "<quote>none</quote> disallows fetching session settings explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1049 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"session loading requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1056 -msgid "lookup_family_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1059 -msgid "" -"Provides the ability to select preferred address family to use when " -"performing DNS lookups." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1063 -msgid "Supported values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1066 -msgid "ipv4_first: Try looking up IPv4 address, if that fails, try IPv6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1069 -msgid "ipv4_only: Only attempt to resolve hostnames to IPv4 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1072 -msgid "ipv6_first: Try looking up IPv6 address, if that fails, try IPv4" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1075 -msgid "ipv6_only: Only attempt to resolve hostnames to IPv6 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1078 -msgid "Default: ipv4_first" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1084 -msgid "dns_resolver_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1087 -msgid "" -"Defines the amount of time (in seconds) to wait for a reply from the DNS " -"resolver before assuming that it is unreachable. If this timeout is reached, " -"the domain will continue to operate in offline mode." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1099 -msgid "dns_discovery_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1102 -msgid "" -"If service discovery is used in the back end, specifies the domain part of " -"the service discovery DNS query." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1106 -msgid "Default: Use the domain part of machine's hostname" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1112 -msgid "override_gid (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1115 -msgid "Override the primary GID value with the one specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1121 -msgid "case_sensitive (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1124 -msgid "" -"Treat user and group names as case sensitive. At the moment, this option is " -"not supported in the local provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1129 -msgid "Default: True" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:681 -msgid "" -"These configuration options can be present in a domain configuration " -"section, that is, in a section called <quote>[domain/<replaceable>NAME</" -"replaceable>]</quote> <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1141 -msgid "proxy_pam_target (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1144 -msgid "The proxy target PAM proxies to." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1147 -msgid "" -"Default: not set by default, you have to take an existing pam configuration " -"or create a new one and add the service name here." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1155 -msgid "proxy_lib_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1158 -msgid "" -"The name of the NSS library to use in proxy domains. The NSS functions " -"searched for in the library are in the form of _nss_$(libName)_$(function), " -"for example _nss_files_getpwent." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1137 -msgid "" -"Options valid for proxy domains. <placeholder type=\"variablelist\" id=" -"\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:1170 -msgid "The local domain section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:1172 -msgid "" -"This section contains settings for domain that stores users and groups in " -"SSSD native database, that is, a domain that uses " -"<replaceable>id_provider=local</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1179 -msgid "default_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1182 -msgid "The default shell for users created with SSSD userspace tools." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1186 -msgid "Default: <filename>/bin/bash</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1191 -msgid "base_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1194 -msgid "" -"The tools append the login name to <replaceable>base_directory</replaceable> " -"and use that as the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1199 -msgid "Default: <filename>/home</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1204 -msgid "create_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1207 -msgid "" -"Indicate if a home directory should be created by default for new users. " -"Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1211 sssd.conf.5.xml:1223 -msgid "Default: TRUE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1216 -msgid "remove_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1219 -msgid "" -"Indicate if a home directory should be removed by default for deleted " -"users. Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1228 -msgid "homedir_umask (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1231 -msgid "" -"Used by <citerefentry> <refentrytitle>sss_useradd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry> to specify the default permissions " -"on a newly created home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1239 -msgid "Default: 077" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1244 -msgid "skel_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1247 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<citerefentry> <refentrytitle>sss_useradd</refentrytitle> <manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1257 -msgid "Default: <filename>/etc/skel</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1262 -msgid "mail_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1265 -msgid "" -"The mail spool directory. This is needed to manipulate the mailbox when its " -"corresponding user account is modified or deleted. If not specified, a " -"default value is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1272 -msgid "Default: <filename>/var/mail</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1277 -msgid "userdel_cmd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1280 -msgid "" -"The command that is run after a user is removed. The command us passed the " -"username of the user being removed as the first and only parameter. The " -"return code of the command is not taken into account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1286 -msgid "Default: None, no command is run" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:1296 sssd-ldap.5.xml:2064 sssd-simple.5.xml:126 -#: sssd-ipa.5.xml:544 sssd-krb5.5.xml:432 -msgid "EXAMPLE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:1302 -#, no-wrap -msgid "" -"[sssd]\n" -"domains = LDAP\n" -"services = nss, pam\n" -"config_file_version = 2\n" -"\n" -"[nss]\n" -"filter_groups = root\n" -"filter_users = root\n" -"\n" -"[pam]\n" -"\n" -"[domain/LDAP]\n" -"id_provider = ldap\n" -"ldap_uri = ldap://ldap.example.com\n" -"ldap_search_base = dc=example,dc=com\n" -"\n" -"auth_provider = krb5\n" -"krb5_server = kerberos.example.com\n" -"krb5_realm = EXAMPLE.COM\n" -"cache_credentials = true\n" -"\n" -"min_id = 10000\n" -"max_id = 20000\n" -"enumerate = False\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1298 -msgid "" -"The following example shows a typical SSSD config. It does not describe " -"configuration of the domains themselves - refer to documentation on " -"configuring domains for more details. <placeholder type=\"programlisting\" " -"id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1333 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>pam_sss</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ldap.5.xml:10 sssd-ldap.5.xml:16 -msgid "sssd-ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:23 -msgid "" -"This manual page describes the configuration of LDAP domains for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. Refer to the <quote>FILE FORMAT</quote> section of the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for detailed syntax information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:35 -msgid "You can configure SSSD to use more than one LDAP domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:38 -msgid "" -"LDAP back end supports id, auth, access and chpass providers. If you want to " -"authenticate against an LDAP server either TLS/SSL or LDAPS is required. " -"<command>sssd</command> <emphasis>does not</emphasis> support authentication " -"over an unencrypted channel. If the LDAP server is used only as an identity " -"provider, an encrypted channel is not needed. Please refer to " -"<quote>ldap_access_filter</quote> config option for more information about " -"using LDAP as an access provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:49 sssd-simple.5.xml:69 sssd-ipa.5.xml:64 -#: sssd-krb5.5.xml:63 -msgid "CONFIGURATION OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:60 -msgid "ldap_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:63 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference. Refer to the <quote>FAILOVER</" -"quote> section for more information on failover and server redundancy. If " -"not specified, service discovery is enabled. For more information, refer to " -"the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:70 -msgid "The format of the URI must match the format defined in RFC 2732:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:73 -msgid "ldap[s]://<host>[:port]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:76 -msgid "" -"For explicit IPv6 addresses, <host> must be enclosed in brackets []" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:79 -msgid "example: ldap://[fc00::126:25]:389" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:85 -msgid "ldap_chpass_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:88 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference to change the password of a user. " -"Refer to the <quote>FAILOVER</quote> section for more information on " -"failover and server redundancy." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:95 -msgid "To enable service discovery ldap_chpass_dns_service_name must be set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:99 -msgid "Default: empty, i.e. ldap_uri is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:105 -msgid "ldap_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:108 -msgid "The default base DN to use for performing LDAP user operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:112 -msgid "" -"Starting with SSSD 1.7.0, SSSD supports multiple search bases using the " -"syntax:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:116 -msgid "search_base[?scope?[filter][?search_base?scope?[filter]]*]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:119 -msgid "The scope can be one of \"base\", \"onelevel\" or \"subtree\"." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:122 -msgid "" -"The filter must be a valid LDAP search filter as specified by http://www." -"ietf.org/rfc/rfc2254.txt" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:126 -msgid "Examples:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:129 -msgid "" -"ldap_search_base = dc=example,dc=com (which is equivalent to) " -"ldap_search_base = dc=example,dc=com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:134 -msgid "" -"ldap_search_base = cn=host_specific,dc=example,dc=com?subtree?" -"(host=thishost)?dc=example.com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:137 -msgid "" -"Note: It is unsupported to have multiple search bases which reference " -"identically-named objects (for example, groups with the same name in two " -"different search bases). This will lead to unpredictable behavior on client " -"machines." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:144 -msgid "" -"Default: If not set, the value of the defaultNamingContext or namingContexts " -"attribute from the RootDSE of the LDAP server is used. If " -"defaultNamingContext does not exists or has an empty value namingContexts is " -"used. The namingContexts attribute must have a single value with the DN of " -"the search base of the LDAP server to make this work. Multiple values are " -"are not supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:158 -msgid "ldap_schema (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:161 -msgid "" -"Specifies the Schema Type in use on the target LDAP server. Depending on " -"the selected schema, the default attribute names retrieved from the servers " -"may vary. The way that some attributes are handled may also differ. Three " -"schema types are currently supported: rfc2307 rfc2307bis IPA The main " -"difference between these schema types is how group memberships are recorded " -"in the server. With rfc2307, group members are listed by name in the " -"<emphasis>memberUid</emphasis> attribute. With rfc2307bis and IPA, group " -"members are listed by DN and stored in the <emphasis>member</emphasis> " -"attribute." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:180 -msgid "Default: rfc2307" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:186 -msgid "ldap_default_bind_dn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:189 -msgid "The default bind DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:196 -msgid "ldap_default_authtok_type (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:199 -msgid "The type of the authentication token of the default bind DN." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:203 -msgid "The two mechanisms currently supported are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:206 -msgid "password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:209 -msgid "obfuscated_password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:212 -msgid "Default: password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:218 -msgid "ldap_default_authtok (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:221 -msgid "" -"The authentication token of the default bind DN. Only clear text passwords " -"are currently supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:228 -msgid "ldap_user_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:231 -msgid "The object class of a user entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:234 -msgid "Default: posixAccount" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:240 -msgid "ldap_user_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:243 -msgid "The LDAP attribute that corresponds to the user's login name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:247 -msgid "Default: uid" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:253 -msgid "ldap_user_uid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:256 -msgid "The LDAP attribute that corresponds to the user's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:260 -msgid "Default: uidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:266 -msgid "ldap_user_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:269 -msgid "The LDAP attribute that corresponds to the user's primary group id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:273 sssd-ldap.5.xml:740 -msgid "Default: gidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:279 -msgid "ldap_user_gecos (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:282 -msgid "The LDAP attribute that corresponds to the user's gecos field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:286 -msgid "Default: gecos" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:292 -msgid "ldap_user_home_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:295 -msgid "The LDAP attribute that contains the name of the user's home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:299 -msgid "Default: homeDirectory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:305 -msgid "ldap_user_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:308 -msgid "The LDAP attribute that contains the path to the user's default shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:312 -msgid "Default: loginShell" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:318 -msgid "ldap_user_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:321 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP user object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:325 sssd-ldap.5.xml:766 sssd-ldap.5.xml:878 -msgid "Default: nsUniqueId" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:331 -msgid "ldap_user_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:334 sssd-ldap.5.xml:775 sssd-ldap.5.xml:887 -msgid "" -"The LDAP attribute that contains timestamp of the last modification of the " -"parent object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:338 sssd-ldap.5.xml:779 sssd-ldap.5.xml:894 -msgid "Default: modifyTimestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:344 -msgid "ldap_user_shadow_last_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:347 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (date of " -"the last password change)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:357 -msgid "Default: shadowLastChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:363 -msgid "ldap_user_shadow_min (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:366 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (minimum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:375 -msgid "Default: shadowMin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:381 -msgid "ldap_user_shadow_max (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:384 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (maximum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:393 -msgid "Default: shadowMax" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:399 -msgid "ldap_user_shadow_warning (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:402 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password warning period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:412 -msgid "Default: shadowWarning" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:418 -msgid "ldap_user_shadow_inactive (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:421 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password inactivity period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:431 -msgid "Default: shadowInactive" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:437 -msgid "ldap_user_shadow_expire (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:440 -msgid "" -"When using ldap_pwd_policy=shadow or ldap_account_expire_policy=shadow, this " -"parameter contains the name of an LDAP attribute corresponding to its " -"<citerefentry> <refentrytitle>shadow</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> counterpart (account expiration date)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:450 -msgid "Default: shadowExpire" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:456 -msgid "ldap_user_krb_last_pwd_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:459 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time of last password change in " -"kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:465 -msgid "Default: krbLastPwdChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:471 -msgid "ldap_user_krb_password_expiration (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:474 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time when current password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:480 -msgid "Default: krbPasswordExpiration" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:486 -msgid "ldap_user_ad_account_expires (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:489 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the expiration time of the account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:494 -msgid "Default: accountExpires" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:500 -msgid "ldap_user_ad_user_account_control (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:503 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the user account control bit field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:508 -msgid "Default: userAccountControl" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:514 -msgid "ldap_ns_account_lock (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:517 -msgid "" -"When using ldap_account_expire_policy=rhds or equivalent, this parameter " -"determines if access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:522 -msgid "Default: nsAccountLock" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:528 -msgid "ldap_user_nds_login_disabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:531 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines if " -"access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:535 sssd-ldap.5.xml:549 -msgid "Default: loginDisabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:541 -msgid "ldap_user_nds_login_expiration_time (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:544 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines until " -"which date access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:555 -msgid "ldap_user_nds_login_allowed_time_map (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:558 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines the " -"hours of a day in a week when access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:563 -msgid "Default: loginAllowedTimeMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:569 -msgid "ldap_user_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:572 -msgid "" -"The LDAP attribute that contains the user's Kerberos User Principal Name " -"(UPN)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:576 -msgid "Default: krbPrincipalName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:582 -msgid "ldap_user_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:585 -msgid "The LDAP attribute that contains the user's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:592 -msgid "ldap_force_upper_case_realm (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:595 -msgid "" -"Some directory servers, for example Active Directory, might deliver the " -"realm part of the UPN in lower case, which might cause the authentication to " -"fail. Set this option to a non-zero value if you want to use an upper-case " -"realm." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:608 -msgid "ldap_enumeration_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:611 -msgid "" -"Specifies how many seconds SSSD has to wait before refreshing its cache of " -"enumerated records." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:616 sssd-ldap.5.xml:1808 -msgid "Default: 300" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:622 -msgid "ldap_purge_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:625 -msgid "" -"Determine how often to check the cache for inactive entries (such as groups " -"with no members and users who have never logged in) and remove them to save " -"space." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:631 -msgid "Setting this option to zero will disable the cache cleanup operation." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:635 -msgid "Default: 10800 (12 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:641 -msgid "ldap_user_fullname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:644 -msgid "The LDAP attribute that corresponds to the user's full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:648 sssd-ldap.5.xml:727 sssd-ldap.5.xml:828 -#: sssd-ldap.5.xml:919 sssd-ldap.5.xml:1663 sssd-ldap.5.xml:1881 -#: sssd-ipa.5.xml:422 -msgid "Default: cn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:654 -msgid "ldap_user_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:657 -msgid "The LDAP attribute that lists the user's group memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:661 sssd-ipa.5.xml:326 -msgid "Default: memberOf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:667 -msgid "ldap_user_authorized_service (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:670 -msgid "" -"If access_provider=ldap and ldap_access_order=authorized_service, SSSD will " -"use the presence of the authorizedService attribute in the user's LDAP entry " -"to determine access privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:677 -msgid "" -"An explicit deny (!svc) is resolved first. Second, SSSD searches for " -"explicit allow (svc) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:682 -msgid "Default: authorizedService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:688 -msgid "ldap_user_authorized_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:691 -msgid "" -"If access_provider=ldap and ldap_access_order=host, SSSD will use the " -"presence of the host attribute in the user's LDAP entry to determine access " -"privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:697 -msgid "" -"An explicit deny (!host) is resolved first. Second, SSSD searches for " -"explicit allow (host) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:702 -msgid "Default: host" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:708 -msgid "ldap_group_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:711 -msgid "The object class of a group entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:714 -msgid "Default: posixGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:720 -msgid "ldap_group_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:723 -msgid "The LDAP attribute that corresponds to the group name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:733 -msgid "ldap_group_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:736 -msgid "The LDAP attribute that corresponds to the group's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:746 -msgid "ldap_group_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:749 -msgid "The LDAP attribute that contains the names of the group's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:753 -msgid "Default: memberuid (rfc2307) / member (rfc2307bis)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:759 -msgid "ldap_group_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:762 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP group object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:772 -msgid "ldap_group_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:785 -msgid "ldap_group_nesting_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:788 -msgid "" -"If ldap_schema is set to a schema format that supports nested groups (e.g. " -"RFC2307bis), then this option controls how many levels of nesting SSSD will " -"follow. This option has no effect on the RFC2307 schema." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:795 -msgid "Default: 2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:801 -msgid "ldap_netgroup_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:804 -msgid "The object class of a netgroup entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:807 -msgid "In IPA provider, ipa_netgroup_object_class should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:811 -msgid "Default: nisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:817 -msgid "ldap_netgroup_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:820 -msgid "The LDAP attribute that corresponds to the netgroup name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:824 -msgid "In IPA provider, ipa_netgroup_name should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:834 -msgid "ldap_netgroup_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:837 -msgid "The LDAP attribute that contains the names of the netgroup's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:841 -msgid "In IPA provider, ipa_netgroup_member should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:845 -msgid "Default: memberNisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:851 -msgid "ldap_netgroup_triple (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:854 -msgid "" -"The LDAP attribute that contains the (host, user, domain) netgroup triples." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:858 sssd-ldap.5.xml:891 -msgid "This option is not available in IPA provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:861 -msgid "Default: nisNetgroupTriple" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:867 -msgid "ldap_netgroup_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:870 -msgid "" -"The LDAP attribute that contains the UUID/GUID of an LDAP netgroup object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:874 -msgid "In IPA provider, ipa_netgroup_uuid should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:884 -msgid "ldap_netgroup_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:900 -msgid "ldap_service_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:903 -msgid "The object class of a service entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:906 -msgid "Default: ipService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:912 -msgid "ldap_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:915 -msgid "" -"The LDAP attribute that contains the name of service attributes and their " -"aliases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:925 -msgid "ldap_service_port (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:928 -msgid "The LDAP attribute that contains the port managed by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:932 -msgid "Default: ipServicePort" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:938 -msgid "ldap_service_proto (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:941 -msgid "" -"The LDAP attribute that contains the protocols understood by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:945 -msgid "Default: ipServiceProtocol" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:951 -msgid "ldap_service_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:954 -msgid "An optional base DN to restrict service searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:958 sssd-ldap.5.xml:1918 sssd-ldap.5.xml:1937 -#: sssd-ldap.5.xml:1956 sssd-ldap.5.xml:2019 sssd-ldap.5.xml:2041 -#: sssd-ipa.5.xml:163 sssd-ipa.5.xml:187 -msgid "" -"See <quote>ldap_search_base</quote> for information about configuring " -"multiple search bases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:963 sssd-ldap.5.xml:1923 sssd-ldap.5.xml:1942 -#: sssd-ldap.5.xml:1961 sssd-ldap.5.xml:2024 sssd-ldap.5.xml:2046 -#: sssd-ipa.5.xml:173 sssd-ipa.5.xml:192 -msgid "Default: the value of <emphasis>ldap_search_base</emphasis>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:970 -msgid "ldap_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:973 -msgid "" -"Specifies the timeout (in seconds) that ldap searches are allowed to run " -"before they are cancelled and cached results are returned (and offline mode " -"is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:979 -msgid "" -"Note: this option is subject to change in future versions of the SSSD. It " -"will likely be replaced at some point by a series of timeouts for specific " -"lookup types." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:985 sssd-ldap.5.xml:1027 sssd-ldap.5.xml:1042 -msgid "Default: 6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:991 -msgid "ldap_enumeration_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:994 -msgid "" -"Specifies the timeout (in seconds) that ldap searches for user and group " -"enumerations are allowed to run before they are cancelled and cached results " -"are returned (and offline mode is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1001 -msgid "Default: 60" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1007 -msgid "ldap_network_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1010 -msgid "" -"Specifies the timeout (in seconds) after which the <citerefentry> " -"<refentrytitle>poll</refentrytitle> <manvolnum>2</manvolnum> </citerefentry>/" -"<citerefentry> <refentrytitle>select</refentrytitle> <manvolnum>2</" -"manvolnum> </citerefentry> following a <citerefentry> " -"<refentrytitle>connect</refentrytitle> <manvolnum>2</manvolnum> </" -"citerefentry> returns in case of no activity." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1033 -msgid "ldap_opt_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1036 -msgid "" -"Specifies a timeout (in seconds) after which calls to synchronous LDAP APIs " -"will abort if no response is received. Also controls the timeout when " -"communicating with the KDC in case of SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1048 -msgid "ldap_connection_expire_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1051 -msgid "" -"Specifies a timeout (in seconds) that a connection to an LDAP server will be " -"maintained. After this time, the connection will be re-established. If used " -"in parallel with SASL/GSSAPI, the sooner of the two values (this value vs. " -"the TGT lifetime) will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1059 -msgid "Default: 900 (15 minutes)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1065 -msgid "ldap_page_size (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1068 -msgid "" -"Specify the number of records to retrieve from LDAP in a single request. " -"Some LDAP servers enforce a maximum limit per-request." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1073 -msgid "Default: 1000" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1079 -msgid "ldap_disable_paging" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1082 -msgid "" -"Disable the LDAP paging control. This option should be used if the LDAP " -"server reports that it supports the LDAP paging control in its RootDSE but " -"it is not enabled or does not behave properly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1088 -msgid "" -"Example: OpenLDAP servers with the paging control module installed on the " -"server but not enabled will report it in the RootDSE but be unable to use it." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1094 -msgid "" -"Example: 389 DS has a bug where it can only support a one paging control at " -"a time on a single connection. On busy clients, this can result in some " -"requests being denied." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1103 -msgid "ldap_deref_threshold (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1106 -msgid "" -"Specify the number of group members that must be missing from the internal " -"cache in order to trigger a dereference lookup. If less members are missing, " -"they are looked up individually." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1112 -msgid "" -"You can turn off dereference lookups completely by setting the value to 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1116 -msgid "" -"A dereference lookup is a means of fetching all group members in a single " -"LDAP call. Different LDAP servers may implement different dereference " -"methods. The currently supported servers are 389/RHDS, OpenLDAP and Active " -"Directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1124 -msgid "" -"<emphasis>Note:</emphasis> If any of the search bases specifies a search " -"filter, then the dereference lookup performance enhancement will be disabled " -"regardless of this setting." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1137 -msgid "ldap_tls_reqcert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1140 -msgid "" -"Specifies what checks to perform on server certificates in a TLS session, if " -"any. It can be specified as one of the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1146 -msgid "" -"<emphasis>never</emphasis> = The client will not request or check any server " -"certificate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1150 -msgid "" -"<emphasis>allow</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, it will be ignored and the session proceeds normally." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1157 -msgid "" -"<emphasis>try</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, the session is immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1163 -msgid "" -"<emphasis>demand</emphasis> = The server certificate is requested. If no " -"certificate is provided, or a bad certificate is provided, the session is " -"immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1169 -msgid "<emphasis>hard</emphasis> = Same as <quote>demand</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1173 -msgid "Default: hard" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1179 -msgid "ldap_tls_cacert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1182 -msgid "" -"Specifies the file that contains certificates for all of the Certificate " -"Authorities that <command>sssd</command> will recognize." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1187 sssd-ldap.5.xml:1205 sssd-ldap.5.xml:1246 -msgid "" -"Default: use OpenLDAP defaults, typically in <filename>/etc/openldap/ldap." -"conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1194 -msgid "ldap_tls_cacertdir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1197 -msgid "" -"Specifies the path of a directory that contains Certificate Authority " -"certificates in separate individual files. Typically the file names need to " -"be the hash of the certificate followed by '.0'. If available, " -"<command>cacertdir_rehash</command> can be used to create the correct names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1212 -msgid "ldap_tls_cert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1215 -msgid "Specifies the file that contains the certificate for the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1219 sssd-ldap.5.xml:1231 sssd-ldap.5.xml:1979 -#: sssd-ldap.5.xml:2006 sssd-krb5.5.xml:359 -msgid "Default: not set" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1225 -msgid "ldap_tls_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1228 -msgid "Specifies the file that contains the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1237 -msgid "ldap_tls_cipher_suite (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1240 -msgid "" -"Specifies acceptable cipher suites. Typically this is a colon sperated " -"list. See <citerefentry><refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> for format." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1253 -msgid "ldap_id_use_start_tls (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1256 -msgid "" -"Specifies that the id_provider connection must also use <systemitem class=" -"\"protocol\">tls</systemitem> to protect the channel." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1266 -msgid "ldap_sasl_mech (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1269 -msgid "" -"Specify the SASL mechanism to use. Currently only GSSAPI is tested and " -"supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1273 sssd-ldap.5.xml:1428 -msgid "Default: none" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1279 -msgid "ldap_sasl_authid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1282 -msgid "" -"Specify the SASL authorization id to use. When GSSAPI is used, this " -"represents the Kerberos principal used for authentication to the directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1287 -msgid "Default: host/machine.fqdn@REALM" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1293 -msgid "ldap_sasl_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1296 -msgid "" -"If set to true, the LDAP library would perform a reverse lookup to " -"canonicalize the host name during a SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1301 -msgid "Default: false;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1307 -msgid "ldap_krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1310 -msgid "Specify the keytab to use when using SASL/GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1313 -msgid "Default: System keytab, normally <filename>/etc/krb5.keytab</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1319 -msgid "ldap_krb5_init_creds (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1322 -msgid "" -"Specifies that the id_provider should init Kerberos credentials (TGT). This " -"action is performed only if SASL is used and the mechanism selected is " -"GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1334 -msgid "ldap_krb5_ticket_lifetime (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1337 -msgid "Specifies the lifetime in seconds of the TGT if GSSAPI is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1341 -msgid "Default: 86400 (24 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1347 sssd-krb5.5.xml:74 -msgid "krb5_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1350 sssd-krb5.5.xml:77 -msgid "" -"Specifies the comma-separated list of IP addresses or hostnames of the " -"Kerberos servers to which SSSD should connect in the order of preference. " -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. An optional port number (preceded by a " -"colon) may be appended to the addresses or hostnames. If empty, service " -"discovery is enabled - for more information, refer to the <quote>SERVICE " -"DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1362 sssd-krb5.5.xml:89 -msgid "" -"When using service discovery for KDC or kpasswd servers, SSSD first searches " -"for DNS entries that specify _udp as the protocol and falls back to _tcp if " -"none are found." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1367 sssd-krb5.5.xml:94 -msgid "" -"This option was named <quote>krb5_kdcip</quote> in earlier releases of SSSD. " -"While the legacy name is recognized for the time being, users are advised to " -"migrate their config files to use <quote>krb5_server</quote> instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1376 sssd-ipa.5.xml:216 sssd-krb5.5.xml:103 -msgid "krb5_realm (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1379 -msgid "Specify the Kerberos REALM (for SASL/GSSAPI auth)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1382 -msgid "Default: System defaults, see <filename>/etc/krb5.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1388 sssd-ipa.5.xml:231 sssd-krb5.5.xml:409 -msgid "krb5_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1391 -msgid "" -"Specifies if the host principal should be canonicalized when connecting to " -"LDAP server. This feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1403 -msgid "ldap_pwd_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1406 -msgid "" -"Select the policy to evaluate the password expiration on the client side. " -"The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1411 -msgid "" -"<emphasis>none</emphasis> - No evaluation on the client side. This option " -"cannot disable server-side password policies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1416 -msgid "" -"<emphasis>shadow</emphasis> - Use <citerefentry><refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum></citerefentry> style attributes to " -"evaluate if the password has expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1422 -msgid "" -"<emphasis>mit_kerberos</emphasis> - Use the attributes used by MIT Kerberos " -"to determine if the password has expired. Use chpass_provider=krb5 to update " -"these attributes when the password is changed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1434 -msgid "ldap_referrals (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1437 -msgid "Specifies whether automatic referral chasing should be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1441 -msgid "" -"Please note that sssd only supports referral chasing when it is compiled " -"with OpenLDAP version 2.4.13 or higher." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1452 -msgid "ldap_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1455 -msgid "Specifies the service name to use when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1459 -msgid "Default: ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1465 -msgid "ldap_chpass_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1468 -msgid "" -"Specifies the service name to use to find an LDAP server which allows " -"password changes when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1473 -msgid "Default: not set, i.e. service discovery is disabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1479 -msgid "ldap_access_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1482 -msgid "" -"If using access_provider = ldap, this option is mandatory. It specifies an " -"LDAP search filter criteria that must be met for the user to be granted " -"access on this host. If access_provider = ldap and this option is not set, " -"it will result in all users being denied access. Use access_provider = allow " -"to change this default behavior." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1492 sssd-ldap.5.xml:1982 -msgid "Example:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1495 -#, no-wrap -msgid "" -"access_provider = ldap\n" -"ldap_access_filter = memberOf=cn=allowedusers,ou=Groups,dc=example,dc=com\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1499 -msgid "" -"This example means that access to this host is restricted to members of the " -"\"allowedusers\" group in ldap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1504 -msgid "" -"Offline caching for this feature is limited to determining whether the " -"user's last online login was granted access permission. If they were granted " -"access during their last login, they will continue to be granted access " -"while offline and vice-versa." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1512 sssd-ldap.5.xml:1562 -msgid "Default: Empty" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1518 -msgid "ldap_account_expire_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1521 -msgid "" -"With this option a client side evaluation of access control attributes can " -"be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1525 -msgid "" -"Please note that it is always recommended to use server side access control, " -"i.e. the LDAP server should deny the bind request with a suitable error code " -"even if the password is correct." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1532 -msgid "The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1535 -msgid "" -"<emphasis>shadow</emphasis>: use the value of ldap_user_shadow_expire to " -"determine if the account is expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1540 -msgid "" -"<emphasis>ad</emphasis>: use the value of the 32bit field " -"ldap_user_ad_user_account_control and allow access if the second bit is not " -"set. If the attribute is missing access is granted. Also the expiration time " -"of the account is checked." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1547 -msgid "" -"<emphasis>rhds</emphasis>, <emphasis>ipa</emphasis>, <emphasis>389ds</" -"emphasis>: use the value of ldap_ns_account_lock to check if access is " -"allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1553 -msgid "" -"<emphasis>nds</emphasis>: the values of " -"ldap_user_nds_login_allowed_time_map, ldap_user_nds_login_disabled and " -"ldap_user_nds_login_expiration_time are used to check if access is allowed. " -"If both attributes are missing access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1568 -msgid "ldap_access_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1571 -msgid "Comma separated list of access control options. Allowed values are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1575 -msgid "<emphasis>filter</emphasis>: use ldap_access_filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1578 -msgid "<emphasis>expire</emphasis>: use ldap_account_expire_policy" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1582 -msgid "" -"<emphasis>authorized_service</emphasis>: use the authorizedService attribute " -"to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1587 -msgid "<emphasis>host</emphasis>: use the host attribute to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1591 -msgid "Default: filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1594 -msgid "" -"Please note that it is a configuration error if a value is used more than " -"once." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1601 -msgid "ldap_deref (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1604 -msgid "" -"Specifies how alias dereferencing is done when performing a search. The " -"following options are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1609 -msgid "<emphasis>never</emphasis>: Aliases are never dereferenced." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1613 -msgid "" -"<emphasis>searching</emphasis>: Aliases are dereferenced in subordinates of " -"the base object, but not in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1618 -msgid "" -"<emphasis>finding</emphasis>: Aliases are only dereferenced when locating " -"the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1623 -msgid "" -"<emphasis>always</emphasis>: Aliases are dereferenced both in searching and " -"in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1628 -msgid "" -"Default: Empty (this is handled as <emphasis>never</emphasis> by the LDAP " -"client libraries)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:51 -msgid "" -"All of the common configuration options that apply to SSSD domains also " -"apply to LDAP domains. Refer to the <quote>DOMAIN SECTIONS</quote> section " -"of the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for full details. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1639 -msgid "SUDO OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1644 -msgid "ldap_sudorule_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1647 -msgid "The object class of a sudo rule entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1650 -msgid "Default: sudoRole" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1656 -msgid "ldap_sudorule_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1659 -msgid "The LDAP attribute that corresponds to the sudo rule name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1669 -msgid "ldap_sudorule_command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1672 -msgid "The LDAP attribute that corresponds to the command name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1676 -msgid "Default: sudoCommand" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1682 -msgid "ldap_sudorule_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1685 -msgid "" -"The LDAP attribute that corresponds to the host name (or host IP address, " -"host IP network, or host netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1690 -msgid "Default: sudoHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1696 -msgid "ldap_sudorule_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1699 -msgid "" -"The LDAP attribute that corresponds to the user name (or UID, group name or " -"user's netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1703 -msgid "Default: sudoUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1709 -msgid "ldap_sudorule_option (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1712 -msgid "The LDAP attribute that corresponds to the sudo options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1716 -msgid "Default: sudoOption" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1722 -msgid "ldap_sudorule_runasuser (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1725 -msgid "" -"The LDAP attribute that corresponds to the user name that commands may be " -"run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1729 -msgid "Default: sudoRunAsUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1735 -msgid "ldap_sudorule_runasgroup (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1738 -msgid "" -"The LDAP attribute that corresponds to the group name or group GID that " -"commands may be run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1742 -msgid "Default: sudoRunAsGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1748 -msgid "ldap_sudorule_notbefore (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1751 -msgid "" -"The LDAP attribute that corresponds to the start date/time for when the sudo " -"rule is valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1755 -msgid "Default: sudoNotBefore" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1761 -msgid "ldap_sudorule_notafter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1764 -msgid "" -"The LDAP attribute that corresponds to the expiration date/time, after which " -"the sudo rule will no longer be valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1769 -msgid "Default: sudoNotAfter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1775 -msgid "ldap_sudorule_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1778 -msgid "The LDAP attribute that corresponds to the ordering index of the rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1782 -msgid "Default: sudoOrder" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1788 -msgid "ldap_sudo_refresh_enabled (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1791 -msgid "" -"Enables periodical download of all sudo rules. The cache is purged before " -"each update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1801 -msgid "ldap_sudo_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1804 -msgid "" -"How many seconds SSSD has to wait before refreshing its cache of sudo rules." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1642 -msgid "<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1815 -msgid "" -"This manual page only describes attribute name mapping. For detailed " -"explanation of sudo related attribute semantics, see <citerefentry> " -"<refentrytitle>sudoers.ldap</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1825 -msgid "AUTOFS OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1827 -msgid "" -"Please note that the default values correspond to the default schema which " -"is RFC2307." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1834 -msgid "ldap_autofs_map_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1837 sssd-ldap.5.xml:1863 -msgid "The object class of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1840 sssd-ldap.5.xml:1867 -msgid "Default: automountMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1847 -msgid "ldap_autofs_map_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1850 -msgid "The name of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1853 -msgid "Default: ou" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1860 -msgid "ldap_autofs_entry_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1874 -msgid "ldap_autofs_entry_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1877 sssd-ldap.5.xml:1891 -msgid "" -"The key of an automount entry in LDAP. The entry usually corresponds to a " -"mount point." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1888 -msgid "ldap_autofs_entry_value (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1895 -msgid "Default: automountInformation" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1832 -msgid "" -"<placeholder type=\"variablelist\" id=\"0\"/> <placeholder type=" -"\"variablelist\" id=\"1\"/> <placeholder type=\"variablelist\" id=\"2\"/> " -"<placeholder type=\"variablelist\" id=\"3\"/> <placeholder type=" -"\"variablelist\" id=\"4\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1904 -msgid "ADVANCED OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1911 -msgid "ldap_netgroup_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1914 -msgid "" -"An optional base DN to restrict netgroup searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1930 -msgid "ldap_user_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1933 -msgid "An optional base DN to restrict user searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1949 -msgid "ldap_group_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1952 -msgid "An optional base DN to restrict group searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1968 -msgid "ldap_user_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1971 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict user searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1975 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_user_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1985 -#, no-wrap -msgid "" -" ldap_user_search_filter = (loginShell=/bin/tcsh)\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1988 -msgid "" -"This filter would restrict user searches to users that have their shell set " -"to /bin/tcsh." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1995 -msgid "ldap_group_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1998 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict group searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2002 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_group_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2012 -msgid "ldap_sudo_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2015 -msgid "" -"An optional base DN to restrict sudo rules searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2034 -msgid "ldap_autofs_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2037 -msgid "" -"An optional base DN to restrict automounter searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1906 -msgid "" -"These options are supported by LDAP domains, but they should be used with " -"caution. Please include them in your configuration only if you know what you " -"are doing. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2066 -msgid "" -"The following example assumes that SSSD is correctly configured and LDAP is " -"set to one of the domains in the <replaceable>[domains]</replaceable> " -"section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ldap.5.xml:2072 -#, no-wrap -msgid "" -" [domain/LDAP]\n" -" id_provider = ldap\n" -" auth_provider = ldap\n" -" ldap_uri = ldap://ldap.mydomain.org\n" -" ldap_search_base = dc=mydomain,dc=org\n" -" ldap_tls_reqcert = demand\n" -" cache_credentials = true\n" -" enumerate = true\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2071 sssd-simple.5.xml:134 sssd-ipa.5.xml:552 -#: sssd-krb5.5.xml:441 -msgid "<placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:2085 sssd_krb5_locator_plugin.8.xml:61 -msgid "NOTES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2087 -msgid "" -"The descriptions of some of the configuration options in this manual page " -"are based on the <citerefentry> <refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page from the OpenLDAP 2.4 " -"distribution." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2098 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <refentryinfo> -#: pam_sss.8.xml:8 include/upstream.xml:2 -msgid "" -"<productname>SSSD</productname> <orgname>The SSSD upstream - http://" -"fedorahosted.org/sssd</orgname>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: pam_sss.8.xml:13 pam_sss.8.xml:18 -msgid "pam_sss" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: pam_sss.8.xml:19 -msgid "PAM module for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: pam_sss.8.xml:24 -msgid "" -"<command>pam_sss.so</command> <arg choice='opt'> <replaceable>quiet</" -"replaceable> </arg> <arg choice='opt'> <replaceable>forward_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_first_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_authtok</" -"replaceable> </arg> <arg choice='opt'> <replaceable>retry=N</replaceable> </" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:45 -msgid "" -"<command>pam_sss.so</command> is the PAM interface to the System Security " -"Services daemon (SSSD). Errors and results are logged through <command>syslog" -"(3)</command> with the LOG_AUTHPRIV facility." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:55 -msgid "<option>quiet</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:58 -msgid "Suppress log messages for unknown users." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:63 -msgid "<option>forward_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:66 -msgid "" -"If <option>forward_pass</option> is set the entered password is put on the " -"stack for other PAM modules to use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:73 -msgid "<option>use_first_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:76 -msgid "" -"The argument use_first_pass forces the module to use a previous stacked " -"modules password and will never prompt the user - if no password is " -"available or the password is not appropriate, the user will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:84 -msgid "<option>use_authtok</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:87 -msgid "" -"When password changing enforce the module to set the new password to the one " -"provided by a previously stacked password module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:94 -msgid "<option>retry=N</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:97 -msgid "" -"If specified the user is asked another N times for a password if " -"authentication fails. Default is 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:99 -msgid "" -"Please note that this option might not work as expected if the application " -"calling PAM handles the user dialog on its own. A typical example is " -"<command>sshd</command> with <option>PasswordAuthentication</option>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:110 -msgid "MODULE TYPES PROVIDED" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:111 -msgid "" -"All module types (<option>account</option>, <option>auth</option>, " -"<option>password</option> and <option>session</option>) are provided." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:117 -msgid "FILES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:118 -msgid "" -"If a password reset by root fails, because the corresponding SSSD provider " -"does not support password resets, an individual message can be displayed. " -"This message can e.g. contain instructions about how to reset a password." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:123 -msgid "" -"The message is read from the file <filename>pam_sss_pw_reset_message.LOC</" -"filename> where LOC stands for a locale string returned by <citerefentry> " -"<refentrytitle>setlocale</refentrytitle><manvolnum>3</manvolnum> </" -"citerefentry>. If there is no matching file the content of " -"<filename>pam_sss_pw_reset_message.txt</filename> is displayed. Root must be " -"the owner of the files and only root may have read and write permissions " -"while all other users must have only read permissions." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:133 -msgid "" -"These files are searched in the directory <filename>/etc/sssd/customize/" -"DOMAIN_NAME/</filename>. If no matching file is present a generic message is " -"displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:141 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd_krb5_locator_plugin.8.xml:10 sssd_krb5_locator_plugin.8.xml:15 -msgid "sssd_krb5_locator_plugin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:22 -msgid "" -"The Kerberos locator plugin <command>sssd_krb5_locator_plugin</command> is " -"used by the Kerberos provider of <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry> to tell the Kerberos " -"libraries what Realm and which KDC to use. Typically this is done in " -"<citerefentry> <refentrytitle>krb5.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> which is always read by the Kerberos libraries. " -"To simplify the configuration the Realm and the KDC can be defined in " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> as described in <citerefentry> " -"<refentrytitle>sssd-krb5.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry> puts the Realm and the name or IP address of the KDC into " -"the environment variables SSSD_KRB5_REALM and SSSD_KRB5_KDC respectively. " -"When <command>sssd_krb5_locator_plugin</command> is called by the kerberos " -"libraries it reads and evaluates these variables and returns them to the " -"libraries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:63 -msgid "" -"Not all Kerberos implementations support the use of plugins. If " -"<command>sssd_krb5_locator_plugin</command> is not available on your system " -"you have to edit /etc/krb5.conf to reflect your Kerberos setup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:69 -msgid "" -"If the environment variable SSSD_KRB5_LOCATOR_DEBUG is set to any value " -"debug messages will be sent to stderr." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:77 -msgid "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-simple.5.xml:10 sssd-simple.5.xml:16 -msgid "sssd-simple" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd-simple.5.xml:17 -msgid "the configuration file for SSSD's 'simple' access-control provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:24 -msgid "" -"This manual page describes the configuration of the simple access-control " -"provider for <citerefentry> <refentrytitle>sssd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry>. For a detailed syntax reference, " -"refer to the <quote>FILE FORMAT</quote> section of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:38 -msgid "" -"The simple access provider grants or denies access based on an access or " -"deny list of user or group names. The following rules apply:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:43 -msgid "If all lists are empty, access is granted" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:47 -msgid "" -"If any list is provided, the order of evaluation is allow,deny. This means " -"that any matching deny rule will supersede any matched allow rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:54 -msgid "" -"If either or both \"allow\" lists are provided, all users are denied unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:60 -msgid "" -"If only \"deny\" lists are provided, all users are granted access unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:78 -msgid "simple_allow_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:81 -msgid "Comma separated list of users who are allowed to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:88 -msgid "simple_deny_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:91 -msgid "Comma separated list of users who are explicitly denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:97 -msgid "simple_allow_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:100 -msgid "" -"Comma separated list of groups that are allowed to log in. This applies only " -"to groups within this SSSD domain. Local groups are not evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:108 -msgid "simple_deny_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:111 -msgid "" -"Comma separated list of groups that are explicitly denied access. This " -"applies only to groups within this SSSD domain. Local groups are not " -"evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:70 sssd-ipa.5.xml:65 -msgid "" -"Refer to the section <quote>DOMAIN SECTIONS</quote> of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page for details on the configuration of an SSSD " -"domain. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:120 -msgid "" -"Please note that it is an configuration error if both, simple_allow_users " -"and simple_deny_users, are defined." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:128 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the simple access provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-simple.5.xml:135 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" access_provider = simple\n" -" simple_allow_users = user1, user2\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:145 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ipa.5.xml:10 sssd-ipa.5.xml:16 -msgid "sssd-ipa" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:23 -msgid "" -"This manual page describes the configuration of the IPA provider for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. For a detailed syntax reference, refer to the <quote>FILE " -"FORMAT</quote> section of the <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:36 -msgid "" -"The IPA provider is a back end used to connect to an IPA server. (Refer to " -"the freeipa.org web site for information about IPA servers.) This provider " -"requires that the machine be joined to the IPA domain; configuration is " -"almost entirely self-discovered and obtained directly from the server." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:43 -msgid "" -"The IPA provider accepts the same options used by the <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> identity provider and the <citerefentry> <refentrytitle>sssd-" -"krb5</refentrytitle> <manvolnum>5</manvolnum> </citerefentry> authentication " -"provider with some exceptions described below." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:55 -msgid "" -"However, it is neither necessary nor recommended to set these options. IPA " -"provider can also be used as an access and chpass provider. As an access " -"provider it uses HBAC (host-based access control) rules. Please refer to " -"freeipa.org for more information about HBAC. No configuration of access " -"provider is required on the client side." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:72 -msgid "ipa_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:75 -msgid "" -"Specifies the name of the IPA domain. This is optional. If not provided, " -"the configuration domain name is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:83 -msgid "ipa_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:86 -msgid "" -"The comma-separated list of IP addresses or hostnames of the IPA servers to " -"which SSSD should connect in the order of preference. For more information " -"on failover and server redundancy, see the <quote>FAILOVER</quote> section. " -"This is optional if autodiscovery is enabled. For more information on " -"service discovery, refer to the the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:99 -msgid "ipa_hostname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:102 -msgid "" -"Optional. May be set on machines where the hostname(5) does not reflect the " -"fully qualified name used in the IPA domain to identify this host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:110 -msgid "ipa_dyndns_update (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:113 -msgid "" -"Optional. This option tells SSSD to automatically update the DNS server " -"built into FreeIPA v2 with the IP address of this client." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:118 -msgid "" -"NOTE: On older systems (such as RHEL 5), for this behavior to work reliably, " -"the default Kerberos realm must be set properly in /etc/krb5.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:129 -msgid "ipa_dyndns_iface (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:132 -msgid "" -"Optional. Applicable only when ipa_dyndns_update is true. Choose the " -"interface whose IP address should be used for dynamic DNS updates." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:137 -msgid "Default: Use the IP address of the IPA LDAP connection" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:143 -msgid "ipa_hbac_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:146 -msgid "Optional. Use the given string as search base for HBAC related objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:150 -msgid "Default: Use base DN" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:156 -msgid "ipa_host_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:159 -msgid "Optional. Use the given string as search base for host objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:168 -msgid "" -"If filter is given in any of search bases and " -"<emphasis>ipa_hbac_support_srchost</emphasis> is set to False, the filter " -"will be ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:180 -msgid "ipa_selinux_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:183 -msgid "Optional. Use the given string as search base for SELinux user maps." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:199 sssd-krb5.5.xml:229 -msgid "krb5_validate (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:202 sssd-krb5.5.xml:232 -msgid "" -"Verify with the help of krb5_keytab that the TGT obtained has not been " -"spoofed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:209 -msgid "" -"Note that this default differs from the traditional Kerberos provider back " -"end." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:219 -msgid "" -"The name of the Kerberos realm. This is optional and defaults to the value " -"of <quote>ipa_domain</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:223 -msgid "" -"The name of the Kerberos realm has a special meaning in IPA - it is " -"converted into the base DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:234 -msgid "" -"Specifies if the host and user principal should be canonicalized when " -"connecting to IPA LDAP and also for AS requests. This feature is available " -"with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:247 -msgid "ipa_hbac_refresh (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:250 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server. " -"This will reduce the latency and load on the IPA server if there are many " -"access-control requests made in a short period." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:257 -msgid "Default: 5 (seconds)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:262 -msgid "ipa_hbac_treat_deny_as (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:265 -msgid "" -"This option specifies how to treat the deprecated DENY-type HBAC rules. As " -"of FreeIPA v2.1, DENY rules are no longer supported on the server. All users " -"of FreeIPA will need to migrate their rules to use only the ALLOW rules. The " -"client will support two modes of operation during this transition period:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:274 -msgid "" -"<emphasis>DENY_ALL</emphasis>: If any HBAC DENY rules are detected, all " -"users will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:279 -msgid "" -"<emphasis>IGNORE</emphasis>: SSSD will ignore any DENY rules. Be very " -"careful with this option, as it may result in opening unintended access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:284 -msgid "Default: DENY_ALL" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:289 -msgid "ipa_hbac_support_srchost (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:292 -msgid "" -"If this is set to false, then srchost as given to SSSD by PAM will be " -"ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:296 -msgid "" -"Note that if set to <emphasis>False</emphasis>, this option casuses filters " -"given in <emphasis>ipa_host_search_base</emphasis> to be ignored;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:307 -msgid "ipa_automount_location (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:310 -msgid "The automounter location this IPA client will be using" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:313 -msgid "Default: The location named \"default\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:319 -msgid "ipa_netgroup_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:322 -msgid "The LDAP attribute that lists netgroup's memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:331 -msgid "ipa_netgroup_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:334 -msgid "" -"The LDAP attribute that lists system users and groups that are direct " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:339 sssd-ipa.5.xml:434 -msgid "Default: memberUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:344 -msgid "ipa_netgroup_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:347 -msgid "" -"The LDAP attribute that lists hosts and host groups that are direct members " -"of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:351 sssd-ipa.5.xml:446 -msgid "Default: memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:356 -msgid "ipa_netgroup_member_ext_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:359 -msgid "" -"The LDAP attribute that lists FQDNs of hosts and host groups that are " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:363 -msgid "Default: externalHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:368 -msgid "ipa_netgroup_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:371 -msgid "The LDAP attribute that contains NIS domain name of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:375 -msgid "Default: nisDomainName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:381 -msgid "ipa_host_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:384 sssd-ipa.5.xml:407 -msgid "The object class of a host entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:387 sssd-ipa.5.xml:410 -msgid "Default: ipaHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:392 -msgid "ipa_host_fqdn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:395 -msgid "The LDAP attribute that contains FQDN of the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:398 -msgid "Default: fqdn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:404 -msgid "ipa_selinux_usermap_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:415 -msgid "ipa_selinux_usermap_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:418 -msgid "The LDAP attribute that contains the name of SELinux usermap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:427 -msgid "ipa_selinux_usermap_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:430 -msgid "" -"The LDAP attribute that contains all users / groups this rule match against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:439 -msgid "ipa_selinux_usermap_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:442 -msgid "" -"The LDAP attribute that contains all hosts / hostgroups this rule match " -"against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:451 -msgid "ipa_selinux_usermap_see_also (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:454 -msgid "" -"The LDAP attribute that contains DN of HBAC rule which can be used for " -"matching instead of memberUser and memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:459 -msgid "Default: seeAlso" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:464 -msgid "ipa_selinux_usermap_selinux_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:467 -msgid "The LDAP attribute that contains SELinux user string itself." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:471 -msgid "Default: ipaSELinuxUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:476 -msgid "ipa_selinux_usermap_enabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:479 -msgid "" -"The LDAP attribute that contains whether or not is user map enabled for " -"usage." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:483 -msgid "Default: ipaEnabledFlag" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:488 -msgid "ipa_selinux_usermap_user_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:491 -msgid "The LDAP attribute that contains user category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:495 -msgid "Default: userCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:500 -msgid "ipa_selinux_usermap_host_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:503 -msgid "The LDAP attribute that contains host category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:507 -msgid "Default: hostCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:512 -msgid "ipa_selinux_usermap_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:515 -msgid "The LDAP attribute that contains unique ID of the user map." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:519 -msgid "Default: ipaUniqueID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:524 -msgid "ipa_host_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:527 -msgid "The LDAP attribute that contains the host's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:531 -msgid "Default: ipaSshPubKey" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:546 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the ipa provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ipa.5.xml:553 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" id_provider = ipa\n" -" ipa_server = ipaserver.example.com\n" -" ipa_hostname = myhost.example.com\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:564 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.8.xml:10 sssd.8.xml:15 -msgid "sssd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.8.xml:16 -msgid "System Security Services Daemon" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sssd.8.xml:21 -msgid "" -"<command>sssd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:31 -msgid "" -"<command>SSSD</command> provides a set of daemons to manage access to remote " -"directories and authentication mechanisms. It provides an NSS and PAM " -"interface toward the system and a pluggable backend system to connect to " -"multiple different account sources as well as D-Bus interface. It is also " -"the basis to provide client auditing and policy services for projects like " -"FreeIPA. It provides a more robust database to store local users as well as " -"extended user data." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:46 -msgid "" -"<option>-d</option>,<option>--debug-level</option> <replaceable>LEVEL</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:53 -msgid "<option>--debug-timestamps=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:57 -msgid "<emphasis>1</emphasis>: Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:60 -msgid "<emphasis>0</emphasis>: Disable timestamp in the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:69 -msgid "<option>--debug-microseconds=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:73 -msgid "" -"<emphasis>1</emphasis>: Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:76 -msgid "<emphasis>0</emphasis>: Disable microseconds in timestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:79 -msgid "Default: 0" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:85 -msgid "<option>-f</option>,<option>--debug-to-files</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:89 -msgid "" -"Send the debug output to files instead of stderr. By default, the log files " -"are stored in <filename>/var/log/sssd</filename> and there are separate log " -"files for every SSSD service and domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:97 -msgid "<option>-D</option>,<option>--daemon</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:101 -msgid "Become a daemon after starting up." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:107 -msgid "<option>-i</option>,<option>--interactive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:111 -msgid "Run in the foreground, don't become a daemon." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:117 sss_debuglevel.8.xml:42 -msgid "<option>-c</option>,<option>--config</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:121 sss_debuglevel.8.xml:46 -msgid "" -"Specify a non-default config file. The default is <filename>/etc/sssd/sssd." -"conf</filename>. For reference on the config file syntax and options, " -"consult the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:135 -msgid "<option>--version</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:139 -msgid "Print version number and exit." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.8.xml:147 -msgid "Signals" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:150 -msgid "SIGTERM/SIGINT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:153 -msgid "" -"Informs the SSSD to gracefully terminate all of its child processes and then " -"shut down the monitor." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:159 -msgid "SIGHUP" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:162 -msgid "" -"Tells the SSSD to stop writing to its current debug file descriptors and to " -"close and reopen them. This is meant to facilitate log rolling with programs " -"like logrotate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:170 -msgid "SIGUSR1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:173 -msgid "" -"Tells the SSSD to simulate offline operation for one minute. This is mostly " -"useful for testing purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:179 -msgid "SIGUSR2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:182 -msgid "" -"Tells the SSSD to go online immediately. This is mostly useful for testing " -"purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:193 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_obfuscate.8.xml:10 sss_obfuscate.8.xml:15 -msgid "sss_obfuscate" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_obfuscate.8.xml:16 -msgid "obfuscate a clear text password" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_obfuscate.8.xml:21 -msgid "" -"<command>sss_obfuscate</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>[PASSWORD]</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:32 -msgid "" -"<command>sss_obfuscate</command> converts a given password into human-" -"unreadable format and places it into appropriate domain section of the SSSD " -"config file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:37 -msgid "" -"The cleartext password is read from standard input or entered " -"interactively. The obfuscated password is put into " -"<quote>ldap_default_authtok</quote> parameter of a given SSSD domain and the " -"<quote>ldap_default_authtok_type</quote> parameter is set to " -"<quote>obfuscated_password</quote>. Refer to <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more details on these parameters." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:49 -msgid "" -"Please note that obfuscating the password provides <emphasis>no real " -"security benefit</emphasis> as it is still possible for an attacker to " -"reverse-engineer the password back. Using better authentication mechanisms " -"such as client side certificates or GSSAPI is <emphasis>strongly</emphasis> " -"advised." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:63 -msgid "<option>-s</option>,<option>--stdin</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:67 -msgid "The password to obfuscate will be read from standard input." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:74 sss_ssh_authorizedkeys.1.xml:82 -#: sss_ssh_knownhostsproxy.1.xml:81 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>DOMAIN</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:79 -msgid "" -"The SSSD domain to use the password in. The default name is <quote>default</" -"quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:86 -msgid "" -"<option>-f</option>,<option>--file</option> <replaceable>FILE</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:91 -msgid "Read the config file specified by the positional parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:95 -msgid "Default: <filename>/etc/sssd/sssd.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:105 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_useradd.8.xml:10 sss_useradd.8.xml:15 -msgid "sss_useradd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_useradd.8.xml:16 -msgid "create a new user" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_useradd.8.xml:21 -msgid "" -"<command>sss_useradd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:32 -msgid "" -"<command>sss_useradd</command> creates a new user account using the values " -"specified on the command line plus the default values from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:43 -msgid "" -"<option>-u</option>,<option>--uid</option> <replaceable>UID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:48 -msgid "" -"Set the UID of the user to the value of <replaceable>UID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:55 sss_usermod.8.xml:43 -msgid "" -"<option>-c</option>,<option>--gecos</option> <replaceable>COMMENT</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:60 sss_usermod.8.xml:48 -msgid "" -"Any text string describing the user. Often used as the field for the user's " -"full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:67 sss_usermod.8.xml:55 -msgid "" -"<option>-h</option>,<option>--home</option> <replaceable>HOME_DIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:72 -msgid "" -"The home directory of the user account. The default is to append the " -"<replaceable>LOGIN</replaceable> name to <filename>/home</filename> and use " -"that as the home directory. The base that is prepended before " -"<replaceable>LOGIN</replaceable> is tunable with <quote>user_defaults/" -"baseDirectory</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:82 sss_usermod.8.xml:66 -msgid "" -"<option>-s</option>,<option>--shell</option> <replaceable>SHELL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:87 -msgid "" -"The user's login shell. The default is currently <filename>/bin/bash</" -"filename>. The default can be changed with <quote>user_defaults/" -"defaultShell</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:96 -msgid "" -"<option>-G</option>,<option>--groups</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:101 -msgid "A list of existing groups this user is also a member of." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:107 -msgid "<option>-m</option>,<option>--create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:111 -msgid "" -"Create the user's home directory if it does not exist. The files and " -"directories contained in the skeleton directory (which can be defined with " -"the -k option or in the config file) will be copied to the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:121 -msgid "<option>-M</option>,<option>--no-create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:125 -msgid "" -"Do not create the user's home directory. Overrides configuration settings." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:132 -msgid "" -"<option>-k</option>,<option>--skel</option> <replaceable>SKELDIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:137 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<command>sss_useradd</command>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:143 -msgid "" -"This option is only valid if the <option>-m</option> (or <option>--create-" -"home</option>) option is specified, or creation of home directories is set " -"to TRUE in the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:152 sss_usermod.8.xml:124 -msgid "" -"<option>-Z</option>,<option>--selinux-user</option> " -"<replaceable>SELINUX_USER</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:157 -msgid "" -"The SELinux user for the user's login. If not specified, the system default " -"will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:169 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-krb5.5.xml:10 sssd-krb5.5.xml:16 -msgid "sssd-krb5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:23 -msgid "" -"This manual page describes the configuration of the Kerberos 5 " -"authentication backend for <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry>. For a detailed " -"syntax reference, please refer to the <quote>FILE FORMAT</quote> section of " -"the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:36 -msgid "" -"The Kerberos 5 authentication backend contains auth and chpass providers. It " -"must be paired with identity provider in order to function properly (for " -"example, id_provider = ldap). Some information required by the Kerberos 5 " -"authentication backend must be provided by the identity provider, such as " -"the user's Kerberos Principal Name (UPN). The configuration of the identity " -"provider should have an entry to specify the UPN. Please refer to the man " -"page for the applicable identity provider for details on how to configure " -"this." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:47 -msgid "" -"This backend also provides access control based on the .k5login file in the " -"home directory of the user. See <citerefentry> <refentrytitle>.k5login</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry> for more details. " -"Please note that an empty .k5login file will deny all access to this user. " -"To activate this feature use 'access_provider = krb5' in your sssd " -"configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:55 -msgid "" -"In the case where the UPN is not available in the identity backend " -"<command>sssd</command> will construct a UPN using the format " -"<replaceable>username</replaceable>@<replaceable>krb5_realm</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:106 -msgid "" -"The name of the Kerberos realm. This option is required and must be " -"specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:113 -msgid "krb5_kpasswd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:116 -msgid "" -"If the change password service is not running on the KDC alternative servers " -"can be defined here. An optional port number (preceded by a colon) may be " -"appended to the addresses or hostnames." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:122 -msgid "" -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. Please note that even if there are no more " -"kpasswd servers to try the back end is not switch to offline if " -"authentication against the KDC is still possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:129 -msgid "Default: Use the KDC" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:135 -msgid "krb5_ccachedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:138 -msgid "" -"Directory to store credential caches. All the substitution sequences of " -"krb5_ccname_template can be used here, too, except %d and %P. If the " -"directory does not exist it will be created. If %u, %U, %p or %h are used a " -"private directory belonging to the user is created. Otherwise a public " -"directory with restricted deletion flag (aka sticky bit, see <citerefentry> " -"<refentrytitle>chmod</refentrytitle> <manvolnum>1</manvolnum> </" -"citerefentry> for details) is created." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:151 -msgid "Default: /tmp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:157 -msgid "krb5_ccname_template (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:171 -msgid "login UID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:174 -msgid "%p" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:175 -msgid "principal name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:179 -msgid "%r" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:180 -msgid "realm name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:183 -msgid "%h" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:184 -msgid "home directory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:189 -msgid "value of krb5ccache_dir" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:194 -msgid "%P" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:195 -msgid "the process ID of the sssd client" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:160 -msgid "" -"Location of the user's credential cache. Currently only file based " -"credential caches are supported. In the template the following sequences are " -"substituted: <placeholder type=\"variablelist\" id=\"0\"/> If the template " -"ends with 'XXXXXX' mkstemp(3) is used to create a unique filename in a safe " -"way." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:209 -msgid "Default: FILE:%d/krb5cc_%U_XXXXXX" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:215 -msgid "krb5_auth_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:218 -msgid "" -"Timeout in seconds after an online authentication or change password request " -"is aborted. If possible the authentication request is continued offline." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:241 -msgid "krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:244 -msgid "" -"The location of the keytab to use when validating credentials obtained from " -"KDCs." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:248 -msgid "Default: /etc/krb5.keytab" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:254 -msgid "krb5_store_password_if_offline (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:257 -msgid "" -"Store the password of the user if the provider is offline and use it to " -"request a TGT when the provider gets online again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:262 -msgid "" -"Please note that this feature currently only available on a Linux platform. " -"Passwords stored in this way are kept in plaintext in the kernel keyring and " -"are potentially accessible by the root user (with difficulty)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:275 -msgid "krb5_renewable_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:278 -msgid "" -"Request a renewable ticket with a total lifetime given by an integer " -"immediately followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:283 sssd-krb5.5.xml:319 -msgid "<emphasis>s</emphasis> seconds" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:286 sssd-krb5.5.xml:322 -msgid "<emphasis>m</emphasis> minutes" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:289 sssd-krb5.5.xml:325 -msgid "<emphasis>h</emphasis> hours" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:292 sssd-krb5.5.xml:328 -msgid "<emphasis>d</emphasis> days." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:295 sssd-krb5.5.xml:331 -msgid "If there is no delimiter <emphasis>s</emphasis> is assumed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:299 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"renewable lifetime to one and a half hours please use '90m' instead of " -"'1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:305 -msgid "Default: not set, i.e. the TGT is not renewable" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:311 -msgid "krb5_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:314 -msgid "" -"Request ticket with a with a lifetime given by an integer immediately " -"followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:335 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"lifetime to one and a half hours please use '90m' instead of '1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:340 -msgid "" -"Default: not set, i.e. the default ticket lifetime configured on the KDC." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:347 -msgid "krb5_renew_interval (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:350 -msgid "" -"The time in seconds between two checks if the TGT should be renewed. TGTs " -"are renewed if about half of their lifetime is exceeded." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:355 -msgid "If this option is not set or 0 the automatic renewal is disabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:365 -msgid "krb5_use_fast (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:368 -msgid "" -"Enables flexible authentication secure tunneling (FAST) for Kerberos pre-" -"authentication. The following options are supported:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:373 -msgid "" -"<emphasis>never</emphasis> use FAST, this is equivalent to not set this " -"option at all." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:377 -msgid "" -"<emphasis>try</emphasis> to use FAST, if the server does not support fast " -"continue without." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:381 -msgid "" -"<emphasis>demand</emphasis> to use FAST, fail if the server does not require " -"fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:385 -msgid "Default: not set, i.e. FAST is not used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:388 -msgid "Please note that a keytab is required to use fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:391 -msgid "" -"Please note also that sssd supports fast only with MIT Kerberos version 1.8 " -"and above. If sssd used with an older version using this option is a " -"configuration error." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:400 -msgid "krb5_fast_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:403 -msgid "Specifies the server principal to use for FAST." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:412 -msgid "" -"Specifies if the host and user principal should be canonicalized. This " -"feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:65 -msgid "" -"If the auth-module krb5 is used in a SSSD domain, the following options must " -"be used. See the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page, section <quote>DOMAIN " -"SECTIONS</quote> for details on the configuration of a SSSD domain. " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:434 -msgid "" -"The following example assumes that SSSD is correctly configured and FOO is " -"one of the domains in the <replaceable>[sssd]</replaceable> section. This " -"example shows only configuration of Kerberos authentication, it does not " -"include any identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-krb5.5.xml:442 -#, no-wrap -msgid "" -" [domain/FOO]\n" -" auth_provider = krb5\n" -" krb5_server = 192.168.1.1\n" -" krb5_realm = EXAMPLE.COM\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:453 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupadd.8.xml:10 sss_groupadd.8.xml:15 -msgid "sss_groupadd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupadd.8.xml:16 -msgid "create a new group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupadd.8.xml:21 -msgid "" -"<command>sss_groupadd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:32 -msgid "" -"<command>sss_groupadd</command> creates a new group. These groups are " -"compatible with POSIX groups, with the additional feature that they can " -"contain other groups as members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupadd.8.xml:43 -msgid "" -"<option>-g</option>,<option>--gid</option> <replaceable>GID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupadd.8.xml:48 -msgid "" -"Set the GID of the group to the value of <replaceable>GID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_userdel.8.xml:10 sss_userdel.8.xml:15 -msgid "sss_userdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_userdel.8.xml:16 -msgid "delete a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_userdel.8.xml:21 -msgid "" -"<command>sss_userdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:32 -msgid "" -"<command>sss_userdel</command> deletes a user identified by login name " -"<replaceable>LOGIN</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:44 -msgid "<option>-r</option>,<option>--remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:48 -msgid "" -"Files in the user's home directory will be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:56 -msgid "<option>-R</option>,<option>--no-remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:60 -msgid "" -"Files in the user's home directory will NOT be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:68 -msgid "<option>-f</option>,<option>--force</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:72 -msgid "" -"This option forces <command>sss_userdel</command> to remove the user's home " -"directory and mail spool, even if they are not owned by the specified user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:80 -msgid "<option>-k</option>,<option>--kick</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:84 -msgid "Before actually deleting the user, terminate all his processes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:95 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupdel.8.xml:10 sss_groupdel.8.xml:15 -msgid "sss_groupdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupdel.8.xml:16 -msgid "delete a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupdel.8.xml:21 -msgid "" -"<command>sss_groupdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:32 -msgid "" -"<command>sss_groupdel</command> deletes a group identified by its name " -"<replaceable>GROUP</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupshow.8.xml:10 sss_groupshow.8.xml:15 -msgid "sss_groupshow" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupshow.8.xml:16 -msgid "print properties of a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupshow.8.xml:21 -msgid "" -"<command>sss_groupshow</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:32 -msgid "" -"<command>sss_groupshow</command> displays information about a group " -"identified by its name <replaceable>GROUP</replaceable>. The information " -"includes the group ID number, members of the group and the parent group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupshow.8.xml:43 -msgid "<option>-R</option>,<option>--recursive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupshow.8.xml:47 -msgid "" -"Also print indirect group members in a tree-like hierarchy. Note that this " -"also affects printing parent groups - without <option>R</option>, only the " -"direct parent will be printed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_usermod.8.xml:10 sss_usermod.8.xml:15 -msgid "sss_usermod" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_usermod.8.xml:16 -msgid "modify a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_usermod.8.xml:21 -msgid "" -"<command>sss_usermod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:32 -msgid "" -"<command>sss_usermod</command> modifies the account specified by " -"<replaceable>LOGIN</replaceable> to reflect the changes that are specified " -"on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:60 -msgid "The home directory of the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:71 -msgid "The user's login shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:82 -msgid "" -"Append this user to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:96 -msgid "" -"Remove this user from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:103 -msgid "<option>-l</option>,<option>--lock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:107 -msgid "Lock the user account. The user won't be able to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:114 -msgid "<option>-u</option>,<option>--unlock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:118 -msgid "Unlock the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:129 -msgid "The SELinux user for the user's login." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:140 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_cache.8.xml:10 sss_cache.8.xml:15 -msgid "sss_cache" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_cache.8.xml:16 -msgid "perform cache cleanup" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_cache.8.xml:21 -msgid "" -"<command>sss_cache</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_cache.8.xml:31 -msgid "" -"<command>sss_cache</command> invalidates records in SSSD cache. Invalidated " -"records are forced to be reloaded from server as soon as related SSSD " -"backend is online." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:42 -msgid "" -"<option>-u</option>,<option>--user</option> <replaceable>login</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:47 -msgid "Invalidate specific user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:53 -msgid "<option>-U</option>,<option>--users</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:57 -msgid "" -"Invalidate all user records. This option overrides invalidation of specific " -"user if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:64 -msgid "" -"<option>-g</option>,<option>--group</option> <replaceable>group</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:69 -msgid "Invalidate specific group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:75 -msgid "<option>-G</option>,<option>--groups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:79 -msgid "" -"Invalidate all group records. This option overrides invalidation of specific " -"group if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:86 -msgid "" -"<option>-n</option>,<option>--netgroup</option> <replaceable>netgroup</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:91 -msgid "Invalidate specific netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:97 -msgid "<option>-N</option>,<option>--netgroups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:101 -msgid "" -"Invalidate all netgroup records. This option overrides invalidation of " -"specific netgroup if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:108 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>domain</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:113 -msgid "Restrict invalidation process only to a particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_debuglevel.8.xml:10 sss_debuglevel.8.xml:15 -msgid "sss_debuglevel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_debuglevel.8.xml:16 -msgid "change debug level while SSSD is running" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_debuglevel.8.xml:21 -msgid "" -"<command>sss_debuglevel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>NEW_DEBUG_LEVEL</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_debuglevel.8.xml:32 -msgid "" -"<command>sss_debuglevel</command> changes debug level of SSSD monitor and " -"providers to <replaceable>NEW_DEBUG_LEVEL</replaceable> while SSSD is " -"running." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_debuglevel.8.xml:59 -msgid "<replaceable>NEW_DEBUG_LEVEL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_authorizedkeys.1.xml:10 sss_ssh_authorizedkeys.1.xml:15 -msgid "sss_ssh_authorizedkeys" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_ssh_authorizedkeys.1.xml:11 sss_ssh_knownhostsproxy.1.xml:11 -msgid "1" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_authorizedkeys.1.xml:16 -msgid "get OpenSSH authorized keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_authorizedkeys.1.xml:21 -msgid "" -"<command>sss_ssh_authorizedkeys</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>USER</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:32 -msgid "" -"<command>sss_ssh_authorizedkeys</command> acquires SSH public keys for user " -"<replaceable>USER</replaceable> and outputs them in OpenSSH authorized_keys " -"format (see the <quote>AUTHORIZED_KEYS FILE FORMAT</quote> section of " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> for more information)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:41 -msgid "" -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_authorizedkeys</" -"command> for public key user authentication if it is compiled with support " -"for either <quote>AuthorizedKeysCommand</quote> or <quote>PubkeyAgent</" -"quote> <citerefentry> <refentrytitle>sshd_config</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:58 -#, no-wrap -msgid "AuthorizedKeysCommand /usr/bin/sss_ssh_authorizedkeys\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:51 -msgid "" -"If <quote>AuthorizedKeysCommand</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by putting the following directive " -"in <citerefentry> <refentrytitle>sshd_config</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry>: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:69 -#, no-wrap -msgid "PubKeyAgent /usr/bin/sss_ssh_authorizedkeys %u\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:62 -msgid "" -"If <quote>PubkeyAgent</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by using the following directive " -"for <citerefentry> <refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> configuration: <placeholder type=\"programlisting" -"\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_authorizedkeys.1.xml:87 -msgid "" -"Search for user public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:98 -msgid "" -"<citerefentry> <refentrytitle>sshd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sshd_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_knownhostsproxy</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_knownhostsproxy.1.xml:10 sss_ssh_knownhostsproxy.1.xml:15 -msgid "sss_ssh_knownhostsproxy" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_knownhostsproxy.1.xml:16 -msgid "get OpenSSH host keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_knownhostsproxy.1.xml:21 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>HOST</replaceable></arg> <arg " -"choice='opt'><replaceable>PROXY_COMMAND</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:33 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> acquires SSH host public keys for " -"host <replaceable>HOST</replaceable>, stores them in a custom OpenSSH " -"known_hosts file (see the <quote>SSH_KNOWN_HOSTS FILE FORMAT</quote> section " -"of <citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> for more information) <filename>/var/lib/sss/" -"pubconf/known_hosts</filename> and estabilishes connection to the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:43 -msgid "" -"If <replaceable>PROXY_COMMAND</replaceable> is specified, it is used to " -"create the connection to the host instead of opening a socket." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_knownhostsproxy.1.xml:55 -#, no-wrap -msgid "" -"ProxyCommand /usr/bin/sss_ssh_knownhostsproxy -p %p %h\n" -"GlobalKnownHostsFile2 /var/lib/sss/pubconf/known_hosts\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:48 -msgid "" -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_knownhostsproxy</" -"command> for host key authentication by using the following directives for " -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> configuration: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_ssh_knownhostsproxy.1.xml:69 -msgid "" -"<option>-p</option>,<option>--port</option> <replaceable>PORT</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:74 -msgid "" -"Use port <replaceable>PORT</replaceable> to connect to the host. By " -"default, port 22 is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:86 -msgid "" -"Search for host public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:97 -msgid "" -"<citerefentry> <refentrytitle>ssh</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>ssh_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_authorizedkeys</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/service_discovery.xml:2 -msgid "SERVICE DISCOVERY" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/service_discovery.xml:4 -msgid "" -"The service discovery feature allows back ends to automatically find the " -"appropriate servers to connect to using a special DNS query." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:9 -msgid "Configuration" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:11 -msgid "" -"If no servers are specified, the back end automatically uses service " -"discovery to try to find a server. Optionally, the user may choose to use " -"both fixed server addresses and service discovery by inserting a special " -"keyword, <quote>_srv_</quote>, in the list of servers. The order of " -"preference is maintained. This feature is useful if, for example, the user " -"prefers to use service discovery whenever possible, and fall back to a " -"specific server when no servers can be discovered using DNS." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:23 -msgid "The domain name" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:25 -msgid "" -"Please refer to the <quote>dns_discovery_domain</quote> parameter in the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for more details." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:35 -msgid "The protocol" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:37 -msgid "" -"The queries usually specify _tcp as the protocol. Exceptions are documented " -"in respective option description." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:42 -msgid "See Also" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:44 -msgid "" -"For more information on the service discovery mechanism, refer to RFC 2782." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/upstream.xml:1 -msgid "<placeholder type=\"refentryinfo\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/failover.xml:2 -msgid "FAILOVER" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/failover.xml:4 -msgid "" -"The failover feature allows back ends to automatically switch to a different " -"server if the primary server fails." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:8 -msgid "Failover Syntax" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:10 -msgid "" -"The list of servers is given as a comma-separated list; any number of spaces " -"is allowed around the comma. The servers are listed in order of preference. " -"The list can contain any number of servers." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:17 -msgid "The Failover Mechanism" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:19 -msgid "" -"The failover mechanism distinguishes between a machine and a service. The " -"back end first tries to resolve the hostname of a given machine; if this " -"resolution attempt fails, the machine is considered offline. No further " -"attempts are made to connect to this machine for any other service. If the " -"resolution attempt succeeds, the back end tries to connect to a service on " -"this machine. If the service connection attempt fails, then only this " -"particular service is considered offline and the back end automatically " -"switches over to the next service. The machine is still considered online " -"and might still be tried for another service." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:32 -msgid "" -"Further connection attempts are made to machines or services marked as " -"offline after a specified period of time; this is currently hard coded to 30 " -"seconds." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:37 -msgid "" -"If there are no more machines to try, the back end as a whole switches to " -"offline mode, and then attempts to reconnect every 30 seconds." -msgstr "" - -#. type: Content of: <varlistentry><term> -#: include/param_help.xml:3 -msgid "<option>-h</option>,<option>--help</option>" -msgstr "" - -#. type: Content of: <varlistentry><listitem><para> -#: include/param_help.xml:7 -msgid "Display help message and exit." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:3 -msgid "" -"Bit mask that indicates which debug levels will be visible. 0x0010 is the " -"default value as well as the lowest allowed value, 0xFFF0 is the most " -"verbose mode. This setting overrides the settings from config file." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:8 -msgid "Currently supported debug levels:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:11 -msgid "" -"<emphasis>0x0010</emphasis>: Fatal failures. Anything that would prevent " -"SSSD from starting up or causes it to cease running." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:15 -msgid "" -"<emphasis>0x0020</emphasis>: Critical failures. An error that doesn't kill " -"the SSSD, but one that indicates that at least one major feature is not " -"going to work properly." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:20 -msgid "" -"<emphasis>0x0040</emphasis>: Serious failures. An error announcing that a " -"particular request or operation has failed." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:24 -msgid "" -"<emphasis>0x0080</emphasis>: Minor failures. These are the errors that would " -"percolate down to cause the operation failure of 2." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:28 -msgid "<emphasis>0x0100</emphasis>: Configuration settings." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:31 -msgid "<emphasis>0x0200</emphasis>: Function data." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:34 -msgid "<emphasis>0x0400</emphasis>: Trace messages for operation functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:37 -msgid "" -"<emphasis>0x1000</emphasis>: Trace messages for internal control functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:40 -msgid "" -"<emphasis>0x2000</emphasis>: Contents of function-internal variables that " -"may be interesting." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:43 -msgid "<emphasis>0x4000</emphasis>: Extremely low-level tracing information." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:46 -msgid "" -"To log required debug levels, simply add their numbers together as shown in " -"following examples:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:49 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, critical failures, " -"serious failures and function data use 0x0270." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:53 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, configuration settings, " -"function data, trace messages for internal control functions use 0x1310." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:57 -msgid "" -"<emphasis>Note</emphasis>: This is new format of debug levels introduced in " -"1.7.0. Older format (numbers from 0-10) is compatible but deprecated." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/experimental.xml:1 -msgid "" -"<emphasis> This is an experimental feature, please use http://fedorahosted." -"org/sssd to report any issues. </emphasis>" -msgstr "" diff --git a/src/man/po/ta.po b/src/man/po/ta.po deleted file mode 100644 index 989dc8433..000000000 --- a/src/man/po/ta.po +++ /dev/null @@ -1,6747 +0,0 @@ -# SOME DESCRIPTIVE TITLE -# Copyright (C) YEAR Red Hat -# This file is distributed under the same license as the sssd-docs package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@redhat.com\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-12-23 15:35+0000\n" -"Last-Translator: FULL NAME <EMAIL@ADDRESS>\n" -"Language-Team: Tamil <tamil-users@lists.fedoraproject.org>\n" -"Language: ta\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=2; plural=(n != 1)\n" - -#. type: Content of: <reference><title> -#: sss_groupmod.8.xml:5 sssd.conf.5.xml:5 sssd-ldap.5.xml:5 pam_sss.8.xml:5 -#: sssd_krb5_locator_plugin.8.xml:5 sssd-simple.5.xml:5 sssd-ipa.5.xml:5 -#: sssd.8.xml:5 sss_obfuscate.8.xml:5 sss_useradd.8.xml:5 sssd-krb5.5.xml:5 -#: sss_groupadd.8.xml:5 sss_userdel.8.xml:5 sss_groupdel.8.xml:5 -#: sss_groupshow.8.xml:5 sss_usermod.8.xml:5 sss_cache.8.xml:5 -#: sss_debuglevel.8.xml:5 sss_ssh_authorizedkeys.1.xml:5 -#: sss_ssh_knownhostsproxy.1.xml:5 -msgid "SSSD Manual pages" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupmod.8.xml:10 sss_groupmod.8.xml:15 -msgid "sss_groupmod" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_groupmod.8.xml:11 pam_sss.8.xml:14 sssd_krb5_locator_plugin.8.xml:11 -#: sssd.8.xml:11 sss_obfuscate.8.xml:11 sss_useradd.8.xml:11 -#: sss_groupadd.8.xml:11 sss_userdel.8.xml:11 sss_groupdel.8.xml:11 -#: sss_groupshow.8.xml:11 sss_usermod.8.xml:11 sss_cache.8.xml:11 -#: sss_debuglevel.8.xml:11 -msgid "8" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupmod.8.xml:16 -msgid "modify a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupmod.8.xml:21 -msgid "" -"<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:30 sssd-ldap.5.xml:21 pam_sss.8.xml:44 -#: sssd_krb5_locator_plugin.8.xml:20 sssd-simple.5.xml:22 sssd-ipa.5.xml:21 -#: sssd.8.xml:29 sss_obfuscate.8.xml:30 sss_useradd.8.xml:30 -#: sssd-krb5.5.xml:21 sss_groupadd.8.xml:30 sss_userdel.8.xml:30 -#: sss_groupdel.8.xml:30 sss_groupshow.8.xml:30 sss_usermod.8.xml:30 -#: sss_cache.8.xml:29 sss_debuglevel.8.xml:30 sss_ssh_authorizedkeys.1.xml:30 -#: sss_ssh_knownhostsproxy.1.xml:31 -msgid "DESCRIPTION" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:32 -msgid "" -"<command>sss_groupmod</command> modifies the group to reflect the changes " -"that are specified on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:39 pam_sss.8.xml:51 sssd.8.xml:42 sss_obfuscate.8.xml:58 -#: sss_useradd.8.xml:39 sss_groupadd.8.xml:39 sss_userdel.8.xml:39 -#: sss_groupdel.8.xml:39 sss_groupshow.8.xml:39 sss_usermod.8.xml:39 -#: sss_cache.8.xml:38 sss_debuglevel.8.xml:38 sss_ssh_authorizedkeys.1.xml:78 -#: sss_ssh_knownhostsproxy.1.xml:65 -msgid "OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:43 sss_usermod.8.xml:77 -msgid "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:48 -msgid "" -"Append this group to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:57 sss_usermod.8.xml:91 -msgid "" -"<option>-r</option>,<option>--remove-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:62 -msgid "" -"Remove this group from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:72 sssd.conf.5.xml:1331 sssd-ldap.5.xml:2096 -#: pam_sss.8.xml:139 sssd_krb5_locator_plugin.8.xml:75 sssd-simple.5.xml:143 -#: sssd-ipa.5.xml:562 sssd.8.xml:191 sss_obfuscate.8.xml:103 -#: sss_useradd.8.xml:167 sssd-krb5.5.xml:451 sss_groupadd.8.xml:58 -#: sss_userdel.8.xml:93 sss_groupdel.8.xml:46 sss_groupshow.8.xml:58 -#: sss_usermod.8.xml:138 sss_ssh_authorizedkeys.1.xml:96 -#: sss_ssh_knownhostsproxy.1.xml:95 -msgid "SEE ALSO" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:74 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.conf.5.xml:10 sssd.conf.5.xml:16 -msgid "sssd.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sssd.conf.5.xml:11 sssd-ldap.5.xml:11 sssd-simple.5.xml:11 -#: sssd-ipa.5.xml:11 sssd-krb5.5.xml:11 -msgid "5" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><refmiscinfo> -#: sssd.conf.5.xml:12 sssd-ldap.5.xml:12 sssd-simple.5.xml:12 -#: sssd-ipa.5.xml:12 sssd-krb5.5.xml:12 -msgid "File Formats and Conventions" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.conf.5.xml:17 sssd-ldap.5.xml:17 sssd_krb5_locator_plugin.8.xml:16 -#: sssd-ipa.5.xml:17 sssd-krb5.5.xml:17 -msgid "the configuration file for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:21 -msgid "FILE FORMAT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:29 -#, no-wrap -msgid "" -" <replaceable>[section]</replaceable>\n" -" <replaceable>key</replaceable> = <replaceable>value</replaceable>\n" -" <replaceable>key2</replaceable> = <replaceable>value2,value3</replaceable>\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:24 -msgid "" -"The file has an ini-style syntax and consists of sections and parameters. A " -"section begins with the name of the section in square brackets and continues " -"until the next section begins. An example of section with single and multi-" -"valued parameters: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:36 -msgid "" -"The data types used are string (no quotes needed), integer and bool (with " -"values of <quote>TRUE/FALSE</quote>)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:41 -msgid "" -"A line comment starts with a hash sign (<quote>#</quote>) or a semicolon " -"(<quote>;</quote>)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:46 -msgid "" -"All sections can have an optional <replaceable>description</replaceable> " -"parameter. Its function is only as a label for the section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:52 -msgid "" -"<filename>sssd.conf</filename> must be a regular file, owned by root and " -"only root may read from or write to the file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:58 -msgid "SPECIAL SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:61 -msgid "The [sssd] section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><title> -#: sssd.conf.5.xml:70 sssd.conf.5.xml:1177 -msgid "Section parameters" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:72 -msgid "config_file_version (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:75 -msgid "" -"Indicates what is the syntax of the config file. SSSD 0.6.0 and later use " -"version 2." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:81 -msgid "services" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:84 -msgid "" -"Comma separated list of services that are started when sssd itself starts." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:88 -msgid "" -"Supported services: nss, pam <phrase condition=\"with_sudo\">, sudo</phrase>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:94 sssd.conf.5.xml:257 -msgid "reconnection_retries (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:97 sssd.conf.5.xml:260 -msgid "" -"Number of times services should attempt to reconnect in the event of a Data " -"Provider crash or restart before they give up" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:102 sssd.conf.5.xml:265 -msgid "Default: 3" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:107 -msgid "domains" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:110 -msgid "" -"A domain is a database containing user information. SSSD can use more " -"domains at the same time, but at least one must be configured or SSSD won't " -"start. This parameter described the list of domains in the order you want " -"them to be queried." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:120 -msgid "re_expression (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:123 -msgid "" -"Regular expression that describes how to parse the string containing user " -"name and domain into these components." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:127 -msgid "" -"Default: <quote>(?P<name>[^@]+)@?(?P<domain>[^@]*$)</quote> " -"which translates to \"the name is everything up to the <quote>@</quote> " -"sign, the domain everything after that\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:132 -msgid "" -"PLEASE NOTE: the support for non-unique named subpatterns is not available " -"on all platforms (e.g. RHEL5 and SLES10). Only platforms with libpcre " -"version 7 or higher can support non-unique named subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:139 -msgid "" -"PLEASE NOTE ALSO: older version of libpcre only support the Python syntax (?" -"P<name>) to label subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:146 -msgid "full_name_format (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:149 -msgid "" -"A <citerefentry> <refentrytitle>printf</refentrytitle> <manvolnum>3</" -"manvolnum> </citerefentry>-compatible format that describes how to translate " -"a (name, domain) tuple into a fully qualified name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:157 -msgid "Default: <quote>%1$s@%2$s</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:162 -msgid "try_inotify (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:165 -msgid "" -"SSSD monitors the state of resolv.conf to identify when it needs to update " -"its internal DNS resolver. By default, we will attempt to use inotify for " -"this, and will fall back to polling resolv.conf every five seconds if " -"inotify cannot be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:173 -msgid "" -"There are some limited situations where it is preferred that we should skip " -"even trying to use inotify. In these rare cases, this option should be set " -"to 'false'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:179 -msgid "" -"Default: true on platforms where inotify is supported. False on other " -"platforms." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:183 -msgid "" -"Note: this option will have no effect on platforms where inotify is " -"unavailable. On these platforms, polling will always be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:190 -msgid "krb5_rcache_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:193 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:197 -msgid "" -"This option accepts a special value __LIBKRB5_DEFAULTS__ that will instruct " -"SSSD to let libkrb5 decide the appropriate location for the replay cache." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:203 -msgid "" -"Default: Distribution-specific and specified at build-time. " -"(__LIBKRB5_DEFAULTS__ if not configured)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:63 -msgid "" -"Individual pieces of SSSD functionality are provided by special SSSD " -"services that are started and stopped together with SSSD. The services are " -"managed by a special service frequently called <quote>monitor</quote>. The " -"<quote>[sssd]</quote> section is used to configure the monitor as well as " -"some other important options like the identity domains. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:216 -msgid "SERVICES SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:218 -msgid "" -"Settings that can be used to configure different services are described in " -"this section. They should reside in the [<replaceable>$NAME</replaceable>] " -"section, for example, for NSS service, the section would be <quote>[nss]</" -"quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:225 -msgid "General service configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:227 -msgid "These options can be used to configure any service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:231 -msgid "debug_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:235 -msgid "debug_timestamps (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:238 -msgid "Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:241 sssd.conf.5.xml:376 sssd-ldap.5.xml:1328 -#: sssd-ldap.5.xml:1446 sssd-ipa.5.xml:206 sssd-ipa.5.xml:241 -msgid "Default: true" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:246 -msgid "debug_microseconds (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:249 -msgid "Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:252 sssd.conf.5.xml:641 sssd-ldap.5.xml:602 -#: sssd-ldap.5.xml:1260 sssd-ldap.5.xml:1397 sssd-ldap.5.xml:1795 -#: sssd-ipa.5.xml:123 sssd-ipa.5.xml:301 sssd-krb5.5.xml:235 -#: sssd-krb5.5.xml:269 sssd-krb5.5.xml:418 -msgid "Default: false" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:270 -msgid "command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:273 -msgid "" -"By default, the executable representing this service is called <command>sssd_" -"${service_name}</command>. This directive allows to change the executable " -"name for the service. In the vast majority of configurations, the default " -"values should suffice." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:281 -msgid "Default: <command>sssd_${service_name}</command>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:289 -msgid "NSS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:291 -msgid "" -"These options can be used to configure the Name Service Switch (NSS) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:296 -msgid "enum_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:299 -msgid "" -"How many seconds should nss_sss cache enumerations (requests for info about " -"all users)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:303 -msgid "Default: 120" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:308 -msgid "entry_cache_nowait_percentage (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:311 -msgid "" -"The entry cache can be set to automatically update entries in the background " -"if they are requested beyond a percentage of the entry_cache_timeout value " -"for the domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:317 -msgid "" -"For example, if the domain's entry_cache_timeout is set to 30s and " -"entry_cache_nowait_percentage is set to 50 (percent), entries that come in " -"after 15 seconds past the last cache update will be returned immediately, " -"but the SSSD will go and update the cache on its own, so that future " -"requests will not need to block waiting for a cache update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:327 -msgid "" -"Valid values for this option are 0-99 and represent a percentage of the " -"entry_cache_timeout for each domain. For performance reasons, this " -"percentage will never reduce the nowait timeout to less than 10 seconds. (0 " -"disables this feature)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:335 -msgid "Default: 50" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:340 -msgid "entry_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:343 -msgid "" -"Specifies for how many seconds nss_sss should cache negative cache hits " -"(that is, queries for invalid database entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:349 sssd.conf.5.xml:669 sssd-krb5.5.xml:223 -msgid "Default: 15" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:354 -msgid "filter_users, filter_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:357 -msgid "" -"Exclude certain users from being fetched from the sss NSS database. This is " -"particularly useful for system accounts. This option can also be set per-" -"domain or include fully-qualified names to filter only users from the " -"particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:364 -msgid "Default: root" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:369 -msgid "filter_users_in_groups (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:372 -msgid "" -"If you want filtered user still be group members set this option to false." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:381 -msgid "override_homedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:390 sssd-krb5.5.xml:166 -msgid "%u" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:391 sssd-krb5.5.xml:167 -msgid "login name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:394 sssd-krb5.5.xml:170 -msgid "%U" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:395 -msgid "UID number" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:398 sssd-krb5.5.xml:188 -msgid "%d" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:399 -msgid "domain name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:402 -msgid "%f" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:403 -msgid "fully qualified user name (user@domain)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:406 sssd-krb5.5.xml:200 -msgid "%%" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:407 sssd-krb5.5.xml:201 -msgid "a literal '%'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:384 -msgid "" -"Override the user's home directory. You can either provide an absolute value " -"or a template. In the template, the following sequences are substituted: " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:413 -msgid "This option can also be set per-domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:418 -msgid "allowed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:421 -msgid "" -"Restrict user shell to one of the listed values. The order of evaluation is:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:424 -msgid "1. If the shell is present in <quote>/etc/shells</quote>, it is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:428 -msgid "" -"2. If the shell is in the allowed_shells list but not in <quote>/etc/shells</" -"quote>, use the value of the shell_fallback parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:433 -msgid "" -"3. If the shell is not in the allowed_shells list and not in <quote>/etc/" -"shells</quote>, a nologin shell is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:438 -msgid "An empty string for shell is passed as-is to libc." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:441 -msgid "" -"The <quote>/etc/shells</quote> is only read on SSSD start up, which means " -"that a restart of the SSSD is required in case a new shell is installed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:445 -msgid "Default: Not set. The user shell is automatically used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:450 -msgid "vetoed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:453 -msgid "Replace any instance of these shells with the shell_fallback" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:458 -msgid "shell_fallback (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:461 -msgid "" -"The default shell to use if an allowed shell is not installed on the machine." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:465 -msgid "Default: /bin/sh" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:472 -msgid "PAM configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:474 -msgid "" -"These options can be used to configure the Pluggable Authentication Module " -"(PAM) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:479 -msgid "offline_credentials_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:482 -msgid "" -"If the authentication provider is offline, how long should we allow cached " -"logins (in days since the last successful online login)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:487 sssd.conf.5.xml:500 -msgid "Default: 0 (No limit)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:493 -msgid "offline_failed_login_attempts (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:496 -msgid "" -"If the authentication provider is offline, how many failed login attempts " -"are allowed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:506 -msgid "offline_failed_login_delay (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:509 -msgid "" -"The time in minutes which has to pass after offline_failed_login_attempts " -"has been reached before a new login attempt is possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:514 -msgid "" -"If set to 0 the user cannot authenticate offline if " -"offline_failed_login_attempts has been reached. Only a successful online " -"authentication can enable offline authentication again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:520 sssd.conf.5.xml:573 sssd.conf.5.xml:1093 -msgid "Default: 5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:526 -msgid "pam_verbosity (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:529 -msgid "" -"Controls what kind of messages are shown to the user during authentication. " -"The higher the number to more messages are displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:534 -msgid "Currently sssd supports the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:537 -msgid "<emphasis>0</emphasis>: do not show any message" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:540 -msgid "<emphasis>1</emphasis>: show only important messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:544 -msgid "<emphasis>2</emphasis>: show informational messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:547 -msgid "<emphasis>3</emphasis>: show all messages and debug information" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:551 sssd.8.xml:63 -msgid "Default: 1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:556 -msgid "pam_id_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:559 -msgid "" -"For any PAM request while SSSD is online, the SSSD will attempt to " -"immediately update the cached identity information for the user in order to " -"ensure that authentication takes place with the latest information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:565 -msgid "" -"A complete PAM conversation may perform multiple PAM requests, such as " -"account management and session opening. This option controls (on a per-" -"client-application basis) how long (in seconds) we can cache the identity " -"information to avoid excessive round-trips to the identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:579 -msgid "pam_pwd_expiration_warning (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:582 -msgid "Display a warning N days before the password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:585 -msgid "" -"Please note that the backend server has to provide information about the " -"expiration time of the password. If this information is missing, sssd " -"cannot display a warning." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:591 -msgid "Default: 7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:599 -msgid "SUDO configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:601 -msgid "These options can be used to configure the sudo service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:608 -msgid "sudo_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:611 -msgid "" -"For any sudo request that comes while SSSD is online, the SSSD will attempt " -"to update the cached rules in order to ensure that sudo has the latest " -"ruleset." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:617 -msgid "" -"The user may, however, run a couple of sudo commands successively, which " -"would trigger multiple LDAP requests. In order to speed up this use-case, " -"the sudo service maintains an in-memory cache that would be used for " -"performing fast replies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:624 -msgid "" -"This option controls how long (in seconds) can the sudo service cache rules " -"for a user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:628 -msgid "Default: 180" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:633 -msgid "sudo_timed (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:636 -msgid "" -"Whether or not to evaluate the sudoNotBefore and sudoNotAfter attributes " -"that implement time-dependent sudoers entries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:649 -msgid "AUTOFS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:651 -msgid "These options can be used to configure the autofs service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:659 -msgid "autofs_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:662 -msgid "" -"Specifies for how many seconds should the autofs responder negative cache " -"hits (that is, queries for invalid map entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:679 -msgid "DOMAIN SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:686 -msgid "min_id,max_id (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:689 -msgid "" -"UID and GID limits for the domain. If a domain contains an entry that is " -"outside these limits, it is ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:694 -msgid "" -"For users, this affects the primary GID limit. The user will not be returned " -"to NSS if either the UID or the primary GID is outside the range. For non-" -"primary group memberships, those that are in range will be reported as " -"expected." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:701 -msgid "Default: 1 for min_id, 0 (no limit) for max_id" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:707 -msgid "timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:710 -msgid "" -"Timeout in seconds between heartbeats for this domain. This is used to " -"ensure that the backend process is alive and capable of answering requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:715 sssd-ldap.5.xml:1131 -msgid "Default: 10" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:721 -msgid "enumerate (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:724 -msgid "" -"Determines if a domain can be enumerated. This parameter can have one of the " -"following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:728 -msgid "TRUE = Users and groups are enumerated" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:731 -msgid "FALSE = No enumerations for this domain" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:734 sssd.conf.5.xml:839 sssd.conf.5.xml:893 -msgid "Default: FALSE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:737 -msgid "" -"Note: Enabling enumeration has a moderate performance impact on SSSD while " -"enumeration is running. It may take up to several minutes after SSSD startup " -"to fully complete enumerations. During this time, individual requests for " -"information will go directly to LDAP, though it may be slow, due to the " -"heavy enumeration processing." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:747 -msgid "" -"While the first enumeration is running, requests for the complete user or " -"group lists may return no results until it completes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:752 -msgid "" -"Further, enabling enumeration may increase the time necessary to detect " -"network disconnection, as longer timeouts are required to ensure that " -"enumeration lookups are completed successfully. For more information, refer " -"to the man pages for the specific id_provider in use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:763 -msgid "entry_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:766 -msgid "" -"How many seconds should nss_sss consider entries valid before asking the " -"backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:770 -msgid "Default: 5400" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:776 -msgid "entry_cache_user_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:779 -msgid "" -"How many seconds should nss_sss consider user entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:783 sssd.conf.5.xml:796 sssd.conf.5.xml:809 -#: sssd.conf.5.xml:822 -msgid "Default: entry_cache_timeout" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:789 -msgid "entry_cache_group_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:792 -msgid "" -"How many seconds should nss_sss consider group entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:802 -msgid "entry_cache_netgroup_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:805 -msgid "" -"How many seconds should nss_sss consider netgroup entries valid before " -"asking the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:815 -msgid "entry_cache_service_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:818 -msgid "" -"How many seconds should nss_sss consider service entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:828 -msgid "cache_credentials (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:831 -msgid "Determines if user credentials are also cached in the local LDB cache" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:835 -msgid "User credentials are stored in a SHA512 hash, not in plaintext" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:844 -msgid "account_cache_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:847 -msgid "" -"Number of days entries are left in cache after last successful login before " -"being removed during a cleanup of the cache. 0 means keep forever. The " -"value of this parameter must be greater than or equal to " -"offline_credentials_expiration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:854 -msgid "Default: 0 (unlimited)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:860 -msgid "id_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:863 -msgid "The Data Provider identity backend to use for this domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:867 -msgid "Supported backends:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:870 -msgid "proxy: Support a legacy NSS provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:873 -msgid "local: SSSD internal local provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:876 -msgid "ldap: LDAP provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:882 -msgid "use_fully_qualified_names (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:885 -msgid "" -"If set to TRUE, all requests to this domain must use fully qualified names. " -"For example, if used in LOCAL domain that contains a \"test\" user, " -"<command>getent passwd test</command> wouldn't find the user while " -"<command>getent passwd test@LOCAL</command> would." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:898 -msgid "auth_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:901 -msgid "" -"The authentication provider used for the domain. Supported auth providers " -"are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:905 -msgid "" -"<quote>ldap</quote> for native LDAP authentication. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:912 -msgid "" -"<quote>krb5</quote> for Kerberos authentication. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:919 -msgid "" -"<quote>proxy</quote> for relaying authentication to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:922 -msgid "<quote>none</quote> disables authentication explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:925 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"authentication requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:931 -msgid "access_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:934 -msgid "" -"The access control provider used for the domain. There are two built-in " -"access providers (in addition to any included in installed backends) " -"Internal special providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:940 -msgid "<quote>permit</quote> always allow access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:943 -msgid "<quote>deny</quote> always deny access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:946 -msgid "" -"<quote>simple</quote> access control based on access or deny lists. See " -"<citerefentry> <refentrytitle>sssd-simple</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry> for more information on configuring the simple " -"access module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:953 -msgid "Default: <quote>permit</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:958 -msgid "chpass_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:961 -msgid "" -"The provider which should handle change password operations for the domain. " -"Supported change password providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:966 -msgid "" -"<quote>ipa</quote> to change a password stored in an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:974 -msgid "" -"<quote>ldap</quote> to change a password stored in a LDAP server. See " -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:982 -msgid "" -"<quote>krb5</quote> to change the Kerberos password. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:990 -msgid "" -"<quote>proxy</quote> for relaying password changes to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:994 -msgid "<quote>none</quote> disallows password changes explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:997 -msgid "" -"Default: <quote>auth_provider</quote> is used if it is set and can handle " -"change password requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1004 -msgid "sudo_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1010 -msgid "The SUDO provider used for the domain. Supported SUDO providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1014 -msgid "" -"<quote>ldap</quote> for rules stored in LDAP. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1021 -msgid "<quote>none</quote> disables SUDO explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1024 -msgid "Default: The value of <quote>id_provider</quote> is used if it is set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1030 -msgid "session_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1033 -msgid "" -"The provider which should handle loading of session settings. Supported " -"session providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1038 -msgid "" -"<quote>ipa</quote> to load session settings from an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1046 -msgid "<quote>none</quote> disallows fetching session settings explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1049 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"session loading requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1056 -msgid "lookup_family_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1059 -msgid "" -"Provides the ability to select preferred address family to use when " -"performing DNS lookups." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1063 -msgid "Supported values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1066 -msgid "ipv4_first: Try looking up IPv4 address, if that fails, try IPv6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1069 -msgid "ipv4_only: Only attempt to resolve hostnames to IPv4 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1072 -msgid "ipv6_first: Try looking up IPv6 address, if that fails, try IPv4" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1075 -msgid "ipv6_only: Only attempt to resolve hostnames to IPv6 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1078 -msgid "Default: ipv4_first" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1084 -msgid "dns_resolver_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1087 -msgid "" -"Defines the amount of time (in seconds) to wait for a reply from the DNS " -"resolver before assuming that it is unreachable. If this timeout is reached, " -"the domain will continue to operate in offline mode." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1099 -msgid "dns_discovery_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1102 -msgid "" -"If service discovery is used in the back end, specifies the domain part of " -"the service discovery DNS query." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1106 -msgid "Default: Use the domain part of machine's hostname" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1112 -msgid "override_gid (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1115 -msgid "Override the primary GID value with the one specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1121 -msgid "case_sensitive (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1124 -msgid "" -"Treat user and group names as case sensitive. At the moment, this option is " -"not supported in the local provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1129 -msgid "Default: True" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:681 -msgid "" -"These configuration options can be present in a domain configuration " -"section, that is, in a section called <quote>[domain/<replaceable>NAME</" -"replaceable>]</quote> <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1141 -msgid "proxy_pam_target (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1144 -msgid "The proxy target PAM proxies to." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1147 -msgid "" -"Default: not set by default, you have to take an existing pam configuration " -"or create a new one and add the service name here." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1155 -msgid "proxy_lib_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1158 -msgid "" -"The name of the NSS library to use in proxy domains. The NSS functions " -"searched for in the library are in the form of _nss_$(libName)_$(function), " -"for example _nss_files_getpwent." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1137 -msgid "" -"Options valid for proxy domains. <placeholder type=\"variablelist\" id=" -"\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:1170 -msgid "The local domain section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:1172 -msgid "" -"This section contains settings for domain that stores users and groups in " -"SSSD native database, that is, a domain that uses " -"<replaceable>id_provider=local</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1179 -msgid "default_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1182 -msgid "The default shell for users created with SSSD userspace tools." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1186 -msgid "Default: <filename>/bin/bash</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1191 -msgid "base_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1194 -msgid "" -"The tools append the login name to <replaceable>base_directory</replaceable> " -"and use that as the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1199 -msgid "Default: <filename>/home</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1204 -msgid "create_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1207 -msgid "" -"Indicate if a home directory should be created by default for new users. " -"Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1211 sssd.conf.5.xml:1223 -msgid "Default: TRUE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1216 -msgid "remove_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1219 -msgid "" -"Indicate if a home directory should be removed by default for deleted " -"users. Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1228 -msgid "homedir_umask (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1231 -msgid "" -"Used by <citerefentry> <refentrytitle>sss_useradd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry> to specify the default permissions " -"on a newly created home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1239 -msgid "Default: 077" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1244 -msgid "skel_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1247 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<citerefentry> <refentrytitle>sss_useradd</refentrytitle> <manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1257 -msgid "Default: <filename>/etc/skel</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1262 -msgid "mail_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1265 -msgid "" -"The mail spool directory. This is needed to manipulate the mailbox when its " -"corresponding user account is modified or deleted. If not specified, a " -"default value is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1272 -msgid "Default: <filename>/var/mail</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1277 -msgid "userdel_cmd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1280 -msgid "" -"The command that is run after a user is removed. The command us passed the " -"username of the user being removed as the first and only parameter. The " -"return code of the command is not taken into account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1286 -msgid "Default: None, no command is run" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:1296 sssd-ldap.5.xml:2064 sssd-simple.5.xml:126 -#: sssd-ipa.5.xml:544 sssd-krb5.5.xml:432 -msgid "EXAMPLE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:1302 -#, no-wrap -msgid "" -"[sssd]\n" -"domains = LDAP\n" -"services = nss, pam\n" -"config_file_version = 2\n" -"\n" -"[nss]\n" -"filter_groups = root\n" -"filter_users = root\n" -"\n" -"[pam]\n" -"\n" -"[domain/LDAP]\n" -"id_provider = ldap\n" -"ldap_uri = ldap://ldap.example.com\n" -"ldap_search_base = dc=example,dc=com\n" -"\n" -"auth_provider = krb5\n" -"krb5_server = kerberos.example.com\n" -"krb5_realm = EXAMPLE.COM\n" -"cache_credentials = true\n" -"\n" -"min_id = 10000\n" -"max_id = 20000\n" -"enumerate = False\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1298 -msgid "" -"The following example shows a typical SSSD config. It does not describe " -"configuration of the domains themselves - refer to documentation on " -"configuring domains for more details. <placeholder type=\"programlisting\" " -"id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1333 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>pam_sss</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ldap.5.xml:10 sssd-ldap.5.xml:16 -msgid "sssd-ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:23 -msgid "" -"This manual page describes the configuration of LDAP domains for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. Refer to the <quote>FILE FORMAT</quote> section of the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for detailed syntax information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:35 -msgid "You can configure SSSD to use more than one LDAP domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:38 -msgid "" -"LDAP back end supports id, auth, access and chpass providers. If you want to " -"authenticate against an LDAP server either TLS/SSL or LDAPS is required. " -"<command>sssd</command> <emphasis>does not</emphasis> support authentication " -"over an unencrypted channel. If the LDAP server is used only as an identity " -"provider, an encrypted channel is not needed. Please refer to " -"<quote>ldap_access_filter</quote> config option for more information about " -"using LDAP as an access provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:49 sssd-simple.5.xml:69 sssd-ipa.5.xml:64 -#: sssd-krb5.5.xml:63 -msgid "CONFIGURATION OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:60 -msgid "ldap_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:63 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference. Refer to the <quote>FAILOVER</" -"quote> section for more information on failover and server redundancy. If " -"not specified, service discovery is enabled. For more information, refer to " -"the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:70 -msgid "The format of the URI must match the format defined in RFC 2732:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:73 -msgid "ldap[s]://<host>[:port]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:76 -msgid "" -"For explicit IPv6 addresses, <host> must be enclosed in brackets []" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:79 -msgid "example: ldap://[fc00::126:25]:389" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:85 -msgid "ldap_chpass_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:88 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference to change the password of a user. " -"Refer to the <quote>FAILOVER</quote> section for more information on " -"failover and server redundancy." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:95 -msgid "To enable service discovery ldap_chpass_dns_service_name must be set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:99 -msgid "Default: empty, i.e. ldap_uri is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:105 -msgid "ldap_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:108 -msgid "The default base DN to use for performing LDAP user operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:112 -msgid "" -"Starting with SSSD 1.7.0, SSSD supports multiple search bases using the " -"syntax:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:116 -msgid "search_base[?scope?[filter][?search_base?scope?[filter]]*]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:119 -msgid "The scope can be one of \"base\", \"onelevel\" or \"subtree\"." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:122 -msgid "" -"The filter must be a valid LDAP search filter as specified by http://www." -"ietf.org/rfc/rfc2254.txt" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:126 -msgid "Examples:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:129 -msgid "" -"ldap_search_base = dc=example,dc=com (which is equivalent to) " -"ldap_search_base = dc=example,dc=com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:134 -msgid "" -"ldap_search_base = cn=host_specific,dc=example,dc=com?subtree?" -"(host=thishost)?dc=example.com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:137 -msgid "" -"Note: It is unsupported to have multiple search bases which reference " -"identically-named objects (for example, groups with the same name in two " -"different search bases). This will lead to unpredictable behavior on client " -"machines." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:144 -msgid "" -"Default: If not set, the value of the defaultNamingContext or namingContexts " -"attribute from the RootDSE of the LDAP server is used. If " -"defaultNamingContext does not exists or has an empty value namingContexts is " -"used. The namingContexts attribute must have a single value with the DN of " -"the search base of the LDAP server to make this work. Multiple values are " -"are not supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:158 -msgid "ldap_schema (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:161 -msgid "" -"Specifies the Schema Type in use on the target LDAP server. Depending on " -"the selected schema, the default attribute names retrieved from the servers " -"may vary. The way that some attributes are handled may also differ. Three " -"schema types are currently supported: rfc2307 rfc2307bis IPA The main " -"difference between these schema types is how group memberships are recorded " -"in the server. With rfc2307, group members are listed by name in the " -"<emphasis>memberUid</emphasis> attribute. With rfc2307bis and IPA, group " -"members are listed by DN and stored in the <emphasis>member</emphasis> " -"attribute." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:180 -msgid "Default: rfc2307" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:186 -msgid "ldap_default_bind_dn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:189 -msgid "The default bind DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:196 -msgid "ldap_default_authtok_type (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:199 -msgid "The type of the authentication token of the default bind DN." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:203 -msgid "The two mechanisms currently supported are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:206 -msgid "password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:209 -msgid "obfuscated_password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:212 -msgid "Default: password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:218 -msgid "ldap_default_authtok (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:221 -msgid "" -"The authentication token of the default bind DN. Only clear text passwords " -"are currently supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:228 -msgid "ldap_user_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:231 -msgid "The object class of a user entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:234 -msgid "Default: posixAccount" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:240 -msgid "ldap_user_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:243 -msgid "The LDAP attribute that corresponds to the user's login name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:247 -msgid "Default: uid" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:253 -msgid "ldap_user_uid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:256 -msgid "The LDAP attribute that corresponds to the user's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:260 -msgid "Default: uidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:266 -msgid "ldap_user_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:269 -msgid "The LDAP attribute that corresponds to the user's primary group id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:273 sssd-ldap.5.xml:740 -msgid "Default: gidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:279 -msgid "ldap_user_gecos (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:282 -msgid "The LDAP attribute that corresponds to the user's gecos field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:286 -msgid "Default: gecos" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:292 -msgid "ldap_user_home_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:295 -msgid "The LDAP attribute that contains the name of the user's home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:299 -msgid "Default: homeDirectory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:305 -msgid "ldap_user_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:308 -msgid "The LDAP attribute that contains the path to the user's default shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:312 -msgid "Default: loginShell" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:318 -msgid "ldap_user_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:321 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP user object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:325 sssd-ldap.5.xml:766 sssd-ldap.5.xml:878 -msgid "Default: nsUniqueId" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:331 -msgid "ldap_user_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:334 sssd-ldap.5.xml:775 sssd-ldap.5.xml:887 -msgid "" -"The LDAP attribute that contains timestamp of the last modification of the " -"parent object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:338 sssd-ldap.5.xml:779 sssd-ldap.5.xml:894 -msgid "Default: modifyTimestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:344 -msgid "ldap_user_shadow_last_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:347 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (date of " -"the last password change)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:357 -msgid "Default: shadowLastChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:363 -msgid "ldap_user_shadow_min (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:366 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (minimum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:375 -msgid "Default: shadowMin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:381 -msgid "ldap_user_shadow_max (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:384 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (maximum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:393 -msgid "Default: shadowMax" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:399 -msgid "ldap_user_shadow_warning (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:402 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password warning period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:412 -msgid "Default: shadowWarning" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:418 -msgid "ldap_user_shadow_inactive (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:421 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password inactivity period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:431 -msgid "Default: shadowInactive" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:437 -msgid "ldap_user_shadow_expire (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:440 -msgid "" -"When using ldap_pwd_policy=shadow or ldap_account_expire_policy=shadow, this " -"parameter contains the name of an LDAP attribute corresponding to its " -"<citerefentry> <refentrytitle>shadow</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> counterpart (account expiration date)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:450 -msgid "Default: shadowExpire" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:456 -msgid "ldap_user_krb_last_pwd_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:459 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time of last password change in " -"kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:465 -msgid "Default: krbLastPwdChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:471 -msgid "ldap_user_krb_password_expiration (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:474 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time when current password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:480 -msgid "Default: krbPasswordExpiration" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:486 -msgid "ldap_user_ad_account_expires (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:489 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the expiration time of the account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:494 -msgid "Default: accountExpires" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:500 -msgid "ldap_user_ad_user_account_control (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:503 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the user account control bit field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:508 -msgid "Default: userAccountControl" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:514 -msgid "ldap_ns_account_lock (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:517 -msgid "" -"When using ldap_account_expire_policy=rhds or equivalent, this parameter " -"determines if access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:522 -msgid "Default: nsAccountLock" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:528 -msgid "ldap_user_nds_login_disabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:531 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines if " -"access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:535 sssd-ldap.5.xml:549 -msgid "Default: loginDisabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:541 -msgid "ldap_user_nds_login_expiration_time (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:544 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines until " -"which date access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:555 -msgid "ldap_user_nds_login_allowed_time_map (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:558 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines the " -"hours of a day in a week when access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:563 -msgid "Default: loginAllowedTimeMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:569 -msgid "ldap_user_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:572 -msgid "" -"The LDAP attribute that contains the user's Kerberos User Principal Name " -"(UPN)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:576 -msgid "Default: krbPrincipalName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:582 -msgid "ldap_user_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:585 -msgid "The LDAP attribute that contains the user's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:592 -msgid "ldap_force_upper_case_realm (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:595 -msgid "" -"Some directory servers, for example Active Directory, might deliver the " -"realm part of the UPN in lower case, which might cause the authentication to " -"fail. Set this option to a non-zero value if you want to use an upper-case " -"realm." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:608 -msgid "ldap_enumeration_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:611 -msgid "" -"Specifies how many seconds SSSD has to wait before refreshing its cache of " -"enumerated records." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:616 sssd-ldap.5.xml:1808 -msgid "Default: 300" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:622 -msgid "ldap_purge_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:625 -msgid "" -"Determine how often to check the cache for inactive entries (such as groups " -"with no members and users who have never logged in) and remove them to save " -"space." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:631 -msgid "Setting this option to zero will disable the cache cleanup operation." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:635 -msgid "Default: 10800 (12 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:641 -msgid "ldap_user_fullname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:644 -msgid "The LDAP attribute that corresponds to the user's full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:648 sssd-ldap.5.xml:727 sssd-ldap.5.xml:828 -#: sssd-ldap.5.xml:919 sssd-ldap.5.xml:1663 sssd-ldap.5.xml:1881 -#: sssd-ipa.5.xml:422 -msgid "Default: cn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:654 -msgid "ldap_user_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:657 -msgid "The LDAP attribute that lists the user's group memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:661 sssd-ipa.5.xml:326 -msgid "Default: memberOf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:667 -msgid "ldap_user_authorized_service (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:670 -msgid "" -"If access_provider=ldap and ldap_access_order=authorized_service, SSSD will " -"use the presence of the authorizedService attribute in the user's LDAP entry " -"to determine access privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:677 -msgid "" -"An explicit deny (!svc) is resolved first. Second, SSSD searches for " -"explicit allow (svc) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:682 -msgid "Default: authorizedService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:688 -msgid "ldap_user_authorized_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:691 -msgid "" -"If access_provider=ldap and ldap_access_order=host, SSSD will use the " -"presence of the host attribute in the user's LDAP entry to determine access " -"privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:697 -msgid "" -"An explicit deny (!host) is resolved first. Second, SSSD searches for " -"explicit allow (host) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:702 -msgid "Default: host" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:708 -msgid "ldap_group_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:711 -msgid "The object class of a group entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:714 -msgid "Default: posixGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:720 -msgid "ldap_group_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:723 -msgid "The LDAP attribute that corresponds to the group name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:733 -msgid "ldap_group_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:736 -msgid "The LDAP attribute that corresponds to the group's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:746 -msgid "ldap_group_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:749 -msgid "The LDAP attribute that contains the names of the group's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:753 -msgid "Default: memberuid (rfc2307) / member (rfc2307bis)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:759 -msgid "ldap_group_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:762 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP group object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:772 -msgid "ldap_group_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:785 -msgid "ldap_group_nesting_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:788 -msgid "" -"If ldap_schema is set to a schema format that supports nested groups (e.g. " -"RFC2307bis), then this option controls how many levels of nesting SSSD will " -"follow. This option has no effect on the RFC2307 schema." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:795 -msgid "Default: 2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:801 -msgid "ldap_netgroup_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:804 -msgid "The object class of a netgroup entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:807 -msgid "In IPA provider, ipa_netgroup_object_class should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:811 -msgid "Default: nisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:817 -msgid "ldap_netgroup_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:820 -msgid "The LDAP attribute that corresponds to the netgroup name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:824 -msgid "In IPA provider, ipa_netgroup_name should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:834 -msgid "ldap_netgroup_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:837 -msgid "The LDAP attribute that contains the names of the netgroup's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:841 -msgid "In IPA provider, ipa_netgroup_member should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:845 -msgid "Default: memberNisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:851 -msgid "ldap_netgroup_triple (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:854 -msgid "" -"The LDAP attribute that contains the (host, user, domain) netgroup triples." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:858 sssd-ldap.5.xml:891 -msgid "This option is not available in IPA provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:861 -msgid "Default: nisNetgroupTriple" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:867 -msgid "ldap_netgroup_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:870 -msgid "" -"The LDAP attribute that contains the UUID/GUID of an LDAP netgroup object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:874 -msgid "In IPA provider, ipa_netgroup_uuid should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:884 -msgid "ldap_netgroup_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:900 -msgid "ldap_service_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:903 -msgid "The object class of a service entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:906 -msgid "Default: ipService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:912 -msgid "ldap_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:915 -msgid "" -"The LDAP attribute that contains the name of service attributes and their " -"aliases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:925 -msgid "ldap_service_port (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:928 -msgid "The LDAP attribute that contains the port managed by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:932 -msgid "Default: ipServicePort" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:938 -msgid "ldap_service_proto (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:941 -msgid "" -"The LDAP attribute that contains the protocols understood by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:945 -msgid "Default: ipServiceProtocol" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:951 -msgid "ldap_service_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:954 -msgid "An optional base DN to restrict service searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:958 sssd-ldap.5.xml:1918 sssd-ldap.5.xml:1937 -#: sssd-ldap.5.xml:1956 sssd-ldap.5.xml:2019 sssd-ldap.5.xml:2041 -#: sssd-ipa.5.xml:163 sssd-ipa.5.xml:187 -msgid "" -"See <quote>ldap_search_base</quote> for information about configuring " -"multiple search bases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:963 sssd-ldap.5.xml:1923 sssd-ldap.5.xml:1942 -#: sssd-ldap.5.xml:1961 sssd-ldap.5.xml:2024 sssd-ldap.5.xml:2046 -#: sssd-ipa.5.xml:173 sssd-ipa.5.xml:192 -msgid "Default: the value of <emphasis>ldap_search_base</emphasis>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:970 -msgid "ldap_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:973 -msgid "" -"Specifies the timeout (in seconds) that ldap searches are allowed to run " -"before they are cancelled and cached results are returned (and offline mode " -"is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:979 -msgid "" -"Note: this option is subject to change in future versions of the SSSD. It " -"will likely be replaced at some point by a series of timeouts for specific " -"lookup types." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:985 sssd-ldap.5.xml:1027 sssd-ldap.5.xml:1042 -msgid "Default: 6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:991 -msgid "ldap_enumeration_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:994 -msgid "" -"Specifies the timeout (in seconds) that ldap searches for user and group " -"enumerations are allowed to run before they are cancelled and cached results " -"are returned (and offline mode is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1001 -msgid "Default: 60" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1007 -msgid "ldap_network_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1010 -msgid "" -"Specifies the timeout (in seconds) after which the <citerefentry> " -"<refentrytitle>poll</refentrytitle> <manvolnum>2</manvolnum> </citerefentry>/" -"<citerefentry> <refentrytitle>select</refentrytitle> <manvolnum>2</" -"manvolnum> </citerefentry> following a <citerefentry> " -"<refentrytitle>connect</refentrytitle> <manvolnum>2</manvolnum> </" -"citerefentry> returns in case of no activity." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1033 -msgid "ldap_opt_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1036 -msgid "" -"Specifies a timeout (in seconds) after which calls to synchronous LDAP APIs " -"will abort if no response is received. Also controls the timeout when " -"communicating with the KDC in case of SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1048 -msgid "ldap_connection_expire_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1051 -msgid "" -"Specifies a timeout (in seconds) that a connection to an LDAP server will be " -"maintained. After this time, the connection will be re-established. If used " -"in parallel with SASL/GSSAPI, the sooner of the two values (this value vs. " -"the TGT lifetime) will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1059 -msgid "Default: 900 (15 minutes)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1065 -msgid "ldap_page_size (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1068 -msgid "" -"Specify the number of records to retrieve from LDAP in a single request. " -"Some LDAP servers enforce a maximum limit per-request." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1073 -msgid "Default: 1000" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1079 -msgid "ldap_disable_paging" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1082 -msgid "" -"Disable the LDAP paging control. This option should be used if the LDAP " -"server reports that it supports the LDAP paging control in its RootDSE but " -"it is not enabled or does not behave properly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1088 -msgid "" -"Example: OpenLDAP servers with the paging control module installed on the " -"server but not enabled will report it in the RootDSE but be unable to use it." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1094 -msgid "" -"Example: 389 DS has a bug where it can only support a one paging control at " -"a time on a single connection. On busy clients, this can result in some " -"requests being denied." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1103 -msgid "ldap_deref_threshold (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1106 -msgid "" -"Specify the number of group members that must be missing from the internal " -"cache in order to trigger a dereference lookup. If less members are missing, " -"they are looked up individually." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1112 -msgid "" -"You can turn off dereference lookups completely by setting the value to 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1116 -msgid "" -"A dereference lookup is a means of fetching all group members in a single " -"LDAP call. Different LDAP servers may implement different dereference " -"methods. The currently supported servers are 389/RHDS, OpenLDAP and Active " -"Directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1124 -msgid "" -"<emphasis>Note:</emphasis> If any of the search bases specifies a search " -"filter, then the dereference lookup performance enhancement will be disabled " -"regardless of this setting." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1137 -msgid "ldap_tls_reqcert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1140 -msgid "" -"Specifies what checks to perform on server certificates in a TLS session, if " -"any. It can be specified as one of the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1146 -msgid "" -"<emphasis>never</emphasis> = The client will not request or check any server " -"certificate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1150 -msgid "" -"<emphasis>allow</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, it will be ignored and the session proceeds normally." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1157 -msgid "" -"<emphasis>try</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, the session is immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1163 -msgid "" -"<emphasis>demand</emphasis> = The server certificate is requested. If no " -"certificate is provided, or a bad certificate is provided, the session is " -"immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1169 -msgid "<emphasis>hard</emphasis> = Same as <quote>demand</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1173 -msgid "Default: hard" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1179 -msgid "ldap_tls_cacert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1182 -msgid "" -"Specifies the file that contains certificates for all of the Certificate " -"Authorities that <command>sssd</command> will recognize." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1187 sssd-ldap.5.xml:1205 sssd-ldap.5.xml:1246 -msgid "" -"Default: use OpenLDAP defaults, typically in <filename>/etc/openldap/ldap." -"conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1194 -msgid "ldap_tls_cacertdir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1197 -msgid "" -"Specifies the path of a directory that contains Certificate Authority " -"certificates in separate individual files. Typically the file names need to " -"be the hash of the certificate followed by '.0'. If available, " -"<command>cacertdir_rehash</command> can be used to create the correct names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1212 -msgid "ldap_tls_cert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1215 -msgid "Specifies the file that contains the certificate for the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1219 sssd-ldap.5.xml:1231 sssd-ldap.5.xml:1979 -#: sssd-ldap.5.xml:2006 sssd-krb5.5.xml:359 -msgid "Default: not set" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1225 -msgid "ldap_tls_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1228 -msgid "Specifies the file that contains the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1237 -msgid "ldap_tls_cipher_suite (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1240 -msgid "" -"Specifies acceptable cipher suites. Typically this is a colon sperated " -"list. See <citerefentry><refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> for format." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1253 -msgid "ldap_id_use_start_tls (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1256 -msgid "" -"Specifies that the id_provider connection must also use <systemitem class=" -"\"protocol\">tls</systemitem> to protect the channel." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1266 -msgid "ldap_sasl_mech (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1269 -msgid "" -"Specify the SASL mechanism to use. Currently only GSSAPI is tested and " -"supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1273 sssd-ldap.5.xml:1428 -msgid "Default: none" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1279 -msgid "ldap_sasl_authid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1282 -msgid "" -"Specify the SASL authorization id to use. When GSSAPI is used, this " -"represents the Kerberos principal used for authentication to the directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1287 -msgid "Default: host/machine.fqdn@REALM" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1293 -msgid "ldap_sasl_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1296 -msgid "" -"If set to true, the LDAP library would perform a reverse lookup to " -"canonicalize the host name during a SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1301 -msgid "Default: false;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1307 -msgid "ldap_krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1310 -msgid "Specify the keytab to use when using SASL/GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1313 -msgid "Default: System keytab, normally <filename>/etc/krb5.keytab</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1319 -msgid "ldap_krb5_init_creds (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1322 -msgid "" -"Specifies that the id_provider should init Kerberos credentials (TGT). This " -"action is performed only if SASL is used and the mechanism selected is " -"GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1334 -msgid "ldap_krb5_ticket_lifetime (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1337 -msgid "Specifies the lifetime in seconds of the TGT if GSSAPI is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1341 -msgid "Default: 86400 (24 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1347 sssd-krb5.5.xml:74 -msgid "krb5_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1350 sssd-krb5.5.xml:77 -msgid "" -"Specifies the comma-separated list of IP addresses or hostnames of the " -"Kerberos servers to which SSSD should connect in the order of preference. " -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. An optional port number (preceded by a " -"colon) may be appended to the addresses or hostnames. If empty, service " -"discovery is enabled - for more information, refer to the <quote>SERVICE " -"DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1362 sssd-krb5.5.xml:89 -msgid "" -"When using service discovery for KDC or kpasswd servers, SSSD first searches " -"for DNS entries that specify _udp as the protocol and falls back to _tcp if " -"none are found." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1367 sssd-krb5.5.xml:94 -msgid "" -"This option was named <quote>krb5_kdcip</quote> in earlier releases of SSSD. " -"While the legacy name is recognized for the time being, users are advised to " -"migrate their config files to use <quote>krb5_server</quote> instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1376 sssd-ipa.5.xml:216 sssd-krb5.5.xml:103 -msgid "krb5_realm (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1379 -msgid "Specify the Kerberos REALM (for SASL/GSSAPI auth)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1382 -msgid "Default: System defaults, see <filename>/etc/krb5.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1388 sssd-ipa.5.xml:231 sssd-krb5.5.xml:409 -msgid "krb5_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1391 -msgid "" -"Specifies if the host principal should be canonicalized when connecting to " -"LDAP server. This feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1403 -msgid "ldap_pwd_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1406 -msgid "" -"Select the policy to evaluate the password expiration on the client side. " -"The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1411 -msgid "" -"<emphasis>none</emphasis> - No evaluation on the client side. This option " -"cannot disable server-side password policies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1416 -msgid "" -"<emphasis>shadow</emphasis> - Use <citerefentry><refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum></citerefentry> style attributes to " -"evaluate if the password has expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1422 -msgid "" -"<emphasis>mit_kerberos</emphasis> - Use the attributes used by MIT Kerberos " -"to determine if the password has expired. Use chpass_provider=krb5 to update " -"these attributes when the password is changed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1434 -msgid "ldap_referrals (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1437 -msgid "Specifies whether automatic referral chasing should be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1441 -msgid "" -"Please note that sssd only supports referral chasing when it is compiled " -"with OpenLDAP version 2.4.13 or higher." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1452 -msgid "ldap_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1455 -msgid "Specifies the service name to use when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1459 -msgid "Default: ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1465 -msgid "ldap_chpass_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1468 -msgid "" -"Specifies the service name to use to find an LDAP server which allows " -"password changes when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1473 -msgid "Default: not set, i.e. service discovery is disabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1479 -msgid "ldap_access_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1482 -msgid "" -"If using access_provider = ldap, this option is mandatory. It specifies an " -"LDAP search filter criteria that must be met for the user to be granted " -"access on this host. If access_provider = ldap and this option is not set, " -"it will result in all users being denied access. Use access_provider = allow " -"to change this default behavior." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1492 sssd-ldap.5.xml:1982 -msgid "Example:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1495 -#, no-wrap -msgid "" -"access_provider = ldap\n" -"ldap_access_filter = memberOf=cn=allowedusers,ou=Groups,dc=example,dc=com\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1499 -msgid "" -"This example means that access to this host is restricted to members of the " -"\"allowedusers\" group in ldap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1504 -msgid "" -"Offline caching for this feature is limited to determining whether the " -"user's last online login was granted access permission. If they were granted " -"access during their last login, they will continue to be granted access " -"while offline and vice-versa." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1512 sssd-ldap.5.xml:1562 -msgid "Default: Empty" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1518 -msgid "ldap_account_expire_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1521 -msgid "" -"With this option a client side evaluation of access control attributes can " -"be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1525 -msgid "" -"Please note that it is always recommended to use server side access control, " -"i.e. the LDAP server should deny the bind request with a suitable error code " -"even if the password is correct." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1532 -msgid "The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1535 -msgid "" -"<emphasis>shadow</emphasis>: use the value of ldap_user_shadow_expire to " -"determine if the account is expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1540 -msgid "" -"<emphasis>ad</emphasis>: use the value of the 32bit field " -"ldap_user_ad_user_account_control and allow access if the second bit is not " -"set. If the attribute is missing access is granted. Also the expiration time " -"of the account is checked." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1547 -msgid "" -"<emphasis>rhds</emphasis>, <emphasis>ipa</emphasis>, <emphasis>389ds</" -"emphasis>: use the value of ldap_ns_account_lock to check if access is " -"allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1553 -msgid "" -"<emphasis>nds</emphasis>: the values of " -"ldap_user_nds_login_allowed_time_map, ldap_user_nds_login_disabled and " -"ldap_user_nds_login_expiration_time are used to check if access is allowed. " -"If both attributes are missing access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1568 -msgid "ldap_access_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1571 -msgid "Comma separated list of access control options. Allowed values are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1575 -msgid "<emphasis>filter</emphasis>: use ldap_access_filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1578 -msgid "<emphasis>expire</emphasis>: use ldap_account_expire_policy" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1582 -msgid "" -"<emphasis>authorized_service</emphasis>: use the authorizedService attribute " -"to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1587 -msgid "<emphasis>host</emphasis>: use the host attribute to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1591 -msgid "Default: filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1594 -msgid "" -"Please note that it is a configuration error if a value is used more than " -"once." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1601 -msgid "ldap_deref (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1604 -msgid "" -"Specifies how alias dereferencing is done when performing a search. The " -"following options are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1609 -msgid "<emphasis>never</emphasis>: Aliases are never dereferenced." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1613 -msgid "" -"<emphasis>searching</emphasis>: Aliases are dereferenced in subordinates of " -"the base object, but not in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1618 -msgid "" -"<emphasis>finding</emphasis>: Aliases are only dereferenced when locating " -"the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1623 -msgid "" -"<emphasis>always</emphasis>: Aliases are dereferenced both in searching and " -"in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1628 -msgid "" -"Default: Empty (this is handled as <emphasis>never</emphasis> by the LDAP " -"client libraries)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:51 -msgid "" -"All of the common configuration options that apply to SSSD domains also " -"apply to LDAP domains. Refer to the <quote>DOMAIN SECTIONS</quote> section " -"of the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for full details. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1639 -msgid "SUDO OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1644 -msgid "ldap_sudorule_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1647 -msgid "The object class of a sudo rule entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1650 -msgid "Default: sudoRole" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1656 -msgid "ldap_sudorule_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1659 -msgid "The LDAP attribute that corresponds to the sudo rule name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1669 -msgid "ldap_sudorule_command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1672 -msgid "The LDAP attribute that corresponds to the command name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1676 -msgid "Default: sudoCommand" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1682 -msgid "ldap_sudorule_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1685 -msgid "" -"The LDAP attribute that corresponds to the host name (or host IP address, " -"host IP network, or host netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1690 -msgid "Default: sudoHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1696 -msgid "ldap_sudorule_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1699 -msgid "" -"The LDAP attribute that corresponds to the user name (or UID, group name or " -"user's netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1703 -msgid "Default: sudoUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1709 -msgid "ldap_sudorule_option (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1712 -msgid "The LDAP attribute that corresponds to the sudo options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1716 -msgid "Default: sudoOption" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1722 -msgid "ldap_sudorule_runasuser (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1725 -msgid "" -"The LDAP attribute that corresponds to the user name that commands may be " -"run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1729 -msgid "Default: sudoRunAsUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1735 -msgid "ldap_sudorule_runasgroup (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1738 -msgid "" -"The LDAP attribute that corresponds to the group name or group GID that " -"commands may be run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1742 -msgid "Default: sudoRunAsGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1748 -msgid "ldap_sudorule_notbefore (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1751 -msgid "" -"The LDAP attribute that corresponds to the start date/time for when the sudo " -"rule is valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1755 -msgid "Default: sudoNotBefore" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1761 -msgid "ldap_sudorule_notafter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1764 -msgid "" -"The LDAP attribute that corresponds to the expiration date/time, after which " -"the sudo rule will no longer be valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1769 -msgid "Default: sudoNotAfter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1775 -msgid "ldap_sudorule_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1778 -msgid "The LDAP attribute that corresponds to the ordering index of the rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1782 -msgid "Default: sudoOrder" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1788 -msgid "ldap_sudo_refresh_enabled (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1791 -msgid "" -"Enables periodical download of all sudo rules. The cache is purged before " -"each update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1801 -msgid "ldap_sudo_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1804 -msgid "" -"How many seconds SSSD has to wait before refreshing its cache of sudo rules." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1642 -msgid "<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1815 -msgid "" -"This manual page only describes attribute name mapping. For detailed " -"explanation of sudo related attribute semantics, see <citerefentry> " -"<refentrytitle>sudoers.ldap</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1825 -msgid "AUTOFS OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1827 -msgid "" -"Please note that the default values correspond to the default schema which " -"is RFC2307." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1834 -msgid "ldap_autofs_map_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1837 sssd-ldap.5.xml:1863 -msgid "The object class of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1840 sssd-ldap.5.xml:1867 -msgid "Default: automountMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1847 -msgid "ldap_autofs_map_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1850 -msgid "The name of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1853 -msgid "Default: ou" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1860 -msgid "ldap_autofs_entry_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1874 -msgid "ldap_autofs_entry_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1877 sssd-ldap.5.xml:1891 -msgid "" -"The key of an automount entry in LDAP. The entry usually corresponds to a " -"mount point." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1888 -msgid "ldap_autofs_entry_value (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1895 -msgid "Default: automountInformation" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1832 -msgid "" -"<placeholder type=\"variablelist\" id=\"0\"/> <placeholder type=" -"\"variablelist\" id=\"1\"/> <placeholder type=\"variablelist\" id=\"2\"/> " -"<placeholder type=\"variablelist\" id=\"3\"/> <placeholder type=" -"\"variablelist\" id=\"4\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1904 -msgid "ADVANCED OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1911 -msgid "ldap_netgroup_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1914 -msgid "" -"An optional base DN to restrict netgroup searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1930 -msgid "ldap_user_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1933 -msgid "An optional base DN to restrict user searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1949 -msgid "ldap_group_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1952 -msgid "An optional base DN to restrict group searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1968 -msgid "ldap_user_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1971 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict user searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1975 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_user_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1985 -#, no-wrap -msgid "" -" ldap_user_search_filter = (loginShell=/bin/tcsh)\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1988 -msgid "" -"This filter would restrict user searches to users that have their shell set " -"to /bin/tcsh." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1995 -msgid "ldap_group_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1998 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict group searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2002 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_group_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2012 -msgid "ldap_sudo_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2015 -msgid "" -"An optional base DN to restrict sudo rules searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2034 -msgid "ldap_autofs_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2037 -msgid "" -"An optional base DN to restrict automounter searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1906 -msgid "" -"These options are supported by LDAP domains, but they should be used with " -"caution. Please include them in your configuration only if you know what you " -"are doing. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2066 -msgid "" -"The following example assumes that SSSD is correctly configured and LDAP is " -"set to one of the domains in the <replaceable>[domains]</replaceable> " -"section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ldap.5.xml:2072 -#, no-wrap -msgid "" -" [domain/LDAP]\n" -" id_provider = ldap\n" -" auth_provider = ldap\n" -" ldap_uri = ldap://ldap.mydomain.org\n" -" ldap_search_base = dc=mydomain,dc=org\n" -" ldap_tls_reqcert = demand\n" -" cache_credentials = true\n" -" enumerate = true\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2071 sssd-simple.5.xml:134 sssd-ipa.5.xml:552 -#: sssd-krb5.5.xml:441 -msgid "<placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:2085 sssd_krb5_locator_plugin.8.xml:61 -msgid "NOTES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2087 -msgid "" -"The descriptions of some of the configuration options in this manual page " -"are based on the <citerefentry> <refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page from the OpenLDAP 2.4 " -"distribution." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2098 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <refentryinfo> -#: pam_sss.8.xml:8 include/upstream.xml:2 -msgid "" -"<productname>SSSD</productname> <orgname>The SSSD upstream - http://" -"fedorahosted.org/sssd</orgname>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: pam_sss.8.xml:13 pam_sss.8.xml:18 -msgid "pam_sss" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: pam_sss.8.xml:19 -msgid "PAM module for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: pam_sss.8.xml:24 -msgid "" -"<command>pam_sss.so</command> <arg choice='opt'> <replaceable>quiet</" -"replaceable> </arg> <arg choice='opt'> <replaceable>forward_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_first_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_authtok</" -"replaceable> </arg> <arg choice='opt'> <replaceable>retry=N</replaceable> </" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:45 -msgid "" -"<command>pam_sss.so</command> is the PAM interface to the System Security " -"Services daemon (SSSD). Errors and results are logged through <command>syslog" -"(3)</command> with the LOG_AUTHPRIV facility." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:55 -msgid "<option>quiet</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:58 -msgid "Suppress log messages for unknown users." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:63 -msgid "<option>forward_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:66 -msgid "" -"If <option>forward_pass</option> is set the entered password is put on the " -"stack for other PAM modules to use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:73 -msgid "<option>use_first_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:76 -msgid "" -"The argument use_first_pass forces the module to use a previous stacked " -"modules password and will never prompt the user - if no password is " -"available or the password is not appropriate, the user will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:84 -msgid "<option>use_authtok</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:87 -msgid "" -"When password changing enforce the module to set the new password to the one " -"provided by a previously stacked password module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:94 -msgid "<option>retry=N</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:97 -msgid "" -"If specified the user is asked another N times for a password if " -"authentication fails. Default is 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:99 -msgid "" -"Please note that this option might not work as expected if the application " -"calling PAM handles the user dialog on its own. A typical example is " -"<command>sshd</command> with <option>PasswordAuthentication</option>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:110 -msgid "MODULE TYPES PROVIDED" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:111 -msgid "" -"All module types (<option>account</option>, <option>auth</option>, " -"<option>password</option> and <option>session</option>) are provided." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:117 -msgid "FILES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:118 -msgid "" -"If a password reset by root fails, because the corresponding SSSD provider " -"does not support password resets, an individual message can be displayed. " -"This message can e.g. contain instructions about how to reset a password." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:123 -msgid "" -"The message is read from the file <filename>pam_sss_pw_reset_message.LOC</" -"filename> where LOC stands for a locale string returned by <citerefentry> " -"<refentrytitle>setlocale</refentrytitle><manvolnum>3</manvolnum> </" -"citerefentry>. If there is no matching file the content of " -"<filename>pam_sss_pw_reset_message.txt</filename> is displayed. Root must be " -"the owner of the files and only root may have read and write permissions " -"while all other users must have only read permissions." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:133 -msgid "" -"These files are searched in the directory <filename>/etc/sssd/customize/" -"DOMAIN_NAME/</filename>. If no matching file is present a generic message is " -"displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:141 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd_krb5_locator_plugin.8.xml:10 sssd_krb5_locator_plugin.8.xml:15 -msgid "sssd_krb5_locator_plugin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:22 -msgid "" -"The Kerberos locator plugin <command>sssd_krb5_locator_plugin</command> is " -"used by the Kerberos provider of <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry> to tell the Kerberos " -"libraries what Realm and which KDC to use. Typically this is done in " -"<citerefentry> <refentrytitle>krb5.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> which is always read by the Kerberos libraries. " -"To simplify the configuration the Realm and the KDC can be defined in " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> as described in <citerefentry> " -"<refentrytitle>sssd-krb5.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry> puts the Realm and the name or IP address of the KDC into " -"the environment variables SSSD_KRB5_REALM and SSSD_KRB5_KDC respectively. " -"When <command>sssd_krb5_locator_plugin</command> is called by the kerberos " -"libraries it reads and evaluates these variables and returns them to the " -"libraries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:63 -msgid "" -"Not all Kerberos implementations support the use of plugins. If " -"<command>sssd_krb5_locator_plugin</command> is not available on your system " -"you have to edit /etc/krb5.conf to reflect your Kerberos setup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:69 -msgid "" -"If the environment variable SSSD_KRB5_LOCATOR_DEBUG is set to any value " -"debug messages will be sent to stderr." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:77 -msgid "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-simple.5.xml:10 sssd-simple.5.xml:16 -msgid "sssd-simple" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd-simple.5.xml:17 -msgid "the configuration file for SSSD's 'simple' access-control provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:24 -msgid "" -"This manual page describes the configuration of the simple access-control " -"provider for <citerefentry> <refentrytitle>sssd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry>. For a detailed syntax reference, " -"refer to the <quote>FILE FORMAT</quote> section of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:38 -msgid "" -"The simple access provider grants or denies access based on an access or " -"deny list of user or group names. The following rules apply:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:43 -msgid "If all lists are empty, access is granted" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:47 -msgid "" -"If any list is provided, the order of evaluation is allow,deny. This means " -"that any matching deny rule will supersede any matched allow rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:54 -msgid "" -"If either or both \"allow\" lists are provided, all users are denied unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:60 -msgid "" -"If only \"deny\" lists are provided, all users are granted access unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:78 -msgid "simple_allow_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:81 -msgid "Comma separated list of users who are allowed to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:88 -msgid "simple_deny_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:91 -msgid "Comma separated list of users who are explicitly denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:97 -msgid "simple_allow_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:100 -msgid "" -"Comma separated list of groups that are allowed to log in. This applies only " -"to groups within this SSSD domain. Local groups are not evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:108 -msgid "simple_deny_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:111 -msgid "" -"Comma separated list of groups that are explicitly denied access. This " -"applies only to groups within this SSSD domain. Local groups are not " -"evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:70 sssd-ipa.5.xml:65 -msgid "" -"Refer to the section <quote>DOMAIN SECTIONS</quote> of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page for details on the configuration of an SSSD " -"domain. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:120 -msgid "" -"Please note that it is an configuration error if both, simple_allow_users " -"and simple_deny_users, are defined." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:128 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the simple access provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-simple.5.xml:135 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" access_provider = simple\n" -" simple_allow_users = user1, user2\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:145 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ipa.5.xml:10 sssd-ipa.5.xml:16 -msgid "sssd-ipa" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:23 -msgid "" -"This manual page describes the configuration of the IPA provider for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. For a detailed syntax reference, refer to the <quote>FILE " -"FORMAT</quote> section of the <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:36 -msgid "" -"The IPA provider is a back end used to connect to an IPA server. (Refer to " -"the freeipa.org web site for information about IPA servers.) This provider " -"requires that the machine be joined to the IPA domain; configuration is " -"almost entirely self-discovered and obtained directly from the server." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:43 -msgid "" -"The IPA provider accepts the same options used by the <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> identity provider and the <citerefentry> <refentrytitle>sssd-" -"krb5</refentrytitle> <manvolnum>5</manvolnum> </citerefentry> authentication " -"provider with some exceptions described below." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:55 -msgid "" -"However, it is neither necessary nor recommended to set these options. IPA " -"provider can also be used as an access and chpass provider. As an access " -"provider it uses HBAC (host-based access control) rules. Please refer to " -"freeipa.org for more information about HBAC. No configuration of access " -"provider is required on the client side." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:72 -msgid "ipa_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:75 -msgid "" -"Specifies the name of the IPA domain. This is optional. If not provided, " -"the configuration domain name is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:83 -msgid "ipa_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:86 -msgid "" -"The comma-separated list of IP addresses or hostnames of the IPA servers to " -"which SSSD should connect in the order of preference. For more information " -"on failover and server redundancy, see the <quote>FAILOVER</quote> section. " -"This is optional if autodiscovery is enabled. For more information on " -"service discovery, refer to the the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:99 -msgid "ipa_hostname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:102 -msgid "" -"Optional. May be set on machines where the hostname(5) does not reflect the " -"fully qualified name used in the IPA domain to identify this host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:110 -msgid "ipa_dyndns_update (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:113 -msgid "" -"Optional. This option tells SSSD to automatically update the DNS server " -"built into FreeIPA v2 with the IP address of this client." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:118 -msgid "" -"NOTE: On older systems (such as RHEL 5), for this behavior to work reliably, " -"the default Kerberos realm must be set properly in /etc/krb5.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:129 -msgid "ipa_dyndns_iface (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:132 -msgid "" -"Optional. Applicable only when ipa_dyndns_update is true. Choose the " -"interface whose IP address should be used for dynamic DNS updates." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:137 -msgid "Default: Use the IP address of the IPA LDAP connection" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:143 -msgid "ipa_hbac_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:146 -msgid "Optional. Use the given string as search base for HBAC related objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:150 -msgid "Default: Use base DN" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:156 -msgid "ipa_host_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:159 -msgid "Optional. Use the given string as search base for host objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:168 -msgid "" -"If filter is given in any of search bases and " -"<emphasis>ipa_hbac_support_srchost</emphasis> is set to False, the filter " -"will be ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:180 -msgid "ipa_selinux_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:183 -msgid "Optional. Use the given string as search base for SELinux user maps." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:199 sssd-krb5.5.xml:229 -msgid "krb5_validate (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:202 sssd-krb5.5.xml:232 -msgid "" -"Verify with the help of krb5_keytab that the TGT obtained has not been " -"spoofed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:209 -msgid "" -"Note that this default differs from the traditional Kerberos provider back " -"end." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:219 -msgid "" -"The name of the Kerberos realm. This is optional and defaults to the value " -"of <quote>ipa_domain</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:223 -msgid "" -"The name of the Kerberos realm has a special meaning in IPA - it is " -"converted into the base DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:234 -msgid "" -"Specifies if the host and user principal should be canonicalized when " -"connecting to IPA LDAP and also for AS requests. This feature is available " -"with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:247 -msgid "ipa_hbac_refresh (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:250 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server. " -"This will reduce the latency and load on the IPA server if there are many " -"access-control requests made in a short period." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:257 -msgid "Default: 5 (seconds)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:262 -msgid "ipa_hbac_treat_deny_as (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:265 -msgid "" -"This option specifies how to treat the deprecated DENY-type HBAC rules. As " -"of FreeIPA v2.1, DENY rules are no longer supported on the server. All users " -"of FreeIPA will need to migrate their rules to use only the ALLOW rules. The " -"client will support two modes of operation during this transition period:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:274 -msgid "" -"<emphasis>DENY_ALL</emphasis>: If any HBAC DENY rules are detected, all " -"users will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:279 -msgid "" -"<emphasis>IGNORE</emphasis>: SSSD will ignore any DENY rules. Be very " -"careful with this option, as it may result in opening unintended access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:284 -msgid "Default: DENY_ALL" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:289 -msgid "ipa_hbac_support_srchost (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:292 -msgid "" -"If this is set to false, then srchost as given to SSSD by PAM will be " -"ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:296 -msgid "" -"Note that if set to <emphasis>False</emphasis>, this option casuses filters " -"given in <emphasis>ipa_host_search_base</emphasis> to be ignored;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:307 -msgid "ipa_automount_location (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:310 -msgid "The automounter location this IPA client will be using" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:313 -msgid "Default: The location named \"default\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:319 -msgid "ipa_netgroup_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:322 -msgid "The LDAP attribute that lists netgroup's memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:331 -msgid "ipa_netgroup_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:334 -msgid "" -"The LDAP attribute that lists system users and groups that are direct " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:339 sssd-ipa.5.xml:434 -msgid "Default: memberUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:344 -msgid "ipa_netgroup_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:347 -msgid "" -"The LDAP attribute that lists hosts and host groups that are direct members " -"of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:351 sssd-ipa.5.xml:446 -msgid "Default: memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:356 -msgid "ipa_netgroup_member_ext_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:359 -msgid "" -"The LDAP attribute that lists FQDNs of hosts and host groups that are " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:363 -msgid "Default: externalHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:368 -msgid "ipa_netgroup_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:371 -msgid "The LDAP attribute that contains NIS domain name of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:375 -msgid "Default: nisDomainName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:381 -msgid "ipa_host_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:384 sssd-ipa.5.xml:407 -msgid "The object class of a host entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:387 sssd-ipa.5.xml:410 -msgid "Default: ipaHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:392 -msgid "ipa_host_fqdn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:395 -msgid "The LDAP attribute that contains FQDN of the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:398 -msgid "Default: fqdn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:404 -msgid "ipa_selinux_usermap_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:415 -msgid "ipa_selinux_usermap_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:418 -msgid "The LDAP attribute that contains the name of SELinux usermap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:427 -msgid "ipa_selinux_usermap_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:430 -msgid "" -"The LDAP attribute that contains all users / groups this rule match against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:439 -msgid "ipa_selinux_usermap_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:442 -msgid "" -"The LDAP attribute that contains all hosts / hostgroups this rule match " -"against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:451 -msgid "ipa_selinux_usermap_see_also (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:454 -msgid "" -"The LDAP attribute that contains DN of HBAC rule which can be used for " -"matching instead of memberUser and memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:459 -msgid "Default: seeAlso" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:464 -msgid "ipa_selinux_usermap_selinux_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:467 -msgid "The LDAP attribute that contains SELinux user string itself." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:471 -msgid "Default: ipaSELinuxUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:476 -msgid "ipa_selinux_usermap_enabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:479 -msgid "" -"The LDAP attribute that contains whether or not is user map enabled for " -"usage." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:483 -msgid "Default: ipaEnabledFlag" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:488 -msgid "ipa_selinux_usermap_user_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:491 -msgid "The LDAP attribute that contains user category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:495 -msgid "Default: userCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:500 -msgid "ipa_selinux_usermap_host_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:503 -msgid "The LDAP attribute that contains host category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:507 -msgid "Default: hostCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:512 -msgid "ipa_selinux_usermap_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:515 -msgid "The LDAP attribute that contains unique ID of the user map." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:519 -msgid "Default: ipaUniqueID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:524 -msgid "ipa_host_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:527 -msgid "The LDAP attribute that contains the host's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:531 -msgid "Default: ipaSshPubKey" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:546 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the ipa provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ipa.5.xml:553 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" id_provider = ipa\n" -" ipa_server = ipaserver.example.com\n" -" ipa_hostname = myhost.example.com\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:564 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.8.xml:10 sssd.8.xml:15 -msgid "sssd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.8.xml:16 -msgid "System Security Services Daemon" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sssd.8.xml:21 -msgid "" -"<command>sssd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:31 -msgid "" -"<command>SSSD</command> provides a set of daemons to manage access to remote " -"directories and authentication mechanisms. It provides an NSS and PAM " -"interface toward the system and a pluggable backend system to connect to " -"multiple different account sources as well as D-Bus interface. It is also " -"the basis to provide client auditing and policy services for projects like " -"FreeIPA. It provides a more robust database to store local users as well as " -"extended user data." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:46 -msgid "" -"<option>-d</option>,<option>--debug-level</option> <replaceable>LEVEL</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:53 -msgid "<option>--debug-timestamps=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:57 -msgid "<emphasis>1</emphasis>: Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:60 -msgid "<emphasis>0</emphasis>: Disable timestamp in the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:69 -msgid "<option>--debug-microseconds=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:73 -msgid "" -"<emphasis>1</emphasis>: Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:76 -msgid "<emphasis>0</emphasis>: Disable microseconds in timestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:79 -msgid "Default: 0" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:85 -msgid "<option>-f</option>,<option>--debug-to-files</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:89 -msgid "" -"Send the debug output to files instead of stderr. By default, the log files " -"are stored in <filename>/var/log/sssd</filename> and there are separate log " -"files for every SSSD service and domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:97 -msgid "<option>-D</option>,<option>--daemon</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:101 -msgid "Become a daemon after starting up." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:107 -msgid "<option>-i</option>,<option>--interactive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:111 -msgid "Run in the foreground, don't become a daemon." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:117 sss_debuglevel.8.xml:42 -msgid "<option>-c</option>,<option>--config</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:121 sss_debuglevel.8.xml:46 -msgid "" -"Specify a non-default config file. The default is <filename>/etc/sssd/sssd." -"conf</filename>. For reference on the config file syntax and options, " -"consult the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:135 -msgid "<option>--version</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:139 -msgid "Print version number and exit." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.8.xml:147 -msgid "Signals" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:150 -msgid "SIGTERM/SIGINT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:153 -msgid "" -"Informs the SSSD to gracefully terminate all of its child processes and then " -"shut down the monitor." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:159 -msgid "SIGHUP" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:162 -msgid "" -"Tells the SSSD to stop writing to its current debug file descriptors and to " -"close and reopen them. This is meant to facilitate log rolling with programs " -"like logrotate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:170 -msgid "SIGUSR1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:173 -msgid "" -"Tells the SSSD to simulate offline operation for one minute. This is mostly " -"useful for testing purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:179 -msgid "SIGUSR2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:182 -msgid "" -"Tells the SSSD to go online immediately. This is mostly useful for testing " -"purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:193 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_obfuscate.8.xml:10 sss_obfuscate.8.xml:15 -msgid "sss_obfuscate" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_obfuscate.8.xml:16 -msgid "obfuscate a clear text password" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_obfuscate.8.xml:21 -msgid "" -"<command>sss_obfuscate</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>[PASSWORD]</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:32 -msgid "" -"<command>sss_obfuscate</command> converts a given password into human-" -"unreadable format and places it into appropriate domain section of the SSSD " -"config file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:37 -msgid "" -"The cleartext password is read from standard input or entered " -"interactively. The obfuscated password is put into " -"<quote>ldap_default_authtok</quote> parameter of a given SSSD domain and the " -"<quote>ldap_default_authtok_type</quote> parameter is set to " -"<quote>obfuscated_password</quote>. Refer to <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more details on these parameters." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:49 -msgid "" -"Please note that obfuscating the password provides <emphasis>no real " -"security benefit</emphasis> as it is still possible for an attacker to " -"reverse-engineer the password back. Using better authentication mechanisms " -"such as client side certificates or GSSAPI is <emphasis>strongly</emphasis> " -"advised." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:63 -msgid "<option>-s</option>,<option>--stdin</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:67 -msgid "The password to obfuscate will be read from standard input." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:74 sss_ssh_authorizedkeys.1.xml:82 -#: sss_ssh_knownhostsproxy.1.xml:81 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>DOMAIN</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:79 -msgid "" -"The SSSD domain to use the password in. The default name is <quote>default</" -"quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:86 -msgid "" -"<option>-f</option>,<option>--file</option> <replaceable>FILE</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:91 -msgid "Read the config file specified by the positional parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:95 -msgid "Default: <filename>/etc/sssd/sssd.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:105 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_useradd.8.xml:10 sss_useradd.8.xml:15 -msgid "sss_useradd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_useradd.8.xml:16 -msgid "create a new user" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_useradd.8.xml:21 -msgid "" -"<command>sss_useradd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:32 -msgid "" -"<command>sss_useradd</command> creates a new user account using the values " -"specified on the command line plus the default values from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:43 -msgid "" -"<option>-u</option>,<option>--uid</option> <replaceable>UID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:48 -msgid "" -"Set the UID of the user to the value of <replaceable>UID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:55 sss_usermod.8.xml:43 -msgid "" -"<option>-c</option>,<option>--gecos</option> <replaceable>COMMENT</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:60 sss_usermod.8.xml:48 -msgid "" -"Any text string describing the user. Often used as the field for the user's " -"full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:67 sss_usermod.8.xml:55 -msgid "" -"<option>-h</option>,<option>--home</option> <replaceable>HOME_DIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:72 -msgid "" -"The home directory of the user account. The default is to append the " -"<replaceable>LOGIN</replaceable> name to <filename>/home</filename> and use " -"that as the home directory. The base that is prepended before " -"<replaceable>LOGIN</replaceable> is tunable with <quote>user_defaults/" -"baseDirectory</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:82 sss_usermod.8.xml:66 -msgid "" -"<option>-s</option>,<option>--shell</option> <replaceable>SHELL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:87 -msgid "" -"The user's login shell. The default is currently <filename>/bin/bash</" -"filename>. The default can be changed with <quote>user_defaults/" -"defaultShell</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:96 -msgid "" -"<option>-G</option>,<option>--groups</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:101 -msgid "A list of existing groups this user is also a member of." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:107 -msgid "<option>-m</option>,<option>--create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:111 -msgid "" -"Create the user's home directory if it does not exist. The files and " -"directories contained in the skeleton directory (which can be defined with " -"the -k option or in the config file) will be copied to the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:121 -msgid "<option>-M</option>,<option>--no-create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:125 -msgid "" -"Do not create the user's home directory. Overrides configuration settings." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:132 -msgid "" -"<option>-k</option>,<option>--skel</option> <replaceable>SKELDIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:137 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<command>sss_useradd</command>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:143 -msgid "" -"This option is only valid if the <option>-m</option> (or <option>--create-" -"home</option>) option is specified, or creation of home directories is set " -"to TRUE in the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:152 sss_usermod.8.xml:124 -msgid "" -"<option>-Z</option>,<option>--selinux-user</option> " -"<replaceable>SELINUX_USER</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:157 -msgid "" -"The SELinux user for the user's login. If not specified, the system default " -"will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:169 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-krb5.5.xml:10 sssd-krb5.5.xml:16 -msgid "sssd-krb5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:23 -msgid "" -"This manual page describes the configuration of the Kerberos 5 " -"authentication backend for <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry>. For a detailed " -"syntax reference, please refer to the <quote>FILE FORMAT</quote> section of " -"the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:36 -msgid "" -"The Kerberos 5 authentication backend contains auth and chpass providers. It " -"must be paired with identity provider in order to function properly (for " -"example, id_provider = ldap). Some information required by the Kerberos 5 " -"authentication backend must be provided by the identity provider, such as " -"the user's Kerberos Principal Name (UPN). The configuration of the identity " -"provider should have an entry to specify the UPN. Please refer to the man " -"page for the applicable identity provider for details on how to configure " -"this." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:47 -msgid "" -"This backend also provides access control based on the .k5login file in the " -"home directory of the user. See <citerefentry> <refentrytitle>.k5login</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry> for more details. " -"Please note that an empty .k5login file will deny all access to this user. " -"To activate this feature use 'access_provider = krb5' in your sssd " -"configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:55 -msgid "" -"In the case where the UPN is not available in the identity backend " -"<command>sssd</command> will construct a UPN using the format " -"<replaceable>username</replaceable>@<replaceable>krb5_realm</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:106 -msgid "" -"The name of the Kerberos realm. This option is required and must be " -"specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:113 -msgid "krb5_kpasswd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:116 -msgid "" -"If the change password service is not running on the KDC alternative servers " -"can be defined here. An optional port number (preceded by a colon) may be " -"appended to the addresses or hostnames." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:122 -msgid "" -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. Please note that even if there are no more " -"kpasswd servers to try the back end is not switch to offline if " -"authentication against the KDC is still possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:129 -msgid "Default: Use the KDC" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:135 -msgid "krb5_ccachedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:138 -msgid "" -"Directory to store credential caches. All the substitution sequences of " -"krb5_ccname_template can be used here, too, except %d and %P. If the " -"directory does not exist it will be created. If %u, %U, %p or %h are used a " -"private directory belonging to the user is created. Otherwise a public " -"directory with restricted deletion flag (aka sticky bit, see <citerefentry> " -"<refentrytitle>chmod</refentrytitle> <manvolnum>1</manvolnum> </" -"citerefentry> for details) is created." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:151 -msgid "Default: /tmp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:157 -msgid "krb5_ccname_template (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:171 -msgid "login UID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:174 -msgid "%p" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:175 -msgid "principal name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:179 -msgid "%r" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:180 -msgid "realm name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:183 -msgid "%h" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:184 -msgid "home directory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:189 -msgid "value of krb5ccache_dir" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:194 -msgid "%P" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:195 -msgid "the process ID of the sssd client" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:160 -msgid "" -"Location of the user's credential cache. Currently only file based " -"credential caches are supported. In the template the following sequences are " -"substituted: <placeholder type=\"variablelist\" id=\"0\"/> If the template " -"ends with 'XXXXXX' mkstemp(3) is used to create a unique filename in a safe " -"way." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:209 -msgid "Default: FILE:%d/krb5cc_%U_XXXXXX" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:215 -msgid "krb5_auth_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:218 -msgid "" -"Timeout in seconds after an online authentication or change password request " -"is aborted. If possible the authentication request is continued offline." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:241 -msgid "krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:244 -msgid "" -"The location of the keytab to use when validating credentials obtained from " -"KDCs." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:248 -msgid "Default: /etc/krb5.keytab" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:254 -msgid "krb5_store_password_if_offline (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:257 -msgid "" -"Store the password of the user if the provider is offline and use it to " -"request a TGT when the provider gets online again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:262 -msgid "" -"Please note that this feature currently only available on a Linux platform. " -"Passwords stored in this way are kept in plaintext in the kernel keyring and " -"are potentially accessible by the root user (with difficulty)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:275 -msgid "krb5_renewable_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:278 -msgid "" -"Request a renewable ticket with a total lifetime given by an integer " -"immediately followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:283 sssd-krb5.5.xml:319 -msgid "<emphasis>s</emphasis> seconds" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:286 sssd-krb5.5.xml:322 -msgid "<emphasis>m</emphasis> minutes" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:289 sssd-krb5.5.xml:325 -msgid "<emphasis>h</emphasis> hours" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:292 sssd-krb5.5.xml:328 -msgid "<emphasis>d</emphasis> days." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:295 sssd-krb5.5.xml:331 -msgid "If there is no delimiter <emphasis>s</emphasis> is assumed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:299 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"renewable lifetime to one and a half hours please use '90m' instead of " -"'1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:305 -msgid "Default: not set, i.e. the TGT is not renewable" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:311 -msgid "krb5_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:314 -msgid "" -"Request ticket with a with a lifetime given by an integer immediately " -"followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:335 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"lifetime to one and a half hours please use '90m' instead of '1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:340 -msgid "" -"Default: not set, i.e. the default ticket lifetime configured on the KDC." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:347 -msgid "krb5_renew_interval (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:350 -msgid "" -"The time in seconds between two checks if the TGT should be renewed. TGTs " -"are renewed if about half of their lifetime is exceeded." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:355 -msgid "If this option is not set or 0 the automatic renewal is disabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:365 -msgid "krb5_use_fast (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:368 -msgid "" -"Enables flexible authentication secure tunneling (FAST) for Kerberos pre-" -"authentication. The following options are supported:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:373 -msgid "" -"<emphasis>never</emphasis> use FAST, this is equivalent to not set this " -"option at all." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:377 -msgid "" -"<emphasis>try</emphasis> to use FAST, if the server does not support fast " -"continue without." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:381 -msgid "" -"<emphasis>demand</emphasis> to use FAST, fail if the server does not require " -"fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:385 -msgid "Default: not set, i.e. FAST is not used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:388 -msgid "Please note that a keytab is required to use fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:391 -msgid "" -"Please note also that sssd supports fast only with MIT Kerberos version 1.8 " -"and above. If sssd used with an older version using this option is a " -"configuration error." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:400 -msgid "krb5_fast_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:403 -msgid "Specifies the server principal to use for FAST." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:412 -msgid "" -"Specifies if the host and user principal should be canonicalized. This " -"feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:65 -msgid "" -"If the auth-module krb5 is used in a SSSD domain, the following options must " -"be used. See the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page, section <quote>DOMAIN " -"SECTIONS</quote> for details on the configuration of a SSSD domain. " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:434 -msgid "" -"The following example assumes that SSSD is correctly configured and FOO is " -"one of the domains in the <replaceable>[sssd]</replaceable> section. This " -"example shows only configuration of Kerberos authentication, it does not " -"include any identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-krb5.5.xml:442 -#, no-wrap -msgid "" -" [domain/FOO]\n" -" auth_provider = krb5\n" -" krb5_server = 192.168.1.1\n" -" krb5_realm = EXAMPLE.COM\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:453 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupadd.8.xml:10 sss_groupadd.8.xml:15 -msgid "sss_groupadd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupadd.8.xml:16 -msgid "create a new group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupadd.8.xml:21 -msgid "" -"<command>sss_groupadd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:32 -msgid "" -"<command>sss_groupadd</command> creates a new group. These groups are " -"compatible with POSIX groups, with the additional feature that they can " -"contain other groups as members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupadd.8.xml:43 -msgid "" -"<option>-g</option>,<option>--gid</option> <replaceable>GID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupadd.8.xml:48 -msgid "" -"Set the GID of the group to the value of <replaceable>GID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_userdel.8.xml:10 sss_userdel.8.xml:15 -msgid "sss_userdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_userdel.8.xml:16 -msgid "delete a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_userdel.8.xml:21 -msgid "" -"<command>sss_userdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:32 -msgid "" -"<command>sss_userdel</command> deletes a user identified by login name " -"<replaceable>LOGIN</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:44 -msgid "<option>-r</option>,<option>--remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:48 -msgid "" -"Files in the user's home directory will be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:56 -msgid "<option>-R</option>,<option>--no-remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:60 -msgid "" -"Files in the user's home directory will NOT be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:68 -msgid "<option>-f</option>,<option>--force</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:72 -msgid "" -"This option forces <command>sss_userdel</command> to remove the user's home " -"directory and mail spool, even if they are not owned by the specified user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:80 -msgid "<option>-k</option>,<option>--kick</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:84 -msgid "Before actually deleting the user, terminate all his processes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:95 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupdel.8.xml:10 sss_groupdel.8.xml:15 -msgid "sss_groupdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupdel.8.xml:16 -msgid "delete a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupdel.8.xml:21 -msgid "" -"<command>sss_groupdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:32 -msgid "" -"<command>sss_groupdel</command> deletes a group identified by its name " -"<replaceable>GROUP</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupshow.8.xml:10 sss_groupshow.8.xml:15 -msgid "sss_groupshow" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupshow.8.xml:16 -msgid "print properties of a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupshow.8.xml:21 -msgid "" -"<command>sss_groupshow</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:32 -msgid "" -"<command>sss_groupshow</command> displays information about a group " -"identified by its name <replaceable>GROUP</replaceable>. The information " -"includes the group ID number, members of the group and the parent group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupshow.8.xml:43 -msgid "<option>-R</option>,<option>--recursive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupshow.8.xml:47 -msgid "" -"Also print indirect group members in a tree-like hierarchy. Note that this " -"also affects printing parent groups - without <option>R</option>, only the " -"direct parent will be printed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_usermod.8.xml:10 sss_usermod.8.xml:15 -msgid "sss_usermod" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_usermod.8.xml:16 -msgid "modify a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_usermod.8.xml:21 -msgid "" -"<command>sss_usermod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:32 -msgid "" -"<command>sss_usermod</command> modifies the account specified by " -"<replaceable>LOGIN</replaceable> to reflect the changes that are specified " -"on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:60 -msgid "The home directory of the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:71 -msgid "The user's login shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:82 -msgid "" -"Append this user to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:96 -msgid "" -"Remove this user from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:103 -msgid "<option>-l</option>,<option>--lock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:107 -msgid "Lock the user account. The user won't be able to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:114 -msgid "<option>-u</option>,<option>--unlock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:118 -msgid "Unlock the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:129 -msgid "The SELinux user for the user's login." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:140 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_cache.8.xml:10 sss_cache.8.xml:15 -msgid "sss_cache" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_cache.8.xml:16 -msgid "perform cache cleanup" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_cache.8.xml:21 -msgid "" -"<command>sss_cache</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_cache.8.xml:31 -msgid "" -"<command>sss_cache</command> invalidates records in SSSD cache. Invalidated " -"records are forced to be reloaded from server as soon as related SSSD " -"backend is online." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:42 -msgid "" -"<option>-u</option>,<option>--user</option> <replaceable>login</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:47 -msgid "Invalidate specific user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:53 -msgid "<option>-U</option>,<option>--users</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:57 -msgid "" -"Invalidate all user records. This option overrides invalidation of specific " -"user if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:64 -msgid "" -"<option>-g</option>,<option>--group</option> <replaceable>group</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:69 -msgid "Invalidate specific group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:75 -msgid "<option>-G</option>,<option>--groups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:79 -msgid "" -"Invalidate all group records. This option overrides invalidation of specific " -"group if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:86 -msgid "" -"<option>-n</option>,<option>--netgroup</option> <replaceable>netgroup</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:91 -msgid "Invalidate specific netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:97 -msgid "<option>-N</option>,<option>--netgroups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:101 -msgid "" -"Invalidate all netgroup records. This option overrides invalidation of " -"specific netgroup if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:108 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>domain</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:113 -msgid "Restrict invalidation process only to a particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_debuglevel.8.xml:10 sss_debuglevel.8.xml:15 -msgid "sss_debuglevel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_debuglevel.8.xml:16 -msgid "change debug level while SSSD is running" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_debuglevel.8.xml:21 -msgid "" -"<command>sss_debuglevel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>NEW_DEBUG_LEVEL</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_debuglevel.8.xml:32 -msgid "" -"<command>sss_debuglevel</command> changes debug level of SSSD monitor and " -"providers to <replaceable>NEW_DEBUG_LEVEL</replaceable> while SSSD is " -"running." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_debuglevel.8.xml:59 -msgid "<replaceable>NEW_DEBUG_LEVEL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_authorizedkeys.1.xml:10 sss_ssh_authorizedkeys.1.xml:15 -msgid "sss_ssh_authorizedkeys" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_ssh_authorizedkeys.1.xml:11 sss_ssh_knownhostsproxy.1.xml:11 -msgid "1" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_authorizedkeys.1.xml:16 -msgid "get OpenSSH authorized keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_authorizedkeys.1.xml:21 -msgid "" -"<command>sss_ssh_authorizedkeys</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>USER</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:32 -msgid "" -"<command>sss_ssh_authorizedkeys</command> acquires SSH public keys for user " -"<replaceable>USER</replaceable> and outputs them in OpenSSH authorized_keys " -"format (see the <quote>AUTHORIZED_KEYS FILE FORMAT</quote> section of " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> for more information)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:41 -msgid "" -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_authorizedkeys</" -"command> for public key user authentication if it is compiled with support " -"for either <quote>AuthorizedKeysCommand</quote> or <quote>PubkeyAgent</" -"quote> <citerefentry> <refentrytitle>sshd_config</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:58 -#, no-wrap -msgid "AuthorizedKeysCommand /usr/bin/sss_ssh_authorizedkeys\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:51 -msgid "" -"If <quote>AuthorizedKeysCommand</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by putting the following directive " -"in <citerefentry> <refentrytitle>sshd_config</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry>: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:69 -#, no-wrap -msgid "PubKeyAgent /usr/bin/sss_ssh_authorizedkeys %u\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:62 -msgid "" -"If <quote>PubkeyAgent</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by using the following directive " -"for <citerefentry> <refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> configuration: <placeholder type=\"programlisting" -"\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_authorizedkeys.1.xml:87 -msgid "" -"Search for user public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:98 -msgid "" -"<citerefentry> <refentrytitle>sshd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sshd_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_knownhostsproxy</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_knownhostsproxy.1.xml:10 sss_ssh_knownhostsproxy.1.xml:15 -msgid "sss_ssh_knownhostsproxy" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_knownhostsproxy.1.xml:16 -msgid "get OpenSSH host keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_knownhostsproxy.1.xml:21 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>HOST</replaceable></arg> <arg " -"choice='opt'><replaceable>PROXY_COMMAND</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:33 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> acquires SSH host public keys for " -"host <replaceable>HOST</replaceable>, stores them in a custom OpenSSH " -"known_hosts file (see the <quote>SSH_KNOWN_HOSTS FILE FORMAT</quote> section " -"of <citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> for more information) <filename>/var/lib/sss/" -"pubconf/known_hosts</filename> and estabilishes connection to the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:43 -msgid "" -"If <replaceable>PROXY_COMMAND</replaceable> is specified, it is used to " -"create the connection to the host instead of opening a socket." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_knownhostsproxy.1.xml:55 -#, no-wrap -msgid "" -"ProxyCommand /usr/bin/sss_ssh_knownhostsproxy -p %p %h\n" -"GlobalKnownHostsFile2 /var/lib/sss/pubconf/known_hosts\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:48 -msgid "" -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_knownhostsproxy</" -"command> for host key authentication by using the following directives for " -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> configuration: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_ssh_knownhostsproxy.1.xml:69 -msgid "" -"<option>-p</option>,<option>--port</option> <replaceable>PORT</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:74 -msgid "" -"Use port <replaceable>PORT</replaceable> to connect to the host. By " -"default, port 22 is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:86 -msgid "" -"Search for host public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:97 -msgid "" -"<citerefentry> <refentrytitle>ssh</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>ssh_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_authorizedkeys</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/service_discovery.xml:2 -msgid "SERVICE DISCOVERY" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/service_discovery.xml:4 -msgid "" -"The service discovery feature allows back ends to automatically find the " -"appropriate servers to connect to using a special DNS query." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:9 -msgid "Configuration" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:11 -msgid "" -"If no servers are specified, the back end automatically uses service " -"discovery to try to find a server. Optionally, the user may choose to use " -"both fixed server addresses and service discovery by inserting a special " -"keyword, <quote>_srv_</quote>, in the list of servers. The order of " -"preference is maintained. This feature is useful if, for example, the user " -"prefers to use service discovery whenever possible, and fall back to a " -"specific server when no servers can be discovered using DNS." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:23 -msgid "The domain name" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:25 -msgid "" -"Please refer to the <quote>dns_discovery_domain</quote> parameter in the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for more details." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:35 -msgid "The protocol" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:37 -msgid "" -"The queries usually specify _tcp as the protocol. Exceptions are documented " -"in respective option description." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:42 -msgid "See Also" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:44 -msgid "" -"For more information on the service discovery mechanism, refer to RFC 2782." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/upstream.xml:1 -msgid "<placeholder type=\"refentryinfo\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/failover.xml:2 -msgid "FAILOVER" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/failover.xml:4 -msgid "" -"The failover feature allows back ends to automatically switch to a different " -"server if the primary server fails." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:8 -msgid "Failover Syntax" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:10 -msgid "" -"The list of servers is given as a comma-separated list; any number of spaces " -"is allowed around the comma. The servers are listed in order of preference. " -"The list can contain any number of servers." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:17 -msgid "The Failover Mechanism" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:19 -msgid "" -"The failover mechanism distinguishes between a machine and a service. The " -"back end first tries to resolve the hostname of a given machine; if this " -"resolution attempt fails, the machine is considered offline. No further " -"attempts are made to connect to this machine for any other service. If the " -"resolution attempt succeeds, the back end tries to connect to a service on " -"this machine. If the service connection attempt fails, then only this " -"particular service is considered offline and the back end automatically " -"switches over to the next service. The machine is still considered online " -"and might still be tried for another service." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:32 -msgid "" -"Further connection attempts are made to machines or services marked as " -"offline after a specified period of time; this is currently hard coded to 30 " -"seconds." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:37 -msgid "" -"If there are no more machines to try, the back end as a whole switches to " -"offline mode, and then attempts to reconnect every 30 seconds." -msgstr "" - -#. type: Content of: <varlistentry><term> -#: include/param_help.xml:3 -msgid "<option>-h</option>,<option>--help</option>" -msgstr "" - -#. type: Content of: <varlistentry><listitem><para> -#: include/param_help.xml:7 -msgid "Display help message and exit." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:3 -msgid "" -"Bit mask that indicates which debug levels will be visible. 0x0010 is the " -"default value as well as the lowest allowed value, 0xFFF0 is the most " -"verbose mode. This setting overrides the settings from config file." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:8 -msgid "Currently supported debug levels:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:11 -msgid "" -"<emphasis>0x0010</emphasis>: Fatal failures. Anything that would prevent " -"SSSD from starting up or causes it to cease running." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:15 -msgid "" -"<emphasis>0x0020</emphasis>: Critical failures. An error that doesn't kill " -"the SSSD, but one that indicates that at least one major feature is not " -"going to work properly." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:20 -msgid "" -"<emphasis>0x0040</emphasis>: Serious failures. An error announcing that a " -"particular request or operation has failed." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:24 -msgid "" -"<emphasis>0x0080</emphasis>: Minor failures. These are the errors that would " -"percolate down to cause the operation failure of 2." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:28 -msgid "<emphasis>0x0100</emphasis>: Configuration settings." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:31 -msgid "<emphasis>0x0200</emphasis>: Function data." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:34 -msgid "<emphasis>0x0400</emphasis>: Trace messages for operation functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:37 -msgid "" -"<emphasis>0x1000</emphasis>: Trace messages for internal control functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:40 -msgid "" -"<emphasis>0x2000</emphasis>: Contents of function-internal variables that " -"may be interesting." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:43 -msgid "<emphasis>0x4000</emphasis>: Extremely low-level tracing information." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:46 -msgid "" -"To log required debug levels, simply add their numbers together as shown in " -"following examples:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:49 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, critical failures, " -"serious failures and function data use 0x0270." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:53 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, configuration settings, " -"function data, trace messages for internal control functions use 0x1310." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:57 -msgid "" -"<emphasis>Note</emphasis>: This is new format of debug levels introduced in " -"1.7.0. Older format (numbers from 0-10) is compatible but deprecated." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/experimental.xml:1 -msgid "" -"<emphasis> This is an experimental feature, please use http://fedorahosted." -"org/sssd to report any issues. </emphasis>" -msgstr "" diff --git a/src/man/po/tg.po b/src/man/po/tg.po index 19b38b28c..4ee15a2d4 100644 --- a/src/man/po/tg.po +++ b/src/man/po/tg.po @@ -8,7 +8,7 @@ msgstr "" "Project-Id-Version: SSSD\n" "Report-Msgid-Bugs-To: sssd-devel@redhat.com\n" "POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2012-02-14 13:10+0000\n" +"PO-Revision-Date: 2012-03-08 11:52+0000\n" "Last-Translator: sgallagh <sgallagh@redhat.com>\n" "Language-Team: Tajik (http://www.transifex.net/projects/p/fedora/language/" "tg/)\n" diff --git a/src/man/po/tr.po b/src/man/po/tr.po deleted file mode 100644 index b59201974..000000000 --- a/src/man/po/tr.po +++ /dev/null @@ -1,6748 +0,0 @@ -# SOME DESCRIPTIVE TITLE -# Copyright (C) YEAR Red Hat -# This file is distributed under the same license as the sssd-docs package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@redhat.com\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-12-23 15:35+0000\n" -"Last-Translator: FULL NAME <EMAIL@ADDRESS>\n" -"Language-Team: Turkish (http://www.transifex.net/projects/p/fedora/team/" -"tr/)\n" -"Language: tr\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=1; plural=0\n" - -#. type: Content of: <reference><title> -#: sss_groupmod.8.xml:5 sssd.conf.5.xml:5 sssd-ldap.5.xml:5 pam_sss.8.xml:5 -#: sssd_krb5_locator_plugin.8.xml:5 sssd-simple.5.xml:5 sssd-ipa.5.xml:5 -#: sssd.8.xml:5 sss_obfuscate.8.xml:5 sss_useradd.8.xml:5 sssd-krb5.5.xml:5 -#: sss_groupadd.8.xml:5 sss_userdel.8.xml:5 sss_groupdel.8.xml:5 -#: sss_groupshow.8.xml:5 sss_usermod.8.xml:5 sss_cache.8.xml:5 -#: sss_debuglevel.8.xml:5 sss_ssh_authorizedkeys.1.xml:5 -#: sss_ssh_knownhostsproxy.1.xml:5 -msgid "SSSD Manual pages" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupmod.8.xml:10 sss_groupmod.8.xml:15 -msgid "sss_groupmod" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_groupmod.8.xml:11 pam_sss.8.xml:14 sssd_krb5_locator_plugin.8.xml:11 -#: sssd.8.xml:11 sss_obfuscate.8.xml:11 sss_useradd.8.xml:11 -#: sss_groupadd.8.xml:11 sss_userdel.8.xml:11 sss_groupdel.8.xml:11 -#: sss_groupshow.8.xml:11 sss_usermod.8.xml:11 sss_cache.8.xml:11 -#: sss_debuglevel.8.xml:11 -msgid "8" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupmod.8.xml:16 -msgid "modify a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupmod.8.xml:21 -msgid "" -"<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:30 sssd-ldap.5.xml:21 pam_sss.8.xml:44 -#: sssd_krb5_locator_plugin.8.xml:20 sssd-simple.5.xml:22 sssd-ipa.5.xml:21 -#: sssd.8.xml:29 sss_obfuscate.8.xml:30 sss_useradd.8.xml:30 -#: sssd-krb5.5.xml:21 sss_groupadd.8.xml:30 sss_userdel.8.xml:30 -#: sss_groupdel.8.xml:30 sss_groupshow.8.xml:30 sss_usermod.8.xml:30 -#: sss_cache.8.xml:29 sss_debuglevel.8.xml:30 sss_ssh_authorizedkeys.1.xml:30 -#: sss_ssh_knownhostsproxy.1.xml:31 -msgid "DESCRIPTION" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:32 -msgid "" -"<command>sss_groupmod</command> modifies the group to reflect the changes " -"that are specified on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:39 pam_sss.8.xml:51 sssd.8.xml:42 sss_obfuscate.8.xml:58 -#: sss_useradd.8.xml:39 sss_groupadd.8.xml:39 sss_userdel.8.xml:39 -#: sss_groupdel.8.xml:39 sss_groupshow.8.xml:39 sss_usermod.8.xml:39 -#: sss_cache.8.xml:38 sss_debuglevel.8.xml:38 sss_ssh_authorizedkeys.1.xml:78 -#: sss_ssh_knownhostsproxy.1.xml:65 -msgid "OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:43 sss_usermod.8.xml:77 -msgid "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:48 -msgid "" -"Append this group to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:57 sss_usermod.8.xml:91 -msgid "" -"<option>-r</option>,<option>--remove-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:62 -msgid "" -"Remove this group from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:72 sssd.conf.5.xml:1331 sssd-ldap.5.xml:2096 -#: pam_sss.8.xml:139 sssd_krb5_locator_plugin.8.xml:75 sssd-simple.5.xml:143 -#: sssd-ipa.5.xml:562 sssd.8.xml:191 sss_obfuscate.8.xml:103 -#: sss_useradd.8.xml:167 sssd-krb5.5.xml:451 sss_groupadd.8.xml:58 -#: sss_userdel.8.xml:93 sss_groupdel.8.xml:46 sss_groupshow.8.xml:58 -#: sss_usermod.8.xml:138 sss_ssh_authorizedkeys.1.xml:96 -#: sss_ssh_knownhostsproxy.1.xml:95 -msgid "SEE ALSO" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:74 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.conf.5.xml:10 sssd.conf.5.xml:16 -msgid "sssd.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sssd.conf.5.xml:11 sssd-ldap.5.xml:11 sssd-simple.5.xml:11 -#: sssd-ipa.5.xml:11 sssd-krb5.5.xml:11 -msgid "5" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><refmiscinfo> -#: sssd.conf.5.xml:12 sssd-ldap.5.xml:12 sssd-simple.5.xml:12 -#: sssd-ipa.5.xml:12 sssd-krb5.5.xml:12 -msgid "File Formats and Conventions" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.conf.5.xml:17 sssd-ldap.5.xml:17 sssd_krb5_locator_plugin.8.xml:16 -#: sssd-ipa.5.xml:17 sssd-krb5.5.xml:17 -msgid "the configuration file for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:21 -msgid "FILE FORMAT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:29 -#, no-wrap -msgid "" -" <replaceable>[section]</replaceable>\n" -" <replaceable>key</replaceable> = <replaceable>value</replaceable>\n" -" <replaceable>key2</replaceable> = <replaceable>value2,value3</replaceable>\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:24 -msgid "" -"The file has an ini-style syntax and consists of sections and parameters. A " -"section begins with the name of the section in square brackets and continues " -"until the next section begins. An example of section with single and multi-" -"valued parameters: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:36 -msgid "" -"The data types used are string (no quotes needed), integer and bool (with " -"values of <quote>TRUE/FALSE</quote>)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:41 -msgid "" -"A line comment starts with a hash sign (<quote>#</quote>) or a semicolon " -"(<quote>;</quote>)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:46 -msgid "" -"All sections can have an optional <replaceable>description</replaceable> " -"parameter. Its function is only as a label for the section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:52 -msgid "" -"<filename>sssd.conf</filename> must be a regular file, owned by root and " -"only root may read from or write to the file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:58 -msgid "SPECIAL SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:61 -msgid "The [sssd] section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><title> -#: sssd.conf.5.xml:70 sssd.conf.5.xml:1177 -msgid "Section parameters" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:72 -msgid "config_file_version (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:75 -msgid "" -"Indicates what is the syntax of the config file. SSSD 0.6.0 and later use " -"version 2." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:81 -msgid "services" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:84 -msgid "" -"Comma separated list of services that are started when sssd itself starts." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:88 -msgid "" -"Supported services: nss, pam <phrase condition=\"with_sudo\">, sudo</phrase>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:94 sssd.conf.5.xml:257 -msgid "reconnection_retries (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:97 sssd.conf.5.xml:260 -msgid "" -"Number of times services should attempt to reconnect in the event of a Data " -"Provider crash or restart before they give up" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:102 sssd.conf.5.xml:265 -msgid "Default: 3" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:107 -msgid "domains" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:110 -msgid "" -"A domain is a database containing user information. SSSD can use more " -"domains at the same time, but at least one must be configured or SSSD won't " -"start. This parameter described the list of domains in the order you want " -"them to be queried." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:120 -msgid "re_expression (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:123 -msgid "" -"Regular expression that describes how to parse the string containing user " -"name and domain into these components." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:127 -msgid "" -"Default: <quote>(?P<name>[^@]+)@?(?P<domain>[^@]*$)</quote> " -"which translates to \"the name is everything up to the <quote>@</quote> " -"sign, the domain everything after that\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:132 -msgid "" -"PLEASE NOTE: the support for non-unique named subpatterns is not available " -"on all platforms (e.g. RHEL5 and SLES10). Only platforms with libpcre " -"version 7 or higher can support non-unique named subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:139 -msgid "" -"PLEASE NOTE ALSO: older version of libpcre only support the Python syntax (?" -"P<name>) to label subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:146 -msgid "full_name_format (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:149 -msgid "" -"A <citerefentry> <refentrytitle>printf</refentrytitle> <manvolnum>3</" -"manvolnum> </citerefentry>-compatible format that describes how to translate " -"a (name, domain) tuple into a fully qualified name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:157 -msgid "Default: <quote>%1$s@%2$s</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:162 -msgid "try_inotify (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:165 -msgid "" -"SSSD monitors the state of resolv.conf to identify when it needs to update " -"its internal DNS resolver. By default, we will attempt to use inotify for " -"this, and will fall back to polling resolv.conf every five seconds if " -"inotify cannot be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:173 -msgid "" -"There are some limited situations where it is preferred that we should skip " -"even trying to use inotify. In these rare cases, this option should be set " -"to 'false'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:179 -msgid "" -"Default: true on platforms where inotify is supported. False on other " -"platforms." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:183 -msgid "" -"Note: this option will have no effect on platforms where inotify is " -"unavailable. On these platforms, polling will always be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:190 -msgid "krb5_rcache_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:193 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:197 -msgid "" -"This option accepts a special value __LIBKRB5_DEFAULTS__ that will instruct " -"SSSD to let libkrb5 decide the appropriate location for the replay cache." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:203 -msgid "" -"Default: Distribution-specific and specified at build-time. " -"(__LIBKRB5_DEFAULTS__ if not configured)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:63 -msgid "" -"Individual pieces of SSSD functionality are provided by special SSSD " -"services that are started and stopped together with SSSD. The services are " -"managed by a special service frequently called <quote>monitor</quote>. The " -"<quote>[sssd]</quote> section is used to configure the monitor as well as " -"some other important options like the identity domains. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:216 -msgid "SERVICES SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:218 -msgid "" -"Settings that can be used to configure different services are described in " -"this section. They should reside in the [<replaceable>$NAME</replaceable>] " -"section, for example, for NSS service, the section would be <quote>[nss]</" -"quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:225 -msgid "General service configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:227 -msgid "These options can be used to configure any service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:231 -msgid "debug_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:235 -msgid "debug_timestamps (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:238 -msgid "Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:241 sssd.conf.5.xml:376 sssd-ldap.5.xml:1328 -#: sssd-ldap.5.xml:1446 sssd-ipa.5.xml:206 sssd-ipa.5.xml:241 -msgid "Default: true" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:246 -msgid "debug_microseconds (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:249 -msgid "Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:252 sssd.conf.5.xml:641 sssd-ldap.5.xml:602 -#: sssd-ldap.5.xml:1260 sssd-ldap.5.xml:1397 sssd-ldap.5.xml:1795 -#: sssd-ipa.5.xml:123 sssd-ipa.5.xml:301 sssd-krb5.5.xml:235 -#: sssd-krb5.5.xml:269 sssd-krb5.5.xml:418 -msgid "Default: false" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:270 -msgid "command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:273 -msgid "" -"By default, the executable representing this service is called <command>sssd_" -"${service_name}</command>. This directive allows to change the executable " -"name for the service. In the vast majority of configurations, the default " -"values should suffice." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:281 -msgid "Default: <command>sssd_${service_name}</command>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:289 -msgid "NSS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:291 -msgid "" -"These options can be used to configure the Name Service Switch (NSS) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:296 -msgid "enum_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:299 -msgid "" -"How many seconds should nss_sss cache enumerations (requests for info about " -"all users)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:303 -msgid "Default: 120" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:308 -msgid "entry_cache_nowait_percentage (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:311 -msgid "" -"The entry cache can be set to automatically update entries in the background " -"if they are requested beyond a percentage of the entry_cache_timeout value " -"for the domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:317 -msgid "" -"For example, if the domain's entry_cache_timeout is set to 30s and " -"entry_cache_nowait_percentage is set to 50 (percent), entries that come in " -"after 15 seconds past the last cache update will be returned immediately, " -"but the SSSD will go and update the cache on its own, so that future " -"requests will not need to block waiting for a cache update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:327 -msgid "" -"Valid values for this option are 0-99 and represent a percentage of the " -"entry_cache_timeout for each domain. For performance reasons, this " -"percentage will never reduce the nowait timeout to less than 10 seconds. (0 " -"disables this feature)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:335 -msgid "Default: 50" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:340 -msgid "entry_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:343 -msgid "" -"Specifies for how many seconds nss_sss should cache negative cache hits " -"(that is, queries for invalid database entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:349 sssd.conf.5.xml:669 sssd-krb5.5.xml:223 -msgid "Default: 15" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:354 -msgid "filter_users, filter_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:357 -msgid "" -"Exclude certain users from being fetched from the sss NSS database. This is " -"particularly useful for system accounts. This option can also be set per-" -"domain or include fully-qualified names to filter only users from the " -"particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:364 -msgid "Default: root" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:369 -msgid "filter_users_in_groups (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:372 -msgid "" -"If you want filtered user still be group members set this option to false." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:381 -msgid "override_homedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:390 sssd-krb5.5.xml:166 -msgid "%u" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:391 sssd-krb5.5.xml:167 -msgid "login name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:394 sssd-krb5.5.xml:170 -msgid "%U" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:395 -msgid "UID number" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:398 sssd-krb5.5.xml:188 -msgid "%d" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:399 -msgid "domain name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:402 -msgid "%f" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:403 -msgid "fully qualified user name (user@domain)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:406 sssd-krb5.5.xml:200 -msgid "%%" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:407 sssd-krb5.5.xml:201 -msgid "a literal '%'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:384 -msgid "" -"Override the user's home directory. You can either provide an absolute value " -"or a template. In the template, the following sequences are substituted: " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:413 -msgid "This option can also be set per-domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:418 -msgid "allowed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:421 -msgid "" -"Restrict user shell to one of the listed values. The order of evaluation is:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:424 -msgid "1. If the shell is present in <quote>/etc/shells</quote>, it is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:428 -msgid "" -"2. If the shell is in the allowed_shells list but not in <quote>/etc/shells</" -"quote>, use the value of the shell_fallback parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:433 -msgid "" -"3. If the shell is not in the allowed_shells list and not in <quote>/etc/" -"shells</quote>, a nologin shell is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:438 -msgid "An empty string for shell is passed as-is to libc." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:441 -msgid "" -"The <quote>/etc/shells</quote> is only read on SSSD start up, which means " -"that a restart of the SSSD is required in case a new shell is installed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:445 -msgid "Default: Not set. The user shell is automatically used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:450 -msgid "vetoed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:453 -msgid "Replace any instance of these shells with the shell_fallback" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:458 -msgid "shell_fallback (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:461 -msgid "" -"The default shell to use if an allowed shell is not installed on the machine." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:465 -msgid "Default: /bin/sh" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:472 -msgid "PAM configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:474 -msgid "" -"These options can be used to configure the Pluggable Authentication Module " -"(PAM) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:479 -msgid "offline_credentials_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:482 -msgid "" -"If the authentication provider is offline, how long should we allow cached " -"logins (in days since the last successful online login)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:487 sssd.conf.5.xml:500 -msgid "Default: 0 (No limit)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:493 -msgid "offline_failed_login_attempts (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:496 -msgid "" -"If the authentication provider is offline, how many failed login attempts " -"are allowed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:506 -msgid "offline_failed_login_delay (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:509 -msgid "" -"The time in minutes which has to pass after offline_failed_login_attempts " -"has been reached before a new login attempt is possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:514 -msgid "" -"If set to 0 the user cannot authenticate offline if " -"offline_failed_login_attempts has been reached. Only a successful online " -"authentication can enable offline authentication again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:520 sssd.conf.5.xml:573 sssd.conf.5.xml:1093 -msgid "Default: 5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:526 -msgid "pam_verbosity (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:529 -msgid "" -"Controls what kind of messages are shown to the user during authentication. " -"The higher the number to more messages are displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:534 -msgid "Currently sssd supports the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:537 -msgid "<emphasis>0</emphasis>: do not show any message" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:540 -msgid "<emphasis>1</emphasis>: show only important messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:544 -msgid "<emphasis>2</emphasis>: show informational messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:547 -msgid "<emphasis>3</emphasis>: show all messages and debug information" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:551 sssd.8.xml:63 -msgid "Default: 1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:556 -msgid "pam_id_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:559 -msgid "" -"For any PAM request while SSSD is online, the SSSD will attempt to " -"immediately update the cached identity information for the user in order to " -"ensure that authentication takes place with the latest information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:565 -msgid "" -"A complete PAM conversation may perform multiple PAM requests, such as " -"account management and session opening. This option controls (on a per-" -"client-application basis) how long (in seconds) we can cache the identity " -"information to avoid excessive round-trips to the identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:579 -msgid "pam_pwd_expiration_warning (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:582 -msgid "Display a warning N days before the password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:585 -msgid "" -"Please note that the backend server has to provide information about the " -"expiration time of the password. If this information is missing, sssd " -"cannot display a warning." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:591 -msgid "Default: 7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:599 -msgid "SUDO configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:601 -msgid "These options can be used to configure the sudo service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:608 -msgid "sudo_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:611 -msgid "" -"For any sudo request that comes while SSSD is online, the SSSD will attempt " -"to update the cached rules in order to ensure that sudo has the latest " -"ruleset." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:617 -msgid "" -"The user may, however, run a couple of sudo commands successively, which " -"would trigger multiple LDAP requests. In order to speed up this use-case, " -"the sudo service maintains an in-memory cache that would be used for " -"performing fast replies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:624 -msgid "" -"This option controls how long (in seconds) can the sudo service cache rules " -"for a user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:628 -msgid "Default: 180" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:633 -msgid "sudo_timed (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:636 -msgid "" -"Whether or not to evaluate the sudoNotBefore and sudoNotAfter attributes " -"that implement time-dependent sudoers entries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:649 -msgid "AUTOFS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:651 -msgid "These options can be used to configure the autofs service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:659 -msgid "autofs_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:662 -msgid "" -"Specifies for how many seconds should the autofs responder negative cache " -"hits (that is, queries for invalid map entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:679 -msgid "DOMAIN SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:686 -msgid "min_id,max_id (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:689 -msgid "" -"UID and GID limits for the domain. If a domain contains an entry that is " -"outside these limits, it is ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:694 -msgid "" -"For users, this affects the primary GID limit. The user will not be returned " -"to NSS if either the UID or the primary GID is outside the range. For non-" -"primary group memberships, those that are in range will be reported as " -"expected." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:701 -msgid "Default: 1 for min_id, 0 (no limit) for max_id" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:707 -msgid "timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:710 -msgid "" -"Timeout in seconds between heartbeats for this domain. This is used to " -"ensure that the backend process is alive and capable of answering requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:715 sssd-ldap.5.xml:1131 -msgid "Default: 10" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:721 -msgid "enumerate (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:724 -msgid "" -"Determines if a domain can be enumerated. This parameter can have one of the " -"following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:728 -msgid "TRUE = Users and groups are enumerated" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:731 -msgid "FALSE = No enumerations for this domain" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:734 sssd.conf.5.xml:839 sssd.conf.5.xml:893 -msgid "Default: FALSE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:737 -msgid "" -"Note: Enabling enumeration has a moderate performance impact on SSSD while " -"enumeration is running. It may take up to several minutes after SSSD startup " -"to fully complete enumerations. During this time, individual requests for " -"information will go directly to LDAP, though it may be slow, due to the " -"heavy enumeration processing." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:747 -msgid "" -"While the first enumeration is running, requests for the complete user or " -"group lists may return no results until it completes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:752 -msgid "" -"Further, enabling enumeration may increase the time necessary to detect " -"network disconnection, as longer timeouts are required to ensure that " -"enumeration lookups are completed successfully. For more information, refer " -"to the man pages for the specific id_provider in use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:763 -msgid "entry_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:766 -msgid "" -"How many seconds should nss_sss consider entries valid before asking the " -"backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:770 -msgid "Default: 5400" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:776 -msgid "entry_cache_user_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:779 -msgid "" -"How many seconds should nss_sss consider user entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:783 sssd.conf.5.xml:796 sssd.conf.5.xml:809 -#: sssd.conf.5.xml:822 -msgid "Default: entry_cache_timeout" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:789 -msgid "entry_cache_group_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:792 -msgid "" -"How many seconds should nss_sss consider group entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:802 -msgid "entry_cache_netgroup_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:805 -msgid "" -"How many seconds should nss_sss consider netgroup entries valid before " -"asking the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:815 -msgid "entry_cache_service_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:818 -msgid "" -"How many seconds should nss_sss consider service entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:828 -msgid "cache_credentials (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:831 -msgid "Determines if user credentials are also cached in the local LDB cache" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:835 -msgid "User credentials are stored in a SHA512 hash, not in plaintext" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:844 -msgid "account_cache_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:847 -msgid "" -"Number of days entries are left in cache after last successful login before " -"being removed during a cleanup of the cache. 0 means keep forever. The " -"value of this parameter must be greater than or equal to " -"offline_credentials_expiration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:854 -msgid "Default: 0 (unlimited)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:860 -msgid "id_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:863 -msgid "The Data Provider identity backend to use for this domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:867 -msgid "Supported backends:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:870 -msgid "proxy: Support a legacy NSS provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:873 -msgid "local: SSSD internal local provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:876 -msgid "ldap: LDAP provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:882 -msgid "use_fully_qualified_names (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:885 -msgid "" -"If set to TRUE, all requests to this domain must use fully qualified names. " -"For example, if used in LOCAL domain that contains a \"test\" user, " -"<command>getent passwd test</command> wouldn't find the user while " -"<command>getent passwd test@LOCAL</command> would." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:898 -msgid "auth_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:901 -msgid "" -"The authentication provider used for the domain. Supported auth providers " -"are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:905 -msgid "" -"<quote>ldap</quote> for native LDAP authentication. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:912 -msgid "" -"<quote>krb5</quote> for Kerberos authentication. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:919 -msgid "" -"<quote>proxy</quote> for relaying authentication to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:922 -msgid "<quote>none</quote> disables authentication explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:925 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"authentication requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:931 -msgid "access_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:934 -msgid "" -"The access control provider used for the domain. There are two built-in " -"access providers (in addition to any included in installed backends) " -"Internal special providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:940 -msgid "<quote>permit</quote> always allow access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:943 -msgid "<quote>deny</quote> always deny access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:946 -msgid "" -"<quote>simple</quote> access control based on access or deny lists. See " -"<citerefentry> <refentrytitle>sssd-simple</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry> for more information on configuring the simple " -"access module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:953 -msgid "Default: <quote>permit</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:958 -msgid "chpass_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:961 -msgid "" -"The provider which should handle change password operations for the domain. " -"Supported change password providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:966 -msgid "" -"<quote>ipa</quote> to change a password stored in an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:974 -msgid "" -"<quote>ldap</quote> to change a password stored in a LDAP server. See " -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:982 -msgid "" -"<quote>krb5</quote> to change the Kerberos password. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:990 -msgid "" -"<quote>proxy</quote> for relaying password changes to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:994 -msgid "<quote>none</quote> disallows password changes explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:997 -msgid "" -"Default: <quote>auth_provider</quote> is used if it is set and can handle " -"change password requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1004 -msgid "sudo_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1010 -msgid "The SUDO provider used for the domain. Supported SUDO providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1014 -msgid "" -"<quote>ldap</quote> for rules stored in LDAP. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1021 -msgid "<quote>none</quote> disables SUDO explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1024 -msgid "Default: The value of <quote>id_provider</quote> is used if it is set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1030 -msgid "session_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1033 -msgid "" -"The provider which should handle loading of session settings. Supported " -"session providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1038 -msgid "" -"<quote>ipa</quote> to load session settings from an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1046 -msgid "<quote>none</quote> disallows fetching session settings explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1049 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"session loading requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1056 -msgid "lookup_family_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1059 -msgid "" -"Provides the ability to select preferred address family to use when " -"performing DNS lookups." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1063 -msgid "Supported values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1066 -msgid "ipv4_first: Try looking up IPv4 address, if that fails, try IPv6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1069 -msgid "ipv4_only: Only attempt to resolve hostnames to IPv4 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1072 -msgid "ipv6_first: Try looking up IPv6 address, if that fails, try IPv4" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1075 -msgid "ipv6_only: Only attempt to resolve hostnames to IPv6 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1078 -msgid "Default: ipv4_first" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1084 -msgid "dns_resolver_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1087 -msgid "" -"Defines the amount of time (in seconds) to wait for a reply from the DNS " -"resolver before assuming that it is unreachable. If this timeout is reached, " -"the domain will continue to operate in offline mode." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1099 -msgid "dns_discovery_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1102 -msgid "" -"If service discovery is used in the back end, specifies the domain part of " -"the service discovery DNS query." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1106 -msgid "Default: Use the domain part of machine's hostname" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1112 -msgid "override_gid (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1115 -msgid "Override the primary GID value with the one specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1121 -msgid "case_sensitive (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1124 -msgid "" -"Treat user and group names as case sensitive. At the moment, this option is " -"not supported in the local provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1129 -msgid "Default: True" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:681 -msgid "" -"These configuration options can be present in a domain configuration " -"section, that is, in a section called <quote>[domain/<replaceable>NAME</" -"replaceable>]</quote> <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1141 -msgid "proxy_pam_target (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1144 -msgid "The proxy target PAM proxies to." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1147 -msgid "" -"Default: not set by default, you have to take an existing pam configuration " -"or create a new one and add the service name here." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1155 -msgid "proxy_lib_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1158 -msgid "" -"The name of the NSS library to use in proxy domains. The NSS functions " -"searched for in the library are in the form of _nss_$(libName)_$(function), " -"for example _nss_files_getpwent." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1137 -msgid "" -"Options valid for proxy domains. <placeholder type=\"variablelist\" id=" -"\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:1170 -msgid "The local domain section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:1172 -msgid "" -"This section contains settings for domain that stores users and groups in " -"SSSD native database, that is, a domain that uses " -"<replaceable>id_provider=local</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1179 -msgid "default_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1182 -msgid "The default shell for users created with SSSD userspace tools." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1186 -msgid "Default: <filename>/bin/bash</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1191 -msgid "base_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1194 -msgid "" -"The tools append the login name to <replaceable>base_directory</replaceable> " -"and use that as the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1199 -msgid "Default: <filename>/home</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1204 -msgid "create_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1207 -msgid "" -"Indicate if a home directory should be created by default for new users. " -"Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1211 sssd.conf.5.xml:1223 -msgid "Default: TRUE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1216 -msgid "remove_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1219 -msgid "" -"Indicate if a home directory should be removed by default for deleted " -"users. Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1228 -msgid "homedir_umask (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1231 -msgid "" -"Used by <citerefentry> <refentrytitle>sss_useradd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry> to specify the default permissions " -"on a newly created home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1239 -msgid "Default: 077" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1244 -msgid "skel_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1247 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<citerefentry> <refentrytitle>sss_useradd</refentrytitle> <manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1257 -msgid "Default: <filename>/etc/skel</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1262 -msgid "mail_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1265 -msgid "" -"The mail spool directory. This is needed to manipulate the mailbox when its " -"corresponding user account is modified or deleted. If not specified, a " -"default value is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1272 -msgid "Default: <filename>/var/mail</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1277 -msgid "userdel_cmd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1280 -msgid "" -"The command that is run after a user is removed. The command us passed the " -"username of the user being removed as the first and only parameter. The " -"return code of the command is not taken into account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1286 -msgid "Default: None, no command is run" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:1296 sssd-ldap.5.xml:2064 sssd-simple.5.xml:126 -#: sssd-ipa.5.xml:544 sssd-krb5.5.xml:432 -msgid "EXAMPLE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:1302 -#, no-wrap -msgid "" -"[sssd]\n" -"domains = LDAP\n" -"services = nss, pam\n" -"config_file_version = 2\n" -"\n" -"[nss]\n" -"filter_groups = root\n" -"filter_users = root\n" -"\n" -"[pam]\n" -"\n" -"[domain/LDAP]\n" -"id_provider = ldap\n" -"ldap_uri = ldap://ldap.example.com\n" -"ldap_search_base = dc=example,dc=com\n" -"\n" -"auth_provider = krb5\n" -"krb5_server = kerberos.example.com\n" -"krb5_realm = EXAMPLE.COM\n" -"cache_credentials = true\n" -"\n" -"min_id = 10000\n" -"max_id = 20000\n" -"enumerate = False\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1298 -msgid "" -"The following example shows a typical SSSD config. It does not describe " -"configuration of the domains themselves - refer to documentation on " -"configuring domains for more details. <placeholder type=\"programlisting\" " -"id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1333 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>pam_sss</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ldap.5.xml:10 sssd-ldap.5.xml:16 -msgid "sssd-ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:23 -msgid "" -"This manual page describes the configuration of LDAP domains for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. Refer to the <quote>FILE FORMAT</quote> section of the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for detailed syntax information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:35 -msgid "You can configure SSSD to use more than one LDAP domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:38 -msgid "" -"LDAP back end supports id, auth, access and chpass providers. If you want to " -"authenticate against an LDAP server either TLS/SSL or LDAPS is required. " -"<command>sssd</command> <emphasis>does not</emphasis> support authentication " -"over an unencrypted channel. If the LDAP server is used only as an identity " -"provider, an encrypted channel is not needed. Please refer to " -"<quote>ldap_access_filter</quote> config option for more information about " -"using LDAP as an access provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:49 sssd-simple.5.xml:69 sssd-ipa.5.xml:64 -#: sssd-krb5.5.xml:63 -msgid "CONFIGURATION OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:60 -msgid "ldap_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:63 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference. Refer to the <quote>FAILOVER</" -"quote> section for more information on failover and server redundancy. If " -"not specified, service discovery is enabled. For more information, refer to " -"the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:70 -msgid "The format of the URI must match the format defined in RFC 2732:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:73 -msgid "ldap[s]://<host>[:port]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:76 -msgid "" -"For explicit IPv6 addresses, <host> must be enclosed in brackets []" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:79 -msgid "example: ldap://[fc00::126:25]:389" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:85 -msgid "ldap_chpass_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:88 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference to change the password of a user. " -"Refer to the <quote>FAILOVER</quote> section for more information on " -"failover and server redundancy." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:95 -msgid "To enable service discovery ldap_chpass_dns_service_name must be set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:99 -msgid "Default: empty, i.e. ldap_uri is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:105 -msgid "ldap_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:108 -msgid "The default base DN to use for performing LDAP user operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:112 -msgid "" -"Starting with SSSD 1.7.0, SSSD supports multiple search bases using the " -"syntax:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:116 -msgid "search_base[?scope?[filter][?search_base?scope?[filter]]*]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:119 -msgid "The scope can be one of \"base\", \"onelevel\" or \"subtree\"." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:122 -msgid "" -"The filter must be a valid LDAP search filter as specified by http://www." -"ietf.org/rfc/rfc2254.txt" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:126 -msgid "Examples:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:129 -msgid "" -"ldap_search_base = dc=example,dc=com (which is equivalent to) " -"ldap_search_base = dc=example,dc=com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:134 -msgid "" -"ldap_search_base = cn=host_specific,dc=example,dc=com?subtree?" -"(host=thishost)?dc=example.com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:137 -msgid "" -"Note: It is unsupported to have multiple search bases which reference " -"identically-named objects (for example, groups with the same name in two " -"different search bases). This will lead to unpredictable behavior on client " -"machines." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:144 -msgid "" -"Default: If not set, the value of the defaultNamingContext or namingContexts " -"attribute from the RootDSE of the LDAP server is used. If " -"defaultNamingContext does not exists or has an empty value namingContexts is " -"used. The namingContexts attribute must have a single value with the DN of " -"the search base of the LDAP server to make this work. Multiple values are " -"are not supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:158 -msgid "ldap_schema (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:161 -msgid "" -"Specifies the Schema Type in use on the target LDAP server. Depending on " -"the selected schema, the default attribute names retrieved from the servers " -"may vary. The way that some attributes are handled may also differ. Three " -"schema types are currently supported: rfc2307 rfc2307bis IPA The main " -"difference between these schema types is how group memberships are recorded " -"in the server. With rfc2307, group members are listed by name in the " -"<emphasis>memberUid</emphasis> attribute. With rfc2307bis and IPA, group " -"members are listed by DN and stored in the <emphasis>member</emphasis> " -"attribute." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:180 -msgid "Default: rfc2307" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:186 -msgid "ldap_default_bind_dn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:189 -msgid "The default bind DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:196 -msgid "ldap_default_authtok_type (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:199 -msgid "The type of the authentication token of the default bind DN." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:203 -msgid "The two mechanisms currently supported are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:206 -msgid "password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:209 -msgid "obfuscated_password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:212 -msgid "Default: password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:218 -msgid "ldap_default_authtok (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:221 -msgid "" -"The authentication token of the default bind DN. Only clear text passwords " -"are currently supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:228 -msgid "ldap_user_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:231 -msgid "The object class of a user entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:234 -msgid "Default: posixAccount" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:240 -msgid "ldap_user_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:243 -msgid "The LDAP attribute that corresponds to the user's login name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:247 -msgid "Default: uid" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:253 -msgid "ldap_user_uid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:256 -msgid "The LDAP attribute that corresponds to the user's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:260 -msgid "Default: uidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:266 -msgid "ldap_user_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:269 -msgid "The LDAP attribute that corresponds to the user's primary group id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:273 sssd-ldap.5.xml:740 -msgid "Default: gidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:279 -msgid "ldap_user_gecos (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:282 -msgid "The LDAP attribute that corresponds to the user's gecos field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:286 -msgid "Default: gecos" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:292 -msgid "ldap_user_home_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:295 -msgid "The LDAP attribute that contains the name of the user's home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:299 -msgid "Default: homeDirectory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:305 -msgid "ldap_user_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:308 -msgid "The LDAP attribute that contains the path to the user's default shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:312 -msgid "Default: loginShell" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:318 -msgid "ldap_user_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:321 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP user object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:325 sssd-ldap.5.xml:766 sssd-ldap.5.xml:878 -msgid "Default: nsUniqueId" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:331 -msgid "ldap_user_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:334 sssd-ldap.5.xml:775 sssd-ldap.5.xml:887 -msgid "" -"The LDAP attribute that contains timestamp of the last modification of the " -"parent object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:338 sssd-ldap.5.xml:779 sssd-ldap.5.xml:894 -msgid "Default: modifyTimestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:344 -msgid "ldap_user_shadow_last_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:347 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (date of " -"the last password change)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:357 -msgid "Default: shadowLastChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:363 -msgid "ldap_user_shadow_min (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:366 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (minimum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:375 -msgid "Default: shadowMin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:381 -msgid "ldap_user_shadow_max (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:384 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (maximum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:393 -msgid "Default: shadowMax" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:399 -msgid "ldap_user_shadow_warning (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:402 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password warning period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:412 -msgid "Default: shadowWarning" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:418 -msgid "ldap_user_shadow_inactive (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:421 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password inactivity period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:431 -msgid "Default: shadowInactive" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:437 -msgid "ldap_user_shadow_expire (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:440 -msgid "" -"When using ldap_pwd_policy=shadow or ldap_account_expire_policy=shadow, this " -"parameter contains the name of an LDAP attribute corresponding to its " -"<citerefentry> <refentrytitle>shadow</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> counterpart (account expiration date)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:450 -msgid "Default: shadowExpire" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:456 -msgid "ldap_user_krb_last_pwd_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:459 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time of last password change in " -"kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:465 -msgid "Default: krbLastPwdChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:471 -msgid "ldap_user_krb_password_expiration (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:474 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time when current password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:480 -msgid "Default: krbPasswordExpiration" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:486 -msgid "ldap_user_ad_account_expires (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:489 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the expiration time of the account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:494 -msgid "Default: accountExpires" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:500 -msgid "ldap_user_ad_user_account_control (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:503 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the user account control bit field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:508 -msgid "Default: userAccountControl" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:514 -msgid "ldap_ns_account_lock (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:517 -msgid "" -"When using ldap_account_expire_policy=rhds or equivalent, this parameter " -"determines if access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:522 -msgid "Default: nsAccountLock" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:528 -msgid "ldap_user_nds_login_disabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:531 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines if " -"access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:535 sssd-ldap.5.xml:549 -msgid "Default: loginDisabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:541 -msgid "ldap_user_nds_login_expiration_time (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:544 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines until " -"which date access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:555 -msgid "ldap_user_nds_login_allowed_time_map (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:558 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines the " -"hours of a day in a week when access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:563 -msgid "Default: loginAllowedTimeMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:569 -msgid "ldap_user_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:572 -msgid "" -"The LDAP attribute that contains the user's Kerberos User Principal Name " -"(UPN)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:576 -msgid "Default: krbPrincipalName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:582 -msgid "ldap_user_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:585 -msgid "The LDAP attribute that contains the user's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:592 -msgid "ldap_force_upper_case_realm (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:595 -msgid "" -"Some directory servers, for example Active Directory, might deliver the " -"realm part of the UPN in lower case, which might cause the authentication to " -"fail. Set this option to a non-zero value if you want to use an upper-case " -"realm." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:608 -msgid "ldap_enumeration_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:611 -msgid "" -"Specifies how many seconds SSSD has to wait before refreshing its cache of " -"enumerated records." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:616 sssd-ldap.5.xml:1808 -msgid "Default: 300" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:622 -msgid "ldap_purge_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:625 -msgid "" -"Determine how often to check the cache for inactive entries (such as groups " -"with no members and users who have never logged in) and remove them to save " -"space." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:631 -msgid "Setting this option to zero will disable the cache cleanup operation." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:635 -msgid "Default: 10800 (12 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:641 -msgid "ldap_user_fullname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:644 -msgid "The LDAP attribute that corresponds to the user's full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:648 sssd-ldap.5.xml:727 sssd-ldap.5.xml:828 -#: sssd-ldap.5.xml:919 sssd-ldap.5.xml:1663 sssd-ldap.5.xml:1881 -#: sssd-ipa.5.xml:422 -msgid "Default: cn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:654 -msgid "ldap_user_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:657 -msgid "The LDAP attribute that lists the user's group memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:661 sssd-ipa.5.xml:326 -msgid "Default: memberOf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:667 -msgid "ldap_user_authorized_service (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:670 -msgid "" -"If access_provider=ldap and ldap_access_order=authorized_service, SSSD will " -"use the presence of the authorizedService attribute in the user's LDAP entry " -"to determine access privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:677 -msgid "" -"An explicit deny (!svc) is resolved first. Second, SSSD searches for " -"explicit allow (svc) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:682 -msgid "Default: authorizedService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:688 -msgid "ldap_user_authorized_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:691 -msgid "" -"If access_provider=ldap and ldap_access_order=host, SSSD will use the " -"presence of the host attribute in the user's LDAP entry to determine access " -"privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:697 -msgid "" -"An explicit deny (!host) is resolved first. Second, SSSD searches for " -"explicit allow (host) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:702 -msgid "Default: host" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:708 -msgid "ldap_group_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:711 -msgid "The object class of a group entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:714 -msgid "Default: posixGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:720 -msgid "ldap_group_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:723 -msgid "The LDAP attribute that corresponds to the group name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:733 -msgid "ldap_group_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:736 -msgid "The LDAP attribute that corresponds to the group's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:746 -msgid "ldap_group_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:749 -msgid "The LDAP attribute that contains the names of the group's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:753 -msgid "Default: memberuid (rfc2307) / member (rfc2307bis)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:759 -msgid "ldap_group_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:762 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP group object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:772 -msgid "ldap_group_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:785 -msgid "ldap_group_nesting_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:788 -msgid "" -"If ldap_schema is set to a schema format that supports nested groups (e.g. " -"RFC2307bis), then this option controls how many levels of nesting SSSD will " -"follow. This option has no effect on the RFC2307 schema." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:795 -msgid "Default: 2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:801 -msgid "ldap_netgroup_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:804 -msgid "The object class of a netgroup entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:807 -msgid "In IPA provider, ipa_netgroup_object_class should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:811 -msgid "Default: nisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:817 -msgid "ldap_netgroup_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:820 -msgid "The LDAP attribute that corresponds to the netgroup name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:824 -msgid "In IPA provider, ipa_netgroup_name should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:834 -msgid "ldap_netgroup_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:837 -msgid "The LDAP attribute that contains the names of the netgroup's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:841 -msgid "In IPA provider, ipa_netgroup_member should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:845 -msgid "Default: memberNisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:851 -msgid "ldap_netgroup_triple (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:854 -msgid "" -"The LDAP attribute that contains the (host, user, domain) netgroup triples." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:858 sssd-ldap.5.xml:891 -msgid "This option is not available in IPA provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:861 -msgid "Default: nisNetgroupTriple" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:867 -msgid "ldap_netgroup_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:870 -msgid "" -"The LDAP attribute that contains the UUID/GUID of an LDAP netgroup object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:874 -msgid "In IPA provider, ipa_netgroup_uuid should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:884 -msgid "ldap_netgroup_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:900 -msgid "ldap_service_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:903 -msgid "The object class of a service entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:906 -msgid "Default: ipService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:912 -msgid "ldap_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:915 -msgid "" -"The LDAP attribute that contains the name of service attributes and their " -"aliases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:925 -msgid "ldap_service_port (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:928 -msgid "The LDAP attribute that contains the port managed by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:932 -msgid "Default: ipServicePort" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:938 -msgid "ldap_service_proto (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:941 -msgid "" -"The LDAP attribute that contains the protocols understood by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:945 -msgid "Default: ipServiceProtocol" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:951 -msgid "ldap_service_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:954 -msgid "An optional base DN to restrict service searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:958 sssd-ldap.5.xml:1918 sssd-ldap.5.xml:1937 -#: sssd-ldap.5.xml:1956 sssd-ldap.5.xml:2019 sssd-ldap.5.xml:2041 -#: sssd-ipa.5.xml:163 sssd-ipa.5.xml:187 -msgid "" -"See <quote>ldap_search_base</quote> for information about configuring " -"multiple search bases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:963 sssd-ldap.5.xml:1923 sssd-ldap.5.xml:1942 -#: sssd-ldap.5.xml:1961 sssd-ldap.5.xml:2024 sssd-ldap.5.xml:2046 -#: sssd-ipa.5.xml:173 sssd-ipa.5.xml:192 -msgid "Default: the value of <emphasis>ldap_search_base</emphasis>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:970 -msgid "ldap_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:973 -msgid "" -"Specifies the timeout (in seconds) that ldap searches are allowed to run " -"before they are cancelled and cached results are returned (and offline mode " -"is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:979 -msgid "" -"Note: this option is subject to change in future versions of the SSSD. It " -"will likely be replaced at some point by a series of timeouts for specific " -"lookup types." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:985 sssd-ldap.5.xml:1027 sssd-ldap.5.xml:1042 -msgid "Default: 6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:991 -msgid "ldap_enumeration_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:994 -msgid "" -"Specifies the timeout (in seconds) that ldap searches for user and group " -"enumerations are allowed to run before they are cancelled and cached results " -"are returned (and offline mode is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1001 -msgid "Default: 60" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1007 -msgid "ldap_network_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1010 -msgid "" -"Specifies the timeout (in seconds) after which the <citerefentry> " -"<refentrytitle>poll</refentrytitle> <manvolnum>2</manvolnum> </citerefentry>/" -"<citerefentry> <refentrytitle>select</refentrytitle> <manvolnum>2</" -"manvolnum> </citerefentry> following a <citerefentry> " -"<refentrytitle>connect</refentrytitle> <manvolnum>2</manvolnum> </" -"citerefentry> returns in case of no activity." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1033 -msgid "ldap_opt_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1036 -msgid "" -"Specifies a timeout (in seconds) after which calls to synchronous LDAP APIs " -"will abort if no response is received. Also controls the timeout when " -"communicating with the KDC in case of SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1048 -msgid "ldap_connection_expire_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1051 -msgid "" -"Specifies a timeout (in seconds) that a connection to an LDAP server will be " -"maintained. After this time, the connection will be re-established. If used " -"in parallel with SASL/GSSAPI, the sooner of the two values (this value vs. " -"the TGT lifetime) will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1059 -msgid "Default: 900 (15 minutes)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1065 -msgid "ldap_page_size (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1068 -msgid "" -"Specify the number of records to retrieve from LDAP in a single request. " -"Some LDAP servers enforce a maximum limit per-request." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1073 -msgid "Default: 1000" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1079 -msgid "ldap_disable_paging" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1082 -msgid "" -"Disable the LDAP paging control. This option should be used if the LDAP " -"server reports that it supports the LDAP paging control in its RootDSE but " -"it is not enabled or does not behave properly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1088 -msgid "" -"Example: OpenLDAP servers with the paging control module installed on the " -"server but not enabled will report it in the RootDSE but be unable to use it." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1094 -msgid "" -"Example: 389 DS has a bug where it can only support a one paging control at " -"a time on a single connection. On busy clients, this can result in some " -"requests being denied." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1103 -msgid "ldap_deref_threshold (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1106 -msgid "" -"Specify the number of group members that must be missing from the internal " -"cache in order to trigger a dereference lookup. If less members are missing, " -"they are looked up individually." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1112 -msgid "" -"You can turn off dereference lookups completely by setting the value to 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1116 -msgid "" -"A dereference lookup is a means of fetching all group members in a single " -"LDAP call. Different LDAP servers may implement different dereference " -"methods. The currently supported servers are 389/RHDS, OpenLDAP and Active " -"Directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1124 -msgid "" -"<emphasis>Note:</emphasis> If any of the search bases specifies a search " -"filter, then the dereference lookup performance enhancement will be disabled " -"regardless of this setting." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1137 -msgid "ldap_tls_reqcert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1140 -msgid "" -"Specifies what checks to perform on server certificates in a TLS session, if " -"any. It can be specified as one of the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1146 -msgid "" -"<emphasis>never</emphasis> = The client will not request or check any server " -"certificate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1150 -msgid "" -"<emphasis>allow</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, it will be ignored and the session proceeds normally." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1157 -msgid "" -"<emphasis>try</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, the session is immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1163 -msgid "" -"<emphasis>demand</emphasis> = The server certificate is requested. If no " -"certificate is provided, or a bad certificate is provided, the session is " -"immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1169 -msgid "<emphasis>hard</emphasis> = Same as <quote>demand</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1173 -msgid "Default: hard" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1179 -msgid "ldap_tls_cacert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1182 -msgid "" -"Specifies the file that contains certificates for all of the Certificate " -"Authorities that <command>sssd</command> will recognize." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1187 sssd-ldap.5.xml:1205 sssd-ldap.5.xml:1246 -msgid "" -"Default: use OpenLDAP defaults, typically in <filename>/etc/openldap/ldap." -"conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1194 -msgid "ldap_tls_cacertdir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1197 -msgid "" -"Specifies the path of a directory that contains Certificate Authority " -"certificates in separate individual files. Typically the file names need to " -"be the hash of the certificate followed by '.0'. If available, " -"<command>cacertdir_rehash</command> can be used to create the correct names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1212 -msgid "ldap_tls_cert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1215 -msgid "Specifies the file that contains the certificate for the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1219 sssd-ldap.5.xml:1231 sssd-ldap.5.xml:1979 -#: sssd-ldap.5.xml:2006 sssd-krb5.5.xml:359 -msgid "Default: not set" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1225 -msgid "ldap_tls_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1228 -msgid "Specifies the file that contains the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1237 -msgid "ldap_tls_cipher_suite (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1240 -msgid "" -"Specifies acceptable cipher suites. Typically this is a colon sperated " -"list. See <citerefentry><refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> for format." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1253 -msgid "ldap_id_use_start_tls (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1256 -msgid "" -"Specifies that the id_provider connection must also use <systemitem class=" -"\"protocol\">tls</systemitem> to protect the channel." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1266 -msgid "ldap_sasl_mech (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1269 -msgid "" -"Specify the SASL mechanism to use. Currently only GSSAPI is tested and " -"supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1273 sssd-ldap.5.xml:1428 -msgid "Default: none" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1279 -msgid "ldap_sasl_authid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1282 -msgid "" -"Specify the SASL authorization id to use. When GSSAPI is used, this " -"represents the Kerberos principal used for authentication to the directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1287 -msgid "Default: host/machine.fqdn@REALM" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1293 -msgid "ldap_sasl_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1296 -msgid "" -"If set to true, the LDAP library would perform a reverse lookup to " -"canonicalize the host name during a SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1301 -msgid "Default: false;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1307 -msgid "ldap_krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1310 -msgid "Specify the keytab to use when using SASL/GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1313 -msgid "Default: System keytab, normally <filename>/etc/krb5.keytab</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1319 -msgid "ldap_krb5_init_creds (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1322 -msgid "" -"Specifies that the id_provider should init Kerberos credentials (TGT). This " -"action is performed only if SASL is used and the mechanism selected is " -"GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1334 -msgid "ldap_krb5_ticket_lifetime (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1337 -msgid "Specifies the lifetime in seconds of the TGT if GSSAPI is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1341 -msgid "Default: 86400 (24 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1347 sssd-krb5.5.xml:74 -msgid "krb5_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1350 sssd-krb5.5.xml:77 -msgid "" -"Specifies the comma-separated list of IP addresses or hostnames of the " -"Kerberos servers to which SSSD should connect in the order of preference. " -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. An optional port number (preceded by a " -"colon) may be appended to the addresses or hostnames. If empty, service " -"discovery is enabled - for more information, refer to the <quote>SERVICE " -"DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1362 sssd-krb5.5.xml:89 -msgid "" -"When using service discovery for KDC or kpasswd servers, SSSD first searches " -"for DNS entries that specify _udp as the protocol and falls back to _tcp if " -"none are found." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1367 sssd-krb5.5.xml:94 -msgid "" -"This option was named <quote>krb5_kdcip</quote> in earlier releases of SSSD. " -"While the legacy name is recognized for the time being, users are advised to " -"migrate their config files to use <quote>krb5_server</quote> instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1376 sssd-ipa.5.xml:216 sssd-krb5.5.xml:103 -msgid "krb5_realm (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1379 -msgid "Specify the Kerberos REALM (for SASL/GSSAPI auth)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1382 -msgid "Default: System defaults, see <filename>/etc/krb5.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1388 sssd-ipa.5.xml:231 sssd-krb5.5.xml:409 -msgid "krb5_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1391 -msgid "" -"Specifies if the host principal should be canonicalized when connecting to " -"LDAP server. This feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1403 -msgid "ldap_pwd_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1406 -msgid "" -"Select the policy to evaluate the password expiration on the client side. " -"The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1411 -msgid "" -"<emphasis>none</emphasis> - No evaluation on the client side. This option " -"cannot disable server-side password policies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1416 -msgid "" -"<emphasis>shadow</emphasis> - Use <citerefentry><refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum></citerefentry> style attributes to " -"evaluate if the password has expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1422 -msgid "" -"<emphasis>mit_kerberos</emphasis> - Use the attributes used by MIT Kerberos " -"to determine if the password has expired. Use chpass_provider=krb5 to update " -"these attributes when the password is changed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1434 -msgid "ldap_referrals (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1437 -msgid "Specifies whether automatic referral chasing should be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1441 -msgid "" -"Please note that sssd only supports referral chasing when it is compiled " -"with OpenLDAP version 2.4.13 or higher." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1452 -msgid "ldap_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1455 -msgid "Specifies the service name to use when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1459 -msgid "Default: ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1465 -msgid "ldap_chpass_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1468 -msgid "" -"Specifies the service name to use to find an LDAP server which allows " -"password changes when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1473 -msgid "Default: not set, i.e. service discovery is disabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1479 -msgid "ldap_access_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1482 -msgid "" -"If using access_provider = ldap, this option is mandatory. It specifies an " -"LDAP search filter criteria that must be met for the user to be granted " -"access on this host. If access_provider = ldap and this option is not set, " -"it will result in all users being denied access. Use access_provider = allow " -"to change this default behavior." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1492 sssd-ldap.5.xml:1982 -msgid "Example:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1495 -#, no-wrap -msgid "" -"access_provider = ldap\n" -"ldap_access_filter = memberOf=cn=allowedusers,ou=Groups,dc=example,dc=com\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1499 -msgid "" -"This example means that access to this host is restricted to members of the " -"\"allowedusers\" group in ldap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1504 -msgid "" -"Offline caching for this feature is limited to determining whether the " -"user's last online login was granted access permission. If they were granted " -"access during their last login, they will continue to be granted access " -"while offline and vice-versa." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1512 sssd-ldap.5.xml:1562 -msgid "Default: Empty" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1518 -msgid "ldap_account_expire_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1521 -msgid "" -"With this option a client side evaluation of access control attributes can " -"be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1525 -msgid "" -"Please note that it is always recommended to use server side access control, " -"i.e. the LDAP server should deny the bind request with a suitable error code " -"even if the password is correct." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1532 -msgid "The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1535 -msgid "" -"<emphasis>shadow</emphasis>: use the value of ldap_user_shadow_expire to " -"determine if the account is expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1540 -msgid "" -"<emphasis>ad</emphasis>: use the value of the 32bit field " -"ldap_user_ad_user_account_control and allow access if the second bit is not " -"set. If the attribute is missing access is granted. Also the expiration time " -"of the account is checked." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1547 -msgid "" -"<emphasis>rhds</emphasis>, <emphasis>ipa</emphasis>, <emphasis>389ds</" -"emphasis>: use the value of ldap_ns_account_lock to check if access is " -"allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1553 -msgid "" -"<emphasis>nds</emphasis>: the values of " -"ldap_user_nds_login_allowed_time_map, ldap_user_nds_login_disabled and " -"ldap_user_nds_login_expiration_time are used to check if access is allowed. " -"If both attributes are missing access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1568 -msgid "ldap_access_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1571 -msgid "Comma separated list of access control options. Allowed values are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1575 -msgid "<emphasis>filter</emphasis>: use ldap_access_filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1578 -msgid "<emphasis>expire</emphasis>: use ldap_account_expire_policy" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1582 -msgid "" -"<emphasis>authorized_service</emphasis>: use the authorizedService attribute " -"to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1587 -msgid "<emphasis>host</emphasis>: use the host attribute to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1591 -msgid "Default: filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1594 -msgid "" -"Please note that it is a configuration error if a value is used more than " -"once." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1601 -msgid "ldap_deref (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1604 -msgid "" -"Specifies how alias dereferencing is done when performing a search. The " -"following options are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1609 -msgid "<emphasis>never</emphasis>: Aliases are never dereferenced." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1613 -msgid "" -"<emphasis>searching</emphasis>: Aliases are dereferenced in subordinates of " -"the base object, but not in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1618 -msgid "" -"<emphasis>finding</emphasis>: Aliases are only dereferenced when locating " -"the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1623 -msgid "" -"<emphasis>always</emphasis>: Aliases are dereferenced both in searching and " -"in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1628 -msgid "" -"Default: Empty (this is handled as <emphasis>never</emphasis> by the LDAP " -"client libraries)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:51 -msgid "" -"All of the common configuration options that apply to SSSD domains also " -"apply to LDAP domains. Refer to the <quote>DOMAIN SECTIONS</quote> section " -"of the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for full details. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1639 -msgid "SUDO OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1644 -msgid "ldap_sudorule_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1647 -msgid "The object class of a sudo rule entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1650 -msgid "Default: sudoRole" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1656 -msgid "ldap_sudorule_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1659 -msgid "The LDAP attribute that corresponds to the sudo rule name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1669 -msgid "ldap_sudorule_command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1672 -msgid "The LDAP attribute that corresponds to the command name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1676 -msgid "Default: sudoCommand" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1682 -msgid "ldap_sudorule_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1685 -msgid "" -"The LDAP attribute that corresponds to the host name (or host IP address, " -"host IP network, or host netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1690 -msgid "Default: sudoHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1696 -msgid "ldap_sudorule_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1699 -msgid "" -"The LDAP attribute that corresponds to the user name (or UID, group name or " -"user's netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1703 -msgid "Default: sudoUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1709 -msgid "ldap_sudorule_option (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1712 -msgid "The LDAP attribute that corresponds to the sudo options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1716 -msgid "Default: sudoOption" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1722 -msgid "ldap_sudorule_runasuser (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1725 -msgid "" -"The LDAP attribute that corresponds to the user name that commands may be " -"run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1729 -msgid "Default: sudoRunAsUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1735 -msgid "ldap_sudorule_runasgroup (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1738 -msgid "" -"The LDAP attribute that corresponds to the group name or group GID that " -"commands may be run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1742 -msgid "Default: sudoRunAsGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1748 -msgid "ldap_sudorule_notbefore (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1751 -msgid "" -"The LDAP attribute that corresponds to the start date/time for when the sudo " -"rule is valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1755 -msgid "Default: sudoNotBefore" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1761 -msgid "ldap_sudorule_notafter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1764 -msgid "" -"The LDAP attribute that corresponds to the expiration date/time, after which " -"the sudo rule will no longer be valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1769 -msgid "Default: sudoNotAfter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1775 -msgid "ldap_sudorule_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1778 -msgid "The LDAP attribute that corresponds to the ordering index of the rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1782 -msgid "Default: sudoOrder" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1788 -msgid "ldap_sudo_refresh_enabled (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1791 -msgid "" -"Enables periodical download of all sudo rules. The cache is purged before " -"each update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1801 -msgid "ldap_sudo_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1804 -msgid "" -"How many seconds SSSD has to wait before refreshing its cache of sudo rules." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1642 -msgid "<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1815 -msgid "" -"This manual page only describes attribute name mapping. For detailed " -"explanation of sudo related attribute semantics, see <citerefentry> " -"<refentrytitle>sudoers.ldap</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1825 -msgid "AUTOFS OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1827 -msgid "" -"Please note that the default values correspond to the default schema which " -"is RFC2307." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1834 -msgid "ldap_autofs_map_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1837 sssd-ldap.5.xml:1863 -msgid "The object class of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1840 sssd-ldap.5.xml:1867 -msgid "Default: automountMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1847 -msgid "ldap_autofs_map_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1850 -msgid "The name of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1853 -msgid "Default: ou" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1860 -msgid "ldap_autofs_entry_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1874 -msgid "ldap_autofs_entry_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1877 sssd-ldap.5.xml:1891 -msgid "" -"The key of an automount entry in LDAP. The entry usually corresponds to a " -"mount point." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1888 -msgid "ldap_autofs_entry_value (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1895 -msgid "Default: automountInformation" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1832 -msgid "" -"<placeholder type=\"variablelist\" id=\"0\"/> <placeholder type=" -"\"variablelist\" id=\"1\"/> <placeholder type=\"variablelist\" id=\"2\"/> " -"<placeholder type=\"variablelist\" id=\"3\"/> <placeholder type=" -"\"variablelist\" id=\"4\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1904 -msgid "ADVANCED OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1911 -msgid "ldap_netgroup_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1914 -msgid "" -"An optional base DN to restrict netgroup searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1930 -msgid "ldap_user_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1933 -msgid "An optional base DN to restrict user searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1949 -msgid "ldap_group_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1952 -msgid "An optional base DN to restrict group searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1968 -msgid "ldap_user_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1971 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict user searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1975 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_user_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1985 -#, no-wrap -msgid "" -" ldap_user_search_filter = (loginShell=/bin/tcsh)\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1988 -msgid "" -"This filter would restrict user searches to users that have their shell set " -"to /bin/tcsh." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1995 -msgid "ldap_group_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1998 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict group searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2002 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_group_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2012 -msgid "ldap_sudo_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2015 -msgid "" -"An optional base DN to restrict sudo rules searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2034 -msgid "ldap_autofs_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2037 -msgid "" -"An optional base DN to restrict automounter searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1906 -msgid "" -"These options are supported by LDAP domains, but they should be used with " -"caution. Please include them in your configuration only if you know what you " -"are doing. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2066 -msgid "" -"The following example assumes that SSSD is correctly configured and LDAP is " -"set to one of the domains in the <replaceable>[domains]</replaceable> " -"section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ldap.5.xml:2072 -#, no-wrap -msgid "" -" [domain/LDAP]\n" -" id_provider = ldap\n" -" auth_provider = ldap\n" -" ldap_uri = ldap://ldap.mydomain.org\n" -" ldap_search_base = dc=mydomain,dc=org\n" -" ldap_tls_reqcert = demand\n" -" cache_credentials = true\n" -" enumerate = true\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2071 sssd-simple.5.xml:134 sssd-ipa.5.xml:552 -#: sssd-krb5.5.xml:441 -msgid "<placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:2085 sssd_krb5_locator_plugin.8.xml:61 -msgid "NOTES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2087 -msgid "" -"The descriptions of some of the configuration options in this manual page " -"are based on the <citerefentry> <refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page from the OpenLDAP 2.4 " -"distribution." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2098 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <refentryinfo> -#: pam_sss.8.xml:8 include/upstream.xml:2 -msgid "" -"<productname>SSSD</productname> <orgname>The SSSD upstream - http://" -"fedorahosted.org/sssd</orgname>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: pam_sss.8.xml:13 pam_sss.8.xml:18 -msgid "pam_sss" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: pam_sss.8.xml:19 -msgid "PAM module for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: pam_sss.8.xml:24 -msgid "" -"<command>pam_sss.so</command> <arg choice='opt'> <replaceable>quiet</" -"replaceable> </arg> <arg choice='opt'> <replaceable>forward_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_first_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_authtok</" -"replaceable> </arg> <arg choice='opt'> <replaceable>retry=N</replaceable> </" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:45 -msgid "" -"<command>pam_sss.so</command> is the PAM interface to the System Security " -"Services daemon (SSSD). Errors and results are logged through <command>syslog" -"(3)</command> with the LOG_AUTHPRIV facility." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:55 -msgid "<option>quiet</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:58 -msgid "Suppress log messages for unknown users." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:63 -msgid "<option>forward_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:66 -msgid "" -"If <option>forward_pass</option> is set the entered password is put on the " -"stack for other PAM modules to use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:73 -msgid "<option>use_first_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:76 -msgid "" -"The argument use_first_pass forces the module to use a previous stacked " -"modules password and will never prompt the user - if no password is " -"available or the password is not appropriate, the user will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:84 -msgid "<option>use_authtok</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:87 -msgid "" -"When password changing enforce the module to set the new password to the one " -"provided by a previously stacked password module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:94 -msgid "<option>retry=N</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:97 -msgid "" -"If specified the user is asked another N times for a password if " -"authentication fails. Default is 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:99 -msgid "" -"Please note that this option might not work as expected if the application " -"calling PAM handles the user dialog on its own. A typical example is " -"<command>sshd</command> with <option>PasswordAuthentication</option>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:110 -msgid "MODULE TYPES PROVIDED" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:111 -msgid "" -"All module types (<option>account</option>, <option>auth</option>, " -"<option>password</option> and <option>session</option>) are provided." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:117 -msgid "FILES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:118 -msgid "" -"If a password reset by root fails, because the corresponding SSSD provider " -"does not support password resets, an individual message can be displayed. " -"This message can e.g. contain instructions about how to reset a password." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:123 -msgid "" -"The message is read from the file <filename>pam_sss_pw_reset_message.LOC</" -"filename> where LOC stands for a locale string returned by <citerefentry> " -"<refentrytitle>setlocale</refentrytitle><manvolnum>3</manvolnum> </" -"citerefentry>. If there is no matching file the content of " -"<filename>pam_sss_pw_reset_message.txt</filename> is displayed. Root must be " -"the owner of the files and only root may have read and write permissions " -"while all other users must have only read permissions." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:133 -msgid "" -"These files are searched in the directory <filename>/etc/sssd/customize/" -"DOMAIN_NAME/</filename>. If no matching file is present a generic message is " -"displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:141 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd_krb5_locator_plugin.8.xml:10 sssd_krb5_locator_plugin.8.xml:15 -msgid "sssd_krb5_locator_plugin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:22 -msgid "" -"The Kerberos locator plugin <command>sssd_krb5_locator_plugin</command> is " -"used by the Kerberos provider of <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry> to tell the Kerberos " -"libraries what Realm and which KDC to use. Typically this is done in " -"<citerefentry> <refentrytitle>krb5.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> which is always read by the Kerberos libraries. " -"To simplify the configuration the Realm and the KDC can be defined in " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> as described in <citerefentry> " -"<refentrytitle>sssd-krb5.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry> puts the Realm and the name or IP address of the KDC into " -"the environment variables SSSD_KRB5_REALM and SSSD_KRB5_KDC respectively. " -"When <command>sssd_krb5_locator_plugin</command> is called by the kerberos " -"libraries it reads and evaluates these variables and returns them to the " -"libraries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:63 -msgid "" -"Not all Kerberos implementations support the use of plugins. If " -"<command>sssd_krb5_locator_plugin</command> is not available on your system " -"you have to edit /etc/krb5.conf to reflect your Kerberos setup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:69 -msgid "" -"If the environment variable SSSD_KRB5_LOCATOR_DEBUG is set to any value " -"debug messages will be sent to stderr." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:77 -msgid "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-simple.5.xml:10 sssd-simple.5.xml:16 -msgid "sssd-simple" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd-simple.5.xml:17 -msgid "the configuration file for SSSD's 'simple' access-control provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:24 -msgid "" -"This manual page describes the configuration of the simple access-control " -"provider for <citerefentry> <refentrytitle>sssd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry>. For a detailed syntax reference, " -"refer to the <quote>FILE FORMAT</quote> section of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:38 -msgid "" -"The simple access provider grants or denies access based on an access or " -"deny list of user or group names. The following rules apply:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:43 -msgid "If all lists are empty, access is granted" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:47 -msgid "" -"If any list is provided, the order of evaluation is allow,deny. This means " -"that any matching deny rule will supersede any matched allow rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:54 -msgid "" -"If either or both \"allow\" lists are provided, all users are denied unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:60 -msgid "" -"If only \"deny\" lists are provided, all users are granted access unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:78 -msgid "simple_allow_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:81 -msgid "Comma separated list of users who are allowed to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:88 -msgid "simple_deny_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:91 -msgid "Comma separated list of users who are explicitly denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:97 -msgid "simple_allow_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:100 -msgid "" -"Comma separated list of groups that are allowed to log in. This applies only " -"to groups within this SSSD domain. Local groups are not evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:108 -msgid "simple_deny_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:111 -msgid "" -"Comma separated list of groups that are explicitly denied access. This " -"applies only to groups within this SSSD domain. Local groups are not " -"evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:70 sssd-ipa.5.xml:65 -msgid "" -"Refer to the section <quote>DOMAIN SECTIONS</quote> of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page for details on the configuration of an SSSD " -"domain. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:120 -msgid "" -"Please note that it is an configuration error if both, simple_allow_users " -"and simple_deny_users, are defined." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:128 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the simple access provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-simple.5.xml:135 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" access_provider = simple\n" -" simple_allow_users = user1, user2\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:145 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ipa.5.xml:10 sssd-ipa.5.xml:16 -msgid "sssd-ipa" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:23 -msgid "" -"This manual page describes the configuration of the IPA provider for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. For a detailed syntax reference, refer to the <quote>FILE " -"FORMAT</quote> section of the <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:36 -msgid "" -"The IPA provider is a back end used to connect to an IPA server. (Refer to " -"the freeipa.org web site for information about IPA servers.) This provider " -"requires that the machine be joined to the IPA domain; configuration is " -"almost entirely self-discovered and obtained directly from the server." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:43 -msgid "" -"The IPA provider accepts the same options used by the <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> identity provider and the <citerefentry> <refentrytitle>sssd-" -"krb5</refentrytitle> <manvolnum>5</manvolnum> </citerefentry> authentication " -"provider with some exceptions described below." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:55 -msgid "" -"However, it is neither necessary nor recommended to set these options. IPA " -"provider can also be used as an access and chpass provider. As an access " -"provider it uses HBAC (host-based access control) rules. Please refer to " -"freeipa.org for more information about HBAC. No configuration of access " -"provider is required on the client side." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:72 -msgid "ipa_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:75 -msgid "" -"Specifies the name of the IPA domain. This is optional. If not provided, " -"the configuration domain name is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:83 -msgid "ipa_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:86 -msgid "" -"The comma-separated list of IP addresses or hostnames of the IPA servers to " -"which SSSD should connect in the order of preference. For more information " -"on failover and server redundancy, see the <quote>FAILOVER</quote> section. " -"This is optional if autodiscovery is enabled. For more information on " -"service discovery, refer to the the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:99 -msgid "ipa_hostname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:102 -msgid "" -"Optional. May be set on machines where the hostname(5) does not reflect the " -"fully qualified name used in the IPA domain to identify this host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:110 -msgid "ipa_dyndns_update (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:113 -msgid "" -"Optional. This option tells SSSD to automatically update the DNS server " -"built into FreeIPA v2 with the IP address of this client." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:118 -msgid "" -"NOTE: On older systems (such as RHEL 5), for this behavior to work reliably, " -"the default Kerberos realm must be set properly in /etc/krb5.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:129 -msgid "ipa_dyndns_iface (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:132 -msgid "" -"Optional. Applicable only when ipa_dyndns_update is true. Choose the " -"interface whose IP address should be used for dynamic DNS updates." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:137 -msgid "Default: Use the IP address of the IPA LDAP connection" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:143 -msgid "ipa_hbac_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:146 -msgid "Optional. Use the given string as search base for HBAC related objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:150 -msgid "Default: Use base DN" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:156 -msgid "ipa_host_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:159 -msgid "Optional. Use the given string as search base for host objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:168 -msgid "" -"If filter is given in any of search bases and " -"<emphasis>ipa_hbac_support_srchost</emphasis> is set to False, the filter " -"will be ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:180 -msgid "ipa_selinux_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:183 -msgid "Optional. Use the given string as search base for SELinux user maps." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:199 sssd-krb5.5.xml:229 -msgid "krb5_validate (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:202 sssd-krb5.5.xml:232 -msgid "" -"Verify with the help of krb5_keytab that the TGT obtained has not been " -"spoofed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:209 -msgid "" -"Note that this default differs from the traditional Kerberos provider back " -"end." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:219 -msgid "" -"The name of the Kerberos realm. This is optional and defaults to the value " -"of <quote>ipa_domain</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:223 -msgid "" -"The name of the Kerberos realm has a special meaning in IPA - it is " -"converted into the base DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:234 -msgid "" -"Specifies if the host and user principal should be canonicalized when " -"connecting to IPA LDAP and also for AS requests. This feature is available " -"with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:247 -msgid "ipa_hbac_refresh (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:250 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server. " -"This will reduce the latency and load on the IPA server if there are many " -"access-control requests made in a short period." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:257 -msgid "Default: 5 (seconds)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:262 -msgid "ipa_hbac_treat_deny_as (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:265 -msgid "" -"This option specifies how to treat the deprecated DENY-type HBAC rules. As " -"of FreeIPA v2.1, DENY rules are no longer supported on the server. All users " -"of FreeIPA will need to migrate their rules to use only the ALLOW rules. The " -"client will support two modes of operation during this transition period:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:274 -msgid "" -"<emphasis>DENY_ALL</emphasis>: If any HBAC DENY rules are detected, all " -"users will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:279 -msgid "" -"<emphasis>IGNORE</emphasis>: SSSD will ignore any DENY rules. Be very " -"careful with this option, as it may result in opening unintended access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:284 -msgid "Default: DENY_ALL" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:289 -msgid "ipa_hbac_support_srchost (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:292 -msgid "" -"If this is set to false, then srchost as given to SSSD by PAM will be " -"ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:296 -msgid "" -"Note that if set to <emphasis>False</emphasis>, this option casuses filters " -"given in <emphasis>ipa_host_search_base</emphasis> to be ignored;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:307 -msgid "ipa_automount_location (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:310 -msgid "The automounter location this IPA client will be using" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:313 -msgid "Default: The location named \"default\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:319 -msgid "ipa_netgroup_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:322 -msgid "The LDAP attribute that lists netgroup's memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:331 -msgid "ipa_netgroup_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:334 -msgid "" -"The LDAP attribute that lists system users and groups that are direct " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:339 sssd-ipa.5.xml:434 -msgid "Default: memberUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:344 -msgid "ipa_netgroup_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:347 -msgid "" -"The LDAP attribute that lists hosts and host groups that are direct members " -"of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:351 sssd-ipa.5.xml:446 -msgid "Default: memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:356 -msgid "ipa_netgroup_member_ext_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:359 -msgid "" -"The LDAP attribute that lists FQDNs of hosts and host groups that are " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:363 -msgid "Default: externalHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:368 -msgid "ipa_netgroup_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:371 -msgid "The LDAP attribute that contains NIS domain name of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:375 -msgid "Default: nisDomainName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:381 -msgid "ipa_host_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:384 sssd-ipa.5.xml:407 -msgid "The object class of a host entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:387 sssd-ipa.5.xml:410 -msgid "Default: ipaHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:392 -msgid "ipa_host_fqdn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:395 -msgid "The LDAP attribute that contains FQDN of the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:398 -msgid "Default: fqdn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:404 -msgid "ipa_selinux_usermap_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:415 -msgid "ipa_selinux_usermap_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:418 -msgid "The LDAP attribute that contains the name of SELinux usermap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:427 -msgid "ipa_selinux_usermap_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:430 -msgid "" -"The LDAP attribute that contains all users / groups this rule match against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:439 -msgid "ipa_selinux_usermap_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:442 -msgid "" -"The LDAP attribute that contains all hosts / hostgroups this rule match " -"against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:451 -msgid "ipa_selinux_usermap_see_also (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:454 -msgid "" -"The LDAP attribute that contains DN of HBAC rule which can be used for " -"matching instead of memberUser and memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:459 -msgid "Default: seeAlso" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:464 -msgid "ipa_selinux_usermap_selinux_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:467 -msgid "The LDAP attribute that contains SELinux user string itself." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:471 -msgid "Default: ipaSELinuxUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:476 -msgid "ipa_selinux_usermap_enabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:479 -msgid "" -"The LDAP attribute that contains whether or not is user map enabled for " -"usage." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:483 -msgid "Default: ipaEnabledFlag" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:488 -msgid "ipa_selinux_usermap_user_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:491 -msgid "The LDAP attribute that contains user category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:495 -msgid "Default: userCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:500 -msgid "ipa_selinux_usermap_host_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:503 -msgid "The LDAP attribute that contains host category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:507 -msgid "Default: hostCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:512 -msgid "ipa_selinux_usermap_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:515 -msgid "The LDAP attribute that contains unique ID of the user map." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:519 -msgid "Default: ipaUniqueID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:524 -msgid "ipa_host_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:527 -msgid "The LDAP attribute that contains the host's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:531 -msgid "Default: ipaSshPubKey" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:546 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the ipa provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ipa.5.xml:553 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" id_provider = ipa\n" -" ipa_server = ipaserver.example.com\n" -" ipa_hostname = myhost.example.com\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:564 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.8.xml:10 sssd.8.xml:15 -msgid "sssd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.8.xml:16 -msgid "System Security Services Daemon" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sssd.8.xml:21 -msgid "" -"<command>sssd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:31 -msgid "" -"<command>SSSD</command> provides a set of daemons to manage access to remote " -"directories and authentication mechanisms. It provides an NSS and PAM " -"interface toward the system and a pluggable backend system to connect to " -"multiple different account sources as well as D-Bus interface. It is also " -"the basis to provide client auditing and policy services for projects like " -"FreeIPA. It provides a more robust database to store local users as well as " -"extended user data." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:46 -msgid "" -"<option>-d</option>,<option>--debug-level</option> <replaceable>LEVEL</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:53 -msgid "<option>--debug-timestamps=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:57 -msgid "<emphasis>1</emphasis>: Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:60 -msgid "<emphasis>0</emphasis>: Disable timestamp in the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:69 -msgid "<option>--debug-microseconds=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:73 -msgid "" -"<emphasis>1</emphasis>: Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:76 -msgid "<emphasis>0</emphasis>: Disable microseconds in timestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:79 -msgid "Default: 0" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:85 -msgid "<option>-f</option>,<option>--debug-to-files</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:89 -msgid "" -"Send the debug output to files instead of stderr. By default, the log files " -"are stored in <filename>/var/log/sssd</filename> and there are separate log " -"files for every SSSD service and domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:97 -msgid "<option>-D</option>,<option>--daemon</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:101 -msgid "Become a daemon after starting up." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:107 -msgid "<option>-i</option>,<option>--interactive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:111 -msgid "Run in the foreground, don't become a daemon." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:117 sss_debuglevel.8.xml:42 -msgid "<option>-c</option>,<option>--config</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:121 sss_debuglevel.8.xml:46 -msgid "" -"Specify a non-default config file. The default is <filename>/etc/sssd/sssd." -"conf</filename>. For reference on the config file syntax and options, " -"consult the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:135 -msgid "<option>--version</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:139 -msgid "Print version number and exit." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.8.xml:147 -msgid "Signals" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:150 -msgid "SIGTERM/SIGINT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:153 -msgid "" -"Informs the SSSD to gracefully terminate all of its child processes and then " -"shut down the monitor." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:159 -msgid "SIGHUP" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:162 -msgid "" -"Tells the SSSD to stop writing to its current debug file descriptors and to " -"close and reopen them. This is meant to facilitate log rolling with programs " -"like logrotate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:170 -msgid "SIGUSR1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:173 -msgid "" -"Tells the SSSD to simulate offline operation for one minute. This is mostly " -"useful for testing purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:179 -msgid "SIGUSR2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:182 -msgid "" -"Tells the SSSD to go online immediately. This is mostly useful for testing " -"purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:193 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_obfuscate.8.xml:10 sss_obfuscate.8.xml:15 -msgid "sss_obfuscate" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_obfuscate.8.xml:16 -msgid "obfuscate a clear text password" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_obfuscate.8.xml:21 -msgid "" -"<command>sss_obfuscate</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>[PASSWORD]</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:32 -msgid "" -"<command>sss_obfuscate</command> converts a given password into human-" -"unreadable format and places it into appropriate domain section of the SSSD " -"config file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:37 -msgid "" -"The cleartext password is read from standard input or entered " -"interactively. The obfuscated password is put into " -"<quote>ldap_default_authtok</quote> parameter of a given SSSD domain and the " -"<quote>ldap_default_authtok_type</quote> parameter is set to " -"<quote>obfuscated_password</quote>. Refer to <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more details on these parameters." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:49 -msgid "" -"Please note that obfuscating the password provides <emphasis>no real " -"security benefit</emphasis> as it is still possible for an attacker to " -"reverse-engineer the password back. Using better authentication mechanisms " -"such as client side certificates or GSSAPI is <emphasis>strongly</emphasis> " -"advised." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:63 -msgid "<option>-s</option>,<option>--stdin</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:67 -msgid "The password to obfuscate will be read from standard input." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:74 sss_ssh_authorizedkeys.1.xml:82 -#: sss_ssh_knownhostsproxy.1.xml:81 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>DOMAIN</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:79 -msgid "" -"The SSSD domain to use the password in. The default name is <quote>default</" -"quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:86 -msgid "" -"<option>-f</option>,<option>--file</option> <replaceable>FILE</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:91 -msgid "Read the config file specified by the positional parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:95 -msgid "Default: <filename>/etc/sssd/sssd.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:105 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_useradd.8.xml:10 sss_useradd.8.xml:15 -msgid "sss_useradd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_useradd.8.xml:16 -msgid "create a new user" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_useradd.8.xml:21 -msgid "" -"<command>sss_useradd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:32 -msgid "" -"<command>sss_useradd</command> creates a new user account using the values " -"specified on the command line plus the default values from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:43 -msgid "" -"<option>-u</option>,<option>--uid</option> <replaceable>UID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:48 -msgid "" -"Set the UID of the user to the value of <replaceable>UID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:55 sss_usermod.8.xml:43 -msgid "" -"<option>-c</option>,<option>--gecos</option> <replaceable>COMMENT</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:60 sss_usermod.8.xml:48 -msgid "" -"Any text string describing the user. Often used as the field for the user's " -"full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:67 sss_usermod.8.xml:55 -msgid "" -"<option>-h</option>,<option>--home</option> <replaceable>HOME_DIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:72 -msgid "" -"The home directory of the user account. The default is to append the " -"<replaceable>LOGIN</replaceable> name to <filename>/home</filename> and use " -"that as the home directory. The base that is prepended before " -"<replaceable>LOGIN</replaceable> is tunable with <quote>user_defaults/" -"baseDirectory</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:82 sss_usermod.8.xml:66 -msgid "" -"<option>-s</option>,<option>--shell</option> <replaceable>SHELL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:87 -msgid "" -"The user's login shell. The default is currently <filename>/bin/bash</" -"filename>. The default can be changed with <quote>user_defaults/" -"defaultShell</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:96 -msgid "" -"<option>-G</option>,<option>--groups</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:101 -msgid "A list of existing groups this user is also a member of." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:107 -msgid "<option>-m</option>,<option>--create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:111 -msgid "" -"Create the user's home directory if it does not exist. The files and " -"directories contained in the skeleton directory (which can be defined with " -"the -k option or in the config file) will be copied to the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:121 -msgid "<option>-M</option>,<option>--no-create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:125 -msgid "" -"Do not create the user's home directory. Overrides configuration settings." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:132 -msgid "" -"<option>-k</option>,<option>--skel</option> <replaceable>SKELDIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:137 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<command>sss_useradd</command>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:143 -msgid "" -"This option is only valid if the <option>-m</option> (or <option>--create-" -"home</option>) option is specified, or creation of home directories is set " -"to TRUE in the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:152 sss_usermod.8.xml:124 -msgid "" -"<option>-Z</option>,<option>--selinux-user</option> " -"<replaceable>SELINUX_USER</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:157 -msgid "" -"The SELinux user for the user's login. If not specified, the system default " -"will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:169 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-krb5.5.xml:10 sssd-krb5.5.xml:16 -msgid "sssd-krb5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:23 -msgid "" -"This manual page describes the configuration of the Kerberos 5 " -"authentication backend for <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry>. For a detailed " -"syntax reference, please refer to the <quote>FILE FORMAT</quote> section of " -"the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:36 -msgid "" -"The Kerberos 5 authentication backend contains auth and chpass providers. It " -"must be paired with identity provider in order to function properly (for " -"example, id_provider = ldap). Some information required by the Kerberos 5 " -"authentication backend must be provided by the identity provider, such as " -"the user's Kerberos Principal Name (UPN). The configuration of the identity " -"provider should have an entry to specify the UPN. Please refer to the man " -"page for the applicable identity provider for details on how to configure " -"this." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:47 -msgid "" -"This backend also provides access control based on the .k5login file in the " -"home directory of the user. See <citerefentry> <refentrytitle>.k5login</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry> for more details. " -"Please note that an empty .k5login file will deny all access to this user. " -"To activate this feature use 'access_provider = krb5' in your sssd " -"configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:55 -msgid "" -"In the case where the UPN is not available in the identity backend " -"<command>sssd</command> will construct a UPN using the format " -"<replaceable>username</replaceable>@<replaceable>krb5_realm</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:106 -msgid "" -"The name of the Kerberos realm. This option is required and must be " -"specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:113 -msgid "krb5_kpasswd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:116 -msgid "" -"If the change password service is not running on the KDC alternative servers " -"can be defined here. An optional port number (preceded by a colon) may be " -"appended to the addresses or hostnames." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:122 -msgid "" -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. Please note that even if there are no more " -"kpasswd servers to try the back end is not switch to offline if " -"authentication against the KDC is still possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:129 -msgid "Default: Use the KDC" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:135 -msgid "krb5_ccachedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:138 -msgid "" -"Directory to store credential caches. All the substitution sequences of " -"krb5_ccname_template can be used here, too, except %d and %P. If the " -"directory does not exist it will be created. If %u, %U, %p or %h are used a " -"private directory belonging to the user is created. Otherwise a public " -"directory with restricted deletion flag (aka sticky bit, see <citerefentry> " -"<refentrytitle>chmod</refentrytitle> <manvolnum>1</manvolnum> </" -"citerefentry> for details) is created." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:151 -msgid "Default: /tmp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:157 -msgid "krb5_ccname_template (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:171 -msgid "login UID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:174 -msgid "%p" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:175 -msgid "principal name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:179 -msgid "%r" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:180 -msgid "realm name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:183 -msgid "%h" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:184 -msgid "home directory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:189 -msgid "value of krb5ccache_dir" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:194 -msgid "%P" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:195 -msgid "the process ID of the sssd client" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:160 -msgid "" -"Location of the user's credential cache. Currently only file based " -"credential caches are supported. In the template the following sequences are " -"substituted: <placeholder type=\"variablelist\" id=\"0\"/> If the template " -"ends with 'XXXXXX' mkstemp(3) is used to create a unique filename in a safe " -"way." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:209 -msgid "Default: FILE:%d/krb5cc_%U_XXXXXX" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:215 -msgid "krb5_auth_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:218 -msgid "" -"Timeout in seconds after an online authentication or change password request " -"is aborted. If possible the authentication request is continued offline." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:241 -msgid "krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:244 -msgid "" -"The location of the keytab to use when validating credentials obtained from " -"KDCs." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:248 -msgid "Default: /etc/krb5.keytab" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:254 -msgid "krb5_store_password_if_offline (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:257 -msgid "" -"Store the password of the user if the provider is offline and use it to " -"request a TGT when the provider gets online again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:262 -msgid "" -"Please note that this feature currently only available on a Linux platform. " -"Passwords stored in this way are kept in plaintext in the kernel keyring and " -"are potentially accessible by the root user (with difficulty)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:275 -msgid "krb5_renewable_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:278 -msgid "" -"Request a renewable ticket with a total lifetime given by an integer " -"immediately followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:283 sssd-krb5.5.xml:319 -msgid "<emphasis>s</emphasis> seconds" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:286 sssd-krb5.5.xml:322 -msgid "<emphasis>m</emphasis> minutes" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:289 sssd-krb5.5.xml:325 -msgid "<emphasis>h</emphasis> hours" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:292 sssd-krb5.5.xml:328 -msgid "<emphasis>d</emphasis> days." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:295 sssd-krb5.5.xml:331 -msgid "If there is no delimiter <emphasis>s</emphasis> is assumed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:299 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"renewable lifetime to one and a half hours please use '90m' instead of " -"'1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:305 -msgid "Default: not set, i.e. the TGT is not renewable" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:311 -msgid "krb5_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:314 -msgid "" -"Request ticket with a with a lifetime given by an integer immediately " -"followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:335 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"lifetime to one and a half hours please use '90m' instead of '1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:340 -msgid "" -"Default: not set, i.e. the default ticket lifetime configured on the KDC." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:347 -msgid "krb5_renew_interval (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:350 -msgid "" -"The time in seconds between two checks if the TGT should be renewed. TGTs " -"are renewed if about half of their lifetime is exceeded." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:355 -msgid "If this option is not set or 0 the automatic renewal is disabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:365 -msgid "krb5_use_fast (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:368 -msgid "" -"Enables flexible authentication secure tunneling (FAST) for Kerberos pre-" -"authentication. The following options are supported:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:373 -msgid "" -"<emphasis>never</emphasis> use FAST, this is equivalent to not set this " -"option at all." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:377 -msgid "" -"<emphasis>try</emphasis> to use FAST, if the server does not support fast " -"continue without." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:381 -msgid "" -"<emphasis>demand</emphasis> to use FAST, fail if the server does not require " -"fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:385 -msgid "Default: not set, i.e. FAST is not used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:388 -msgid "Please note that a keytab is required to use fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:391 -msgid "" -"Please note also that sssd supports fast only with MIT Kerberos version 1.8 " -"and above. If sssd used with an older version using this option is a " -"configuration error." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:400 -msgid "krb5_fast_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:403 -msgid "Specifies the server principal to use for FAST." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:412 -msgid "" -"Specifies if the host and user principal should be canonicalized. This " -"feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:65 -msgid "" -"If the auth-module krb5 is used in a SSSD domain, the following options must " -"be used. See the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page, section <quote>DOMAIN " -"SECTIONS</quote> for details on the configuration of a SSSD domain. " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:434 -msgid "" -"The following example assumes that SSSD is correctly configured and FOO is " -"one of the domains in the <replaceable>[sssd]</replaceable> section. This " -"example shows only configuration of Kerberos authentication, it does not " -"include any identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-krb5.5.xml:442 -#, no-wrap -msgid "" -" [domain/FOO]\n" -" auth_provider = krb5\n" -" krb5_server = 192.168.1.1\n" -" krb5_realm = EXAMPLE.COM\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:453 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupadd.8.xml:10 sss_groupadd.8.xml:15 -msgid "sss_groupadd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupadd.8.xml:16 -msgid "create a new group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupadd.8.xml:21 -msgid "" -"<command>sss_groupadd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:32 -msgid "" -"<command>sss_groupadd</command> creates a new group. These groups are " -"compatible with POSIX groups, with the additional feature that they can " -"contain other groups as members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupadd.8.xml:43 -msgid "" -"<option>-g</option>,<option>--gid</option> <replaceable>GID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupadd.8.xml:48 -msgid "" -"Set the GID of the group to the value of <replaceable>GID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_userdel.8.xml:10 sss_userdel.8.xml:15 -msgid "sss_userdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_userdel.8.xml:16 -msgid "delete a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_userdel.8.xml:21 -msgid "" -"<command>sss_userdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:32 -msgid "" -"<command>sss_userdel</command> deletes a user identified by login name " -"<replaceable>LOGIN</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:44 -msgid "<option>-r</option>,<option>--remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:48 -msgid "" -"Files in the user's home directory will be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:56 -msgid "<option>-R</option>,<option>--no-remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:60 -msgid "" -"Files in the user's home directory will NOT be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:68 -msgid "<option>-f</option>,<option>--force</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:72 -msgid "" -"This option forces <command>sss_userdel</command> to remove the user's home " -"directory and mail spool, even if they are not owned by the specified user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:80 -msgid "<option>-k</option>,<option>--kick</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:84 -msgid "Before actually deleting the user, terminate all his processes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:95 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupdel.8.xml:10 sss_groupdel.8.xml:15 -msgid "sss_groupdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupdel.8.xml:16 -msgid "delete a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupdel.8.xml:21 -msgid "" -"<command>sss_groupdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:32 -msgid "" -"<command>sss_groupdel</command> deletes a group identified by its name " -"<replaceable>GROUP</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupshow.8.xml:10 sss_groupshow.8.xml:15 -msgid "sss_groupshow" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupshow.8.xml:16 -msgid "print properties of a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupshow.8.xml:21 -msgid "" -"<command>sss_groupshow</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:32 -msgid "" -"<command>sss_groupshow</command> displays information about a group " -"identified by its name <replaceable>GROUP</replaceable>. The information " -"includes the group ID number, members of the group and the parent group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupshow.8.xml:43 -msgid "<option>-R</option>,<option>--recursive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupshow.8.xml:47 -msgid "" -"Also print indirect group members in a tree-like hierarchy. Note that this " -"also affects printing parent groups - without <option>R</option>, only the " -"direct parent will be printed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_usermod.8.xml:10 sss_usermod.8.xml:15 -msgid "sss_usermod" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_usermod.8.xml:16 -msgid "modify a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_usermod.8.xml:21 -msgid "" -"<command>sss_usermod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:32 -msgid "" -"<command>sss_usermod</command> modifies the account specified by " -"<replaceable>LOGIN</replaceable> to reflect the changes that are specified " -"on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:60 -msgid "The home directory of the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:71 -msgid "The user's login shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:82 -msgid "" -"Append this user to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:96 -msgid "" -"Remove this user from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:103 -msgid "<option>-l</option>,<option>--lock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:107 -msgid "Lock the user account. The user won't be able to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:114 -msgid "<option>-u</option>,<option>--unlock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:118 -msgid "Unlock the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:129 -msgid "The SELinux user for the user's login." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:140 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_cache.8.xml:10 sss_cache.8.xml:15 -msgid "sss_cache" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_cache.8.xml:16 -msgid "perform cache cleanup" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_cache.8.xml:21 -msgid "" -"<command>sss_cache</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_cache.8.xml:31 -msgid "" -"<command>sss_cache</command> invalidates records in SSSD cache. Invalidated " -"records are forced to be reloaded from server as soon as related SSSD " -"backend is online." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:42 -msgid "" -"<option>-u</option>,<option>--user</option> <replaceable>login</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:47 -msgid "Invalidate specific user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:53 -msgid "<option>-U</option>,<option>--users</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:57 -msgid "" -"Invalidate all user records. This option overrides invalidation of specific " -"user if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:64 -msgid "" -"<option>-g</option>,<option>--group</option> <replaceable>group</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:69 -msgid "Invalidate specific group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:75 -msgid "<option>-G</option>,<option>--groups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:79 -msgid "" -"Invalidate all group records. This option overrides invalidation of specific " -"group if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:86 -msgid "" -"<option>-n</option>,<option>--netgroup</option> <replaceable>netgroup</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:91 -msgid "Invalidate specific netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:97 -msgid "<option>-N</option>,<option>--netgroups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:101 -msgid "" -"Invalidate all netgroup records. This option overrides invalidation of " -"specific netgroup if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:108 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>domain</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:113 -msgid "Restrict invalidation process only to a particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_debuglevel.8.xml:10 sss_debuglevel.8.xml:15 -msgid "sss_debuglevel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_debuglevel.8.xml:16 -msgid "change debug level while SSSD is running" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_debuglevel.8.xml:21 -msgid "" -"<command>sss_debuglevel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>NEW_DEBUG_LEVEL</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_debuglevel.8.xml:32 -msgid "" -"<command>sss_debuglevel</command> changes debug level of SSSD monitor and " -"providers to <replaceable>NEW_DEBUG_LEVEL</replaceable> while SSSD is " -"running." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_debuglevel.8.xml:59 -msgid "<replaceable>NEW_DEBUG_LEVEL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_authorizedkeys.1.xml:10 sss_ssh_authorizedkeys.1.xml:15 -msgid "sss_ssh_authorizedkeys" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_ssh_authorizedkeys.1.xml:11 sss_ssh_knownhostsproxy.1.xml:11 -msgid "1" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_authorizedkeys.1.xml:16 -msgid "get OpenSSH authorized keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_authorizedkeys.1.xml:21 -msgid "" -"<command>sss_ssh_authorizedkeys</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>USER</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:32 -msgid "" -"<command>sss_ssh_authorizedkeys</command> acquires SSH public keys for user " -"<replaceable>USER</replaceable> and outputs them in OpenSSH authorized_keys " -"format (see the <quote>AUTHORIZED_KEYS FILE FORMAT</quote> section of " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> for more information)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:41 -msgid "" -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_authorizedkeys</" -"command> for public key user authentication if it is compiled with support " -"for either <quote>AuthorizedKeysCommand</quote> or <quote>PubkeyAgent</" -"quote> <citerefentry> <refentrytitle>sshd_config</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:58 -#, no-wrap -msgid "AuthorizedKeysCommand /usr/bin/sss_ssh_authorizedkeys\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:51 -msgid "" -"If <quote>AuthorizedKeysCommand</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by putting the following directive " -"in <citerefentry> <refentrytitle>sshd_config</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry>: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:69 -#, no-wrap -msgid "PubKeyAgent /usr/bin/sss_ssh_authorizedkeys %u\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:62 -msgid "" -"If <quote>PubkeyAgent</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by using the following directive " -"for <citerefentry> <refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> configuration: <placeholder type=\"programlisting" -"\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_authorizedkeys.1.xml:87 -msgid "" -"Search for user public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:98 -msgid "" -"<citerefentry> <refentrytitle>sshd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sshd_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_knownhostsproxy</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_knownhostsproxy.1.xml:10 sss_ssh_knownhostsproxy.1.xml:15 -msgid "sss_ssh_knownhostsproxy" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_knownhostsproxy.1.xml:16 -msgid "get OpenSSH host keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_knownhostsproxy.1.xml:21 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>HOST</replaceable></arg> <arg " -"choice='opt'><replaceable>PROXY_COMMAND</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:33 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> acquires SSH host public keys for " -"host <replaceable>HOST</replaceable>, stores them in a custom OpenSSH " -"known_hosts file (see the <quote>SSH_KNOWN_HOSTS FILE FORMAT</quote> section " -"of <citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> for more information) <filename>/var/lib/sss/" -"pubconf/known_hosts</filename> and estabilishes connection to the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:43 -msgid "" -"If <replaceable>PROXY_COMMAND</replaceable> is specified, it is used to " -"create the connection to the host instead of opening a socket." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_knownhostsproxy.1.xml:55 -#, no-wrap -msgid "" -"ProxyCommand /usr/bin/sss_ssh_knownhostsproxy -p %p %h\n" -"GlobalKnownHostsFile2 /var/lib/sss/pubconf/known_hosts\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:48 -msgid "" -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_knownhostsproxy</" -"command> for host key authentication by using the following directives for " -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> configuration: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_ssh_knownhostsproxy.1.xml:69 -msgid "" -"<option>-p</option>,<option>--port</option> <replaceable>PORT</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:74 -msgid "" -"Use port <replaceable>PORT</replaceable> to connect to the host. By " -"default, port 22 is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:86 -msgid "" -"Search for host public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:97 -msgid "" -"<citerefentry> <refentrytitle>ssh</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>ssh_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_authorizedkeys</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/service_discovery.xml:2 -msgid "SERVICE DISCOVERY" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/service_discovery.xml:4 -msgid "" -"The service discovery feature allows back ends to automatically find the " -"appropriate servers to connect to using a special DNS query." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:9 -msgid "Configuration" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:11 -msgid "" -"If no servers are specified, the back end automatically uses service " -"discovery to try to find a server. Optionally, the user may choose to use " -"both fixed server addresses and service discovery by inserting a special " -"keyword, <quote>_srv_</quote>, in the list of servers. The order of " -"preference is maintained. This feature is useful if, for example, the user " -"prefers to use service discovery whenever possible, and fall back to a " -"specific server when no servers can be discovered using DNS." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:23 -msgid "The domain name" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:25 -msgid "" -"Please refer to the <quote>dns_discovery_domain</quote> parameter in the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for more details." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:35 -msgid "The protocol" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:37 -msgid "" -"The queries usually specify _tcp as the protocol. Exceptions are documented " -"in respective option description." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:42 -msgid "See Also" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:44 -msgid "" -"For more information on the service discovery mechanism, refer to RFC 2782." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/upstream.xml:1 -msgid "<placeholder type=\"refentryinfo\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/failover.xml:2 -msgid "FAILOVER" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/failover.xml:4 -msgid "" -"The failover feature allows back ends to automatically switch to a different " -"server if the primary server fails." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:8 -msgid "Failover Syntax" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:10 -msgid "" -"The list of servers is given as a comma-separated list; any number of spaces " -"is allowed around the comma. The servers are listed in order of preference. " -"The list can contain any number of servers." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:17 -msgid "The Failover Mechanism" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:19 -msgid "" -"The failover mechanism distinguishes between a machine and a service. The " -"back end first tries to resolve the hostname of a given machine; if this " -"resolution attempt fails, the machine is considered offline. No further " -"attempts are made to connect to this machine for any other service. If the " -"resolution attempt succeeds, the back end tries to connect to a service on " -"this machine. If the service connection attempt fails, then only this " -"particular service is considered offline and the back end automatically " -"switches over to the next service. The machine is still considered online " -"and might still be tried for another service." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:32 -msgid "" -"Further connection attempts are made to machines or services marked as " -"offline after a specified period of time; this is currently hard coded to 30 " -"seconds." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:37 -msgid "" -"If there are no more machines to try, the back end as a whole switches to " -"offline mode, and then attempts to reconnect every 30 seconds." -msgstr "" - -#. type: Content of: <varlistentry><term> -#: include/param_help.xml:3 -msgid "<option>-h</option>,<option>--help</option>" -msgstr "" - -#. type: Content of: <varlistentry><listitem><para> -#: include/param_help.xml:7 -msgid "Display help message and exit." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:3 -msgid "" -"Bit mask that indicates which debug levels will be visible. 0x0010 is the " -"default value as well as the lowest allowed value, 0xFFF0 is the most " -"verbose mode. This setting overrides the settings from config file." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:8 -msgid "Currently supported debug levels:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:11 -msgid "" -"<emphasis>0x0010</emphasis>: Fatal failures. Anything that would prevent " -"SSSD from starting up or causes it to cease running." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:15 -msgid "" -"<emphasis>0x0020</emphasis>: Critical failures. An error that doesn't kill " -"the SSSD, but one that indicates that at least one major feature is not " -"going to work properly." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:20 -msgid "" -"<emphasis>0x0040</emphasis>: Serious failures. An error announcing that a " -"particular request or operation has failed." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:24 -msgid "" -"<emphasis>0x0080</emphasis>: Minor failures. These are the errors that would " -"percolate down to cause the operation failure of 2." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:28 -msgid "<emphasis>0x0100</emphasis>: Configuration settings." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:31 -msgid "<emphasis>0x0200</emphasis>: Function data." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:34 -msgid "<emphasis>0x0400</emphasis>: Trace messages for operation functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:37 -msgid "" -"<emphasis>0x1000</emphasis>: Trace messages for internal control functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:40 -msgid "" -"<emphasis>0x2000</emphasis>: Contents of function-internal variables that " -"may be interesting." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:43 -msgid "<emphasis>0x4000</emphasis>: Extremely low-level tracing information." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:46 -msgid "" -"To log required debug levels, simply add their numbers together as shown in " -"following examples:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:49 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, critical failures, " -"serious failures and function data use 0x0270." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:53 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, configuration settings, " -"function data, trace messages for internal control functions use 0x1310." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:57 -msgid "" -"<emphasis>Note</emphasis>: This is new format of debug levels introduced in " -"1.7.0. Older format (numbers from 0-10) is compatible but deprecated." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/experimental.xml:1 -msgid "" -"<emphasis> This is an experimental feature, please use http://fedorahosted." -"org/sssd to report any issues. </emphasis>" -msgstr "" diff --git a/src/man/po/uk.po b/src/man/po/uk.po index fcbbfba41..e1f3852f9 100644 --- a/src/man/po/uk.po +++ b/src/man/po/uk.po @@ -4,14 +4,14 @@ # # Translators: # sgallagh <sgallagh@redhat.com>, 2011. -# Yuri Chornoivan <yurchor@ukr.net>, 2011. +# Yuri Chornoivan <yurchor@ukr.net>, 2011, 2012. msgid "" msgstr "" "Project-Id-Version: SSSD\n" "Report-Msgid-Bugs-To: sssd-devel@redhat.com\n" "POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2011-12-21 10:12+0000\n" -"Last-Translator: Yuri Chornoivan <yurchor@ukr.net>\n" +"PO-Revision-Date: 2012-03-12 20:08+0000\n" +"Last-Translator: sgallagh <sgallagh@redhat.com>\n" "Language-Team: Ukrainian <trans-uk@lists.fedoraproject.org>\n" "Language: uk\n" "MIME-Version: 1.0\n" @@ -302,6 +302,7 @@ msgstr "" msgid "" "Supported services: nss, pam <phrase condition=\"with_sudo\">, sudo</phrase>" msgstr "" +"Підтримувані служби: nss, pam <phrase condition=\"with_sudo\">, sudo</phrase>" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:94 sssd.conf.5.xml:257 @@ -1079,40 +1080,29 @@ msgstr "Типове значення: 7" #. type: Content of: <reference><refentry><refsect1><refsect2><title> #: sssd.conf.5.xml:599 -#, fuzzy -#| msgid "NSS configuration options" msgid "SUDO configuration options" -msgstr "Параметри налаштування NSS" +msgstr "Параметри налаштування SUDO" #. type: Content of: <reference><refentry><refsect1><refsect2><para> #: sssd.conf.5.xml:601 -#, fuzzy -#| msgid "These options can be used to configure any service." msgid "These options can be used to configure the sudo service." -msgstr "Цими параметрами можна скористатися для налаштування будь-яких служб." +msgstr "Цими параметрами можна скористатися для налаштування служби sudo." #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:608 -#, fuzzy -#| msgid "enum_cache_timeout (integer)" msgid "sudo_cache_timeout (integer)" -msgstr "enum_cache_timeout (ціле число)" +msgstr "sudo_cache_timeout (ціле число)" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:611 -#, fuzzy -#| msgid "" -#| "For any PAM request while SSSD is online, the SSSD will attempt to " -#| "immediately update the cached identity information for the user in order " -#| "to ensure that authentication takes place with the latest information." msgid "" "For any sudo request that comes while SSSD is online, the SSSD will attempt " "to update the cached rules in order to ensure that sudo has the latest " "ruleset." msgstr "" -"Для кожного з запитів PAM під час роботи SSSD система SSSD зробить спробу " -"негайно оновити кешовані дані щодо профілю користувача з метою переконатися, " -"що розпізнавання виконується на основі найсвіжіших даних." +"У відповідь на кожен запит до sudo, який надходить протягом часу роботи " +"SSSD, SSSD намагатиметься оновити кешовані правила з метою забезпечення " +"використання у sudo найсвіжішого набору правил." #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:617 @@ -1122,6 +1112,11 @@ msgid "" "the sudo service maintains an in-memory cache that would be used for " "performing fast replies." msgstr "" +"Втім, користувач може віддати декілька послідовних команд sudo, спроба " +"виконання яких призведе до одночасного надсилання декількох запитів до LDAP. " +"У такому разі з метою пришвидшення обробки служба sudo користуватиметься " +"кешем у пам’яті, який використовуватиметься для формування швидких " +"відповідей." #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:624 @@ -1129,20 +1124,18 @@ msgid "" "This option controls how long (in seconds) can the sudo service cache rules " "for a user." msgstr "" +"За допомогою цього параметра можна визначити тривалість (у секундах) " +"зберігання службою sudo паролів у кеші." #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:628 -#, fuzzy -#| msgid "Default: 10" msgid "Default: 180" -msgstr "Типове значення: 10" +msgstr "Типове значення: 180" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:633 -#, fuzzy -#| msgid "debug_timestamps (bool)" msgid "sudo_timed (bool)" -msgstr "debug_timestamps (булеве значення)" +msgstr "sudo_timed (булеве значення)" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:636 @@ -1150,43 +1143,34 @@ msgid "" "Whether or not to evaluate the sudoNotBefore and sudoNotAfter attributes " "that implement time-dependent sudoers entries." msgstr "" +"Визначає, чи слід обробляти атрибути sudoNotBefore і sudoNotAfter, " +"призначені для визначення часових обмежень для записів sudoers." #. type: Content of: <reference><refentry><refsect1><refsect2><title> #: sssd.conf.5.xml:649 -#, fuzzy -#| msgid "NSS configuration options" msgid "AUTOFS configuration options" -msgstr "Параметри налаштування NSS" +msgstr "Параметри налаштування AUTOFS" #. type: Content of: <reference><refentry><refsect1><refsect2><para> #: sssd.conf.5.xml:651 -#, fuzzy -#| msgid "These options can be used to configure any service." msgid "These options can be used to configure the autofs service." -msgstr "Цими параметрами можна скористатися для налаштування будь-яких служб." +msgstr "Цими параметрами можна скористатися для налаштування служби autofs." #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> #: sssd.conf.5.xml:659 -#, fuzzy -#| msgid "entry_negative_timeout (integer)" msgid "autofs_negative_timeout (integer)" -msgstr "entry_negative_timeout (ціле число)" +msgstr "autofs_negative_timeout (ціле число)" #. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:662 -#, fuzzy -#| msgid "" -#| "Specifies for how many seconds nss_sss should cache negative cache hits " -#| "(that is, queries for invalid database entries, like nonexistent ones) " -#| "before asking the back end again." msgid "" "Specifies for how many seconds should the autofs responder negative cache " "hits (that is, queries for invalid map entries, like nonexistent ones) " "before asking the back end again." msgstr "" -"Визначає кількість секунд, протягом яких nss_sss має кешувати негативні " -"результати пошуку у кеші (тобто запити щодо некоректних записів у базі " -"даних, зокрема неіснуючих) перед повторним запитом до сервера обробки." +"Визначає кількість секунд, протягом яких відповідач autofs має кешувати " +"негативні результати пошуку у кеші (тобто запити щодо некоректних записів у " +"базі даних, зокрема неіснуючих) перед повторним запитом до сервера обробки." #. type: Content of: <reference><refentry><refsect1><title> #: sssd.conf.5.xml:679 @@ -1333,91 +1317,65 @@ msgstr "Типове значення: 5400" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:776 -#, fuzzy -#| msgid "entry_cache_timeout (integer)" msgid "entry_cache_user_timeout (integer)" -msgstr "entry_cache_timeout (ціле число)" +msgstr "entry_cache_user_timeout (ціле число)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:779 -#, fuzzy -#| msgid "" -#| "How many seconds should nss_sss consider entries valid before asking the " -#| "backend again" msgid "" "How many seconds should nss_sss consider user entries valid before asking " "the backend again" msgstr "" -"Кількість секунд, протягом яких nss_sss вважатиме записи чинними, перш ніж " -"надсилати повторний запит до сервера" +"Кількість секунд, протягом яких nss_sss вважатиме записи користувачів " +"чинними, перш ніж надсилати повторний запит до сервера" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:783 sssd.conf.5.xml:796 sssd.conf.5.xml:809 #: sssd.conf.5.xml:822 -#, fuzzy -#| msgid "entry_cache_timeout (integer)" msgid "Default: entry_cache_timeout" -msgstr "entry_cache_timeout (ціле число)" +msgstr "Типове значення: entry_cache_timeout" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:789 -#, fuzzy -#| msgid "entry_cache_timeout (integer)" msgid "entry_cache_group_timeout (integer)" -msgstr "entry_cache_timeout (ціле число)" +msgstr "entry_cache_group_timeout (ціле число)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:792 -#, fuzzy -#| msgid "" -#| "How many seconds should nss_sss consider entries valid before asking the " -#| "backend again" msgid "" "How many seconds should nss_sss consider group entries valid before asking " "the backend again" msgstr "" -"Кількість секунд, протягом яких nss_sss вважатиме записи чинними, перш ніж " -"надсилати повторний запит до сервера" +"Кількість секунд, протягом яких nss_sss вважатиме записи груп чинними, перш " +"ніж надсилати повторний запит до сервера" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:802 -#, fuzzy -#| msgid "entry_cache_timeout (integer)" msgid "entry_cache_netgroup_timeout (integer)" -msgstr "entry_cache_timeout (ціле число)" +msgstr "entry_cache_netgroup_timeout (ціле число)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:805 -#, fuzzy -#| msgid "" -#| "How many seconds should nss_sss consider entries valid before asking the " -#| "backend again" msgid "" "How many seconds should nss_sss consider netgroup entries valid before " "asking the backend again" msgstr "" -"Кількість секунд, протягом яких nss_sss вважатиме записи чинними, перш ніж " -"надсилати повторний запит до сервера" +"Кількість секунд, протягом яких nss_sss вважатиме записи мережевих груп " +"чинними, перш ніж надсилати повторний запит до сервера" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:815 -#, fuzzy -#| msgid "entry_cache_timeout (integer)" msgid "entry_cache_service_timeout (integer)" -msgstr "entry_cache_timeout (ціле число)" +msgstr "entry_cache_service_timeout (ціле число)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:818 -#, fuzzy -#| msgid "" -#| "How many seconds should nss_sss consider entries valid before asking the " -#| "backend again" msgid "" "How many seconds should nss_sss consider service entries valid before asking " "the backend again" msgstr "" -"Кількість секунд, протягом яких nss_sss вважатиме записи чинними, перш ніж " -"надсилати повторний запит до сервера" +"Кількість секунд, протягом яких nss_sss вважатиме записи служб чинними, перш " +"ніж надсилати повторний запит до сервера" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:828 @@ -1683,113 +1641,81 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:1004 -#, fuzzy -#| msgid "id_provider (string)" msgid "sudo_provider (string)" -msgstr "id_provider (рядок)" +msgstr "sudo_provider (рядок)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1010 -#, fuzzy -#| msgid "" -#| "The authentication provider used for the domain. Supported auth " -#| "providers are:" msgid "The SUDO provider used for the domain. Supported SUDO providers are:" msgstr "" -"Служба розпізнавання, яку використано для цього домену. Серед підтримуваних " -"служб розпізнавання:" +"Служба SUDO, яку використано для цього домену. Серед підтримуваних служб " +"SUDO:" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1014 -#, fuzzy -#| msgid "" -#| "<quote>ldap</quote> to change a password stored in a LDAP server. See " -#| "<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -#| "manvolnum> </citerefentry> for more information on configuring LDAP." msgid "" "<quote>ldap</quote> for rules stored in LDAP. See <citerefentry> " "<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" "citerefentry> for more information on configuring LDAP." msgstr "" -"<quote>ldap</quote> — змінити пароль, що зберігається на сервері LDAP. " -"Докладніші відомості щодо налаштування LDAP викладено у довіднику з " -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry>." +"<quote>ldap</quote> для правил, що зберігаються у LDAP. Докладніше про " +"налаштовування LDAP можна дізнатися з довідки до <citerefentry> " +"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" +"citerefentry>." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1021 -#, fuzzy -#| msgid "<quote>none</quote> disables authentication explicitly." msgid "<quote>none</quote> disables SUDO explicitly." -msgstr "<quote>none</quote> — вимкнути розпізнавання повністю." +msgstr "<quote>none</quote> явним чином вимикає SUDO." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1024 -#, fuzzy -#| msgid "" -#| "Default: <quote>id_provider</quote> is used if it is set and can handle " -#| "authentication requests." msgid "Default: The value of <quote>id_provider</quote> is used if it is set." msgstr "" -"Типове значення: буде використано <quote>id_provider</quote>, якщо цей " -"спосіб встановлено і можлива обробка запитів щодо розпізнавання." +"Типове значення: використовується значення <quote>id_provider</quote>, якщо " +"його встановлено." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:1030 -#, fuzzy -#| msgid "access_provider (string)" msgid "session_provider (string)" -msgstr "access_provider (рядок)" +msgstr "session_provider (рядок)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1033 -#, fuzzy -#| msgid "" -#| "The provider which should handle change password operations for the " -#| "domain. Supported change password providers are:" msgid "" "The provider which should handle loading of session settings. Supported " "session providers are:" msgstr "" -"Система, яка має обробляти дії зі зміни паролів для домену. Передбачено " -"підтримку таких систем зміни паролів:" +"Служба, яка має обробляти завантаження параметрів сеансу. Серед " +"підтримуваних служб сеансів:" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1038 -#, fuzzy -#| msgid "" -#| "<quote>ipa</quote> to change a password stored in an IPA server. See " -#| "<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -#| "manvolnum> </citerefentry> for more information on configuring IPA." msgid "" "<quote>ipa</quote> to load session settings from an IPA server. See " "<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" "manvolnum> </citerefentry> for more information on configuring IPA." msgstr "" -"<quote>ipa</quote> — змінити пароль, що зберігається на сервері IPA. " +"<quote>ipa</quote> для завантаження параметрів сеансів з сервера IPA. " "Докладніші відомості щодо налаштування IPA викладено у довіднику з " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum></" +"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" "manvolnum> </citerefentry>." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1046 -#, fuzzy -#| msgid "<quote>none</quote> disallows password changes explicitly." msgid "<quote>none</quote> disallows fetching session settings explicitly." -msgstr "<quote>none</quote> — явно вимкнути можливість зміни пароля." +msgstr "" +"<quote>none</quote> явним чином забороняє отримання даних щодо параметрів " +"сеансу." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd.conf.5.xml:1049 -#, fuzzy -#| msgid "" -#| "Default: <quote>id_provider</quote> is used if it is set and can handle " -#| "authentication requests." msgid "" "Default: <quote>id_provider</quote> is used if it is set and can handle " "session loading requests." msgstr "" "Типове значення: буде використано <quote>id_provider</quote>, якщо цей " -"спосіб встановлено і можлива обробка запитів щодо розпізнавання." +"спосіб встановлено і можлива обробка запитів щодо завантаження сеансу." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd.conf.5.xml:1056 @@ -2997,19 +2923,13 @@ msgstr "Типове значення: krbPrincipalName" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:582 -#, fuzzy -#| msgid "ldap_user_shell (string)" msgid "ldap_user_ssh_public_key (string)" -msgstr "ldap_user_shell (рядок)" +msgstr "ldap_user_ssh_public_key (рядок)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:585 -#, fuzzy -#| msgid "" -#| "The LDAP attribute that contains the path to the user's default shell." msgid "The LDAP attribute that contains the user's SSH public keys." -msgstr "" -"Атрибут LDAP, що містить шлях до типової командної оболонки користувача." +msgstr "Атрибут LDAP, який містить відкриті ключі SSH користувача." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:592 @@ -3037,16 +2957,12 @@ msgstr "ldap_enumeration_refresh_timeout (ціле число)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:611 -#, fuzzy -#| msgid "" -#| "The LDAP attribute that contains how many seconds SSSD has to wait before " -#| "refreshing its cache of enumerated records." msgid "" "Specifies how many seconds SSSD has to wait before refreshing its cache of " "enumerated records." msgstr "" -"Атрибут LDAP, що містить дані щодо кількості секунд, протягом яких SSSD має " -"очікувати до оновлення свого кешу нумерованих записів." +"Визначає кількість секунд, протягом яких SSSD має очікувати до оновлення " +"свого кешу нумерованих записів." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:616 sssd-ldap.5.xml:1808 @@ -3055,10 +2971,8 @@ msgstr "Типове значення: 300" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:622 -#, fuzzy -#| msgid "ldap_search_timeout (integer)" msgid "ldap_purge_cache_timeout (integer)" -msgstr "ldap_search_timeout (ціле число)" +msgstr "ldap_purge_cache_timeout (ціле число)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:625 @@ -3362,103 +3276,73 @@ msgstr "ldap_netgroup_modify_timestamp (рядок)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:900 -#, fuzzy -#| msgid "ldap_user_object_class (string)" msgid "ldap_service_object_class (string)" -msgstr "ldap_user_object_class (рядок)" +msgstr "ldap_service_object_class (рядок)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:903 -#, fuzzy -#| msgid "The object class of a user entry in LDAP." msgid "The object class of a service entry in LDAP." -msgstr "Клас об’єктів запису користувача у LDAP." +msgstr "Клас об’єктів запису служби у LDAP." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:906 -#, fuzzy -#| msgid "Default: authorizedService" msgid "Default: ipService" -msgstr "Типове значення: authorizedService" +msgstr "Типове значення: ipService" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:912 -#, fuzzy -#| msgid "ldap_dns_service_name (string)" msgid "ldap_service_name (string)" -msgstr "ldap_dns_service_name (рядок)" +msgstr "ldap_service_name (рядок)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:915 -#, fuzzy -#| msgid "" -#| "The LDAP attribute that contains the name of the user's home directory." msgid "" "The LDAP attribute that contains the name of service attributes and their " "aliases." -msgstr "Атрибут LDAP, що містить назву домашнього каталогу користувача." +msgstr "" +"Атрибут LDAP, що містить назву атрибутів служби та замінників цих атрибутів." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:925 -#, fuzzy -#| msgid "ldap_tls_cert (string)" msgid "ldap_service_port (string)" -msgstr "ldap_tls_cert (рядок)" +msgstr "ldap_service_port (рядок)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:928 -#, fuzzy -#| msgid "" -#| "The LDAP attribute that contains the name of the user's home directory." msgid "The LDAP attribute that contains the port managed by this service." -msgstr "Атрибут LDAP, що містить назву домашнього каталогу користувача." +msgstr "Атрибут LDAP, що містить номер порту, яким керує ця служба." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:932 -#, fuzzy -#| msgid "Default: ipv4_first" msgid "Default: ipServicePort" -msgstr "Типове значення: ipv4_first" +msgstr "Типове значення: ipServicePort" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:938 -#, fuzzy -#| msgid "ldap_tls_cert (string)" msgid "ldap_service_proto (string)" -msgstr "ldap_tls_cert (рядок)" +msgstr "ldap_service_proto (рядок)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:941 -#, fuzzy -#| msgid "" -#| "The LDAP attribute that contains the path to the user's default shell." msgid "" "The LDAP attribute that contains the protocols understood by this service." -msgstr "" -"Атрибут LDAP, що містить шлях до типової командної оболонки користувача." +msgstr "Атрибут LDAP, що містить протоколи, за яким може працювати ця служба." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:945 -#, fuzzy -#| msgid "Default: ipv4_first" msgid "Default: ipServiceProtocol" -msgstr "Типове значення: ipv4_first" +msgstr "Типове значення: ipServiceProtocol" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:951 -#, fuzzy -#| msgid "ldap_user_search_base (string)" msgid "ldap_service_search_base (string)" -msgstr "ldap_user_search_base (рядок)" +msgstr "ldap_service_search_base (рядок)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:954 -#, fuzzy -#| msgid "An optional base DN to restrict user searches to a specific subtree." msgid "An optional base DN to restrict service searches to a specific subtree." msgstr "" -"Додатковий основний DN для обмеження пошуків користувачів певною гілкою " -"ієрархії." +"Додатковий основний DN для обмеження пошуків служб певною гілкою ієрархії." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:958 sssd-ldap.5.xml:1918 sssd-ldap.5.xml:1937 @@ -3617,7 +3501,7 @@ msgstr "Типове значення: 1000" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1079 msgid "ldap_disable_paging" -msgstr "" +msgstr "ldap_disable_paging" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1082 @@ -3626,6 +3510,9 @@ msgid "" "server reports that it supports the LDAP paging control in its RootDSE but " "it is not enabled or does not behave properly." msgstr "" +"Вимикає контроль сторінок LDAP. Цим параметром слід скористатися, якщо " +"сервер LDAP повідомляє про підтримку контролю сторінок LDAP у своєму " +"RootDSE, але цю підтримку не увімкнено або вона не працює належним чином." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1088 @@ -3633,6 +3520,9 @@ msgid "" "Example: OpenLDAP servers with the paging control module installed on the " "server but not enabled will report it in the RootDSE but be unable to use it." msgstr "" +"Приклад: сервери OpenLDAP з модулем контролю сторінок, встановленим на " +"сервері, але не увімкненим, повідомляють про підтримку у RootDSE, але цією " +"підтримкою не можна скористатися." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1094 @@ -3641,6 +3531,9 @@ msgid "" "a time on a single connection. On busy clients, this can result in some " "requests being denied." msgstr "" +"Приклад: 389 DS має ваду, пов’язану з тим, що здатен підтримувати лише один " +"процес контролю сторінок для одного з’єднання. У разі значного навантаження " +"це може призвести до відмови у виконанні запитів." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1103 @@ -4068,22 +3961,14 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1416 -#, fuzzy -#| msgid "" -#| "<emphasis>shadow</emphasis> - Use <citerefentry><refentrytitle>shadow</" -#| "refentrytitle> <manvolnum>5</manvolnum></citerefentry> style attributes " -#| "to evaluate if the password has expired. Note that the current version " -#| "of sssd cannot update this attribute during a password change." msgid "" "<emphasis>shadow</emphasis> - Use <citerefentry><refentrytitle>shadow</" "refentrytitle> <manvolnum>5</manvolnum></citerefentry> style attributes to " "evaluate if the password has expired." msgstr "" -"<emphasis>shadow</emphasis> — використовувати атрибути у форматі " +"<emphasis>shadow</emphasis> — використовувати атрибути у стилі " "<citerefentry><refentrytitle>shadow</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry> для визначення завершення строку дії пароля. " -"Зауважте, що у поточній версії sssd не передбачено можливості оновлення " -"цього атрибута під час зміни пароля." +"manvolnum></citerefentry> для визначення того, чи чинним є пароль." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1422 @@ -4419,253 +4304,194 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><title> #: sssd-ldap.5.xml:1639 -#, fuzzy -#| msgid "OPTIONS" msgid "SUDO OPTIONS" -msgstr "ПАРАМЕТРИ" +msgstr "ПАРАМЕТРИ SUDO" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1644 -#, fuzzy -#| msgid "ldap_user_object_class (string)" msgid "ldap_sudorule_object_class (string)" -msgstr "ldap_user_object_class (рядок)" +msgstr "ldap_sudorule_object_class (рядок)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1647 -#, fuzzy -#| msgid "The object class of a user entry in LDAP." msgid "The object class of a sudo rule entry in LDAP." -msgstr "Клас об’єктів запису користувача у LDAP." +msgstr "Клас об’єктів запису правила sudo у LDAP." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1650 -#, fuzzy -#| msgid "Default: uid" msgid "Default: sudoRole" -msgstr "Типове значення: uid" +msgstr "Типове значення: sudoRole" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1656 -#, fuzzy -#| msgid "ldap_user_name (string)" msgid "ldap_sudorule_name (string)" -msgstr "ldap_user_name (рядок)" +msgstr "ldap_sudorule_name (рядок)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1659 -#, fuzzy -#| msgid "The LDAP attribute that corresponds to the group name." msgid "The LDAP attribute that corresponds to the sudo rule name." -msgstr "Атрибут LDAP, що відповідає назві групи." +msgstr "Атрибут LDAP, що відповідає назві правила sudo." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1669 -#, fuzzy -#| msgid "ldap_schema (string)" msgid "ldap_sudorule_command (string)" -msgstr "ldap_schema (рядок)" +msgstr "ldap_sudorule_command (рядок)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1672 -#, fuzzy -#| msgid "The LDAP attribute that corresponds to the group name." msgid "The LDAP attribute that corresponds to the command name." -msgstr "Атрибут LDAP, що відповідає назві групи." +msgstr "Атрибут LDAP, що відповідає назві команди." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1676 -#, fuzzy -#| msgid "Default: uid" msgid "Default: sudoCommand" -msgstr "Типове значення: uid" +msgstr "Типове значення: sudoCommand" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1682 -#, fuzzy -#| msgid "ldap_user_authorized_host (string)" msgid "ldap_sudorule_host (string)" -msgstr "ldap_user_authorized_host (рядок)" +msgstr "ldap_sudorule_host (рядок)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1685 -#, fuzzy -#| msgid "The LDAP attribute that corresponds to the user's primary group id." msgid "" "The LDAP attribute that corresponds to the host name (or host IP address, " "host IP network, or host netgroup)" -msgstr "Атрибут LDAP, що відповідає ідентифікатору основної групи користувача." +msgstr "" +"Атрибут LDAP, який відповідає назві вузла (або IP-адресі вузла, IP-мережі " +"вузла, мережевій групі вузла)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1690 -#, fuzzy -#| msgid "Default: root" msgid "Default: sudoHost" -msgstr "Типове значення: root" +msgstr "Типове значення: sudoHost" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1696 -#, fuzzy -#| msgid "ldap_user_uid_number (string)" msgid "ldap_sudorule_user (string)" -msgstr "ldap_user_uid_number (рядок)" +msgstr "ldap_sudorule_user (рядок)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1699 -#, fuzzy -#| msgid "The LDAP attribute that corresponds to the netgroup name." msgid "" "The LDAP attribute that corresponds to the user name (or UID, group name or " "user's netgroup)" -msgstr "Атрибут LDAP, що відповідає назві мережевої групи (netgroup)." +msgstr "" +"Атрибут LDAP, що відповідає назві імені користувача (або UID, назві групи " +"або назві мережевої групи користувача)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1703 -#, fuzzy -#| msgid "Default: uid" msgid "Default: sudoUser" -msgstr "Типове значення: uid" +msgstr "Типове значення: sudoUser" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1709 -#, fuzzy -#| msgid "ldap_uri (string)" msgid "ldap_sudorule_option (string)" -msgstr "ldap_uri (рядок)" +msgstr "ldap_sudorule_option (рядок)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1712 -#, fuzzy -#| msgid "The LDAP attribute that corresponds to the user's id." msgid "The LDAP attribute that corresponds to the sudo options." -msgstr "Атрибут LDAP, що відповідає ідентифікатору користувача." +msgstr "Атрибут LDAP, що відповідає параметрам sudo." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1716 -#, fuzzy -#| msgid "Default: shadowMin" msgid "Default: sudoOption" -msgstr "Типове значення: shadowMin" +msgstr "Типове значення: sudoOption" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1722 -#, fuzzy -#| msgid "ldap_user_name (string)" msgid "ldap_sudorule_runasuser (string)" -msgstr "ldap_user_name (рядок)" +msgstr "ldap_sudorule_runasuser (рядок)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1725 -#, fuzzy -#| msgid "The LDAP attribute that corresponds to the user's primary group id." msgid "" "The LDAP attribute that corresponds to the user name that commands may be " "run as." -msgstr "Атрибут LDAP, що відповідає ідентифікатору основної групи користувача." +msgstr "" +"Атрибут LDAP, що відповідає користувачеві, від імені якого можна виконувати " +"команди." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1729 -#, fuzzy -#| msgid "Default: uidNumber" msgid "Default: sudoRunAsUser" -msgstr "Типове значення: uidNumber" +msgstr "Типове значення: sudoRunAsUser" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1735 -#, fuzzy -#| msgid "ldap_user_name (string)" msgid "ldap_sudorule_runasgroup (string)" -msgstr "ldap_user_name (рядок)" +msgstr "ldap_sudorule_runasgroup (рядок)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1738 -#, fuzzy -#| msgid "The LDAP attribute that corresponds to the group name." msgid "" "The LDAP attribute that corresponds to the group name or group GID that " "commands may be run as." -msgstr "Атрибут LDAP, що відповідає назві групи." +msgstr "" +"Атрибут LDAP, що відповідає назві групи або GID, від імені якої можна " +"виконувати команди." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1742 -#, fuzzy -#| msgid "Default: posixGroup" msgid "Default: sudoRunAsGroup" -msgstr "Типове значення: posixGroup" +msgstr "Типове значення: sudoRunAsGroup" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1748 -#, fuzzy -#| msgid "ldap_user_uid_number (string)" msgid "ldap_sudorule_notbefore (string)" -msgstr "ldap_user_uid_number (рядок)" +msgstr "ldap_sudorule_notbefore (рядок)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1751 -#, fuzzy -#| msgid "The LDAP attribute that corresponds to the user's primary group id." msgid "" "The LDAP attribute that corresponds to the start date/time for when the sudo " "rule is valid." -msgstr "Атрибут LDAP, що відповідає ідентифікатору основної групи користувача." +msgstr "" +"Атрибут LDAP, що відповідає даті і часу набуття чинності правилом sudo." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1755 -#, fuzzy -#| msgid "Default: uidNumber" msgid "Default: sudoNotBefore" -msgstr "Типове значення: uidNumber" +msgstr "Типове значення: sudoNotBefore" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1761 -#, fuzzy -#| msgid "ldap_user_name (string)" msgid "ldap_sudorule_notafter (string)" -msgstr "ldap_user_name (рядок)" +msgstr "ldap_sudorule_notafter (рядок)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1764 -#, fuzzy -#| msgid "The LDAP attribute that corresponds to the user's primary group id." msgid "" "The LDAP attribute that corresponds to the expiration date/time, after which " "the sudo rule will no longer be valid." -msgstr "Атрибут LDAP, що відповідає ідентифікатору основної групи користувача." +msgstr "Атрибут LDAP, що відповідає даті і часу втрати чинності правилом sudo." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1769 -#, fuzzy -#| msgid "Default: filter" msgid "Default: sudoNotAfter" -msgstr "Типове значення: filter" +msgstr "Типове значення: sudoNotAfter" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1775 -#, fuzzy -#| msgid "ldap_access_order (string)" msgid "ldap_sudorule_order (string)" -msgstr "ldap_access_order (рядок)" +msgstr "ldap_sudorule_order (рядок)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1778 -#, fuzzy -#| msgid "The LDAP attribute that corresponds to the user's id." msgid "The LDAP attribute that corresponds to the ordering index of the rule." -msgstr "Атрибут LDAP, що відповідає ідентифікатору користувача." +msgstr "Атрибут LDAP, що відповідає порядковому номеру правила." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1782 -#, fuzzy -#| msgid "Default: password" msgid "Default: sudoOrder" -msgstr "Типове значення: password" +msgstr "Типове значення: sudoOrder" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1788 -#, fuzzy -#| msgid "ldap_referrals (boolean)" msgid "ldap_sudo_refresh_enabled (boolean)" -msgstr "ldap_referrals (булеве значення)" +msgstr "ldap_sudo_refresh_enabled (булеве значення)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1791 @@ -4673,57 +4499,44 @@ msgid "" "Enables periodical download of all sudo rules. The cache is purged before " "each update." msgstr "" +"Вмикає періодичне звантаження всіх правил sudo. Перед кожним оновленням дані " +"з кешу вилучаються." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1801 -#, fuzzy -#| msgid "ldap_enumeration_refresh_timeout (integer)" msgid "ldap_sudo_refresh_timeout (integer)" -msgstr "ldap_enumeration_refresh_timeout (ціле число)" +msgstr "ldap_sudo_refresh_timeout (ціле число)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1804 -#, fuzzy -#| msgid "" -#| "The LDAP attribute that contains how many seconds SSSD has to wait before " -#| "refreshing its cache of enumerated records." msgid "" "How many seconds SSSD has to wait before refreshing its cache of sudo rules." msgstr "" -"Атрибут LDAP, що містить дані щодо кількості секунд, протягом яких SSSD має " -"очікувати до оновлення свого кешу нумерованих записів." +"Визначає кількість секунд, протягом яких SSSD має очікувати до оновлення " +"свого кешу правил sudo." #. type: Content of: <reference><refentry><refsect1><para> #: sssd-ldap.5.xml:1642 -#, fuzzy -#| msgid "<placeholder type=\"programlisting\" id=\"0\"/>" msgid "<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "<placeholder type=\"programlisting\" id=\"0\"/>" +msgstr "<placeholder type=\"variablelist\" id=\"0\"/>" #. type: Content of: <reference><refentry><refsect1><para> #: sssd-ldap.5.xml:1815 -#, fuzzy -#| msgid "" -#| "Specifies acceptable cipher suites. Typically this is a colon sperated " -#| "list. See <citerefentry><refentrytitle>ldap.conf</refentrytitle> " -#| "<manvolnum>5</manvolnum></citerefentry> for format." msgid "" "This manual page only describes attribute name mapping. For detailed " "explanation of sudo related attribute semantics, see <citerefentry> " "<refentrytitle>sudoers.ldap</refentrytitle><manvolnum>5</manvolnum> </" "citerefentry>" msgstr "" -"Визначає прийнятні комплекти програм для шифрування. Записи у типовому " -"списку слід відокремлювати комами. З форматом можна ознайомитися на сторінці " -"довідника до <citerefentry><refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry>." +"На цій сторінці довідника наведено дані щодо відповідності назв атрибутів. " +"Докладний опис семантики атрибутів, пов’язаних з sudo, можна знайти у " +"довідці з <citerefentry> <refentrytitle>sudoers.ldap</" +"refentrytitle><manvolnum>5</manvolnum> </citerefentry>." #. type: Content of: <reference><refentry><refsect1><title> #: sssd-ldap.5.xml:1825 -#, fuzzy -#| msgid "OPTIONS" msgid "AUTOFS OPTIONS" -msgstr "ПАРАМЕТРИ" +msgstr "ПАРАМЕТРИ AUTOFS" #. type: Content of: <reference><refentry><refsect1><para> #: sssd-ldap.5.xml:1827 @@ -4731,62 +4544,48 @@ msgid "" "Please note that the default values correspond to the default schema which " "is RFC2307." msgstr "" +"Будь ласка, зауважте, що типові значення відповідають типовій схемі, яку " +"визначено у RFC2307." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1834 -#, fuzzy -#| msgid "ldap_user_object_class (string)" msgid "ldap_autofs_map_object_class (string)" -msgstr "ldap_user_object_class (рядок)" +msgstr "ldap_autofs_map_object_class (рядок)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1837 sssd-ldap.5.xml:1863 -#, fuzzy -#| msgid "The object class of a group entry in LDAP." msgid "The object class of an automount map entry in LDAP." -msgstr "Клас об’єктів запису групи у LDAP." +msgstr "Клас об’єктів запису карти автоматичного монтування у LDAP." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1840 sssd-ldap.5.xml:1867 -#, fuzzy -#| msgid "Default: root" msgid "Default: automountMap" -msgstr "Типове значення: root" +msgstr "Типове значення: automountMap" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1847 -#, fuzzy -#| msgid "ldap_user_name (string)" msgid "ldap_autofs_map_name (string)" -msgstr "ldap_user_name (рядок)" +msgstr "ldap_autofs_map_name (рядок)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1850 -#, fuzzy -#| msgid "The object class of a group entry in LDAP." msgid "The name of an automount map entry in LDAP." -msgstr "Клас об’єктів запису групи у LDAP." +msgstr "Назва запису карти автоматичного монтування у LDAP." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1853 -#, fuzzy -#| msgid "Default: uid" msgid "Default: ou" -msgstr "Типове значення: uid" +msgstr "Типове значення: ou" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1860 -#, fuzzy -#| msgid "ldap_user_object_class (string)" msgid "ldap_autofs_entry_object_class (string)" -msgstr "ldap_user_object_class (рядок)" +msgstr "ldap_autofs_entry_object_class (рядок)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1874 -#, fuzzy -#| msgid "ldap_tls_key (string)" msgid "ldap_autofs_entry_key (string)" -msgstr "ldap_tls_key (рядок)" +msgstr "ldap_autofs_entry_key (рядок)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1877 sssd-ldap.5.xml:1891 @@ -4794,20 +4593,18 @@ msgid "" "The key of an automount entry in LDAP. The entry usually corresponds to a " "mount point." msgstr "" +"Ключ запису автоматичного монтування LDAP. Цей запис зазвичай відповідає " +"точні монтування." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:1888 -#, fuzzy -#| msgid "ldap_user_name (string)" msgid "ldap_autofs_entry_value (string)" -msgstr "ldap_user_name (рядок)" +msgstr "ldap_autofs_entry_value (рядок)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:1895 -#, fuzzy -#| msgid "Default: shadowInactive" msgid "Default: automountInformation" -msgstr "Типове значення: shadowInactive" +msgstr "Типове значення: automountInformation" #. type: Content of: <reference><refentry><refsect1><para> #: sssd-ldap.5.xml:1832 @@ -4817,6 +4614,10 @@ msgid "" "<placeholder type=\"variablelist\" id=\"3\"/> <placeholder type=" "\"variablelist\" id=\"4\"/>" msgstr "" +"<placeholder type=\"variablelist\" id=\"0\"/> <placeholder type=" +"\"variablelist\" id=\"1\"/> <placeholder type=\"variablelist\" id=\"2\"/> " +"<placeholder type=\"variablelist\" id=\"3\"/> <placeholder type=" +"\"variablelist\" id=\"4\"/>" #. type: Content of: <reference><refentry><refsect1><title> #: sssd-ldap.5.xml:1904 @@ -4926,37 +4727,29 @@ msgstr "" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:2012 -#, fuzzy -#| msgid "ldap_search_base (string)" msgid "ldap_sudo_search_base (string)" -msgstr "ldap_search_base (рядок)" +msgstr "ldap_sudo_search_base (рядок)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:2015 -#, fuzzy -#| msgid "An optional base DN to restrict user searches to a specific subtree." msgid "" "An optional base DN to restrict sudo rules searches to a specific subtree." msgstr "" -"Додатковий основний DN для обмеження пошуків користувачів певною гілкою " +"Додатковий основний DN для обмеження пошуків правил sudo певною гілкою " "ієрархії." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ldap.5.xml:2034 -#, fuzzy -#| msgid "ldap_user_search_base (string)" msgid "ldap_autofs_search_base (string)" -msgstr "ldap_user_search_base (рядок)" +msgstr "ldap_autofs_search_base (рядок)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ldap.5.xml:2037 -#, fuzzy -#| msgid "An optional base DN to restrict user searches to a specific subtree." msgid "" "An optional base DN to restrict automounter searches to a specific subtree." msgstr "" -"Додатковий основний DN для обмеження пошуків користувачів певною гілкою " -"ієрархії." +"Додатковий основний DN для обмеження пошуків засобу автоматичного монтування " +"певною гілкою ієрархії." #. type: Content of: <reference><refentry><refsect1><para> #: sssd-ldap.5.xml:1906 @@ -5642,6 +5435,9 @@ msgid "" "NOTE: On older systems (such as RHEL 5), for this behavior to work reliably, " "the default Kerberos realm must be set properly in /etc/krb5.conf" msgstr "" +"ЗАУВАЖЕННЯ: на застарілих системах (зокрема RHEL 5) для надійної роботи у " +"цьому режимі типову область дії Kerberos має бути належним чином визначено " +"у /etc/krb5.conf" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:129 @@ -5682,20 +5478,14 @@ msgstr "Типове значення: використання базової #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:156 -#, fuzzy -#| msgid "ipa_hbac_search_base (string)" msgid "ipa_host_search_base (string)" -msgstr "ipa_hbac_search_base (рядок)" +msgstr "ipa_host_search_base (рядок)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:159 -#, fuzzy -#| msgid "" -#| "Optional. Use the given string as search base for HBAC related objects." msgid "Optional. Use the given string as search base for host objects." msgstr "" -"Необов’язковий. Використати вказаний рядок як основу пошуку пов’язаних з " -"HBAC об’єктів." +"Необов’язковий. Використати вказаний рядок як основу пошуку об’єктів вузлів." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:168 @@ -5704,23 +5494,21 @@ msgid "" "<emphasis>ipa_hbac_support_srchost</emphasis> is set to False, the filter " "will be ignored." msgstr "" +"Якщо вказано фільтрування за довільною базою пошуку і встановлено значення " +"False для <emphasis>ipa_hbac_support_srchost</emphasis>, фільтр буде " +"проігноровано." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:180 -#, fuzzy -#| msgid "ipa_hbac_search_base (string)" msgid "ipa_selinux_search_base (string)" -msgstr "ipa_hbac_search_base (рядок)" +msgstr "ipa_selinux_search_base (рядок)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:183 -#, fuzzy -#| msgid "" -#| "Optional. Use the given string as search base for HBAC related objects." msgid "Optional. Use the given string as search base for SELinux user maps." msgstr "" -"Необов’язковий. Використати вказаний рядок як основу пошуку пов’язаних з " -"HBAC об’єктів." +"Необов’язковий. Використати вказаний рядок як основу пошуку карт " +"користувачів SELinux." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:199 sssd-krb5.5.xml:229 @@ -5857,23 +5645,25 @@ msgid "" "Note that if set to <emphasis>False</emphasis>, this option casuses filters " "given in <emphasis>ipa_host_search_base</emphasis> to be ignored;" msgstr "" +"Зауважте, що якщо встановлено значення <emphasis>False</emphasis>, фільтри, " +"вказані за допомогою параметра <emphasis>ipa_host_search_base</emphasis>, " +"буде проігноровано;" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:307 -#, fuzzy -#| msgid "ipa_domain (string)" msgid "ipa_automount_location (string)" -msgstr "ipa_domain (рядок)" +msgstr "ipa_automount_location (рядок)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:310 msgid "The automounter location this IPA client will be using" msgstr "" +"Адреса автоматичного монтування, яку буде використовувати цей клієнт IPA" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:313 msgid "Default: The location named \"default\"" -msgstr "" +msgstr "Типове значення: адреса з назвою \"default\"" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:319 @@ -5990,213 +5780,158 @@ msgstr "Типове значення: fqdn" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:404 -#, fuzzy -#| msgid "ldap_user_object_class (string)" msgid "ipa_selinux_usermap_object_class (string)" -msgstr "ldap_user_object_class (рядок)" +msgstr "ipa_selinux_usermap_object_class (рядок)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:415 -#, fuzzy -#| msgid "ldap_user_name (string)" msgid "ipa_selinux_usermap_name (string)" -msgstr "ldap_user_name (рядок)" +msgstr "ipa_selinux_usermap_name (рядок)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:418 -#, fuzzy -#| msgid "The LDAP attribute that contains the names of the group's members." msgid "The LDAP attribute that contains the name of SELinux usermap." -msgstr "Атрибут LDAP, у якому містяться імена учасників групи." +msgstr "Атрибут LDAP, що містить назву карти користувачів SELinux." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:427 -#, fuzzy -#| msgid "ipa_netgroup_member_user (string)" msgid "ipa_selinux_usermap_member_user (string)" -msgstr "ipa_netgroup_member_user (рядок)" +msgstr "ipa_selinux_usermap_member_user (рядок)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:430 -#, fuzzy -#| msgid "The LDAP attribute that contains FQDN of the host." msgid "" "The LDAP attribute that contains all users / groups this rule match against." -msgstr "Атрибут LDAP, що містить FQDN вузла." +msgstr "" +"Атрибут LDAP, що містить список всіх користувачів і груп, яких стосується це " +"правило." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:439 -#, fuzzy -#| msgid "ipa_netgroup_member_host (string)" msgid "ipa_selinux_usermap_member_host (string)" -msgstr "ipa_netgroup_member_host (рядок)" +msgstr "ipa_selinux_usermap_member_host (рядок)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:442 -#, fuzzy -#| msgid "" -#| "The LDAP attribute that contains the (host, user, domain) netgroup " -#| "triples." msgid "" "The LDAP attribute that contains all hosts / hostgroups this rule match " "against." msgstr "" -"Атрибут LDAP, що містить трійки мережевої групи (вузол, користувач, домен)." +"Атрибут LDAP, що містить список всіх вузлів і груп вузлів, яких стосується " +"це правило." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:451 -#, fuzzy -#| msgid "ipa_netgroup_member_of (string)" msgid "ipa_selinux_usermap_see_also (string)" -msgstr "ipa_netgroup_member_of (рядок)" +msgstr "ipa_selinux_usermap_see_also (рядок)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:454 -#, fuzzy -#| msgid "" -#| "The LDAP attribute that contains the names of the netgroup's members." msgid "" "The LDAP attribute that contains DN of HBAC rule which can be used for " "matching instead of memberUser and memberHost" msgstr "" -"Атрибут LDAP, у якому містяться імена учасників мережевої групи (netgroup)." +"Атрибут LDAP, що містить назву домену правила HBAC, яким можна користуватися " +"для встановлення відповідності замість memberUser і memberHost." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:459 -#, fuzzy -#| msgid "Default: false" msgid "Default: seeAlso" -msgstr "Типове значення: false" +msgstr "Типове значення: seeAlso" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:464 -#, fuzzy -#| msgid "ipa_netgroup_member_user (string)" msgid "ipa_selinux_usermap_selinux_user (string)" -msgstr "ipa_netgroup_member_user (рядок)" +msgstr "ipa_selinux_usermap_selinux_user (рядок)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:467 -#, fuzzy -#| msgid "The LDAP attribute that contains FQDN of the host." msgid "The LDAP attribute that contains SELinux user string itself." -msgstr "Атрибут LDAP, що містить FQDN вузла." +msgstr "Атрибут LDAP, який містить сам рядок користувача SELinux." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:471 -#, fuzzy -#| msgid "Default: ipaHost" msgid "Default: ipaSELinuxUser" -msgstr "Типове значення: ipaHost" +msgstr "Типове значення: ipaSELinuxUser" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:476 -#, fuzzy -#| msgid "ldap_user_name (string)" msgid "ipa_selinux_usermap_enabled (string)" -msgstr "ldap_user_name (рядок)" +msgstr "ipa_selinux_usermap_enabled (рядок)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:479 -#, fuzzy -#| msgid "" -#| "The LDAP attribute that contains the path to the user's default shell." msgid "" "The LDAP attribute that contains whether or not is user map enabled for " "usage." msgstr "" -"Атрибут LDAP, що містить шлях до типової командної оболонки користувача." +"Атрибут LDAP, що містить дані щодо того, чи можна користуватися картою " +"користувачів." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:483 -#, fuzzy -#| msgid "Default: loginDisabled" msgid "Default: ipaEnabledFlag" -msgstr "Типове значення: loginDisabled" +msgstr "Типове значення: ipaEnabledFlag" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:488 -#, fuzzy -#| msgid "ldap_user_search_filter (string)" msgid "ipa_selinux_usermap_user_category (string)" -msgstr "ldap_user_search_filter (рядок)" +msgstr "ipa_selinux_usermap_user_category (рядок)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:491 -#, fuzzy -#| msgid "The LDAP attribute that contains FQDN of the host." msgid "The LDAP attribute that contains user category such as 'all'." -msgstr "Атрибут LDAP, що містить FQDN вузла." +msgstr "Атрибут LDAP, що містить категорію користувачів, зокрема 'all'." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:495 -#, fuzzy -#| msgid "Default: homeDirectory" msgid "Default: userCategory" -msgstr "Типове значення: homeDirectory" +msgstr "Типове значення: userCategory" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:500 -#, fuzzy -#| msgid "ldap_user_home_directory (string)" msgid "ipa_selinux_usermap_host_category (string)" -msgstr "ldap_user_home_directory (рядок)" +msgstr "ipa_selinux_usermap_host_category (рядок)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:503 -#, fuzzy -#| msgid "The LDAP attribute that contains FQDN of the host." msgid "The LDAP attribute that contains host category such as 'all'." -msgstr "Атрибут LDAP, що містить FQDN вузла." +msgstr "Атрибут LDAP, що містить категорію вузлів, зокрема 'all'." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:507 -#, fuzzy -#| msgid "Default: host" msgid "Default: hostCategory" -msgstr "Типове значення: host" +msgstr "Типове значення: hostCategory" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:512 -#, fuzzy -#| msgid "ldap_user_uuid (string)" msgid "ipa_selinux_usermap_uuid (string)" -msgstr "ldap_user_uuid (рядок)" +msgstr "ipa_selinux_usermap_uuid (рядок)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:515 -#, fuzzy -#| msgid "The LDAP attribute that contains FQDN of the host." msgid "The LDAP attribute that contains unique ID of the user map." -msgstr "Атрибут LDAP, що містить FQDN вузла." +msgstr "Атрибут LDAP, що містить унікальний ідентифікатор карти користувачів." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:519 -#, fuzzy -#| msgid "Default: nsUniqueId" msgid "Default: ipaUniqueID" -msgstr "Типове значення: nsUniqueId" +msgstr "Типове значення: ipaUniqueID" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> #: sssd-ipa.5.xml:524 -#, fuzzy -#| msgid "ipa_hostname (string)" msgid "ipa_host_ssh_public_key (string)" -msgstr "ipa_hostname (рядок)" +msgstr "ipa_host_ssh_public_key (рядок)" #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:527 -#, fuzzy -#| msgid "The LDAP attribute that contains FQDN of the host." msgid "The LDAP attribute that contains the host's SSH public keys." -msgstr "Атрибут LDAP, що містить FQDN вузла." +msgstr "Атрибут LDAP, який містить відкриті ключі SSH вузла." #. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> #: sssd-ipa.5.xml:531 -#, fuzzy -#| msgid "Default: ipaHost" msgid "Default: ipaSshPubKey" -msgstr "Типове значення: ipaHost" +msgstr "Типове значення: ipaSshPubKey" #. type: Content of: <reference><refentry><refsect1><para> #: sssd-ipa.5.xml:546 @@ -7418,8 +7153,8 @@ msgid "" "not given, it is chosen automatically." msgstr "" "Встановити для параметра ідентифікатора групи (GID) значення " -"<replaceable>GID</replaceable> </replaceable>. Якщо таке значення не буде " -"вказано, програма вибере його автоматично." +"<replaceable>GID</replaceable>. Якщо таке значення не буде вказано, програма " +"вибере його автоматично." #. type: Content of: <reference><refentry><refsect1><para> #: sss_groupadd.8.xml:60 @@ -7791,27 +7526,21 @@ msgstr "" #. type: Content of: <reference><refentry><refnamediv><refname> #: sss_cache.8.xml:10 sss_cache.8.xml:15 -#, fuzzy -#| msgid "sss_obfuscate" msgid "sss_cache" -msgstr "sss_obfuscate" +msgstr "sss_cache" #. type: Content of: <reference><refentry><refnamediv><refpurpose> #: sss_cache.8.xml:16 msgid "perform cache cleanup" -msgstr "" +msgstr "виконати спорожнення кешу" #. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> #: sss_cache.8.xml:21 -#, fuzzy -#| msgid "" -#| "<command>sssd</command> <arg choice='opt'> <replaceable>options</" -#| "replaceable> </arg>" msgid "" "<command>sss_cache</command> <arg choice='opt'> <replaceable>options</" "replaceable> </arg>" msgstr "" -"<command>sssd</command> <arg choice='opt'> <replaceable>параметри</" +"<command>sss_cache</command> <arg choice='opt'> <replaceable>параметри</" "replaceable> </arg>" #. type: Content of: <reference><refentry><refsect1><para> @@ -7821,29 +7550,27 @@ msgid "" "records are forced to be reloaded from server as soon as related SSSD " "backend is online." msgstr "" +"<command>sss_cache</command> скасовує визначення записів у кеші SSSD. Дані " +"записів зі скасованими визначеннями буде перезавантажено з сервера у " +"примусовому порядку, щойно відповідний модуль SSSD отримає до них доступ." #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:42 -#, fuzzy -#| msgid "" -#| "<option>-u</option>,<option>--uid</option> <replaceable>UID</replaceable>" msgid "" "<option>-u</option>,<option>--user</option> <replaceable>login</replaceable>" msgstr "" -"<option>-u</option>,<option>--uid</option> <replaceable>ідентифікатор " -"користувача</replaceable>" +"<option>-u</option>,<option>--user</option> <replaceable>реєстраційні дані</" +"replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:47 msgid "Invalidate specific user." -msgstr "" +msgstr "Скасувати визначення вказаного користувача." #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:53 -#, fuzzy -#| msgid "<option>-h</option>,<option>--help</option>" msgid "<option>-U</option>,<option>--users</option>" -msgstr "<option>-h</option>,<option>--help</option>" +msgstr "<option>-U</option>,<option>--users</option>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:57 @@ -7851,30 +7578,26 @@ msgid "" "Invalidate all user records. This option overrides invalidation of specific " "user if it was also set." msgstr "" +"Скасувати визначення всіх записів. Цей параметр має вищий пріоритет за " +"параметр скасування визначення для будь-якого користувача, якщо такий " +"параметр вказано." #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:64 -#, fuzzy -#| msgid "" -#| "<option>-G</option>,<option>--groups</option> <replaceable>GROUPS</" -#| "replaceable>" msgid "" "<option>-g</option>,<option>--group</option> <replaceable>group</replaceable>" msgstr "" -"<option>-G</option>,<option>--groups</option> <replaceable>ГРУПИ</" -"replaceable>" +"<option>-g</option>,<option>--group</option> <replaceable>група</replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:69 msgid "Invalidate specific group." -msgstr "" +msgstr "Скасувати визначення вказаної групи." #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:75 -#, fuzzy -#| msgid "<option>-r</option>,<option>--remove</option>" msgid "<option>-G</option>,<option>--groups</option>" -msgstr "<option>-r</option>,<option>--remove</option>" +msgstr "<option>-G</option>,<option>--groups</option>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:79 @@ -7882,31 +7605,28 @@ msgid "" "Invalidate all group records. This option overrides invalidation of specific " "group if it was also set." msgstr "" +"Скасувати визначення записів для всіх груп. Цей параметр має вищий пріоритет " +"за параметр скасування визначення для будь-якої групи, якщо такий параметр " +"вказано." #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:86 -#, fuzzy -#| msgid "" -#| "<option>-G</option>,<option>--groups</option> <replaceable>GROUPS</" -#| "replaceable>" msgid "" "<option>-n</option>,<option>--netgroup</option> <replaceable>netgroup</" "replaceable>" msgstr "" -"<option>-G</option>,<option>--groups</option> <replaceable>ГРУПИ</" +"<option>-n</option>,<option>--netgroup</option> <replaceable>мережева група</" "replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:91 msgid "Invalidate specific netgroup." -msgstr "" +msgstr "Скасувати визначення вказаної мережевої групи." #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:97 -#, fuzzy -#| msgid "<option>-h</option>,<option>--help</option>" msgid "<option>-N</option>,<option>--netgroups</option>" -msgstr "<option>-h</option>,<option>--help</option>" +msgstr "<option>-N</option>,<option>--netgroups</option>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:101 @@ -7914,52 +7634,44 @@ msgid "" "Invalidate all netgroup records. This option overrides invalidation of " "specific netgroup if it was also set." msgstr "" +"Скасувати визначення всіх записів мережевих груп. Цей параметр має вищий " +"пріоритет за параметр скасування визначення для будь-якої мережевої групи, " +"якщо такий параметр вказано." #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_cache.8.xml:108 -#, fuzzy -#| msgid "" -#| "<option>-d</option>,<option>--domain</option> <replaceable>DOMAIN</" -#| "replaceable>" msgid "" "<option>-d</option>,<option>--domain</option> <replaceable>domain</" "replaceable>" msgstr "" -"<option>-d</option>,<option>--domain</option> <replaceable>ДОМЕН</" +"<option>-d</option>,<option>--domain</option> <replaceable>домен</" "replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_cache.8.xml:113 msgid "Restrict invalidation process only to a particular domain." -msgstr "" +msgstr "Обмежити процедуру скасування визначення лише певним доменом." #. type: Content of: <reference><refentry><refnamediv><refname> #: sss_debuglevel.8.xml:10 sss_debuglevel.8.xml:15 -#, fuzzy -#| msgid "sss_userdel" msgid "sss_debuglevel" -msgstr "sss_userdel" +msgstr "sss_debuglevel" #. type: Content of: <reference><refentry><refnamediv><refpurpose> #: sss_debuglevel.8.xml:16 msgid "change debug level while SSSD is running" -msgstr "" +msgstr "змінити рівень діагностики протягом сеансу роботи з SSSD" #. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> #: sss_debuglevel.8.xml:21 -#, fuzzy -#| msgid "" -#| "<command>sss_userdel</command> <arg choice='opt'> <replaceable>options</" -#| "replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -#| "arg>" msgid "" "<command>sss_debuglevel</command> <arg choice='opt'> <replaceable>options</" "replaceable> </arg> <arg choice='plain'><replaceable>NEW_DEBUG_LEVEL</" "replaceable></arg>" msgstr "" -"<command>sss_userdel</command> <arg choice='opt'> <replaceable>параметри</" +"<command>sss_debuglevel</command> <arg choice='opt'> <replaceable>options</" "replaceable> </arg> <arg " -"choice='plain'><replaceable>НАЗВА_ОБЛІКОВОГО_ЗАПИСУ</replaceable></arg>" +"choice='plain'><replaceable>НОВИЙ_РІВЕНЬ_ДІАГНОСТИКИ</replaceable></arg>" #. type: Content of: <reference><refentry><refsect1><para> #: sss_debuglevel.8.xml:32 @@ -7968,53 +7680,43 @@ msgid "" "providers to <replaceable>NEW_DEBUG_LEVEL</replaceable> while SSSD is " "running." msgstr "" +"<command>sss_debuglevel</command> змінює рівень діагностики засобу " +"спостереження та надавачів даних SSSD на вказане значення " +"<replaceable>НОВИЙ_РІВЕНЬ_ДІАГНОСТИКИ</replaceable> під час роботи SSSD." #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_debuglevel.8.xml:59 msgid "<replaceable>NEW_DEBUG_LEVEL</replaceable>" -msgstr "" +msgstr "<replaceable>НОВИЙ_РІВЕНЬ_ДІАГНОСТИКИ</replaceable>" #. type: Content of: <reference><refentry><refnamediv><refname> #: sss_ssh_authorizedkeys.1.xml:10 sss_ssh_authorizedkeys.1.xml:15 msgid "sss_ssh_authorizedkeys" -msgstr "" +msgstr "sss_ssh_authorizedkeys" #. type: Content of: <reference><refentry><refmeta><manvolnum> #: sss_ssh_authorizedkeys.1.xml:11 sss_ssh_knownhostsproxy.1.xml:11 msgid "1" -msgstr "" +msgstr "1" #. type: Content of: <reference><refentry><refnamediv><refpurpose> #: sss_ssh_authorizedkeys.1.xml:16 msgid "get OpenSSH authorized keys" -msgstr "" +msgstr "отримати уповноважені ключі OpenSSH" #. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> #: sss_ssh_authorizedkeys.1.xml:21 -#, fuzzy -#| msgid "" -#| "<command>sss_userdel</command> <arg choice='opt'> <replaceable>options</" -#| "replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -#| "arg>" msgid "" "<command>sss_ssh_authorizedkeys</command> <arg choice='opt'> " "<replaceable>options</replaceable> </arg> <arg " "choice='plain'><replaceable>USER</replaceable></arg>" msgstr "" -"<command>sss_userdel</command> <arg choice='opt'> <replaceable>параметри</" -"replaceable> </arg> <arg " -"choice='plain'><replaceable>НАЗВА_ОБЛІКОВОГО_ЗАПИСУ</replaceable></arg>" +"<command>sss_ssh_authorizedkeys</command> <arg choice='opt'> " +"<replaceable>параметри</replaceable> </arg> <arg " +"choice='plain'><replaceable>КОРИСТУВАЧ</replaceable></arg>" #. type: Content of: <reference><refentry><refsect1><para> #: sss_ssh_authorizedkeys.1.xml:32 -#, fuzzy -#| msgid "" -#| "This manual page describes the configuration of LDAP domains for " -#| "<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</" -#| "manvolnum> </citerefentry>. Refer to the <quote>FILE FORMAT</quote> " -#| "section of the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -#| "<manvolnum>5</manvolnum> </citerefentry> manual page for detailed syntax " -#| "information." msgid "" "<command>sss_ssh_authorizedkeys</command> acquires SSH public keys for user " "<replaceable>USER</replaceable> and outputs them in OpenSSH authorized_keys " @@ -8022,22 +7724,15 @@ msgid "" "<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" "citerefentry> for more information)." msgstr "" -"На цій сторінці довідника описано налаштування доменів LDAP для " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. Щоб дізнатися більше про синтаксис налаштування, зверніться " -"до розділу «ФОРМАТ ФАЙЛІВ» сторінки довідника <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry>." +"<command>sss_ssh_authorizedkeys</command> отримує відкриті ключі SSH для " +"користувача <replaceable>КОРИСТУВАЧ</replaceable> і виводить їх у форматі " +"authorized_keys OpenSSH (щоб дізнатися більше, див. розділ <quote>ФОРМАТ " +"ФАЙЛІВ AUTHORIZED_KEYS</quote> на сторінці підручника (man) з " +"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" +"citerefentry>)." #. type: Content of: <reference><refentry><refsect1><para> #: sss_ssh_authorizedkeys.1.xml:41 -#, fuzzy -#| msgid "" -#| "<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -#| "manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -#| "refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -#| "<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </" -#| "citerefentry>" msgid "" "<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" "citerefentry> can be configured to use <command>sss_ssh_authorizedkeys</" @@ -8046,27 +7741,22 @@ msgid "" "quote> <citerefentry> <refentrytitle>sshd_config</refentrytitle> " "<manvolnum>5</manvolnum></citerefentry> options." msgstr "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" +"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" +"citerefentry> можна налаштувати на використання " +"<command>sss_ssh_authorizedkeys</command> для розпізнавання користувачів за " +"відкритими ключами, якщо програму зібрано з підтримкою параметра " +"<citerefentry> <refentrytitle>sshd_config</refentrytitle> <manvolnum>5</" +"manvolnum></citerefentry> <quote>AuthorizedKeysCommand</quote> або " +"<quote>PubkeyAgent</quote>." #. type: Content of: <reference><refentry><refsect1><para><programlisting> #: sss_ssh_authorizedkeys.1.xml:58 #, no-wrap msgid "AuthorizedKeysCommand /usr/bin/sss_ssh_authorizedkeys\n" -msgstr "" +msgstr "AuthorizedKeysCommand /usr/bin/sss_ssh_authorizedkeys\n" #. type: Content of: <reference><refentry><refsect1><para> #: sss_ssh_authorizedkeys.1.xml:51 -#, fuzzy -#| msgid "" -#| "This manual page describes the configuration of LDAP domains for " -#| "<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</" -#| "manvolnum> </citerefentry>. Refer to the <quote>FILE FORMAT</quote> " -#| "section of the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -#| "<manvolnum>5</manvolnum> </citerefentry> manual page for detailed syntax " -#| "information." msgid "" "If <quote>AuthorizedKeysCommand</quote> is supported, " "<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" @@ -8074,29 +7764,21 @@ msgid "" "in <citerefentry> <refentrytitle>sshd_config</refentrytitle> <manvolnum>5</" "manvolnum></citerefentry>: <placeholder type=\"programlisting\" id=\"0\"/>" msgstr "" -"На цій сторінці довідника описано налаштування доменів LDAP для " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. Щоб дізнатися більше про синтаксис налаштування, зверніться " -"до розділу «ФОРМАТ ФАЙЛІВ» сторінки довідника <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry>." +"Якщо передбачено підтримку <quote>AuthorizedKeysCommand</quote>, " +"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" +"citerefentry> можна налаштувати на використання ключів за допомогою такої " +"інструкції у <citerefentry> <refentrytitle>sshd_config</refentrytitle> " +"<manvolnum>5</manvolnum></citerefentry>: <placeholder type=\"programlisting" +"\" id=\"0\"/>" #. type: Content of: <reference><refentry><refsect1><para><programlisting> #: sss_ssh_authorizedkeys.1.xml:69 #, no-wrap msgid "PubKeyAgent /usr/bin/sss_ssh_authorizedkeys %u\n" -msgstr "" +msgstr "PubKeyAgent /usr/bin/sss_ssh_authorizedkeys %u\n" #. type: Content of: <reference><refentry><refsect1><para> #: sss_ssh_authorizedkeys.1.xml:62 -#, fuzzy -#| msgid "" -#| "The IPA provider accepts the same options used by the <citerefentry> " -#| "<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -#| "citerefentry> identity provider and the <citerefentry> " -#| "<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -#| "citerefentry> authentication provider with some exceptions described " -#| "below." msgid "" "If <quote>PubkeyAgent</quote> is supported, " "<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" @@ -8105,28 +7787,23 @@ msgid "" "manvolnum></citerefentry> configuration: <placeholder type=\"programlisting" "\" id=\"0\"/>" msgstr "" -"Інструментом надання даних IPA використовуються ті самі параметри, що " -"використовуються надавачем даних профілів <citerefentry> <refentrytitle>sssd-" -"ldap</refentrytitle> <manvolnum>5</manvolnum> </citerefentry> та надавачем " -"даних для розпізнавання <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> з певними винятками, " -"описаними нижче." +"Якщо передбачено підтримку <quote>PubkeyAgent</quote>, " +"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" +"citerefentry> може бути налаштовано на використання ключів за допомогою " +"такої інструкції <citerefentry> <refentrytitle>sshd</refentrytitle> " +"<manvolnum>8</manvolnum></citerefentry>: <placeholder type=\"programlisting" +"\" id=\"0\"/>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_ssh_authorizedkeys.1.xml:87 msgid "" "Search for user public keys in SSSD domain <replaceable>DOMAIN</replaceable>." msgstr "" +"Шукати відкриті ключі користувачів у домені SSSD <replaceable>ДОМЕН</" +"replaceable>." #. type: Content of: <reference><refentry><refsect1><para> #: sss_ssh_authorizedkeys.1.xml:98 -#, fuzzy -#| msgid "" -#| "<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -#| "manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -#| "refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -#| "<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </" -#| "citerefentry>" msgid "" "<citerefentry> <refentrytitle>sshd</refentrytitle><manvolnum>8</manvolnum> </" "citerefentry>, <citerefentry> <refentrytitle>sshd_config</" @@ -8134,37 +7811,34 @@ msgid "" "<refentrytitle>sss_ssh_knownhostsproxy</refentrytitle><manvolnum>1</" "manvolnum> </citerefentry>." msgstr "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" +"<citerefentry> <refentrytitle>sshd</refentrytitle><manvolnum>8</manvolnum> </" +"citerefentry>, <citerefentry> <refentrytitle>sshd_config</" "refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" +"<refentrytitle>sss_ssh_knownhostsproxy</refentrytitle><manvolnum>1</" +"manvolnum> </citerefentry>." #. type: Content of: <reference><refentry><refnamediv><refname> #: sss_ssh_knownhostsproxy.1.xml:10 sss_ssh_knownhostsproxy.1.xml:15 msgid "sss_ssh_knownhostsproxy" -msgstr "" +msgstr "sss_ssh_knownhostsproxy" #. type: Content of: <reference><refentry><refnamediv><refpurpose> #: sss_ssh_knownhostsproxy.1.xml:16 msgid "get OpenSSH host keys" -msgstr "" +msgstr "отримати ключі вузла OpenSSH" #. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> #: sss_ssh_knownhostsproxy.1.xml:21 -#, fuzzy -#| msgid "" -#| "<command>sss_groupshow</command> <arg choice='opt'> <replaceable>options</" -#| "replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -#| "arg>" msgid "" "<command>sss_ssh_knownhostsproxy</command> <arg choice='opt'> " "<replaceable>options</replaceable> </arg> <arg " "choice='plain'><replaceable>HOST</replaceable></arg> <arg " "choice='opt'><replaceable>PROXY_COMMAND</replaceable></arg>" msgstr "" -"<command>sss_groupshow</command> <arg choice='opt'> <replaceable>параметри</" -"replaceable> </arg> <arg choice='plain'><replaceable>ГРУПА</replaceable></" -"arg>" +"<command>sss_ssh_knownhostsproxy</command> <arg choice='opt'> " +"<replaceable>параметри</replaceable> </arg> <arg " +"choice='plain'><replaceable>ВУЗОЛ</replaceable></arg> <arg " +"choice='opt'><replaceable>КОМАНДА_ПРОКСІ</replaceable></arg>" #. type: Content of: <reference><refentry><refsect1><para> #: sss_ssh_knownhostsproxy.1.xml:33 @@ -8176,6 +7850,13 @@ msgid "" "manvolnum></citerefentry> for more information) <filename>/var/lib/sss/" "pubconf/known_hosts</filename> and estabilishes connection to the host." msgstr "" +"<command>sss_ssh_knownhostsproxy</command> отримує відкриті ключі вузла SSH " +"для вузла <replaceable>ВУЗОЛ</replaceable>, зберігає їх до нетипового файла " +"OpenSSH known_hosts (щоб дізнатися більше, ознайомтеся з розділом " +"<quote>ФОРМАТ ФАЙЛІВ SSH_KNOWN_HOSTS</quote> сторінки підручника (man) " +"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" +"citerefentry>) за адресою <filename>/var/lib/sss/pubconf/known_hosts</" +"filename> і встановлює з’єднання з вузлом." #. type: Content of: <reference><refentry><refsect1><para> #: sss_ssh_knownhostsproxy.1.xml:43 @@ -8183,6 +7864,8 @@ msgid "" "If <replaceable>PROXY_COMMAND</replaceable> is specified, it is used to " "create the connection to the host instead of opening a socket." msgstr "" +"Якщо вказано параметр <replaceable>КОМАНДА_ПРОКСІ</replaceable>, замість " +"відкриття сокета для створення з’єднання буде використано відповідну команду." #. type: Content of: <reference><refentry><refsect1><para><programlisting> #: sss_ssh_knownhostsproxy.1.xml:55 @@ -8191,16 +7874,11 @@ msgid "" "ProxyCommand /usr/bin/sss_ssh_knownhostsproxy -p %p %h\n" "GlobalKnownHostsFile2 /var/lib/sss/pubconf/known_hosts\n" msgstr "" +"ProxyCommand /usr/bin/sss_ssh_knownhostsproxy -p %p %h\n" +"GlobalKnownHostsFile2 /var/lib/sss/pubconf/known_hosts\n" #. type: Content of: <reference><refentry><refsect1><para> #: sss_ssh_knownhostsproxy.1.xml:48 -#, fuzzy -#| msgid "" -#| "<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -#| "manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -#| "refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -#| "<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </" -#| "citerefentry>" msgid "" "<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" "citerefentry> can be configured to use <command>sss_ssh_knownhostsproxy</" @@ -8208,22 +7886,19 @@ msgid "" "<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" "citerefentry> configuration: <placeholder type=\"programlisting\" id=\"0\"/>" msgstr "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" +"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" +"citerefentry> можна налаштувати на використання " +"<command>sss_ssh_knownhostsproxy</command> для розпізнавання вузлів за " +"ключами за допомогою таких інструкцій у налаштуваннях " +"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" +"citerefentry>: <placeholder type=\"programlisting\" id=\"0\"/>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> #: sss_ssh_knownhostsproxy.1.xml:69 -#, fuzzy -#| msgid "" -#| "<option>-c</option>,<option>--gecos</option> <replaceable>COMMENT</" -#| "replaceable>" msgid "" "<option>-p</option>,<option>--port</option> <replaceable>PORT</replaceable>" msgstr "" -"<option>-c</option>,<option>--gecos</option> <replaceable>КОМЕНТАР</" -"replaceable>" +"<option>-p</option>,<option>--port</option> <replaceable>ПОРТ</replaceable>" #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_ssh_knownhostsproxy.1.xml:74 @@ -8231,22 +7906,18 @@ msgid "" "Use port <replaceable>PORT</replaceable> to connect to the host. By " "default, port 22 is used." msgstr "" +"Використовувати для встановлення з’єднання з вузлом порт <replaceable>ПОРТ</" +"replaceable>. Типовим портом є порт 22." #. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> #: sss_ssh_knownhostsproxy.1.xml:86 msgid "" "Search for host public keys in SSSD domain <replaceable>DOMAIN</replaceable>." msgstr "" +"Шукати відкриті ключі вузлів у домені SSSD <replaceable>ДОМЕН</replaceable>." #. type: Content of: <reference><refentry><refsect1><para> #: sss_ssh_knownhostsproxy.1.xml:97 -#, fuzzy -#| msgid "" -#| "<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -#| "manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -#| "refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -#| "<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </" -#| "citerefentry>" msgid "" "<citerefentry> <refentrytitle>ssh</refentrytitle><manvolnum>8</manvolnum> </" "citerefentry>, <citerefentry> <refentrytitle>ssh_config</" @@ -8254,10 +7925,11 @@ msgid "" "<refentrytitle>sss_ssh_authorizedkeys</refentrytitle><manvolnum>1</" "manvolnum> </citerefentry>." msgstr "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" +"<citerefentry> <refentrytitle>ssh</refentrytitle><manvolnum>8</manvolnum> </" +"citerefentry>, <citerefentry> <refentrytitle>ssh_config</" "refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" +"<refentrytitle>sss_ssh_authorizedkeys</refentrytitle><manvolnum>1</" +"manvolnum> </citerefentry>." #. type: Content of: <refsect1><title> #: include/service_discovery.xml:2 @@ -8445,13 +8117,14 @@ msgid "" "default value as well as the lowest allowed value, 0xFFF0 is the most " "verbose mode. This setting overrides the settings from config file." msgstr "" +"Бітова маска, яка визначає рівні діагностики, дані яких буде показано. " +"0x0010 — типове і найменше можливе значення. 0xFFF0 — найдокладніший режим. " +"Визначення цього параметра має пріоритет над визначенням у файлі налаштувань." #. type: Content of: <listitem><para> #: include/debug_levels.xml:8 -#, fuzzy -#| msgid "Currently sssd supports the following values:" msgid "Currently supported debug levels:" -msgstr "У поточній версії sssd передбачено підтримку таких значень:" +msgstr "Рівні діагностики, передбачені у поточній версії:" #. type: Content of: <listitem><para> #: include/debug_levels.xml:11 @@ -8459,6 +8132,9 @@ msgid "" "<emphasis>0x0010</emphasis>: Fatal failures. Anything that would prevent " "SSSD from starting up or causes it to cease running." msgstr "" +"<emphasis>0x0010</emphasis>: критичні помилки з аварійним завершенням " +"роботи. Всі помилки, які не дають SSSD змоги розпочати або продовжувати " +"роботу." #. type: Content of: <listitem><para> #: include/debug_levels.xml:15 @@ -8467,6 +8143,9 @@ msgid "" "the SSSD, but one that indicates that at least one major feature is not " "going to work properly." msgstr "" +"<emphasis>0x0020</emphasis>: критичні помилки. Помилки, які не призводять до " +"аварійного завершення роботи SSSD, але означають, що одна з основних " +"можливостей не працює належним чином." #. type: Content of: <listitem><para> #: include/debug_levels.xml:20 @@ -8474,6 +8153,8 @@ msgid "" "<emphasis>0x0040</emphasis>: Serious failures. An error announcing that a " "particular request or operation has failed." msgstr "" +"<emphasis>0x0040</emphasis>: серйозні помилки. Повідомлення про такі помилки " +"означають, що не вдалося виконати певний запит або дію." #. type: Content of: <listitem><para> #: include/debug_levels.xml:24 @@ -8481,37 +8162,31 @@ msgid "" "<emphasis>0x0080</emphasis>: Minor failures. These are the errors that would " "percolate down to cause the operation failure of 2." msgstr "" +"<emphasis>0x0080</emphasis>: незначні помилки. Це помилки які можуть " +"призвести до помилок під час виконання дій." #. type: Content of: <listitem><para> #: include/debug_levels.xml:28 -#, fuzzy -#| msgid "<emphasis>2</emphasis>: show informational messages" msgid "<emphasis>0x0100</emphasis>: Configuration settings." -msgstr "<emphasis>2</emphasis>: показувати всі інформаційні повідомлення" +msgstr "<emphasis>0x0100</emphasis>: параметри налаштування." #. type: Content of: <listitem><para> #: include/debug_levels.xml:31 -#, fuzzy -#| msgid "<emphasis>s</emphasis> seconds" msgid "<emphasis>0x0200</emphasis>: Function data." -msgstr "<emphasis>s</emphasis> — секунди" +msgstr "<emphasis>0x0200</emphasis>: дані функцій." #. type: Content of: <listitem><para> #: include/debug_levels.xml:34 -#, fuzzy -#| msgid "<emphasis>3</emphasis>: show all messages and debug information" msgid "<emphasis>0x0400</emphasis>: Trace messages for operation functions." -msgstr "" -"<emphasis>3</emphasis>: показувати всі повідомлення та діагностичні дані" +msgstr "<emphasis>0x0400</emphasis>: повідомлення трасування для функцій дій." #. type: Content of: <listitem><para> #: include/debug_levels.xml:37 -#, fuzzy -#| msgid "<emphasis>3</emphasis>: show all messages and debug information" msgid "" "<emphasis>0x1000</emphasis>: Trace messages for internal control functions." msgstr "" -"<emphasis>3</emphasis>: показувати всі повідомлення та діагностичні дані" +"<emphasis>0x1000</emphasis>: повідомлення трасування для функцій " +"внутрішнього трасування." #. type: Content of: <listitem><para> #: include/debug_levels.xml:40 @@ -8519,14 +8194,13 @@ msgid "" "<emphasis>0x2000</emphasis>: Contents of function-internal variables that " "may be interesting." msgstr "" +"<emphasis>0x2000</emphasis>: вміст внутрішніх змінних функцій, який може " +"бути цікавим." #. type: Content of: <listitem><para> #: include/debug_levels.xml:43 -#, fuzzy -#| msgid "<emphasis>3</emphasis>: show all messages and debug information" msgid "<emphasis>0x4000</emphasis>: Extremely low-level tracing information." -msgstr "" -"<emphasis>3</emphasis>: показувати всі повідомлення та діагностичні дані" +msgstr "<emphasis>0x4000</emphasis>: дані трасування найнижчого рівня." #. type: Content of: <listitem><para> #: include/debug_levels.xml:46 @@ -8534,6 +8208,8 @@ msgid "" "To log required debug levels, simply add their numbers together as shown in " "following examples:" msgstr "" +"Щоб до журналу було записано дані потрібних рівнів діагностики, просто " +"додайте відповідні числа, як це показано у наведених нижче прикладах:" #. type: Content of: <listitem><para> #: include/debug_levels.xml:49 @@ -8541,6 +8217,9 @@ msgid "" "<emphasis>Example</emphasis>: To log fatal failures, critical failures, " "serious failures and function data use 0x0270." msgstr "" +"<emphasis>Example</emphasis>: щоб до журналу було записано дані щодо " +"критичних помилок з аварійним завершенням роботи, критичних помилок, " +"серйозних помилок та дані функцій, скористайтеся рівнем діагностики 0x0270." #. type: Content of: <listitem><para> #: include/debug_levels.xml:53 @@ -8548,6 +8227,10 @@ msgid "" "<emphasis>Example</emphasis>: To log fatal failures, configuration settings, " "function data, trace messages for internal control functions use 0x1310." msgstr "" +"<emphasis>Приклад</emphasis>: щоб до журналу було записано критичні помилки " +"з аварійним завершенням роботи, параметри налаштування, дані функцій та " +"повідомлення трасування для функцій внутрішнього керування, скористайтеся " +"рівнем 0x1310." #. type: Content of: <listitem><para> #: include/debug_levels.xml:57 @@ -8555,6 +8238,10 @@ msgid "" "<emphasis>Note</emphasis>: This is new format of debug levels introduced in " "1.7.0. Older format (numbers from 0-10) is compatible but deprecated." msgstr "" +"<emphasis>Зауваження</emphasis>: цей новий формат визначення рівнів " +"діагностики впроваджено у версії 1.7.0. Визначення у форматах попередніх " +"версій (числа від 0 до 10) сумісні сз поточною версією, але вважаються " +"застарілими." #. type: Content of: outside any tag (error?) #: include/experimental.xml:1 @@ -8562,9 +8249,6 @@ msgid "" "<emphasis> This is an experimental feature, please use http://fedorahosted." "org/sssd to report any issues. </emphasis>" msgstr "" - -#~ msgid "ldap_purge_cache_timeout" -#~ msgstr "ldap_purge_cache_timeout" - -#~ msgid "Supported services: nss, pam" -#~ msgstr "Підтримувані служби: nss, pam" +"<emphasis> Цю можливість ще не перевірено достатнім чином. Будь ласка, якщо " +"помітите якісь вади, повідомте про них за допомогою настанов на сторінці " +"http://fedorahosted.org/sssd. </emphasis>" diff --git a/src/man/po/ur.po b/src/man/po/ur.po deleted file mode 100644 index 8c2722d2f..000000000 --- a/src/man/po/ur.po +++ /dev/null @@ -1,6747 +0,0 @@ -# SOME DESCRIPTIVE TITLE -# Copyright (C) YEAR Red Hat -# This file is distributed under the same license as the sssd-docs package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@redhat.com\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-12-23 15:35+0000\n" -"Last-Translator: FULL NAME <EMAIL@ADDRESS>\n" -"Language-Team: Urdu <trans-urdu@lists.fedoraproject.org>\n" -"Language: ur\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=2; plural=(n != 1)\n" - -#. type: Content of: <reference><title> -#: sss_groupmod.8.xml:5 sssd.conf.5.xml:5 sssd-ldap.5.xml:5 pam_sss.8.xml:5 -#: sssd_krb5_locator_plugin.8.xml:5 sssd-simple.5.xml:5 sssd-ipa.5.xml:5 -#: sssd.8.xml:5 sss_obfuscate.8.xml:5 sss_useradd.8.xml:5 sssd-krb5.5.xml:5 -#: sss_groupadd.8.xml:5 sss_userdel.8.xml:5 sss_groupdel.8.xml:5 -#: sss_groupshow.8.xml:5 sss_usermod.8.xml:5 sss_cache.8.xml:5 -#: sss_debuglevel.8.xml:5 sss_ssh_authorizedkeys.1.xml:5 -#: sss_ssh_knownhostsproxy.1.xml:5 -msgid "SSSD Manual pages" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupmod.8.xml:10 sss_groupmod.8.xml:15 -msgid "sss_groupmod" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_groupmod.8.xml:11 pam_sss.8.xml:14 sssd_krb5_locator_plugin.8.xml:11 -#: sssd.8.xml:11 sss_obfuscate.8.xml:11 sss_useradd.8.xml:11 -#: sss_groupadd.8.xml:11 sss_userdel.8.xml:11 sss_groupdel.8.xml:11 -#: sss_groupshow.8.xml:11 sss_usermod.8.xml:11 sss_cache.8.xml:11 -#: sss_debuglevel.8.xml:11 -msgid "8" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupmod.8.xml:16 -msgid "modify a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupmod.8.xml:21 -msgid "" -"<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:30 sssd-ldap.5.xml:21 pam_sss.8.xml:44 -#: sssd_krb5_locator_plugin.8.xml:20 sssd-simple.5.xml:22 sssd-ipa.5.xml:21 -#: sssd.8.xml:29 sss_obfuscate.8.xml:30 sss_useradd.8.xml:30 -#: sssd-krb5.5.xml:21 sss_groupadd.8.xml:30 sss_userdel.8.xml:30 -#: sss_groupdel.8.xml:30 sss_groupshow.8.xml:30 sss_usermod.8.xml:30 -#: sss_cache.8.xml:29 sss_debuglevel.8.xml:30 sss_ssh_authorizedkeys.1.xml:30 -#: sss_ssh_knownhostsproxy.1.xml:31 -msgid "DESCRIPTION" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:32 -msgid "" -"<command>sss_groupmod</command> modifies the group to reflect the changes " -"that are specified on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:39 pam_sss.8.xml:51 sssd.8.xml:42 sss_obfuscate.8.xml:58 -#: sss_useradd.8.xml:39 sss_groupadd.8.xml:39 sss_userdel.8.xml:39 -#: sss_groupdel.8.xml:39 sss_groupshow.8.xml:39 sss_usermod.8.xml:39 -#: sss_cache.8.xml:38 sss_debuglevel.8.xml:38 sss_ssh_authorizedkeys.1.xml:78 -#: sss_ssh_knownhostsproxy.1.xml:65 -msgid "OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:43 sss_usermod.8.xml:77 -msgid "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:48 -msgid "" -"Append this group to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:57 sss_usermod.8.xml:91 -msgid "" -"<option>-r</option>,<option>--remove-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:62 -msgid "" -"Remove this group from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:72 sssd.conf.5.xml:1331 sssd-ldap.5.xml:2096 -#: pam_sss.8.xml:139 sssd_krb5_locator_plugin.8.xml:75 sssd-simple.5.xml:143 -#: sssd-ipa.5.xml:562 sssd.8.xml:191 sss_obfuscate.8.xml:103 -#: sss_useradd.8.xml:167 sssd-krb5.5.xml:451 sss_groupadd.8.xml:58 -#: sss_userdel.8.xml:93 sss_groupdel.8.xml:46 sss_groupshow.8.xml:58 -#: sss_usermod.8.xml:138 sss_ssh_authorizedkeys.1.xml:96 -#: sss_ssh_knownhostsproxy.1.xml:95 -msgid "SEE ALSO" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:74 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.conf.5.xml:10 sssd.conf.5.xml:16 -msgid "sssd.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sssd.conf.5.xml:11 sssd-ldap.5.xml:11 sssd-simple.5.xml:11 -#: sssd-ipa.5.xml:11 sssd-krb5.5.xml:11 -msgid "5" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><refmiscinfo> -#: sssd.conf.5.xml:12 sssd-ldap.5.xml:12 sssd-simple.5.xml:12 -#: sssd-ipa.5.xml:12 sssd-krb5.5.xml:12 -msgid "File Formats and Conventions" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.conf.5.xml:17 sssd-ldap.5.xml:17 sssd_krb5_locator_plugin.8.xml:16 -#: sssd-ipa.5.xml:17 sssd-krb5.5.xml:17 -msgid "the configuration file for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:21 -msgid "FILE FORMAT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:29 -#, no-wrap -msgid "" -" <replaceable>[section]</replaceable>\n" -" <replaceable>key</replaceable> = <replaceable>value</replaceable>\n" -" <replaceable>key2</replaceable> = <replaceable>value2,value3</replaceable>\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:24 -msgid "" -"The file has an ini-style syntax and consists of sections and parameters. A " -"section begins with the name of the section in square brackets and continues " -"until the next section begins. An example of section with single and multi-" -"valued parameters: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:36 -msgid "" -"The data types used are string (no quotes needed), integer and bool (with " -"values of <quote>TRUE/FALSE</quote>)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:41 -msgid "" -"A line comment starts with a hash sign (<quote>#</quote>) or a semicolon " -"(<quote>;</quote>)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:46 -msgid "" -"All sections can have an optional <replaceable>description</replaceable> " -"parameter. Its function is only as a label for the section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:52 -msgid "" -"<filename>sssd.conf</filename> must be a regular file, owned by root and " -"only root may read from or write to the file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:58 -msgid "SPECIAL SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:61 -msgid "The [sssd] section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><title> -#: sssd.conf.5.xml:70 sssd.conf.5.xml:1177 -msgid "Section parameters" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:72 -msgid "config_file_version (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:75 -msgid "" -"Indicates what is the syntax of the config file. SSSD 0.6.0 and later use " -"version 2." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:81 -msgid "services" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:84 -msgid "" -"Comma separated list of services that are started when sssd itself starts." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:88 -msgid "" -"Supported services: nss, pam <phrase condition=\"with_sudo\">, sudo</phrase>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:94 sssd.conf.5.xml:257 -msgid "reconnection_retries (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:97 sssd.conf.5.xml:260 -msgid "" -"Number of times services should attempt to reconnect in the event of a Data " -"Provider crash or restart before they give up" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:102 sssd.conf.5.xml:265 -msgid "Default: 3" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:107 -msgid "domains" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:110 -msgid "" -"A domain is a database containing user information. SSSD can use more " -"domains at the same time, but at least one must be configured or SSSD won't " -"start. This parameter described the list of domains in the order you want " -"them to be queried." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:120 -msgid "re_expression (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:123 -msgid "" -"Regular expression that describes how to parse the string containing user " -"name and domain into these components." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:127 -msgid "" -"Default: <quote>(?P<name>[^@]+)@?(?P<domain>[^@]*$)</quote> " -"which translates to \"the name is everything up to the <quote>@</quote> " -"sign, the domain everything after that\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:132 -msgid "" -"PLEASE NOTE: the support for non-unique named subpatterns is not available " -"on all platforms (e.g. RHEL5 and SLES10). Only platforms with libpcre " -"version 7 or higher can support non-unique named subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:139 -msgid "" -"PLEASE NOTE ALSO: older version of libpcre only support the Python syntax (?" -"P<name>) to label subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:146 -msgid "full_name_format (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:149 -msgid "" -"A <citerefentry> <refentrytitle>printf</refentrytitle> <manvolnum>3</" -"manvolnum> </citerefentry>-compatible format that describes how to translate " -"a (name, domain) tuple into a fully qualified name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:157 -msgid "Default: <quote>%1$s@%2$s</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:162 -msgid "try_inotify (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:165 -msgid "" -"SSSD monitors the state of resolv.conf to identify when it needs to update " -"its internal DNS resolver. By default, we will attempt to use inotify for " -"this, and will fall back to polling resolv.conf every five seconds if " -"inotify cannot be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:173 -msgid "" -"There are some limited situations where it is preferred that we should skip " -"even trying to use inotify. In these rare cases, this option should be set " -"to 'false'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:179 -msgid "" -"Default: true on platforms where inotify is supported. False on other " -"platforms." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:183 -msgid "" -"Note: this option will have no effect on platforms where inotify is " -"unavailable. On these platforms, polling will always be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:190 -msgid "krb5_rcache_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:193 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:197 -msgid "" -"This option accepts a special value __LIBKRB5_DEFAULTS__ that will instruct " -"SSSD to let libkrb5 decide the appropriate location for the replay cache." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:203 -msgid "" -"Default: Distribution-specific and specified at build-time. " -"(__LIBKRB5_DEFAULTS__ if not configured)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:63 -msgid "" -"Individual pieces of SSSD functionality are provided by special SSSD " -"services that are started and stopped together with SSSD. The services are " -"managed by a special service frequently called <quote>monitor</quote>. The " -"<quote>[sssd]</quote> section is used to configure the monitor as well as " -"some other important options like the identity domains. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:216 -msgid "SERVICES SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:218 -msgid "" -"Settings that can be used to configure different services are described in " -"this section. They should reside in the [<replaceable>$NAME</replaceable>] " -"section, for example, for NSS service, the section would be <quote>[nss]</" -"quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:225 -msgid "General service configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:227 -msgid "These options can be used to configure any service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:231 -msgid "debug_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:235 -msgid "debug_timestamps (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:238 -msgid "Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:241 sssd.conf.5.xml:376 sssd-ldap.5.xml:1328 -#: sssd-ldap.5.xml:1446 sssd-ipa.5.xml:206 sssd-ipa.5.xml:241 -msgid "Default: true" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:246 -msgid "debug_microseconds (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:249 -msgid "Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:252 sssd.conf.5.xml:641 sssd-ldap.5.xml:602 -#: sssd-ldap.5.xml:1260 sssd-ldap.5.xml:1397 sssd-ldap.5.xml:1795 -#: sssd-ipa.5.xml:123 sssd-ipa.5.xml:301 sssd-krb5.5.xml:235 -#: sssd-krb5.5.xml:269 sssd-krb5.5.xml:418 -msgid "Default: false" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:270 -msgid "command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:273 -msgid "" -"By default, the executable representing this service is called <command>sssd_" -"${service_name}</command>. This directive allows to change the executable " -"name for the service. In the vast majority of configurations, the default " -"values should suffice." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:281 -msgid "Default: <command>sssd_${service_name}</command>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:289 -msgid "NSS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:291 -msgid "" -"These options can be used to configure the Name Service Switch (NSS) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:296 -msgid "enum_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:299 -msgid "" -"How many seconds should nss_sss cache enumerations (requests for info about " -"all users)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:303 -msgid "Default: 120" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:308 -msgid "entry_cache_nowait_percentage (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:311 -msgid "" -"The entry cache can be set to automatically update entries in the background " -"if they are requested beyond a percentage of the entry_cache_timeout value " -"for the domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:317 -msgid "" -"For example, if the domain's entry_cache_timeout is set to 30s and " -"entry_cache_nowait_percentage is set to 50 (percent), entries that come in " -"after 15 seconds past the last cache update will be returned immediately, " -"but the SSSD will go and update the cache on its own, so that future " -"requests will not need to block waiting for a cache update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:327 -msgid "" -"Valid values for this option are 0-99 and represent a percentage of the " -"entry_cache_timeout for each domain. For performance reasons, this " -"percentage will never reduce the nowait timeout to less than 10 seconds. (0 " -"disables this feature)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:335 -msgid "Default: 50" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:340 -msgid "entry_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:343 -msgid "" -"Specifies for how many seconds nss_sss should cache negative cache hits " -"(that is, queries for invalid database entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:349 sssd.conf.5.xml:669 sssd-krb5.5.xml:223 -msgid "Default: 15" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:354 -msgid "filter_users, filter_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:357 -msgid "" -"Exclude certain users from being fetched from the sss NSS database. This is " -"particularly useful for system accounts. This option can also be set per-" -"domain or include fully-qualified names to filter only users from the " -"particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:364 -msgid "Default: root" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:369 -msgid "filter_users_in_groups (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:372 -msgid "" -"If you want filtered user still be group members set this option to false." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:381 -msgid "override_homedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:390 sssd-krb5.5.xml:166 -msgid "%u" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:391 sssd-krb5.5.xml:167 -msgid "login name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:394 sssd-krb5.5.xml:170 -msgid "%U" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:395 -msgid "UID number" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:398 sssd-krb5.5.xml:188 -msgid "%d" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:399 -msgid "domain name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:402 -msgid "%f" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:403 -msgid "fully qualified user name (user@domain)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:406 sssd-krb5.5.xml:200 -msgid "%%" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:407 sssd-krb5.5.xml:201 -msgid "a literal '%'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:384 -msgid "" -"Override the user's home directory. You can either provide an absolute value " -"or a template. In the template, the following sequences are substituted: " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:413 -msgid "This option can also be set per-domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:418 -msgid "allowed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:421 -msgid "" -"Restrict user shell to one of the listed values. The order of evaluation is:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:424 -msgid "1. If the shell is present in <quote>/etc/shells</quote>, it is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:428 -msgid "" -"2. If the shell is in the allowed_shells list but not in <quote>/etc/shells</" -"quote>, use the value of the shell_fallback parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:433 -msgid "" -"3. If the shell is not in the allowed_shells list and not in <quote>/etc/" -"shells</quote>, a nologin shell is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:438 -msgid "An empty string for shell is passed as-is to libc." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:441 -msgid "" -"The <quote>/etc/shells</quote> is only read on SSSD start up, which means " -"that a restart of the SSSD is required in case a new shell is installed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:445 -msgid "Default: Not set. The user shell is automatically used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:450 -msgid "vetoed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:453 -msgid "Replace any instance of these shells with the shell_fallback" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:458 -msgid "shell_fallback (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:461 -msgid "" -"The default shell to use if an allowed shell is not installed on the machine." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:465 -msgid "Default: /bin/sh" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:472 -msgid "PAM configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:474 -msgid "" -"These options can be used to configure the Pluggable Authentication Module " -"(PAM) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:479 -msgid "offline_credentials_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:482 -msgid "" -"If the authentication provider is offline, how long should we allow cached " -"logins (in days since the last successful online login)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:487 sssd.conf.5.xml:500 -msgid "Default: 0 (No limit)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:493 -msgid "offline_failed_login_attempts (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:496 -msgid "" -"If the authentication provider is offline, how many failed login attempts " -"are allowed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:506 -msgid "offline_failed_login_delay (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:509 -msgid "" -"The time in minutes which has to pass after offline_failed_login_attempts " -"has been reached before a new login attempt is possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:514 -msgid "" -"If set to 0 the user cannot authenticate offline if " -"offline_failed_login_attempts has been reached. Only a successful online " -"authentication can enable offline authentication again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:520 sssd.conf.5.xml:573 sssd.conf.5.xml:1093 -msgid "Default: 5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:526 -msgid "pam_verbosity (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:529 -msgid "" -"Controls what kind of messages are shown to the user during authentication. " -"The higher the number to more messages are displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:534 -msgid "Currently sssd supports the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:537 -msgid "<emphasis>0</emphasis>: do not show any message" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:540 -msgid "<emphasis>1</emphasis>: show only important messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:544 -msgid "<emphasis>2</emphasis>: show informational messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:547 -msgid "<emphasis>3</emphasis>: show all messages and debug information" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:551 sssd.8.xml:63 -msgid "Default: 1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:556 -msgid "pam_id_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:559 -msgid "" -"For any PAM request while SSSD is online, the SSSD will attempt to " -"immediately update the cached identity information for the user in order to " -"ensure that authentication takes place with the latest information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:565 -msgid "" -"A complete PAM conversation may perform multiple PAM requests, such as " -"account management and session opening. This option controls (on a per-" -"client-application basis) how long (in seconds) we can cache the identity " -"information to avoid excessive round-trips to the identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:579 -msgid "pam_pwd_expiration_warning (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:582 -msgid "Display a warning N days before the password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:585 -msgid "" -"Please note that the backend server has to provide information about the " -"expiration time of the password. If this information is missing, sssd " -"cannot display a warning." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:591 -msgid "Default: 7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:599 -msgid "SUDO configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:601 -msgid "These options can be used to configure the sudo service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:608 -msgid "sudo_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:611 -msgid "" -"For any sudo request that comes while SSSD is online, the SSSD will attempt " -"to update the cached rules in order to ensure that sudo has the latest " -"ruleset." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:617 -msgid "" -"The user may, however, run a couple of sudo commands successively, which " -"would trigger multiple LDAP requests. In order to speed up this use-case, " -"the sudo service maintains an in-memory cache that would be used for " -"performing fast replies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:624 -msgid "" -"This option controls how long (in seconds) can the sudo service cache rules " -"for a user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:628 -msgid "Default: 180" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:633 -msgid "sudo_timed (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:636 -msgid "" -"Whether or not to evaluate the sudoNotBefore and sudoNotAfter attributes " -"that implement time-dependent sudoers entries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:649 -msgid "AUTOFS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:651 -msgid "These options can be used to configure the autofs service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:659 -msgid "autofs_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:662 -msgid "" -"Specifies for how many seconds should the autofs responder negative cache " -"hits (that is, queries for invalid map entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:679 -msgid "DOMAIN SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:686 -msgid "min_id,max_id (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:689 -msgid "" -"UID and GID limits for the domain. If a domain contains an entry that is " -"outside these limits, it is ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:694 -msgid "" -"For users, this affects the primary GID limit. The user will not be returned " -"to NSS if either the UID or the primary GID is outside the range. For non-" -"primary group memberships, those that are in range will be reported as " -"expected." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:701 -msgid "Default: 1 for min_id, 0 (no limit) for max_id" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:707 -msgid "timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:710 -msgid "" -"Timeout in seconds between heartbeats for this domain. This is used to " -"ensure that the backend process is alive and capable of answering requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:715 sssd-ldap.5.xml:1131 -msgid "Default: 10" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:721 -msgid "enumerate (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:724 -msgid "" -"Determines if a domain can be enumerated. This parameter can have one of the " -"following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:728 -msgid "TRUE = Users and groups are enumerated" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:731 -msgid "FALSE = No enumerations for this domain" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:734 sssd.conf.5.xml:839 sssd.conf.5.xml:893 -msgid "Default: FALSE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:737 -msgid "" -"Note: Enabling enumeration has a moderate performance impact on SSSD while " -"enumeration is running. It may take up to several minutes after SSSD startup " -"to fully complete enumerations. During this time, individual requests for " -"information will go directly to LDAP, though it may be slow, due to the " -"heavy enumeration processing." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:747 -msgid "" -"While the first enumeration is running, requests for the complete user or " -"group lists may return no results until it completes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:752 -msgid "" -"Further, enabling enumeration may increase the time necessary to detect " -"network disconnection, as longer timeouts are required to ensure that " -"enumeration lookups are completed successfully. For more information, refer " -"to the man pages for the specific id_provider in use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:763 -msgid "entry_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:766 -msgid "" -"How many seconds should nss_sss consider entries valid before asking the " -"backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:770 -msgid "Default: 5400" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:776 -msgid "entry_cache_user_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:779 -msgid "" -"How many seconds should nss_sss consider user entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:783 sssd.conf.5.xml:796 sssd.conf.5.xml:809 -#: sssd.conf.5.xml:822 -msgid "Default: entry_cache_timeout" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:789 -msgid "entry_cache_group_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:792 -msgid "" -"How many seconds should nss_sss consider group entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:802 -msgid "entry_cache_netgroup_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:805 -msgid "" -"How many seconds should nss_sss consider netgroup entries valid before " -"asking the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:815 -msgid "entry_cache_service_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:818 -msgid "" -"How many seconds should nss_sss consider service entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:828 -msgid "cache_credentials (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:831 -msgid "Determines if user credentials are also cached in the local LDB cache" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:835 -msgid "User credentials are stored in a SHA512 hash, not in plaintext" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:844 -msgid "account_cache_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:847 -msgid "" -"Number of days entries are left in cache after last successful login before " -"being removed during a cleanup of the cache. 0 means keep forever. The " -"value of this parameter must be greater than or equal to " -"offline_credentials_expiration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:854 -msgid "Default: 0 (unlimited)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:860 -msgid "id_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:863 -msgid "The Data Provider identity backend to use for this domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:867 -msgid "Supported backends:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:870 -msgid "proxy: Support a legacy NSS provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:873 -msgid "local: SSSD internal local provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:876 -msgid "ldap: LDAP provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:882 -msgid "use_fully_qualified_names (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:885 -msgid "" -"If set to TRUE, all requests to this domain must use fully qualified names. " -"For example, if used in LOCAL domain that contains a \"test\" user, " -"<command>getent passwd test</command> wouldn't find the user while " -"<command>getent passwd test@LOCAL</command> would." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:898 -msgid "auth_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:901 -msgid "" -"The authentication provider used for the domain. Supported auth providers " -"are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:905 -msgid "" -"<quote>ldap</quote> for native LDAP authentication. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:912 -msgid "" -"<quote>krb5</quote> for Kerberos authentication. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:919 -msgid "" -"<quote>proxy</quote> for relaying authentication to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:922 -msgid "<quote>none</quote> disables authentication explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:925 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"authentication requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:931 -msgid "access_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:934 -msgid "" -"The access control provider used for the domain. There are two built-in " -"access providers (in addition to any included in installed backends) " -"Internal special providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:940 -msgid "<quote>permit</quote> always allow access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:943 -msgid "<quote>deny</quote> always deny access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:946 -msgid "" -"<quote>simple</quote> access control based on access or deny lists. See " -"<citerefentry> <refentrytitle>sssd-simple</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry> for more information on configuring the simple " -"access module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:953 -msgid "Default: <quote>permit</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:958 -msgid "chpass_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:961 -msgid "" -"The provider which should handle change password operations for the domain. " -"Supported change password providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:966 -msgid "" -"<quote>ipa</quote> to change a password stored in an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:974 -msgid "" -"<quote>ldap</quote> to change a password stored in a LDAP server. See " -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:982 -msgid "" -"<quote>krb5</quote> to change the Kerberos password. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:990 -msgid "" -"<quote>proxy</quote> for relaying password changes to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:994 -msgid "<quote>none</quote> disallows password changes explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:997 -msgid "" -"Default: <quote>auth_provider</quote> is used if it is set and can handle " -"change password requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1004 -msgid "sudo_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1010 -msgid "The SUDO provider used for the domain. Supported SUDO providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1014 -msgid "" -"<quote>ldap</quote> for rules stored in LDAP. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1021 -msgid "<quote>none</quote> disables SUDO explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1024 -msgid "Default: The value of <quote>id_provider</quote> is used if it is set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1030 -msgid "session_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1033 -msgid "" -"The provider which should handle loading of session settings. Supported " -"session providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1038 -msgid "" -"<quote>ipa</quote> to load session settings from an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1046 -msgid "<quote>none</quote> disallows fetching session settings explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1049 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"session loading requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1056 -msgid "lookup_family_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1059 -msgid "" -"Provides the ability to select preferred address family to use when " -"performing DNS lookups." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1063 -msgid "Supported values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1066 -msgid "ipv4_first: Try looking up IPv4 address, if that fails, try IPv6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1069 -msgid "ipv4_only: Only attempt to resolve hostnames to IPv4 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1072 -msgid "ipv6_first: Try looking up IPv6 address, if that fails, try IPv4" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1075 -msgid "ipv6_only: Only attempt to resolve hostnames to IPv6 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1078 -msgid "Default: ipv4_first" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1084 -msgid "dns_resolver_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1087 -msgid "" -"Defines the amount of time (in seconds) to wait for a reply from the DNS " -"resolver before assuming that it is unreachable. If this timeout is reached, " -"the domain will continue to operate in offline mode." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1099 -msgid "dns_discovery_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1102 -msgid "" -"If service discovery is used in the back end, specifies the domain part of " -"the service discovery DNS query." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1106 -msgid "Default: Use the domain part of machine's hostname" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1112 -msgid "override_gid (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1115 -msgid "Override the primary GID value with the one specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1121 -msgid "case_sensitive (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1124 -msgid "" -"Treat user and group names as case sensitive. At the moment, this option is " -"not supported in the local provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1129 -msgid "Default: True" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:681 -msgid "" -"These configuration options can be present in a domain configuration " -"section, that is, in a section called <quote>[domain/<replaceable>NAME</" -"replaceable>]</quote> <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1141 -msgid "proxy_pam_target (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1144 -msgid "The proxy target PAM proxies to." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1147 -msgid "" -"Default: not set by default, you have to take an existing pam configuration " -"or create a new one and add the service name here." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1155 -msgid "proxy_lib_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1158 -msgid "" -"The name of the NSS library to use in proxy domains. The NSS functions " -"searched for in the library are in the form of _nss_$(libName)_$(function), " -"for example _nss_files_getpwent." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1137 -msgid "" -"Options valid for proxy domains. <placeholder type=\"variablelist\" id=" -"\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:1170 -msgid "The local domain section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:1172 -msgid "" -"This section contains settings for domain that stores users and groups in " -"SSSD native database, that is, a domain that uses " -"<replaceable>id_provider=local</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1179 -msgid "default_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1182 -msgid "The default shell for users created with SSSD userspace tools." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1186 -msgid "Default: <filename>/bin/bash</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1191 -msgid "base_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1194 -msgid "" -"The tools append the login name to <replaceable>base_directory</replaceable> " -"and use that as the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1199 -msgid "Default: <filename>/home</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1204 -msgid "create_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1207 -msgid "" -"Indicate if a home directory should be created by default for new users. " -"Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1211 sssd.conf.5.xml:1223 -msgid "Default: TRUE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1216 -msgid "remove_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1219 -msgid "" -"Indicate if a home directory should be removed by default for deleted " -"users. Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1228 -msgid "homedir_umask (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1231 -msgid "" -"Used by <citerefentry> <refentrytitle>sss_useradd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry> to specify the default permissions " -"on a newly created home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1239 -msgid "Default: 077" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1244 -msgid "skel_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1247 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<citerefentry> <refentrytitle>sss_useradd</refentrytitle> <manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1257 -msgid "Default: <filename>/etc/skel</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1262 -msgid "mail_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1265 -msgid "" -"The mail spool directory. This is needed to manipulate the mailbox when its " -"corresponding user account is modified or deleted. If not specified, a " -"default value is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1272 -msgid "Default: <filename>/var/mail</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1277 -msgid "userdel_cmd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1280 -msgid "" -"The command that is run after a user is removed. The command us passed the " -"username of the user being removed as the first and only parameter. The " -"return code of the command is not taken into account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1286 -msgid "Default: None, no command is run" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:1296 sssd-ldap.5.xml:2064 sssd-simple.5.xml:126 -#: sssd-ipa.5.xml:544 sssd-krb5.5.xml:432 -msgid "EXAMPLE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:1302 -#, no-wrap -msgid "" -"[sssd]\n" -"domains = LDAP\n" -"services = nss, pam\n" -"config_file_version = 2\n" -"\n" -"[nss]\n" -"filter_groups = root\n" -"filter_users = root\n" -"\n" -"[pam]\n" -"\n" -"[domain/LDAP]\n" -"id_provider = ldap\n" -"ldap_uri = ldap://ldap.example.com\n" -"ldap_search_base = dc=example,dc=com\n" -"\n" -"auth_provider = krb5\n" -"krb5_server = kerberos.example.com\n" -"krb5_realm = EXAMPLE.COM\n" -"cache_credentials = true\n" -"\n" -"min_id = 10000\n" -"max_id = 20000\n" -"enumerate = False\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1298 -msgid "" -"The following example shows a typical SSSD config. It does not describe " -"configuration of the domains themselves - refer to documentation on " -"configuring domains for more details. <placeholder type=\"programlisting\" " -"id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1333 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>pam_sss</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ldap.5.xml:10 sssd-ldap.5.xml:16 -msgid "sssd-ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:23 -msgid "" -"This manual page describes the configuration of LDAP domains for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. Refer to the <quote>FILE FORMAT</quote> section of the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for detailed syntax information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:35 -msgid "You can configure SSSD to use more than one LDAP domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:38 -msgid "" -"LDAP back end supports id, auth, access and chpass providers. If you want to " -"authenticate against an LDAP server either TLS/SSL or LDAPS is required. " -"<command>sssd</command> <emphasis>does not</emphasis> support authentication " -"over an unencrypted channel. If the LDAP server is used only as an identity " -"provider, an encrypted channel is not needed. Please refer to " -"<quote>ldap_access_filter</quote> config option for more information about " -"using LDAP as an access provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:49 sssd-simple.5.xml:69 sssd-ipa.5.xml:64 -#: sssd-krb5.5.xml:63 -msgid "CONFIGURATION OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:60 -msgid "ldap_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:63 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference. Refer to the <quote>FAILOVER</" -"quote> section for more information on failover and server redundancy. If " -"not specified, service discovery is enabled. For more information, refer to " -"the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:70 -msgid "The format of the URI must match the format defined in RFC 2732:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:73 -msgid "ldap[s]://<host>[:port]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:76 -msgid "" -"For explicit IPv6 addresses, <host> must be enclosed in brackets []" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:79 -msgid "example: ldap://[fc00::126:25]:389" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:85 -msgid "ldap_chpass_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:88 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference to change the password of a user. " -"Refer to the <quote>FAILOVER</quote> section for more information on " -"failover and server redundancy." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:95 -msgid "To enable service discovery ldap_chpass_dns_service_name must be set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:99 -msgid "Default: empty, i.e. ldap_uri is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:105 -msgid "ldap_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:108 -msgid "The default base DN to use for performing LDAP user operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:112 -msgid "" -"Starting with SSSD 1.7.0, SSSD supports multiple search bases using the " -"syntax:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:116 -msgid "search_base[?scope?[filter][?search_base?scope?[filter]]*]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:119 -msgid "The scope can be one of \"base\", \"onelevel\" or \"subtree\"." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:122 -msgid "" -"The filter must be a valid LDAP search filter as specified by http://www." -"ietf.org/rfc/rfc2254.txt" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:126 -msgid "Examples:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:129 -msgid "" -"ldap_search_base = dc=example,dc=com (which is equivalent to) " -"ldap_search_base = dc=example,dc=com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:134 -msgid "" -"ldap_search_base = cn=host_specific,dc=example,dc=com?subtree?" -"(host=thishost)?dc=example.com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:137 -msgid "" -"Note: It is unsupported to have multiple search bases which reference " -"identically-named objects (for example, groups with the same name in two " -"different search bases). This will lead to unpredictable behavior on client " -"machines." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:144 -msgid "" -"Default: If not set, the value of the defaultNamingContext or namingContexts " -"attribute from the RootDSE of the LDAP server is used. If " -"defaultNamingContext does not exists or has an empty value namingContexts is " -"used. The namingContexts attribute must have a single value with the DN of " -"the search base of the LDAP server to make this work. Multiple values are " -"are not supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:158 -msgid "ldap_schema (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:161 -msgid "" -"Specifies the Schema Type in use on the target LDAP server. Depending on " -"the selected schema, the default attribute names retrieved from the servers " -"may vary. The way that some attributes are handled may also differ. Three " -"schema types are currently supported: rfc2307 rfc2307bis IPA The main " -"difference between these schema types is how group memberships are recorded " -"in the server. With rfc2307, group members are listed by name in the " -"<emphasis>memberUid</emphasis> attribute. With rfc2307bis and IPA, group " -"members are listed by DN and stored in the <emphasis>member</emphasis> " -"attribute." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:180 -msgid "Default: rfc2307" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:186 -msgid "ldap_default_bind_dn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:189 -msgid "The default bind DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:196 -msgid "ldap_default_authtok_type (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:199 -msgid "The type of the authentication token of the default bind DN." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:203 -msgid "The two mechanisms currently supported are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:206 -msgid "password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:209 -msgid "obfuscated_password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:212 -msgid "Default: password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:218 -msgid "ldap_default_authtok (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:221 -msgid "" -"The authentication token of the default bind DN. Only clear text passwords " -"are currently supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:228 -msgid "ldap_user_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:231 -msgid "The object class of a user entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:234 -msgid "Default: posixAccount" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:240 -msgid "ldap_user_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:243 -msgid "The LDAP attribute that corresponds to the user's login name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:247 -msgid "Default: uid" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:253 -msgid "ldap_user_uid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:256 -msgid "The LDAP attribute that corresponds to the user's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:260 -msgid "Default: uidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:266 -msgid "ldap_user_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:269 -msgid "The LDAP attribute that corresponds to the user's primary group id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:273 sssd-ldap.5.xml:740 -msgid "Default: gidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:279 -msgid "ldap_user_gecos (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:282 -msgid "The LDAP attribute that corresponds to the user's gecos field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:286 -msgid "Default: gecos" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:292 -msgid "ldap_user_home_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:295 -msgid "The LDAP attribute that contains the name of the user's home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:299 -msgid "Default: homeDirectory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:305 -msgid "ldap_user_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:308 -msgid "The LDAP attribute that contains the path to the user's default shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:312 -msgid "Default: loginShell" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:318 -msgid "ldap_user_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:321 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP user object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:325 sssd-ldap.5.xml:766 sssd-ldap.5.xml:878 -msgid "Default: nsUniqueId" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:331 -msgid "ldap_user_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:334 sssd-ldap.5.xml:775 sssd-ldap.5.xml:887 -msgid "" -"The LDAP attribute that contains timestamp of the last modification of the " -"parent object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:338 sssd-ldap.5.xml:779 sssd-ldap.5.xml:894 -msgid "Default: modifyTimestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:344 -msgid "ldap_user_shadow_last_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:347 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (date of " -"the last password change)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:357 -msgid "Default: shadowLastChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:363 -msgid "ldap_user_shadow_min (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:366 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (minimum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:375 -msgid "Default: shadowMin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:381 -msgid "ldap_user_shadow_max (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:384 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (maximum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:393 -msgid "Default: shadowMax" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:399 -msgid "ldap_user_shadow_warning (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:402 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password warning period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:412 -msgid "Default: shadowWarning" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:418 -msgid "ldap_user_shadow_inactive (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:421 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password inactivity period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:431 -msgid "Default: shadowInactive" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:437 -msgid "ldap_user_shadow_expire (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:440 -msgid "" -"When using ldap_pwd_policy=shadow or ldap_account_expire_policy=shadow, this " -"parameter contains the name of an LDAP attribute corresponding to its " -"<citerefentry> <refentrytitle>shadow</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> counterpart (account expiration date)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:450 -msgid "Default: shadowExpire" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:456 -msgid "ldap_user_krb_last_pwd_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:459 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time of last password change in " -"kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:465 -msgid "Default: krbLastPwdChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:471 -msgid "ldap_user_krb_password_expiration (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:474 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time when current password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:480 -msgid "Default: krbPasswordExpiration" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:486 -msgid "ldap_user_ad_account_expires (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:489 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the expiration time of the account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:494 -msgid "Default: accountExpires" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:500 -msgid "ldap_user_ad_user_account_control (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:503 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the user account control bit field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:508 -msgid "Default: userAccountControl" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:514 -msgid "ldap_ns_account_lock (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:517 -msgid "" -"When using ldap_account_expire_policy=rhds or equivalent, this parameter " -"determines if access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:522 -msgid "Default: nsAccountLock" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:528 -msgid "ldap_user_nds_login_disabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:531 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines if " -"access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:535 sssd-ldap.5.xml:549 -msgid "Default: loginDisabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:541 -msgid "ldap_user_nds_login_expiration_time (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:544 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines until " -"which date access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:555 -msgid "ldap_user_nds_login_allowed_time_map (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:558 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines the " -"hours of a day in a week when access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:563 -msgid "Default: loginAllowedTimeMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:569 -msgid "ldap_user_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:572 -msgid "" -"The LDAP attribute that contains the user's Kerberos User Principal Name " -"(UPN)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:576 -msgid "Default: krbPrincipalName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:582 -msgid "ldap_user_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:585 -msgid "The LDAP attribute that contains the user's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:592 -msgid "ldap_force_upper_case_realm (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:595 -msgid "" -"Some directory servers, for example Active Directory, might deliver the " -"realm part of the UPN in lower case, which might cause the authentication to " -"fail. Set this option to a non-zero value if you want to use an upper-case " -"realm." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:608 -msgid "ldap_enumeration_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:611 -msgid "" -"Specifies how many seconds SSSD has to wait before refreshing its cache of " -"enumerated records." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:616 sssd-ldap.5.xml:1808 -msgid "Default: 300" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:622 -msgid "ldap_purge_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:625 -msgid "" -"Determine how often to check the cache for inactive entries (such as groups " -"with no members and users who have never logged in) and remove them to save " -"space." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:631 -msgid "Setting this option to zero will disable the cache cleanup operation." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:635 -msgid "Default: 10800 (12 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:641 -msgid "ldap_user_fullname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:644 -msgid "The LDAP attribute that corresponds to the user's full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:648 sssd-ldap.5.xml:727 sssd-ldap.5.xml:828 -#: sssd-ldap.5.xml:919 sssd-ldap.5.xml:1663 sssd-ldap.5.xml:1881 -#: sssd-ipa.5.xml:422 -msgid "Default: cn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:654 -msgid "ldap_user_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:657 -msgid "The LDAP attribute that lists the user's group memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:661 sssd-ipa.5.xml:326 -msgid "Default: memberOf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:667 -msgid "ldap_user_authorized_service (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:670 -msgid "" -"If access_provider=ldap and ldap_access_order=authorized_service, SSSD will " -"use the presence of the authorizedService attribute in the user's LDAP entry " -"to determine access privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:677 -msgid "" -"An explicit deny (!svc) is resolved first. Second, SSSD searches for " -"explicit allow (svc) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:682 -msgid "Default: authorizedService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:688 -msgid "ldap_user_authorized_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:691 -msgid "" -"If access_provider=ldap and ldap_access_order=host, SSSD will use the " -"presence of the host attribute in the user's LDAP entry to determine access " -"privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:697 -msgid "" -"An explicit deny (!host) is resolved first. Second, SSSD searches for " -"explicit allow (host) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:702 -msgid "Default: host" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:708 -msgid "ldap_group_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:711 -msgid "The object class of a group entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:714 -msgid "Default: posixGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:720 -msgid "ldap_group_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:723 -msgid "The LDAP attribute that corresponds to the group name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:733 -msgid "ldap_group_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:736 -msgid "The LDAP attribute that corresponds to the group's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:746 -msgid "ldap_group_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:749 -msgid "The LDAP attribute that contains the names of the group's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:753 -msgid "Default: memberuid (rfc2307) / member (rfc2307bis)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:759 -msgid "ldap_group_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:762 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP group object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:772 -msgid "ldap_group_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:785 -msgid "ldap_group_nesting_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:788 -msgid "" -"If ldap_schema is set to a schema format that supports nested groups (e.g. " -"RFC2307bis), then this option controls how many levels of nesting SSSD will " -"follow. This option has no effect on the RFC2307 schema." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:795 -msgid "Default: 2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:801 -msgid "ldap_netgroup_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:804 -msgid "The object class of a netgroup entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:807 -msgid "In IPA provider, ipa_netgroup_object_class should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:811 -msgid "Default: nisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:817 -msgid "ldap_netgroup_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:820 -msgid "The LDAP attribute that corresponds to the netgroup name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:824 -msgid "In IPA provider, ipa_netgroup_name should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:834 -msgid "ldap_netgroup_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:837 -msgid "The LDAP attribute that contains the names of the netgroup's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:841 -msgid "In IPA provider, ipa_netgroup_member should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:845 -msgid "Default: memberNisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:851 -msgid "ldap_netgroup_triple (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:854 -msgid "" -"The LDAP attribute that contains the (host, user, domain) netgroup triples." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:858 sssd-ldap.5.xml:891 -msgid "This option is not available in IPA provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:861 -msgid "Default: nisNetgroupTriple" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:867 -msgid "ldap_netgroup_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:870 -msgid "" -"The LDAP attribute that contains the UUID/GUID of an LDAP netgroup object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:874 -msgid "In IPA provider, ipa_netgroup_uuid should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:884 -msgid "ldap_netgroup_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:900 -msgid "ldap_service_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:903 -msgid "The object class of a service entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:906 -msgid "Default: ipService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:912 -msgid "ldap_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:915 -msgid "" -"The LDAP attribute that contains the name of service attributes and their " -"aliases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:925 -msgid "ldap_service_port (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:928 -msgid "The LDAP attribute that contains the port managed by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:932 -msgid "Default: ipServicePort" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:938 -msgid "ldap_service_proto (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:941 -msgid "" -"The LDAP attribute that contains the protocols understood by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:945 -msgid "Default: ipServiceProtocol" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:951 -msgid "ldap_service_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:954 -msgid "An optional base DN to restrict service searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:958 sssd-ldap.5.xml:1918 sssd-ldap.5.xml:1937 -#: sssd-ldap.5.xml:1956 sssd-ldap.5.xml:2019 sssd-ldap.5.xml:2041 -#: sssd-ipa.5.xml:163 sssd-ipa.5.xml:187 -msgid "" -"See <quote>ldap_search_base</quote> for information about configuring " -"multiple search bases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:963 sssd-ldap.5.xml:1923 sssd-ldap.5.xml:1942 -#: sssd-ldap.5.xml:1961 sssd-ldap.5.xml:2024 sssd-ldap.5.xml:2046 -#: sssd-ipa.5.xml:173 sssd-ipa.5.xml:192 -msgid "Default: the value of <emphasis>ldap_search_base</emphasis>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:970 -msgid "ldap_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:973 -msgid "" -"Specifies the timeout (in seconds) that ldap searches are allowed to run " -"before they are cancelled and cached results are returned (and offline mode " -"is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:979 -msgid "" -"Note: this option is subject to change in future versions of the SSSD. It " -"will likely be replaced at some point by a series of timeouts for specific " -"lookup types." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:985 sssd-ldap.5.xml:1027 sssd-ldap.5.xml:1042 -msgid "Default: 6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:991 -msgid "ldap_enumeration_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:994 -msgid "" -"Specifies the timeout (in seconds) that ldap searches for user and group " -"enumerations are allowed to run before they are cancelled and cached results " -"are returned (and offline mode is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1001 -msgid "Default: 60" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1007 -msgid "ldap_network_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1010 -msgid "" -"Specifies the timeout (in seconds) after which the <citerefentry> " -"<refentrytitle>poll</refentrytitle> <manvolnum>2</manvolnum> </citerefentry>/" -"<citerefentry> <refentrytitle>select</refentrytitle> <manvolnum>2</" -"manvolnum> </citerefentry> following a <citerefentry> " -"<refentrytitle>connect</refentrytitle> <manvolnum>2</manvolnum> </" -"citerefentry> returns in case of no activity." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1033 -msgid "ldap_opt_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1036 -msgid "" -"Specifies a timeout (in seconds) after which calls to synchronous LDAP APIs " -"will abort if no response is received. Also controls the timeout when " -"communicating with the KDC in case of SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1048 -msgid "ldap_connection_expire_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1051 -msgid "" -"Specifies a timeout (in seconds) that a connection to an LDAP server will be " -"maintained. After this time, the connection will be re-established. If used " -"in parallel with SASL/GSSAPI, the sooner of the two values (this value vs. " -"the TGT lifetime) will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1059 -msgid "Default: 900 (15 minutes)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1065 -msgid "ldap_page_size (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1068 -msgid "" -"Specify the number of records to retrieve from LDAP in a single request. " -"Some LDAP servers enforce a maximum limit per-request." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1073 -msgid "Default: 1000" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1079 -msgid "ldap_disable_paging" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1082 -msgid "" -"Disable the LDAP paging control. This option should be used if the LDAP " -"server reports that it supports the LDAP paging control in its RootDSE but " -"it is not enabled or does not behave properly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1088 -msgid "" -"Example: OpenLDAP servers with the paging control module installed on the " -"server but not enabled will report it in the RootDSE but be unable to use it." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1094 -msgid "" -"Example: 389 DS has a bug where it can only support a one paging control at " -"a time on a single connection. On busy clients, this can result in some " -"requests being denied." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1103 -msgid "ldap_deref_threshold (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1106 -msgid "" -"Specify the number of group members that must be missing from the internal " -"cache in order to trigger a dereference lookup. If less members are missing, " -"they are looked up individually." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1112 -msgid "" -"You can turn off dereference lookups completely by setting the value to 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1116 -msgid "" -"A dereference lookup is a means of fetching all group members in a single " -"LDAP call. Different LDAP servers may implement different dereference " -"methods. The currently supported servers are 389/RHDS, OpenLDAP and Active " -"Directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1124 -msgid "" -"<emphasis>Note:</emphasis> If any of the search bases specifies a search " -"filter, then the dereference lookup performance enhancement will be disabled " -"regardless of this setting." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1137 -msgid "ldap_tls_reqcert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1140 -msgid "" -"Specifies what checks to perform on server certificates in a TLS session, if " -"any. It can be specified as one of the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1146 -msgid "" -"<emphasis>never</emphasis> = The client will not request or check any server " -"certificate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1150 -msgid "" -"<emphasis>allow</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, it will be ignored and the session proceeds normally." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1157 -msgid "" -"<emphasis>try</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, the session is immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1163 -msgid "" -"<emphasis>demand</emphasis> = The server certificate is requested. If no " -"certificate is provided, or a bad certificate is provided, the session is " -"immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1169 -msgid "<emphasis>hard</emphasis> = Same as <quote>demand</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1173 -msgid "Default: hard" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1179 -msgid "ldap_tls_cacert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1182 -msgid "" -"Specifies the file that contains certificates for all of the Certificate " -"Authorities that <command>sssd</command> will recognize." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1187 sssd-ldap.5.xml:1205 sssd-ldap.5.xml:1246 -msgid "" -"Default: use OpenLDAP defaults, typically in <filename>/etc/openldap/ldap." -"conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1194 -msgid "ldap_tls_cacertdir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1197 -msgid "" -"Specifies the path of a directory that contains Certificate Authority " -"certificates in separate individual files. Typically the file names need to " -"be the hash of the certificate followed by '.0'. If available, " -"<command>cacertdir_rehash</command> can be used to create the correct names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1212 -msgid "ldap_tls_cert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1215 -msgid "Specifies the file that contains the certificate for the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1219 sssd-ldap.5.xml:1231 sssd-ldap.5.xml:1979 -#: sssd-ldap.5.xml:2006 sssd-krb5.5.xml:359 -msgid "Default: not set" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1225 -msgid "ldap_tls_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1228 -msgid "Specifies the file that contains the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1237 -msgid "ldap_tls_cipher_suite (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1240 -msgid "" -"Specifies acceptable cipher suites. Typically this is a colon sperated " -"list. See <citerefentry><refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> for format." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1253 -msgid "ldap_id_use_start_tls (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1256 -msgid "" -"Specifies that the id_provider connection must also use <systemitem class=" -"\"protocol\">tls</systemitem> to protect the channel." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1266 -msgid "ldap_sasl_mech (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1269 -msgid "" -"Specify the SASL mechanism to use. Currently only GSSAPI is tested and " -"supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1273 sssd-ldap.5.xml:1428 -msgid "Default: none" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1279 -msgid "ldap_sasl_authid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1282 -msgid "" -"Specify the SASL authorization id to use. When GSSAPI is used, this " -"represents the Kerberos principal used for authentication to the directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1287 -msgid "Default: host/machine.fqdn@REALM" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1293 -msgid "ldap_sasl_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1296 -msgid "" -"If set to true, the LDAP library would perform a reverse lookup to " -"canonicalize the host name during a SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1301 -msgid "Default: false;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1307 -msgid "ldap_krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1310 -msgid "Specify the keytab to use when using SASL/GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1313 -msgid "Default: System keytab, normally <filename>/etc/krb5.keytab</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1319 -msgid "ldap_krb5_init_creds (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1322 -msgid "" -"Specifies that the id_provider should init Kerberos credentials (TGT). This " -"action is performed only if SASL is used and the mechanism selected is " -"GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1334 -msgid "ldap_krb5_ticket_lifetime (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1337 -msgid "Specifies the lifetime in seconds of the TGT if GSSAPI is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1341 -msgid "Default: 86400 (24 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1347 sssd-krb5.5.xml:74 -msgid "krb5_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1350 sssd-krb5.5.xml:77 -msgid "" -"Specifies the comma-separated list of IP addresses or hostnames of the " -"Kerberos servers to which SSSD should connect in the order of preference. " -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. An optional port number (preceded by a " -"colon) may be appended to the addresses or hostnames. If empty, service " -"discovery is enabled - for more information, refer to the <quote>SERVICE " -"DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1362 sssd-krb5.5.xml:89 -msgid "" -"When using service discovery for KDC or kpasswd servers, SSSD first searches " -"for DNS entries that specify _udp as the protocol and falls back to _tcp if " -"none are found." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1367 sssd-krb5.5.xml:94 -msgid "" -"This option was named <quote>krb5_kdcip</quote> in earlier releases of SSSD. " -"While the legacy name is recognized for the time being, users are advised to " -"migrate their config files to use <quote>krb5_server</quote> instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1376 sssd-ipa.5.xml:216 sssd-krb5.5.xml:103 -msgid "krb5_realm (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1379 -msgid "Specify the Kerberos REALM (for SASL/GSSAPI auth)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1382 -msgid "Default: System defaults, see <filename>/etc/krb5.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1388 sssd-ipa.5.xml:231 sssd-krb5.5.xml:409 -msgid "krb5_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1391 -msgid "" -"Specifies if the host principal should be canonicalized when connecting to " -"LDAP server. This feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1403 -msgid "ldap_pwd_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1406 -msgid "" -"Select the policy to evaluate the password expiration on the client side. " -"The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1411 -msgid "" -"<emphasis>none</emphasis> - No evaluation on the client side. This option " -"cannot disable server-side password policies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1416 -msgid "" -"<emphasis>shadow</emphasis> - Use <citerefentry><refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum></citerefentry> style attributes to " -"evaluate if the password has expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1422 -msgid "" -"<emphasis>mit_kerberos</emphasis> - Use the attributes used by MIT Kerberos " -"to determine if the password has expired. Use chpass_provider=krb5 to update " -"these attributes when the password is changed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1434 -msgid "ldap_referrals (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1437 -msgid "Specifies whether automatic referral chasing should be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1441 -msgid "" -"Please note that sssd only supports referral chasing when it is compiled " -"with OpenLDAP version 2.4.13 or higher." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1452 -msgid "ldap_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1455 -msgid "Specifies the service name to use when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1459 -msgid "Default: ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1465 -msgid "ldap_chpass_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1468 -msgid "" -"Specifies the service name to use to find an LDAP server which allows " -"password changes when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1473 -msgid "Default: not set, i.e. service discovery is disabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1479 -msgid "ldap_access_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1482 -msgid "" -"If using access_provider = ldap, this option is mandatory. It specifies an " -"LDAP search filter criteria that must be met for the user to be granted " -"access on this host. If access_provider = ldap and this option is not set, " -"it will result in all users being denied access. Use access_provider = allow " -"to change this default behavior." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1492 sssd-ldap.5.xml:1982 -msgid "Example:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1495 -#, no-wrap -msgid "" -"access_provider = ldap\n" -"ldap_access_filter = memberOf=cn=allowedusers,ou=Groups,dc=example,dc=com\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1499 -msgid "" -"This example means that access to this host is restricted to members of the " -"\"allowedusers\" group in ldap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1504 -msgid "" -"Offline caching for this feature is limited to determining whether the " -"user's last online login was granted access permission. If they were granted " -"access during their last login, they will continue to be granted access " -"while offline and vice-versa." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1512 sssd-ldap.5.xml:1562 -msgid "Default: Empty" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1518 -msgid "ldap_account_expire_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1521 -msgid "" -"With this option a client side evaluation of access control attributes can " -"be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1525 -msgid "" -"Please note that it is always recommended to use server side access control, " -"i.e. the LDAP server should deny the bind request with a suitable error code " -"even if the password is correct." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1532 -msgid "The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1535 -msgid "" -"<emphasis>shadow</emphasis>: use the value of ldap_user_shadow_expire to " -"determine if the account is expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1540 -msgid "" -"<emphasis>ad</emphasis>: use the value of the 32bit field " -"ldap_user_ad_user_account_control and allow access if the second bit is not " -"set. If the attribute is missing access is granted. Also the expiration time " -"of the account is checked." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1547 -msgid "" -"<emphasis>rhds</emphasis>, <emphasis>ipa</emphasis>, <emphasis>389ds</" -"emphasis>: use the value of ldap_ns_account_lock to check if access is " -"allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1553 -msgid "" -"<emphasis>nds</emphasis>: the values of " -"ldap_user_nds_login_allowed_time_map, ldap_user_nds_login_disabled and " -"ldap_user_nds_login_expiration_time are used to check if access is allowed. " -"If both attributes are missing access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1568 -msgid "ldap_access_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1571 -msgid "Comma separated list of access control options. Allowed values are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1575 -msgid "<emphasis>filter</emphasis>: use ldap_access_filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1578 -msgid "<emphasis>expire</emphasis>: use ldap_account_expire_policy" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1582 -msgid "" -"<emphasis>authorized_service</emphasis>: use the authorizedService attribute " -"to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1587 -msgid "<emphasis>host</emphasis>: use the host attribute to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1591 -msgid "Default: filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1594 -msgid "" -"Please note that it is a configuration error if a value is used more than " -"once." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1601 -msgid "ldap_deref (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1604 -msgid "" -"Specifies how alias dereferencing is done when performing a search. The " -"following options are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1609 -msgid "<emphasis>never</emphasis>: Aliases are never dereferenced." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1613 -msgid "" -"<emphasis>searching</emphasis>: Aliases are dereferenced in subordinates of " -"the base object, but not in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1618 -msgid "" -"<emphasis>finding</emphasis>: Aliases are only dereferenced when locating " -"the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1623 -msgid "" -"<emphasis>always</emphasis>: Aliases are dereferenced both in searching and " -"in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1628 -msgid "" -"Default: Empty (this is handled as <emphasis>never</emphasis> by the LDAP " -"client libraries)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:51 -msgid "" -"All of the common configuration options that apply to SSSD domains also " -"apply to LDAP domains. Refer to the <quote>DOMAIN SECTIONS</quote> section " -"of the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for full details. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1639 -msgid "SUDO OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1644 -msgid "ldap_sudorule_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1647 -msgid "The object class of a sudo rule entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1650 -msgid "Default: sudoRole" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1656 -msgid "ldap_sudorule_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1659 -msgid "The LDAP attribute that corresponds to the sudo rule name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1669 -msgid "ldap_sudorule_command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1672 -msgid "The LDAP attribute that corresponds to the command name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1676 -msgid "Default: sudoCommand" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1682 -msgid "ldap_sudorule_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1685 -msgid "" -"The LDAP attribute that corresponds to the host name (or host IP address, " -"host IP network, or host netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1690 -msgid "Default: sudoHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1696 -msgid "ldap_sudorule_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1699 -msgid "" -"The LDAP attribute that corresponds to the user name (or UID, group name or " -"user's netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1703 -msgid "Default: sudoUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1709 -msgid "ldap_sudorule_option (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1712 -msgid "The LDAP attribute that corresponds to the sudo options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1716 -msgid "Default: sudoOption" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1722 -msgid "ldap_sudorule_runasuser (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1725 -msgid "" -"The LDAP attribute that corresponds to the user name that commands may be " -"run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1729 -msgid "Default: sudoRunAsUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1735 -msgid "ldap_sudorule_runasgroup (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1738 -msgid "" -"The LDAP attribute that corresponds to the group name or group GID that " -"commands may be run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1742 -msgid "Default: sudoRunAsGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1748 -msgid "ldap_sudorule_notbefore (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1751 -msgid "" -"The LDAP attribute that corresponds to the start date/time for when the sudo " -"rule is valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1755 -msgid "Default: sudoNotBefore" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1761 -msgid "ldap_sudorule_notafter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1764 -msgid "" -"The LDAP attribute that corresponds to the expiration date/time, after which " -"the sudo rule will no longer be valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1769 -msgid "Default: sudoNotAfter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1775 -msgid "ldap_sudorule_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1778 -msgid "The LDAP attribute that corresponds to the ordering index of the rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1782 -msgid "Default: sudoOrder" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1788 -msgid "ldap_sudo_refresh_enabled (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1791 -msgid "" -"Enables periodical download of all sudo rules. The cache is purged before " -"each update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1801 -msgid "ldap_sudo_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1804 -msgid "" -"How many seconds SSSD has to wait before refreshing its cache of sudo rules." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1642 -msgid "<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1815 -msgid "" -"This manual page only describes attribute name mapping. For detailed " -"explanation of sudo related attribute semantics, see <citerefentry> " -"<refentrytitle>sudoers.ldap</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1825 -msgid "AUTOFS OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1827 -msgid "" -"Please note that the default values correspond to the default schema which " -"is RFC2307." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1834 -msgid "ldap_autofs_map_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1837 sssd-ldap.5.xml:1863 -msgid "The object class of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1840 sssd-ldap.5.xml:1867 -msgid "Default: automountMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1847 -msgid "ldap_autofs_map_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1850 -msgid "The name of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1853 -msgid "Default: ou" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1860 -msgid "ldap_autofs_entry_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1874 -msgid "ldap_autofs_entry_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1877 sssd-ldap.5.xml:1891 -msgid "" -"The key of an automount entry in LDAP. The entry usually corresponds to a " -"mount point." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1888 -msgid "ldap_autofs_entry_value (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1895 -msgid "Default: automountInformation" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1832 -msgid "" -"<placeholder type=\"variablelist\" id=\"0\"/> <placeholder type=" -"\"variablelist\" id=\"1\"/> <placeholder type=\"variablelist\" id=\"2\"/> " -"<placeholder type=\"variablelist\" id=\"3\"/> <placeholder type=" -"\"variablelist\" id=\"4\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1904 -msgid "ADVANCED OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1911 -msgid "ldap_netgroup_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1914 -msgid "" -"An optional base DN to restrict netgroup searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1930 -msgid "ldap_user_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1933 -msgid "An optional base DN to restrict user searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1949 -msgid "ldap_group_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1952 -msgid "An optional base DN to restrict group searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1968 -msgid "ldap_user_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1971 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict user searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1975 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_user_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1985 -#, no-wrap -msgid "" -" ldap_user_search_filter = (loginShell=/bin/tcsh)\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1988 -msgid "" -"This filter would restrict user searches to users that have their shell set " -"to /bin/tcsh." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1995 -msgid "ldap_group_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1998 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict group searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2002 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_group_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2012 -msgid "ldap_sudo_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2015 -msgid "" -"An optional base DN to restrict sudo rules searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2034 -msgid "ldap_autofs_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2037 -msgid "" -"An optional base DN to restrict automounter searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1906 -msgid "" -"These options are supported by LDAP domains, but they should be used with " -"caution. Please include them in your configuration only if you know what you " -"are doing. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2066 -msgid "" -"The following example assumes that SSSD is correctly configured and LDAP is " -"set to one of the domains in the <replaceable>[domains]</replaceable> " -"section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ldap.5.xml:2072 -#, no-wrap -msgid "" -" [domain/LDAP]\n" -" id_provider = ldap\n" -" auth_provider = ldap\n" -" ldap_uri = ldap://ldap.mydomain.org\n" -" ldap_search_base = dc=mydomain,dc=org\n" -" ldap_tls_reqcert = demand\n" -" cache_credentials = true\n" -" enumerate = true\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2071 sssd-simple.5.xml:134 sssd-ipa.5.xml:552 -#: sssd-krb5.5.xml:441 -msgid "<placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:2085 sssd_krb5_locator_plugin.8.xml:61 -msgid "NOTES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2087 -msgid "" -"The descriptions of some of the configuration options in this manual page " -"are based on the <citerefentry> <refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page from the OpenLDAP 2.4 " -"distribution." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2098 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <refentryinfo> -#: pam_sss.8.xml:8 include/upstream.xml:2 -msgid "" -"<productname>SSSD</productname> <orgname>The SSSD upstream - http://" -"fedorahosted.org/sssd</orgname>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: pam_sss.8.xml:13 pam_sss.8.xml:18 -msgid "pam_sss" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: pam_sss.8.xml:19 -msgid "PAM module for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: pam_sss.8.xml:24 -msgid "" -"<command>pam_sss.so</command> <arg choice='opt'> <replaceable>quiet</" -"replaceable> </arg> <arg choice='opt'> <replaceable>forward_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_first_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_authtok</" -"replaceable> </arg> <arg choice='opt'> <replaceable>retry=N</replaceable> </" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:45 -msgid "" -"<command>pam_sss.so</command> is the PAM interface to the System Security " -"Services daemon (SSSD). Errors and results are logged through <command>syslog" -"(3)</command> with the LOG_AUTHPRIV facility." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:55 -msgid "<option>quiet</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:58 -msgid "Suppress log messages for unknown users." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:63 -msgid "<option>forward_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:66 -msgid "" -"If <option>forward_pass</option> is set the entered password is put on the " -"stack for other PAM modules to use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:73 -msgid "<option>use_first_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:76 -msgid "" -"The argument use_first_pass forces the module to use a previous stacked " -"modules password and will never prompt the user - if no password is " -"available or the password is not appropriate, the user will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:84 -msgid "<option>use_authtok</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:87 -msgid "" -"When password changing enforce the module to set the new password to the one " -"provided by a previously stacked password module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:94 -msgid "<option>retry=N</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:97 -msgid "" -"If specified the user is asked another N times for a password if " -"authentication fails. Default is 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:99 -msgid "" -"Please note that this option might not work as expected if the application " -"calling PAM handles the user dialog on its own. A typical example is " -"<command>sshd</command> with <option>PasswordAuthentication</option>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:110 -msgid "MODULE TYPES PROVIDED" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:111 -msgid "" -"All module types (<option>account</option>, <option>auth</option>, " -"<option>password</option> and <option>session</option>) are provided." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:117 -msgid "FILES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:118 -msgid "" -"If a password reset by root fails, because the corresponding SSSD provider " -"does not support password resets, an individual message can be displayed. " -"This message can e.g. contain instructions about how to reset a password." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:123 -msgid "" -"The message is read from the file <filename>pam_sss_pw_reset_message.LOC</" -"filename> where LOC stands for a locale string returned by <citerefentry> " -"<refentrytitle>setlocale</refentrytitle><manvolnum>3</manvolnum> </" -"citerefentry>. If there is no matching file the content of " -"<filename>pam_sss_pw_reset_message.txt</filename> is displayed. Root must be " -"the owner of the files and only root may have read and write permissions " -"while all other users must have only read permissions." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:133 -msgid "" -"These files are searched in the directory <filename>/etc/sssd/customize/" -"DOMAIN_NAME/</filename>. If no matching file is present a generic message is " -"displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:141 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd_krb5_locator_plugin.8.xml:10 sssd_krb5_locator_plugin.8.xml:15 -msgid "sssd_krb5_locator_plugin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:22 -msgid "" -"The Kerberos locator plugin <command>sssd_krb5_locator_plugin</command> is " -"used by the Kerberos provider of <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry> to tell the Kerberos " -"libraries what Realm and which KDC to use. Typically this is done in " -"<citerefentry> <refentrytitle>krb5.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> which is always read by the Kerberos libraries. " -"To simplify the configuration the Realm and the KDC can be defined in " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> as described in <citerefentry> " -"<refentrytitle>sssd-krb5.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry> puts the Realm and the name or IP address of the KDC into " -"the environment variables SSSD_KRB5_REALM and SSSD_KRB5_KDC respectively. " -"When <command>sssd_krb5_locator_plugin</command> is called by the kerberos " -"libraries it reads and evaluates these variables and returns them to the " -"libraries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:63 -msgid "" -"Not all Kerberos implementations support the use of plugins. If " -"<command>sssd_krb5_locator_plugin</command> is not available on your system " -"you have to edit /etc/krb5.conf to reflect your Kerberos setup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:69 -msgid "" -"If the environment variable SSSD_KRB5_LOCATOR_DEBUG is set to any value " -"debug messages will be sent to stderr." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:77 -msgid "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-simple.5.xml:10 sssd-simple.5.xml:16 -msgid "sssd-simple" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd-simple.5.xml:17 -msgid "the configuration file for SSSD's 'simple' access-control provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:24 -msgid "" -"This manual page describes the configuration of the simple access-control " -"provider for <citerefentry> <refentrytitle>sssd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry>. For a detailed syntax reference, " -"refer to the <quote>FILE FORMAT</quote> section of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:38 -msgid "" -"The simple access provider grants or denies access based on an access or " -"deny list of user or group names. The following rules apply:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:43 -msgid "If all lists are empty, access is granted" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:47 -msgid "" -"If any list is provided, the order of evaluation is allow,deny. This means " -"that any matching deny rule will supersede any matched allow rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:54 -msgid "" -"If either or both \"allow\" lists are provided, all users are denied unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:60 -msgid "" -"If only \"deny\" lists are provided, all users are granted access unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:78 -msgid "simple_allow_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:81 -msgid "Comma separated list of users who are allowed to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:88 -msgid "simple_deny_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:91 -msgid "Comma separated list of users who are explicitly denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:97 -msgid "simple_allow_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:100 -msgid "" -"Comma separated list of groups that are allowed to log in. This applies only " -"to groups within this SSSD domain. Local groups are not evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:108 -msgid "simple_deny_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:111 -msgid "" -"Comma separated list of groups that are explicitly denied access. This " -"applies only to groups within this SSSD domain. Local groups are not " -"evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:70 sssd-ipa.5.xml:65 -msgid "" -"Refer to the section <quote>DOMAIN SECTIONS</quote> of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page for details on the configuration of an SSSD " -"domain. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:120 -msgid "" -"Please note that it is an configuration error if both, simple_allow_users " -"and simple_deny_users, are defined." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:128 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the simple access provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-simple.5.xml:135 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" access_provider = simple\n" -" simple_allow_users = user1, user2\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:145 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ipa.5.xml:10 sssd-ipa.5.xml:16 -msgid "sssd-ipa" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:23 -msgid "" -"This manual page describes the configuration of the IPA provider for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. For a detailed syntax reference, refer to the <quote>FILE " -"FORMAT</quote> section of the <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:36 -msgid "" -"The IPA provider is a back end used to connect to an IPA server. (Refer to " -"the freeipa.org web site for information about IPA servers.) This provider " -"requires that the machine be joined to the IPA domain; configuration is " -"almost entirely self-discovered and obtained directly from the server." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:43 -msgid "" -"The IPA provider accepts the same options used by the <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> identity provider and the <citerefentry> <refentrytitle>sssd-" -"krb5</refentrytitle> <manvolnum>5</manvolnum> </citerefentry> authentication " -"provider with some exceptions described below." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:55 -msgid "" -"However, it is neither necessary nor recommended to set these options. IPA " -"provider can also be used as an access and chpass provider. As an access " -"provider it uses HBAC (host-based access control) rules. Please refer to " -"freeipa.org for more information about HBAC. No configuration of access " -"provider is required on the client side." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:72 -msgid "ipa_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:75 -msgid "" -"Specifies the name of the IPA domain. This is optional. If not provided, " -"the configuration domain name is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:83 -msgid "ipa_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:86 -msgid "" -"The comma-separated list of IP addresses or hostnames of the IPA servers to " -"which SSSD should connect in the order of preference. For more information " -"on failover and server redundancy, see the <quote>FAILOVER</quote> section. " -"This is optional if autodiscovery is enabled. For more information on " -"service discovery, refer to the the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:99 -msgid "ipa_hostname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:102 -msgid "" -"Optional. May be set on machines where the hostname(5) does not reflect the " -"fully qualified name used in the IPA domain to identify this host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:110 -msgid "ipa_dyndns_update (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:113 -msgid "" -"Optional. This option tells SSSD to automatically update the DNS server " -"built into FreeIPA v2 with the IP address of this client." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:118 -msgid "" -"NOTE: On older systems (such as RHEL 5), for this behavior to work reliably, " -"the default Kerberos realm must be set properly in /etc/krb5.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:129 -msgid "ipa_dyndns_iface (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:132 -msgid "" -"Optional. Applicable only when ipa_dyndns_update is true. Choose the " -"interface whose IP address should be used for dynamic DNS updates." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:137 -msgid "Default: Use the IP address of the IPA LDAP connection" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:143 -msgid "ipa_hbac_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:146 -msgid "Optional. Use the given string as search base for HBAC related objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:150 -msgid "Default: Use base DN" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:156 -msgid "ipa_host_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:159 -msgid "Optional. Use the given string as search base for host objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:168 -msgid "" -"If filter is given in any of search bases and " -"<emphasis>ipa_hbac_support_srchost</emphasis> is set to False, the filter " -"will be ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:180 -msgid "ipa_selinux_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:183 -msgid "Optional. Use the given string as search base for SELinux user maps." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:199 sssd-krb5.5.xml:229 -msgid "krb5_validate (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:202 sssd-krb5.5.xml:232 -msgid "" -"Verify with the help of krb5_keytab that the TGT obtained has not been " -"spoofed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:209 -msgid "" -"Note that this default differs from the traditional Kerberos provider back " -"end." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:219 -msgid "" -"The name of the Kerberos realm. This is optional and defaults to the value " -"of <quote>ipa_domain</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:223 -msgid "" -"The name of the Kerberos realm has a special meaning in IPA - it is " -"converted into the base DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:234 -msgid "" -"Specifies if the host and user principal should be canonicalized when " -"connecting to IPA LDAP and also for AS requests. This feature is available " -"with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:247 -msgid "ipa_hbac_refresh (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:250 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server. " -"This will reduce the latency and load on the IPA server if there are many " -"access-control requests made in a short period." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:257 -msgid "Default: 5 (seconds)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:262 -msgid "ipa_hbac_treat_deny_as (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:265 -msgid "" -"This option specifies how to treat the deprecated DENY-type HBAC rules. As " -"of FreeIPA v2.1, DENY rules are no longer supported on the server. All users " -"of FreeIPA will need to migrate their rules to use only the ALLOW rules. The " -"client will support two modes of operation during this transition period:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:274 -msgid "" -"<emphasis>DENY_ALL</emphasis>: If any HBAC DENY rules are detected, all " -"users will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:279 -msgid "" -"<emphasis>IGNORE</emphasis>: SSSD will ignore any DENY rules. Be very " -"careful with this option, as it may result in opening unintended access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:284 -msgid "Default: DENY_ALL" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:289 -msgid "ipa_hbac_support_srchost (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:292 -msgid "" -"If this is set to false, then srchost as given to SSSD by PAM will be " -"ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:296 -msgid "" -"Note that if set to <emphasis>False</emphasis>, this option casuses filters " -"given in <emphasis>ipa_host_search_base</emphasis> to be ignored;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:307 -msgid "ipa_automount_location (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:310 -msgid "The automounter location this IPA client will be using" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:313 -msgid "Default: The location named \"default\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:319 -msgid "ipa_netgroup_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:322 -msgid "The LDAP attribute that lists netgroup's memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:331 -msgid "ipa_netgroup_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:334 -msgid "" -"The LDAP attribute that lists system users and groups that are direct " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:339 sssd-ipa.5.xml:434 -msgid "Default: memberUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:344 -msgid "ipa_netgroup_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:347 -msgid "" -"The LDAP attribute that lists hosts and host groups that are direct members " -"of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:351 sssd-ipa.5.xml:446 -msgid "Default: memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:356 -msgid "ipa_netgroup_member_ext_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:359 -msgid "" -"The LDAP attribute that lists FQDNs of hosts and host groups that are " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:363 -msgid "Default: externalHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:368 -msgid "ipa_netgroup_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:371 -msgid "The LDAP attribute that contains NIS domain name of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:375 -msgid "Default: nisDomainName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:381 -msgid "ipa_host_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:384 sssd-ipa.5.xml:407 -msgid "The object class of a host entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:387 sssd-ipa.5.xml:410 -msgid "Default: ipaHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:392 -msgid "ipa_host_fqdn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:395 -msgid "The LDAP attribute that contains FQDN of the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:398 -msgid "Default: fqdn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:404 -msgid "ipa_selinux_usermap_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:415 -msgid "ipa_selinux_usermap_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:418 -msgid "The LDAP attribute that contains the name of SELinux usermap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:427 -msgid "ipa_selinux_usermap_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:430 -msgid "" -"The LDAP attribute that contains all users / groups this rule match against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:439 -msgid "ipa_selinux_usermap_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:442 -msgid "" -"The LDAP attribute that contains all hosts / hostgroups this rule match " -"against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:451 -msgid "ipa_selinux_usermap_see_also (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:454 -msgid "" -"The LDAP attribute that contains DN of HBAC rule which can be used for " -"matching instead of memberUser and memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:459 -msgid "Default: seeAlso" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:464 -msgid "ipa_selinux_usermap_selinux_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:467 -msgid "The LDAP attribute that contains SELinux user string itself." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:471 -msgid "Default: ipaSELinuxUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:476 -msgid "ipa_selinux_usermap_enabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:479 -msgid "" -"The LDAP attribute that contains whether or not is user map enabled for " -"usage." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:483 -msgid "Default: ipaEnabledFlag" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:488 -msgid "ipa_selinux_usermap_user_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:491 -msgid "The LDAP attribute that contains user category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:495 -msgid "Default: userCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:500 -msgid "ipa_selinux_usermap_host_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:503 -msgid "The LDAP attribute that contains host category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:507 -msgid "Default: hostCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:512 -msgid "ipa_selinux_usermap_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:515 -msgid "The LDAP attribute that contains unique ID of the user map." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:519 -msgid "Default: ipaUniqueID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:524 -msgid "ipa_host_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:527 -msgid "The LDAP attribute that contains the host's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:531 -msgid "Default: ipaSshPubKey" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:546 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the ipa provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ipa.5.xml:553 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" id_provider = ipa\n" -" ipa_server = ipaserver.example.com\n" -" ipa_hostname = myhost.example.com\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:564 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.8.xml:10 sssd.8.xml:15 -msgid "sssd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.8.xml:16 -msgid "System Security Services Daemon" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sssd.8.xml:21 -msgid "" -"<command>sssd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:31 -msgid "" -"<command>SSSD</command> provides a set of daemons to manage access to remote " -"directories and authentication mechanisms. It provides an NSS and PAM " -"interface toward the system and a pluggable backend system to connect to " -"multiple different account sources as well as D-Bus interface. It is also " -"the basis to provide client auditing and policy services for projects like " -"FreeIPA. It provides a more robust database to store local users as well as " -"extended user data." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:46 -msgid "" -"<option>-d</option>,<option>--debug-level</option> <replaceable>LEVEL</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:53 -msgid "<option>--debug-timestamps=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:57 -msgid "<emphasis>1</emphasis>: Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:60 -msgid "<emphasis>0</emphasis>: Disable timestamp in the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:69 -msgid "<option>--debug-microseconds=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:73 -msgid "" -"<emphasis>1</emphasis>: Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:76 -msgid "<emphasis>0</emphasis>: Disable microseconds in timestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:79 -msgid "Default: 0" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:85 -msgid "<option>-f</option>,<option>--debug-to-files</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:89 -msgid "" -"Send the debug output to files instead of stderr. By default, the log files " -"are stored in <filename>/var/log/sssd</filename> and there are separate log " -"files for every SSSD service and domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:97 -msgid "<option>-D</option>,<option>--daemon</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:101 -msgid "Become a daemon after starting up." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:107 -msgid "<option>-i</option>,<option>--interactive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:111 -msgid "Run in the foreground, don't become a daemon." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:117 sss_debuglevel.8.xml:42 -msgid "<option>-c</option>,<option>--config</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:121 sss_debuglevel.8.xml:46 -msgid "" -"Specify a non-default config file. The default is <filename>/etc/sssd/sssd." -"conf</filename>. For reference on the config file syntax and options, " -"consult the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:135 -msgid "<option>--version</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:139 -msgid "Print version number and exit." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.8.xml:147 -msgid "Signals" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:150 -msgid "SIGTERM/SIGINT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:153 -msgid "" -"Informs the SSSD to gracefully terminate all of its child processes and then " -"shut down the monitor." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:159 -msgid "SIGHUP" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:162 -msgid "" -"Tells the SSSD to stop writing to its current debug file descriptors and to " -"close and reopen them. This is meant to facilitate log rolling with programs " -"like logrotate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:170 -msgid "SIGUSR1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:173 -msgid "" -"Tells the SSSD to simulate offline operation for one minute. This is mostly " -"useful for testing purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:179 -msgid "SIGUSR2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:182 -msgid "" -"Tells the SSSD to go online immediately. This is mostly useful for testing " -"purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:193 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_obfuscate.8.xml:10 sss_obfuscate.8.xml:15 -msgid "sss_obfuscate" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_obfuscate.8.xml:16 -msgid "obfuscate a clear text password" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_obfuscate.8.xml:21 -msgid "" -"<command>sss_obfuscate</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>[PASSWORD]</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:32 -msgid "" -"<command>sss_obfuscate</command> converts a given password into human-" -"unreadable format and places it into appropriate domain section of the SSSD " -"config file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:37 -msgid "" -"The cleartext password is read from standard input or entered " -"interactively. The obfuscated password is put into " -"<quote>ldap_default_authtok</quote> parameter of a given SSSD domain and the " -"<quote>ldap_default_authtok_type</quote> parameter is set to " -"<quote>obfuscated_password</quote>. Refer to <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more details on these parameters." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:49 -msgid "" -"Please note that obfuscating the password provides <emphasis>no real " -"security benefit</emphasis> as it is still possible for an attacker to " -"reverse-engineer the password back. Using better authentication mechanisms " -"such as client side certificates or GSSAPI is <emphasis>strongly</emphasis> " -"advised." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:63 -msgid "<option>-s</option>,<option>--stdin</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:67 -msgid "The password to obfuscate will be read from standard input." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:74 sss_ssh_authorizedkeys.1.xml:82 -#: sss_ssh_knownhostsproxy.1.xml:81 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>DOMAIN</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:79 -msgid "" -"The SSSD domain to use the password in. The default name is <quote>default</" -"quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:86 -msgid "" -"<option>-f</option>,<option>--file</option> <replaceable>FILE</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:91 -msgid "Read the config file specified by the positional parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:95 -msgid "Default: <filename>/etc/sssd/sssd.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:105 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_useradd.8.xml:10 sss_useradd.8.xml:15 -msgid "sss_useradd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_useradd.8.xml:16 -msgid "create a new user" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_useradd.8.xml:21 -msgid "" -"<command>sss_useradd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:32 -msgid "" -"<command>sss_useradd</command> creates a new user account using the values " -"specified on the command line plus the default values from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:43 -msgid "" -"<option>-u</option>,<option>--uid</option> <replaceable>UID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:48 -msgid "" -"Set the UID of the user to the value of <replaceable>UID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:55 sss_usermod.8.xml:43 -msgid "" -"<option>-c</option>,<option>--gecos</option> <replaceable>COMMENT</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:60 sss_usermod.8.xml:48 -msgid "" -"Any text string describing the user. Often used as the field for the user's " -"full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:67 sss_usermod.8.xml:55 -msgid "" -"<option>-h</option>,<option>--home</option> <replaceable>HOME_DIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:72 -msgid "" -"The home directory of the user account. The default is to append the " -"<replaceable>LOGIN</replaceable> name to <filename>/home</filename> and use " -"that as the home directory. The base that is prepended before " -"<replaceable>LOGIN</replaceable> is tunable with <quote>user_defaults/" -"baseDirectory</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:82 sss_usermod.8.xml:66 -msgid "" -"<option>-s</option>,<option>--shell</option> <replaceable>SHELL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:87 -msgid "" -"The user's login shell. The default is currently <filename>/bin/bash</" -"filename>. The default can be changed with <quote>user_defaults/" -"defaultShell</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:96 -msgid "" -"<option>-G</option>,<option>--groups</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:101 -msgid "A list of existing groups this user is also a member of." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:107 -msgid "<option>-m</option>,<option>--create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:111 -msgid "" -"Create the user's home directory if it does not exist. The files and " -"directories contained in the skeleton directory (which can be defined with " -"the -k option or in the config file) will be copied to the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:121 -msgid "<option>-M</option>,<option>--no-create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:125 -msgid "" -"Do not create the user's home directory. Overrides configuration settings." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:132 -msgid "" -"<option>-k</option>,<option>--skel</option> <replaceable>SKELDIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:137 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<command>sss_useradd</command>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:143 -msgid "" -"This option is only valid if the <option>-m</option> (or <option>--create-" -"home</option>) option is specified, or creation of home directories is set " -"to TRUE in the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:152 sss_usermod.8.xml:124 -msgid "" -"<option>-Z</option>,<option>--selinux-user</option> " -"<replaceable>SELINUX_USER</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:157 -msgid "" -"The SELinux user for the user's login. If not specified, the system default " -"will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:169 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-krb5.5.xml:10 sssd-krb5.5.xml:16 -msgid "sssd-krb5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:23 -msgid "" -"This manual page describes the configuration of the Kerberos 5 " -"authentication backend for <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry>. For a detailed " -"syntax reference, please refer to the <quote>FILE FORMAT</quote> section of " -"the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:36 -msgid "" -"The Kerberos 5 authentication backend contains auth and chpass providers. It " -"must be paired with identity provider in order to function properly (for " -"example, id_provider = ldap). Some information required by the Kerberos 5 " -"authentication backend must be provided by the identity provider, such as " -"the user's Kerberos Principal Name (UPN). The configuration of the identity " -"provider should have an entry to specify the UPN. Please refer to the man " -"page for the applicable identity provider for details on how to configure " -"this." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:47 -msgid "" -"This backend also provides access control based on the .k5login file in the " -"home directory of the user. See <citerefentry> <refentrytitle>.k5login</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry> for more details. " -"Please note that an empty .k5login file will deny all access to this user. " -"To activate this feature use 'access_provider = krb5' in your sssd " -"configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:55 -msgid "" -"In the case where the UPN is not available in the identity backend " -"<command>sssd</command> will construct a UPN using the format " -"<replaceable>username</replaceable>@<replaceable>krb5_realm</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:106 -msgid "" -"The name of the Kerberos realm. This option is required and must be " -"specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:113 -msgid "krb5_kpasswd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:116 -msgid "" -"If the change password service is not running on the KDC alternative servers " -"can be defined here. An optional port number (preceded by a colon) may be " -"appended to the addresses or hostnames." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:122 -msgid "" -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. Please note that even if there are no more " -"kpasswd servers to try the back end is not switch to offline if " -"authentication against the KDC is still possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:129 -msgid "Default: Use the KDC" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:135 -msgid "krb5_ccachedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:138 -msgid "" -"Directory to store credential caches. All the substitution sequences of " -"krb5_ccname_template can be used here, too, except %d and %P. If the " -"directory does not exist it will be created. If %u, %U, %p or %h are used a " -"private directory belonging to the user is created. Otherwise a public " -"directory with restricted deletion flag (aka sticky bit, see <citerefentry> " -"<refentrytitle>chmod</refentrytitle> <manvolnum>1</manvolnum> </" -"citerefentry> for details) is created." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:151 -msgid "Default: /tmp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:157 -msgid "krb5_ccname_template (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:171 -msgid "login UID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:174 -msgid "%p" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:175 -msgid "principal name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:179 -msgid "%r" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:180 -msgid "realm name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:183 -msgid "%h" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:184 -msgid "home directory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:189 -msgid "value of krb5ccache_dir" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:194 -msgid "%P" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:195 -msgid "the process ID of the sssd client" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:160 -msgid "" -"Location of the user's credential cache. Currently only file based " -"credential caches are supported. In the template the following sequences are " -"substituted: <placeholder type=\"variablelist\" id=\"0\"/> If the template " -"ends with 'XXXXXX' mkstemp(3) is used to create a unique filename in a safe " -"way." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:209 -msgid "Default: FILE:%d/krb5cc_%U_XXXXXX" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:215 -msgid "krb5_auth_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:218 -msgid "" -"Timeout in seconds after an online authentication or change password request " -"is aborted. If possible the authentication request is continued offline." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:241 -msgid "krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:244 -msgid "" -"The location of the keytab to use when validating credentials obtained from " -"KDCs." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:248 -msgid "Default: /etc/krb5.keytab" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:254 -msgid "krb5_store_password_if_offline (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:257 -msgid "" -"Store the password of the user if the provider is offline and use it to " -"request a TGT when the provider gets online again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:262 -msgid "" -"Please note that this feature currently only available on a Linux platform. " -"Passwords stored in this way are kept in plaintext in the kernel keyring and " -"are potentially accessible by the root user (with difficulty)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:275 -msgid "krb5_renewable_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:278 -msgid "" -"Request a renewable ticket with a total lifetime given by an integer " -"immediately followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:283 sssd-krb5.5.xml:319 -msgid "<emphasis>s</emphasis> seconds" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:286 sssd-krb5.5.xml:322 -msgid "<emphasis>m</emphasis> minutes" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:289 sssd-krb5.5.xml:325 -msgid "<emphasis>h</emphasis> hours" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:292 sssd-krb5.5.xml:328 -msgid "<emphasis>d</emphasis> days." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:295 sssd-krb5.5.xml:331 -msgid "If there is no delimiter <emphasis>s</emphasis> is assumed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:299 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"renewable lifetime to one and a half hours please use '90m' instead of " -"'1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:305 -msgid "Default: not set, i.e. the TGT is not renewable" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:311 -msgid "krb5_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:314 -msgid "" -"Request ticket with a with a lifetime given by an integer immediately " -"followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:335 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"lifetime to one and a half hours please use '90m' instead of '1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:340 -msgid "" -"Default: not set, i.e. the default ticket lifetime configured on the KDC." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:347 -msgid "krb5_renew_interval (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:350 -msgid "" -"The time in seconds between two checks if the TGT should be renewed. TGTs " -"are renewed if about half of their lifetime is exceeded." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:355 -msgid "If this option is not set or 0 the automatic renewal is disabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:365 -msgid "krb5_use_fast (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:368 -msgid "" -"Enables flexible authentication secure tunneling (FAST) for Kerberos pre-" -"authentication. The following options are supported:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:373 -msgid "" -"<emphasis>never</emphasis> use FAST, this is equivalent to not set this " -"option at all." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:377 -msgid "" -"<emphasis>try</emphasis> to use FAST, if the server does not support fast " -"continue without." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:381 -msgid "" -"<emphasis>demand</emphasis> to use FAST, fail if the server does not require " -"fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:385 -msgid "Default: not set, i.e. FAST is not used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:388 -msgid "Please note that a keytab is required to use fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:391 -msgid "" -"Please note also that sssd supports fast only with MIT Kerberos version 1.8 " -"and above. If sssd used with an older version using this option is a " -"configuration error." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:400 -msgid "krb5_fast_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:403 -msgid "Specifies the server principal to use for FAST." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:412 -msgid "" -"Specifies if the host and user principal should be canonicalized. This " -"feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:65 -msgid "" -"If the auth-module krb5 is used in a SSSD domain, the following options must " -"be used. See the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page, section <quote>DOMAIN " -"SECTIONS</quote> for details on the configuration of a SSSD domain. " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:434 -msgid "" -"The following example assumes that SSSD is correctly configured and FOO is " -"one of the domains in the <replaceable>[sssd]</replaceable> section. This " -"example shows only configuration of Kerberos authentication, it does not " -"include any identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-krb5.5.xml:442 -#, no-wrap -msgid "" -" [domain/FOO]\n" -" auth_provider = krb5\n" -" krb5_server = 192.168.1.1\n" -" krb5_realm = EXAMPLE.COM\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:453 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupadd.8.xml:10 sss_groupadd.8.xml:15 -msgid "sss_groupadd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupadd.8.xml:16 -msgid "create a new group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupadd.8.xml:21 -msgid "" -"<command>sss_groupadd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:32 -msgid "" -"<command>sss_groupadd</command> creates a new group. These groups are " -"compatible with POSIX groups, with the additional feature that they can " -"contain other groups as members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupadd.8.xml:43 -msgid "" -"<option>-g</option>,<option>--gid</option> <replaceable>GID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupadd.8.xml:48 -msgid "" -"Set the GID of the group to the value of <replaceable>GID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_userdel.8.xml:10 sss_userdel.8.xml:15 -msgid "sss_userdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_userdel.8.xml:16 -msgid "delete a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_userdel.8.xml:21 -msgid "" -"<command>sss_userdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:32 -msgid "" -"<command>sss_userdel</command> deletes a user identified by login name " -"<replaceable>LOGIN</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:44 -msgid "<option>-r</option>,<option>--remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:48 -msgid "" -"Files in the user's home directory will be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:56 -msgid "<option>-R</option>,<option>--no-remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:60 -msgid "" -"Files in the user's home directory will NOT be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:68 -msgid "<option>-f</option>,<option>--force</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:72 -msgid "" -"This option forces <command>sss_userdel</command> to remove the user's home " -"directory and mail spool, even if they are not owned by the specified user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:80 -msgid "<option>-k</option>,<option>--kick</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:84 -msgid "Before actually deleting the user, terminate all his processes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:95 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupdel.8.xml:10 sss_groupdel.8.xml:15 -msgid "sss_groupdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupdel.8.xml:16 -msgid "delete a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupdel.8.xml:21 -msgid "" -"<command>sss_groupdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:32 -msgid "" -"<command>sss_groupdel</command> deletes a group identified by its name " -"<replaceable>GROUP</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupshow.8.xml:10 sss_groupshow.8.xml:15 -msgid "sss_groupshow" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupshow.8.xml:16 -msgid "print properties of a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupshow.8.xml:21 -msgid "" -"<command>sss_groupshow</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:32 -msgid "" -"<command>sss_groupshow</command> displays information about a group " -"identified by its name <replaceable>GROUP</replaceable>. The information " -"includes the group ID number, members of the group and the parent group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupshow.8.xml:43 -msgid "<option>-R</option>,<option>--recursive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupshow.8.xml:47 -msgid "" -"Also print indirect group members in a tree-like hierarchy. Note that this " -"also affects printing parent groups - without <option>R</option>, only the " -"direct parent will be printed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_usermod.8.xml:10 sss_usermod.8.xml:15 -msgid "sss_usermod" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_usermod.8.xml:16 -msgid "modify a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_usermod.8.xml:21 -msgid "" -"<command>sss_usermod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:32 -msgid "" -"<command>sss_usermod</command> modifies the account specified by " -"<replaceable>LOGIN</replaceable> to reflect the changes that are specified " -"on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:60 -msgid "The home directory of the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:71 -msgid "The user's login shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:82 -msgid "" -"Append this user to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:96 -msgid "" -"Remove this user from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:103 -msgid "<option>-l</option>,<option>--lock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:107 -msgid "Lock the user account. The user won't be able to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:114 -msgid "<option>-u</option>,<option>--unlock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:118 -msgid "Unlock the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:129 -msgid "The SELinux user for the user's login." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:140 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_cache.8.xml:10 sss_cache.8.xml:15 -msgid "sss_cache" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_cache.8.xml:16 -msgid "perform cache cleanup" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_cache.8.xml:21 -msgid "" -"<command>sss_cache</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_cache.8.xml:31 -msgid "" -"<command>sss_cache</command> invalidates records in SSSD cache. Invalidated " -"records are forced to be reloaded from server as soon as related SSSD " -"backend is online." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:42 -msgid "" -"<option>-u</option>,<option>--user</option> <replaceable>login</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:47 -msgid "Invalidate specific user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:53 -msgid "<option>-U</option>,<option>--users</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:57 -msgid "" -"Invalidate all user records. This option overrides invalidation of specific " -"user if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:64 -msgid "" -"<option>-g</option>,<option>--group</option> <replaceable>group</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:69 -msgid "Invalidate specific group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:75 -msgid "<option>-G</option>,<option>--groups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:79 -msgid "" -"Invalidate all group records. This option overrides invalidation of specific " -"group if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:86 -msgid "" -"<option>-n</option>,<option>--netgroup</option> <replaceable>netgroup</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:91 -msgid "Invalidate specific netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:97 -msgid "<option>-N</option>,<option>--netgroups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:101 -msgid "" -"Invalidate all netgroup records. This option overrides invalidation of " -"specific netgroup if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:108 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>domain</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:113 -msgid "Restrict invalidation process only to a particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_debuglevel.8.xml:10 sss_debuglevel.8.xml:15 -msgid "sss_debuglevel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_debuglevel.8.xml:16 -msgid "change debug level while SSSD is running" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_debuglevel.8.xml:21 -msgid "" -"<command>sss_debuglevel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>NEW_DEBUG_LEVEL</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_debuglevel.8.xml:32 -msgid "" -"<command>sss_debuglevel</command> changes debug level of SSSD monitor and " -"providers to <replaceable>NEW_DEBUG_LEVEL</replaceable> while SSSD is " -"running." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_debuglevel.8.xml:59 -msgid "<replaceable>NEW_DEBUG_LEVEL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_authorizedkeys.1.xml:10 sss_ssh_authorizedkeys.1.xml:15 -msgid "sss_ssh_authorizedkeys" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_ssh_authorizedkeys.1.xml:11 sss_ssh_knownhostsproxy.1.xml:11 -msgid "1" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_authorizedkeys.1.xml:16 -msgid "get OpenSSH authorized keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_authorizedkeys.1.xml:21 -msgid "" -"<command>sss_ssh_authorizedkeys</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>USER</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:32 -msgid "" -"<command>sss_ssh_authorizedkeys</command> acquires SSH public keys for user " -"<replaceable>USER</replaceable> and outputs them in OpenSSH authorized_keys " -"format (see the <quote>AUTHORIZED_KEYS FILE FORMAT</quote> section of " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> for more information)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:41 -msgid "" -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_authorizedkeys</" -"command> for public key user authentication if it is compiled with support " -"for either <quote>AuthorizedKeysCommand</quote> or <quote>PubkeyAgent</" -"quote> <citerefentry> <refentrytitle>sshd_config</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:58 -#, no-wrap -msgid "AuthorizedKeysCommand /usr/bin/sss_ssh_authorizedkeys\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:51 -msgid "" -"If <quote>AuthorizedKeysCommand</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by putting the following directive " -"in <citerefentry> <refentrytitle>sshd_config</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry>: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:69 -#, no-wrap -msgid "PubKeyAgent /usr/bin/sss_ssh_authorizedkeys %u\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:62 -msgid "" -"If <quote>PubkeyAgent</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by using the following directive " -"for <citerefentry> <refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> configuration: <placeholder type=\"programlisting" -"\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_authorizedkeys.1.xml:87 -msgid "" -"Search for user public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:98 -msgid "" -"<citerefentry> <refentrytitle>sshd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sshd_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_knownhostsproxy</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_knownhostsproxy.1.xml:10 sss_ssh_knownhostsproxy.1.xml:15 -msgid "sss_ssh_knownhostsproxy" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_knownhostsproxy.1.xml:16 -msgid "get OpenSSH host keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_knownhostsproxy.1.xml:21 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>HOST</replaceable></arg> <arg " -"choice='opt'><replaceable>PROXY_COMMAND</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:33 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> acquires SSH host public keys for " -"host <replaceable>HOST</replaceable>, stores them in a custom OpenSSH " -"known_hosts file (see the <quote>SSH_KNOWN_HOSTS FILE FORMAT</quote> section " -"of <citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> for more information) <filename>/var/lib/sss/" -"pubconf/known_hosts</filename> and estabilishes connection to the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:43 -msgid "" -"If <replaceable>PROXY_COMMAND</replaceable> is specified, it is used to " -"create the connection to the host instead of opening a socket." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_knownhostsproxy.1.xml:55 -#, no-wrap -msgid "" -"ProxyCommand /usr/bin/sss_ssh_knownhostsproxy -p %p %h\n" -"GlobalKnownHostsFile2 /var/lib/sss/pubconf/known_hosts\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:48 -msgid "" -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_knownhostsproxy</" -"command> for host key authentication by using the following directives for " -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> configuration: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_ssh_knownhostsproxy.1.xml:69 -msgid "" -"<option>-p</option>,<option>--port</option> <replaceable>PORT</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:74 -msgid "" -"Use port <replaceable>PORT</replaceable> to connect to the host. By " -"default, port 22 is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:86 -msgid "" -"Search for host public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:97 -msgid "" -"<citerefentry> <refentrytitle>ssh</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>ssh_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_authorizedkeys</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/service_discovery.xml:2 -msgid "SERVICE DISCOVERY" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/service_discovery.xml:4 -msgid "" -"The service discovery feature allows back ends to automatically find the " -"appropriate servers to connect to using a special DNS query." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:9 -msgid "Configuration" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:11 -msgid "" -"If no servers are specified, the back end automatically uses service " -"discovery to try to find a server. Optionally, the user may choose to use " -"both fixed server addresses and service discovery by inserting a special " -"keyword, <quote>_srv_</quote>, in the list of servers. The order of " -"preference is maintained. This feature is useful if, for example, the user " -"prefers to use service discovery whenever possible, and fall back to a " -"specific server when no servers can be discovered using DNS." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:23 -msgid "The domain name" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:25 -msgid "" -"Please refer to the <quote>dns_discovery_domain</quote> parameter in the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for more details." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:35 -msgid "The protocol" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:37 -msgid "" -"The queries usually specify _tcp as the protocol. Exceptions are documented " -"in respective option description." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:42 -msgid "See Also" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:44 -msgid "" -"For more information on the service discovery mechanism, refer to RFC 2782." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/upstream.xml:1 -msgid "<placeholder type=\"refentryinfo\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/failover.xml:2 -msgid "FAILOVER" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/failover.xml:4 -msgid "" -"The failover feature allows back ends to automatically switch to a different " -"server if the primary server fails." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:8 -msgid "Failover Syntax" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:10 -msgid "" -"The list of servers is given as a comma-separated list; any number of spaces " -"is allowed around the comma. The servers are listed in order of preference. " -"The list can contain any number of servers." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:17 -msgid "The Failover Mechanism" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:19 -msgid "" -"The failover mechanism distinguishes between a machine and a service. The " -"back end first tries to resolve the hostname of a given machine; if this " -"resolution attempt fails, the machine is considered offline. No further " -"attempts are made to connect to this machine for any other service. If the " -"resolution attempt succeeds, the back end tries to connect to a service on " -"this machine. If the service connection attempt fails, then only this " -"particular service is considered offline and the back end automatically " -"switches over to the next service. The machine is still considered online " -"and might still be tried for another service." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:32 -msgid "" -"Further connection attempts are made to machines or services marked as " -"offline after a specified period of time; this is currently hard coded to 30 " -"seconds." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:37 -msgid "" -"If there are no more machines to try, the back end as a whole switches to " -"offline mode, and then attempts to reconnect every 30 seconds." -msgstr "" - -#. type: Content of: <varlistentry><term> -#: include/param_help.xml:3 -msgid "<option>-h</option>,<option>--help</option>" -msgstr "" - -#. type: Content of: <varlistentry><listitem><para> -#: include/param_help.xml:7 -msgid "Display help message and exit." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:3 -msgid "" -"Bit mask that indicates which debug levels will be visible. 0x0010 is the " -"default value as well as the lowest allowed value, 0xFFF0 is the most " -"verbose mode. This setting overrides the settings from config file." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:8 -msgid "Currently supported debug levels:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:11 -msgid "" -"<emphasis>0x0010</emphasis>: Fatal failures. Anything that would prevent " -"SSSD from starting up or causes it to cease running." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:15 -msgid "" -"<emphasis>0x0020</emphasis>: Critical failures. An error that doesn't kill " -"the SSSD, but one that indicates that at least one major feature is not " -"going to work properly." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:20 -msgid "" -"<emphasis>0x0040</emphasis>: Serious failures. An error announcing that a " -"particular request or operation has failed." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:24 -msgid "" -"<emphasis>0x0080</emphasis>: Minor failures. These are the errors that would " -"percolate down to cause the operation failure of 2." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:28 -msgid "<emphasis>0x0100</emphasis>: Configuration settings." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:31 -msgid "<emphasis>0x0200</emphasis>: Function data." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:34 -msgid "<emphasis>0x0400</emphasis>: Trace messages for operation functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:37 -msgid "" -"<emphasis>0x1000</emphasis>: Trace messages for internal control functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:40 -msgid "" -"<emphasis>0x2000</emphasis>: Contents of function-internal variables that " -"may be interesting." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:43 -msgid "<emphasis>0x4000</emphasis>: Extremely low-level tracing information." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:46 -msgid "" -"To log required debug levels, simply add their numbers together as shown in " -"following examples:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:49 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, critical failures, " -"serious failures and function data use 0x0270." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:53 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, configuration settings, " -"function data, trace messages for internal control functions use 0x1310." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:57 -msgid "" -"<emphasis>Note</emphasis>: This is new format of debug levels introduced in " -"1.7.0. Older format (numbers from 0-10) is compatible but deprecated." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/experimental.xml:1 -msgid "" -"<emphasis> This is an experimental feature, please use http://fedorahosted." -"org/sssd to report any issues. </emphasis>" -msgstr "" diff --git a/src/man/po/vi.po b/src/man/po/vi.po deleted file mode 100644 index 42c2d5103..000000000 --- a/src/man/po/vi.po +++ /dev/null @@ -1,6748 +0,0 @@ -# SOME DESCRIPTIVE TITLE -# Copyright (C) YEAR Red Hat -# This file is distributed under the same license as the sssd-docs package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@redhat.com\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-12-23 15:35+0000\n" -"Last-Translator: FULL NAME <EMAIL@ADDRESS>\n" -"Language-Team: Vietnamese (http://www.transifex.net/projects/p/fedora/team/" -"vi/)\n" -"Language: vi\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=1; plural=0\n" - -#. type: Content of: <reference><title> -#: sss_groupmod.8.xml:5 sssd.conf.5.xml:5 sssd-ldap.5.xml:5 pam_sss.8.xml:5 -#: sssd_krb5_locator_plugin.8.xml:5 sssd-simple.5.xml:5 sssd-ipa.5.xml:5 -#: sssd.8.xml:5 sss_obfuscate.8.xml:5 sss_useradd.8.xml:5 sssd-krb5.5.xml:5 -#: sss_groupadd.8.xml:5 sss_userdel.8.xml:5 sss_groupdel.8.xml:5 -#: sss_groupshow.8.xml:5 sss_usermod.8.xml:5 sss_cache.8.xml:5 -#: sss_debuglevel.8.xml:5 sss_ssh_authorizedkeys.1.xml:5 -#: sss_ssh_knownhostsproxy.1.xml:5 -msgid "SSSD Manual pages" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupmod.8.xml:10 sss_groupmod.8.xml:15 -msgid "sss_groupmod" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_groupmod.8.xml:11 pam_sss.8.xml:14 sssd_krb5_locator_plugin.8.xml:11 -#: sssd.8.xml:11 sss_obfuscate.8.xml:11 sss_useradd.8.xml:11 -#: sss_groupadd.8.xml:11 sss_userdel.8.xml:11 sss_groupdel.8.xml:11 -#: sss_groupshow.8.xml:11 sss_usermod.8.xml:11 sss_cache.8.xml:11 -#: sss_debuglevel.8.xml:11 -msgid "8" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupmod.8.xml:16 -msgid "modify a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupmod.8.xml:21 -msgid "" -"<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:30 sssd-ldap.5.xml:21 pam_sss.8.xml:44 -#: sssd_krb5_locator_plugin.8.xml:20 sssd-simple.5.xml:22 sssd-ipa.5.xml:21 -#: sssd.8.xml:29 sss_obfuscate.8.xml:30 sss_useradd.8.xml:30 -#: sssd-krb5.5.xml:21 sss_groupadd.8.xml:30 sss_userdel.8.xml:30 -#: sss_groupdel.8.xml:30 sss_groupshow.8.xml:30 sss_usermod.8.xml:30 -#: sss_cache.8.xml:29 sss_debuglevel.8.xml:30 sss_ssh_authorizedkeys.1.xml:30 -#: sss_ssh_knownhostsproxy.1.xml:31 -msgid "DESCRIPTION" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:32 -msgid "" -"<command>sss_groupmod</command> modifies the group to reflect the changes " -"that are specified on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:39 pam_sss.8.xml:51 sssd.8.xml:42 sss_obfuscate.8.xml:58 -#: sss_useradd.8.xml:39 sss_groupadd.8.xml:39 sss_userdel.8.xml:39 -#: sss_groupdel.8.xml:39 sss_groupshow.8.xml:39 sss_usermod.8.xml:39 -#: sss_cache.8.xml:38 sss_debuglevel.8.xml:38 sss_ssh_authorizedkeys.1.xml:78 -#: sss_ssh_knownhostsproxy.1.xml:65 -msgid "OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:43 sss_usermod.8.xml:77 -msgid "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:48 -msgid "" -"Append this group to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:57 sss_usermod.8.xml:91 -msgid "" -"<option>-r</option>,<option>--remove-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:62 -msgid "" -"Remove this group from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:72 sssd.conf.5.xml:1331 sssd-ldap.5.xml:2096 -#: pam_sss.8.xml:139 sssd_krb5_locator_plugin.8.xml:75 sssd-simple.5.xml:143 -#: sssd-ipa.5.xml:562 sssd.8.xml:191 sss_obfuscate.8.xml:103 -#: sss_useradd.8.xml:167 sssd-krb5.5.xml:451 sss_groupadd.8.xml:58 -#: sss_userdel.8.xml:93 sss_groupdel.8.xml:46 sss_groupshow.8.xml:58 -#: sss_usermod.8.xml:138 sss_ssh_authorizedkeys.1.xml:96 -#: sss_ssh_knownhostsproxy.1.xml:95 -msgid "SEE ALSO" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:74 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.conf.5.xml:10 sssd.conf.5.xml:16 -msgid "sssd.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sssd.conf.5.xml:11 sssd-ldap.5.xml:11 sssd-simple.5.xml:11 -#: sssd-ipa.5.xml:11 sssd-krb5.5.xml:11 -msgid "5" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><refmiscinfo> -#: sssd.conf.5.xml:12 sssd-ldap.5.xml:12 sssd-simple.5.xml:12 -#: sssd-ipa.5.xml:12 sssd-krb5.5.xml:12 -msgid "File Formats and Conventions" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.conf.5.xml:17 sssd-ldap.5.xml:17 sssd_krb5_locator_plugin.8.xml:16 -#: sssd-ipa.5.xml:17 sssd-krb5.5.xml:17 -msgid "the configuration file for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:21 -msgid "FILE FORMAT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:29 -#, no-wrap -msgid "" -" <replaceable>[section]</replaceable>\n" -" <replaceable>key</replaceable> = <replaceable>value</replaceable>\n" -" <replaceable>key2</replaceable> = <replaceable>value2,value3</replaceable>\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:24 -msgid "" -"The file has an ini-style syntax and consists of sections and parameters. A " -"section begins with the name of the section in square brackets and continues " -"until the next section begins. An example of section with single and multi-" -"valued parameters: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:36 -msgid "" -"The data types used are string (no quotes needed), integer and bool (with " -"values of <quote>TRUE/FALSE</quote>)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:41 -msgid "" -"A line comment starts with a hash sign (<quote>#</quote>) or a semicolon " -"(<quote>;</quote>)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:46 -msgid "" -"All sections can have an optional <replaceable>description</replaceable> " -"parameter. Its function is only as a label for the section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:52 -msgid "" -"<filename>sssd.conf</filename> must be a regular file, owned by root and " -"only root may read from or write to the file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:58 -msgid "SPECIAL SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:61 -msgid "The [sssd] section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><title> -#: sssd.conf.5.xml:70 sssd.conf.5.xml:1177 -msgid "Section parameters" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:72 -msgid "config_file_version (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:75 -msgid "" -"Indicates what is the syntax of the config file. SSSD 0.6.0 and later use " -"version 2." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:81 -msgid "services" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:84 -msgid "" -"Comma separated list of services that are started when sssd itself starts." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:88 -msgid "" -"Supported services: nss, pam <phrase condition=\"with_sudo\">, sudo</phrase>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:94 sssd.conf.5.xml:257 -msgid "reconnection_retries (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:97 sssd.conf.5.xml:260 -msgid "" -"Number of times services should attempt to reconnect in the event of a Data " -"Provider crash or restart before they give up" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:102 sssd.conf.5.xml:265 -msgid "Default: 3" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:107 -msgid "domains" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:110 -msgid "" -"A domain is a database containing user information. SSSD can use more " -"domains at the same time, but at least one must be configured or SSSD won't " -"start. This parameter described the list of domains in the order you want " -"them to be queried." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:120 -msgid "re_expression (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:123 -msgid "" -"Regular expression that describes how to parse the string containing user " -"name and domain into these components." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:127 -msgid "" -"Default: <quote>(?P<name>[^@]+)@?(?P<domain>[^@]*$)</quote> " -"which translates to \"the name is everything up to the <quote>@</quote> " -"sign, the domain everything after that\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:132 -msgid "" -"PLEASE NOTE: the support for non-unique named subpatterns is not available " -"on all platforms (e.g. RHEL5 and SLES10). Only platforms with libpcre " -"version 7 or higher can support non-unique named subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:139 -msgid "" -"PLEASE NOTE ALSO: older version of libpcre only support the Python syntax (?" -"P<name>) to label subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:146 -msgid "full_name_format (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:149 -msgid "" -"A <citerefentry> <refentrytitle>printf</refentrytitle> <manvolnum>3</" -"manvolnum> </citerefentry>-compatible format that describes how to translate " -"a (name, domain) tuple into a fully qualified name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:157 -msgid "Default: <quote>%1$s@%2$s</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:162 -msgid "try_inotify (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:165 -msgid "" -"SSSD monitors the state of resolv.conf to identify when it needs to update " -"its internal DNS resolver. By default, we will attempt to use inotify for " -"this, and will fall back to polling resolv.conf every five seconds if " -"inotify cannot be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:173 -msgid "" -"There are some limited situations where it is preferred that we should skip " -"even trying to use inotify. In these rare cases, this option should be set " -"to 'false'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:179 -msgid "" -"Default: true on platforms where inotify is supported. False on other " -"platforms." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:183 -msgid "" -"Note: this option will have no effect on platforms where inotify is " -"unavailable. On these platforms, polling will always be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:190 -msgid "krb5_rcache_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:193 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:197 -msgid "" -"This option accepts a special value __LIBKRB5_DEFAULTS__ that will instruct " -"SSSD to let libkrb5 decide the appropriate location for the replay cache." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:203 -msgid "" -"Default: Distribution-specific and specified at build-time. " -"(__LIBKRB5_DEFAULTS__ if not configured)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:63 -msgid "" -"Individual pieces of SSSD functionality are provided by special SSSD " -"services that are started and stopped together with SSSD. The services are " -"managed by a special service frequently called <quote>monitor</quote>. The " -"<quote>[sssd]</quote> section is used to configure the monitor as well as " -"some other important options like the identity domains. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:216 -msgid "SERVICES SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:218 -msgid "" -"Settings that can be used to configure different services are described in " -"this section. They should reside in the [<replaceable>$NAME</replaceable>] " -"section, for example, for NSS service, the section would be <quote>[nss]</" -"quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:225 -msgid "General service configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:227 -msgid "These options can be used to configure any service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:231 -msgid "debug_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:235 -msgid "debug_timestamps (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:238 -msgid "Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:241 sssd.conf.5.xml:376 sssd-ldap.5.xml:1328 -#: sssd-ldap.5.xml:1446 sssd-ipa.5.xml:206 sssd-ipa.5.xml:241 -msgid "Default: true" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:246 -msgid "debug_microseconds (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:249 -msgid "Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:252 sssd.conf.5.xml:641 sssd-ldap.5.xml:602 -#: sssd-ldap.5.xml:1260 sssd-ldap.5.xml:1397 sssd-ldap.5.xml:1795 -#: sssd-ipa.5.xml:123 sssd-ipa.5.xml:301 sssd-krb5.5.xml:235 -#: sssd-krb5.5.xml:269 sssd-krb5.5.xml:418 -msgid "Default: false" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:270 -msgid "command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:273 -msgid "" -"By default, the executable representing this service is called <command>sssd_" -"${service_name}</command>. This directive allows to change the executable " -"name for the service. In the vast majority of configurations, the default " -"values should suffice." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:281 -msgid "Default: <command>sssd_${service_name}</command>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:289 -msgid "NSS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:291 -msgid "" -"These options can be used to configure the Name Service Switch (NSS) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:296 -msgid "enum_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:299 -msgid "" -"How many seconds should nss_sss cache enumerations (requests for info about " -"all users)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:303 -msgid "Default: 120" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:308 -msgid "entry_cache_nowait_percentage (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:311 -msgid "" -"The entry cache can be set to automatically update entries in the background " -"if they are requested beyond a percentage of the entry_cache_timeout value " -"for the domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:317 -msgid "" -"For example, if the domain's entry_cache_timeout is set to 30s and " -"entry_cache_nowait_percentage is set to 50 (percent), entries that come in " -"after 15 seconds past the last cache update will be returned immediately, " -"but the SSSD will go and update the cache on its own, so that future " -"requests will not need to block waiting for a cache update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:327 -msgid "" -"Valid values for this option are 0-99 and represent a percentage of the " -"entry_cache_timeout for each domain. For performance reasons, this " -"percentage will never reduce the nowait timeout to less than 10 seconds. (0 " -"disables this feature)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:335 -msgid "Default: 50" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:340 -msgid "entry_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:343 -msgid "" -"Specifies for how many seconds nss_sss should cache negative cache hits " -"(that is, queries for invalid database entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:349 sssd.conf.5.xml:669 sssd-krb5.5.xml:223 -msgid "Default: 15" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:354 -msgid "filter_users, filter_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:357 -msgid "" -"Exclude certain users from being fetched from the sss NSS database. This is " -"particularly useful for system accounts. This option can also be set per-" -"domain or include fully-qualified names to filter only users from the " -"particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:364 -msgid "Default: root" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:369 -msgid "filter_users_in_groups (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:372 -msgid "" -"If you want filtered user still be group members set this option to false." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:381 -msgid "override_homedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:390 sssd-krb5.5.xml:166 -msgid "%u" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:391 sssd-krb5.5.xml:167 -msgid "login name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:394 sssd-krb5.5.xml:170 -msgid "%U" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:395 -msgid "UID number" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:398 sssd-krb5.5.xml:188 -msgid "%d" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:399 -msgid "domain name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:402 -msgid "%f" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:403 -msgid "fully qualified user name (user@domain)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:406 sssd-krb5.5.xml:200 -msgid "%%" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:407 sssd-krb5.5.xml:201 -msgid "a literal '%'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:384 -msgid "" -"Override the user's home directory. You can either provide an absolute value " -"or a template. In the template, the following sequences are substituted: " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:413 -msgid "This option can also be set per-domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:418 -msgid "allowed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:421 -msgid "" -"Restrict user shell to one of the listed values. The order of evaluation is:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:424 -msgid "1. If the shell is present in <quote>/etc/shells</quote>, it is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:428 -msgid "" -"2. If the shell is in the allowed_shells list but not in <quote>/etc/shells</" -"quote>, use the value of the shell_fallback parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:433 -msgid "" -"3. If the shell is not in the allowed_shells list and not in <quote>/etc/" -"shells</quote>, a nologin shell is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:438 -msgid "An empty string for shell is passed as-is to libc." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:441 -msgid "" -"The <quote>/etc/shells</quote> is only read on SSSD start up, which means " -"that a restart of the SSSD is required in case a new shell is installed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:445 -msgid "Default: Not set. The user shell is automatically used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:450 -msgid "vetoed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:453 -msgid "Replace any instance of these shells with the shell_fallback" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:458 -msgid "shell_fallback (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:461 -msgid "" -"The default shell to use if an allowed shell is not installed on the machine." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:465 -msgid "Default: /bin/sh" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:472 -msgid "PAM configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:474 -msgid "" -"These options can be used to configure the Pluggable Authentication Module " -"(PAM) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:479 -msgid "offline_credentials_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:482 -msgid "" -"If the authentication provider is offline, how long should we allow cached " -"logins (in days since the last successful online login)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:487 sssd.conf.5.xml:500 -msgid "Default: 0 (No limit)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:493 -msgid "offline_failed_login_attempts (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:496 -msgid "" -"If the authentication provider is offline, how many failed login attempts " -"are allowed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:506 -msgid "offline_failed_login_delay (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:509 -msgid "" -"The time in minutes which has to pass after offline_failed_login_attempts " -"has been reached before a new login attempt is possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:514 -msgid "" -"If set to 0 the user cannot authenticate offline if " -"offline_failed_login_attempts has been reached. Only a successful online " -"authentication can enable offline authentication again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:520 sssd.conf.5.xml:573 sssd.conf.5.xml:1093 -msgid "Default: 5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:526 -msgid "pam_verbosity (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:529 -msgid "" -"Controls what kind of messages are shown to the user during authentication. " -"The higher the number to more messages are displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:534 -msgid "Currently sssd supports the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:537 -msgid "<emphasis>0</emphasis>: do not show any message" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:540 -msgid "<emphasis>1</emphasis>: show only important messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:544 -msgid "<emphasis>2</emphasis>: show informational messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:547 -msgid "<emphasis>3</emphasis>: show all messages and debug information" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:551 sssd.8.xml:63 -msgid "Default: 1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:556 -msgid "pam_id_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:559 -msgid "" -"For any PAM request while SSSD is online, the SSSD will attempt to " -"immediately update the cached identity information for the user in order to " -"ensure that authentication takes place with the latest information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:565 -msgid "" -"A complete PAM conversation may perform multiple PAM requests, such as " -"account management and session opening. This option controls (on a per-" -"client-application basis) how long (in seconds) we can cache the identity " -"information to avoid excessive round-trips to the identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:579 -msgid "pam_pwd_expiration_warning (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:582 -msgid "Display a warning N days before the password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:585 -msgid "" -"Please note that the backend server has to provide information about the " -"expiration time of the password. If this information is missing, sssd " -"cannot display a warning." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:591 -msgid "Default: 7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:599 -msgid "SUDO configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:601 -msgid "These options can be used to configure the sudo service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:608 -msgid "sudo_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:611 -msgid "" -"For any sudo request that comes while SSSD is online, the SSSD will attempt " -"to update the cached rules in order to ensure that sudo has the latest " -"ruleset." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:617 -msgid "" -"The user may, however, run a couple of sudo commands successively, which " -"would trigger multiple LDAP requests. In order to speed up this use-case, " -"the sudo service maintains an in-memory cache that would be used for " -"performing fast replies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:624 -msgid "" -"This option controls how long (in seconds) can the sudo service cache rules " -"for a user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:628 -msgid "Default: 180" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:633 -msgid "sudo_timed (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:636 -msgid "" -"Whether or not to evaluate the sudoNotBefore and sudoNotAfter attributes " -"that implement time-dependent sudoers entries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:649 -msgid "AUTOFS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:651 -msgid "These options can be used to configure the autofs service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:659 -msgid "autofs_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:662 -msgid "" -"Specifies for how many seconds should the autofs responder negative cache " -"hits (that is, queries for invalid map entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:679 -msgid "DOMAIN SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:686 -msgid "min_id,max_id (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:689 -msgid "" -"UID and GID limits for the domain. If a domain contains an entry that is " -"outside these limits, it is ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:694 -msgid "" -"For users, this affects the primary GID limit. The user will not be returned " -"to NSS if either the UID or the primary GID is outside the range. For non-" -"primary group memberships, those that are in range will be reported as " -"expected." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:701 -msgid "Default: 1 for min_id, 0 (no limit) for max_id" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:707 -msgid "timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:710 -msgid "" -"Timeout in seconds between heartbeats for this domain. This is used to " -"ensure that the backend process is alive and capable of answering requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:715 sssd-ldap.5.xml:1131 -msgid "Default: 10" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:721 -msgid "enumerate (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:724 -msgid "" -"Determines if a domain can be enumerated. This parameter can have one of the " -"following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:728 -msgid "TRUE = Users and groups are enumerated" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:731 -msgid "FALSE = No enumerations for this domain" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:734 sssd.conf.5.xml:839 sssd.conf.5.xml:893 -msgid "Default: FALSE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:737 -msgid "" -"Note: Enabling enumeration has a moderate performance impact on SSSD while " -"enumeration is running. It may take up to several minutes after SSSD startup " -"to fully complete enumerations. During this time, individual requests for " -"information will go directly to LDAP, though it may be slow, due to the " -"heavy enumeration processing." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:747 -msgid "" -"While the first enumeration is running, requests for the complete user or " -"group lists may return no results until it completes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:752 -msgid "" -"Further, enabling enumeration may increase the time necessary to detect " -"network disconnection, as longer timeouts are required to ensure that " -"enumeration lookups are completed successfully. For more information, refer " -"to the man pages for the specific id_provider in use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:763 -msgid "entry_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:766 -msgid "" -"How many seconds should nss_sss consider entries valid before asking the " -"backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:770 -msgid "Default: 5400" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:776 -msgid "entry_cache_user_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:779 -msgid "" -"How many seconds should nss_sss consider user entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:783 sssd.conf.5.xml:796 sssd.conf.5.xml:809 -#: sssd.conf.5.xml:822 -msgid "Default: entry_cache_timeout" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:789 -msgid "entry_cache_group_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:792 -msgid "" -"How many seconds should nss_sss consider group entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:802 -msgid "entry_cache_netgroup_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:805 -msgid "" -"How many seconds should nss_sss consider netgroup entries valid before " -"asking the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:815 -msgid "entry_cache_service_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:818 -msgid "" -"How many seconds should nss_sss consider service entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:828 -msgid "cache_credentials (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:831 -msgid "Determines if user credentials are also cached in the local LDB cache" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:835 -msgid "User credentials are stored in a SHA512 hash, not in plaintext" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:844 -msgid "account_cache_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:847 -msgid "" -"Number of days entries are left in cache after last successful login before " -"being removed during a cleanup of the cache. 0 means keep forever. The " -"value of this parameter must be greater than or equal to " -"offline_credentials_expiration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:854 -msgid "Default: 0 (unlimited)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:860 -msgid "id_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:863 -msgid "The Data Provider identity backend to use for this domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:867 -msgid "Supported backends:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:870 -msgid "proxy: Support a legacy NSS provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:873 -msgid "local: SSSD internal local provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:876 -msgid "ldap: LDAP provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:882 -msgid "use_fully_qualified_names (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:885 -msgid "" -"If set to TRUE, all requests to this domain must use fully qualified names. " -"For example, if used in LOCAL domain that contains a \"test\" user, " -"<command>getent passwd test</command> wouldn't find the user while " -"<command>getent passwd test@LOCAL</command> would." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:898 -msgid "auth_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:901 -msgid "" -"The authentication provider used for the domain. Supported auth providers " -"are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:905 -msgid "" -"<quote>ldap</quote> for native LDAP authentication. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:912 -msgid "" -"<quote>krb5</quote> for Kerberos authentication. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:919 -msgid "" -"<quote>proxy</quote> for relaying authentication to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:922 -msgid "<quote>none</quote> disables authentication explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:925 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"authentication requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:931 -msgid "access_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:934 -msgid "" -"The access control provider used for the domain. There are two built-in " -"access providers (in addition to any included in installed backends) " -"Internal special providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:940 -msgid "<quote>permit</quote> always allow access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:943 -msgid "<quote>deny</quote> always deny access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:946 -msgid "" -"<quote>simple</quote> access control based on access or deny lists. See " -"<citerefentry> <refentrytitle>sssd-simple</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry> for more information on configuring the simple " -"access module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:953 -msgid "Default: <quote>permit</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:958 -msgid "chpass_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:961 -msgid "" -"The provider which should handle change password operations for the domain. " -"Supported change password providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:966 -msgid "" -"<quote>ipa</quote> to change a password stored in an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:974 -msgid "" -"<quote>ldap</quote> to change a password stored in a LDAP server. See " -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:982 -msgid "" -"<quote>krb5</quote> to change the Kerberos password. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:990 -msgid "" -"<quote>proxy</quote> for relaying password changes to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:994 -msgid "<quote>none</quote> disallows password changes explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:997 -msgid "" -"Default: <quote>auth_provider</quote> is used if it is set and can handle " -"change password requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1004 -msgid "sudo_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1010 -msgid "The SUDO provider used for the domain. Supported SUDO providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1014 -msgid "" -"<quote>ldap</quote> for rules stored in LDAP. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1021 -msgid "<quote>none</quote> disables SUDO explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1024 -msgid "Default: The value of <quote>id_provider</quote> is used if it is set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1030 -msgid "session_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1033 -msgid "" -"The provider which should handle loading of session settings. Supported " -"session providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1038 -msgid "" -"<quote>ipa</quote> to load session settings from an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1046 -msgid "<quote>none</quote> disallows fetching session settings explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1049 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"session loading requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1056 -msgid "lookup_family_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1059 -msgid "" -"Provides the ability to select preferred address family to use when " -"performing DNS lookups." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1063 -msgid "Supported values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1066 -msgid "ipv4_first: Try looking up IPv4 address, if that fails, try IPv6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1069 -msgid "ipv4_only: Only attempt to resolve hostnames to IPv4 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1072 -msgid "ipv6_first: Try looking up IPv6 address, if that fails, try IPv4" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1075 -msgid "ipv6_only: Only attempt to resolve hostnames to IPv6 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1078 -msgid "Default: ipv4_first" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1084 -msgid "dns_resolver_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1087 -msgid "" -"Defines the amount of time (in seconds) to wait for a reply from the DNS " -"resolver before assuming that it is unreachable. If this timeout is reached, " -"the domain will continue to operate in offline mode." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1099 -msgid "dns_discovery_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1102 -msgid "" -"If service discovery is used in the back end, specifies the domain part of " -"the service discovery DNS query." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1106 -msgid "Default: Use the domain part of machine's hostname" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1112 -msgid "override_gid (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1115 -msgid "Override the primary GID value with the one specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1121 -msgid "case_sensitive (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1124 -msgid "" -"Treat user and group names as case sensitive. At the moment, this option is " -"not supported in the local provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1129 -msgid "Default: True" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:681 -msgid "" -"These configuration options can be present in a domain configuration " -"section, that is, in a section called <quote>[domain/<replaceable>NAME</" -"replaceable>]</quote> <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1141 -msgid "proxy_pam_target (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1144 -msgid "The proxy target PAM proxies to." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1147 -msgid "" -"Default: not set by default, you have to take an existing pam configuration " -"or create a new one and add the service name here." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1155 -msgid "proxy_lib_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1158 -msgid "" -"The name of the NSS library to use in proxy domains. The NSS functions " -"searched for in the library are in the form of _nss_$(libName)_$(function), " -"for example _nss_files_getpwent." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1137 -msgid "" -"Options valid for proxy domains. <placeholder type=\"variablelist\" id=" -"\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:1170 -msgid "The local domain section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:1172 -msgid "" -"This section contains settings for domain that stores users and groups in " -"SSSD native database, that is, a domain that uses " -"<replaceable>id_provider=local</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1179 -msgid "default_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1182 -msgid "The default shell for users created with SSSD userspace tools." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1186 -msgid "Default: <filename>/bin/bash</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1191 -msgid "base_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1194 -msgid "" -"The tools append the login name to <replaceable>base_directory</replaceable> " -"and use that as the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1199 -msgid "Default: <filename>/home</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1204 -msgid "create_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1207 -msgid "" -"Indicate if a home directory should be created by default for new users. " -"Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1211 sssd.conf.5.xml:1223 -msgid "Default: TRUE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1216 -msgid "remove_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1219 -msgid "" -"Indicate if a home directory should be removed by default for deleted " -"users. Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1228 -msgid "homedir_umask (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1231 -msgid "" -"Used by <citerefentry> <refentrytitle>sss_useradd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry> to specify the default permissions " -"on a newly created home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1239 -msgid "Default: 077" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1244 -msgid "skel_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1247 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<citerefentry> <refentrytitle>sss_useradd</refentrytitle> <manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1257 -msgid "Default: <filename>/etc/skel</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1262 -msgid "mail_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1265 -msgid "" -"The mail spool directory. This is needed to manipulate the mailbox when its " -"corresponding user account is modified or deleted. If not specified, a " -"default value is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1272 -msgid "Default: <filename>/var/mail</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1277 -msgid "userdel_cmd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1280 -msgid "" -"The command that is run after a user is removed. The command us passed the " -"username of the user being removed as the first and only parameter. The " -"return code of the command is not taken into account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1286 -msgid "Default: None, no command is run" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:1296 sssd-ldap.5.xml:2064 sssd-simple.5.xml:126 -#: sssd-ipa.5.xml:544 sssd-krb5.5.xml:432 -msgid "EXAMPLE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:1302 -#, no-wrap -msgid "" -"[sssd]\n" -"domains = LDAP\n" -"services = nss, pam\n" -"config_file_version = 2\n" -"\n" -"[nss]\n" -"filter_groups = root\n" -"filter_users = root\n" -"\n" -"[pam]\n" -"\n" -"[domain/LDAP]\n" -"id_provider = ldap\n" -"ldap_uri = ldap://ldap.example.com\n" -"ldap_search_base = dc=example,dc=com\n" -"\n" -"auth_provider = krb5\n" -"krb5_server = kerberos.example.com\n" -"krb5_realm = EXAMPLE.COM\n" -"cache_credentials = true\n" -"\n" -"min_id = 10000\n" -"max_id = 20000\n" -"enumerate = False\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1298 -msgid "" -"The following example shows a typical SSSD config. It does not describe " -"configuration of the domains themselves - refer to documentation on " -"configuring domains for more details. <placeholder type=\"programlisting\" " -"id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1333 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>pam_sss</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ldap.5.xml:10 sssd-ldap.5.xml:16 -msgid "sssd-ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:23 -msgid "" -"This manual page describes the configuration of LDAP domains for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. Refer to the <quote>FILE FORMAT</quote> section of the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for detailed syntax information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:35 -msgid "You can configure SSSD to use more than one LDAP domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:38 -msgid "" -"LDAP back end supports id, auth, access and chpass providers. If you want to " -"authenticate against an LDAP server either TLS/SSL or LDAPS is required. " -"<command>sssd</command> <emphasis>does not</emphasis> support authentication " -"over an unencrypted channel. If the LDAP server is used only as an identity " -"provider, an encrypted channel is not needed. Please refer to " -"<quote>ldap_access_filter</quote> config option for more information about " -"using LDAP as an access provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:49 sssd-simple.5.xml:69 sssd-ipa.5.xml:64 -#: sssd-krb5.5.xml:63 -msgid "CONFIGURATION OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:60 -msgid "ldap_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:63 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference. Refer to the <quote>FAILOVER</" -"quote> section for more information on failover and server redundancy. If " -"not specified, service discovery is enabled. For more information, refer to " -"the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:70 -msgid "The format of the URI must match the format defined in RFC 2732:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:73 -msgid "ldap[s]://<host>[:port]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:76 -msgid "" -"For explicit IPv6 addresses, <host> must be enclosed in brackets []" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:79 -msgid "example: ldap://[fc00::126:25]:389" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:85 -msgid "ldap_chpass_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:88 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference to change the password of a user. " -"Refer to the <quote>FAILOVER</quote> section for more information on " -"failover and server redundancy." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:95 -msgid "To enable service discovery ldap_chpass_dns_service_name must be set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:99 -msgid "Default: empty, i.e. ldap_uri is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:105 -msgid "ldap_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:108 -msgid "The default base DN to use for performing LDAP user operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:112 -msgid "" -"Starting with SSSD 1.7.0, SSSD supports multiple search bases using the " -"syntax:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:116 -msgid "search_base[?scope?[filter][?search_base?scope?[filter]]*]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:119 -msgid "The scope can be one of \"base\", \"onelevel\" or \"subtree\"." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:122 -msgid "" -"The filter must be a valid LDAP search filter as specified by http://www." -"ietf.org/rfc/rfc2254.txt" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:126 -msgid "Examples:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:129 -msgid "" -"ldap_search_base = dc=example,dc=com (which is equivalent to) " -"ldap_search_base = dc=example,dc=com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:134 -msgid "" -"ldap_search_base = cn=host_specific,dc=example,dc=com?subtree?" -"(host=thishost)?dc=example.com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:137 -msgid "" -"Note: It is unsupported to have multiple search bases which reference " -"identically-named objects (for example, groups with the same name in two " -"different search bases). This will lead to unpredictable behavior on client " -"machines." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:144 -msgid "" -"Default: If not set, the value of the defaultNamingContext or namingContexts " -"attribute from the RootDSE of the LDAP server is used. If " -"defaultNamingContext does not exists or has an empty value namingContexts is " -"used. The namingContexts attribute must have a single value with the DN of " -"the search base of the LDAP server to make this work. Multiple values are " -"are not supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:158 -msgid "ldap_schema (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:161 -msgid "" -"Specifies the Schema Type in use on the target LDAP server. Depending on " -"the selected schema, the default attribute names retrieved from the servers " -"may vary. The way that some attributes are handled may also differ. Three " -"schema types are currently supported: rfc2307 rfc2307bis IPA The main " -"difference between these schema types is how group memberships are recorded " -"in the server. With rfc2307, group members are listed by name in the " -"<emphasis>memberUid</emphasis> attribute. With rfc2307bis and IPA, group " -"members are listed by DN and stored in the <emphasis>member</emphasis> " -"attribute." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:180 -msgid "Default: rfc2307" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:186 -msgid "ldap_default_bind_dn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:189 -msgid "The default bind DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:196 -msgid "ldap_default_authtok_type (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:199 -msgid "The type of the authentication token of the default bind DN." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:203 -msgid "The two mechanisms currently supported are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:206 -msgid "password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:209 -msgid "obfuscated_password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:212 -msgid "Default: password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:218 -msgid "ldap_default_authtok (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:221 -msgid "" -"The authentication token of the default bind DN. Only clear text passwords " -"are currently supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:228 -msgid "ldap_user_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:231 -msgid "The object class of a user entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:234 -msgid "Default: posixAccount" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:240 -msgid "ldap_user_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:243 -msgid "The LDAP attribute that corresponds to the user's login name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:247 -msgid "Default: uid" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:253 -msgid "ldap_user_uid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:256 -msgid "The LDAP attribute that corresponds to the user's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:260 -msgid "Default: uidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:266 -msgid "ldap_user_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:269 -msgid "The LDAP attribute that corresponds to the user's primary group id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:273 sssd-ldap.5.xml:740 -msgid "Default: gidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:279 -msgid "ldap_user_gecos (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:282 -msgid "The LDAP attribute that corresponds to the user's gecos field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:286 -msgid "Default: gecos" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:292 -msgid "ldap_user_home_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:295 -msgid "The LDAP attribute that contains the name of the user's home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:299 -msgid "Default: homeDirectory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:305 -msgid "ldap_user_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:308 -msgid "The LDAP attribute that contains the path to the user's default shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:312 -msgid "Default: loginShell" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:318 -msgid "ldap_user_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:321 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP user object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:325 sssd-ldap.5.xml:766 sssd-ldap.5.xml:878 -msgid "Default: nsUniqueId" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:331 -msgid "ldap_user_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:334 sssd-ldap.5.xml:775 sssd-ldap.5.xml:887 -msgid "" -"The LDAP attribute that contains timestamp of the last modification of the " -"parent object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:338 sssd-ldap.5.xml:779 sssd-ldap.5.xml:894 -msgid "Default: modifyTimestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:344 -msgid "ldap_user_shadow_last_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:347 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (date of " -"the last password change)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:357 -msgid "Default: shadowLastChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:363 -msgid "ldap_user_shadow_min (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:366 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (minimum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:375 -msgid "Default: shadowMin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:381 -msgid "ldap_user_shadow_max (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:384 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (maximum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:393 -msgid "Default: shadowMax" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:399 -msgid "ldap_user_shadow_warning (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:402 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password warning period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:412 -msgid "Default: shadowWarning" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:418 -msgid "ldap_user_shadow_inactive (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:421 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password inactivity period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:431 -msgid "Default: shadowInactive" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:437 -msgid "ldap_user_shadow_expire (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:440 -msgid "" -"When using ldap_pwd_policy=shadow or ldap_account_expire_policy=shadow, this " -"parameter contains the name of an LDAP attribute corresponding to its " -"<citerefentry> <refentrytitle>shadow</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> counterpart (account expiration date)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:450 -msgid "Default: shadowExpire" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:456 -msgid "ldap_user_krb_last_pwd_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:459 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time of last password change in " -"kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:465 -msgid "Default: krbLastPwdChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:471 -msgid "ldap_user_krb_password_expiration (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:474 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time when current password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:480 -msgid "Default: krbPasswordExpiration" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:486 -msgid "ldap_user_ad_account_expires (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:489 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the expiration time of the account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:494 -msgid "Default: accountExpires" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:500 -msgid "ldap_user_ad_user_account_control (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:503 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the user account control bit field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:508 -msgid "Default: userAccountControl" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:514 -msgid "ldap_ns_account_lock (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:517 -msgid "" -"When using ldap_account_expire_policy=rhds or equivalent, this parameter " -"determines if access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:522 -msgid "Default: nsAccountLock" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:528 -msgid "ldap_user_nds_login_disabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:531 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines if " -"access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:535 sssd-ldap.5.xml:549 -msgid "Default: loginDisabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:541 -msgid "ldap_user_nds_login_expiration_time (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:544 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines until " -"which date access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:555 -msgid "ldap_user_nds_login_allowed_time_map (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:558 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines the " -"hours of a day in a week when access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:563 -msgid "Default: loginAllowedTimeMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:569 -msgid "ldap_user_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:572 -msgid "" -"The LDAP attribute that contains the user's Kerberos User Principal Name " -"(UPN)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:576 -msgid "Default: krbPrincipalName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:582 -msgid "ldap_user_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:585 -msgid "The LDAP attribute that contains the user's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:592 -msgid "ldap_force_upper_case_realm (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:595 -msgid "" -"Some directory servers, for example Active Directory, might deliver the " -"realm part of the UPN in lower case, which might cause the authentication to " -"fail. Set this option to a non-zero value if you want to use an upper-case " -"realm." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:608 -msgid "ldap_enumeration_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:611 -msgid "" -"Specifies how many seconds SSSD has to wait before refreshing its cache of " -"enumerated records." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:616 sssd-ldap.5.xml:1808 -msgid "Default: 300" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:622 -msgid "ldap_purge_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:625 -msgid "" -"Determine how often to check the cache for inactive entries (such as groups " -"with no members and users who have never logged in) and remove them to save " -"space." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:631 -msgid "Setting this option to zero will disable the cache cleanup operation." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:635 -msgid "Default: 10800 (12 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:641 -msgid "ldap_user_fullname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:644 -msgid "The LDAP attribute that corresponds to the user's full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:648 sssd-ldap.5.xml:727 sssd-ldap.5.xml:828 -#: sssd-ldap.5.xml:919 sssd-ldap.5.xml:1663 sssd-ldap.5.xml:1881 -#: sssd-ipa.5.xml:422 -msgid "Default: cn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:654 -msgid "ldap_user_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:657 -msgid "The LDAP attribute that lists the user's group memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:661 sssd-ipa.5.xml:326 -msgid "Default: memberOf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:667 -msgid "ldap_user_authorized_service (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:670 -msgid "" -"If access_provider=ldap and ldap_access_order=authorized_service, SSSD will " -"use the presence of the authorizedService attribute in the user's LDAP entry " -"to determine access privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:677 -msgid "" -"An explicit deny (!svc) is resolved first. Second, SSSD searches for " -"explicit allow (svc) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:682 -msgid "Default: authorizedService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:688 -msgid "ldap_user_authorized_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:691 -msgid "" -"If access_provider=ldap and ldap_access_order=host, SSSD will use the " -"presence of the host attribute in the user's LDAP entry to determine access " -"privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:697 -msgid "" -"An explicit deny (!host) is resolved first. Second, SSSD searches for " -"explicit allow (host) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:702 -msgid "Default: host" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:708 -msgid "ldap_group_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:711 -msgid "The object class of a group entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:714 -msgid "Default: posixGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:720 -msgid "ldap_group_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:723 -msgid "The LDAP attribute that corresponds to the group name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:733 -msgid "ldap_group_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:736 -msgid "The LDAP attribute that corresponds to the group's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:746 -msgid "ldap_group_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:749 -msgid "The LDAP attribute that contains the names of the group's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:753 -msgid "Default: memberuid (rfc2307) / member (rfc2307bis)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:759 -msgid "ldap_group_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:762 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP group object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:772 -msgid "ldap_group_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:785 -msgid "ldap_group_nesting_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:788 -msgid "" -"If ldap_schema is set to a schema format that supports nested groups (e.g. " -"RFC2307bis), then this option controls how many levels of nesting SSSD will " -"follow. This option has no effect on the RFC2307 schema." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:795 -msgid "Default: 2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:801 -msgid "ldap_netgroup_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:804 -msgid "The object class of a netgroup entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:807 -msgid "In IPA provider, ipa_netgroup_object_class should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:811 -msgid "Default: nisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:817 -msgid "ldap_netgroup_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:820 -msgid "The LDAP attribute that corresponds to the netgroup name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:824 -msgid "In IPA provider, ipa_netgroup_name should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:834 -msgid "ldap_netgroup_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:837 -msgid "The LDAP attribute that contains the names of the netgroup's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:841 -msgid "In IPA provider, ipa_netgroup_member should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:845 -msgid "Default: memberNisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:851 -msgid "ldap_netgroup_triple (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:854 -msgid "" -"The LDAP attribute that contains the (host, user, domain) netgroup triples." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:858 sssd-ldap.5.xml:891 -msgid "This option is not available in IPA provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:861 -msgid "Default: nisNetgroupTriple" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:867 -msgid "ldap_netgroup_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:870 -msgid "" -"The LDAP attribute that contains the UUID/GUID of an LDAP netgroup object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:874 -msgid "In IPA provider, ipa_netgroup_uuid should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:884 -msgid "ldap_netgroup_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:900 -msgid "ldap_service_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:903 -msgid "The object class of a service entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:906 -msgid "Default: ipService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:912 -msgid "ldap_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:915 -msgid "" -"The LDAP attribute that contains the name of service attributes and their " -"aliases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:925 -msgid "ldap_service_port (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:928 -msgid "The LDAP attribute that contains the port managed by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:932 -msgid "Default: ipServicePort" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:938 -msgid "ldap_service_proto (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:941 -msgid "" -"The LDAP attribute that contains the protocols understood by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:945 -msgid "Default: ipServiceProtocol" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:951 -msgid "ldap_service_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:954 -msgid "An optional base DN to restrict service searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:958 sssd-ldap.5.xml:1918 sssd-ldap.5.xml:1937 -#: sssd-ldap.5.xml:1956 sssd-ldap.5.xml:2019 sssd-ldap.5.xml:2041 -#: sssd-ipa.5.xml:163 sssd-ipa.5.xml:187 -msgid "" -"See <quote>ldap_search_base</quote> for information about configuring " -"multiple search bases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:963 sssd-ldap.5.xml:1923 sssd-ldap.5.xml:1942 -#: sssd-ldap.5.xml:1961 sssd-ldap.5.xml:2024 sssd-ldap.5.xml:2046 -#: sssd-ipa.5.xml:173 sssd-ipa.5.xml:192 -msgid "Default: the value of <emphasis>ldap_search_base</emphasis>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:970 -msgid "ldap_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:973 -msgid "" -"Specifies the timeout (in seconds) that ldap searches are allowed to run " -"before they are cancelled and cached results are returned (and offline mode " -"is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:979 -msgid "" -"Note: this option is subject to change in future versions of the SSSD. It " -"will likely be replaced at some point by a series of timeouts for specific " -"lookup types." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:985 sssd-ldap.5.xml:1027 sssd-ldap.5.xml:1042 -msgid "Default: 6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:991 -msgid "ldap_enumeration_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:994 -msgid "" -"Specifies the timeout (in seconds) that ldap searches for user and group " -"enumerations are allowed to run before they are cancelled and cached results " -"are returned (and offline mode is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1001 -msgid "Default: 60" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1007 -msgid "ldap_network_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1010 -msgid "" -"Specifies the timeout (in seconds) after which the <citerefentry> " -"<refentrytitle>poll</refentrytitle> <manvolnum>2</manvolnum> </citerefentry>/" -"<citerefentry> <refentrytitle>select</refentrytitle> <manvolnum>2</" -"manvolnum> </citerefentry> following a <citerefentry> " -"<refentrytitle>connect</refentrytitle> <manvolnum>2</manvolnum> </" -"citerefentry> returns in case of no activity." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1033 -msgid "ldap_opt_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1036 -msgid "" -"Specifies a timeout (in seconds) after which calls to synchronous LDAP APIs " -"will abort if no response is received. Also controls the timeout when " -"communicating with the KDC in case of SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1048 -msgid "ldap_connection_expire_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1051 -msgid "" -"Specifies a timeout (in seconds) that a connection to an LDAP server will be " -"maintained. After this time, the connection will be re-established. If used " -"in parallel with SASL/GSSAPI, the sooner of the two values (this value vs. " -"the TGT lifetime) will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1059 -msgid "Default: 900 (15 minutes)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1065 -msgid "ldap_page_size (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1068 -msgid "" -"Specify the number of records to retrieve from LDAP in a single request. " -"Some LDAP servers enforce a maximum limit per-request." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1073 -msgid "Default: 1000" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1079 -msgid "ldap_disable_paging" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1082 -msgid "" -"Disable the LDAP paging control. This option should be used if the LDAP " -"server reports that it supports the LDAP paging control in its RootDSE but " -"it is not enabled or does not behave properly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1088 -msgid "" -"Example: OpenLDAP servers with the paging control module installed on the " -"server but not enabled will report it in the RootDSE but be unable to use it." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1094 -msgid "" -"Example: 389 DS has a bug where it can only support a one paging control at " -"a time on a single connection. On busy clients, this can result in some " -"requests being denied." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1103 -msgid "ldap_deref_threshold (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1106 -msgid "" -"Specify the number of group members that must be missing from the internal " -"cache in order to trigger a dereference lookup. If less members are missing, " -"they are looked up individually." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1112 -msgid "" -"You can turn off dereference lookups completely by setting the value to 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1116 -msgid "" -"A dereference lookup is a means of fetching all group members in a single " -"LDAP call. Different LDAP servers may implement different dereference " -"methods. The currently supported servers are 389/RHDS, OpenLDAP and Active " -"Directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1124 -msgid "" -"<emphasis>Note:</emphasis> If any of the search bases specifies a search " -"filter, then the dereference lookup performance enhancement will be disabled " -"regardless of this setting." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1137 -msgid "ldap_tls_reqcert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1140 -msgid "" -"Specifies what checks to perform on server certificates in a TLS session, if " -"any. It can be specified as one of the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1146 -msgid "" -"<emphasis>never</emphasis> = The client will not request or check any server " -"certificate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1150 -msgid "" -"<emphasis>allow</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, it will be ignored and the session proceeds normally." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1157 -msgid "" -"<emphasis>try</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, the session is immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1163 -msgid "" -"<emphasis>demand</emphasis> = The server certificate is requested. If no " -"certificate is provided, or a bad certificate is provided, the session is " -"immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1169 -msgid "<emphasis>hard</emphasis> = Same as <quote>demand</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1173 -msgid "Default: hard" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1179 -msgid "ldap_tls_cacert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1182 -msgid "" -"Specifies the file that contains certificates for all of the Certificate " -"Authorities that <command>sssd</command> will recognize." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1187 sssd-ldap.5.xml:1205 sssd-ldap.5.xml:1246 -msgid "" -"Default: use OpenLDAP defaults, typically in <filename>/etc/openldap/ldap." -"conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1194 -msgid "ldap_tls_cacertdir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1197 -msgid "" -"Specifies the path of a directory that contains Certificate Authority " -"certificates in separate individual files. Typically the file names need to " -"be the hash of the certificate followed by '.0'. If available, " -"<command>cacertdir_rehash</command> can be used to create the correct names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1212 -msgid "ldap_tls_cert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1215 -msgid "Specifies the file that contains the certificate for the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1219 sssd-ldap.5.xml:1231 sssd-ldap.5.xml:1979 -#: sssd-ldap.5.xml:2006 sssd-krb5.5.xml:359 -msgid "Default: not set" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1225 -msgid "ldap_tls_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1228 -msgid "Specifies the file that contains the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1237 -msgid "ldap_tls_cipher_suite (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1240 -msgid "" -"Specifies acceptable cipher suites. Typically this is a colon sperated " -"list. See <citerefentry><refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> for format." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1253 -msgid "ldap_id_use_start_tls (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1256 -msgid "" -"Specifies that the id_provider connection must also use <systemitem class=" -"\"protocol\">tls</systemitem> to protect the channel." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1266 -msgid "ldap_sasl_mech (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1269 -msgid "" -"Specify the SASL mechanism to use. Currently only GSSAPI is tested and " -"supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1273 sssd-ldap.5.xml:1428 -msgid "Default: none" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1279 -msgid "ldap_sasl_authid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1282 -msgid "" -"Specify the SASL authorization id to use. When GSSAPI is used, this " -"represents the Kerberos principal used for authentication to the directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1287 -msgid "Default: host/machine.fqdn@REALM" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1293 -msgid "ldap_sasl_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1296 -msgid "" -"If set to true, the LDAP library would perform a reverse lookup to " -"canonicalize the host name during a SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1301 -msgid "Default: false;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1307 -msgid "ldap_krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1310 -msgid "Specify the keytab to use when using SASL/GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1313 -msgid "Default: System keytab, normally <filename>/etc/krb5.keytab</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1319 -msgid "ldap_krb5_init_creds (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1322 -msgid "" -"Specifies that the id_provider should init Kerberos credentials (TGT). This " -"action is performed only if SASL is used and the mechanism selected is " -"GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1334 -msgid "ldap_krb5_ticket_lifetime (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1337 -msgid "Specifies the lifetime in seconds of the TGT if GSSAPI is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1341 -msgid "Default: 86400 (24 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1347 sssd-krb5.5.xml:74 -msgid "krb5_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1350 sssd-krb5.5.xml:77 -msgid "" -"Specifies the comma-separated list of IP addresses or hostnames of the " -"Kerberos servers to which SSSD should connect in the order of preference. " -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. An optional port number (preceded by a " -"colon) may be appended to the addresses or hostnames. If empty, service " -"discovery is enabled - for more information, refer to the <quote>SERVICE " -"DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1362 sssd-krb5.5.xml:89 -msgid "" -"When using service discovery for KDC or kpasswd servers, SSSD first searches " -"for DNS entries that specify _udp as the protocol and falls back to _tcp if " -"none are found." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1367 sssd-krb5.5.xml:94 -msgid "" -"This option was named <quote>krb5_kdcip</quote> in earlier releases of SSSD. " -"While the legacy name is recognized for the time being, users are advised to " -"migrate their config files to use <quote>krb5_server</quote> instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1376 sssd-ipa.5.xml:216 sssd-krb5.5.xml:103 -msgid "krb5_realm (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1379 -msgid "Specify the Kerberos REALM (for SASL/GSSAPI auth)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1382 -msgid "Default: System defaults, see <filename>/etc/krb5.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1388 sssd-ipa.5.xml:231 sssd-krb5.5.xml:409 -msgid "krb5_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1391 -msgid "" -"Specifies if the host principal should be canonicalized when connecting to " -"LDAP server. This feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1403 -msgid "ldap_pwd_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1406 -msgid "" -"Select the policy to evaluate the password expiration on the client side. " -"The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1411 -msgid "" -"<emphasis>none</emphasis> - No evaluation on the client side. This option " -"cannot disable server-side password policies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1416 -msgid "" -"<emphasis>shadow</emphasis> - Use <citerefentry><refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum></citerefentry> style attributes to " -"evaluate if the password has expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1422 -msgid "" -"<emphasis>mit_kerberos</emphasis> - Use the attributes used by MIT Kerberos " -"to determine if the password has expired. Use chpass_provider=krb5 to update " -"these attributes when the password is changed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1434 -msgid "ldap_referrals (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1437 -msgid "Specifies whether automatic referral chasing should be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1441 -msgid "" -"Please note that sssd only supports referral chasing when it is compiled " -"with OpenLDAP version 2.4.13 or higher." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1452 -msgid "ldap_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1455 -msgid "Specifies the service name to use when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1459 -msgid "Default: ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1465 -msgid "ldap_chpass_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1468 -msgid "" -"Specifies the service name to use to find an LDAP server which allows " -"password changes when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1473 -msgid "Default: not set, i.e. service discovery is disabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1479 -msgid "ldap_access_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1482 -msgid "" -"If using access_provider = ldap, this option is mandatory. It specifies an " -"LDAP search filter criteria that must be met for the user to be granted " -"access on this host. If access_provider = ldap and this option is not set, " -"it will result in all users being denied access. Use access_provider = allow " -"to change this default behavior." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1492 sssd-ldap.5.xml:1982 -msgid "Example:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1495 -#, no-wrap -msgid "" -"access_provider = ldap\n" -"ldap_access_filter = memberOf=cn=allowedusers,ou=Groups,dc=example,dc=com\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1499 -msgid "" -"This example means that access to this host is restricted to members of the " -"\"allowedusers\" group in ldap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1504 -msgid "" -"Offline caching for this feature is limited to determining whether the " -"user's last online login was granted access permission. If they were granted " -"access during their last login, they will continue to be granted access " -"while offline and vice-versa." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1512 sssd-ldap.5.xml:1562 -msgid "Default: Empty" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1518 -msgid "ldap_account_expire_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1521 -msgid "" -"With this option a client side evaluation of access control attributes can " -"be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1525 -msgid "" -"Please note that it is always recommended to use server side access control, " -"i.e. the LDAP server should deny the bind request with a suitable error code " -"even if the password is correct." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1532 -msgid "The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1535 -msgid "" -"<emphasis>shadow</emphasis>: use the value of ldap_user_shadow_expire to " -"determine if the account is expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1540 -msgid "" -"<emphasis>ad</emphasis>: use the value of the 32bit field " -"ldap_user_ad_user_account_control and allow access if the second bit is not " -"set. If the attribute is missing access is granted. Also the expiration time " -"of the account is checked." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1547 -msgid "" -"<emphasis>rhds</emphasis>, <emphasis>ipa</emphasis>, <emphasis>389ds</" -"emphasis>: use the value of ldap_ns_account_lock to check if access is " -"allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1553 -msgid "" -"<emphasis>nds</emphasis>: the values of " -"ldap_user_nds_login_allowed_time_map, ldap_user_nds_login_disabled and " -"ldap_user_nds_login_expiration_time are used to check if access is allowed. " -"If both attributes are missing access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1568 -msgid "ldap_access_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1571 -msgid "Comma separated list of access control options. Allowed values are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1575 -msgid "<emphasis>filter</emphasis>: use ldap_access_filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1578 -msgid "<emphasis>expire</emphasis>: use ldap_account_expire_policy" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1582 -msgid "" -"<emphasis>authorized_service</emphasis>: use the authorizedService attribute " -"to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1587 -msgid "<emphasis>host</emphasis>: use the host attribute to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1591 -msgid "Default: filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1594 -msgid "" -"Please note that it is a configuration error if a value is used more than " -"once." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1601 -msgid "ldap_deref (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1604 -msgid "" -"Specifies how alias dereferencing is done when performing a search. The " -"following options are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1609 -msgid "<emphasis>never</emphasis>: Aliases are never dereferenced." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1613 -msgid "" -"<emphasis>searching</emphasis>: Aliases are dereferenced in subordinates of " -"the base object, but not in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1618 -msgid "" -"<emphasis>finding</emphasis>: Aliases are only dereferenced when locating " -"the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1623 -msgid "" -"<emphasis>always</emphasis>: Aliases are dereferenced both in searching and " -"in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1628 -msgid "" -"Default: Empty (this is handled as <emphasis>never</emphasis> by the LDAP " -"client libraries)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:51 -msgid "" -"All of the common configuration options that apply to SSSD domains also " -"apply to LDAP domains. Refer to the <quote>DOMAIN SECTIONS</quote> section " -"of the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for full details. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1639 -msgid "SUDO OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1644 -msgid "ldap_sudorule_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1647 -msgid "The object class of a sudo rule entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1650 -msgid "Default: sudoRole" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1656 -msgid "ldap_sudorule_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1659 -msgid "The LDAP attribute that corresponds to the sudo rule name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1669 -msgid "ldap_sudorule_command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1672 -msgid "The LDAP attribute that corresponds to the command name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1676 -msgid "Default: sudoCommand" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1682 -msgid "ldap_sudorule_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1685 -msgid "" -"The LDAP attribute that corresponds to the host name (or host IP address, " -"host IP network, or host netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1690 -msgid "Default: sudoHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1696 -msgid "ldap_sudorule_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1699 -msgid "" -"The LDAP attribute that corresponds to the user name (or UID, group name or " -"user's netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1703 -msgid "Default: sudoUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1709 -msgid "ldap_sudorule_option (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1712 -msgid "The LDAP attribute that corresponds to the sudo options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1716 -msgid "Default: sudoOption" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1722 -msgid "ldap_sudorule_runasuser (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1725 -msgid "" -"The LDAP attribute that corresponds to the user name that commands may be " -"run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1729 -msgid "Default: sudoRunAsUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1735 -msgid "ldap_sudorule_runasgroup (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1738 -msgid "" -"The LDAP attribute that corresponds to the group name or group GID that " -"commands may be run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1742 -msgid "Default: sudoRunAsGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1748 -msgid "ldap_sudorule_notbefore (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1751 -msgid "" -"The LDAP attribute that corresponds to the start date/time for when the sudo " -"rule is valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1755 -msgid "Default: sudoNotBefore" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1761 -msgid "ldap_sudorule_notafter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1764 -msgid "" -"The LDAP attribute that corresponds to the expiration date/time, after which " -"the sudo rule will no longer be valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1769 -msgid "Default: sudoNotAfter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1775 -msgid "ldap_sudorule_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1778 -msgid "The LDAP attribute that corresponds to the ordering index of the rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1782 -msgid "Default: sudoOrder" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1788 -msgid "ldap_sudo_refresh_enabled (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1791 -msgid "" -"Enables periodical download of all sudo rules. The cache is purged before " -"each update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1801 -msgid "ldap_sudo_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1804 -msgid "" -"How many seconds SSSD has to wait before refreshing its cache of sudo rules." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1642 -msgid "<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1815 -msgid "" -"This manual page only describes attribute name mapping. For detailed " -"explanation of sudo related attribute semantics, see <citerefentry> " -"<refentrytitle>sudoers.ldap</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1825 -msgid "AUTOFS OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1827 -msgid "" -"Please note that the default values correspond to the default schema which " -"is RFC2307." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1834 -msgid "ldap_autofs_map_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1837 sssd-ldap.5.xml:1863 -msgid "The object class of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1840 sssd-ldap.5.xml:1867 -msgid "Default: automountMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1847 -msgid "ldap_autofs_map_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1850 -msgid "The name of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1853 -msgid "Default: ou" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1860 -msgid "ldap_autofs_entry_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1874 -msgid "ldap_autofs_entry_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1877 sssd-ldap.5.xml:1891 -msgid "" -"The key of an automount entry in LDAP. The entry usually corresponds to a " -"mount point." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1888 -msgid "ldap_autofs_entry_value (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1895 -msgid "Default: automountInformation" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1832 -msgid "" -"<placeholder type=\"variablelist\" id=\"0\"/> <placeholder type=" -"\"variablelist\" id=\"1\"/> <placeholder type=\"variablelist\" id=\"2\"/> " -"<placeholder type=\"variablelist\" id=\"3\"/> <placeholder type=" -"\"variablelist\" id=\"4\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1904 -msgid "ADVANCED OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1911 -msgid "ldap_netgroup_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1914 -msgid "" -"An optional base DN to restrict netgroup searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1930 -msgid "ldap_user_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1933 -msgid "An optional base DN to restrict user searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1949 -msgid "ldap_group_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1952 -msgid "An optional base DN to restrict group searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1968 -msgid "ldap_user_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1971 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict user searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1975 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_user_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1985 -#, no-wrap -msgid "" -" ldap_user_search_filter = (loginShell=/bin/tcsh)\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1988 -msgid "" -"This filter would restrict user searches to users that have their shell set " -"to /bin/tcsh." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1995 -msgid "ldap_group_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1998 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict group searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2002 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_group_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2012 -msgid "ldap_sudo_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2015 -msgid "" -"An optional base DN to restrict sudo rules searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2034 -msgid "ldap_autofs_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2037 -msgid "" -"An optional base DN to restrict automounter searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1906 -msgid "" -"These options are supported by LDAP domains, but they should be used with " -"caution. Please include them in your configuration only if you know what you " -"are doing. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2066 -msgid "" -"The following example assumes that SSSD is correctly configured and LDAP is " -"set to one of the domains in the <replaceable>[domains]</replaceable> " -"section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ldap.5.xml:2072 -#, no-wrap -msgid "" -" [domain/LDAP]\n" -" id_provider = ldap\n" -" auth_provider = ldap\n" -" ldap_uri = ldap://ldap.mydomain.org\n" -" ldap_search_base = dc=mydomain,dc=org\n" -" ldap_tls_reqcert = demand\n" -" cache_credentials = true\n" -" enumerate = true\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2071 sssd-simple.5.xml:134 sssd-ipa.5.xml:552 -#: sssd-krb5.5.xml:441 -msgid "<placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:2085 sssd_krb5_locator_plugin.8.xml:61 -msgid "NOTES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2087 -msgid "" -"The descriptions of some of the configuration options in this manual page " -"are based on the <citerefentry> <refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page from the OpenLDAP 2.4 " -"distribution." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2098 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <refentryinfo> -#: pam_sss.8.xml:8 include/upstream.xml:2 -msgid "" -"<productname>SSSD</productname> <orgname>The SSSD upstream - http://" -"fedorahosted.org/sssd</orgname>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: pam_sss.8.xml:13 pam_sss.8.xml:18 -msgid "pam_sss" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: pam_sss.8.xml:19 -msgid "PAM module for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: pam_sss.8.xml:24 -msgid "" -"<command>pam_sss.so</command> <arg choice='opt'> <replaceable>quiet</" -"replaceable> </arg> <arg choice='opt'> <replaceable>forward_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_first_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_authtok</" -"replaceable> </arg> <arg choice='opt'> <replaceable>retry=N</replaceable> </" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:45 -msgid "" -"<command>pam_sss.so</command> is the PAM interface to the System Security " -"Services daemon (SSSD). Errors and results are logged through <command>syslog" -"(3)</command> with the LOG_AUTHPRIV facility." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:55 -msgid "<option>quiet</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:58 -msgid "Suppress log messages for unknown users." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:63 -msgid "<option>forward_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:66 -msgid "" -"If <option>forward_pass</option> is set the entered password is put on the " -"stack for other PAM modules to use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:73 -msgid "<option>use_first_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:76 -msgid "" -"The argument use_first_pass forces the module to use a previous stacked " -"modules password and will never prompt the user - if no password is " -"available or the password is not appropriate, the user will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:84 -msgid "<option>use_authtok</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:87 -msgid "" -"When password changing enforce the module to set the new password to the one " -"provided by a previously stacked password module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:94 -msgid "<option>retry=N</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:97 -msgid "" -"If specified the user is asked another N times for a password if " -"authentication fails. Default is 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:99 -msgid "" -"Please note that this option might not work as expected if the application " -"calling PAM handles the user dialog on its own. A typical example is " -"<command>sshd</command> with <option>PasswordAuthentication</option>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:110 -msgid "MODULE TYPES PROVIDED" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:111 -msgid "" -"All module types (<option>account</option>, <option>auth</option>, " -"<option>password</option> and <option>session</option>) are provided." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:117 -msgid "FILES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:118 -msgid "" -"If a password reset by root fails, because the corresponding SSSD provider " -"does not support password resets, an individual message can be displayed. " -"This message can e.g. contain instructions about how to reset a password." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:123 -msgid "" -"The message is read from the file <filename>pam_sss_pw_reset_message.LOC</" -"filename> where LOC stands for a locale string returned by <citerefentry> " -"<refentrytitle>setlocale</refentrytitle><manvolnum>3</manvolnum> </" -"citerefentry>. If there is no matching file the content of " -"<filename>pam_sss_pw_reset_message.txt</filename> is displayed. Root must be " -"the owner of the files and only root may have read and write permissions " -"while all other users must have only read permissions." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:133 -msgid "" -"These files are searched in the directory <filename>/etc/sssd/customize/" -"DOMAIN_NAME/</filename>. If no matching file is present a generic message is " -"displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:141 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd_krb5_locator_plugin.8.xml:10 sssd_krb5_locator_plugin.8.xml:15 -msgid "sssd_krb5_locator_plugin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:22 -msgid "" -"The Kerberos locator plugin <command>sssd_krb5_locator_plugin</command> is " -"used by the Kerberos provider of <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry> to tell the Kerberos " -"libraries what Realm and which KDC to use. Typically this is done in " -"<citerefentry> <refentrytitle>krb5.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> which is always read by the Kerberos libraries. " -"To simplify the configuration the Realm and the KDC can be defined in " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> as described in <citerefentry> " -"<refentrytitle>sssd-krb5.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry> puts the Realm and the name or IP address of the KDC into " -"the environment variables SSSD_KRB5_REALM and SSSD_KRB5_KDC respectively. " -"When <command>sssd_krb5_locator_plugin</command> is called by the kerberos " -"libraries it reads and evaluates these variables and returns them to the " -"libraries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:63 -msgid "" -"Not all Kerberos implementations support the use of plugins. If " -"<command>sssd_krb5_locator_plugin</command> is not available on your system " -"you have to edit /etc/krb5.conf to reflect your Kerberos setup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:69 -msgid "" -"If the environment variable SSSD_KRB5_LOCATOR_DEBUG is set to any value " -"debug messages will be sent to stderr." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:77 -msgid "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-simple.5.xml:10 sssd-simple.5.xml:16 -msgid "sssd-simple" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd-simple.5.xml:17 -msgid "the configuration file for SSSD's 'simple' access-control provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:24 -msgid "" -"This manual page describes the configuration of the simple access-control " -"provider for <citerefentry> <refentrytitle>sssd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry>. For a detailed syntax reference, " -"refer to the <quote>FILE FORMAT</quote> section of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:38 -msgid "" -"The simple access provider grants or denies access based on an access or " -"deny list of user or group names. The following rules apply:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:43 -msgid "If all lists are empty, access is granted" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:47 -msgid "" -"If any list is provided, the order of evaluation is allow,deny. This means " -"that any matching deny rule will supersede any matched allow rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:54 -msgid "" -"If either or both \"allow\" lists are provided, all users are denied unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:60 -msgid "" -"If only \"deny\" lists are provided, all users are granted access unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:78 -msgid "simple_allow_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:81 -msgid "Comma separated list of users who are allowed to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:88 -msgid "simple_deny_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:91 -msgid "Comma separated list of users who are explicitly denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:97 -msgid "simple_allow_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:100 -msgid "" -"Comma separated list of groups that are allowed to log in. This applies only " -"to groups within this SSSD domain. Local groups are not evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:108 -msgid "simple_deny_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:111 -msgid "" -"Comma separated list of groups that are explicitly denied access. This " -"applies only to groups within this SSSD domain. Local groups are not " -"evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:70 sssd-ipa.5.xml:65 -msgid "" -"Refer to the section <quote>DOMAIN SECTIONS</quote> of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page for details on the configuration of an SSSD " -"domain. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:120 -msgid "" -"Please note that it is an configuration error if both, simple_allow_users " -"and simple_deny_users, are defined." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:128 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the simple access provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-simple.5.xml:135 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" access_provider = simple\n" -" simple_allow_users = user1, user2\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:145 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ipa.5.xml:10 sssd-ipa.5.xml:16 -msgid "sssd-ipa" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:23 -msgid "" -"This manual page describes the configuration of the IPA provider for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. For a detailed syntax reference, refer to the <quote>FILE " -"FORMAT</quote> section of the <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:36 -msgid "" -"The IPA provider is a back end used to connect to an IPA server. (Refer to " -"the freeipa.org web site for information about IPA servers.) This provider " -"requires that the machine be joined to the IPA domain; configuration is " -"almost entirely self-discovered and obtained directly from the server." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:43 -msgid "" -"The IPA provider accepts the same options used by the <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> identity provider and the <citerefentry> <refentrytitle>sssd-" -"krb5</refentrytitle> <manvolnum>5</manvolnum> </citerefentry> authentication " -"provider with some exceptions described below." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:55 -msgid "" -"However, it is neither necessary nor recommended to set these options. IPA " -"provider can also be used as an access and chpass provider. As an access " -"provider it uses HBAC (host-based access control) rules. Please refer to " -"freeipa.org for more information about HBAC. No configuration of access " -"provider is required on the client side." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:72 -msgid "ipa_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:75 -msgid "" -"Specifies the name of the IPA domain. This is optional. If not provided, " -"the configuration domain name is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:83 -msgid "ipa_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:86 -msgid "" -"The comma-separated list of IP addresses or hostnames of the IPA servers to " -"which SSSD should connect in the order of preference. For more information " -"on failover and server redundancy, see the <quote>FAILOVER</quote> section. " -"This is optional if autodiscovery is enabled. For more information on " -"service discovery, refer to the the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:99 -msgid "ipa_hostname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:102 -msgid "" -"Optional. May be set on machines where the hostname(5) does not reflect the " -"fully qualified name used in the IPA domain to identify this host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:110 -msgid "ipa_dyndns_update (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:113 -msgid "" -"Optional. This option tells SSSD to automatically update the DNS server " -"built into FreeIPA v2 with the IP address of this client." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:118 -msgid "" -"NOTE: On older systems (such as RHEL 5), for this behavior to work reliably, " -"the default Kerberos realm must be set properly in /etc/krb5.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:129 -msgid "ipa_dyndns_iface (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:132 -msgid "" -"Optional. Applicable only when ipa_dyndns_update is true. Choose the " -"interface whose IP address should be used for dynamic DNS updates." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:137 -msgid "Default: Use the IP address of the IPA LDAP connection" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:143 -msgid "ipa_hbac_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:146 -msgid "Optional. Use the given string as search base for HBAC related objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:150 -msgid "Default: Use base DN" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:156 -msgid "ipa_host_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:159 -msgid "Optional. Use the given string as search base for host objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:168 -msgid "" -"If filter is given in any of search bases and " -"<emphasis>ipa_hbac_support_srchost</emphasis> is set to False, the filter " -"will be ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:180 -msgid "ipa_selinux_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:183 -msgid "Optional. Use the given string as search base for SELinux user maps." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:199 sssd-krb5.5.xml:229 -msgid "krb5_validate (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:202 sssd-krb5.5.xml:232 -msgid "" -"Verify with the help of krb5_keytab that the TGT obtained has not been " -"spoofed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:209 -msgid "" -"Note that this default differs from the traditional Kerberos provider back " -"end." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:219 -msgid "" -"The name of the Kerberos realm. This is optional and defaults to the value " -"of <quote>ipa_domain</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:223 -msgid "" -"The name of the Kerberos realm has a special meaning in IPA - it is " -"converted into the base DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:234 -msgid "" -"Specifies if the host and user principal should be canonicalized when " -"connecting to IPA LDAP and also for AS requests. This feature is available " -"with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:247 -msgid "ipa_hbac_refresh (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:250 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server. " -"This will reduce the latency and load on the IPA server if there are many " -"access-control requests made in a short period." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:257 -msgid "Default: 5 (seconds)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:262 -msgid "ipa_hbac_treat_deny_as (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:265 -msgid "" -"This option specifies how to treat the deprecated DENY-type HBAC rules. As " -"of FreeIPA v2.1, DENY rules are no longer supported on the server. All users " -"of FreeIPA will need to migrate their rules to use only the ALLOW rules. The " -"client will support two modes of operation during this transition period:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:274 -msgid "" -"<emphasis>DENY_ALL</emphasis>: If any HBAC DENY rules are detected, all " -"users will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:279 -msgid "" -"<emphasis>IGNORE</emphasis>: SSSD will ignore any DENY rules. Be very " -"careful with this option, as it may result in opening unintended access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:284 -msgid "Default: DENY_ALL" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:289 -msgid "ipa_hbac_support_srchost (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:292 -msgid "" -"If this is set to false, then srchost as given to SSSD by PAM will be " -"ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:296 -msgid "" -"Note that if set to <emphasis>False</emphasis>, this option casuses filters " -"given in <emphasis>ipa_host_search_base</emphasis> to be ignored;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:307 -msgid "ipa_automount_location (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:310 -msgid "The automounter location this IPA client will be using" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:313 -msgid "Default: The location named \"default\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:319 -msgid "ipa_netgroup_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:322 -msgid "The LDAP attribute that lists netgroup's memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:331 -msgid "ipa_netgroup_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:334 -msgid "" -"The LDAP attribute that lists system users and groups that are direct " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:339 sssd-ipa.5.xml:434 -msgid "Default: memberUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:344 -msgid "ipa_netgroup_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:347 -msgid "" -"The LDAP attribute that lists hosts and host groups that are direct members " -"of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:351 sssd-ipa.5.xml:446 -msgid "Default: memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:356 -msgid "ipa_netgroup_member_ext_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:359 -msgid "" -"The LDAP attribute that lists FQDNs of hosts and host groups that are " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:363 -msgid "Default: externalHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:368 -msgid "ipa_netgroup_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:371 -msgid "The LDAP attribute that contains NIS domain name of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:375 -msgid "Default: nisDomainName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:381 -msgid "ipa_host_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:384 sssd-ipa.5.xml:407 -msgid "The object class of a host entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:387 sssd-ipa.5.xml:410 -msgid "Default: ipaHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:392 -msgid "ipa_host_fqdn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:395 -msgid "The LDAP attribute that contains FQDN of the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:398 -msgid "Default: fqdn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:404 -msgid "ipa_selinux_usermap_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:415 -msgid "ipa_selinux_usermap_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:418 -msgid "The LDAP attribute that contains the name of SELinux usermap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:427 -msgid "ipa_selinux_usermap_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:430 -msgid "" -"The LDAP attribute that contains all users / groups this rule match against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:439 -msgid "ipa_selinux_usermap_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:442 -msgid "" -"The LDAP attribute that contains all hosts / hostgroups this rule match " -"against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:451 -msgid "ipa_selinux_usermap_see_also (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:454 -msgid "" -"The LDAP attribute that contains DN of HBAC rule which can be used for " -"matching instead of memberUser and memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:459 -msgid "Default: seeAlso" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:464 -msgid "ipa_selinux_usermap_selinux_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:467 -msgid "The LDAP attribute that contains SELinux user string itself." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:471 -msgid "Default: ipaSELinuxUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:476 -msgid "ipa_selinux_usermap_enabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:479 -msgid "" -"The LDAP attribute that contains whether or not is user map enabled for " -"usage." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:483 -msgid "Default: ipaEnabledFlag" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:488 -msgid "ipa_selinux_usermap_user_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:491 -msgid "The LDAP attribute that contains user category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:495 -msgid "Default: userCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:500 -msgid "ipa_selinux_usermap_host_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:503 -msgid "The LDAP attribute that contains host category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:507 -msgid "Default: hostCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:512 -msgid "ipa_selinux_usermap_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:515 -msgid "The LDAP attribute that contains unique ID of the user map." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:519 -msgid "Default: ipaUniqueID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:524 -msgid "ipa_host_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:527 -msgid "The LDAP attribute that contains the host's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:531 -msgid "Default: ipaSshPubKey" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:546 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the ipa provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ipa.5.xml:553 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" id_provider = ipa\n" -" ipa_server = ipaserver.example.com\n" -" ipa_hostname = myhost.example.com\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:564 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.8.xml:10 sssd.8.xml:15 -msgid "sssd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.8.xml:16 -msgid "System Security Services Daemon" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sssd.8.xml:21 -msgid "" -"<command>sssd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:31 -msgid "" -"<command>SSSD</command> provides a set of daemons to manage access to remote " -"directories and authentication mechanisms. It provides an NSS and PAM " -"interface toward the system and a pluggable backend system to connect to " -"multiple different account sources as well as D-Bus interface. It is also " -"the basis to provide client auditing and policy services for projects like " -"FreeIPA. It provides a more robust database to store local users as well as " -"extended user data." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:46 -msgid "" -"<option>-d</option>,<option>--debug-level</option> <replaceable>LEVEL</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:53 -msgid "<option>--debug-timestamps=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:57 -msgid "<emphasis>1</emphasis>: Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:60 -msgid "<emphasis>0</emphasis>: Disable timestamp in the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:69 -msgid "<option>--debug-microseconds=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:73 -msgid "" -"<emphasis>1</emphasis>: Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:76 -msgid "<emphasis>0</emphasis>: Disable microseconds in timestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:79 -msgid "Default: 0" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:85 -msgid "<option>-f</option>,<option>--debug-to-files</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:89 -msgid "" -"Send the debug output to files instead of stderr. By default, the log files " -"are stored in <filename>/var/log/sssd</filename> and there are separate log " -"files for every SSSD service and domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:97 -msgid "<option>-D</option>,<option>--daemon</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:101 -msgid "Become a daemon after starting up." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:107 -msgid "<option>-i</option>,<option>--interactive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:111 -msgid "Run in the foreground, don't become a daemon." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:117 sss_debuglevel.8.xml:42 -msgid "<option>-c</option>,<option>--config</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:121 sss_debuglevel.8.xml:46 -msgid "" -"Specify a non-default config file. The default is <filename>/etc/sssd/sssd." -"conf</filename>. For reference on the config file syntax and options, " -"consult the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:135 -msgid "<option>--version</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:139 -msgid "Print version number and exit." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.8.xml:147 -msgid "Signals" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:150 -msgid "SIGTERM/SIGINT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:153 -msgid "" -"Informs the SSSD to gracefully terminate all of its child processes and then " -"shut down the monitor." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:159 -msgid "SIGHUP" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:162 -msgid "" -"Tells the SSSD to stop writing to its current debug file descriptors and to " -"close and reopen them. This is meant to facilitate log rolling with programs " -"like logrotate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:170 -msgid "SIGUSR1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:173 -msgid "" -"Tells the SSSD to simulate offline operation for one minute. This is mostly " -"useful for testing purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:179 -msgid "SIGUSR2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:182 -msgid "" -"Tells the SSSD to go online immediately. This is mostly useful for testing " -"purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:193 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_obfuscate.8.xml:10 sss_obfuscate.8.xml:15 -msgid "sss_obfuscate" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_obfuscate.8.xml:16 -msgid "obfuscate a clear text password" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_obfuscate.8.xml:21 -msgid "" -"<command>sss_obfuscate</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>[PASSWORD]</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:32 -msgid "" -"<command>sss_obfuscate</command> converts a given password into human-" -"unreadable format and places it into appropriate domain section of the SSSD " -"config file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:37 -msgid "" -"The cleartext password is read from standard input or entered " -"interactively. The obfuscated password is put into " -"<quote>ldap_default_authtok</quote> parameter of a given SSSD domain and the " -"<quote>ldap_default_authtok_type</quote> parameter is set to " -"<quote>obfuscated_password</quote>. Refer to <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more details on these parameters." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:49 -msgid "" -"Please note that obfuscating the password provides <emphasis>no real " -"security benefit</emphasis> as it is still possible for an attacker to " -"reverse-engineer the password back. Using better authentication mechanisms " -"such as client side certificates or GSSAPI is <emphasis>strongly</emphasis> " -"advised." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:63 -msgid "<option>-s</option>,<option>--stdin</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:67 -msgid "The password to obfuscate will be read from standard input." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:74 sss_ssh_authorizedkeys.1.xml:82 -#: sss_ssh_knownhostsproxy.1.xml:81 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>DOMAIN</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:79 -msgid "" -"The SSSD domain to use the password in. The default name is <quote>default</" -"quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:86 -msgid "" -"<option>-f</option>,<option>--file</option> <replaceable>FILE</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:91 -msgid "Read the config file specified by the positional parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:95 -msgid "Default: <filename>/etc/sssd/sssd.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:105 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_useradd.8.xml:10 sss_useradd.8.xml:15 -msgid "sss_useradd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_useradd.8.xml:16 -msgid "create a new user" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_useradd.8.xml:21 -msgid "" -"<command>sss_useradd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:32 -msgid "" -"<command>sss_useradd</command> creates a new user account using the values " -"specified on the command line plus the default values from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:43 -msgid "" -"<option>-u</option>,<option>--uid</option> <replaceable>UID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:48 -msgid "" -"Set the UID of the user to the value of <replaceable>UID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:55 sss_usermod.8.xml:43 -msgid "" -"<option>-c</option>,<option>--gecos</option> <replaceable>COMMENT</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:60 sss_usermod.8.xml:48 -msgid "" -"Any text string describing the user. Often used as the field for the user's " -"full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:67 sss_usermod.8.xml:55 -msgid "" -"<option>-h</option>,<option>--home</option> <replaceable>HOME_DIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:72 -msgid "" -"The home directory of the user account. The default is to append the " -"<replaceable>LOGIN</replaceable> name to <filename>/home</filename> and use " -"that as the home directory. The base that is prepended before " -"<replaceable>LOGIN</replaceable> is tunable with <quote>user_defaults/" -"baseDirectory</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:82 sss_usermod.8.xml:66 -msgid "" -"<option>-s</option>,<option>--shell</option> <replaceable>SHELL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:87 -msgid "" -"The user's login shell. The default is currently <filename>/bin/bash</" -"filename>. The default can be changed with <quote>user_defaults/" -"defaultShell</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:96 -msgid "" -"<option>-G</option>,<option>--groups</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:101 -msgid "A list of existing groups this user is also a member of." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:107 -msgid "<option>-m</option>,<option>--create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:111 -msgid "" -"Create the user's home directory if it does not exist. The files and " -"directories contained in the skeleton directory (which can be defined with " -"the -k option or in the config file) will be copied to the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:121 -msgid "<option>-M</option>,<option>--no-create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:125 -msgid "" -"Do not create the user's home directory. Overrides configuration settings." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:132 -msgid "" -"<option>-k</option>,<option>--skel</option> <replaceable>SKELDIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:137 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<command>sss_useradd</command>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:143 -msgid "" -"This option is only valid if the <option>-m</option> (or <option>--create-" -"home</option>) option is specified, or creation of home directories is set " -"to TRUE in the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:152 sss_usermod.8.xml:124 -msgid "" -"<option>-Z</option>,<option>--selinux-user</option> " -"<replaceable>SELINUX_USER</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:157 -msgid "" -"The SELinux user for the user's login. If not specified, the system default " -"will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:169 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-krb5.5.xml:10 sssd-krb5.5.xml:16 -msgid "sssd-krb5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:23 -msgid "" -"This manual page describes the configuration of the Kerberos 5 " -"authentication backend for <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry>. For a detailed " -"syntax reference, please refer to the <quote>FILE FORMAT</quote> section of " -"the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:36 -msgid "" -"The Kerberos 5 authentication backend contains auth and chpass providers. It " -"must be paired with identity provider in order to function properly (for " -"example, id_provider = ldap). Some information required by the Kerberos 5 " -"authentication backend must be provided by the identity provider, such as " -"the user's Kerberos Principal Name (UPN). The configuration of the identity " -"provider should have an entry to specify the UPN. Please refer to the man " -"page for the applicable identity provider for details on how to configure " -"this." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:47 -msgid "" -"This backend also provides access control based on the .k5login file in the " -"home directory of the user. See <citerefentry> <refentrytitle>.k5login</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry> for more details. " -"Please note that an empty .k5login file will deny all access to this user. " -"To activate this feature use 'access_provider = krb5' in your sssd " -"configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:55 -msgid "" -"In the case where the UPN is not available in the identity backend " -"<command>sssd</command> will construct a UPN using the format " -"<replaceable>username</replaceable>@<replaceable>krb5_realm</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:106 -msgid "" -"The name of the Kerberos realm. This option is required and must be " -"specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:113 -msgid "krb5_kpasswd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:116 -msgid "" -"If the change password service is not running on the KDC alternative servers " -"can be defined here. An optional port number (preceded by a colon) may be " -"appended to the addresses or hostnames." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:122 -msgid "" -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. Please note that even if there are no more " -"kpasswd servers to try the back end is not switch to offline if " -"authentication against the KDC is still possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:129 -msgid "Default: Use the KDC" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:135 -msgid "krb5_ccachedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:138 -msgid "" -"Directory to store credential caches. All the substitution sequences of " -"krb5_ccname_template can be used here, too, except %d and %P. If the " -"directory does not exist it will be created. If %u, %U, %p or %h are used a " -"private directory belonging to the user is created. Otherwise a public " -"directory with restricted deletion flag (aka sticky bit, see <citerefentry> " -"<refentrytitle>chmod</refentrytitle> <manvolnum>1</manvolnum> </" -"citerefentry> for details) is created." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:151 -msgid "Default: /tmp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:157 -msgid "krb5_ccname_template (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:171 -msgid "login UID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:174 -msgid "%p" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:175 -msgid "principal name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:179 -msgid "%r" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:180 -msgid "realm name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:183 -msgid "%h" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:184 -msgid "home directory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:189 -msgid "value of krb5ccache_dir" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:194 -msgid "%P" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:195 -msgid "the process ID of the sssd client" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:160 -msgid "" -"Location of the user's credential cache. Currently only file based " -"credential caches are supported. In the template the following sequences are " -"substituted: <placeholder type=\"variablelist\" id=\"0\"/> If the template " -"ends with 'XXXXXX' mkstemp(3) is used to create a unique filename in a safe " -"way." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:209 -msgid "Default: FILE:%d/krb5cc_%U_XXXXXX" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:215 -msgid "krb5_auth_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:218 -msgid "" -"Timeout in seconds after an online authentication or change password request " -"is aborted. If possible the authentication request is continued offline." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:241 -msgid "krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:244 -msgid "" -"The location of the keytab to use when validating credentials obtained from " -"KDCs." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:248 -msgid "Default: /etc/krb5.keytab" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:254 -msgid "krb5_store_password_if_offline (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:257 -msgid "" -"Store the password of the user if the provider is offline and use it to " -"request a TGT when the provider gets online again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:262 -msgid "" -"Please note that this feature currently only available on a Linux platform. " -"Passwords stored in this way are kept in plaintext in the kernel keyring and " -"are potentially accessible by the root user (with difficulty)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:275 -msgid "krb5_renewable_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:278 -msgid "" -"Request a renewable ticket with a total lifetime given by an integer " -"immediately followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:283 sssd-krb5.5.xml:319 -msgid "<emphasis>s</emphasis> seconds" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:286 sssd-krb5.5.xml:322 -msgid "<emphasis>m</emphasis> minutes" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:289 sssd-krb5.5.xml:325 -msgid "<emphasis>h</emphasis> hours" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:292 sssd-krb5.5.xml:328 -msgid "<emphasis>d</emphasis> days." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:295 sssd-krb5.5.xml:331 -msgid "If there is no delimiter <emphasis>s</emphasis> is assumed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:299 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"renewable lifetime to one and a half hours please use '90m' instead of " -"'1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:305 -msgid "Default: not set, i.e. the TGT is not renewable" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:311 -msgid "krb5_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:314 -msgid "" -"Request ticket with a with a lifetime given by an integer immediately " -"followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:335 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"lifetime to one and a half hours please use '90m' instead of '1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:340 -msgid "" -"Default: not set, i.e. the default ticket lifetime configured on the KDC." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:347 -msgid "krb5_renew_interval (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:350 -msgid "" -"The time in seconds between two checks if the TGT should be renewed. TGTs " -"are renewed if about half of their lifetime is exceeded." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:355 -msgid "If this option is not set or 0 the automatic renewal is disabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:365 -msgid "krb5_use_fast (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:368 -msgid "" -"Enables flexible authentication secure tunneling (FAST) for Kerberos pre-" -"authentication. The following options are supported:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:373 -msgid "" -"<emphasis>never</emphasis> use FAST, this is equivalent to not set this " -"option at all." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:377 -msgid "" -"<emphasis>try</emphasis> to use FAST, if the server does not support fast " -"continue without." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:381 -msgid "" -"<emphasis>demand</emphasis> to use FAST, fail if the server does not require " -"fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:385 -msgid "Default: not set, i.e. FAST is not used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:388 -msgid "Please note that a keytab is required to use fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:391 -msgid "" -"Please note also that sssd supports fast only with MIT Kerberos version 1.8 " -"and above. If sssd used with an older version using this option is a " -"configuration error." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:400 -msgid "krb5_fast_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:403 -msgid "Specifies the server principal to use for FAST." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:412 -msgid "" -"Specifies if the host and user principal should be canonicalized. This " -"feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:65 -msgid "" -"If the auth-module krb5 is used in a SSSD domain, the following options must " -"be used. See the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page, section <quote>DOMAIN " -"SECTIONS</quote> for details on the configuration of a SSSD domain. " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:434 -msgid "" -"The following example assumes that SSSD is correctly configured and FOO is " -"one of the domains in the <replaceable>[sssd]</replaceable> section. This " -"example shows only configuration of Kerberos authentication, it does not " -"include any identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-krb5.5.xml:442 -#, no-wrap -msgid "" -" [domain/FOO]\n" -" auth_provider = krb5\n" -" krb5_server = 192.168.1.1\n" -" krb5_realm = EXAMPLE.COM\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:453 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupadd.8.xml:10 sss_groupadd.8.xml:15 -msgid "sss_groupadd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupadd.8.xml:16 -msgid "create a new group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupadd.8.xml:21 -msgid "" -"<command>sss_groupadd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:32 -msgid "" -"<command>sss_groupadd</command> creates a new group. These groups are " -"compatible with POSIX groups, with the additional feature that they can " -"contain other groups as members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupadd.8.xml:43 -msgid "" -"<option>-g</option>,<option>--gid</option> <replaceable>GID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupadd.8.xml:48 -msgid "" -"Set the GID of the group to the value of <replaceable>GID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_userdel.8.xml:10 sss_userdel.8.xml:15 -msgid "sss_userdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_userdel.8.xml:16 -msgid "delete a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_userdel.8.xml:21 -msgid "" -"<command>sss_userdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:32 -msgid "" -"<command>sss_userdel</command> deletes a user identified by login name " -"<replaceable>LOGIN</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:44 -msgid "<option>-r</option>,<option>--remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:48 -msgid "" -"Files in the user's home directory will be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:56 -msgid "<option>-R</option>,<option>--no-remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:60 -msgid "" -"Files in the user's home directory will NOT be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:68 -msgid "<option>-f</option>,<option>--force</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:72 -msgid "" -"This option forces <command>sss_userdel</command> to remove the user's home " -"directory and mail spool, even if they are not owned by the specified user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:80 -msgid "<option>-k</option>,<option>--kick</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:84 -msgid "Before actually deleting the user, terminate all his processes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:95 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupdel.8.xml:10 sss_groupdel.8.xml:15 -msgid "sss_groupdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupdel.8.xml:16 -msgid "delete a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupdel.8.xml:21 -msgid "" -"<command>sss_groupdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:32 -msgid "" -"<command>sss_groupdel</command> deletes a group identified by its name " -"<replaceable>GROUP</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupshow.8.xml:10 sss_groupshow.8.xml:15 -msgid "sss_groupshow" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupshow.8.xml:16 -msgid "print properties of a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupshow.8.xml:21 -msgid "" -"<command>sss_groupshow</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:32 -msgid "" -"<command>sss_groupshow</command> displays information about a group " -"identified by its name <replaceable>GROUP</replaceable>. The information " -"includes the group ID number, members of the group and the parent group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupshow.8.xml:43 -msgid "<option>-R</option>,<option>--recursive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupshow.8.xml:47 -msgid "" -"Also print indirect group members in a tree-like hierarchy. Note that this " -"also affects printing parent groups - without <option>R</option>, only the " -"direct parent will be printed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_usermod.8.xml:10 sss_usermod.8.xml:15 -msgid "sss_usermod" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_usermod.8.xml:16 -msgid "modify a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_usermod.8.xml:21 -msgid "" -"<command>sss_usermod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:32 -msgid "" -"<command>sss_usermod</command> modifies the account specified by " -"<replaceable>LOGIN</replaceable> to reflect the changes that are specified " -"on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:60 -msgid "The home directory of the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:71 -msgid "The user's login shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:82 -msgid "" -"Append this user to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:96 -msgid "" -"Remove this user from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:103 -msgid "<option>-l</option>,<option>--lock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:107 -msgid "Lock the user account. The user won't be able to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:114 -msgid "<option>-u</option>,<option>--unlock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:118 -msgid "Unlock the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:129 -msgid "The SELinux user for the user's login." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:140 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_cache.8.xml:10 sss_cache.8.xml:15 -msgid "sss_cache" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_cache.8.xml:16 -msgid "perform cache cleanup" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_cache.8.xml:21 -msgid "" -"<command>sss_cache</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_cache.8.xml:31 -msgid "" -"<command>sss_cache</command> invalidates records in SSSD cache. Invalidated " -"records are forced to be reloaded from server as soon as related SSSD " -"backend is online." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:42 -msgid "" -"<option>-u</option>,<option>--user</option> <replaceable>login</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:47 -msgid "Invalidate specific user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:53 -msgid "<option>-U</option>,<option>--users</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:57 -msgid "" -"Invalidate all user records. This option overrides invalidation of specific " -"user if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:64 -msgid "" -"<option>-g</option>,<option>--group</option> <replaceable>group</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:69 -msgid "Invalidate specific group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:75 -msgid "<option>-G</option>,<option>--groups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:79 -msgid "" -"Invalidate all group records. This option overrides invalidation of specific " -"group if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:86 -msgid "" -"<option>-n</option>,<option>--netgroup</option> <replaceable>netgroup</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:91 -msgid "Invalidate specific netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:97 -msgid "<option>-N</option>,<option>--netgroups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:101 -msgid "" -"Invalidate all netgroup records. This option overrides invalidation of " -"specific netgroup if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:108 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>domain</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:113 -msgid "Restrict invalidation process only to a particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_debuglevel.8.xml:10 sss_debuglevel.8.xml:15 -msgid "sss_debuglevel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_debuglevel.8.xml:16 -msgid "change debug level while SSSD is running" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_debuglevel.8.xml:21 -msgid "" -"<command>sss_debuglevel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>NEW_DEBUG_LEVEL</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_debuglevel.8.xml:32 -msgid "" -"<command>sss_debuglevel</command> changes debug level of SSSD monitor and " -"providers to <replaceable>NEW_DEBUG_LEVEL</replaceable> while SSSD is " -"running." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_debuglevel.8.xml:59 -msgid "<replaceable>NEW_DEBUG_LEVEL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_authorizedkeys.1.xml:10 sss_ssh_authorizedkeys.1.xml:15 -msgid "sss_ssh_authorizedkeys" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_ssh_authorizedkeys.1.xml:11 sss_ssh_knownhostsproxy.1.xml:11 -msgid "1" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_authorizedkeys.1.xml:16 -msgid "get OpenSSH authorized keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_authorizedkeys.1.xml:21 -msgid "" -"<command>sss_ssh_authorizedkeys</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>USER</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:32 -msgid "" -"<command>sss_ssh_authorizedkeys</command> acquires SSH public keys for user " -"<replaceable>USER</replaceable> and outputs them in OpenSSH authorized_keys " -"format (see the <quote>AUTHORIZED_KEYS FILE FORMAT</quote> section of " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> for more information)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:41 -msgid "" -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_authorizedkeys</" -"command> for public key user authentication if it is compiled with support " -"for either <quote>AuthorizedKeysCommand</quote> or <quote>PubkeyAgent</" -"quote> <citerefentry> <refentrytitle>sshd_config</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:58 -#, no-wrap -msgid "AuthorizedKeysCommand /usr/bin/sss_ssh_authorizedkeys\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:51 -msgid "" -"If <quote>AuthorizedKeysCommand</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by putting the following directive " -"in <citerefentry> <refentrytitle>sshd_config</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry>: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:69 -#, no-wrap -msgid "PubKeyAgent /usr/bin/sss_ssh_authorizedkeys %u\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:62 -msgid "" -"If <quote>PubkeyAgent</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by using the following directive " -"for <citerefentry> <refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> configuration: <placeholder type=\"programlisting" -"\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_authorizedkeys.1.xml:87 -msgid "" -"Search for user public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:98 -msgid "" -"<citerefentry> <refentrytitle>sshd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sshd_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_knownhostsproxy</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_knownhostsproxy.1.xml:10 sss_ssh_knownhostsproxy.1.xml:15 -msgid "sss_ssh_knownhostsproxy" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_knownhostsproxy.1.xml:16 -msgid "get OpenSSH host keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_knownhostsproxy.1.xml:21 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>HOST</replaceable></arg> <arg " -"choice='opt'><replaceable>PROXY_COMMAND</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:33 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> acquires SSH host public keys for " -"host <replaceable>HOST</replaceable>, stores them in a custom OpenSSH " -"known_hosts file (see the <quote>SSH_KNOWN_HOSTS FILE FORMAT</quote> section " -"of <citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> for more information) <filename>/var/lib/sss/" -"pubconf/known_hosts</filename> and estabilishes connection to the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:43 -msgid "" -"If <replaceable>PROXY_COMMAND</replaceable> is specified, it is used to " -"create the connection to the host instead of opening a socket." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_knownhostsproxy.1.xml:55 -#, no-wrap -msgid "" -"ProxyCommand /usr/bin/sss_ssh_knownhostsproxy -p %p %h\n" -"GlobalKnownHostsFile2 /var/lib/sss/pubconf/known_hosts\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:48 -msgid "" -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_knownhostsproxy</" -"command> for host key authentication by using the following directives for " -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> configuration: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_ssh_knownhostsproxy.1.xml:69 -msgid "" -"<option>-p</option>,<option>--port</option> <replaceable>PORT</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:74 -msgid "" -"Use port <replaceable>PORT</replaceable> to connect to the host. By " -"default, port 22 is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:86 -msgid "" -"Search for host public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:97 -msgid "" -"<citerefentry> <refentrytitle>ssh</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>ssh_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_authorizedkeys</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/service_discovery.xml:2 -msgid "SERVICE DISCOVERY" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/service_discovery.xml:4 -msgid "" -"The service discovery feature allows back ends to automatically find the " -"appropriate servers to connect to using a special DNS query." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:9 -msgid "Configuration" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:11 -msgid "" -"If no servers are specified, the back end automatically uses service " -"discovery to try to find a server. Optionally, the user may choose to use " -"both fixed server addresses and service discovery by inserting a special " -"keyword, <quote>_srv_</quote>, in the list of servers. The order of " -"preference is maintained. This feature is useful if, for example, the user " -"prefers to use service discovery whenever possible, and fall back to a " -"specific server when no servers can be discovered using DNS." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:23 -msgid "The domain name" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:25 -msgid "" -"Please refer to the <quote>dns_discovery_domain</quote> parameter in the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for more details." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:35 -msgid "The protocol" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:37 -msgid "" -"The queries usually specify _tcp as the protocol. Exceptions are documented " -"in respective option description." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:42 -msgid "See Also" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:44 -msgid "" -"For more information on the service discovery mechanism, refer to RFC 2782." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/upstream.xml:1 -msgid "<placeholder type=\"refentryinfo\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/failover.xml:2 -msgid "FAILOVER" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/failover.xml:4 -msgid "" -"The failover feature allows back ends to automatically switch to a different " -"server if the primary server fails." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:8 -msgid "Failover Syntax" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:10 -msgid "" -"The list of servers is given as a comma-separated list; any number of spaces " -"is allowed around the comma. The servers are listed in order of preference. " -"The list can contain any number of servers." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:17 -msgid "The Failover Mechanism" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:19 -msgid "" -"The failover mechanism distinguishes between a machine and a service. The " -"back end first tries to resolve the hostname of a given machine; if this " -"resolution attempt fails, the machine is considered offline. No further " -"attempts are made to connect to this machine for any other service. If the " -"resolution attempt succeeds, the back end tries to connect to a service on " -"this machine. If the service connection attempt fails, then only this " -"particular service is considered offline and the back end automatically " -"switches over to the next service. The machine is still considered online " -"and might still be tried for another service." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:32 -msgid "" -"Further connection attempts are made to machines or services marked as " -"offline after a specified period of time; this is currently hard coded to 30 " -"seconds." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:37 -msgid "" -"If there are no more machines to try, the back end as a whole switches to " -"offline mode, and then attempts to reconnect every 30 seconds." -msgstr "" - -#. type: Content of: <varlistentry><term> -#: include/param_help.xml:3 -msgid "<option>-h</option>,<option>--help</option>" -msgstr "" - -#. type: Content of: <varlistentry><listitem><para> -#: include/param_help.xml:7 -msgid "Display help message and exit." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:3 -msgid "" -"Bit mask that indicates which debug levels will be visible. 0x0010 is the " -"default value as well as the lowest allowed value, 0xFFF0 is the most " -"verbose mode. This setting overrides the settings from config file." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:8 -msgid "Currently supported debug levels:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:11 -msgid "" -"<emphasis>0x0010</emphasis>: Fatal failures. Anything that would prevent " -"SSSD from starting up or causes it to cease running." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:15 -msgid "" -"<emphasis>0x0020</emphasis>: Critical failures. An error that doesn't kill " -"the SSSD, but one that indicates that at least one major feature is not " -"going to work properly." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:20 -msgid "" -"<emphasis>0x0040</emphasis>: Serious failures. An error announcing that a " -"particular request or operation has failed." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:24 -msgid "" -"<emphasis>0x0080</emphasis>: Minor failures. These are the errors that would " -"percolate down to cause the operation failure of 2." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:28 -msgid "<emphasis>0x0100</emphasis>: Configuration settings." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:31 -msgid "<emphasis>0x0200</emphasis>: Function data." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:34 -msgid "<emphasis>0x0400</emphasis>: Trace messages for operation functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:37 -msgid "" -"<emphasis>0x1000</emphasis>: Trace messages for internal control functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:40 -msgid "" -"<emphasis>0x2000</emphasis>: Contents of function-internal variables that " -"may be interesting." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:43 -msgid "<emphasis>0x4000</emphasis>: Extremely low-level tracing information." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:46 -msgid "" -"To log required debug levels, simply add their numbers together as shown in " -"following examples:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:49 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, critical failures, " -"serious failures and function data use 0x0270." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:53 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, configuration settings, " -"function data, trace messages for internal control functions use 0x1310." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:57 -msgid "" -"<emphasis>Note</emphasis>: This is new format of debug levels introduced in " -"1.7.0. Older format (numbers from 0-10) is compatible but deprecated." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/experimental.xml:1 -msgid "" -"<emphasis> This is an experimental feature, please use http://fedorahosted." -"org/sssd to report any issues. </emphasis>" -msgstr "" diff --git a/src/man/po/zh_CN.po b/src/man/po/zh_CN.po deleted file mode 100644 index 71e186875..000000000 --- a/src/man/po/zh_CN.po +++ /dev/null @@ -1,6748 +0,0 @@ -# SOME DESCRIPTIVE TITLE -# Copyright (C) YEAR Red Hat -# This file is distributed under the same license as the sssd-docs package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@redhat.com\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-12-23 15:35+0000\n" -"Last-Translator: FULL NAME <EMAIL@ADDRESS>\n" -"Language-Team: Chinese (China) (http://www.transifex.net/projects/p/fedora/" -"team/zh_CN/)\n" -"Language: zh_CN\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=1; plural=0\n" - -#. type: Content of: <reference><title> -#: sss_groupmod.8.xml:5 sssd.conf.5.xml:5 sssd-ldap.5.xml:5 pam_sss.8.xml:5 -#: sssd_krb5_locator_plugin.8.xml:5 sssd-simple.5.xml:5 sssd-ipa.5.xml:5 -#: sssd.8.xml:5 sss_obfuscate.8.xml:5 sss_useradd.8.xml:5 sssd-krb5.5.xml:5 -#: sss_groupadd.8.xml:5 sss_userdel.8.xml:5 sss_groupdel.8.xml:5 -#: sss_groupshow.8.xml:5 sss_usermod.8.xml:5 sss_cache.8.xml:5 -#: sss_debuglevel.8.xml:5 sss_ssh_authorizedkeys.1.xml:5 -#: sss_ssh_knownhostsproxy.1.xml:5 -msgid "SSSD Manual pages" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupmod.8.xml:10 sss_groupmod.8.xml:15 -msgid "sss_groupmod" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_groupmod.8.xml:11 pam_sss.8.xml:14 sssd_krb5_locator_plugin.8.xml:11 -#: sssd.8.xml:11 sss_obfuscate.8.xml:11 sss_useradd.8.xml:11 -#: sss_groupadd.8.xml:11 sss_userdel.8.xml:11 sss_groupdel.8.xml:11 -#: sss_groupshow.8.xml:11 sss_usermod.8.xml:11 sss_cache.8.xml:11 -#: sss_debuglevel.8.xml:11 -msgid "8" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupmod.8.xml:16 -msgid "modify a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupmod.8.xml:21 -msgid "" -"<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:30 sssd-ldap.5.xml:21 pam_sss.8.xml:44 -#: sssd_krb5_locator_plugin.8.xml:20 sssd-simple.5.xml:22 sssd-ipa.5.xml:21 -#: sssd.8.xml:29 sss_obfuscate.8.xml:30 sss_useradd.8.xml:30 -#: sssd-krb5.5.xml:21 sss_groupadd.8.xml:30 sss_userdel.8.xml:30 -#: sss_groupdel.8.xml:30 sss_groupshow.8.xml:30 sss_usermod.8.xml:30 -#: sss_cache.8.xml:29 sss_debuglevel.8.xml:30 sss_ssh_authorizedkeys.1.xml:30 -#: sss_ssh_knownhostsproxy.1.xml:31 -msgid "DESCRIPTION" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:32 -msgid "" -"<command>sss_groupmod</command> modifies the group to reflect the changes " -"that are specified on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:39 pam_sss.8.xml:51 sssd.8.xml:42 sss_obfuscate.8.xml:58 -#: sss_useradd.8.xml:39 sss_groupadd.8.xml:39 sss_userdel.8.xml:39 -#: sss_groupdel.8.xml:39 sss_groupshow.8.xml:39 sss_usermod.8.xml:39 -#: sss_cache.8.xml:38 sss_debuglevel.8.xml:38 sss_ssh_authorizedkeys.1.xml:78 -#: sss_ssh_knownhostsproxy.1.xml:65 -msgid "OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:43 sss_usermod.8.xml:77 -msgid "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:48 -msgid "" -"Append this group to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:57 sss_usermod.8.xml:91 -msgid "" -"<option>-r</option>,<option>--remove-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:62 -msgid "" -"Remove this group from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:72 sssd.conf.5.xml:1331 sssd-ldap.5.xml:2096 -#: pam_sss.8.xml:139 sssd_krb5_locator_plugin.8.xml:75 sssd-simple.5.xml:143 -#: sssd-ipa.5.xml:562 sssd.8.xml:191 sss_obfuscate.8.xml:103 -#: sss_useradd.8.xml:167 sssd-krb5.5.xml:451 sss_groupadd.8.xml:58 -#: sss_userdel.8.xml:93 sss_groupdel.8.xml:46 sss_groupshow.8.xml:58 -#: sss_usermod.8.xml:138 sss_ssh_authorizedkeys.1.xml:96 -#: sss_ssh_knownhostsproxy.1.xml:95 -msgid "SEE ALSO" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:74 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.conf.5.xml:10 sssd.conf.5.xml:16 -msgid "sssd.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sssd.conf.5.xml:11 sssd-ldap.5.xml:11 sssd-simple.5.xml:11 -#: sssd-ipa.5.xml:11 sssd-krb5.5.xml:11 -msgid "5" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><refmiscinfo> -#: sssd.conf.5.xml:12 sssd-ldap.5.xml:12 sssd-simple.5.xml:12 -#: sssd-ipa.5.xml:12 sssd-krb5.5.xml:12 -msgid "File Formats and Conventions" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.conf.5.xml:17 sssd-ldap.5.xml:17 sssd_krb5_locator_plugin.8.xml:16 -#: sssd-ipa.5.xml:17 sssd-krb5.5.xml:17 -msgid "the configuration file for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:21 -msgid "FILE FORMAT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:29 -#, no-wrap -msgid "" -" <replaceable>[section]</replaceable>\n" -" <replaceable>key</replaceable> = <replaceable>value</replaceable>\n" -" <replaceable>key2</replaceable> = <replaceable>value2,value3</replaceable>\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:24 -msgid "" -"The file has an ini-style syntax and consists of sections and parameters. A " -"section begins with the name of the section in square brackets and continues " -"until the next section begins. An example of section with single and multi-" -"valued parameters: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:36 -msgid "" -"The data types used are string (no quotes needed), integer and bool (with " -"values of <quote>TRUE/FALSE</quote>)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:41 -msgid "" -"A line comment starts with a hash sign (<quote>#</quote>) or a semicolon " -"(<quote>;</quote>)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:46 -msgid "" -"All sections can have an optional <replaceable>description</replaceable> " -"parameter. Its function is only as a label for the section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:52 -msgid "" -"<filename>sssd.conf</filename> must be a regular file, owned by root and " -"only root may read from or write to the file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:58 -msgid "SPECIAL SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:61 -msgid "The [sssd] section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><title> -#: sssd.conf.5.xml:70 sssd.conf.5.xml:1177 -msgid "Section parameters" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:72 -msgid "config_file_version (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:75 -msgid "" -"Indicates what is the syntax of the config file. SSSD 0.6.0 and later use " -"version 2." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:81 -msgid "services" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:84 -msgid "" -"Comma separated list of services that are started when sssd itself starts." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:88 -msgid "" -"Supported services: nss, pam <phrase condition=\"with_sudo\">, sudo</phrase>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:94 sssd.conf.5.xml:257 -msgid "reconnection_retries (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:97 sssd.conf.5.xml:260 -msgid "" -"Number of times services should attempt to reconnect in the event of a Data " -"Provider crash or restart before they give up" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:102 sssd.conf.5.xml:265 -msgid "Default: 3" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:107 -msgid "domains" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:110 -msgid "" -"A domain is a database containing user information. SSSD can use more " -"domains at the same time, but at least one must be configured or SSSD won't " -"start. This parameter described the list of domains in the order you want " -"them to be queried." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:120 -msgid "re_expression (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:123 -msgid "" -"Regular expression that describes how to parse the string containing user " -"name and domain into these components." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:127 -msgid "" -"Default: <quote>(?P<name>[^@]+)@?(?P<domain>[^@]*$)</quote> " -"which translates to \"the name is everything up to the <quote>@</quote> " -"sign, the domain everything after that\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:132 -msgid "" -"PLEASE NOTE: the support for non-unique named subpatterns is not available " -"on all platforms (e.g. RHEL5 and SLES10). Only platforms with libpcre " -"version 7 or higher can support non-unique named subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:139 -msgid "" -"PLEASE NOTE ALSO: older version of libpcre only support the Python syntax (?" -"P<name>) to label subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:146 -msgid "full_name_format (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:149 -msgid "" -"A <citerefentry> <refentrytitle>printf</refentrytitle> <manvolnum>3</" -"manvolnum> </citerefentry>-compatible format that describes how to translate " -"a (name, domain) tuple into a fully qualified name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:157 -msgid "Default: <quote>%1$s@%2$s</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:162 -msgid "try_inotify (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:165 -msgid "" -"SSSD monitors the state of resolv.conf to identify when it needs to update " -"its internal DNS resolver. By default, we will attempt to use inotify for " -"this, and will fall back to polling resolv.conf every five seconds if " -"inotify cannot be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:173 -msgid "" -"There are some limited situations where it is preferred that we should skip " -"even trying to use inotify. In these rare cases, this option should be set " -"to 'false'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:179 -msgid "" -"Default: true on platforms where inotify is supported. False on other " -"platforms." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:183 -msgid "" -"Note: this option will have no effect on platforms where inotify is " -"unavailable. On these platforms, polling will always be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:190 -msgid "krb5_rcache_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:193 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:197 -msgid "" -"This option accepts a special value __LIBKRB5_DEFAULTS__ that will instruct " -"SSSD to let libkrb5 decide the appropriate location for the replay cache." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:203 -msgid "" -"Default: Distribution-specific and specified at build-time. " -"(__LIBKRB5_DEFAULTS__ if not configured)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:63 -msgid "" -"Individual pieces of SSSD functionality are provided by special SSSD " -"services that are started and stopped together with SSSD. The services are " -"managed by a special service frequently called <quote>monitor</quote>. The " -"<quote>[sssd]</quote> section is used to configure the monitor as well as " -"some other important options like the identity domains. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:216 -msgid "SERVICES SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:218 -msgid "" -"Settings that can be used to configure different services are described in " -"this section. They should reside in the [<replaceable>$NAME</replaceable>] " -"section, for example, for NSS service, the section would be <quote>[nss]</" -"quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:225 -msgid "General service configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:227 -msgid "These options can be used to configure any service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:231 -msgid "debug_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:235 -msgid "debug_timestamps (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:238 -msgid "Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:241 sssd.conf.5.xml:376 sssd-ldap.5.xml:1328 -#: sssd-ldap.5.xml:1446 sssd-ipa.5.xml:206 sssd-ipa.5.xml:241 -msgid "Default: true" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:246 -msgid "debug_microseconds (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:249 -msgid "Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:252 sssd.conf.5.xml:641 sssd-ldap.5.xml:602 -#: sssd-ldap.5.xml:1260 sssd-ldap.5.xml:1397 sssd-ldap.5.xml:1795 -#: sssd-ipa.5.xml:123 sssd-ipa.5.xml:301 sssd-krb5.5.xml:235 -#: sssd-krb5.5.xml:269 sssd-krb5.5.xml:418 -msgid "Default: false" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:270 -msgid "command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:273 -msgid "" -"By default, the executable representing this service is called <command>sssd_" -"${service_name}</command>. This directive allows to change the executable " -"name for the service. In the vast majority of configurations, the default " -"values should suffice." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:281 -msgid "Default: <command>sssd_${service_name}</command>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:289 -msgid "NSS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:291 -msgid "" -"These options can be used to configure the Name Service Switch (NSS) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:296 -msgid "enum_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:299 -msgid "" -"How many seconds should nss_sss cache enumerations (requests for info about " -"all users)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:303 -msgid "Default: 120" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:308 -msgid "entry_cache_nowait_percentage (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:311 -msgid "" -"The entry cache can be set to automatically update entries in the background " -"if they are requested beyond a percentage of the entry_cache_timeout value " -"for the domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:317 -msgid "" -"For example, if the domain's entry_cache_timeout is set to 30s and " -"entry_cache_nowait_percentage is set to 50 (percent), entries that come in " -"after 15 seconds past the last cache update will be returned immediately, " -"but the SSSD will go and update the cache on its own, so that future " -"requests will not need to block waiting for a cache update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:327 -msgid "" -"Valid values for this option are 0-99 and represent a percentage of the " -"entry_cache_timeout for each domain. For performance reasons, this " -"percentage will never reduce the nowait timeout to less than 10 seconds. (0 " -"disables this feature)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:335 -msgid "Default: 50" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:340 -msgid "entry_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:343 -msgid "" -"Specifies for how many seconds nss_sss should cache negative cache hits " -"(that is, queries for invalid database entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:349 sssd.conf.5.xml:669 sssd-krb5.5.xml:223 -msgid "Default: 15" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:354 -msgid "filter_users, filter_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:357 -msgid "" -"Exclude certain users from being fetched from the sss NSS database. This is " -"particularly useful for system accounts. This option can also be set per-" -"domain or include fully-qualified names to filter only users from the " -"particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:364 -msgid "Default: root" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:369 -msgid "filter_users_in_groups (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:372 -msgid "" -"If you want filtered user still be group members set this option to false." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:381 -msgid "override_homedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:390 sssd-krb5.5.xml:166 -msgid "%u" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:391 sssd-krb5.5.xml:167 -msgid "login name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:394 sssd-krb5.5.xml:170 -msgid "%U" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:395 -msgid "UID number" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:398 sssd-krb5.5.xml:188 -msgid "%d" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:399 -msgid "domain name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:402 -msgid "%f" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:403 -msgid "fully qualified user name (user@domain)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:406 sssd-krb5.5.xml:200 -msgid "%%" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:407 sssd-krb5.5.xml:201 -msgid "a literal '%'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:384 -msgid "" -"Override the user's home directory. You can either provide an absolute value " -"or a template. In the template, the following sequences are substituted: " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:413 -msgid "This option can also be set per-domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:418 -msgid "allowed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:421 -msgid "" -"Restrict user shell to one of the listed values. The order of evaluation is:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:424 -msgid "1. If the shell is present in <quote>/etc/shells</quote>, it is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:428 -msgid "" -"2. If the shell is in the allowed_shells list but not in <quote>/etc/shells</" -"quote>, use the value of the shell_fallback parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:433 -msgid "" -"3. If the shell is not in the allowed_shells list and not in <quote>/etc/" -"shells</quote>, a nologin shell is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:438 -msgid "An empty string for shell is passed as-is to libc." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:441 -msgid "" -"The <quote>/etc/shells</quote> is only read on SSSD start up, which means " -"that a restart of the SSSD is required in case a new shell is installed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:445 -msgid "Default: Not set. The user shell is automatically used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:450 -msgid "vetoed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:453 -msgid "Replace any instance of these shells with the shell_fallback" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:458 -msgid "shell_fallback (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:461 -msgid "" -"The default shell to use if an allowed shell is not installed on the machine." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:465 -msgid "Default: /bin/sh" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:472 -msgid "PAM configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:474 -msgid "" -"These options can be used to configure the Pluggable Authentication Module " -"(PAM) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:479 -msgid "offline_credentials_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:482 -msgid "" -"If the authentication provider is offline, how long should we allow cached " -"logins (in days since the last successful online login)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:487 sssd.conf.5.xml:500 -msgid "Default: 0 (No limit)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:493 -msgid "offline_failed_login_attempts (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:496 -msgid "" -"If the authentication provider is offline, how many failed login attempts " -"are allowed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:506 -msgid "offline_failed_login_delay (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:509 -msgid "" -"The time in minutes which has to pass after offline_failed_login_attempts " -"has been reached before a new login attempt is possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:514 -msgid "" -"If set to 0 the user cannot authenticate offline if " -"offline_failed_login_attempts has been reached. Only a successful online " -"authentication can enable offline authentication again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:520 sssd.conf.5.xml:573 sssd.conf.5.xml:1093 -msgid "Default: 5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:526 -msgid "pam_verbosity (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:529 -msgid "" -"Controls what kind of messages are shown to the user during authentication. " -"The higher the number to more messages are displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:534 -msgid "Currently sssd supports the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:537 -msgid "<emphasis>0</emphasis>: do not show any message" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:540 -msgid "<emphasis>1</emphasis>: show only important messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:544 -msgid "<emphasis>2</emphasis>: show informational messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:547 -msgid "<emphasis>3</emphasis>: show all messages and debug information" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:551 sssd.8.xml:63 -msgid "Default: 1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:556 -msgid "pam_id_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:559 -msgid "" -"For any PAM request while SSSD is online, the SSSD will attempt to " -"immediately update the cached identity information for the user in order to " -"ensure that authentication takes place with the latest information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:565 -msgid "" -"A complete PAM conversation may perform multiple PAM requests, such as " -"account management and session opening. This option controls (on a per-" -"client-application basis) how long (in seconds) we can cache the identity " -"information to avoid excessive round-trips to the identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:579 -msgid "pam_pwd_expiration_warning (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:582 -msgid "Display a warning N days before the password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:585 -msgid "" -"Please note that the backend server has to provide information about the " -"expiration time of the password. If this information is missing, sssd " -"cannot display a warning." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:591 -msgid "Default: 7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:599 -msgid "SUDO configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:601 -msgid "These options can be used to configure the sudo service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:608 -msgid "sudo_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:611 -msgid "" -"For any sudo request that comes while SSSD is online, the SSSD will attempt " -"to update the cached rules in order to ensure that sudo has the latest " -"ruleset." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:617 -msgid "" -"The user may, however, run a couple of sudo commands successively, which " -"would trigger multiple LDAP requests. In order to speed up this use-case, " -"the sudo service maintains an in-memory cache that would be used for " -"performing fast replies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:624 -msgid "" -"This option controls how long (in seconds) can the sudo service cache rules " -"for a user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:628 -msgid "Default: 180" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:633 -msgid "sudo_timed (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:636 -msgid "" -"Whether or not to evaluate the sudoNotBefore and sudoNotAfter attributes " -"that implement time-dependent sudoers entries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:649 -msgid "AUTOFS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:651 -msgid "These options can be used to configure the autofs service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:659 -msgid "autofs_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:662 -msgid "" -"Specifies for how many seconds should the autofs responder negative cache " -"hits (that is, queries for invalid map entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:679 -msgid "DOMAIN SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:686 -msgid "min_id,max_id (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:689 -msgid "" -"UID and GID limits for the domain. If a domain contains an entry that is " -"outside these limits, it is ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:694 -msgid "" -"For users, this affects the primary GID limit. The user will not be returned " -"to NSS if either the UID or the primary GID is outside the range. For non-" -"primary group memberships, those that are in range will be reported as " -"expected." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:701 -msgid "Default: 1 for min_id, 0 (no limit) for max_id" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:707 -msgid "timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:710 -msgid "" -"Timeout in seconds between heartbeats for this domain. This is used to " -"ensure that the backend process is alive and capable of answering requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:715 sssd-ldap.5.xml:1131 -msgid "Default: 10" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:721 -msgid "enumerate (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:724 -msgid "" -"Determines if a domain can be enumerated. This parameter can have one of the " -"following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:728 -msgid "TRUE = Users and groups are enumerated" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:731 -msgid "FALSE = No enumerations for this domain" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:734 sssd.conf.5.xml:839 sssd.conf.5.xml:893 -msgid "Default: FALSE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:737 -msgid "" -"Note: Enabling enumeration has a moderate performance impact on SSSD while " -"enumeration is running. It may take up to several minutes after SSSD startup " -"to fully complete enumerations. During this time, individual requests for " -"information will go directly to LDAP, though it may be slow, due to the " -"heavy enumeration processing." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:747 -msgid "" -"While the first enumeration is running, requests for the complete user or " -"group lists may return no results until it completes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:752 -msgid "" -"Further, enabling enumeration may increase the time necessary to detect " -"network disconnection, as longer timeouts are required to ensure that " -"enumeration lookups are completed successfully. For more information, refer " -"to the man pages for the specific id_provider in use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:763 -msgid "entry_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:766 -msgid "" -"How many seconds should nss_sss consider entries valid before asking the " -"backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:770 -msgid "Default: 5400" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:776 -msgid "entry_cache_user_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:779 -msgid "" -"How many seconds should nss_sss consider user entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:783 sssd.conf.5.xml:796 sssd.conf.5.xml:809 -#: sssd.conf.5.xml:822 -msgid "Default: entry_cache_timeout" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:789 -msgid "entry_cache_group_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:792 -msgid "" -"How many seconds should nss_sss consider group entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:802 -msgid "entry_cache_netgroup_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:805 -msgid "" -"How many seconds should nss_sss consider netgroup entries valid before " -"asking the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:815 -msgid "entry_cache_service_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:818 -msgid "" -"How many seconds should nss_sss consider service entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:828 -msgid "cache_credentials (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:831 -msgid "Determines if user credentials are also cached in the local LDB cache" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:835 -msgid "User credentials are stored in a SHA512 hash, not in plaintext" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:844 -msgid "account_cache_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:847 -msgid "" -"Number of days entries are left in cache after last successful login before " -"being removed during a cleanup of the cache. 0 means keep forever. The " -"value of this parameter must be greater than or equal to " -"offline_credentials_expiration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:854 -msgid "Default: 0 (unlimited)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:860 -msgid "id_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:863 -msgid "The Data Provider identity backend to use for this domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:867 -msgid "Supported backends:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:870 -msgid "proxy: Support a legacy NSS provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:873 -msgid "local: SSSD internal local provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:876 -msgid "ldap: LDAP provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:882 -msgid "use_fully_qualified_names (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:885 -msgid "" -"If set to TRUE, all requests to this domain must use fully qualified names. " -"For example, if used in LOCAL domain that contains a \"test\" user, " -"<command>getent passwd test</command> wouldn't find the user while " -"<command>getent passwd test@LOCAL</command> would." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:898 -msgid "auth_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:901 -msgid "" -"The authentication provider used for the domain. Supported auth providers " -"are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:905 -msgid "" -"<quote>ldap</quote> for native LDAP authentication. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:912 -msgid "" -"<quote>krb5</quote> for Kerberos authentication. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:919 -msgid "" -"<quote>proxy</quote> for relaying authentication to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:922 -msgid "<quote>none</quote> disables authentication explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:925 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"authentication requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:931 -msgid "access_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:934 -msgid "" -"The access control provider used for the domain. There are two built-in " -"access providers (in addition to any included in installed backends) " -"Internal special providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:940 -msgid "<quote>permit</quote> always allow access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:943 -msgid "<quote>deny</quote> always deny access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:946 -msgid "" -"<quote>simple</quote> access control based on access or deny lists. See " -"<citerefentry> <refentrytitle>sssd-simple</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry> for more information on configuring the simple " -"access module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:953 -msgid "Default: <quote>permit</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:958 -msgid "chpass_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:961 -msgid "" -"The provider which should handle change password operations for the domain. " -"Supported change password providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:966 -msgid "" -"<quote>ipa</quote> to change a password stored in an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:974 -msgid "" -"<quote>ldap</quote> to change a password stored in a LDAP server. See " -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:982 -msgid "" -"<quote>krb5</quote> to change the Kerberos password. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:990 -msgid "" -"<quote>proxy</quote> for relaying password changes to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:994 -msgid "<quote>none</quote> disallows password changes explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:997 -msgid "" -"Default: <quote>auth_provider</quote> is used if it is set and can handle " -"change password requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1004 -msgid "sudo_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1010 -msgid "The SUDO provider used for the domain. Supported SUDO providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1014 -msgid "" -"<quote>ldap</quote> for rules stored in LDAP. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1021 -msgid "<quote>none</quote> disables SUDO explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1024 -msgid "Default: The value of <quote>id_provider</quote> is used if it is set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1030 -msgid "session_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1033 -msgid "" -"The provider which should handle loading of session settings. Supported " -"session providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1038 -msgid "" -"<quote>ipa</quote> to load session settings from an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1046 -msgid "<quote>none</quote> disallows fetching session settings explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1049 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"session loading requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1056 -msgid "lookup_family_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1059 -msgid "" -"Provides the ability to select preferred address family to use when " -"performing DNS lookups." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1063 -msgid "Supported values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1066 -msgid "ipv4_first: Try looking up IPv4 address, if that fails, try IPv6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1069 -msgid "ipv4_only: Only attempt to resolve hostnames to IPv4 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1072 -msgid "ipv6_first: Try looking up IPv6 address, if that fails, try IPv4" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1075 -msgid "ipv6_only: Only attempt to resolve hostnames to IPv6 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1078 -msgid "Default: ipv4_first" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1084 -msgid "dns_resolver_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1087 -msgid "" -"Defines the amount of time (in seconds) to wait for a reply from the DNS " -"resolver before assuming that it is unreachable. If this timeout is reached, " -"the domain will continue to operate in offline mode." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1099 -msgid "dns_discovery_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1102 -msgid "" -"If service discovery is used in the back end, specifies the domain part of " -"the service discovery DNS query." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1106 -msgid "Default: Use the domain part of machine's hostname" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1112 -msgid "override_gid (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1115 -msgid "Override the primary GID value with the one specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1121 -msgid "case_sensitive (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1124 -msgid "" -"Treat user and group names as case sensitive. At the moment, this option is " -"not supported in the local provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1129 -msgid "Default: True" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:681 -msgid "" -"These configuration options can be present in a domain configuration " -"section, that is, in a section called <quote>[domain/<replaceable>NAME</" -"replaceable>]</quote> <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1141 -msgid "proxy_pam_target (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1144 -msgid "The proxy target PAM proxies to." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1147 -msgid "" -"Default: not set by default, you have to take an existing pam configuration " -"or create a new one and add the service name here." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1155 -msgid "proxy_lib_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1158 -msgid "" -"The name of the NSS library to use in proxy domains. The NSS functions " -"searched for in the library are in the form of _nss_$(libName)_$(function), " -"for example _nss_files_getpwent." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1137 -msgid "" -"Options valid for proxy domains. <placeholder type=\"variablelist\" id=" -"\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:1170 -msgid "The local domain section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:1172 -msgid "" -"This section contains settings for domain that stores users and groups in " -"SSSD native database, that is, a domain that uses " -"<replaceable>id_provider=local</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1179 -msgid "default_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1182 -msgid "The default shell for users created with SSSD userspace tools." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1186 -msgid "Default: <filename>/bin/bash</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1191 -msgid "base_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1194 -msgid "" -"The tools append the login name to <replaceable>base_directory</replaceable> " -"and use that as the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1199 -msgid "Default: <filename>/home</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1204 -msgid "create_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1207 -msgid "" -"Indicate if a home directory should be created by default for new users. " -"Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1211 sssd.conf.5.xml:1223 -msgid "Default: TRUE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1216 -msgid "remove_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1219 -msgid "" -"Indicate if a home directory should be removed by default for deleted " -"users. Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1228 -msgid "homedir_umask (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1231 -msgid "" -"Used by <citerefentry> <refentrytitle>sss_useradd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry> to specify the default permissions " -"on a newly created home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1239 -msgid "Default: 077" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1244 -msgid "skel_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1247 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<citerefentry> <refentrytitle>sss_useradd</refentrytitle> <manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1257 -msgid "Default: <filename>/etc/skel</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1262 -msgid "mail_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1265 -msgid "" -"The mail spool directory. This is needed to manipulate the mailbox when its " -"corresponding user account is modified or deleted. If not specified, a " -"default value is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1272 -msgid "Default: <filename>/var/mail</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1277 -msgid "userdel_cmd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1280 -msgid "" -"The command that is run after a user is removed. The command us passed the " -"username of the user being removed as the first and only parameter. The " -"return code of the command is not taken into account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1286 -msgid "Default: None, no command is run" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:1296 sssd-ldap.5.xml:2064 sssd-simple.5.xml:126 -#: sssd-ipa.5.xml:544 sssd-krb5.5.xml:432 -msgid "EXAMPLE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:1302 -#, no-wrap -msgid "" -"[sssd]\n" -"domains = LDAP\n" -"services = nss, pam\n" -"config_file_version = 2\n" -"\n" -"[nss]\n" -"filter_groups = root\n" -"filter_users = root\n" -"\n" -"[pam]\n" -"\n" -"[domain/LDAP]\n" -"id_provider = ldap\n" -"ldap_uri = ldap://ldap.example.com\n" -"ldap_search_base = dc=example,dc=com\n" -"\n" -"auth_provider = krb5\n" -"krb5_server = kerberos.example.com\n" -"krb5_realm = EXAMPLE.COM\n" -"cache_credentials = true\n" -"\n" -"min_id = 10000\n" -"max_id = 20000\n" -"enumerate = False\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1298 -msgid "" -"The following example shows a typical SSSD config. It does not describe " -"configuration of the domains themselves - refer to documentation on " -"configuring domains for more details. <placeholder type=\"programlisting\" " -"id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1333 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>pam_sss</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ldap.5.xml:10 sssd-ldap.5.xml:16 -msgid "sssd-ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:23 -msgid "" -"This manual page describes the configuration of LDAP domains for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. Refer to the <quote>FILE FORMAT</quote> section of the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for detailed syntax information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:35 -msgid "You can configure SSSD to use more than one LDAP domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:38 -msgid "" -"LDAP back end supports id, auth, access and chpass providers. If you want to " -"authenticate against an LDAP server either TLS/SSL or LDAPS is required. " -"<command>sssd</command> <emphasis>does not</emphasis> support authentication " -"over an unencrypted channel. If the LDAP server is used only as an identity " -"provider, an encrypted channel is not needed. Please refer to " -"<quote>ldap_access_filter</quote> config option for more information about " -"using LDAP as an access provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:49 sssd-simple.5.xml:69 sssd-ipa.5.xml:64 -#: sssd-krb5.5.xml:63 -msgid "CONFIGURATION OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:60 -msgid "ldap_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:63 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference. Refer to the <quote>FAILOVER</" -"quote> section for more information on failover and server redundancy. If " -"not specified, service discovery is enabled. For more information, refer to " -"the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:70 -msgid "The format of the URI must match the format defined in RFC 2732:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:73 -msgid "ldap[s]://<host>[:port]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:76 -msgid "" -"For explicit IPv6 addresses, <host> must be enclosed in brackets []" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:79 -msgid "example: ldap://[fc00::126:25]:389" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:85 -msgid "ldap_chpass_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:88 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference to change the password of a user. " -"Refer to the <quote>FAILOVER</quote> section for more information on " -"failover and server redundancy." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:95 -msgid "To enable service discovery ldap_chpass_dns_service_name must be set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:99 -msgid "Default: empty, i.e. ldap_uri is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:105 -msgid "ldap_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:108 -msgid "The default base DN to use for performing LDAP user operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:112 -msgid "" -"Starting with SSSD 1.7.0, SSSD supports multiple search bases using the " -"syntax:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:116 -msgid "search_base[?scope?[filter][?search_base?scope?[filter]]*]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:119 -msgid "The scope can be one of \"base\", \"onelevel\" or \"subtree\"." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:122 -msgid "" -"The filter must be a valid LDAP search filter as specified by http://www." -"ietf.org/rfc/rfc2254.txt" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:126 -msgid "Examples:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:129 -msgid "" -"ldap_search_base = dc=example,dc=com (which is equivalent to) " -"ldap_search_base = dc=example,dc=com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:134 -msgid "" -"ldap_search_base = cn=host_specific,dc=example,dc=com?subtree?" -"(host=thishost)?dc=example.com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:137 -msgid "" -"Note: It is unsupported to have multiple search bases which reference " -"identically-named objects (for example, groups with the same name in two " -"different search bases). This will lead to unpredictable behavior on client " -"machines." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:144 -msgid "" -"Default: If not set, the value of the defaultNamingContext or namingContexts " -"attribute from the RootDSE of the LDAP server is used. If " -"defaultNamingContext does not exists or has an empty value namingContexts is " -"used. The namingContexts attribute must have a single value with the DN of " -"the search base of the LDAP server to make this work. Multiple values are " -"are not supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:158 -msgid "ldap_schema (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:161 -msgid "" -"Specifies the Schema Type in use on the target LDAP server. Depending on " -"the selected schema, the default attribute names retrieved from the servers " -"may vary. The way that some attributes are handled may also differ. Three " -"schema types are currently supported: rfc2307 rfc2307bis IPA The main " -"difference between these schema types is how group memberships are recorded " -"in the server. With rfc2307, group members are listed by name in the " -"<emphasis>memberUid</emphasis> attribute. With rfc2307bis and IPA, group " -"members are listed by DN and stored in the <emphasis>member</emphasis> " -"attribute." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:180 -msgid "Default: rfc2307" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:186 -msgid "ldap_default_bind_dn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:189 -msgid "The default bind DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:196 -msgid "ldap_default_authtok_type (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:199 -msgid "The type of the authentication token of the default bind DN." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:203 -msgid "The two mechanisms currently supported are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:206 -msgid "password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:209 -msgid "obfuscated_password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:212 -msgid "Default: password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:218 -msgid "ldap_default_authtok (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:221 -msgid "" -"The authentication token of the default bind DN. Only clear text passwords " -"are currently supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:228 -msgid "ldap_user_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:231 -msgid "The object class of a user entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:234 -msgid "Default: posixAccount" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:240 -msgid "ldap_user_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:243 -msgid "The LDAP attribute that corresponds to the user's login name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:247 -msgid "Default: uid" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:253 -msgid "ldap_user_uid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:256 -msgid "The LDAP attribute that corresponds to the user's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:260 -msgid "Default: uidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:266 -msgid "ldap_user_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:269 -msgid "The LDAP attribute that corresponds to the user's primary group id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:273 sssd-ldap.5.xml:740 -msgid "Default: gidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:279 -msgid "ldap_user_gecos (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:282 -msgid "The LDAP attribute that corresponds to the user's gecos field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:286 -msgid "Default: gecos" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:292 -msgid "ldap_user_home_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:295 -msgid "The LDAP attribute that contains the name of the user's home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:299 -msgid "Default: homeDirectory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:305 -msgid "ldap_user_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:308 -msgid "The LDAP attribute that contains the path to the user's default shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:312 -msgid "Default: loginShell" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:318 -msgid "ldap_user_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:321 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP user object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:325 sssd-ldap.5.xml:766 sssd-ldap.5.xml:878 -msgid "Default: nsUniqueId" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:331 -msgid "ldap_user_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:334 sssd-ldap.5.xml:775 sssd-ldap.5.xml:887 -msgid "" -"The LDAP attribute that contains timestamp of the last modification of the " -"parent object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:338 sssd-ldap.5.xml:779 sssd-ldap.5.xml:894 -msgid "Default: modifyTimestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:344 -msgid "ldap_user_shadow_last_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:347 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (date of " -"the last password change)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:357 -msgid "Default: shadowLastChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:363 -msgid "ldap_user_shadow_min (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:366 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (minimum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:375 -msgid "Default: shadowMin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:381 -msgid "ldap_user_shadow_max (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:384 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (maximum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:393 -msgid "Default: shadowMax" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:399 -msgid "ldap_user_shadow_warning (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:402 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password warning period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:412 -msgid "Default: shadowWarning" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:418 -msgid "ldap_user_shadow_inactive (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:421 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password inactivity period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:431 -msgid "Default: shadowInactive" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:437 -msgid "ldap_user_shadow_expire (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:440 -msgid "" -"When using ldap_pwd_policy=shadow or ldap_account_expire_policy=shadow, this " -"parameter contains the name of an LDAP attribute corresponding to its " -"<citerefentry> <refentrytitle>shadow</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> counterpart (account expiration date)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:450 -msgid "Default: shadowExpire" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:456 -msgid "ldap_user_krb_last_pwd_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:459 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time of last password change in " -"kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:465 -msgid "Default: krbLastPwdChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:471 -msgid "ldap_user_krb_password_expiration (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:474 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time when current password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:480 -msgid "Default: krbPasswordExpiration" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:486 -msgid "ldap_user_ad_account_expires (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:489 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the expiration time of the account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:494 -msgid "Default: accountExpires" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:500 -msgid "ldap_user_ad_user_account_control (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:503 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the user account control bit field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:508 -msgid "Default: userAccountControl" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:514 -msgid "ldap_ns_account_lock (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:517 -msgid "" -"When using ldap_account_expire_policy=rhds or equivalent, this parameter " -"determines if access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:522 -msgid "Default: nsAccountLock" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:528 -msgid "ldap_user_nds_login_disabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:531 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines if " -"access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:535 sssd-ldap.5.xml:549 -msgid "Default: loginDisabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:541 -msgid "ldap_user_nds_login_expiration_time (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:544 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines until " -"which date access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:555 -msgid "ldap_user_nds_login_allowed_time_map (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:558 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines the " -"hours of a day in a week when access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:563 -msgid "Default: loginAllowedTimeMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:569 -msgid "ldap_user_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:572 -msgid "" -"The LDAP attribute that contains the user's Kerberos User Principal Name " -"(UPN)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:576 -msgid "Default: krbPrincipalName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:582 -msgid "ldap_user_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:585 -msgid "The LDAP attribute that contains the user's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:592 -msgid "ldap_force_upper_case_realm (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:595 -msgid "" -"Some directory servers, for example Active Directory, might deliver the " -"realm part of the UPN in lower case, which might cause the authentication to " -"fail. Set this option to a non-zero value if you want to use an upper-case " -"realm." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:608 -msgid "ldap_enumeration_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:611 -msgid "" -"Specifies how many seconds SSSD has to wait before refreshing its cache of " -"enumerated records." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:616 sssd-ldap.5.xml:1808 -msgid "Default: 300" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:622 -msgid "ldap_purge_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:625 -msgid "" -"Determine how often to check the cache for inactive entries (such as groups " -"with no members and users who have never logged in) and remove them to save " -"space." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:631 -msgid "Setting this option to zero will disable the cache cleanup operation." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:635 -msgid "Default: 10800 (12 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:641 -msgid "ldap_user_fullname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:644 -msgid "The LDAP attribute that corresponds to the user's full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:648 sssd-ldap.5.xml:727 sssd-ldap.5.xml:828 -#: sssd-ldap.5.xml:919 sssd-ldap.5.xml:1663 sssd-ldap.5.xml:1881 -#: sssd-ipa.5.xml:422 -msgid "Default: cn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:654 -msgid "ldap_user_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:657 -msgid "The LDAP attribute that lists the user's group memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:661 sssd-ipa.5.xml:326 -msgid "Default: memberOf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:667 -msgid "ldap_user_authorized_service (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:670 -msgid "" -"If access_provider=ldap and ldap_access_order=authorized_service, SSSD will " -"use the presence of the authorizedService attribute in the user's LDAP entry " -"to determine access privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:677 -msgid "" -"An explicit deny (!svc) is resolved first. Second, SSSD searches for " -"explicit allow (svc) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:682 -msgid "Default: authorizedService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:688 -msgid "ldap_user_authorized_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:691 -msgid "" -"If access_provider=ldap and ldap_access_order=host, SSSD will use the " -"presence of the host attribute in the user's LDAP entry to determine access " -"privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:697 -msgid "" -"An explicit deny (!host) is resolved first. Second, SSSD searches for " -"explicit allow (host) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:702 -msgid "Default: host" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:708 -msgid "ldap_group_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:711 -msgid "The object class of a group entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:714 -msgid "Default: posixGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:720 -msgid "ldap_group_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:723 -msgid "The LDAP attribute that corresponds to the group name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:733 -msgid "ldap_group_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:736 -msgid "The LDAP attribute that corresponds to the group's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:746 -msgid "ldap_group_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:749 -msgid "The LDAP attribute that contains the names of the group's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:753 -msgid "Default: memberuid (rfc2307) / member (rfc2307bis)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:759 -msgid "ldap_group_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:762 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP group object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:772 -msgid "ldap_group_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:785 -msgid "ldap_group_nesting_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:788 -msgid "" -"If ldap_schema is set to a schema format that supports nested groups (e.g. " -"RFC2307bis), then this option controls how many levels of nesting SSSD will " -"follow. This option has no effect on the RFC2307 schema." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:795 -msgid "Default: 2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:801 -msgid "ldap_netgroup_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:804 -msgid "The object class of a netgroup entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:807 -msgid "In IPA provider, ipa_netgroup_object_class should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:811 -msgid "Default: nisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:817 -msgid "ldap_netgroup_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:820 -msgid "The LDAP attribute that corresponds to the netgroup name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:824 -msgid "In IPA provider, ipa_netgroup_name should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:834 -msgid "ldap_netgroup_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:837 -msgid "The LDAP attribute that contains the names of the netgroup's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:841 -msgid "In IPA provider, ipa_netgroup_member should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:845 -msgid "Default: memberNisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:851 -msgid "ldap_netgroup_triple (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:854 -msgid "" -"The LDAP attribute that contains the (host, user, domain) netgroup triples." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:858 sssd-ldap.5.xml:891 -msgid "This option is not available in IPA provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:861 -msgid "Default: nisNetgroupTriple" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:867 -msgid "ldap_netgroup_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:870 -msgid "" -"The LDAP attribute that contains the UUID/GUID of an LDAP netgroup object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:874 -msgid "In IPA provider, ipa_netgroup_uuid should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:884 -msgid "ldap_netgroup_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:900 -msgid "ldap_service_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:903 -msgid "The object class of a service entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:906 -msgid "Default: ipService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:912 -msgid "ldap_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:915 -msgid "" -"The LDAP attribute that contains the name of service attributes and their " -"aliases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:925 -msgid "ldap_service_port (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:928 -msgid "The LDAP attribute that contains the port managed by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:932 -msgid "Default: ipServicePort" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:938 -msgid "ldap_service_proto (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:941 -msgid "" -"The LDAP attribute that contains the protocols understood by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:945 -msgid "Default: ipServiceProtocol" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:951 -msgid "ldap_service_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:954 -msgid "An optional base DN to restrict service searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:958 sssd-ldap.5.xml:1918 sssd-ldap.5.xml:1937 -#: sssd-ldap.5.xml:1956 sssd-ldap.5.xml:2019 sssd-ldap.5.xml:2041 -#: sssd-ipa.5.xml:163 sssd-ipa.5.xml:187 -msgid "" -"See <quote>ldap_search_base</quote> for information about configuring " -"multiple search bases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:963 sssd-ldap.5.xml:1923 sssd-ldap.5.xml:1942 -#: sssd-ldap.5.xml:1961 sssd-ldap.5.xml:2024 sssd-ldap.5.xml:2046 -#: sssd-ipa.5.xml:173 sssd-ipa.5.xml:192 -msgid "Default: the value of <emphasis>ldap_search_base</emphasis>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:970 -msgid "ldap_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:973 -msgid "" -"Specifies the timeout (in seconds) that ldap searches are allowed to run " -"before they are cancelled and cached results are returned (and offline mode " -"is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:979 -msgid "" -"Note: this option is subject to change in future versions of the SSSD. It " -"will likely be replaced at some point by a series of timeouts for specific " -"lookup types." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:985 sssd-ldap.5.xml:1027 sssd-ldap.5.xml:1042 -msgid "Default: 6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:991 -msgid "ldap_enumeration_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:994 -msgid "" -"Specifies the timeout (in seconds) that ldap searches for user and group " -"enumerations are allowed to run before they are cancelled and cached results " -"are returned (and offline mode is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1001 -msgid "Default: 60" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1007 -msgid "ldap_network_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1010 -msgid "" -"Specifies the timeout (in seconds) after which the <citerefentry> " -"<refentrytitle>poll</refentrytitle> <manvolnum>2</manvolnum> </citerefentry>/" -"<citerefentry> <refentrytitle>select</refentrytitle> <manvolnum>2</" -"manvolnum> </citerefentry> following a <citerefentry> " -"<refentrytitle>connect</refentrytitle> <manvolnum>2</manvolnum> </" -"citerefentry> returns in case of no activity." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1033 -msgid "ldap_opt_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1036 -msgid "" -"Specifies a timeout (in seconds) after which calls to synchronous LDAP APIs " -"will abort if no response is received. Also controls the timeout when " -"communicating with the KDC in case of SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1048 -msgid "ldap_connection_expire_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1051 -msgid "" -"Specifies a timeout (in seconds) that a connection to an LDAP server will be " -"maintained. After this time, the connection will be re-established. If used " -"in parallel with SASL/GSSAPI, the sooner of the two values (this value vs. " -"the TGT lifetime) will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1059 -msgid "Default: 900 (15 minutes)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1065 -msgid "ldap_page_size (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1068 -msgid "" -"Specify the number of records to retrieve from LDAP in a single request. " -"Some LDAP servers enforce a maximum limit per-request." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1073 -msgid "Default: 1000" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1079 -msgid "ldap_disable_paging" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1082 -msgid "" -"Disable the LDAP paging control. This option should be used if the LDAP " -"server reports that it supports the LDAP paging control in its RootDSE but " -"it is not enabled or does not behave properly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1088 -msgid "" -"Example: OpenLDAP servers with the paging control module installed on the " -"server but not enabled will report it in the RootDSE but be unable to use it." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1094 -msgid "" -"Example: 389 DS has a bug where it can only support a one paging control at " -"a time on a single connection. On busy clients, this can result in some " -"requests being denied." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1103 -msgid "ldap_deref_threshold (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1106 -msgid "" -"Specify the number of group members that must be missing from the internal " -"cache in order to trigger a dereference lookup. If less members are missing, " -"they are looked up individually." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1112 -msgid "" -"You can turn off dereference lookups completely by setting the value to 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1116 -msgid "" -"A dereference lookup is a means of fetching all group members in a single " -"LDAP call. Different LDAP servers may implement different dereference " -"methods. The currently supported servers are 389/RHDS, OpenLDAP and Active " -"Directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1124 -msgid "" -"<emphasis>Note:</emphasis> If any of the search bases specifies a search " -"filter, then the dereference lookup performance enhancement will be disabled " -"regardless of this setting." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1137 -msgid "ldap_tls_reqcert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1140 -msgid "" -"Specifies what checks to perform on server certificates in a TLS session, if " -"any. It can be specified as one of the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1146 -msgid "" -"<emphasis>never</emphasis> = The client will not request or check any server " -"certificate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1150 -msgid "" -"<emphasis>allow</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, it will be ignored and the session proceeds normally." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1157 -msgid "" -"<emphasis>try</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, the session is immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1163 -msgid "" -"<emphasis>demand</emphasis> = The server certificate is requested. If no " -"certificate is provided, or a bad certificate is provided, the session is " -"immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1169 -msgid "<emphasis>hard</emphasis> = Same as <quote>demand</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1173 -msgid "Default: hard" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1179 -msgid "ldap_tls_cacert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1182 -msgid "" -"Specifies the file that contains certificates for all of the Certificate " -"Authorities that <command>sssd</command> will recognize." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1187 sssd-ldap.5.xml:1205 sssd-ldap.5.xml:1246 -msgid "" -"Default: use OpenLDAP defaults, typically in <filename>/etc/openldap/ldap." -"conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1194 -msgid "ldap_tls_cacertdir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1197 -msgid "" -"Specifies the path of a directory that contains Certificate Authority " -"certificates in separate individual files. Typically the file names need to " -"be the hash of the certificate followed by '.0'. If available, " -"<command>cacertdir_rehash</command> can be used to create the correct names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1212 -msgid "ldap_tls_cert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1215 -msgid "Specifies the file that contains the certificate for the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1219 sssd-ldap.5.xml:1231 sssd-ldap.5.xml:1979 -#: sssd-ldap.5.xml:2006 sssd-krb5.5.xml:359 -msgid "Default: not set" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1225 -msgid "ldap_tls_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1228 -msgid "Specifies the file that contains the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1237 -msgid "ldap_tls_cipher_suite (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1240 -msgid "" -"Specifies acceptable cipher suites. Typically this is a colon sperated " -"list. See <citerefentry><refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> for format." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1253 -msgid "ldap_id_use_start_tls (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1256 -msgid "" -"Specifies that the id_provider connection must also use <systemitem class=" -"\"protocol\">tls</systemitem> to protect the channel." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1266 -msgid "ldap_sasl_mech (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1269 -msgid "" -"Specify the SASL mechanism to use. Currently only GSSAPI is tested and " -"supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1273 sssd-ldap.5.xml:1428 -msgid "Default: none" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1279 -msgid "ldap_sasl_authid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1282 -msgid "" -"Specify the SASL authorization id to use. When GSSAPI is used, this " -"represents the Kerberos principal used for authentication to the directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1287 -msgid "Default: host/machine.fqdn@REALM" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1293 -msgid "ldap_sasl_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1296 -msgid "" -"If set to true, the LDAP library would perform a reverse lookup to " -"canonicalize the host name during a SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1301 -msgid "Default: false;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1307 -msgid "ldap_krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1310 -msgid "Specify the keytab to use when using SASL/GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1313 -msgid "Default: System keytab, normally <filename>/etc/krb5.keytab</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1319 -msgid "ldap_krb5_init_creds (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1322 -msgid "" -"Specifies that the id_provider should init Kerberos credentials (TGT). This " -"action is performed only if SASL is used and the mechanism selected is " -"GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1334 -msgid "ldap_krb5_ticket_lifetime (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1337 -msgid "Specifies the lifetime in seconds of the TGT if GSSAPI is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1341 -msgid "Default: 86400 (24 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1347 sssd-krb5.5.xml:74 -msgid "krb5_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1350 sssd-krb5.5.xml:77 -msgid "" -"Specifies the comma-separated list of IP addresses or hostnames of the " -"Kerberos servers to which SSSD should connect in the order of preference. " -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. An optional port number (preceded by a " -"colon) may be appended to the addresses or hostnames. If empty, service " -"discovery is enabled - for more information, refer to the <quote>SERVICE " -"DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1362 sssd-krb5.5.xml:89 -msgid "" -"When using service discovery for KDC or kpasswd servers, SSSD first searches " -"for DNS entries that specify _udp as the protocol and falls back to _tcp if " -"none are found." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1367 sssd-krb5.5.xml:94 -msgid "" -"This option was named <quote>krb5_kdcip</quote> in earlier releases of SSSD. " -"While the legacy name is recognized for the time being, users are advised to " -"migrate their config files to use <quote>krb5_server</quote> instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1376 sssd-ipa.5.xml:216 sssd-krb5.5.xml:103 -msgid "krb5_realm (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1379 -msgid "Specify the Kerberos REALM (for SASL/GSSAPI auth)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1382 -msgid "Default: System defaults, see <filename>/etc/krb5.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1388 sssd-ipa.5.xml:231 sssd-krb5.5.xml:409 -msgid "krb5_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1391 -msgid "" -"Specifies if the host principal should be canonicalized when connecting to " -"LDAP server. This feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1403 -msgid "ldap_pwd_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1406 -msgid "" -"Select the policy to evaluate the password expiration on the client side. " -"The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1411 -msgid "" -"<emphasis>none</emphasis> - No evaluation on the client side. This option " -"cannot disable server-side password policies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1416 -msgid "" -"<emphasis>shadow</emphasis> - Use <citerefentry><refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum></citerefentry> style attributes to " -"evaluate if the password has expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1422 -msgid "" -"<emphasis>mit_kerberos</emphasis> - Use the attributes used by MIT Kerberos " -"to determine if the password has expired. Use chpass_provider=krb5 to update " -"these attributes when the password is changed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1434 -msgid "ldap_referrals (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1437 -msgid "Specifies whether automatic referral chasing should be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1441 -msgid "" -"Please note that sssd only supports referral chasing when it is compiled " -"with OpenLDAP version 2.4.13 or higher." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1452 -msgid "ldap_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1455 -msgid "Specifies the service name to use when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1459 -msgid "Default: ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1465 -msgid "ldap_chpass_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1468 -msgid "" -"Specifies the service name to use to find an LDAP server which allows " -"password changes when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1473 -msgid "Default: not set, i.e. service discovery is disabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1479 -msgid "ldap_access_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1482 -msgid "" -"If using access_provider = ldap, this option is mandatory. It specifies an " -"LDAP search filter criteria that must be met for the user to be granted " -"access on this host. If access_provider = ldap and this option is not set, " -"it will result in all users being denied access. Use access_provider = allow " -"to change this default behavior." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1492 sssd-ldap.5.xml:1982 -msgid "Example:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1495 -#, no-wrap -msgid "" -"access_provider = ldap\n" -"ldap_access_filter = memberOf=cn=allowedusers,ou=Groups,dc=example,dc=com\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1499 -msgid "" -"This example means that access to this host is restricted to members of the " -"\"allowedusers\" group in ldap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1504 -msgid "" -"Offline caching for this feature is limited to determining whether the " -"user's last online login was granted access permission. If they were granted " -"access during their last login, they will continue to be granted access " -"while offline and vice-versa." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1512 sssd-ldap.5.xml:1562 -msgid "Default: Empty" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1518 -msgid "ldap_account_expire_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1521 -msgid "" -"With this option a client side evaluation of access control attributes can " -"be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1525 -msgid "" -"Please note that it is always recommended to use server side access control, " -"i.e. the LDAP server should deny the bind request with a suitable error code " -"even if the password is correct." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1532 -msgid "The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1535 -msgid "" -"<emphasis>shadow</emphasis>: use the value of ldap_user_shadow_expire to " -"determine if the account is expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1540 -msgid "" -"<emphasis>ad</emphasis>: use the value of the 32bit field " -"ldap_user_ad_user_account_control and allow access if the second bit is not " -"set. If the attribute is missing access is granted. Also the expiration time " -"of the account is checked." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1547 -msgid "" -"<emphasis>rhds</emphasis>, <emphasis>ipa</emphasis>, <emphasis>389ds</" -"emphasis>: use the value of ldap_ns_account_lock to check if access is " -"allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1553 -msgid "" -"<emphasis>nds</emphasis>: the values of " -"ldap_user_nds_login_allowed_time_map, ldap_user_nds_login_disabled and " -"ldap_user_nds_login_expiration_time are used to check if access is allowed. " -"If both attributes are missing access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1568 -msgid "ldap_access_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1571 -msgid "Comma separated list of access control options. Allowed values are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1575 -msgid "<emphasis>filter</emphasis>: use ldap_access_filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1578 -msgid "<emphasis>expire</emphasis>: use ldap_account_expire_policy" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1582 -msgid "" -"<emphasis>authorized_service</emphasis>: use the authorizedService attribute " -"to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1587 -msgid "<emphasis>host</emphasis>: use the host attribute to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1591 -msgid "Default: filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1594 -msgid "" -"Please note that it is a configuration error if a value is used more than " -"once." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1601 -msgid "ldap_deref (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1604 -msgid "" -"Specifies how alias dereferencing is done when performing a search. The " -"following options are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1609 -msgid "<emphasis>never</emphasis>: Aliases are never dereferenced." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1613 -msgid "" -"<emphasis>searching</emphasis>: Aliases are dereferenced in subordinates of " -"the base object, but not in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1618 -msgid "" -"<emphasis>finding</emphasis>: Aliases are only dereferenced when locating " -"the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1623 -msgid "" -"<emphasis>always</emphasis>: Aliases are dereferenced both in searching and " -"in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1628 -msgid "" -"Default: Empty (this is handled as <emphasis>never</emphasis> by the LDAP " -"client libraries)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:51 -msgid "" -"All of the common configuration options that apply to SSSD domains also " -"apply to LDAP domains. Refer to the <quote>DOMAIN SECTIONS</quote> section " -"of the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for full details. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1639 -msgid "SUDO OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1644 -msgid "ldap_sudorule_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1647 -msgid "The object class of a sudo rule entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1650 -msgid "Default: sudoRole" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1656 -msgid "ldap_sudorule_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1659 -msgid "The LDAP attribute that corresponds to the sudo rule name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1669 -msgid "ldap_sudorule_command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1672 -msgid "The LDAP attribute that corresponds to the command name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1676 -msgid "Default: sudoCommand" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1682 -msgid "ldap_sudorule_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1685 -msgid "" -"The LDAP attribute that corresponds to the host name (or host IP address, " -"host IP network, or host netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1690 -msgid "Default: sudoHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1696 -msgid "ldap_sudorule_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1699 -msgid "" -"The LDAP attribute that corresponds to the user name (or UID, group name or " -"user's netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1703 -msgid "Default: sudoUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1709 -msgid "ldap_sudorule_option (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1712 -msgid "The LDAP attribute that corresponds to the sudo options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1716 -msgid "Default: sudoOption" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1722 -msgid "ldap_sudorule_runasuser (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1725 -msgid "" -"The LDAP attribute that corresponds to the user name that commands may be " -"run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1729 -msgid "Default: sudoRunAsUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1735 -msgid "ldap_sudorule_runasgroup (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1738 -msgid "" -"The LDAP attribute that corresponds to the group name or group GID that " -"commands may be run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1742 -msgid "Default: sudoRunAsGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1748 -msgid "ldap_sudorule_notbefore (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1751 -msgid "" -"The LDAP attribute that corresponds to the start date/time for when the sudo " -"rule is valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1755 -msgid "Default: sudoNotBefore" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1761 -msgid "ldap_sudorule_notafter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1764 -msgid "" -"The LDAP attribute that corresponds to the expiration date/time, after which " -"the sudo rule will no longer be valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1769 -msgid "Default: sudoNotAfter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1775 -msgid "ldap_sudorule_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1778 -msgid "The LDAP attribute that corresponds to the ordering index of the rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1782 -msgid "Default: sudoOrder" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1788 -msgid "ldap_sudo_refresh_enabled (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1791 -msgid "" -"Enables periodical download of all sudo rules. The cache is purged before " -"each update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1801 -msgid "ldap_sudo_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1804 -msgid "" -"How many seconds SSSD has to wait before refreshing its cache of sudo rules." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1642 -msgid "<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1815 -msgid "" -"This manual page only describes attribute name mapping. For detailed " -"explanation of sudo related attribute semantics, see <citerefentry> " -"<refentrytitle>sudoers.ldap</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1825 -msgid "AUTOFS OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1827 -msgid "" -"Please note that the default values correspond to the default schema which " -"is RFC2307." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1834 -msgid "ldap_autofs_map_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1837 sssd-ldap.5.xml:1863 -msgid "The object class of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1840 sssd-ldap.5.xml:1867 -msgid "Default: automountMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1847 -msgid "ldap_autofs_map_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1850 -msgid "The name of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1853 -msgid "Default: ou" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1860 -msgid "ldap_autofs_entry_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1874 -msgid "ldap_autofs_entry_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1877 sssd-ldap.5.xml:1891 -msgid "" -"The key of an automount entry in LDAP. The entry usually corresponds to a " -"mount point." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1888 -msgid "ldap_autofs_entry_value (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1895 -msgid "Default: automountInformation" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1832 -msgid "" -"<placeholder type=\"variablelist\" id=\"0\"/> <placeholder type=" -"\"variablelist\" id=\"1\"/> <placeholder type=\"variablelist\" id=\"2\"/> " -"<placeholder type=\"variablelist\" id=\"3\"/> <placeholder type=" -"\"variablelist\" id=\"4\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1904 -msgid "ADVANCED OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1911 -msgid "ldap_netgroup_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1914 -msgid "" -"An optional base DN to restrict netgroup searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1930 -msgid "ldap_user_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1933 -msgid "An optional base DN to restrict user searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1949 -msgid "ldap_group_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1952 -msgid "An optional base DN to restrict group searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1968 -msgid "ldap_user_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1971 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict user searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1975 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_user_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1985 -#, no-wrap -msgid "" -" ldap_user_search_filter = (loginShell=/bin/tcsh)\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1988 -msgid "" -"This filter would restrict user searches to users that have their shell set " -"to /bin/tcsh." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1995 -msgid "ldap_group_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1998 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict group searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2002 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_group_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2012 -msgid "ldap_sudo_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2015 -msgid "" -"An optional base DN to restrict sudo rules searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2034 -msgid "ldap_autofs_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2037 -msgid "" -"An optional base DN to restrict automounter searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1906 -msgid "" -"These options are supported by LDAP domains, but they should be used with " -"caution. Please include them in your configuration only if you know what you " -"are doing. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2066 -msgid "" -"The following example assumes that SSSD is correctly configured and LDAP is " -"set to one of the domains in the <replaceable>[domains]</replaceable> " -"section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ldap.5.xml:2072 -#, no-wrap -msgid "" -" [domain/LDAP]\n" -" id_provider = ldap\n" -" auth_provider = ldap\n" -" ldap_uri = ldap://ldap.mydomain.org\n" -" ldap_search_base = dc=mydomain,dc=org\n" -" ldap_tls_reqcert = demand\n" -" cache_credentials = true\n" -" enumerate = true\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2071 sssd-simple.5.xml:134 sssd-ipa.5.xml:552 -#: sssd-krb5.5.xml:441 -msgid "<placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:2085 sssd_krb5_locator_plugin.8.xml:61 -msgid "NOTES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2087 -msgid "" -"The descriptions of some of the configuration options in this manual page " -"are based on the <citerefentry> <refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page from the OpenLDAP 2.4 " -"distribution." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2098 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <refentryinfo> -#: pam_sss.8.xml:8 include/upstream.xml:2 -msgid "" -"<productname>SSSD</productname> <orgname>The SSSD upstream - http://" -"fedorahosted.org/sssd</orgname>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: pam_sss.8.xml:13 pam_sss.8.xml:18 -msgid "pam_sss" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: pam_sss.8.xml:19 -msgid "PAM module for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: pam_sss.8.xml:24 -msgid "" -"<command>pam_sss.so</command> <arg choice='opt'> <replaceable>quiet</" -"replaceable> </arg> <arg choice='opt'> <replaceable>forward_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_first_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_authtok</" -"replaceable> </arg> <arg choice='opt'> <replaceable>retry=N</replaceable> </" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:45 -msgid "" -"<command>pam_sss.so</command> is the PAM interface to the System Security " -"Services daemon (SSSD). Errors and results are logged through <command>syslog" -"(3)</command> with the LOG_AUTHPRIV facility." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:55 -msgid "<option>quiet</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:58 -msgid "Suppress log messages for unknown users." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:63 -msgid "<option>forward_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:66 -msgid "" -"If <option>forward_pass</option> is set the entered password is put on the " -"stack for other PAM modules to use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:73 -msgid "<option>use_first_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:76 -msgid "" -"The argument use_first_pass forces the module to use a previous stacked " -"modules password and will never prompt the user - if no password is " -"available or the password is not appropriate, the user will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:84 -msgid "<option>use_authtok</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:87 -msgid "" -"When password changing enforce the module to set the new password to the one " -"provided by a previously stacked password module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:94 -msgid "<option>retry=N</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:97 -msgid "" -"If specified the user is asked another N times for a password if " -"authentication fails. Default is 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:99 -msgid "" -"Please note that this option might not work as expected if the application " -"calling PAM handles the user dialog on its own. A typical example is " -"<command>sshd</command> with <option>PasswordAuthentication</option>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:110 -msgid "MODULE TYPES PROVIDED" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:111 -msgid "" -"All module types (<option>account</option>, <option>auth</option>, " -"<option>password</option> and <option>session</option>) are provided." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:117 -msgid "FILES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:118 -msgid "" -"If a password reset by root fails, because the corresponding SSSD provider " -"does not support password resets, an individual message can be displayed. " -"This message can e.g. contain instructions about how to reset a password." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:123 -msgid "" -"The message is read from the file <filename>pam_sss_pw_reset_message.LOC</" -"filename> where LOC stands for a locale string returned by <citerefentry> " -"<refentrytitle>setlocale</refentrytitle><manvolnum>3</manvolnum> </" -"citerefentry>. If there is no matching file the content of " -"<filename>pam_sss_pw_reset_message.txt</filename> is displayed. Root must be " -"the owner of the files and only root may have read and write permissions " -"while all other users must have only read permissions." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:133 -msgid "" -"These files are searched in the directory <filename>/etc/sssd/customize/" -"DOMAIN_NAME/</filename>. If no matching file is present a generic message is " -"displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:141 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd_krb5_locator_plugin.8.xml:10 sssd_krb5_locator_plugin.8.xml:15 -msgid "sssd_krb5_locator_plugin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:22 -msgid "" -"The Kerberos locator plugin <command>sssd_krb5_locator_plugin</command> is " -"used by the Kerberos provider of <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry> to tell the Kerberos " -"libraries what Realm and which KDC to use. Typically this is done in " -"<citerefentry> <refentrytitle>krb5.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> which is always read by the Kerberos libraries. " -"To simplify the configuration the Realm and the KDC can be defined in " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> as described in <citerefentry> " -"<refentrytitle>sssd-krb5.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry> puts the Realm and the name or IP address of the KDC into " -"the environment variables SSSD_KRB5_REALM and SSSD_KRB5_KDC respectively. " -"When <command>sssd_krb5_locator_plugin</command> is called by the kerberos " -"libraries it reads and evaluates these variables and returns them to the " -"libraries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:63 -msgid "" -"Not all Kerberos implementations support the use of plugins. If " -"<command>sssd_krb5_locator_plugin</command> is not available on your system " -"you have to edit /etc/krb5.conf to reflect your Kerberos setup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:69 -msgid "" -"If the environment variable SSSD_KRB5_LOCATOR_DEBUG is set to any value " -"debug messages will be sent to stderr." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:77 -msgid "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-simple.5.xml:10 sssd-simple.5.xml:16 -msgid "sssd-simple" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd-simple.5.xml:17 -msgid "the configuration file for SSSD's 'simple' access-control provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:24 -msgid "" -"This manual page describes the configuration of the simple access-control " -"provider for <citerefentry> <refentrytitle>sssd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry>. For a detailed syntax reference, " -"refer to the <quote>FILE FORMAT</quote> section of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:38 -msgid "" -"The simple access provider grants or denies access based on an access or " -"deny list of user or group names. The following rules apply:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:43 -msgid "If all lists are empty, access is granted" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:47 -msgid "" -"If any list is provided, the order of evaluation is allow,deny. This means " -"that any matching deny rule will supersede any matched allow rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:54 -msgid "" -"If either or both \"allow\" lists are provided, all users are denied unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:60 -msgid "" -"If only \"deny\" lists are provided, all users are granted access unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:78 -msgid "simple_allow_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:81 -msgid "Comma separated list of users who are allowed to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:88 -msgid "simple_deny_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:91 -msgid "Comma separated list of users who are explicitly denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:97 -msgid "simple_allow_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:100 -msgid "" -"Comma separated list of groups that are allowed to log in. This applies only " -"to groups within this SSSD domain. Local groups are not evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:108 -msgid "simple_deny_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:111 -msgid "" -"Comma separated list of groups that are explicitly denied access. This " -"applies only to groups within this SSSD domain. Local groups are not " -"evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:70 sssd-ipa.5.xml:65 -msgid "" -"Refer to the section <quote>DOMAIN SECTIONS</quote> of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page for details on the configuration of an SSSD " -"domain. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:120 -msgid "" -"Please note that it is an configuration error if both, simple_allow_users " -"and simple_deny_users, are defined." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:128 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the simple access provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-simple.5.xml:135 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" access_provider = simple\n" -" simple_allow_users = user1, user2\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:145 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ipa.5.xml:10 sssd-ipa.5.xml:16 -msgid "sssd-ipa" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:23 -msgid "" -"This manual page describes the configuration of the IPA provider for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. For a detailed syntax reference, refer to the <quote>FILE " -"FORMAT</quote> section of the <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:36 -msgid "" -"The IPA provider is a back end used to connect to an IPA server. (Refer to " -"the freeipa.org web site for information about IPA servers.) This provider " -"requires that the machine be joined to the IPA domain; configuration is " -"almost entirely self-discovered and obtained directly from the server." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:43 -msgid "" -"The IPA provider accepts the same options used by the <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> identity provider and the <citerefentry> <refentrytitle>sssd-" -"krb5</refentrytitle> <manvolnum>5</manvolnum> </citerefentry> authentication " -"provider with some exceptions described below." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:55 -msgid "" -"However, it is neither necessary nor recommended to set these options. IPA " -"provider can also be used as an access and chpass provider. As an access " -"provider it uses HBAC (host-based access control) rules. Please refer to " -"freeipa.org for more information about HBAC. No configuration of access " -"provider is required on the client side." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:72 -msgid "ipa_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:75 -msgid "" -"Specifies the name of the IPA domain. This is optional. If not provided, " -"the configuration domain name is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:83 -msgid "ipa_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:86 -msgid "" -"The comma-separated list of IP addresses or hostnames of the IPA servers to " -"which SSSD should connect in the order of preference. For more information " -"on failover and server redundancy, see the <quote>FAILOVER</quote> section. " -"This is optional if autodiscovery is enabled. For more information on " -"service discovery, refer to the the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:99 -msgid "ipa_hostname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:102 -msgid "" -"Optional. May be set on machines where the hostname(5) does not reflect the " -"fully qualified name used in the IPA domain to identify this host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:110 -msgid "ipa_dyndns_update (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:113 -msgid "" -"Optional. This option tells SSSD to automatically update the DNS server " -"built into FreeIPA v2 with the IP address of this client." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:118 -msgid "" -"NOTE: On older systems (such as RHEL 5), for this behavior to work reliably, " -"the default Kerberos realm must be set properly in /etc/krb5.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:129 -msgid "ipa_dyndns_iface (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:132 -msgid "" -"Optional. Applicable only when ipa_dyndns_update is true. Choose the " -"interface whose IP address should be used for dynamic DNS updates." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:137 -msgid "Default: Use the IP address of the IPA LDAP connection" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:143 -msgid "ipa_hbac_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:146 -msgid "Optional. Use the given string as search base for HBAC related objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:150 -msgid "Default: Use base DN" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:156 -msgid "ipa_host_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:159 -msgid "Optional. Use the given string as search base for host objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:168 -msgid "" -"If filter is given in any of search bases and " -"<emphasis>ipa_hbac_support_srchost</emphasis> is set to False, the filter " -"will be ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:180 -msgid "ipa_selinux_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:183 -msgid "Optional. Use the given string as search base for SELinux user maps." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:199 sssd-krb5.5.xml:229 -msgid "krb5_validate (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:202 sssd-krb5.5.xml:232 -msgid "" -"Verify with the help of krb5_keytab that the TGT obtained has not been " -"spoofed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:209 -msgid "" -"Note that this default differs from the traditional Kerberos provider back " -"end." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:219 -msgid "" -"The name of the Kerberos realm. This is optional and defaults to the value " -"of <quote>ipa_domain</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:223 -msgid "" -"The name of the Kerberos realm has a special meaning in IPA - it is " -"converted into the base DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:234 -msgid "" -"Specifies if the host and user principal should be canonicalized when " -"connecting to IPA LDAP and also for AS requests. This feature is available " -"with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:247 -msgid "ipa_hbac_refresh (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:250 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server. " -"This will reduce the latency and load on the IPA server if there are many " -"access-control requests made in a short period." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:257 -msgid "Default: 5 (seconds)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:262 -msgid "ipa_hbac_treat_deny_as (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:265 -msgid "" -"This option specifies how to treat the deprecated DENY-type HBAC rules. As " -"of FreeIPA v2.1, DENY rules are no longer supported on the server. All users " -"of FreeIPA will need to migrate their rules to use only the ALLOW rules. The " -"client will support two modes of operation during this transition period:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:274 -msgid "" -"<emphasis>DENY_ALL</emphasis>: If any HBAC DENY rules are detected, all " -"users will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:279 -msgid "" -"<emphasis>IGNORE</emphasis>: SSSD will ignore any DENY rules. Be very " -"careful with this option, as it may result in opening unintended access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:284 -msgid "Default: DENY_ALL" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:289 -msgid "ipa_hbac_support_srchost (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:292 -msgid "" -"If this is set to false, then srchost as given to SSSD by PAM will be " -"ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:296 -msgid "" -"Note that if set to <emphasis>False</emphasis>, this option casuses filters " -"given in <emphasis>ipa_host_search_base</emphasis> to be ignored;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:307 -msgid "ipa_automount_location (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:310 -msgid "The automounter location this IPA client will be using" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:313 -msgid "Default: The location named \"default\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:319 -msgid "ipa_netgroup_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:322 -msgid "The LDAP attribute that lists netgroup's memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:331 -msgid "ipa_netgroup_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:334 -msgid "" -"The LDAP attribute that lists system users and groups that are direct " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:339 sssd-ipa.5.xml:434 -msgid "Default: memberUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:344 -msgid "ipa_netgroup_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:347 -msgid "" -"The LDAP attribute that lists hosts and host groups that are direct members " -"of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:351 sssd-ipa.5.xml:446 -msgid "Default: memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:356 -msgid "ipa_netgroup_member_ext_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:359 -msgid "" -"The LDAP attribute that lists FQDNs of hosts and host groups that are " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:363 -msgid "Default: externalHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:368 -msgid "ipa_netgroup_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:371 -msgid "The LDAP attribute that contains NIS domain name of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:375 -msgid "Default: nisDomainName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:381 -msgid "ipa_host_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:384 sssd-ipa.5.xml:407 -msgid "The object class of a host entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:387 sssd-ipa.5.xml:410 -msgid "Default: ipaHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:392 -msgid "ipa_host_fqdn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:395 -msgid "The LDAP attribute that contains FQDN of the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:398 -msgid "Default: fqdn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:404 -msgid "ipa_selinux_usermap_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:415 -msgid "ipa_selinux_usermap_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:418 -msgid "The LDAP attribute that contains the name of SELinux usermap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:427 -msgid "ipa_selinux_usermap_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:430 -msgid "" -"The LDAP attribute that contains all users / groups this rule match against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:439 -msgid "ipa_selinux_usermap_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:442 -msgid "" -"The LDAP attribute that contains all hosts / hostgroups this rule match " -"against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:451 -msgid "ipa_selinux_usermap_see_also (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:454 -msgid "" -"The LDAP attribute that contains DN of HBAC rule which can be used for " -"matching instead of memberUser and memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:459 -msgid "Default: seeAlso" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:464 -msgid "ipa_selinux_usermap_selinux_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:467 -msgid "The LDAP attribute that contains SELinux user string itself." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:471 -msgid "Default: ipaSELinuxUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:476 -msgid "ipa_selinux_usermap_enabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:479 -msgid "" -"The LDAP attribute that contains whether or not is user map enabled for " -"usage." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:483 -msgid "Default: ipaEnabledFlag" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:488 -msgid "ipa_selinux_usermap_user_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:491 -msgid "The LDAP attribute that contains user category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:495 -msgid "Default: userCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:500 -msgid "ipa_selinux_usermap_host_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:503 -msgid "The LDAP attribute that contains host category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:507 -msgid "Default: hostCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:512 -msgid "ipa_selinux_usermap_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:515 -msgid "The LDAP attribute that contains unique ID of the user map." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:519 -msgid "Default: ipaUniqueID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:524 -msgid "ipa_host_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:527 -msgid "The LDAP attribute that contains the host's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:531 -msgid "Default: ipaSshPubKey" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:546 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the ipa provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ipa.5.xml:553 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" id_provider = ipa\n" -" ipa_server = ipaserver.example.com\n" -" ipa_hostname = myhost.example.com\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:564 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.8.xml:10 sssd.8.xml:15 -msgid "sssd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.8.xml:16 -msgid "System Security Services Daemon" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sssd.8.xml:21 -msgid "" -"<command>sssd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:31 -msgid "" -"<command>SSSD</command> provides a set of daemons to manage access to remote " -"directories and authentication mechanisms. It provides an NSS and PAM " -"interface toward the system and a pluggable backend system to connect to " -"multiple different account sources as well as D-Bus interface. It is also " -"the basis to provide client auditing and policy services for projects like " -"FreeIPA. It provides a more robust database to store local users as well as " -"extended user data." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:46 -msgid "" -"<option>-d</option>,<option>--debug-level</option> <replaceable>LEVEL</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:53 -msgid "<option>--debug-timestamps=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:57 -msgid "<emphasis>1</emphasis>: Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:60 -msgid "<emphasis>0</emphasis>: Disable timestamp in the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:69 -msgid "<option>--debug-microseconds=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:73 -msgid "" -"<emphasis>1</emphasis>: Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:76 -msgid "<emphasis>0</emphasis>: Disable microseconds in timestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:79 -msgid "Default: 0" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:85 -msgid "<option>-f</option>,<option>--debug-to-files</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:89 -msgid "" -"Send the debug output to files instead of stderr. By default, the log files " -"are stored in <filename>/var/log/sssd</filename> and there are separate log " -"files for every SSSD service and domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:97 -msgid "<option>-D</option>,<option>--daemon</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:101 -msgid "Become a daemon after starting up." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:107 -msgid "<option>-i</option>,<option>--interactive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:111 -msgid "Run in the foreground, don't become a daemon." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:117 sss_debuglevel.8.xml:42 -msgid "<option>-c</option>,<option>--config</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:121 sss_debuglevel.8.xml:46 -msgid "" -"Specify a non-default config file. The default is <filename>/etc/sssd/sssd." -"conf</filename>. For reference on the config file syntax and options, " -"consult the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:135 -msgid "<option>--version</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:139 -msgid "Print version number and exit." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.8.xml:147 -msgid "Signals" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:150 -msgid "SIGTERM/SIGINT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:153 -msgid "" -"Informs the SSSD to gracefully terminate all of its child processes and then " -"shut down the monitor." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:159 -msgid "SIGHUP" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:162 -msgid "" -"Tells the SSSD to stop writing to its current debug file descriptors and to " -"close and reopen them. This is meant to facilitate log rolling with programs " -"like logrotate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:170 -msgid "SIGUSR1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:173 -msgid "" -"Tells the SSSD to simulate offline operation for one minute. This is mostly " -"useful for testing purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:179 -msgid "SIGUSR2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:182 -msgid "" -"Tells the SSSD to go online immediately. This is mostly useful for testing " -"purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:193 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_obfuscate.8.xml:10 sss_obfuscate.8.xml:15 -msgid "sss_obfuscate" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_obfuscate.8.xml:16 -msgid "obfuscate a clear text password" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_obfuscate.8.xml:21 -msgid "" -"<command>sss_obfuscate</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>[PASSWORD]</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:32 -msgid "" -"<command>sss_obfuscate</command> converts a given password into human-" -"unreadable format and places it into appropriate domain section of the SSSD " -"config file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:37 -msgid "" -"The cleartext password is read from standard input or entered " -"interactively. The obfuscated password is put into " -"<quote>ldap_default_authtok</quote> parameter of a given SSSD domain and the " -"<quote>ldap_default_authtok_type</quote> parameter is set to " -"<quote>obfuscated_password</quote>. Refer to <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more details on these parameters." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:49 -msgid "" -"Please note that obfuscating the password provides <emphasis>no real " -"security benefit</emphasis> as it is still possible for an attacker to " -"reverse-engineer the password back. Using better authentication mechanisms " -"such as client side certificates or GSSAPI is <emphasis>strongly</emphasis> " -"advised." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:63 -msgid "<option>-s</option>,<option>--stdin</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:67 -msgid "The password to obfuscate will be read from standard input." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:74 sss_ssh_authorizedkeys.1.xml:82 -#: sss_ssh_knownhostsproxy.1.xml:81 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>DOMAIN</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:79 -msgid "" -"The SSSD domain to use the password in. The default name is <quote>default</" -"quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:86 -msgid "" -"<option>-f</option>,<option>--file</option> <replaceable>FILE</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:91 -msgid "Read the config file specified by the positional parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:95 -msgid "Default: <filename>/etc/sssd/sssd.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:105 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_useradd.8.xml:10 sss_useradd.8.xml:15 -msgid "sss_useradd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_useradd.8.xml:16 -msgid "create a new user" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_useradd.8.xml:21 -msgid "" -"<command>sss_useradd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:32 -msgid "" -"<command>sss_useradd</command> creates a new user account using the values " -"specified on the command line plus the default values from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:43 -msgid "" -"<option>-u</option>,<option>--uid</option> <replaceable>UID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:48 -msgid "" -"Set the UID of the user to the value of <replaceable>UID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:55 sss_usermod.8.xml:43 -msgid "" -"<option>-c</option>,<option>--gecos</option> <replaceable>COMMENT</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:60 sss_usermod.8.xml:48 -msgid "" -"Any text string describing the user. Often used as the field for the user's " -"full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:67 sss_usermod.8.xml:55 -msgid "" -"<option>-h</option>,<option>--home</option> <replaceable>HOME_DIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:72 -msgid "" -"The home directory of the user account. The default is to append the " -"<replaceable>LOGIN</replaceable> name to <filename>/home</filename> and use " -"that as the home directory. The base that is prepended before " -"<replaceable>LOGIN</replaceable> is tunable with <quote>user_defaults/" -"baseDirectory</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:82 sss_usermod.8.xml:66 -msgid "" -"<option>-s</option>,<option>--shell</option> <replaceable>SHELL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:87 -msgid "" -"The user's login shell. The default is currently <filename>/bin/bash</" -"filename>. The default can be changed with <quote>user_defaults/" -"defaultShell</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:96 -msgid "" -"<option>-G</option>,<option>--groups</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:101 -msgid "A list of existing groups this user is also a member of." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:107 -msgid "<option>-m</option>,<option>--create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:111 -msgid "" -"Create the user's home directory if it does not exist. The files and " -"directories contained in the skeleton directory (which can be defined with " -"the -k option or in the config file) will be copied to the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:121 -msgid "<option>-M</option>,<option>--no-create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:125 -msgid "" -"Do not create the user's home directory. Overrides configuration settings." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:132 -msgid "" -"<option>-k</option>,<option>--skel</option> <replaceable>SKELDIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:137 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<command>sss_useradd</command>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:143 -msgid "" -"This option is only valid if the <option>-m</option> (or <option>--create-" -"home</option>) option is specified, or creation of home directories is set " -"to TRUE in the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:152 sss_usermod.8.xml:124 -msgid "" -"<option>-Z</option>,<option>--selinux-user</option> " -"<replaceable>SELINUX_USER</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:157 -msgid "" -"The SELinux user for the user's login. If not specified, the system default " -"will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:169 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-krb5.5.xml:10 sssd-krb5.5.xml:16 -msgid "sssd-krb5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:23 -msgid "" -"This manual page describes the configuration of the Kerberos 5 " -"authentication backend for <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry>. For a detailed " -"syntax reference, please refer to the <quote>FILE FORMAT</quote> section of " -"the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:36 -msgid "" -"The Kerberos 5 authentication backend contains auth and chpass providers. It " -"must be paired with identity provider in order to function properly (for " -"example, id_provider = ldap). Some information required by the Kerberos 5 " -"authentication backend must be provided by the identity provider, such as " -"the user's Kerberos Principal Name (UPN). The configuration of the identity " -"provider should have an entry to specify the UPN. Please refer to the man " -"page for the applicable identity provider for details on how to configure " -"this." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:47 -msgid "" -"This backend also provides access control based on the .k5login file in the " -"home directory of the user. See <citerefentry> <refentrytitle>.k5login</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry> for more details. " -"Please note that an empty .k5login file will deny all access to this user. " -"To activate this feature use 'access_provider = krb5' in your sssd " -"configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:55 -msgid "" -"In the case where the UPN is not available in the identity backend " -"<command>sssd</command> will construct a UPN using the format " -"<replaceable>username</replaceable>@<replaceable>krb5_realm</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:106 -msgid "" -"The name of the Kerberos realm. This option is required and must be " -"specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:113 -msgid "krb5_kpasswd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:116 -msgid "" -"If the change password service is not running on the KDC alternative servers " -"can be defined here. An optional port number (preceded by a colon) may be " -"appended to the addresses or hostnames." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:122 -msgid "" -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. Please note that even if there are no more " -"kpasswd servers to try the back end is not switch to offline if " -"authentication against the KDC is still possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:129 -msgid "Default: Use the KDC" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:135 -msgid "krb5_ccachedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:138 -msgid "" -"Directory to store credential caches. All the substitution sequences of " -"krb5_ccname_template can be used here, too, except %d and %P. If the " -"directory does not exist it will be created. If %u, %U, %p or %h are used a " -"private directory belonging to the user is created. Otherwise a public " -"directory with restricted deletion flag (aka sticky bit, see <citerefentry> " -"<refentrytitle>chmod</refentrytitle> <manvolnum>1</manvolnum> </" -"citerefentry> for details) is created." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:151 -msgid "Default: /tmp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:157 -msgid "krb5_ccname_template (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:171 -msgid "login UID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:174 -msgid "%p" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:175 -msgid "principal name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:179 -msgid "%r" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:180 -msgid "realm name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:183 -msgid "%h" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:184 -msgid "home directory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:189 -msgid "value of krb5ccache_dir" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:194 -msgid "%P" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:195 -msgid "the process ID of the sssd client" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:160 -msgid "" -"Location of the user's credential cache. Currently only file based " -"credential caches are supported. In the template the following sequences are " -"substituted: <placeholder type=\"variablelist\" id=\"0\"/> If the template " -"ends with 'XXXXXX' mkstemp(3) is used to create a unique filename in a safe " -"way." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:209 -msgid "Default: FILE:%d/krb5cc_%U_XXXXXX" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:215 -msgid "krb5_auth_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:218 -msgid "" -"Timeout in seconds after an online authentication or change password request " -"is aborted. If possible the authentication request is continued offline." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:241 -msgid "krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:244 -msgid "" -"The location of the keytab to use when validating credentials obtained from " -"KDCs." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:248 -msgid "Default: /etc/krb5.keytab" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:254 -msgid "krb5_store_password_if_offline (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:257 -msgid "" -"Store the password of the user if the provider is offline and use it to " -"request a TGT when the provider gets online again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:262 -msgid "" -"Please note that this feature currently only available on a Linux platform. " -"Passwords stored in this way are kept in plaintext in the kernel keyring and " -"are potentially accessible by the root user (with difficulty)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:275 -msgid "krb5_renewable_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:278 -msgid "" -"Request a renewable ticket with a total lifetime given by an integer " -"immediately followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:283 sssd-krb5.5.xml:319 -msgid "<emphasis>s</emphasis> seconds" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:286 sssd-krb5.5.xml:322 -msgid "<emphasis>m</emphasis> minutes" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:289 sssd-krb5.5.xml:325 -msgid "<emphasis>h</emphasis> hours" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:292 sssd-krb5.5.xml:328 -msgid "<emphasis>d</emphasis> days." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:295 sssd-krb5.5.xml:331 -msgid "If there is no delimiter <emphasis>s</emphasis> is assumed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:299 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"renewable lifetime to one and a half hours please use '90m' instead of " -"'1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:305 -msgid "Default: not set, i.e. the TGT is not renewable" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:311 -msgid "krb5_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:314 -msgid "" -"Request ticket with a with a lifetime given by an integer immediately " -"followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:335 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"lifetime to one and a half hours please use '90m' instead of '1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:340 -msgid "" -"Default: not set, i.e. the default ticket lifetime configured on the KDC." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:347 -msgid "krb5_renew_interval (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:350 -msgid "" -"The time in seconds between two checks if the TGT should be renewed. TGTs " -"are renewed if about half of their lifetime is exceeded." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:355 -msgid "If this option is not set or 0 the automatic renewal is disabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:365 -msgid "krb5_use_fast (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:368 -msgid "" -"Enables flexible authentication secure tunneling (FAST) for Kerberos pre-" -"authentication. The following options are supported:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:373 -msgid "" -"<emphasis>never</emphasis> use FAST, this is equivalent to not set this " -"option at all." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:377 -msgid "" -"<emphasis>try</emphasis> to use FAST, if the server does not support fast " -"continue without." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:381 -msgid "" -"<emphasis>demand</emphasis> to use FAST, fail if the server does not require " -"fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:385 -msgid "Default: not set, i.e. FAST is not used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:388 -msgid "Please note that a keytab is required to use fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:391 -msgid "" -"Please note also that sssd supports fast only with MIT Kerberos version 1.8 " -"and above. If sssd used with an older version using this option is a " -"configuration error." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:400 -msgid "krb5_fast_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:403 -msgid "Specifies the server principal to use for FAST." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:412 -msgid "" -"Specifies if the host and user principal should be canonicalized. This " -"feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:65 -msgid "" -"If the auth-module krb5 is used in a SSSD domain, the following options must " -"be used. See the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page, section <quote>DOMAIN " -"SECTIONS</quote> for details on the configuration of a SSSD domain. " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:434 -msgid "" -"The following example assumes that SSSD is correctly configured and FOO is " -"one of the domains in the <replaceable>[sssd]</replaceable> section. This " -"example shows only configuration of Kerberos authentication, it does not " -"include any identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-krb5.5.xml:442 -#, no-wrap -msgid "" -" [domain/FOO]\n" -" auth_provider = krb5\n" -" krb5_server = 192.168.1.1\n" -" krb5_realm = EXAMPLE.COM\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:453 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupadd.8.xml:10 sss_groupadd.8.xml:15 -msgid "sss_groupadd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupadd.8.xml:16 -msgid "create a new group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupadd.8.xml:21 -msgid "" -"<command>sss_groupadd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:32 -msgid "" -"<command>sss_groupadd</command> creates a new group. These groups are " -"compatible with POSIX groups, with the additional feature that they can " -"contain other groups as members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupadd.8.xml:43 -msgid "" -"<option>-g</option>,<option>--gid</option> <replaceable>GID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupadd.8.xml:48 -msgid "" -"Set the GID of the group to the value of <replaceable>GID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_userdel.8.xml:10 sss_userdel.8.xml:15 -msgid "sss_userdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_userdel.8.xml:16 -msgid "delete a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_userdel.8.xml:21 -msgid "" -"<command>sss_userdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:32 -msgid "" -"<command>sss_userdel</command> deletes a user identified by login name " -"<replaceable>LOGIN</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:44 -msgid "<option>-r</option>,<option>--remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:48 -msgid "" -"Files in the user's home directory will be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:56 -msgid "<option>-R</option>,<option>--no-remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:60 -msgid "" -"Files in the user's home directory will NOT be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:68 -msgid "<option>-f</option>,<option>--force</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:72 -msgid "" -"This option forces <command>sss_userdel</command> to remove the user's home " -"directory and mail spool, even if they are not owned by the specified user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:80 -msgid "<option>-k</option>,<option>--kick</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:84 -msgid "Before actually deleting the user, terminate all his processes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:95 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupdel.8.xml:10 sss_groupdel.8.xml:15 -msgid "sss_groupdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupdel.8.xml:16 -msgid "delete a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupdel.8.xml:21 -msgid "" -"<command>sss_groupdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:32 -msgid "" -"<command>sss_groupdel</command> deletes a group identified by its name " -"<replaceable>GROUP</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupshow.8.xml:10 sss_groupshow.8.xml:15 -msgid "sss_groupshow" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupshow.8.xml:16 -msgid "print properties of a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupshow.8.xml:21 -msgid "" -"<command>sss_groupshow</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:32 -msgid "" -"<command>sss_groupshow</command> displays information about a group " -"identified by its name <replaceable>GROUP</replaceable>. The information " -"includes the group ID number, members of the group and the parent group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupshow.8.xml:43 -msgid "<option>-R</option>,<option>--recursive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupshow.8.xml:47 -msgid "" -"Also print indirect group members in a tree-like hierarchy. Note that this " -"also affects printing parent groups - without <option>R</option>, only the " -"direct parent will be printed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_usermod.8.xml:10 sss_usermod.8.xml:15 -msgid "sss_usermod" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_usermod.8.xml:16 -msgid "modify a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_usermod.8.xml:21 -msgid "" -"<command>sss_usermod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:32 -msgid "" -"<command>sss_usermod</command> modifies the account specified by " -"<replaceable>LOGIN</replaceable> to reflect the changes that are specified " -"on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:60 -msgid "The home directory of the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:71 -msgid "The user's login shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:82 -msgid "" -"Append this user to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:96 -msgid "" -"Remove this user from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:103 -msgid "<option>-l</option>,<option>--lock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:107 -msgid "Lock the user account. The user won't be able to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:114 -msgid "<option>-u</option>,<option>--unlock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:118 -msgid "Unlock the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:129 -msgid "The SELinux user for the user's login." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:140 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_cache.8.xml:10 sss_cache.8.xml:15 -msgid "sss_cache" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_cache.8.xml:16 -msgid "perform cache cleanup" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_cache.8.xml:21 -msgid "" -"<command>sss_cache</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_cache.8.xml:31 -msgid "" -"<command>sss_cache</command> invalidates records in SSSD cache. Invalidated " -"records are forced to be reloaded from server as soon as related SSSD " -"backend is online." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:42 -msgid "" -"<option>-u</option>,<option>--user</option> <replaceable>login</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:47 -msgid "Invalidate specific user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:53 -msgid "<option>-U</option>,<option>--users</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:57 -msgid "" -"Invalidate all user records. This option overrides invalidation of specific " -"user if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:64 -msgid "" -"<option>-g</option>,<option>--group</option> <replaceable>group</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:69 -msgid "Invalidate specific group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:75 -msgid "<option>-G</option>,<option>--groups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:79 -msgid "" -"Invalidate all group records. This option overrides invalidation of specific " -"group if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:86 -msgid "" -"<option>-n</option>,<option>--netgroup</option> <replaceable>netgroup</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:91 -msgid "Invalidate specific netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:97 -msgid "<option>-N</option>,<option>--netgroups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:101 -msgid "" -"Invalidate all netgroup records. This option overrides invalidation of " -"specific netgroup if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:108 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>domain</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:113 -msgid "Restrict invalidation process only to a particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_debuglevel.8.xml:10 sss_debuglevel.8.xml:15 -msgid "sss_debuglevel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_debuglevel.8.xml:16 -msgid "change debug level while SSSD is running" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_debuglevel.8.xml:21 -msgid "" -"<command>sss_debuglevel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>NEW_DEBUG_LEVEL</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_debuglevel.8.xml:32 -msgid "" -"<command>sss_debuglevel</command> changes debug level of SSSD monitor and " -"providers to <replaceable>NEW_DEBUG_LEVEL</replaceable> while SSSD is " -"running." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_debuglevel.8.xml:59 -msgid "<replaceable>NEW_DEBUG_LEVEL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_authorizedkeys.1.xml:10 sss_ssh_authorizedkeys.1.xml:15 -msgid "sss_ssh_authorizedkeys" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_ssh_authorizedkeys.1.xml:11 sss_ssh_knownhostsproxy.1.xml:11 -msgid "1" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_authorizedkeys.1.xml:16 -msgid "get OpenSSH authorized keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_authorizedkeys.1.xml:21 -msgid "" -"<command>sss_ssh_authorizedkeys</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>USER</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:32 -msgid "" -"<command>sss_ssh_authorizedkeys</command> acquires SSH public keys for user " -"<replaceable>USER</replaceable> and outputs them in OpenSSH authorized_keys " -"format (see the <quote>AUTHORIZED_KEYS FILE FORMAT</quote> section of " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> for more information)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:41 -msgid "" -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_authorizedkeys</" -"command> for public key user authentication if it is compiled with support " -"for either <quote>AuthorizedKeysCommand</quote> or <quote>PubkeyAgent</" -"quote> <citerefentry> <refentrytitle>sshd_config</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:58 -#, no-wrap -msgid "AuthorizedKeysCommand /usr/bin/sss_ssh_authorizedkeys\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:51 -msgid "" -"If <quote>AuthorizedKeysCommand</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by putting the following directive " -"in <citerefentry> <refentrytitle>sshd_config</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry>: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:69 -#, no-wrap -msgid "PubKeyAgent /usr/bin/sss_ssh_authorizedkeys %u\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:62 -msgid "" -"If <quote>PubkeyAgent</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by using the following directive " -"for <citerefentry> <refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> configuration: <placeholder type=\"programlisting" -"\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_authorizedkeys.1.xml:87 -msgid "" -"Search for user public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:98 -msgid "" -"<citerefentry> <refentrytitle>sshd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sshd_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_knownhostsproxy</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_knownhostsproxy.1.xml:10 sss_ssh_knownhostsproxy.1.xml:15 -msgid "sss_ssh_knownhostsproxy" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_knownhostsproxy.1.xml:16 -msgid "get OpenSSH host keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_knownhostsproxy.1.xml:21 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>HOST</replaceable></arg> <arg " -"choice='opt'><replaceable>PROXY_COMMAND</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:33 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> acquires SSH host public keys for " -"host <replaceable>HOST</replaceable>, stores them in a custom OpenSSH " -"known_hosts file (see the <quote>SSH_KNOWN_HOSTS FILE FORMAT</quote> section " -"of <citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> for more information) <filename>/var/lib/sss/" -"pubconf/known_hosts</filename> and estabilishes connection to the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:43 -msgid "" -"If <replaceable>PROXY_COMMAND</replaceable> is specified, it is used to " -"create the connection to the host instead of opening a socket." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_knownhostsproxy.1.xml:55 -#, no-wrap -msgid "" -"ProxyCommand /usr/bin/sss_ssh_knownhostsproxy -p %p %h\n" -"GlobalKnownHostsFile2 /var/lib/sss/pubconf/known_hosts\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:48 -msgid "" -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_knownhostsproxy</" -"command> for host key authentication by using the following directives for " -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> configuration: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_ssh_knownhostsproxy.1.xml:69 -msgid "" -"<option>-p</option>,<option>--port</option> <replaceable>PORT</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:74 -msgid "" -"Use port <replaceable>PORT</replaceable> to connect to the host. By " -"default, port 22 is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:86 -msgid "" -"Search for host public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:97 -msgid "" -"<citerefentry> <refentrytitle>ssh</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>ssh_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_authorizedkeys</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/service_discovery.xml:2 -msgid "SERVICE DISCOVERY" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/service_discovery.xml:4 -msgid "" -"The service discovery feature allows back ends to automatically find the " -"appropriate servers to connect to using a special DNS query." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:9 -msgid "Configuration" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:11 -msgid "" -"If no servers are specified, the back end automatically uses service " -"discovery to try to find a server. Optionally, the user may choose to use " -"both fixed server addresses and service discovery by inserting a special " -"keyword, <quote>_srv_</quote>, in the list of servers. The order of " -"preference is maintained. This feature is useful if, for example, the user " -"prefers to use service discovery whenever possible, and fall back to a " -"specific server when no servers can be discovered using DNS." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:23 -msgid "The domain name" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:25 -msgid "" -"Please refer to the <quote>dns_discovery_domain</quote> parameter in the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for more details." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:35 -msgid "The protocol" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:37 -msgid "" -"The queries usually specify _tcp as the protocol. Exceptions are documented " -"in respective option description." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:42 -msgid "See Also" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:44 -msgid "" -"For more information on the service discovery mechanism, refer to RFC 2782." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/upstream.xml:1 -msgid "<placeholder type=\"refentryinfo\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/failover.xml:2 -msgid "FAILOVER" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/failover.xml:4 -msgid "" -"The failover feature allows back ends to automatically switch to a different " -"server if the primary server fails." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:8 -msgid "Failover Syntax" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:10 -msgid "" -"The list of servers is given as a comma-separated list; any number of spaces " -"is allowed around the comma. The servers are listed in order of preference. " -"The list can contain any number of servers." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:17 -msgid "The Failover Mechanism" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:19 -msgid "" -"The failover mechanism distinguishes between a machine and a service. The " -"back end first tries to resolve the hostname of a given machine; if this " -"resolution attempt fails, the machine is considered offline. No further " -"attempts are made to connect to this machine for any other service. If the " -"resolution attempt succeeds, the back end tries to connect to a service on " -"this machine. If the service connection attempt fails, then only this " -"particular service is considered offline and the back end automatically " -"switches over to the next service. The machine is still considered online " -"and might still be tried for another service." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:32 -msgid "" -"Further connection attempts are made to machines or services marked as " -"offline after a specified period of time; this is currently hard coded to 30 " -"seconds." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:37 -msgid "" -"If there are no more machines to try, the back end as a whole switches to " -"offline mode, and then attempts to reconnect every 30 seconds." -msgstr "" - -#. type: Content of: <varlistentry><term> -#: include/param_help.xml:3 -msgid "<option>-h</option>,<option>--help</option>" -msgstr "" - -#. type: Content of: <varlistentry><listitem><para> -#: include/param_help.xml:7 -msgid "Display help message and exit." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:3 -msgid "" -"Bit mask that indicates which debug levels will be visible. 0x0010 is the " -"default value as well as the lowest allowed value, 0xFFF0 is the most " -"verbose mode. This setting overrides the settings from config file." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:8 -msgid "Currently supported debug levels:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:11 -msgid "" -"<emphasis>0x0010</emphasis>: Fatal failures. Anything that would prevent " -"SSSD from starting up or causes it to cease running." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:15 -msgid "" -"<emphasis>0x0020</emphasis>: Critical failures. An error that doesn't kill " -"the SSSD, but one that indicates that at least one major feature is not " -"going to work properly." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:20 -msgid "" -"<emphasis>0x0040</emphasis>: Serious failures. An error announcing that a " -"particular request or operation has failed." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:24 -msgid "" -"<emphasis>0x0080</emphasis>: Minor failures. These are the errors that would " -"percolate down to cause the operation failure of 2." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:28 -msgid "<emphasis>0x0100</emphasis>: Configuration settings." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:31 -msgid "<emphasis>0x0200</emphasis>: Function data." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:34 -msgid "<emphasis>0x0400</emphasis>: Trace messages for operation functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:37 -msgid "" -"<emphasis>0x1000</emphasis>: Trace messages for internal control functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:40 -msgid "" -"<emphasis>0x2000</emphasis>: Contents of function-internal variables that " -"may be interesting." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:43 -msgid "<emphasis>0x4000</emphasis>: Extremely low-level tracing information." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:46 -msgid "" -"To log required debug levels, simply add their numbers together as shown in " -"following examples:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:49 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, critical failures, " -"serious failures and function data use 0x0270." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:53 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, configuration settings, " -"function data, trace messages for internal control functions use 0x1310." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:57 -msgid "" -"<emphasis>Note</emphasis>: This is new format of debug levels introduced in " -"1.7.0. Older format (numbers from 0-10) is compatible but deprecated." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/experimental.xml:1 -msgid "" -"<emphasis> This is an experimental feature, please use http://fedorahosted." -"org/sssd to report any issues. </emphasis>" -msgstr "" diff --git a/src/man/po/zh_TW.po b/src/man/po/zh_TW.po deleted file mode 100644 index e5c6c0aef..000000000 --- a/src/man/po/zh_TW.po +++ /dev/null @@ -1,6747 +0,0 @@ -# SOME DESCRIPTIVE TITLE -# Copyright (C) YEAR Red Hat -# This file is distributed under the same license as the sssd-docs package. -# -# Translators: -msgid "" -msgstr "" -"Project-Id-Version: SSSD\n" -"Report-Msgid-Bugs-To: sssd-devel@redhat.com\n" -"POT-Creation-Date: 2012-02-28 16:51-0500\n" -"PO-Revision-Date: 2010-12-23 15:35+0000\n" -"Last-Translator: FULL NAME <EMAIL@ADDRESS>\n" -"Language-Team: Chinese (Taiwan) <trans-zh_TW@lists.fedoraproject.org>\n" -"Language: zh_TW\n" -"MIME-Version: 1.0\n" -"Content-Type: text/plain; charset=UTF-8\n" -"Content-Transfer-Encoding: 8bit\n" -"Plural-Forms: nplurals=1; plural=0\n" - -#. type: Content of: <reference><title> -#: sss_groupmod.8.xml:5 sssd.conf.5.xml:5 sssd-ldap.5.xml:5 pam_sss.8.xml:5 -#: sssd_krb5_locator_plugin.8.xml:5 sssd-simple.5.xml:5 sssd-ipa.5.xml:5 -#: sssd.8.xml:5 sss_obfuscate.8.xml:5 sss_useradd.8.xml:5 sssd-krb5.5.xml:5 -#: sss_groupadd.8.xml:5 sss_userdel.8.xml:5 sss_groupdel.8.xml:5 -#: sss_groupshow.8.xml:5 sss_usermod.8.xml:5 sss_cache.8.xml:5 -#: sss_debuglevel.8.xml:5 sss_ssh_authorizedkeys.1.xml:5 -#: sss_ssh_knownhostsproxy.1.xml:5 -msgid "SSSD Manual pages" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupmod.8.xml:10 sss_groupmod.8.xml:15 -msgid "sss_groupmod" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_groupmod.8.xml:11 pam_sss.8.xml:14 sssd_krb5_locator_plugin.8.xml:11 -#: sssd.8.xml:11 sss_obfuscate.8.xml:11 sss_useradd.8.xml:11 -#: sss_groupadd.8.xml:11 sss_userdel.8.xml:11 sss_groupdel.8.xml:11 -#: sss_groupshow.8.xml:11 sss_usermod.8.xml:11 sss_cache.8.xml:11 -#: sss_debuglevel.8.xml:11 -msgid "8" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupmod.8.xml:16 -msgid "modify a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupmod.8.xml:21 -msgid "" -"<command>sss_groupmod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:30 sssd-ldap.5.xml:21 pam_sss.8.xml:44 -#: sssd_krb5_locator_plugin.8.xml:20 sssd-simple.5.xml:22 sssd-ipa.5.xml:21 -#: sssd.8.xml:29 sss_obfuscate.8.xml:30 sss_useradd.8.xml:30 -#: sssd-krb5.5.xml:21 sss_groupadd.8.xml:30 sss_userdel.8.xml:30 -#: sss_groupdel.8.xml:30 sss_groupshow.8.xml:30 sss_usermod.8.xml:30 -#: sss_cache.8.xml:29 sss_debuglevel.8.xml:30 sss_ssh_authorizedkeys.1.xml:30 -#: sss_ssh_knownhostsproxy.1.xml:31 -msgid "DESCRIPTION" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:32 -msgid "" -"<command>sss_groupmod</command> modifies the group to reflect the changes " -"that are specified on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:39 pam_sss.8.xml:51 sssd.8.xml:42 sss_obfuscate.8.xml:58 -#: sss_useradd.8.xml:39 sss_groupadd.8.xml:39 sss_userdel.8.xml:39 -#: sss_groupdel.8.xml:39 sss_groupshow.8.xml:39 sss_usermod.8.xml:39 -#: sss_cache.8.xml:38 sss_debuglevel.8.xml:38 sss_ssh_authorizedkeys.1.xml:78 -#: sss_ssh_knownhostsproxy.1.xml:65 -msgid "OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:43 sss_usermod.8.xml:77 -msgid "" -"<option>-a</option>,<option>--append-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:48 -msgid "" -"Append this group to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupmod.8.xml:57 sss_usermod.8.xml:91 -msgid "" -"<option>-r</option>,<option>--remove-group</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupmod.8.xml:62 -msgid "" -"Remove this group from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sss_groupmod.8.xml:72 sssd.conf.5.xml:1331 sssd-ldap.5.xml:2096 -#: pam_sss.8.xml:139 sssd_krb5_locator_plugin.8.xml:75 sssd-simple.5.xml:143 -#: sssd-ipa.5.xml:562 sssd.8.xml:191 sss_obfuscate.8.xml:103 -#: sss_useradd.8.xml:167 sssd-krb5.5.xml:451 sss_groupadd.8.xml:58 -#: sss_userdel.8.xml:93 sss_groupdel.8.xml:46 sss_groupshow.8.xml:58 -#: sss_usermod.8.xml:138 sss_ssh_authorizedkeys.1.xml:96 -#: sss_ssh_knownhostsproxy.1.xml:95 -msgid "SEE ALSO" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupmod.8.xml:74 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.conf.5.xml:10 sssd.conf.5.xml:16 -msgid "sssd.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sssd.conf.5.xml:11 sssd-ldap.5.xml:11 sssd-simple.5.xml:11 -#: sssd-ipa.5.xml:11 sssd-krb5.5.xml:11 -msgid "5" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><refmiscinfo> -#: sssd.conf.5.xml:12 sssd-ldap.5.xml:12 sssd-simple.5.xml:12 -#: sssd-ipa.5.xml:12 sssd-krb5.5.xml:12 -msgid "File Formats and Conventions" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.conf.5.xml:17 sssd-ldap.5.xml:17 sssd_krb5_locator_plugin.8.xml:16 -#: sssd-ipa.5.xml:17 sssd-krb5.5.xml:17 -msgid "the configuration file for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:21 -msgid "FILE FORMAT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:29 -#, no-wrap -msgid "" -" <replaceable>[section]</replaceable>\n" -" <replaceable>key</replaceable> = <replaceable>value</replaceable>\n" -" <replaceable>key2</replaceable> = <replaceable>value2,value3</replaceable>\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:24 -msgid "" -"The file has an ini-style syntax and consists of sections and parameters. A " -"section begins with the name of the section in square brackets and continues " -"until the next section begins. An example of section with single and multi-" -"valued parameters: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:36 -msgid "" -"The data types used are string (no quotes needed), integer and bool (with " -"values of <quote>TRUE/FALSE</quote>)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:41 -msgid "" -"A line comment starts with a hash sign (<quote>#</quote>) or a semicolon " -"(<quote>;</quote>)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:46 -msgid "" -"All sections can have an optional <replaceable>description</replaceable> " -"parameter. Its function is only as a label for the section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:52 -msgid "" -"<filename>sssd.conf</filename> must be a regular file, owned by root and " -"only root may read from or write to the file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:58 -msgid "SPECIAL SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:61 -msgid "The [sssd] section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><title> -#: sssd.conf.5.xml:70 sssd.conf.5.xml:1177 -msgid "Section parameters" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:72 -msgid "config_file_version (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:75 -msgid "" -"Indicates what is the syntax of the config file. SSSD 0.6.0 and later use " -"version 2." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:81 -msgid "services" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:84 -msgid "" -"Comma separated list of services that are started when sssd itself starts." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:88 -msgid "" -"Supported services: nss, pam <phrase condition=\"with_sudo\">, sudo</phrase>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:94 sssd.conf.5.xml:257 -msgid "reconnection_retries (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:97 sssd.conf.5.xml:260 -msgid "" -"Number of times services should attempt to reconnect in the event of a Data " -"Provider crash or restart before they give up" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:102 sssd.conf.5.xml:265 -msgid "Default: 3" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:107 -msgid "domains" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:110 -msgid "" -"A domain is a database containing user information. SSSD can use more " -"domains at the same time, but at least one must be configured or SSSD won't " -"start. This parameter described the list of domains in the order you want " -"them to be queried." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:120 -msgid "re_expression (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:123 -msgid "" -"Regular expression that describes how to parse the string containing user " -"name and domain into these components." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:127 -msgid "" -"Default: <quote>(?P<name>[^@]+)@?(?P<domain>[^@]*$)</quote> " -"which translates to \"the name is everything up to the <quote>@</quote> " -"sign, the domain everything after that\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:132 -msgid "" -"PLEASE NOTE: the support for non-unique named subpatterns is not available " -"on all platforms (e.g. RHEL5 and SLES10). Only platforms with libpcre " -"version 7 or higher can support non-unique named subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:139 -msgid "" -"PLEASE NOTE ALSO: older version of libpcre only support the Python syntax (?" -"P<name>) to label subpatterns." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:146 -msgid "full_name_format (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:149 -msgid "" -"A <citerefentry> <refentrytitle>printf</refentrytitle> <manvolnum>3</" -"manvolnum> </citerefentry>-compatible format that describes how to translate " -"a (name, domain) tuple into a fully qualified name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:157 -msgid "Default: <quote>%1$s@%2$s</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:162 -msgid "try_inotify (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:165 -msgid "" -"SSSD monitors the state of resolv.conf to identify when it needs to update " -"its internal DNS resolver. By default, we will attempt to use inotify for " -"this, and will fall back to polling resolv.conf every five seconds if " -"inotify cannot be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:173 -msgid "" -"There are some limited situations where it is preferred that we should skip " -"even trying to use inotify. In these rare cases, this option should be set " -"to 'false'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:179 -msgid "" -"Default: true on platforms where inotify is supported. False on other " -"platforms." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:183 -msgid "" -"Note: this option will have no effect on platforms where inotify is " -"unavailable. On these platforms, polling will always be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:190 -msgid "krb5_rcache_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:193 -msgid "" -"Directory on the filesystem where SSSD should store Kerberos replay cache " -"files." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:197 -msgid "" -"This option accepts a special value __LIBKRB5_DEFAULTS__ that will instruct " -"SSSD to let libkrb5 decide the appropriate location for the replay cache." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:203 -msgid "" -"Default: Distribution-specific and specified at build-time. " -"(__LIBKRB5_DEFAULTS__ if not configured)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:63 -msgid "" -"Individual pieces of SSSD functionality are provided by special SSSD " -"services that are started and stopped together with SSSD. The services are " -"managed by a special service frequently called <quote>monitor</quote>. The " -"<quote>[sssd]</quote> section is used to configure the monitor as well as " -"some other important options like the identity domains. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:216 -msgid "SERVICES SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:218 -msgid "" -"Settings that can be used to configure different services are described in " -"this section. They should reside in the [<replaceable>$NAME</replaceable>] " -"section, for example, for NSS service, the section would be <quote>[nss]</" -"quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:225 -msgid "General service configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:227 -msgid "These options can be used to configure any service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:231 -msgid "debug_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:235 -msgid "debug_timestamps (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:238 -msgid "Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:241 sssd.conf.5.xml:376 sssd-ldap.5.xml:1328 -#: sssd-ldap.5.xml:1446 sssd-ipa.5.xml:206 sssd-ipa.5.xml:241 -msgid "Default: true" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:246 -msgid "debug_microseconds (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:249 -msgid "Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:252 sssd.conf.5.xml:641 sssd-ldap.5.xml:602 -#: sssd-ldap.5.xml:1260 sssd-ldap.5.xml:1397 sssd-ldap.5.xml:1795 -#: sssd-ipa.5.xml:123 sssd-ipa.5.xml:301 sssd-krb5.5.xml:235 -#: sssd-krb5.5.xml:269 sssd-krb5.5.xml:418 -msgid "Default: false" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:270 -msgid "command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:273 -msgid "" -"By default, the executable representing this service is called <command>sssd_" -"${service_name}</command>. This directive allows to change the executable " -"name for the service. In the vast majority of configurations, the default " -"values should suffice." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:281 -msgid "Default: <command>sssd_${service_name}</command>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:289 -msgid "NSS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:291 -msgid "" -"These options can be used to configure the Name Service Switch (NSS) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:296 -msgid "enum_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:299 -msgid "" -"How many seconds should nss_sss cache enumerations (requests for info about " -"all users)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:303 -msgid "Default: 120" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:308 -msgid "entry_cache_nowait_percentage (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:311 -msgid "" -"The entry cache can be set to automatically update entries in the background " -"if they are requested beyond a percentage of the entry_cache_timeout value " -"for the domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:317 -msgid "" -"For example, if the domain's entry_cache_timeout is set to 30s and " -"entry_cache_nowait_percentage is set to 50 (percent), entries that come in " -"after 15 seconds past the last cache update will be returned immediately, " -"but the SSSD will go and update the cache on its own, so that future " -"requests will not need to block waiting for a cache update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:327 -msgid "" -"Valid values for this option are 0-99 and represent a percentage of the " -"entry_cache_timeout for each domain. For performance reasons, this " -"percentage will never reduce the nowait timeout to less than 10 seconds. (0 " -"disables this feature)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:335 -msgid "Default: 50" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:340 -msgid "entry_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:343 -msgid "" -"Specifies for how many seconds nss_sss should cache negative cache hits " -"(that is, queries for invalid database entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:349 sssd.conf.5.xml:669 sssd-krb5.5.xml:223 -msgid "Default: 15" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:354 -msgid "filter_users, filter_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:357 -msgid "" -"Exclude certain users from being fetched from the sss NSS database. This is " -"particularly useful for system accounts. This option can also be set per-" -"domain or include fully-qualified names to filter only users from the " -"particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:364 -msgid "Default: root" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:369 -msgid "filter_users_in_groups (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:372 -msgid "" -"If you want filtered user still be group members set this option to false." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:381 -msgid "override_homedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:390 sssd-krb5.5.xml:166 -msgid "%u" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:391 sssd-krb5.5.xml:167 -msgid "login name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:394 sssd-krb5.5.xml:170 -msgid "%U" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:395 -msgid "UID number" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:398 sssd-krb5.5.xml:188 -msgid "%d" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:399 -msgid "domain name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:402 -msgid "%f" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:403 -msgid "fully qualified user name (user@domain)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:406 sssd-krb5.5.xml:200 -msgid "%%" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:407 sssd-krb5.5.xml:201 -msgid "a literal '%'" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:384 -msgid "" -"Override the user's home directory. You can either provide an absolute value " -"or a template. In the template, the following sequences are substituted: " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:413 -msgid "This option can also be set per-domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:418 -msgid "allowed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:421 -msgid "" -"Restrict user shell to one of the listed values. The order of evaluation is:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:424 -msgid "1. If the shell is present in <quote>/etc/shells</quote>, it is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:428 -msgid "" -"2. If the shell is in the allowed_shells list but not in <quote>/etc/shells</" -"quote>, use the value of the shell_fallback parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:433 -msgid "" -"3. If the shell is not in the allowed_shells list and not in <quote>/etc/" -"shells</quote>, a nologin shell is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:438 -msgid "An empty string for shell is passed as-is to libc." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:441 -msgid "" -"The <quote>/etc/shells</quote> is only read on SSSD start up, which means " -"that a restart of the SSSD is required in case a new shell is installed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:445 -msgid "Default: Not set. The user shell is automatically used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:450 -msgid "vetoed_shells (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:453 -msgid "Replace any instance of these shells with the shell_fallback" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:458 -msgid "shell_fallback (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:461 -msgid "" -"The default shell to use if an allowed shell is not installed on the machine." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:465 -msgid "Default: /bin/sh" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:472 -msgid "PAM configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:474 -msgid "" -"These options can be used to configure the Pluggable Authentication Module " -"(PAM) service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:479 -msgid "offline_credentials_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:482 -msgid "" -"If the authentication provider is offline, how long should we allow cached " -"logins (in days since the last successful online login)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:487 sssd.conf.5.xml:500 -msgid "Default: 0 (No limit)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:493 -msgid "offline_failed_login_attempts (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:496 -msgid "" -"If the authentication provider is offline, how many failed login attempts " -"are allowed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:506 -msgid "offline_failed_login_delay (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:509 -msgid "" -"The time in minutes which has to pass after offline_failed_login_attempts " -"has been reached before a new login attempt is possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:514 -msgid "" -"If set to 0 the user cannot authenticate offline if " -"offline_failed_login_attempts has been reached. Only a successful online " -"authentication can enable offline authentication again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:520 sssd.conf.5.xml:573 sssd.conf.5.xml:1093 -msgid "Default: 5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:526 -msgid "pam_verbosity (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:529 -msgid "" -"Controls what kind of messages are shown to the user during authentication. " -"The higher the number to more messages are displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:534 -msgid "Currently sssd supports the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:537 -msgid "<emphasis>0</emphasis>: do not show any message" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:540 -msgid "<emphasis>1</emphasis>: show only important messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:544 -msgid "<emphasis>2</emphasis>: show informational messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:547 -msgid "<emphasis>3</emphasis>: show all messages and debug information" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:551 sssd.8.xml:63 -msgid "Default: 1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:556 -msgid "pam_id_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:559 -msgid "" -"For any PAM request while SSSD is online, the SSSD will attempt to " -"immediately update the cached identity information for the user in order to " -"ensure that authentication takes place with the latest information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:565 -msgid "" -"A complete PAM conversation may perform multiple PAM requests, such as " -"account management and session opening. This option controls (on a per-" -"client-application basis) how long (in seconds) we can cache the identity " -"information to avoid excessive round-trips to the identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:579 -msgid "pam_pwd_expiration_warning (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:582 -msgid "Display a warning N days before the password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:585 -msgid "" -"Please note that the backend server has to provide information about the " -"expiration time of the password. If this information is missing, sssd " -"cannot display a warning." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:591 -msgid "Default: 7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:599 -msgid "SUDO configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:601 -msgid "These options can be used to configure the sudo service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:608 -msgid "sudo_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:611 -msgid "" -"For any sudo request that comes while SSSD is online, the SSSD will attempt " -"to update the cached rules in order to ensure that sudo has the latest " -"ruleset." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:617 -msgid "" -"The user may, however, run a couple of sudo commands successively, which " -"would trigger multiple LDAP requests. In order to speed up this use-case, " -"the sudo service maintains an in-memory cache that would be used for " -"performing fast replies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:624 -msgid "" -"This option controls how long (in seconds) can the sudo service cache rules " -"for a user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:628 -msgid "Default: 180" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:633 -msgid "sudo_timed (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:636 -msgid "" -"Whether or not to evaluate the sudoNotBefore and sudoNotAfter attributes " -"that implement time-dependent sudoers entries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:649 -msgid "AUTOFS configuration options" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:651 -msgid "These options can be used to configure the autofs service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:659 -msgid "autofs_negative_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:662 -msgid "" -"Specifies for how many seconds should the autofs responder negative cache " -"hits (that is, queries for invalid map entries, like nonexistent ones) " -"before asking the back end again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:679 -msgid "DOMAIN SECTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:686 -msgid "min_id,max_id (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:689 -msgid "" -"UID and GID limits for the domain. If a domain contains an entry that is " -"outside these limits, it is ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:694 -msgid "" -"For users, this affects the primary GID limit. The user will not be returned " -"to NSS if either the UID or the primary GID is outside the range. For non-" -"primary group memberships, those that are in range will be reported as " -"expected." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:701 -msgid "Default: 1 for min_id, 0 (no limit) for max_id" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:707 -msgid "timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:710 -msgid "" -"Timeout in seconds between heartbeats for this domain. This is used to " -"ensure that the backend process is alive and capable of answering requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:715 sssd-ldap.5.xml:1131 -msgid "Default: 10" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:721 -msgid "enumerate (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:724 -msgid "" -"Determines if a domain can be enumerated. This parameter can have one of the " -"following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:728 -msgid "TRUE = Users and groups are enumerated" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:731 -msgid "FALSE = No enumerations for this domain" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:734 sssd.conf.5.xml:839 sssd.conf.5.xml:893 -msgid "Default: FALSE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:737 -msgid "" -"Note: Enabling enumeration has a moderate performance impact on SSSD while " -"enumeration is running. It may take up to several minutes after SSSD startup " -"to fully complete enumerations. During this time, individual requests for " -"information will go directly to LDAP, though it may be slow, due to the " -"heavy enumeration processing." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:747 -msgid "" -"While the first enumeration is running, requests for the complete user or " -"group lists may return no results until it completes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:752 -msgid "" -"Further, enabling enumeration may increase the time necessary to detect " -"network disconnection, as longer timeouts are required to ensure that " -"enumeration lookups are completed successfully. For more information, refer " -"to the man pages for the specific id_provider in use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:763 -msgid "entry_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:766 -msgid "" -"How many seconds should nss_sss consider entries valid before asking the " -"backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:770 -msgid "Default: 5400" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:776 -msgid "entry_cache_user_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:779 -msgid "" -"How many seconds should nss_sss consider user entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:783 sssd.conf.5.xml:796 sssd.conf.5.xml:809 -#: sssd.conf.5.xml:822 -msgid "Default: entry_cache_timeout" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:789 -msgid "entry_cache_group_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:792 -msgid "" -"How many seconds should nss_sss consider group entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:802 -msgid "entry_cache_netgroup_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:805 -msgid "" -"How many seconds should nss_sss consider netgroup entries valid before " -"asking the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:815 -msgid "entry_cache_service_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:818 -msgid "" -"How many seconds should nss_sss consider service entries valid before asking " -"the backend again" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:828 -msgid "cache_credentials (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:831 -msgid "Determines if user credentials are also cached in the local LDB cache" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:835 -msgid "User credentials are stored in a SHA512 hash, not in plaintext" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:844 -msgid "account_cache_expiration (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:847 -msgid "" -"Number of days entries are left in cache after last successful login before " -"being removed during a cleanup of the cache. 0 means keep forever. The " -"value of this parameter must be greater than or equal to " -"offline_credentials_expiration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:854 -msgid "Default: 0 (unlimited)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:860 -msgid "id_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:863 -msgid "The Data Provider identity backend to use for this domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:867 -msgid "Supported backends:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:870 -msgid "proxy: Support a legacy NSS provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:873 -msgid "local: SSSD internal local provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:876 -msgid "ldap: LDAP provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:882 -msgid "use_fully_qualified_names (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:885 -msgid "" -"If set to TRUE, all requests to this domain must use fully qualified names. " -"For example, if used in LOCAL domain that contains a \"test\" user, " -"<command>getent passwd test</command> wouldn't find the user while " -"<command>getent passwd test@LOCAL</command> would." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:898 -msgid "auth_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:901 -msgid "" -"The authentication provider used for the domain. Supported auth providers " -"are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:905 -msgid "" -"<quote>ldap</quote> for native LDAP authentication. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:912 -msgid "" -"<quote>krb5</quote> for Kerberos authentication. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:919 -msgid "" -"<quote>proxy</quote> for relaying authentication to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:922 -msgid "<quote>none</quote> disables authentication explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:925 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"authentication requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:931 -msgid "access_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:934 -msgid "" -"The access control provider used for the domain. There are two built-in " -"access providers (in addition to any included in installed backends) " -"Internal special providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:940 -msgid "<quote>permit</quote> always allow access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:943 -msgid "<quote>deny</quote> always deny access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:946 -msgid "" -"<quote>simple</quote> access control based on access or deny lists. See " -"<citerefentry> <refentrytitle>sssd-simple</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry> for more information on configuring the simple " -"access module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:953 -msgid "Default: <quote>permit</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:958 -msgid "chpass_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:961 -msgid "" -"The provider which should handle change password operations for the domain. " -"Supported change password providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:966 -msgid "" -"<quote>ipa</quote> to change a password stored in an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:974 -msgid "" -"<quote>ldap</quote> to change a password stored in a LDAP server. See " -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:982 -msgid "" -"<quote>krb5</quote> to change the Kerberos password. See <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring Kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:990 -msgid "" -"<quote>proxy</quote> for relaying password changes to some other PAM target." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:994 -msgid "<quote>none</quote> disallows password changes explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:997 -msgid "" -"Default: <quote>auth_provider</quote> is used if it is set and can handle " -"change password requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1004 -msgid "sudo_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1010 -msgid "The SUDO provider used for the domain. Supported SUDO providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1014 -msgid "" -"<quote>ldap</quote> for rules stored in LDAP. See <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more information on configuring LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1021 -msgid "<quote>none</quote> disables SUDO explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1024 -msgid "Default: The value of <quote>id_provider</quote> is used if it is set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1030 -msgid "session_provider (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1033 -msgid "" -"The provider which should handle loading of session settings. Supported " -"session providers are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1038 -msgid "" -"<quote>ipa</quote> to load session settings from an IPA server. See " -"<citerefentry> <refentrytitle>sssd-ipa</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> for more information on configuring IPA." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1046 -msgid "<quote>none</quote> disallows fetching session settings explicitly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1049 -msgid "" -"Default: <quote>id_provider</quote> is used if it is set and can handle " -"session loading requests." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1056 -msgid "lookup_family_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1059 -msgid "" -"Provides the ability to select preferred address family to use when " -"performing DNS lookups." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1063 -msgid "Supported values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1066 -msgid "ipv4_first: Try looking up IPv4 address, if that fails, try IPv6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1069 -msgid "ipv4_only: Only attempt to resolve hostnames to IPv4 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1072 -msgid "ipv6_first: Try looking up IPv6 address, if that fails, try IPv4" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1075 -msgid "ipv6_only: Only attempt to resolve hostnames to IPv6 addresses." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1078 -msgid "Default: ipv4_first" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1084 -msgid "dns_resolver_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1087 -msgid "" -"Defines the amount of time (in seconds) to wait for a reply from the DNS " -"resolver before assuming that it is unreachable. If this timeout is reached, " -"the domain will continue to operate in offline mode." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1099 -msgid "dns_discovery_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1102 -msgid "" -"If service discovery is used in the back end, specifies the domain part of " -"the service discovery DNS query." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1106 -msgid "Default: Use the domain part of machine's hostname" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1112 -msgid "override_gid (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1115 -msgid "Override the primary GID value with the one specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1121 -msgid "case_sensitive (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1124 -msgid "" -"Treat user and group names as case sensitive. At the moment, this option is " -"not supported in the local provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1129 -msgid "Default: True" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:681 -msgid "" -"These configuration options can be present in a domain configuration " -"section, that is, in a section called <quote>[domain/<replaceable>NAME</" -"replaceable>]</quote> <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1141 -msgid "proxy_pam_target (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1144 -msgid "The proxy target PAM proxies to." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1147 -msgid "" -"Default: not set by default, you have to take an existing pam configuration " -"or create a new one and add the service name here." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1155 -msgid "proxy_lib_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1158 -msgid "" -"The name of the NSS library to use in proxy domains. The NSS functions " -"searched for in the library are in the form of _nss_$(libName)_$(function), " -"for example _nss_files_getpwent." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1137 -msgid "" -"Options valid for proxy domains. <placeholder type=\"variablelist\" id=" -"\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><title> -#: sssd.conf.5.xml:1170 -msgid "The local domain section" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><para> -#: sssd.conf.5.xml:1172 -msgid "" -"This section contains settings for domain that stores users and groups in " -"SSSD native database, that is, a domain that uses " -"<replaceable>id_provider=local</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1179 -msgid "default_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1182 -msgid "The default shell for users created with SSSD userspace tools." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1186 -msgid "Default: <filename>/bin/bash</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1191 -msgid "base_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1194 -msgid "" -"The tools append the login name to <replaceable>base_directory</replaceable> " -"and use that as the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1199 -msgid "Default: <filename>/home</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1204 -msgid "create_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1207 -msgid "" -"Indicate if a home directory should be created by default for new users. " -"Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1211 sssd.conf.5.xml:1223 -msgid "Default: TRUE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1216 -msgid "remove_homedir (bool)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1219 -msgid "" -"Indicate if a home directory should be removed by default for deleted " -"users. Can be overridden on command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1228 -msgid "homedir_umask (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1231 -msgid "" -"Used by <citerefentry> <refentrytitle>sss_useradd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry> to specify the default permissions " -"on a newly created home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1239 -msgid "Default: 077" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1244 -msgid "skel_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1247 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<citerefentry> <refentrytitle>sss_useradd</refentrytitle> <manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1257 -msgid "Default: <filename>/etc/skel</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1262 -msgid "mail_dir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1265 -msgid "" -"The mail spool directory. This is needed to manipulate the mailbox when its " -"corresponding user account is modified or deleted. If not specified, a " -"default value is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1272 -msgid "Default: <filename>/var/mail</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><term> -#: sssd.conf.5.xml:1277 -msgid "userdel_cmd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1280 -msgid "" -"The command that is run after a user is removed. The command us passed the " -"username of the user being removed as the first and only parameter. The " -"return code of the command is not taken into account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><refsect2><variablelist><varlistentry><listitem><para> -#: sssd.conf.5.xml:1286 -msgid "Default: None, no command is run" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.conf.5.xml:1296 sssd-ldap.5.xml:2064 sssd-simple.5.xml:126 -#: sssd-ipa.5.xml:544 sssd-krb5.5.xml:432 -msgid "EXAMPLE" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd.conf.5.xml:1302 -#, no-wrap -msgid "" -"[sssd]\n" -"domains = LDAP\n" -"services = nss, pam\n" -"config_file_version = 2\n" -"\n" -"[nss]\n" -"filter_groups = root\n" -"filter_users = root\n" -"\n" -"[pam]\n" -"\n" -"[domain/LDAP]\n" -"id_provider = ldap\n" -"ldap_uri = ldap://ldap.example.com\n" -"ldap_search_base = dc=example,dc=com\n" -"\n" -"auth_provider = krb5\n" -"krb5_server = kerberos.example.com\n" -"krb5_realm = EXAMPLE.COM\n" -"cache_credentials = true\n" -"\n" -"min_id = 10000\n" -"max_id = 20000\n" -"enumerate = False\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1298 -msgid "" -"The following example shows a typical SSSD config. It does not describe " -"configuration of the domains themselves - refer to documentation on " -"configuring domains for more details. <placeholder type=\"programlisting\" " -"id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.conf.5.xml:1333 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>pam_sss</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ldap.5.xml:10 sssd-ldap.5.xml:16 -msgid "sssd-ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:23 -msgid "" -"This manual page describes the configuration of LDAP domains for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. Refer to the <quote>FILE FORMAT</quote> section of the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for detailed syntax information." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:35 -msgid "You can configure SSSD to use more than one LDAP domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:38 -msgid "" -"LDAP back end supports id, auth, access and chpass providers. If you want to " -"authenticate against an LDAP server either TLS/SSL or LDAPS is required. " -"<command>sssd</command> <emphasis>does not</emphasis> support authentication " -"over an unencrypted channel. If the LDAP server is used only as an identity " -"provider, an encrypted channel is not needed. Please refer to " -"<quote>ldap_access_filter</quote> config option for more information about " -"using LDAP as an access provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:49 sssd-simple.5.xml:69 sssd-ipa.5.xml:64 -#: sssd-krb5.5.xml:63 -msgid "CONFIGURATION OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:60 -msgid "ldap_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:63 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference. Refer to the <quote>FAILOVER</" -"quote> section for more information on failover and server redundancy. If " -"not specified, service discovery is enabled. For more information, refer to " -"the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:70 -msgid "The format of the URI must match the format defined in RFC 2732:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:73 -msgid "ldap[s]://<host>[:port]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:76 -msgid "" -"For explicit IPv6 addresses, <host> must be enclosed in brackets []" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:79 -msgid "example: ldap://[fc00::126:25]:389" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:85 -msgid "ldap_chpass_uri (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:88 -msgid "" -"Specifies the comma-separated list of URIs of the LDAP servers to which SSSD " -"should connect in the order of preference to change the password of a user. " -"Refer to the <quote>FAILOVER</quote> section for more information on " -"failover and server redundancy." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:95 -msgid "To enable service discovery ldap_chpass_dns_service_name must be set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:99 -msgid "Default: empty, i.e. ldap_uri is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:105 -msgid "ldap_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:108 -msgid "The default base DN to use for performing LDAP user operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:112 -msgid "" -"Starting with SSSD 1.7.0, SSSD supports multiple search bases using the " -"syntax:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:116 -msgid "search_base[?scope?[filter][?search_base?scope?[filter]]*]" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:119 -msgid "The scope can be one of \"base\", \"onelevel\" or \"subtree\"." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:122 -msgid "" -"The filter must be a valid LDAP search filter as specified by http://www." -"ietf.org/rfc/rfc2254.txt" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:126 -msgid "Examples:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:129 -msgid "" -"ldap_search_base = dc=example,dc=com (which is equivalent to) " -"ldap_search_base = dc=example,dc=com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:134 -msgid "" -"ldap_search_base = cn=host_specific,dc=example,dc=com?subtree?" -"(host=thishost)?dc=example.com?subtree?" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:137 -msgid "" -"Note: It is unsupported to have multiple search bases which reference " -"identically-named objects (for example, groups with the same name in two " -"different search bases). This will lead to unpredictable behavior on client " -"machines." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:144 -msgid "" -"Default: If not set, the value of the defaultNamingContext or namingContexts " -"attribute from the RootDSE of the LDAP server is used. If " -"defaultNamingContext does not exists or has an empty value namingContexts is " -"used. The namingContexts attribute must have a single value with the DN of " -"the search base of the LDAP server to make this work. Multiple values are " -"are not supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:158 -msgid "ldap_schema (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:161 -msgid "" -"Specifies the Schema Type in use on the target LDAP server. Depending on " -"the selected schema, the default attribute names retrieved from the servers " -"may vary. The way that some attributes are handled may also differ. Three " -"schema types are currently supported: rfc2307 rfc2307bis IPA The main " -"difference between these schema types is how group memberships are recorded " -"in the server. With rfc2307, group members are listed by name in the " -"<emphasis>memberUid</emphasis> attribute. With rfc2307bis and IPA, group " -"members are listed by DN and stored in the <emphasis>member</emphasis> " -"attribute." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:180 -msgid "Default: rfc2307" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:186 -msgid "ldap_default_bind_dn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:189 -msgid "The default bind DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:196 -msgid "ldap_default_authtok_type (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:199 -msgid "The type of the authentication token of the default bind DN." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:203 -msgid "The two mechanisms currently supported are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:206 -msgid "password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:209 -msgid "obfuscated_password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:212 -msgid "Default: password" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:218 -msgid "ldap_default_authtok (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:221 -msgid "" -"The authentication token of the default bind DN. Only clear text passwords " -"are currently supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:228 -msgid "ldap_user_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:231 -msgid "The object class of a user entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:234 -msgid "Default: posixAccount" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:240 -msgid "ldap_user_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:243 -msgid "The LDAP attribute that corresponds to the user's login name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:247 -msgid "Default: uid" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:253 -msgid "ldap_user_uid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:256 -msgid "The LDAP attribute that corresponds to the user's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:260 -msgid "Default: uidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:266 -msgid "ldap_user_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:269 -msgid "The LDAP attribute that corresponds to the user's primary group id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:273 sssd-ldap.5.xml:740 -msgid "Default: gidNumber" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:279 -msgid "ldap_user_gecos (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:282 -msgid "The LDAP attribute that corresponds to the user's gecos field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:286 -msgid "Default: gecos" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:292 -msgid "ldap_user_home_directory (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:295 -msgid "The LDAP attribute that contains the name of the user's home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:299 -msgid "Default: homeDirectory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:305 -msgid "ldap_user_shell (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:308 -msgid "The LDAP attribute that contains the path to the user's default shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:312 -msgid "Default: loginShell" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:318 -msgid "ldap_user_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:321 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP user object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:325 sssd-ldap.5.xml:766 sssd-ldap.5.xml:878 -msgid "Default: nsUniqueId" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:331 -msgid "ldap_user_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:334 sssd-ldap.5.xml:775 sssd-ldap.5.xml:887 -msgid "" -"The LDAP attribute that contains timestamp of the last modification of the " -"parent object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:338 sssd-ldap.5.xml:779 sssd-ldap.5.xml:894 -msgid "Default: modifyTimestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:344 -msgid "ldap_user_shadow_last_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:347 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (date of " -"the last password change)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:357 -msgid "Default: shadowLastChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:363 -msgid "ldap_user_shadow_min (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:366 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (minimum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:375 -msgid "Default: shadowMin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:381 -msgid "ldap_user_shadow_max (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:384 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart (maximum " -"password age)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:393 -msgid "Default: shadowMax" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:399 -msgid "ldap_user_shadow_warning (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:402 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password warning period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:412 -msgid "Default: shadowWarning" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:418 -msgid "ldap_user_shadow_inactive (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:421 -msgid "" -"When using ldap_pwd_policy=shadow, this parameter contains the name of an " -"LDAP attribute corresponding to its <citerefentry> <refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> counterpart " -"(password inactivity period)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:431 -msgid "Default: shadowInactive" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:437 -msgid "ldap_user_shadow_expire (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:440 -msgid "" -"When using ldap_pwd_policy=shadow or ldap_account_expire_policy=shadow, this " -"parameter contains the name of an LDAP attribute corresponding to its " -"<citerefentry> <refentrytitle>shadow</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> counterpart (account expiration date)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:450 -msgid "Default: shadowExpire" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:456 -msgid "ldap_user_krb_last_pwd_change (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:459 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time of last password change in " -"kerberos." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:465 -msgid "Default: krbLastPwdChange" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:471 -msgid "ldap_user_krb_password_expiration (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:474 -msgid "" -"When using ldap_pwd_policy=mit_kerberos, this parameter contains the name of " -"an LDAP attribute storing the date and time when current password expires." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:480 -msgid "Default: krbPasswordExpiration" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:486 -msgid "ldap_user_ad_account_expires (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:489 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the expiration time of the account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:494 -msgid "Default: accountExpires" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:500 -msgid "ldap_user_ad_user_account_control (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:503 -msgid "" -"When using ldap_account_expire_policy=ad, this parameter contains the name " -"of an LDAP attribute storing the user account control bit field." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:508 -msgid "Default: userAccountControl" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:514 -msgid "ldap_ns_account_lock (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:517 -msgid "" -"When using ldap_account_expire_policy=rhds or equivalent, this parameter " -"determines if access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:522 -msgid "Default: nsAccountLock" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:528 -msgid "ldap_user_nds_login_disabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:531 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines if " -"access is allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:535 sssd-ldap.5.xml:549 -msgid "Default: loginDisabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:541 -msgid "ldap_user_nds_login_expiration_time (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:544 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines until " -"which date access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:555 -msgid "ldap_user_nds_login_allowed_time_map (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:558 -msgid "" -"When using ldap_account_expire_policy=nds, this attribute determines the " -"hours of a day in a week when access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:563 -msgid "Default: loginAllowedTimeMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:569 -msgid "ldap_user_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:572 -msgid "" -"The LDAP attribute that contains the user's Kerberos User Principal Name " -"(UPN)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:576 -msgid "Default: krbPrincipalName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:582 -msgid "ldap_user_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:585 -msgid "The LDAP attribute that contains the user's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:592 -msgid "ldap_force_upper_case_realm (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:595 -msgid "" -"Some directory servers, for example Active Directory, might deliver the " -"realm part of the UPN in lower case, which might cause the authentication to " -"fail. Set this option to a non-zero value if you want to use an upper-case " -"realm." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:608 -msgid "ldap_enumeration_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:611 -msgid "" -"Specifies how many seconds SSSD has to wait before refreshing its cache of " -"enumerated records." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:616 sssd-ldap.5.xml:1808 -msgid "Default: 300" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:622 -msgid "ldap_purge_cache_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:625 -msgid "" -"Determine how often to check the cache for inactive entries (such as groups " -"with no members and users who have never logged in) and remove them to save " -"space." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:631 -msgid "Setting this option to zero will disable the cache cleanup operation." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:635 -msgid "Default: 10800 (12 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:641 -msgid "ldap_user_fullname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:644 -msgid "The LDAP attribute that corresponds to the user's full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:648 sssd-ldap.5.xml:727 sssd-ldap.5.xml:828 -#: sssd-ldap.5.xml:919 sssd-ldap.5.xml:1663 sssd-ldap.5.xml:1881 -#: sssd-ipa.5.xml:422 -msgid "Default: cn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:654 -msgid "ldap_user_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:657 -msgid "The LDAP attribute that lists the user's group memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:661 sssd-ipa.5.xml:326 -msgid "Default: memberOf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:667 -msgid "ldap_user_authorized_service (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:670 -msgid "" -"If access_provider=ldap and ldap_access_order=authorized_service, SSSD will " -"use the presence of the authorizedService attribute in the user's LDAP entry " -"to determine access privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:677 -msgid "" -"An explicit deny (!svc) is resolved first. Second, SSSD searches for " -"explicit allow (svc) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:682 -msgid "Default: authorizedService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:688 -msgid "ldap_user_authorized_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:691 -msgid "" -"If access_provider=ldap and ldap_access_order=host, SSSD will use the " -"presence of the host attribute in the user's LDAP entry to determine access " -"privilege." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:697 -msgid "" -"An explicit deny (!host) is resolved first. Second, SSSD searches for " -"explicit allow (host) and finally for allow_all (*)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:702 -msgid "Default: host" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:708 -msgid "ldap_group_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:711 -msgid "The object class of a group entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:714 -msgid "Default: posixGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:720 -msgid "ldap_group_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:723 -msgid "The LDAP attribute that corresponds to the group name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:733 -msgid "ldap_group_gid_number (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:736 -msgid "The LDAP attribute that corresponds to the group's id." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:746 -msgid "ldap_group_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:749 -msgid "The LDAP attribute that contains the names of the group's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:753 -msgid "Default: memberuid (rfc2307) / member (rfc2307bis)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:759 -msgid "ldap_group_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:762 -msgid "The LDAP attribute that contains the UUID/GUID of an LDAP group object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:772 -msgid "ldap_group_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:785 -msgid "ldap_group_nesting_level (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:788 -msgid "" -"If ldap_schema is set to a schema format that supports nested groups (e.g. " -"RFC2307bis), then this option controls how many levels of nesting SSSD will " -"follow. This option has no effect on the RFC2307 schema." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:795 -msgid "Default: 2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:801 -msgid "ldap_netgroup_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:804 -msgid "The object class of a netgroup entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:807 -msgid "In IPA provider, ipa_netgroup_object_class should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:811 -msgid "Default: nisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:817 -msgid "ldap_netgroup_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:820 -msgid "The LDAP attribute that corresponds to the netgroup name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:824 -msgid "In IPA provider, ipa_netgroup_name should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:834 -msgid "ldap_netgroup_member (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:837 -msgid "The LDAP attribute that contains the names of the netgroup's members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:841 -msgid "In IPA provider, ipa_netgroup_member should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:845 -msgid "Default: memberNisNetgroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:851 -msgid "ldap_netgroup_triple (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:854 -msgid "" -"The LDAP attribute that contains the (host, user, domain) netgroup triples." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:858 sssd-ldap.5.xml:891 -msgid "This option is not available in IPA provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:861 -msgid "Default: nisNetgroupTriple" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:867 -msgid "ldap_netgroup_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:870 -msgid "" -"The LDAP attribute that contains the UUID/GUID of an LDAP netgroup object." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:874 -msgid "In IPA provider, ipa_netgroup_uuid should be used instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:884 -msgid "ldap_netgroup_modify_timestamp (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:900 -msgid "ldap_service_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:903 -msgid "The object class of a service entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:906 -msgid "Default: ipService" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:912 -msgid "ldap_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:915 -msgid "" -"The LDAP attribute that contains the name of service attributes and their " -"aliases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:925 -msgid "ldap_service_port (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:928 -msgid "The LDAP attribute that contains the port managed by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:932 -msgid "Default: ipServicePort" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:938 -msgid "ldap_service_proto (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:941 -msgid "" -"The LDAP attribute that contains the protocols understood by this service." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:945 -msgid "Default: ipServiceProtocol" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:951 -msgid "ldap_service_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:954 -msgid "An optional base DN to restrict service searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:958 sssd-ldap.5.xml:1918 sssd-ldap.5.xml:1937 -#: sssd-ldap.5.xml:1956 sssd-ldap.5.xml:2019 sssd-ldap.5.xml:2041 -#: sssd-ipa.5.xml:163 sssd-ipa.5.xml:187 -msgid "" -"See <quote>ldap_search_base</quote> for information about configuring " -"multiple search bases." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:963 sssd-ldap.5.xml:1923 sssd-ldap.5.xml:1942 -#: sssd-ldap.5.xml:1961 sssd-ldap.5.xml:2024 sssd-ldap.5.xml:2046 -#: sssd-ipa.5.xml:173 sssd-ipa.5.xml:192 -msgid "Default: the value of <emphasis>ldap_search_base</emphasis>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:970 -msgid "ldap_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:973 -msgid "" -"Specifies the timeout (in seconds) that ldap searches are allowed to run " -"before they are cancelled and cached results are returned (and offline mode " -"is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:979 -msgid "" -"Note: this option is subject to change in future versions of the SSSD. It " -"will likely be replaced at some point by a series of timeouts for specific " -"lookup types." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:985 sssd-ldap.5.xml:1027 sssd-ldap.5.xml:1042 -msgid "Default: 6" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:991 -msgid "ldap_enumeration_search_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:994 -msgid "" -"Specifies the timeout (in seconds) that ldap searches for user and group " -"enumerations are allowed to run before they are cancelled and cached results " -"are returned (and offline mode is entered)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1001 -msgid "Default: 60" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1007 -msgid "ldap_network_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1010 -msgid "" -"Specifies the timeout (in seconds) after which the <citerefentry> " -"<refentrytitle>poll</refentrytitle> <manvolnum>2</manvolnum> </citerefentry>/" -"<citerefentry> <refentrytitle>select</refentrytitle> <manvolnum>2</" -"manvolnum> </citerefentry> following a <citerefentry> " -"<refentrytitle>connect</refentrytitle> <manvolnum>2</manvolnum> </" -"citerefentry> returns in case of no activity." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1033 -msgid "ldap_opt_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1036 -msgid "" -"Specifies a timeout (in seconds) after which calls to synchronous LDAP APIs " -"will abort if no response is received. Also controls the timeout when " -"communicating with the KDC in case of SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1048 -msgid "ldap_connection_expire_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1051 -msgid "" -"Specifies a timeout (in seconds) that a connection to an LDAP server will be " -"maintained. After this time, the connection will be re-established. If used " -"in parallel with SASL/GSSAPI, the sooner of the two values (this value vs. " -"the TGT lifetime) will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1059 -msgid "Default: 900 (15 minutes)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1065 -msgid "ldap_page_size (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1068 -msgid "" -"Specify the number of records to retrieve from LDAP in a single request. " -"Some LDAP servers enforce a maximum limit per-request." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1073 -msgid "Default: 1000" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1079 -msgid "ldap_disable_paging" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1082 -msgid "" -"Disable the LDAP paging control. This option should be used if the LDAP " -"server reports that it supports the LDAP paging control in its RootDSE but " -"it is not enabled or does not behave properly." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1088 -msgid "" -"Example: OpenLDAP servers with the paging control module installed on the " -"server but not enabled will report it in the RootDSE but be unable to use it." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1094 -msgid "" -"Example: 389 DS has a bug where it can only support a one paging control at " -"a time on a single connection. On busy clients, this can result in some " -"requests being denied." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1103 -msgid "ldap_deref_threshold (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1106 -msgid "" -"Specify the number of group members that must be missing from the internal " -"cache in order to trigger a dereference lookup. If less members are missing, " -"they are looked up individually." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1112 -msgid "" -"You can turn off dereference lookups completely by setting the value to 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1116 -msgid "" -"A dereference lookup is a means of fetching all group members in a single " -"LDAP call. Different LDAP servers may implement different dereference " -"methods. The currently supported servers are 389/RHDS, OpenLDAP and Active " -"Directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1124 -msgid "" -"<emphasis>Note:</emphasis> If any of the search bases specifies a search " -"filter, then the dereference lookup performance enhancement will be disabled " -"regardless of this setting." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1137 -msgid "ldap_tls_reqcert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1140 -msgid "" -"Specifies what checks to perform on server certificates in a TLS session, if " -"any. It can be specified as one of the following values:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1146 -msgid "" -"<emphasis>never</emphasis> = The client will not request or check any server " -"certificate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1150 -msgid "" -"<emphasis>allow</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, it will be ignored and the session proceeds normally." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1157 -msgid "" -"<emphasis>try</emphasis> = The server certificate is requested. If no " -"certificate is provided, the session proceeds normally. If a bad certificate " -"is provided, the session is immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1163 -msgid "" -"<emphasis>demand</emphasis> = The server certificate is requested. If no " -"certificate is provided, or a bad certificate is provided, the session is " -"immediately terminated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1169 -msgid "<emphasis>hard</emphasis> = Same as <quote>demand</quote>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1173 -msgid "Default: hard" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1179 -msgid "ldap_tls_cacert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1182 -msgid "" -"Specifies the file that contains certificates for all of the Certificate " -"Authorities that <command>sssd</command> will recognize." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1187 sssd-ldap.5.xml:1205 sssd-ldap.5.xml:1246 -msgid "" -"Default: use OpenLDAP defaults, typically in <filename>/etc/openldap/ldap." -"conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1194 -msgid "ldap_tls_cacertdir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1197 -msgid "" -"Specifies the path of a directory that contains Certificate Authority " -"certificates in separate individual files. Typically the file names need to " -"be the hash of the certificate followed by '.0'. If available, " -"<command>cacertdir_rehash</command> can be used to create the correct names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1212 -msgid "ldap_tls_cert (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1215 -msgid "Specifies the file that contains the certificate for the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1219 sssd-ldap.5.xml:1231 sssd-ldap.5.xml:1979 -#: sssd-ldap.5.xml:2006 sssd-krb5.5.xml:359 -msgid "Default: not set" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1225 -msgid "ldap_tls_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1228 -msgid "Specifies the file that contains the client's key." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1237 -msgid "ldap_tls_cipher_suite (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1240 -msgid "" -"Specifies acceptable cipher suites. Typically this is a colon sperated " -"list. See <citerefentry><refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> for format." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1253 -msgid "ldap_id_use_start_tls (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1256 -msgid "" -"Specifies that the id_provider connection must also use <systemitem class=" -"\"protocol\">tls</systemitem> to protect the channel." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1266 -msgid "ldap_sasl_mech (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1269 -msgid "" -"Specify the SASL mechanism to use. Currently only GSSAPI is tested and " -"supported." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1273 sssd-ldap.5.xml:1428 -msgid "Default: none" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1279 -msgid "ldap_sasl_authid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1282 -msgid "" -"Specify the SASL authorization id to use. When GSSAPI is used, this " -"represents the Kerberos principal used for authentication to the directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1287 -msgid "Default: host/machine.fqdn@REALM" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1293 -msgid "ldap_sasl_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1296 -msgid "" -"If set to true, the LDAP library would perform a reverse lookup to " -"canonicalize the host name during a SASL bind." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1301 -msgid "Default: false;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1307 -msgid "ldap_krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1310 -msgid "Specify the keytab to use when using SASL/GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1313 -msgid "Default: System keytab, normally <filename>/etc/krb5.keytab</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1319 -msgid "ldap_krb5_init_creds (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1322 -msgid "" -"Specifies that the id_provider should init Kerberos credentials (TGT). This " -"action is performed only if SASL is used and the mechanism selected is " -"GSSAPI." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1334 -msgid "ldap_krb5_ticket_lifetime (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1337 -msgid "Specifies the lifetime in seconds of the TGT if GSSAPI is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1341 -msgid "Default: 86400 (24 hours)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1347 sssd-krb5.5.xml:74 -msgid "krb5_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1350 sssd-krb5.5.xml:77 -msgid "" -"Specifies the comma-separated list of IP addresses or hostnames of the " -"Kerberos servers to which SSSD should connect in the order of preference. " -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. An optional port number (preceded by a " -"colon) may be appended to the addresses or hostnames. If empty, service " -"discovery is enabled - for more information, refer to the <quote>SERVICE " -"DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1362 sssd-krb5.5.xml:89 -msgid "" -"When using service discovery for KDC or kpasswd servers, SSSD first searches " -"for DNS entries that specify _udp as the protocol and falls back to _tcp if " -"none are found." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1367 sssd-krb5.5.xml:94 -msgid "" -"This option was named <quote>krb5_kdcip</quote> in earlier releases of SSSD. " -"While the legacy name is recognized for the time being, users are advised to " -"migrate their config files to use <quote>krb5_server</quote> instead." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1376 sssd-ipa.5.xml:216 sssd-krb5.5.xml:103 -msgid "krb5_realm (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1379 -msgid "Specify the Kerberos REALM (for SASL/GSSAPI auth)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1382 -msgid "Default: System defaults, see <filename>/etc/krb5.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1388 sssd-ipa.5.xml:231 sssd-krb5.5.xml:409 -msgid "krb5_canonicalize (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1391 -msgid "" -"Specifies if the host principal should be canonicalized when connecting to " -"LDAP server. This feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1403 -msgid "ldap_pwd_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1406 -msgid "" -"Select the policy to evaluate the password expiration on the client side. " -"The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1411 -msgid "" -"<emphasis>none</emphasis> - No evaluation on the client side. This option " -"cannot disable server-side password policies." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1416 -msgid "" -"<emphasis>shadow</emphasis> - Use <citerefentry><refentrytitle>shadow</" -"refentrytitle> <manvolnum>5</manvolnum></citerefentry> style attributes to " -"evaluate if the password has expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1422 -msgid "" -"<emphasis>mit_kerberos</emphasis> - Use the attributes used by MIT Kerberos " -"to determine if the password has expired. Use chpass_provider=krb5 to update " -"these attributes when the password is changed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1434 -msgid "ldap_referrals (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1437 -msgid "Specifies whether automatic referral chasing should be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1441 -msgid "" -"Please note that sssd only supports referral chasing when it is compiled " -"with OpenLDAP version 2.4.13 or higher." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1452 -msgid "ldap_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1455 -msgid "Specifies the service name to use when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1459 -msgid "Default: ldap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1465 -msgid "ldap_chpass_dns_service_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1468 -msgid "" -"Specifies the service name to use to find an LDAP server which allows " -"password changes when service discovery is enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1473 -msgid "Default: not set, i.e. service discovery is disabled" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1479 -msgid "ldap_access_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1482 -msgid "" -"If using access_provider = ldap, this option is mandatory. It specifies an " -"LDAP search filter criteria that must be met for the user to be granted " -"access on this host. If access_provider = ldap and this option is not set, " -"it will result in all users being denied access. Use access_provider = allow " -"to change this default behavior." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1492 sssd-ldap.5.xml:1982 -msgid "Example:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1495 -#, no-wrap -msgid "" -"access_provider = ldap\n" -"ldap_access_filter = memberOf=cn=allowedusers,ou=Groups,dc=example,dc=com\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1499 -msgid "" -"This example means that access to this host is restricted to members of the " -"\"allowedusers\" group in ldap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1504 -msgid "" -"Offline caching for this feature is limited to determining whether the " -"user's last online login was granted access permission. If they were granted " -"access during their last login, they will continue to be granted access " -"while offline and vice-versa." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1512 sssd-ldap.5.xml:1562 -msgid "Default: Empty" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1518 -msgid "ldap_account_expire_policy (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1521 -msgid "" -"With this option a client side evaluation of access control attributes can " -"be enabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1525 -msgid "" -"Please note that it is always recommended to use server side access control, " -"i.e. the LDAP server should deny the bind request with a suitable error code " -"even if the password is correct." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1532 -msgid "The following values are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1535 -msgid "" -"<emphasis>shadow</emphasis>: use the value of ldap_user_shadow_expire to " -"determine if the account is expired." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1540 -msgid "" -"<emphasis>ad</emphasis>: use the value of the 32bit field " -"ldap_user_ad_user_account_control and allow access if the second bit is not " -"set. If the attribute is missing access is granted. Also the expiration time " -"of the account is checked." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1547 -msgid "" -"<emphasis>rhds</emphasis>, <emphasis>ipa</emphasis>, <emphasis>389ds</" -"emphasis>: use the value of ldap_ns_account_lock to check if access is " -"allowed or not." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1553 -msgid "" -"<emphasis>nds</emphasis>: the values of " -"ldap_user_nds_login_allowed_time_map, ldap_user_nds_login_disabled and " -"ldap_user_nds_login_expiration_time are used to check if access is allowed. " -"If both attributes are missing access is granted." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1568 -msgid "ldap_access_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1571 -msgid "Comma separated list of access control options. Allowed values are:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1575 -msgid "<emphasis>filter</emphasis>: use ldap_access_filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1578 -msgid "<emphasis>expire</emphasis>: use ldap_account_expire_policy" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1582 -msgid "" -"<emphasis>authorized_service</emphasis>: use the authorizedService attribute " -"to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1587 -msgid "<emphasis>host</emphasis>: use the host attribute to determine access" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1591 -msgid "Default: filter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1594 -msgid "" -"Please note that it is a configuration error if a value is used more than " -"once." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1601 -msgid "ldap_deref (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1604 -msgid "" -"Specifies how alias dereferencing is done when performing a search. The " -"following options are allowed:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1609 -msgid "<emphasis>never</emphasis>: Aliases are never dereferenced." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1613 -msgid "" -"<emphasis>searching</emphasis>: Aliases are dereferenced in subordinates of " -"the base object, but not in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1618 -msgid "" -"<emphasis>finding</emphasis>: Aliases are only dereferenced when locating " -"the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1623 -msgid "" -"<emphasis>always</emphasis>: Aliases are dereferenced both in searching and " -"in locating the base object of the search." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1628 -msgid "" -"Default: Empty (this is handled as <emphasis>never</emphasis> by the LDAP " -"client libraries)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:51 -msgid "" -"All of the common configuration options that apply to SSSD domains also " -"apply to LDAP domains. Refer to the <quote>DOMAIN SECTIONS</quote> section " -"of the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for full details. <placeholder type=" -"\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1639 -msgid "SUDO OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1644 -msgid "ldap_sudorule_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1647 -msgid "The object class of a sudo rule entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1650 -msgid "Default: sudoRole" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1656 -msgid "ldap_sudorule_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1659 -msgid "The LDAP attribute that corresponds to the sudo rule name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1669 -msgid "ldap_sudorule_command (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1672 -msgid "The LDAP attribute that corresponds to the command name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1676 -msgid "Default: sudoCommand" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1682 -msgid "ldap_sudorule_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1685 -msgid "" -"The LDAP attribute that corresponds to the host name (or host IP address, " -"host IP network, or host netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1690 -msgid "Default: sudoHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1696 -msgid "ldap_sudorule_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1699 -msgid "" -"The LDAP attribute that corresponds to the user name (or UID, group name or " -"user's netgroup)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1703 -msgid "Default: sudoUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1709 -msgid "ldap_sudorule_option (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1712 -msgid "The LDAP attribute that corresponds to the sudo options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1716 -msgid "Default: sudoOption" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1722 -msgid "ldap_sudorule_runasuser (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1725 -msgid "" -"The LDAP attribute that corresponds to the user name that commands may be " -"run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1729 -msgid "Default: sudoRunAsUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1735 -msgid "ldap_sudorule_runasgroup (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1738 -msgid "" -"The LDAP attribute that corresponds to the group name or group GID that " -"commands may be run as." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1742 -msgid "Default: sudoRunAsGroup" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1748 -msgid "ldap_sudorule_notbefore (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1751 -msgid "" -"The LDAP attribute that corresponds to the start date/time for when the sudo " -"rule is valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1755 -msgid "Default: sudoNotBefore" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1761 -msgid "ldap_sudorule_notafter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1764 -msgid "" -"The LDAP attribute that corresponds to the expiration date/time, after which " -"the sudo rule will no longer be valid." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1769 -msgid "Default: sudoNotAfter" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1775 -msgid "ldap_sudorule_order (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1778 -msgid "The LDAP attribute that corresponds to the ordering index of the rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1782 -msgid "Default: sudoOrder" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1788 -msgid "ldap_sudo_refresh_enabled (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1791 -msgid "" -"Enables periodical download of all sudo rules. The cache is purged before " -"each update." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1801 -msgid "ldap_sudo_refresh_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1804 -msgid "" -"How many seconds SSSD has to wait before refreshing its cache of sudo rules." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1642 -msgid "<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1815 -msgid "" -"This manual page only describes attribute name mapping. For detailed " -"explanation of sudo related attribute semantics, see <citerefentry> " -"<refentrytitle>sudoers.ldap</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1825 -msgid "AUTOFS OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1827 -msgid "" -"Please note that the default values correspond to the default schema which " -"is RFC2307." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1834 -msgid "ldap_autofs_map_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1837 sssd-ldap.5.xml:1863 -msgid "The object class of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1840 sssd-ldap.5.xml:1867 -msgid "Default: automountMap" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1847 -msgid "ldap_autofs_map_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1850 -msgid "The name of an automount map entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1853 -msgid "Default: ou" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1860 -msgid "ldap_autofs_entry_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1874 -msgid "ldap_autofs_entry_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1877 sssd-ldap.5.xml:1891 -msgid "" -"The key of an automount entry in LDAP. The entry usually corresponds to a " -"mount point." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1888 -msgid "ldap_autofs_entry_value (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1895 -msgid "Default: automountInformation" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1832 -msgid "" -"<placeholder type=\"variablelist\" id=\"0\"/> <placeholder type=" -"\"variablelist\" id=\"1\"/> <placeholder type=\"variablelist\" id=\"2\"/> " -"<placeholder type=\"variablelist\" id=\"3\"/> <placeholder type=" -"\"variablelist\" id=\"4\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:1904 -msgid "ADVANCED OPTIONS" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1911 -msgid "ldap_netgroup_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1914 -msgid "" -"An optional base DN to restrict netgroup searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1930 -msgid "ldap_user_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1933 -msgid "An optional base DN to restrict user searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1949 -msgid "ldap_group_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1952 -msgid "An optional base DN to restrict group searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1968 -msgid "ldap_user_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1971 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict user searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1975 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_user_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><programlisting> -#: sssd-ldap.5.xml:1985 -#, no-wrap -msgid "" -" ldap_user_search_filter = (loginShell=/bin/tcsh)\n" -" " -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1988 -msgid "" -"This filter would restrict user searches to users that have their shell set " -"to /bin/tcsh." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:1995 -msgid "ldap_group_search_filter (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:1998 -msgid "" -"This option specifies an additional LDAP search filter criteria that " -"restrict group searches." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2002 -msgid "" -"This option is <emphasis>deprecated</emphasis> in favor of the syntax used " -"by ldap_group_search_base." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2012 -msgid "ldap_sudo_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2015 -msgid "" -"An optional base DN to restrict sudo rules searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ldap.5.xml:2034 -msgid "ldap_autofs_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ldap.5.xml:2037 -msgid "" -"An optional base DN to restrict automounter searches to a specific subtree." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:1906 -msgid "" -"These options are supported by LDAP domains, but they should be used with " -"caution. Please include them in your configuration only if you know what you " -"are doing. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2066 -msgid "" -"The following example assumes that SSSD is correctly configured and LDAP is " -"set to one of the domains in the <replaceable>[domains]</replaceable> " -"section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ldap.5.xml:2072 -#, no-wrap -msgid "" -" [domain/LDAP]\n" -" id_provider = ldap\n" -" auth_provider = ldap\n" -" ldap_uri = ldap://ldap.mydomain.org\n" -" ldap_search_base = dc=mydomain,dc=org\n" -" ldap_tls_reqcert = demand\n" -" cache_credentials = true\n" -" enumerate = true\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2071 sssd-simple.5.xml:134 sssd-ipa.5.xml:552 -#: sssd-krb5.5.xml:441 -msgid "<placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd-ldap.5.xml:2085 sssd_krb5_locator_plugin.8.xml:61 -msgid "NOTES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2087 -msgid "" -"The descriptions of some of the configuration options in this manual page " -"are based on the <citerefentry> <refentrytitle>ldap.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page from the OpenLDAP 2.4 " -"distribution." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ldap.5.xml:2098 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-krb5</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <refentryinfo> -#: pam_sss.8.xml:8 include/upstream.xml:2 -msgid "" -"<productname>SSSD</productname> <orgname>The SSSD upstream - http://" -"fedorahosted.org/sssd</orgname>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: pam_sss.8.xml:13 pam_sss.8.xml:18 -msgid "pam_sss" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: pam_sss.8.xml:19 -msgid "PAM module for SSSD" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: pam_sss.8.xml:24 -msgid "" -"<command>pam_sss.so</command> <arg choice='opt'> <replaceable>quiet</" -"replaceable> </arg> <arg choice='opt'> <replaceable>forward_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_first_pass</" -"replaceable> </arg> <arg choice='opt'> <replaceable>use_authtok</" -"replaceable> </arg> <arg choice='opt'> <replaceable>retry=N</replaceable> </" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:45 -msgid "" -"<command>pam_sss.so</command> is the PAM interface to the System Security " -"Services daemon (SSSD). Errors and results are logged through <command>syslog" -"(3)</command> with the LOG_AUTHPRIV facility." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:55 -msgid "<option>quiet</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:58 -msgid "Suppress log messages for unknown users." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:63 -msgid "<option>forward_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:66 -msgid "" -"If <option>forward_pass</option> is set the entered password is put on the " -"stack for other PAM modules to use." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:73 -msgid "<option>use_first_pass</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:76 -msgid "" -"The argument use_first_pass forces the module to use a previous stacked " -"modules password and will never prompt the user - if no password is " -"available or the password is not appropriate, the user will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:84 -msgid "<option>use_authtok</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:87 -msgid "" -"When password changing enforce the module to set the new password to the one " -"provided by a previously stacked password module." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: pam_sss.8.xml:94 -msgid "<option>retry=N</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:97 -msgid "" -"If specified the user is asked another N times for a password if " -"authentication fails. Default is 0." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: pam_sss.8.xml:99 -msgid "" -"Please note that this option might not work as expected if the application " -"calling PAM handles the user dialog on its own. A typical example is " -"<command>sshd</command> with <option>PasswordAuthentication</option>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:110 -msgid "MODULE TYPES PROVIDED" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:111 -msgid "" -"All module types (<option>account</option>, <option>auth</option>, " -"<option>password</option> and <option>session</option>) are provided." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: pam_sss.8.xml:117 -msgid "FILES" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:118 -msgid "" -"If a password reset by root fails, because the corresponding SSSD provider " -"does not support password resets, an individual message can be displayed. " -"This message can e.g. contain instructions about how to reset a password." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:123 -msgid "" -"The message is read from the file <filename>pam_sss_pw_reset_message.LOC</" -"filename> where LOC stands for a locale string returned by <citerefentry> " -"<refentrytitle>setlocale</refentrytitle><manvolnum>3</manvolnum> </" -"citerefentry>. If there is no matching file the content of " -"<filename>pam_sss_pw_reset_message.txt</filename> is displayed. Root must be " -"the owner of the files and only root may have read and write permissions " -"while all other users must have only read permissions." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:133 -msgid "" -"These files are searched in the directory <filename>/etc/sssd/customize/" -"DOMAIN_NAME/</filename>. If no matching file is present a generic message is " -"displayed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: pam_sss.8.xml:141 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd_krb5_locator_plugin.8.xml:10 sssd_krb5_locator_plugin.8.xml:15 -msgid "sssd_krb5_locator_plugin" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:22 -msgid "" -"The Kerberos locator plugin <command>sssd_krb5_locator_plugin</command> is " -"used by the Kerberos provider of <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry> to tell the Kerberos " -"libraries what Realm and which KDC to use. Typically this is done in " -"<citerefentry> <refentrytitle>krb5.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> which is always read by the Kerberos libraries. " -"To simplify the configuration the Realm and the KDC can be defined in " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> as described in <citerefentry> " -"<refentrytitle>sssd-krb5.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry> puts the Realm and the name or IP address of the KDC into " -"the environment variables SSSD_KRB5_REALM and SSSD_KRB5_KDC respectively. " -"When <command>sssd_krb5_locator_plugin</command> is called by the kerberos " -"libraries it reads and evaluates these variables and returns them to the " -"libraries." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:63 -msgid "" -"Not all Kerberos implementations support the use of plugins. If " -"<command>sssd_krb5_locator_plugin</command> is not available on your system " -"you have to edit /etc/krb5.conf to reflect your Kerberos setup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:69 -msgid "" -"If the environment variable SSSD_KRB5_LOCATOR_DEBUG is set to any value " -"debug messages will be sent to stderr." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd_krb5_locator_plugin.8.xml:77 -msgid "" -"<citerefentry> <refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-simple.5.xml:10 sssd-simple.5.xml:16 -msgid "sssd-simple" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd-simple.5.xml:17 -msgid "the configuration file for SSSD's 'simple' access-control provider" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:24 -msgid "" -"This manual page describes the configuration of the simple access-control " -"provider for <citerefentry> <refentrytitle>sssd</refentrytitle> " -"<manvolnum>8</manvolnum> </citerefentry>. For a detailed syntax reference, " -"refer to the <quote>FILE FORMAT</quote> section of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:38 -msgid "" -"The simple access provider grants or denies access based on an access or " -"deny list of user or group names. The following rules apply:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:43 -msgid "If all lists are empty, access is granted" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:47 -msgid "" -"If any list is provided, the order of evaluation is allow,deny. This means " -"that any matching deny rule will supersede any matched allow rule." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:54 -msgid "" -"If either or both \"allow\" lists are provided, all users are denied unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><itemizedlist><listitem><para> -#: sssd-simple.5.xml:60 -msgid "" -"If only \"deny\" lists are provided, all users are granted access unless " -"they appear in the list." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:78 -msgid "simple_allow_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:81 -msgid "Comma separated list of users who are allowed to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:88 -msgid "simple_deny_users (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:91 -msgid "Comma separated list of users who are explicitly denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:97 -msgid "simple_allow_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:100 -msgid "" -"Comma separated list of groups that are allowed to log in. This applies only " -"to groups within this SSSD domain. Local groups are not evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-simple.5.xml:108 -msgid "simple_deny_groups (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-simple.5.xml:111 -msgid "" -"Comma separated list of groups that are explicitly denied access. This " -"applies only to groups within this SSSD domain. Local groups are not " -"evaluated." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:70 sssd-ipa.5.xml:65 -msgid "" -"Refer to the section <quote>DOMAIN SECTIONS</quote> of the <citerefentry> " -"<refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> manual page for details on the configuration of an SSSD " -"domain. <placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:120 -msgid "" -"Please note that it is an configuration error if both, simple_allow_users " -"and simple_deny_users, are defined." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:128 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the simple access provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-simple.5.xml:135 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" access_provider = simple\n" -" simple_allow_users = user1, user2\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-simple.5.xml:145 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-ipa.5.xml:10 sssd-ipa.5.xml:16 -msgid "sssd-ipa" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:23 -msgid "" -"This manual page describes the configuration of the IPA provider for " -"<citerefentry> <refentrytitle>sssd</refentrytitle> <manvolnum>8</manvolnum> " -"</citerefentry>. For a detailed syntax reference, refer to the <quote>FILE " -"FORMAT</quote> section of the <citerefentry> <refentrytitle>sssd.conf</" -"refentrytitle> <manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:36 -msgid "" -"The IPA provider is a back end used to connect to an IPA server. (Refer to " -"the freeipa.org web site for information about IPA servers.) This provider " -"requires that the machine be joined to the IPA domain; configuration is " -"almost entirely self-discovered and obtained directly from the server." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:43 -msgid "" -"The IPA provider accepts the same options used by the <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> identity provider and the <citerefentry> <refentrytitle>sssd-" -"krb5</refentrytitle> <manvolnum>5</manvolnum> </citerefentry> authentication " -"provider with some exceptions described below." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:55 -msgid "" -"However, it is neither necessary nor recommended to set these options. IPA " -"provider can also be used as an access and chpass provider. As an access " -"provider it uses HBAC (host-based access control) rules. Please refer to " -"freeipa.org for more information about HBAC. No configuration of access " -"provider is required on the client side." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:72 -msgid "ipa_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:75 -msgid "" -"Specifies the name of the IPA domain. This is optional. If not provided, " -"the configuration domain name is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:83 -msgid "ipa_server (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:86 -msgid "" -"The comma-separated list of IP addresses or hostnames of the IPA servers to " -"which SSSD should connect in the order of preference. For more information " -"on failover and server redundancy, see the <quote>FAILOVER</quote> section. " -"This is optional if autodiscovery is enabled. For more information on " -"service discovery, refer to the the <quote>SERVICE DISCOVERY</quote> section." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:99 -msgid "ipa_hostname (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:102 -msgid "" -"Optional. May be set on machines where the hostname(5) does not reflect the " -"fully qualified name used in the IPA domain to identify this host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:110 -msgid "ipa_dyndns_update (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:113 -msgid "" -"Optional. This option tells SSSD to automatically update the DNS server " -"built into FreeIPA v2 with the IP address of this client." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:118 -msgid "" -"NOTE: On older systems (such as RHEL 5), for this behavior to work reliably, " -"the default Kerberos realm must be set properly in /etc/krb5.conf" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:129 -msgid "ipa_dyndns_iface (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:132 -msgid "" -"Optional. Applicable only when ipa_dyndns_update is true. Choose the " -"interface whose IP address should be used for dynamic DNS updates." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:137 -msgid "Default: Use the IP address of the IPA LDAP connection" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:143 -msgid "ipa_hbac_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:146 -msgid "Optional. Use the given string as search base for HBAC related objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:150 -msgid "Default: Use base DN" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:156 -msgid "ipa_host_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:159 -msgid "Optional. Use the given string as search base for host objects." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:168 -msgid "" -"If filter is given in any of search bases and " -"<emphasis>ipa_hbac_support_srchost</emphasis> is set to False, the filter " -"will be ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:180 -msgid "ipa_selinux_search_base (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:183 -msgid "Optional. Use the given string as search base for SELinux user maps." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:199 sssd-krb5.5.xml:229 -msgid "krb5_validate (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:202 sssd-krb5.5.xml:232 -msgid "" -"Verify with the help of krb5_keytab that the TGT obtained has not been " -"spoofed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:209 -msgid "" -"Note that this default differs from the traditional Kerberos provider back " -"end." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:219 -msgid "" -"The name of the Kerberos realm. This is optional and defaults to the value " -"of <quote>ipa_domain</quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:223 -msgid "" -"The name of the Kerberos realm has a special meaning in IPA - it is " -"converted into the base DN to use for performing LDAP operations." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:234 -msgid "" -"Specifies if the host and user principal should be canonicalized when " -"connecting to IPA LDAP and also for AS requests. This feature is available " -"with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:247 -msgid "ipa_hbac_refresh (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:250 -msgid "" -"The amount of time between lookups of the HBAC rules against the IPA server. " -"This will reduce the latency and load on the IPA server if there are many " -"access-control requests made in a short period." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:257 -msgid "Default: 5 (seconds)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:262 -msgid "ipa_hbac_treat_deny_as (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:265 -msgid "" -"This option specifies how to treat the deprecated DENY-type HBAC rules. As " -"of FreeIPA v2.1, DENY rules are no longer supported on the server. All users " -"of FreeIPA will need to migrate their rules to use only the ALLOW rules. The " -"client will support two modes of operation during this transition period:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:274 -msgid "" -"<emphasis>DENY_ALL</emphasis>: If any HBAC DENY rules are detected, all " -"users will be denied access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:279 -msgid "" -"<emphasis>IGNORE</emphasis>: SSSD will ignore any DENY rules. Be very " -"careful with this option, as it may result in opening unintended access." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:284 -msgid "Default: DENY_ALL" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:289 -msgid "ipa_hbac_support_srchost (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:292 -msgid "" -"If this is set to false, then srchost as given to SSSD by PAM will be " -"ignored." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:296 -msgid "" -"Note that if set to <emphasis>False</emphasis>, this option casuses filters " -"given in <emphasis>ipa_host_search_base</emphasis> to be ignored;" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:307 -msgid "ipa_automount_location (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:310 -msgid "The automounter location this IPA client will be using" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:313 -msgid "Default: The location named \"default\"" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:319 -msgid "ipa_netgroup_member_of (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:322 -msgid "The LDAP attribute that lists netgroup's memberships." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:331 -msgid "ipa_netgroup_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:334 -msgid "" -"The LDAP attribute that lists system users and groups that are direct " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:339 sssd-ipa.5.xml:434 -msgid "Default: memberUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:344 -msgid "ipa_netgroup_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:347 -msgid "" -"The LDAP attribute that lists hosts and host groups that are direct members " -"of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:351 sssd-ipa.5.xml:446 -msgid "Default: memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:356 -msgid "ipa_netgroup_member_ext_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:359 -msgid "" -"The LDAP attribute that lists FQDNs of hosts and host groups that are " -"members of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:363 -msgid "Default: externalHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:368 -msgid "ipa_netgroup_domain (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:371 -msgid "The LDAP attribute that contains NIS domain name of the netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:375 -msgid "Default: nisDomainName" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:381 -msgid "ipa_host_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:384 sssd-ipa.5.xml:407 -msgid "The object class of a host entry in LDAP." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:387 sssd-ipa.5.xml:410 -msgid "Default: ipaHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:392 -msgid "ipa_host_fqdn (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:395 -msgid "The LDAP attribute that contains FQDN of the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:398 -msgid "Default: fqdn" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:404 -msgid "ipa_selinux_usermap_object_class (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:415 -msgid "ipa_selinux_usermap_name (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:418 -msgid "The LDAP attribute that contains the name of SELinux usermap." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:427 -msgid "ipa_selinux_usermap_member_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:430 -msgid "" -"The LDAP attribute that contains all users / groups this rule match against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:439 -msgid "ipa_selinux_usermap_member_host (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:442 -msgid "" -"The LDAP attribute that contains all hosts / hostgroups this rule match " -"against." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:451 -msgid "ipa_selinux_usermap_see_also (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:454 -msgid "" -"The LDAP attribute that contains DN of HBAC rule which can be used for " -"matching instead of memberUser and memberHost" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:459 -msgid "Default: seeAlso" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:464 -msgid "ipa_selinux_usermap_selinux_user (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:467 -msgid "The LDAP attribute that contains SELinux user string itself." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:471 -msgid "Default: ipaSELinuxUser" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:476 -msgid "ipa_selinux_usermap_enabled (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:479 -msgid "" -"The LDAP attribute that contains whether or not is user map enabled for " -"usage." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:483 -msgid "Default: ipaEnabledFlag" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:488 -msgid "ipa_selinux_usermap_user_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:491 -msgid "The LDAP attribute that contains user category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:495 -msgid "Default: userCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:500 -msgid "ipa_selinux_usermap_host_category (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:503 -msgid "The LDAP attribute that contains host category such as 'all'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:507 -msgid "Default: hostCategory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:512 -msgid "ipa_selinux_usermap_uuid (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:515 -msgid "The LDAP attribute that contains unique ID of the user map." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:519 -msgid "Default: ipaUniqueID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-ipa.5.xml:524 -msgid "ipa_host_ssh_public_key (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:527 -msgid "The LDAP attribute that contains the host's SSH public keys." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-ipa.5.xml:531 -msgid "Default: ipaSshPubKey" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:546 -msgid "" -"The following example assumes that SSSD is correctly configured and example." -"com is one of the domains in the <replaceable>[sssd]</replaceable> section. " -"This examples shows only the ipa provider-specific options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-ipa.5.xml:553 -#, no-wrap -msgid "" -" [domain/example.com]\n" -" id_provider = ipa\n" -" ipa_server = ipaserver.example.com\n" -" ipa_hostname = myhost.example.com\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-ipa.5.xml:564 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd-krb5</refentrytitle><manvolnum>5</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sssd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd.8.xml:10 sssd.8.xml:15 -msgid "sssd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sssd.8.xml:16 -msgid "System Security Services Daemon" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sssd.8.xml:21 -msgid "" -"<command>sssd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:31 -msgid "" -"<command>SSSD</command> provides a set of daemons to manage access to remote " -"directories and authentication mechanisms. It provides an NSS and PAM " -"interface toward the system and a pluggable backend system to connect to " -"multiple different account sources as well as D-Bus interface. It is also " -"the basis to provide client auditing and policy services for projects like " -"FreeIPA. It provides a more robust database to store local users as well as " -"extended user data." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:46 -msgid "" -"<option>-d</option>,<option>--debug-level</option> <replaceable>LEVEL</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:53 -msgid "<option>--debug-timestamps=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:57 -msgid "<emphasis>1</emphasis>: Add a timestamp to the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:60 -msgid "<emphasis>0</emphasis>: Disable timestamp in the debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:69 -msgid "<option>--debug-microseconds=</option><replaceable>mode</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:73 -msgid "" -"<emphasis>1</emphasis>: Add microseconds to the timestamp in debug messages" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:76 -msgid "<emphasis>0</emphasis>: Disable microseconds in timestamp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:79 -msgid "Default: 0" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:85 -msgid "<option>-f</option>,<option>--debug-to-files</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:89 -msgid "" -"Send the debug output to files instead of stderr. By default, the log files " -"are stored in <filename>/var/log/sssd</filename> and there are separate log " -"files for every SSSD service and domain." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:97 -msgid "<option>-D</option>,<option>--daemon</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:101 -msgid "Become a daemon after starting up." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:107 -msgid "<option>-i</option>,<option>--interactive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:111 -msgid "Run in the foreground, don't become a daemon." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:117 sss_debuglevel.8.xml:42 -msgid "<option>-c</option>,<option>--config</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:121 sss_debuglevel.8.xml:46 -msgid "" -"Specify a non-default config file. The default is <filename>/etc/sssd/sssd." -"conf</filename>. For reference on the config file syntax and options, " -"consult the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:135 -msgid "<option>--version</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:139 -msgid "Print version number and exit." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><title> -#: sssd.8.xml:147 -msgid "Signals" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:150 -msgid "SIGTERM/SIGINT" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:153 -msgid "" -"Informs the SSSD to gracefully terminate all of its child processes and then " -"shut down the monitor." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:159 -msgid "SIGHUP" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:162 -msgid "" -"Tells the SSSD to stop writing to its current debug file descriptors and to " -"close and reopen them. This is meant to facilitate log rolling with programs " -"like logrotate." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:170 -msgid "SIGUSR1" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:173 -msgid "" -"Tells the SSSD to simulate offline operation for one minute. This is mostly " -"useful for testing purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sssd.8.xml:179 -msgid "SIGUSR2" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sssd.8.xml:182 -msgid "" -"Tells the SSSD to go online immediately. This is mostly useful for testing " -"purposes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd.8.xml:193 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupadd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_obfuscate.8.xml:10 sss_obfuscate.8.xml:15 -msgid "sss_obfuscate" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_obfuscate.8.xml:16 -msgid "obfuscate a clear text password" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_obfuscate.8.xml:21 -msgid "" -"<command>sss_obfuscate</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>[PASSWORD]</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:32 -msgid "" -"<command>sss_obfuscate</command> converts a given password into human-" -"unreadable format and places it into appropriate domain section of the SSSD " -"config file." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:37 -msgid "" -"The cleartext password is read from standard input or entered " -"interactively. The obfuscated password is put into " -"<quote>ldap_default_authtok</quote> parameter of a given SSSD domain and the " -"<quote>ldap_default_authtok_type</quote> parameter is set to " -"<quote>obfuscated_password</quote>. Refer to <citerefentry> " -"<refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</manvolnum> </" -"citerefentry> for more details on these parameters." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:49 -msgid "" -"Please note that obfuscating the password provides <emphasis>no real " -"security benefit</emphasis> as it is still possible for an attacker to " -"reverse-engineer the password back. Using better authentication mechanisms " -"such as client side certificates or GSSAPI is <emphasis>strongly</emphasis> " -"advised." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:63 -msgid "<option>-s</option>,<option>--stdin</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:67 -msgid "The password to obfuscate will be read from standard input." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:74 sss_ssh_authorizedkeys.1.xml:82 -#: sss_ssh_knownhostsproxy.1.xml:81 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>DOMAIN</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:79 -msgid "" -"The SSSD domain to use the password in. The default name is <quote>default</" -"quote>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_obfuscate.8.xml:86 -msgid "" -"<option>-f</option>,<option>--file</option> <replaceable>FILE</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:91 -msgid "Read the config file specified by the positional parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_obfuscate.8.xml:95 -msgid "Default: <filename>/etc/sssd/sssd.conf</filename>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_obfuscate.8.xml:105 -msgid "" -"<citerefentry> <refentrytitle>sssd-ldap</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_useradd.8.xml:10 sss_useradd.8.xml:15 -msgid "sss_useradd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_useradd.8.xml:16 -msgid "create a new user" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_useradd.8.xml:21 -msgid "" -"<command>sss_useradd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:32 -msgid "" -"<command>sss_useradd</command> creates a new user account using the values " -"specified on the command line plus the default values from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:43 -msgid "" -"<option>-u</option>,<option>--uid</option> <replaceable>UID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:48 -msgid "" -"Set the UID of the user to the value of <replaceable>UID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:55 sss_usermod.8.xml:43 -msgid "" -"<option>-c</option>,<option>--gecos</option> <replaceable>COMMENT</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:60 sss_usermod.8.xml:48 -msgid "" -"Any text string describing the user. Often used as the field for the user's " -"full name." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:67 sss_usermod.8.xml:55 -msgid "" -"<option>-h</option>,<option>--home</option> <replaceable>HOME_DIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:72 -msgid "" -"The home directory of the user account. The default is to append the " -"<replaceable>LOGIN</replaceable> name to <filename>/home</filename> and use " -"that as the home directory. The base that is prepended before " -"<replaceable>LOGIN</replaceable> is tunable with <quote>user_defaults/" -"baseDirectory</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:82 sss_usermod.8.xml:66 -msgid "" -"<option>-s</option>,<option>--shell</option> <replaceable>SHELL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:87 -msgid "" -"The user's login shell. The default is currently <filename>/bin/bash</" -"filename>. The default can be changed with <quote>user_defaults/" -"defaultShell</quote> setting in sssd.conf." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:96 -msgid "" -"<option>-G</option>,<option>--groups</option> <replaceable>GROUPS</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:101 -msgid "A list of existing groups this user is also a member of." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:107 -msgid "<option>-m</option>,<option>--create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:111 -msgid "" -"Create the user's home directory if it does not exist. The files and " -"directories contained in the skeleton directory (which can be defined with " -"the -k option or in the config file) will be copied to the home directory." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:121 -msgid "<option>-M</option>,<option>--no-create-home</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:125 -msgid "" -"Do not create the user's home directory. Overrides configuration settings." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:132 -msgid "" -"<option>-k</option>,<option>--skel</option> <replaceable>SKELDIR</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:137 -msgid "" -"The skeleton directory, which contains files and directories to be copied in " -"the user's home directory, when the home directory is created by " -"<command>sss_useradd</command>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:143 -msgid "" -"This option is only valid if the <option>-m</option> (or <option>--create-" -"home</option>) option is specified, or creation of home directories is set " -"to TRUE in the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_useradd.8.xml:152 sss_usermod.8.xml:124 -msgid "" -"<option>-Z</option>,<option>--selinux-user</option> " -"<replaceable>SELINUX_USER</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_useradd.8.xml:157 -msgid "" -"The SELinux user for the user's login. If not specified, the system default " -"will be used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_useradd.8.xml:169 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sssd-krb5.5.xml:10 sssd-krb5.5.xml:16 -msgid "sssd-krb5" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:23 -msgid "" -"This manual page describes the configuration of the Kerberos 5 " -"authentication backend for <citerefentry> <refentrytitle>sssd</" -"refentrytitle> <manvolnum>8</manvolnum> </citerefentry>. For a detailed " -"syntax reference, please refer to the <quote>FILE FORMAT</quote> section of " -"the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:36 -msgid "" -"The Kerberos 5 authentication backend contains auth and chpass providers. It " -"must be paired with identity provider in order to function properly (for " -"example, id_provider = ldap). Some information required by the Kerberos 5 " -"authentication backend must be provided by the identity provider, such as " -"the user's Kerberos Principal Name (UPN). The configuration of the identity " -"provider should have an entry to specify the UPN. Please refer to the man " -"page for the applicable identity provider for details on how to configure " -"this." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:47 -msgid "" -"This backend also provides access control based on the .k5login file in the " -"home directory of the user. See <citerefentry> <refentrytitle>.k5login</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry> for more details. " -"Please note that an empty .k5login file will deny all access to this user. " -"To activate this feature use 'access_provider = krb5' in your sssd " -"configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:55 -msgid "" -"In the case where the UPN is not available in the identity backend " -"<command>sssd</command> will construct a UPN using the format " -"<replaceable>username</replaceable>@<replaceable>krb5_realm</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:106 -msgid "" -"The name of the Kerberos realm. This option is required and must be " -"specified." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:113 -msgid "krb5_kpasswd (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:116 -msgid "" -"If the change password service is not running on the KDC alternative servers " -"can be defined here. An optional port number (preceded by a colon) may be " -"appended to the addresses or hostnames." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:122 -msgid "" -"For more information on failover and server redundancy, see the " -"<quote>FAILOVER</quote> section. Please note that even if there are no more " -"kpasswd servers to try the back end is not switch to offline if " -"authentication against the KDC is still possible." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:129 -msgid "Default: Use the KDC" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:135 -msgid "krb5_ccachedir (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:138 -msgid "" -"Directory to store credential caches. All the substitution sequences of " -"krb5_ccname_template can be used here, too, except %d and %P. If the " -"directory does not exist it will be created. If %u, %U, %p or %h are used a " -"private directory belonging to the user is created. Otherwise a public " -"directory with restricted deletion flag (aka sticky bit, see <citerefentry> " -"<refentrytitle>chmod</refentrytitle> <manvolnum>1</manvolnum> </" -"citerefentry> for details) is created." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:151 -msgid "Default: /tmp" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:157 -msgid "krb5_ccname_template (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:171 -msgid "login UID" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:174 -msgid "%p" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:175 -msgid "principal name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:179 -msgid "%r" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:180 -msgid "realm name" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:183 -msgid "%h" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:184 -msgid "home directory" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:189 -msgid "value of krb5ccache_dir" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:194 -msgid "%P" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:195 -msgid "the process ID of the sssd client" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:160 -msgid "" -"Location of the user's credential cache. Currently only file based " -"credential caches are supported. In the template the following sequences are " -"substituted: <placeholder type=\"variablelist\" id=\"0\"/> If the template " -"ends with 'XXXXXX' mkstemp(3) is used to create a unique filename in a safe " -"way." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:209 -msgid "Default: FILE:%d/krb5cc_%U_XXXXXX" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:215 -msgid "krb5_auth_timeout (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:218 -msgid "" -"Timeout in seconds after an online authentication or change password request " -"is aborted. If possible the authentication request is continued offline." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:241 -msgid "krb5_keytab (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:244 -msgid "" -"The location of the keytab to use when validating credentials obtained from " -"KDCs." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:248 -msgid "Default: /etc/krb5.keytab" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:254 -msgid "krb5_store_password_if_offline (boolean)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:257 -msgid "" -"Store the password of the user if the provider is offline and use it to " -"request a TGT when the provider gets online again." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:262 -msgid "" -"Please note that this feature currently only available on a Linux platform. " -"Passwords stored in this way are kept in plaintext in the kernel keyring and " -"are potentially accessible by the root user (with difficulty)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:275 -msgid "krb5_renewable_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:278 -msgid "" -"Request a renewable ticket with a total lifetime given by an integer " -"immediately followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:283 sssd-krb5.5.xml:319 -msgid "<emphasis>s</emphasis> seconds" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:286 sssd-krb5.5.xml:322 -msgid "<emphasis>m</emphasis> minutes" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:289 sssd-krb5.5.xml:325 -msgid "<emphasis>h</emphasis> hours" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:292 sssd-krb5.5.xml:328 -msgid "<emphasis>d</emphasis> days." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:295 sssd-krb5.5.xml:331 -msgid "If there is no delimiter <emphasis>s</emphasis> is assumed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:299 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"renewable lifetime to one and a half hours please use '90m' instead of " -"'1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:305 -msgid "Default: not set, i.e. the TGT is not renewable" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:311 -msgid "krb5_lifetime (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:314 -msgid "" -"Request ticket with a with a lifetime given by an integer immediately " -"followed by one of the following delimiters:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:335 -msgid "" -"Please note that it is not possible to mix units. If you want to set the " -"lifetime to one and a half hours please use '90m' instead of '1h30m'." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:340 -msgid "" -"Default: not set, i.e. the default ticket lifetime configured on the KDC." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:347 -msgid "krb5_renew_interval (integer)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:350 -msgid "" -"The time in seconds between two checks if the TGT should be renewed. TGTs " -"are renewed if about half of their lifetime is exceeded." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:355 -msgid "If this option is not set or 0 the automatic renewal is disabled." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:365 -msgid "krb5_use_fast (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:368 -msgid "" -"Enables flexible authentication secure tunneling (FAST) for Kerberos pre-" -"authentication. The following options are supported:" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:373 -msgid "" -"<emphasis>never</emphasis> use FAST, this is equivalent to not set this " -"option at all." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:377 -msgid "" -"<emphasis>try</emphasis> to use FAST, if the server does not support fast " -"continue without." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:381 -msgid "" -"<emphasis>demand</emphasis> to use FAST, fail if the server does not require " -"fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:385 -msgid "Default: not set, i.e. FAST is not used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:388 -msgid "Please note that a keytab is required to use fast." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:391 -msgid "" -"Please note also that sssd supports fast only with MIT Kerberos version 1.8 " -"and above. If sssd used with an older version using this option is a " -"configuration error." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><term> -#: sssd-krb5.5.xml:400 -msgid "krb5_fast_principal (string)" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:403 -msgid "Specifies the server principal to use for FAST." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><variablelist><varlistentry><listitem><para> -#: sssd-krb5.5.xml:412 -msgid "" -"Specifies if the host and user principal should be canonicalized. This " -"feature is available with MIT Kerberos >= 1.7" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:65 -msgid "" -"If the auth-module krb5 is used in a SSSD domain, the following options must " -"be used. See the <citerefentry> <refentrytitle>sssd.conf</refentrytitle> " -"<manvolnum>5</manvolnum> </citerefentry> manual page, section <quote>DOMAIN " -"SECTIONS</quote> for details on the configuration of a SSSD domain. " -"<placeholder type=\"variablelist\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:434 -msgid "" -"The following example assumes that SSSD is correctly configured and FOO is " -"one of the domains in the <replaceable>[sssd]</replaceable> section. This " -"example shows only configuration of Kerberos authentication, it does not " -"include any identity provider." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sssd-krb5.5.xml:442 -#, no-wrap -msgid "" -" [domain/FOO]\n" -" auth_provider = krb5\n" -" krb5_server = 192.168.1.1\n" -" krb5_realm = EXAMPLE.COM\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sssd-krb5.5.xml:453 -msgid "" -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle><manvolnum>5</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sssd-ldap</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sssd</refentrytitle><manvolnum>8</manvolnum> </citerefentry>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupadd.8.xml:10 sss_groupadd.8.xml:15 -msgid "sss_groupadd" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupadd.8.xml:16 -msgid "create a new group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupadd.8.xml:21 -msgid "" -"<command>sss_groupadd</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:32 -msgid "" -"<command>sss_groupadd</command> creates a new group. These groups are " -"compatible with POSIX groups, with the additional feature that they can " -"contain other groups as members." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupadd.8.xml:43 -msgid "" -"<option>-g</option>,<option>--gid</option> <replaceable>GID</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupadd.8.xml:48 -msgid "" -"Set the GID of the group to the value of <replaceable>GID</replaceable>. If " -"not given, it is chosen automatically." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupadd.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupdel</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_userdel.8.xml:10 sss_userdel.8.xml:15 -msgid "sss_userdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_userdel.8.xml:16 -msgid "delete a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_userdel.8.xml:21 -msgid "" -"<command>sss_userdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:32 -msgid "" -"<command>sss_userdel</command> deletes a user identified by login name " -"<replaceable>LOGIN</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:44 -msgid "<option>-r</option>,<option>--remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:48 -msgid "" -"Files in the user's home directory will be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:56 -msgid "<option>-R</option>,<option>--no-remove</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:60 -msgid "" -"Files in the user's home directory will NOT be removed along with the home " -"directory itself and the user's mail spool. Overrides the configuration." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:68 -msgid "<option>-f</option>,<option>--force</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:72 -msgid "" -"This option forces <command>sss_userdel</command> to remove the user's home " -"directory and mail spool, even if they are not owned by the specified user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_userdel.8.xml:80 -msgid "<option>-k</option>,<option>--kick</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_userdel.8.xml:84 -msgid "Before actually deleting the user, terminate all his processes." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_userdel.8.xml:95 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupdel.8.xml:10 sss_groupdel.8.xml:15 -msgid "sss_groupdel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupdel.8.xml:16 -msgid "delete a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupdel.8.xml:21 -msgid "" -"<command>sss_groupdel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:32 -msgid "" -"<command>sss_groupdel</command> deletes a group identified by its name " -"<replaceable>GROUP</replaceable> from the system." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupdel.8.xml:48 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupshow</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_useradd</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_userdel</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_usermod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_groupshow.8.xml:10 sss_groupshow.8.xml:15 -msgid "sss_groupshow" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_groupshow.8.xml:16 -msgid "print properties of a group" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_groupshow.8.xml:21 -msgid "" -"<command>sss_groupshow</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>GROUP</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:32 -msgid "" -"<command>sss_groupshow</command> displays information about a group " -"identified by its name <replaceable>GROUP</replaceable>. The information " -"includes the group ID number, members of the group and the parent group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_groupshow.8.xml:43 -msgid "<option>-R</option>,<option>--recursive</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_groupshow.8.xml:47 -msgid "" -"Also print indirect group members in a tree-like hierarchy. Note that this " -"also affects printing parent groups - without <option>R</option>, only the " -"direct parent will be printed." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_groupshow.8.xml:60 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupmod</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_usermod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_usermod.8.xml:10 sss_usermod.8.xml:15 -msgid "sss_usermod" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_usermod.8.xml:16 -msgid "modify a user account" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_usermod.8.xml:21 -msgid "" -"<command>sss_usermod</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>LOGIN</replaceable></" -"arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:32 -msgid "" -"<command>sss_usermod</command> modifies the account specified by " -"<replaceable>LOGIN</replaceable> to reflect the changes that are specified " -"on the command line." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:60 -msgid "The home directory of the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:71 -msgid "The user's login shell." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:82 -msgid "" -"Append this user to groups specified by the <replaceable>GROUPS</" -"replaceable> parameter. The <replaceable>GROUPS</replaceable> parameter is " -"a comma separated list of group names." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:96 -msgid "" -"Remove this user from groups specified by the <replaceable>GROUPS</" -"replaceable> parameter." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:103 -msgid "<option>-l</option>,<option>--lock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:107 -msgid "Lock the user account. The user won't be able to log in." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_usermod.8.xml:114 -msgid "<option>-u</option>,<option>--unlock</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:118 -msgid "Unlock the user account." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_usermod.8.xml:129 -msgid "The SELinux user for the user's login." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_usermod.8.xml:140 -msgid "" -"<citerefentry> <refentrytitle>sss_groupadd</refentrytitle><manvolnum>8</" -"manvolnum> </citerefentry>, <citerefentry> <refentrytitle>sss_groupdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_groupmod</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_groupshow</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_useradd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sss_userdel</" -"refentrytitle><manvolnum>8</manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_cache.8.xml:10 sss_cache.8.xml:15 -msgid "sss_cache" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_cache.8.xml:16 -msgid "perform cache cleanup" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_cache.8.xml:21 -msgid "" -"<command>sss_cache</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_cache.8.xml:31 -msgid "" -"<command>sss_cache</command> invalidates records in SSSD cache. Invalidated " -"records are forced to be reloaded from server as soon as related SSSD " -"backend is online." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:42 -msgid "" -"<option>-u</option>,<option>--user</option> <replaceable>login</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:47 -msgid "Invalidate specific user." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:53 -msgid "<option>-U</option>,<option>--users</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:57 -msgid "" -"Invalidate all user records. This option overrides invalidation of specific " -"user if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:64 -msgid "" -"<option>-g</option>,<option>--group</option> <replaceable>group</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:69 -msgid "Invalidate specific group." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:75 -msgid "<option>-G</option>,<option>--groups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:79 -msgid "" -"Invalidate all group records. This option overrides invalidation of specific " -"group if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:86 -msgid "" -"<option>-n</option>,<option>--netgroup</option> <replaceable>netgroup</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:91 -msgid "Invalidate specific netgroup." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:97 -msgid "<option>-N</option>,<option>--netgroups</option>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:101 -msgid "" -"Invalidate all netgroup records. This option overrides invalidation of " -"specific netgroup if it was also set." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_cache.8.xml:108 -msgid "" -"<option>-d</option>,<option>--domain</option> <replaceable>domain</" -"replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_cache.8.xml:113 -msgid "Restrict invalidation process only to a particular domain." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_debuglevel.8.xml:10 sss_debuglevel.8.xml:15 -msgid "sss_debuglevel" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_debuglevel.8.xml:16 -msgid "change debug level while SSSD is running" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_debuglevel.8.xml:21 -msgid "" -"<command>sss_debuglevel</command> <arg choice='opt'> <replaceable>options</" -"replaceable> </arg> <arg choice='plain'><replaceable>NEW_DEBUG_LEVEL</" -"replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_debuglevel.8.xml:32 -msgid "" -"<command>sss_debuglevel</command> changes debug level of SSSD monitor and " -"providers to <replaceable>NEW_DEBUG_LEVEL</replaceable> while SSSD is " -"running." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_debuglevel.8.xml:59 -msgid "<replaceable>NEW_DEBUG_LEVEL</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_authorizedkeys.1.xml:10 sss_ssh_authorizedkeys.1.xml:15 -msgid "sss_ssh_authorizedkeys" -msgstr "" - -#. type: Content of: <reference><refentry><refmeta><manvolnum> -#: sss_ssh_authorizedkeys.1.xml:11 sss_ssh_knownhostsproxy.1.xml:11 -msgid "1" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_authorizedkeys.1.xml:16 -msgid "get OpenSSH authorized keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_authorizedkeys.1.xml:21 -msgid "" -"<command>sss_ssh_authorizedkeys</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>USER</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:32 -msgid "" -"<command>sss_ssh_authorizedkeys</command> acquires SSH public keys for user " -"<replaceable>USER</replaceable> and outputs them in OpenSSH authorized_keys " -"format (see the <quote>AUTHORIZED_KEYS FILE FORMAT</quote> section of " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> for more information)." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:41 -msgid "" -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_authorizedkeys</" -"command> for public key user authentication if it is compiled with support " -"for either <quote>AuthorizedKeysCommand</quote> or <quote>PubkeyAgent</" -"quote> <citerefentry> <refentrytitle>sshd_config</refentrytitle> " -"<manvolnum>5</manvolnum></citerefentry> options." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:58 -#, no-wrap -msgid "AuthorizedKeysCommand /usr/bin/sss_ssh_authorizedkeys\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:51 -msgid "" -"If <quote>AuthorizedKeysCommand</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by putting the following directive " -"in <citerefentry> <refentrytitle>sshd_config</refentrytitle> <manvolnum>5</" -"manvolnum></citerefentry>: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_authorizedkeys.1.xml:69 -#, no-wrap -msgid "PubKeyAgent /usr/bin/sss_ssh_authorizedkeys %u\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:62 -msgid "" -"If <quote>PubkeyAgent</quote> is supported, " -"<citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</manvolnum></" -"citerefentry> can be configured to use it by using the following directive " -"for <citerefentry> <refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> configuration: <placeholder type=\"programlisting" -"\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_authorizedkeys.1.xml:87 -msgid "" -"Search for user public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_authorizedkeys.1.xml:98 -msgid "" -"<citerefentry> <refentrytitle>sshd</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>sshd_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_knownhostsproxy</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refname> -#: sss_ssh_knownhostsproxy.1.xml:10 sss_ssh_knownhostsproxy.1.xml:15 -msgid "sss_ssh_knownhostsproxy" -msgstr "" - -#. type: Content of: <reference><refentry><refnamediv><refpurpose> -#: sss_ssh_knownhostsproxy.1.xml:16 -msgid "get OpenSSH host keys" -msgstr "" - -#. type: Content of: <reference><refentry><refsynopsisdiv><cmdsynopsis> -#: sss_ssh_knownhostsproxy.1.xml:21 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> <arg choice='opt'> " -"<replaceable>options</replaceable> </arg> <arg " -"choice='plain'><replaceable>HOST</replaceable></arg> <arg " -"choice='opt'><replaceable>PROXY_COMMAND</replaceable></arg>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:33 -msgid "" -"<command>sss_ssh_knownhostsproxy</command> acquires SSH host public keys for " -"host <replaceable>HOST</replaceable>, stores them in a custom OpenSSH " -"known_hosts file (see the <quote>SSH_KNOWN_HOSTS FILE FORMAT</quote> section " -"of <citerefentry><refentrytitle>sshd</refentrytitle> <manvolnum>8</" -"manvolnum></citerefentry> for more information) <filename>/var/lib/sss/" -"pubconf/known_hosts</filename> and estabilishes connection to the host." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:43 -msgid "" -"If <replaceable>PROXY_COMMAND</replaceable> is specified, it is used to " -"create the connection to the host instead of opening a socket." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para><programlisting> -#: sss_ssh_knownhostsproxy.1.xml:55 -#, no-wrap -msgid "" -"ProxyCommand /usr/bin/sss_ssh_knownhostsproxy -p %p %h\n" -"GlobalKnownHostsFile2 /var/lib/sss/pubconf/known_hosts\n" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:48 -msgid "" -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> can be configured to use <command>sss_ssh_knownhostsproxy</" -"command> for host key authentication by using the following directives for " -"<citerefentry><refentrytitle>ssh</refentrytitle> <manvolnum>1</manvolnum></" -"citerefentry> configuration: <placeholder type=\"programlisting\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><term> -#: sss_ssh_knownhostsproxy.1.xml:69 -msgid "" -"<option>-p</option>,<option>--port</option> <replaceable>PORT</replaceable>" -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:74 -msgid "" -"Use port <replaceable>PORT</replaceable> to connect to the host. By " -"default, port 22 is used." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><variablelist><varlistentry><listitem><para> -#: sss_ssh_knownhostsproxy.1.xml:86 -msgid "" -"Search for host public keys in SSSD domain <replaceable>DOMAIN</replaceable>." -msgstr "" - -#. type: Content of: <reference><refentry><refsect1><para> -#: sss_ssh_knownhostsproxy.1.xml:97 -msgid "" -"<citerefentry> <refentrytitle>ssh</refentrytitle><manvolnum>8</manvolnum> </" -"citerefentry>, <citerefentry> <refentrytitle>ssh_config</" -"refentrytitle><manvolnum>5</manvolnum> </citerefentry>, <citerefentry> " -"<refentrytitle>sss_ssh_authorizedkeys</refentrytitle><manvolnum>1</" -"manvolnum> </citerefentry>." -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/service_discovery.xml:2 -msgid "SERVICE DISCOVERY" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/service_discovery.xml:4 -msgid "" -"The service discovery feature allows back ends to automatically find the " -"appropriate servers to connect to using a special DNS query." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:9 -msgid "Configuration" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:11 -msgid "" -"If no servers are specified, the back end automatically uses service " -"discovery to try to find a server. Optionally, the user may choose to use " -"both fixed server addresses and service discovery by inserting a special " -"keyword, <quote>_srv_</quote>, in the list of servers. The order of " -"preference is maintained. This feature is useful if, for example, the user " -"prefers to use service discovery whenever possible, and fall back to a " -"specific server when no servers can be discovered using DNS." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:23 -msgid "The domain name" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:25 -msgid "" -"Please refer to the <quote>dns_discovery_domain</quote> parameter in the " -"<citerefentry> <refentrytitle>sssd.conf</refentrytitle> <manvolnum>5</" -"manvolnum> </citerefentry> manual page for more details." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:35 -msgid "The protocol" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:37 -msgid "" -"The queries usually specify _tcp as the protocol. Exceptions are documented " -"in respective option description." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/service_discovery.xml:42 -msgid "See Also" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/service_discovery.xml:44 -msgid "" -"For more information on the service discovery mechanism, refer to RFC 2782." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/upstream.xml:1 -msgid "<placeholder type=\"refentryinfo\" id=\"0\"/>" -msgstr "" - -#. type: Content of: <refsect1><title> -#: include/failover.xml:2 -msgid "FAILOVER" -msgstr "" - -#. type: Content of: <refsect1><para> -#: include/failover.xml:4 -msgid "" -"The failover feature allows back ends to automatically switch to a different " -"server if the primary server fails." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:8 -msgid "Failover Syntax" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:10 -msgid "" -"The list of servers is given as a comma-separated list; any number of spaces " -"is allowed around the comma. The servers are listed in order of preference. " -"The list can contain any number of servers." -msgstr "" - -#. type: Content of: <refsect1><refsect2><title> -#: include/failover.xml:17 -msgid "The Failover Mechanism" -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:19 -msgid "" -"The failover mechanism distinguishes between a machine and a service. The " -"back end first tries to resolve the hostname of a given machine; if this " -"resolution attempt fails, the machine is considered offline. No further " -"attempts are made to connect to this machine for any other service. If the " -"resolution attempt succeeds, the back end tries to connect to a service on " -"this machine. If the service connection attempt fails, then only this " -"particular service is considered offline and the back end automatically " -"switches over to the next service. The machine is still considered online " -"and might still be tried for another service." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:32 -msgid "" -"Further connection attempts are made to machines or services marked as " -"offline after a specified period of time; this is currently hard coded to 30 " -"seconds." -msgstr "" - -#. type: Content of: <refsect1><refsect2><para> -#: include/failover.xml:37 -msgid "" -"If there are no more machines to try, the back end as a whole switches to " -"offline mode, and then attempts to reconnect every 30 seconds." -msgstr "" - -#. type: Content of: <varlistentry><term> -#: include/param_help.xml:3 -msgid "<option>-h</option>,<option>--help</option>" -msgstr "" - -#. type: Content of: <varlistentry><listitem><para> -#: include/param_help.xml:7 -msgid "Display help message and exit." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:3 -msgid "" -"Bit mask that indicates which debug levels will be visible. 0x0010 is the " -"default value as well as the lowest allowed value, 0xFFF0 is the most " -"verbose mode. This setting overrides the settings from config file." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:8 -msgid "Currently supported debug levels:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:11 -msgid "" -"<emphasis>0x0010</emphasis>: Fatal failures. Anything that would prevent " -"SSSD from starting up or causes it to cease running." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:15 -msgid "" -"<emphasis>0x0020</emphasis>: Critical failures. An error that doesn't kill " -"the SSSD, but one that indicates that at least one major feature is not " -"going to work properly." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:20 -msgid "" -"<emphasis>0x0040</emphasis>: Serious failures. An error announcing that a " -"particular request or operation has failed." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:24 -msgid "" -"<emphasis>0x0080</emphasis>: Minor failures. These are the errors that would " -"percolate down to cause the operation failure of 2." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:28 -msgid "<emphasis>0x0100</emphasis>: Configuration settings." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:31 -msgid "<emphasis>0x0200</emphasis>: Function data." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:34 -msgid "<emphasis>0x0400</emphasis>: Trace messages for operation functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:37 -msgid "" -"<emphasis>0x1000</emphasis>: Trace messages for internal control functions." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:40 -msgid "" -"<emphasis>0x2000</emphasis>: Contents of function-internal variables that " -"may be interesting." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:43 -msgid "<emphasis>0x4000</emphasis>: Extremely low-level tracing information." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:46 -msgid "" -"To log required debug levels, simply add their numbers together as shown in " -"following examples:" -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:49 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, critical failures, " -"serious failures and function data use 0x0270." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:53 -msgid "" -"<emphasis>Example</emphasis>: To log fatal failures, configuration settings, " -"function data, trace messages for internal control functions use 0x1310." -msgstr "" - -#. type: Content of: <listitem><para> -#: include/debug_levels.xml:57 -msgid "" -"<emphasis>Note</emphasis>: This is new format of debug levels introduced in " -"1.7.0. Older format (numbers from 0-10) is compatible but deprecated." -msgstr "" - -#. type: Content of: outside any tag (error?) -#: include/experimental.xml:1 -msgid "" -"<emphasis> This is an experimental feature, please use http://fedorahosted." -"org/sssd to report any issues. </emphasis>" -msgstr "" -- cgit